
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
prosím o kontrolu logu z FRST
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
prosím o kontrolu logu z FRST
neustálé se mi připojuje a odpojuje lan pripojeni a nevím čím to je ale poskytovatel tvrdí že vše maji v pořádku v pc mi to přeskakuje z pevného připojenio na wifi, je to otravné, prosím tedy nejak o pomoc jak to řešit! a pak zda je pc v pořádku a pročistit. děkuji
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 22-01-2026
Ran by Matti.sin (administrator) on MATTI-SIN (Micro-Star International Co., Ltd. MS-7D98) (24-01-2026 11:35:41)
Running from C:\Users\Matti.sin\Desktop\FRST64.exe
Loaded Profiles: Matti.sin
Platform: Microsoft Windows 11 Pro Version 25H2 26200.7623 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(A225F3B5-240D-4EE9-BCF4-697A07F5E93E -> Micro-Star INT'L CO., LTD.) C:\Program Files\WindowsApps\9426MICRO-STARINTERNATION.MSICenter_2.0.64.0_x64__kzh8wxbdkxb8p\DCv2\DCv2.exe
(C:\Program Files (x86)\MSI\MSI Center\MSI.CentralServer.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Program Files (x86)\MSI\MSI Center\Engine\CC_Engine_x64.exe
(C:\Program Files (x86)\MSI\MSI Center\MSI_Central_Service.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\MSI.CentralServer.exe
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe
(C:\Program Files\Mozilla Firefox\firefox.exe ->) (Mozilla Corporation -> Mozilla Foundation) C:\Program Files\Mozilla Firefox\crashhelper.exe
(C:\Program Files\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> ) C:\Program Files\TeamViewer\crashpad_handler.exe
(C:\Program Files\WindowsApps\AppUp.IntelArcSoftware_25.44.2010.0_x64__8j3eq9eme6ctt\VFS\ProgramFilesX64\Intel\Intel Graphics Software\IntelGraphicsSoftware.Service.exe ->) (EB51A5DA-0E72-4863-82E4-EA21C1F8DFE3 -> Intel(R) Corporation) C:\Program Files\WindowsApps\AppUp.IntelArcSoftware_25.44.2010.0_x64__8j3eq9eme6ctt\VFS\ProgramFilesX64\Intel\Intel Graphics Software\PresentMonService.exe
(C1D09E0B-E536-446C-B344-2F500D733EAA -> ) C:\Program Files\WindowsApps\GlobalDelightTechnologies.Boom3D_2.0.1.0_x64__b7pwcagxvespy\Boom3D\Boom3D.exe
(explorer.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\SecureLine VPN\Vpn.exe <3>
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5>
(Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastUI.exe <4>
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Matti.sin\AppData\Local\Microsoft\OneDrive\25.238.1204.0001_1\OneDrive.Sync.Service.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <32>
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (EB51A5DA-0E72-4863-82E4-EA21C1F8DFE3 -> Intel Corporation) C:\Program Files\WindowsApps\AppUp.IntelArcSoftware_25.44.2010.0_x64__8j3eq9eme6ctt\VFS\ProgramFilesX64\Intel\Intel Graphics Software\IntelGraphicsSoftware.Service.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\afwServ.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Driver Updater\DriverUpdSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\SecureLine VPN\VpnSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_5384aa165a2c7217\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\msiexec.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MsMpEng.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI Center\Case\MSI_Case_Service.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\MSI_Central_Service.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LightKeeperService.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\Mystic Light\Mystic_Light_Service.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_7840b4313191ae17\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Open Source Developer, Michael Maltsev -> Ramen Software) C:\Program Files\Windhawk\windhawk.exe <2>
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_7e93164ae8ff6bf7\RtkAudUService64.exe <2>
(services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.218.0.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\Matti.sin\AppData\Local\Microsoft\OneDrive\25.238.1204.0001_1\FileCoAuth.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SppExtComObj.Exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\Packages\Preview\amd64\MoUsoCoreWorker.exe
(svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> ) C:\Program Files (x86)\MSI\MSI Center\LAN Manager\MSI_LAN_Manager_Tool.exe
(svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\AI Engine\PowerModeWatcher.exe
(svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LEDKeeper2.exe
(svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\True Color\New\MSI.True Color.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_7e93164ae8ff6bf7\RtkAudUService64.exe [3112448 2025-08-20] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [Avast Driver Updater UI] => C:\Program Files\Avast Software\Driver Updater\DriverUpdUI.exe [7353712 2025-12-17] (Gen Digital Inc. -> Gen Digital Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [869032 2025-12-22] (Gen Digital Inc. -> Gen Digital Inc.)
HKLM\...\Run: [Avast Cleanup UI] => C:\Program Files\Avast Software\Cleanup\TuneupUI.exe [6908128 2026-01-15] (Gen Digital Inc. -> Gen Digital Inc.)
HKU\S-1-5-21-3829043792-2434836364-2020864886-1001\...\Run: [Microsoft Edge Update] => C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.215.9\MicrosoftEdgeUpdateCore.exe [277088 2025-12-22] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3829043792-2434836364-2020864886-1001\...\Run: [Mozilla-Firefox-308046B0AF4A39CB] => "C:\Program Files\Mozilla Firefox\firefox.exe" -os-autostart [680064 2026-01-19] (Mozilla Corporation -> Mozilla Corporation)
HKU\S-1-5-21-3829043792-2434836364-2020864886-1001\...\Run: [MicrosoftEdgeAutoLaunch_EBB60C441D2004E397F866701C0D90BF] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4314192 2026-01-16] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3829043792-2434836364-2020864886-1001\...\Run: [Teams] => C:\Users\Matti.sin\AppData\Local\Microsoft\WindowsApps\MSTeams_8wekyb3d8bbwe\ms-teams.exe [0 0] () [symlink -> ]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [2025-11-06] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\144.0.7559.97\Installer\chrmstp.exe [2026-01-23] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] ->
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Avast SecureLine VPN.lnk [2025-12-11]
ShortcutTarget: Avast SecureLine VPN.lnk -> C:\Program Files\Avast Software\SecureLine VPN\Vpn.exe (Gen Digital Inc. -> Gen Digital Inc.)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {4B1774D1-9853-4657-9AEE-6C5EB63971DD} - System32\Tasks\Avast Software\Avast Antivirus Patcher => C:\Program Files\Common Files\Avast Software\Icarus\avast-av\icarus.exe [9212640 2025-12-03] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {BDFEE5FD-453B-4A66-9FC2-68B0DD18D1DF} - System32\Tasks\Avast Software\Avast Cleanup BugReport => C:\Program Files\Avast Software\Cleanup\AvBugReport.exe [6201056 2026-01-15] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --silent --product 62 --programpath "C:\Program Files\Avast Software\Cleanup" --configpath "C:\ProgramData\Avast Software\Cleanup" --path "C:\ProgramData\Avast Software\Cleanup\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --logpath "C:\ProgramData\Avast Software\Cle (the data entry has 53 more characters).
Task: {04DB46A9-E128-4C90-AC37-9DAF1D65AFF3} - System32\Tasks\Avast Software\Avast Cleanup Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-tu\icarus.exe [9212640 2025-12-16] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {699604D7-FF71-42C1-B21D-FBACEA2B259A} - System32\Tasks\Avast Software\Avast Driver Updater BugReport => C:\Program Files\Avast Software\Driver Updater\AvBugReport.exe [6199664 2025-12-17] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --silent --product 148 --programpath "C:\Program Files\Avast Software\Driver Updater" --configpath "C:\ProgramData\Avast Software\Driver Updater" --path "C:\ProgramData\Avast Software\Driver Updater\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --logpath "C:\ProgramD (the data entry has 82 more characters).
Task: {31D49533-CE72-4EA5-BDFF-240F50A7CD9E} - System32\Tasks\Avast Software\Avast Driver Updater Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-du\icarus.exe [9212640 2025-12-04] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {734259EF-B952-4B70-AA6F-047F94FCDE6F} - System32\Tasks\Avast Software\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5601960 2025-12-22] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {D01E5A8C-5951-421D-B4D4-BF6678146A15} - System32\Tasks\Avast Software\Avast SecureLine VPN Bug Report => C:\Program Files\Avast Software\SecureLine VPN\AvBugReport.exe [6193832 2025-12-11] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --silent --product 11 --programpath "C:\Program Files\Avast Software\SecureLine VPN" --configpath "C:\ProgramData\Avast Software\SecureLine VPN" --path "C:\ProgramData\Avast Software\SecureLine VPN\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --logpath "C:\ProgramDat (the data entry has 80 more characters).
Task: {1D4C6284-220E-40E9-AFFB-BFDAECEC72A8} - System32\Tasks\Avast Software\Avast SecureLine VPN Emergency Update => C:\Program Files\Avast Software\SecureLine VPN\VpnUpdate.exe [3959464 2025-12-11] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {866C15B3-65CA-4BD6-A302-462DEC92B04A} - System32\Tasks\Avast Software\Avast SecureLine VPN Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-vpn\icarus.exe [9176800 2025-12-09] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {133C555C-1375-4204-87F2-737B5AA9F39F} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2977504 2025-09-30] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {80F64D38-C491-4DF5-9F28-0DDBB1138F0F} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem143.0.7482.0{F368862C-401B-44D5-AE5B-832B34E4C80E} => C:\Program Files (x86)\Google\GoogleUpdater\143.0.7482.0\updater.exe [6048408 2025-11-15] (Google LLC -> Google LLC)
Task: {F88ED0C5-84DA-4E00-B287-EF6559376FA6} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem144.0.7547.0{BDE99114-5EAE-4914-8408-C5E54022BB0A} => C:\Program Files (x86)\Google\GoogleUpdater\144.0.7547.0\updater.exe [6123160 2026-01-07] (Google LLC -> Google LLC)
Task: {86100DF2-535F-4CA9-9D9D-391FF30E4A1E} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\ActionsServer\ActionsServer.exe [16242992 2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {9712ADB0-B9B9-4326-A616-D393D1115EE7} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28636480 2026-01-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {DFDC1E70-FEEA-44A5-9051-49119F86570C} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\OFFICE16\opushutil.exe [73568 2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {63ECDF3F-3865-45FC-89B8-ECAA7D94DFFF} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28636480 2026-01-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {B32F1255-F555-484A-B4BA-0F1AFC717F1F} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [310560 2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {7808F121-BCFA-4FAB-A080-F1F1F64ED494} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [310560 2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {8362AC6D-4F2B-426D-8252-C56D90BA6EBF} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\operfmon.exe [1347320 2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {61A05AC5-6814-4419-BED9-C12FB855ADBD} - System32\Tasks\Microsoft\Office\Office Startup Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\ActionsServer\ActionsServer.exe [16242992 2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {B55A5FD5-D669-49D2-9F2A-03B2859A61B1} - System32\Tasks\Microsoft\Windows\Clip\ClipESU => %SystemRoot%\system32\clipesu.exe (No File)
Task: {152F5932-7466-4E43-8166-101C8F3CA535} - System32\Tasks\Microsoft\Windows\Clip\ClipESUConsumer => %SystemRoot%\system32\ClipESUConsumer.exe -evaluateEligibility (No File)
Task: {3DBC7719-A13E-43C5-9F70-021FDB4EC2EB} - System32\Tasks\Microsoft\Windows\Clip\ClipESUConsumerProcessECUpdate => %SystemRoot%\system32\ClipESUConsumer.exe -persistEligibilityStatus (No File)
Task: {847DF80D-C239-43D6-B77A-A7C4102A8BC4} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessPreOrder => %SystemRoot%\system32\ClipESUConsumer.exe -postProcessPreOrder (No File)
Task: {8D9ECCA9-2E65-4E5E-AC51-117F63FC051C} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessRefund => %SystemRoot%\system32\ClipESUConsumer.exe -processRefund (No File)
Task: {1B411846-7BB3-4510-A569-3B62BD8299D1} - System32\Tasks\Microsoft\Windows\Clip\EnableClipESU => %SystemRoot%\system32\clipesu.exe -e (No File)
Task: {DC58AE12-6541-42DC-A888-37A7299E1F35} - System32\Tasks\Microsoft\Windows\CUAssistant\CULauncher => %ProgramFiles%\CUAssistant\culauncher.exe (No File)
Task: {E88D9B2C-DDEA-47B2-9582-085153004DB5} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (No File)
Task: {D946EF0B-1404-4DDE-9489-4F6250EC22DE} - System32\Tasks\Microsoft\Windows\rempl\shell => %ProgramFiles%\rempl\sedlauncher.exe (No File)
Task: {6612C7A2-AFF7-40CD-BCA6-C27BC7374583} - System32\Tasks\Microsoft\Windows\Setup\PITRTask => {093cb270-c282-4c22-b2ea-7d2bf1c30bbf} C:\WINDOWS\system32\oobe\PITRTask.dll [118784 2025-12-02] (Microsoft Windows -> Microsoft Corporation)
Task: {CAB76809-EDC0-40D2-A888-AD9BEDF4E88A} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe (No File)
Task: {D0218C70-9C99-4043-BF17-667E1AE5C42E} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot => %systemroot%\system32\MusNotification.exe ReadyToReboot (No File)
Task: {32642DD6-71EA-458E-9A01-0ECF36A2ABC7} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog (No File)
Task: {784BBCC1-E9C5-48E1-B214-265B9D3125C7} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog (No File)
Task: {0634647D-9B9B-4C2B-B53C-F7C71F863618} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display => %systemroot%\system32\MusNotification.exe Display (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {6822C5F5-168D-4606-BEE4-204791535660} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {3769F0CB-09F0-45E2-A71C-0AE4698864F8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {55096348-E7FE-4F69-A1CC-C4C2960B33BE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {1BF0FB53-847D-4837-B131-BBD24B3D1024} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {4DC162FB-7B11-47F8-A9A0-EB404A175A9C} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3829043792-2434836364-2020864886-1001Core{059A352F-121E-46E6-B267-44D5F8AF947D} => C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [205920 2025-12-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {0516BC44-1593-4D6B-BC61-60AB2FC59321} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3829043792-2434836364-2020864886-1001UA{687FD920-17AD-4892-92A0-7A6806643A56} => C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [205920 2025-12-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {D981E505-1A07-468C-AFEE-271AE241ED89} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34944 2026-01-19] (Mozilla Corporation -> Mozilla Foundation)
Task: {881C6BFF-36A4-41F0-8215-CA19F1FB27DE} - System32\Tasks\MSI Task Host - LEDKeeper2_Host => C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LEDKeeper2.exe [3428504 2025-09-09] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
Task: {10214900-C2A7-4633-A75F-7C46FE7CE003} - System32\Tasks\OneDrive Startup Task-S-1-5-21-3829043792-2434836364-2020864886-1001 => C:\Users\Matti.sin\AppData\Local\Microsoft\OneDrive\25.238.1204.0001_1\OneDriveLauncher.exe [746856 2026-01-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {5C1C3733-D993-489D-B160-241E529374CA} - System32\Tasks\WindhawkRunUITask => C:\Program Files\Windhawk\windhawk.exe [835160 2025-12-17] (Open Source Developer, Michael Maltsev -> Ramen Software)
Task: {770BFC5D-F530-4DD0-BF8E-607F69BDD78C} - System32\Tasks\WindhawkUpdateTask => C:\Program Files\Windhawk\windhawk.exe [835160 2025-12-17] (Open Source Developer, Michael Maltsev -> Ramen Software)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{e1277e61-5635-4c07-84d7-7172684d72f6}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{f0d26677-2148-4279-b144-8890b64a2c8f}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{f0d26677-2148-4279-b144-8890b64a2c8f}\05F44414F513434393: [DhcpNameServer] 62.129.50.20 85.135.32.100
Tcpip\..\Interfaces\{f0d26677-2148-4279-b144-8890b64a2c8f}\160756E2C6F676E2679616: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF DefaultProfile: ysomudgn.default
FF ProfilePath: C:\Users\Matti.sin\AppData\Roaming\Mozilla\Firefox\Profiles\ysomudgn.default [2025-09-30]
FF ProfilePath: C:\Users\Matti.sin\AppData\Roaming\Mozilla\Firefox\Profiles\n8h0gsjv.default-release [2026-01-24]
FF Homepage: Mozilla\Firefox\Profiles\n8h0gsjv.default-release -> seznam.cz
FF Notifications: Mozilla\Firefox\Profiles\n8h0gsjv.default-release -> hxxps://meet.google.com
FF Extension: (Language: Čeština (Czech)) - C:\Users\Matti.sin\AppData\Roaming\Mozilla\Firefox\Profiles\n8h0gsjv.default-release\Extensions\langpack-cs@firefox.mozilla.org.xpi [2026-01-19]
FF Extension: (New Tab) - C:\Users\Matti.sin\AppData\Roaming\Mozilla\Firefox\Profiles\n8h0gsjv.default-release\Extensions\newtab@mozilla.org.xpi [2025-12-22]
FF Extension: (Dark Mode) - C:\Users\Matti.sin\AppData\Roaming\Mozilla\Firefox\Profiles\n8h0gsjv.default-release\Extensions\{174b2d58-b983-4501-ab4b-07e71203cb43}.xpi [2025-12-17]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-12-07] (Microsoft Corporation -> Microsoft Corporation)
Edge:
=======
Edge Profile: C:\Users\Matti.sin\AppData\Local\Microsoft\Edge\User Data\Default [2026-01-24]
Edge Extension: (Dokumenty Google offline) - C:\Users\Matti.sin\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-12-22]
Edge Extension: (Edge relevant text changes) - C:\Users\Matti.sin\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2025-09-30]
Chrome:
=======
CHR Profile: C:\Users\Matti.sin\AppData\Local\Google\Chrome\User Data\Default [2025-11-25]
CHR Extension: (Dokumenty Google offline) - C:\Users\Matti.sin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-11-25]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Matti.sin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2025-10-11]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [7830184 2025-12-22] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [1036968 2025-12-22] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [2608296 2025-12-22] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [1090216 2025-12-22] (Gen Digital Inc. -> Gen Digital Inc.)
R2 AvastCleanupSvc; C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe [21126368 2026-01-15] (Gen Digital Inc. -> Gen Digital Inc.)
R2 AvastDriverUpdSvc; C:\Program Files\Avast Software\Driver Updater\DriverUpdSvc.exe [18753248 2025-12-17] (Gen Digital Inc. -> Gen Digital Inc.)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2025-09-30] (Avast Software s.r.o. -> AVAST Software)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13165888 2026-01-21] (Microsoft Corporation -> Microsoft Corporation)
R2 IntelGraphicsSoftwareService; C:\Program Files\WindowsApps\AppUp.IntelArcSoftware_25.44.2010.0_x64__8j3eq9eme6ctt\VFS\ProgramFilesX64\Intel\Intel Graphics Software\IntelGraphicsSoftware.Service.exe [300544 2025-12-31] (EB51A5DA-0E72-4863-82E4-EA21C1F8DFE3 -> Intel Corporation)
R2 LightKeeperService; C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LightKeeperService.exe [92768 2023-05-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpDefenderCoreService.exe [2063376 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 MSI_Case_Service; C:\Program Files (x86)\MSI\MSI Center\Case\MSI_Case_Service.exe [140952 2025-09-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 MSI_Center_Service; C:\Program Files (x86)\MSI\MSI Center\MSI_Central_Service.exe [181776 2025-04-17] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
R2 Mystic_Light_Service; C:\Program Files (x86)\MSI\MSI Center\Mystic Light\Mystic_Light_Service.exe [41064 2024-04-23] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_7840b4313191ae17\Display.NvContainer\NVDisplay.Container.exe [1275624 2025-12-31] (NVIDIA Corporation -> NVIDIA Corporation)
R2 SecureLine; C:\Program Files\Avast Software\SecureLine VPN\VpnSvc.exe [14622376 2025-12-11] (Gen Digital Inc. -> Gen Digital Inc.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [803088 2025-10-29] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [25756528 2025-12-17] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 VSInstallerElevationService; C:\Program Files (x86)\Microsoft Visual Studio\Installer\VSInstallerElevationService.exe [43432 2025-09-30] (Microsoft Corporation -> Microsoft)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\NisSrv.exe [4426832 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MsMpEng.exe [290704 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 Windhawk; C:\Program Files\Windhawk\windhawk.exe [835160 2025-12-17] (Open Source Developer, Michael Maltsev -> Ramen Software)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [286816 2025-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [435296 2025-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [304736 2025-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [88160 2025-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [29144 2025-09-30] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [32856 2025-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [289376 2025-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [584800 2025-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [97376 2025-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [73312 2025-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [898144 2025-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [1314912 2025-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [219744 2025-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [403552 2025-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 aswVpnRdr; C:\WINDOWS\System32\drivers\aswVpnRdr.sys [85776 2025-09-30] (Microsoft Windows Hardware Compatibility Publisher -> Avast Software)
S3 aswWireGuard; C:\WINDOWS\System32\drivers\aswWireguard.sys [174912 2025-09-30] (Microsoft Windows Hardware Compatibility Publisher -> Avast Software)
R3 iaLPSS2_GPIO2_ADL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_gpio2_adl.inf_amd64_c804e238af0965e6\iaLPSS2_GPIO2_ADL.sys [142800 2025-11-10] (Intel Corporation -> Intel Corporation)
R3 IntelGNA; C:\WINDOWS\System32\DriverStore\FileRepository\gna.inf_amd64_e736ed4bed7f97b4\gna.sys [100736 2025-10-07] (Intel Corporation -> Intel Corporation)
R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [333192 2025-11-18] (Microsoft Windows -> Microsoft Corporation)
R1 MSIO; C:\WINDOWS\system32\drivers\MsIo64.sys [19672 2023-12-10] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd)
R3 NTIOLib_CC_COMM; C:\Program Files (x86)\MSI\MSI Center\Lib\SYS\NTIOLib_X64.sys [32592 2024-09-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R3 NTIOLib_MysticLight; C:\Program Files (x86)\MSI\MSI Center\Mystic Light\Lib\NTIOLib_X64.sys [32472 2024-09-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R3 rt25cx21; C:\WINDOWS\System32\DriverStore\FileRepository\rt25cx21x64.inf_amd64_f1c679fae728e251\rt25cx21x64.sys [905216 2025-07-28] (Realtek Semiconductor Corp. -> Realtek)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [21928 2025-12-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [635272 2025-12-18] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [102792 2025-12-18] (Microsoft Windows -> Microsoft Corporation)
U3 aswArDisk; no ImagePath
U3 aswBcc; no ImagePath
U3 Avast Business Console Client Antivirus Service; no ImagePath
S3 dbx; system32\DRIVERS\dbx.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-01-24 11:35 - 2026-01-24 11:36 - 000034566 _____ C:\Users\Matti.sin\Desktop\FRST.txt
2026-01-24 11:35 - 2026-01-24 11:35 - 000000000 ____D C:\FRST
2026-01-24 11:34 - 2026-01-24 11:34 - 002443264 _____ (Farbar) C:\Users\Matti.sin\Desktop\FRST64.exe
2026-01-24 11:33 - 2026-01-24 11:33 - 000677108 _____ C:\WINDOWS\system32\perfh005.dat
2026-01-24 11:33 - 2026-01-24 11:33 - 000144960 _____ C:\WINDOWS\system32\perfc005.dat
2026-01-23 19:18 - 2026-01-23 19:56 - 000000000 ____D C:\WINDOWS\CbsTemp
2026-01-23 15:50 - 2026-01-23 15:50 - 006196150 _____ C:\Users\Matti.sin\Downloads\US_AC6V2.0RTL_V15.03.06.51_multi_TDE01(1).zip
2026-01-23 15:46 - 2026-01-23 15:50 - 000000000 ____D C:\Users\Matti.sin\Downloads\US_AC6V2.0RTL_V15.03.06.51_multi_TDE01
2026-01-23 15:46 - 2026-01-23 15:46 - 006196150 _____ C:\Users\Matti.sin\Downloads\US_AC6V2.0RTL_V15.03.06.51_multi_TDE01.zip
2026-01-19 15:50 - 2026-01-23 17:42 - 000000000 ____D C:\Program Files\Mozilla Firefox
2026-01-15 17:05 - 2026-01-24 11:30 - 000000000 ____D C:\ProgramData\BoomLogs
2026-01-15 17:05 - 2026-01-15 17:05 - 000000061 _____ C:\ProgramData\perma.bm
2026-01-15 17:05 - 2026-01-15 17:05 - 000000000 ____D C:\ProgramData\Boom 3D
2026-01-11 15:31 - 2026-01-11 15:31 - 000020278 _____ C:\Users\Matti.sin\AppData\LocalLow\d9b6894662d10981fe343731f20e9f9ded67dcd24f2b94d09a8dbc98c8c5fb21
2026-01-11 15:31 - 2026-01-11 15:31 - 000000026 _____ C:\Users\Matti.sin\AppData\LocalLow\2c9c7474bfa8a8254ce7bc0e4bb0a086d1a5833a795a6ba8fdf0d323ed8b3886
2026-01-06 16:55 - 2026-01-06 17:05 - 000000000 ____D C:\Users\Matti.sin\AppData\Roaming\Microsoft\Excel
2026-01-05 20:11 - 2026-01-05 20:11 - 000051454 _____ C:\Users\Matti.sin\Downloads\faktura9260008834.pdf
2025-12-31 21:57 - 2025-12-31 21:57 - 002421296 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2025-12-31 21:57 - 2025-12-31 21:57 - 002421296 _____ C:\WINDOWS\system32\vulkaninfo.exe
2025-12-31 21:57 - 2025-12-31 21:57 - 001923120 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2025-12-31 21:57 - 2025-12-31 21:57 - 001923120 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2025-12-31 21:57 - 2025-12-31 21:57 - 001625648 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2025-12-31 21:57 - 2025-12-31 21:57 - 001625648 _____ C:\WINDOWS\system32\vulkan-1.dll
2025-12-31 21:57 - 2025-12-31 21:57 - 001434672 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2025-12-31 21:57 - 2025-12-31 21:57 - 001434672 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2025-12-31 21:57 - 2025-12-31 21:57 - 000478952 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2025-12-31 21:57 - 2025-12-31 21:57 - 000375016 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2025-12-31 21:53 - 2025-12-31 21:53 - 001574632 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2025-12-31 21:53 - 2025-12-31 21:53 - 001344744 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2025-12-31 21:53 - 2025-12-31 21:53 - 001224936 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2025-12-31 21:53 - 2025-12-31 21:53 - 000675048 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvofapi64.dll
2025-12-31 21:53 - 2025-12-31 21:53 - 000509160 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvofapi.dll
2025-12-31 21:52 - 2025-12-31 21:52 - 027559656 _____ C:\WINDOWS\system32\nvidia-pcc.exe
2025-12-31 21:52 - 2025-12-31 21:52 - 002319080 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2025-12-31 21:52 - 2025-12-31 21:52 - 001716968 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2025-12-31 21:52 - 2025-12-31 21:52 - 001616104 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2025-12-31 21:52 - 2025-12-31 21:52 - 001055976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2025-12-31 21:52 - 2025-12-31 21:52 - 000812264 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2025-12-31 21:51 - 2025-12-31 21:51 - 022613224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2025-12-31 21:51 - 2025-12-31 21:51 - 018277608 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2025-12-31 21:51 - 2025-12-31 21:51 - 007908072 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2025-12-31 21:51 - 2025-12-31 21:51 - 005924072 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2025-12-31 21:51 - 2025-12-31 21:51 - 005586664 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll
2025-12-31 21:51 - 2025-12-31 21:51 - 004288232 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2025-12-31 21:51 - 2025-12-31 21:51 - 000853736 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2025-12-31 21:51 - 2025-12-31 21:51 - 000469224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2025-12-31 21:50 - 2025-12-31 21:50 - 005687448 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2025-12-31 21:50 - 2025-12-31 21:50 - 004975632 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2025-12-30 20:59 - 2025-12-30 20:59 - 000153562 _____ C:\WINDOWS\system32\nvinfo.pb
2025-12-27 16:04 - 2025-12-27 16:04 - 000000000 ____D C:\Users\UMFD-0.Font Driver Host.000
2025-12-27 16:04 - 2025-12-27 16:04 - 000000000 ____D C:\Users\TEMP.Font Driver Host.000
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-01-24 11:34 - 2025-12-17 20:52 - 000002488 _____ C:\WINDOWS\system32\Tasks\WindhawkUpdateTask
2026-01-24 11:34 - 2025-12-17 20:52 - 000002082 _____ C:\WINDOWS\system32\Tasks\WindhawkRunUITask
2026-01-24 11:34 - 2025-10-29 16:13 - 000003828 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3829043792-2434836364-2020864886-1001UA{687FD920-17AD-4892-92A0-7A6806643A56}
2026-01-24 11:34 - 2025-10-29 16:13 - 000003728 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3829043792-2434836364-2020864886-1001Core{059A352F-121E-46E6-B267-44D5F8AF947D}
2026-01-24 11:34 - 2025-10-29 16:13 - 000003642 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{79C6032E-4039-48ED-AE56-81C03BC971F9}
2026-01-24 11:34 - 2025-10-29 16:13 - 000003416 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{AA06E15A-6F71-42D9-8247-89E1E1B9B422}
2026-01-24 11:34 - 2025-10-29 16:13 - 000003116 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-3829043792-2434836364-2020864886-1001
2026-01-24 11:34 - 2025-10-29 16:13 - 000003066 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3829043792-2434836364-2020864886-1001
2026-01-24 11:34 - 2025-10-29 16:13 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3829043792-2434836364-2020864886-1001
2026-01-24 11:34 - 2025-10-29 16:13 - 000002368 _____ C:\WINDOWS\system32\Tasks\MSI Task Host - LEDKeeper2_Host
2026-01-24 11:34 - 2025-10-29 16:13 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2026-01-24 11:33 - 2025-10-29 16:16 - 001603790 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-01-24 11:33 - 2024-04-01 08:26 - 000000000 ___HD C:\Program Files\WindowsApps
2026-01-24 11:33 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-01-24 11:33 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-01-24 11:33 - 2024-04-01 08:24 - 000000000 ____D C:\WINDOWS\INF
2026-01-24 11:32 - 2025-10-19 15:08 - 000000000 ____D C:\Program Files\Microsoft Office
2026-01-24 11:31 - 2025-09-30 14:01 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2026-01-24 11:29 - 2025-09-30 14:32 - 000000000 ____D C:\Program Files\Dropbox
2026-01-24 11:29 - 2025-09-30 14:26 - 000000000 ____D C:\Program Files (x86)\Dropbox
2026-01-24 11:29 - 2022-01-01 15:54 - 000000000 ___RD C:\Users\Matti.sin\OneDrive
2026-01-23 19:56 - 2025-09-30 17:48 - 000000000 ____D C:\ProgramData\NVIDIA
2026-01-23 19:55 - 2025-10-29 16:13 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-01-23 19:55 - 2025-10-29 16:12 - 000004234 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2026-01-23 19:55 - 2025-09-30 17:43 - 000012288 ___SH C:\DumpStack.log.tmp
2026-01-23 19:55 - 2025-09-30 14:33 - 000000000 ____D C:\Program Files\TeamViewer
2026-01-23 19:55 - 2025-09-30 14:03 - 000000000 ____D C:\ProgramData\Avast Software
2026-01-23 19:55 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-01-23 19:55 - 2024-04-01 08:21 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2026-01-23 19:53 - 2025-10-11 15:58 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2026-01-23 19:53 - 2025-10-11 15:58 - 000002206 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2026-01-23 19:52 - 2025-09-30 17:49 - 000000000 ____D C:\Program Files (x86)\MSI
2026-01-23 19:51 - 2025-09-30 17:46 - 000000000 ____D C:\ProgramData\Packages
2026-01-23 19:51 - 2022-01-01 15:53 - 000000000 ____D C:\Users\Matti.sin\AppData\Local\Packages
2026-01-23 19:49 - 2025-09-30 14:38 - 000001044 _____ C:\Users\Matti.sin\Desktop\Telegram.lnk
2026-01-23 19:49 - 2025-09-30 14:38 - 000000000 ____D C:\Users\Matti.sin\AppData\Roaming\Telegram Desktop
2026-01-23 19:49 - 2025-09-30 14:38 - 000000000 ____D C:\Users\Matti.sin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Telegram Desktop
2026-01-23 19:48 - 2025-09-30 13:36 - 000000000 ____D C:\ProgramData\Package Cache
2026-01-23 19:46 - 2025-09-30 19:38 - 000000000 ____D C:\Users\Matti.sin\AppData\Local\Avast Software
2026-01-23 19:02 - 2025-09-30 18:10 - 000000000 ____D C:\Users\Matti.sin\AppData\Local\D3DSCache
2026-01-23 17:42 - 2025-10-29 16:52 - 000143341 ____H C:\Users\Matti.sin\AppData\Local\IconCache.db.backup
2026-01-23 17:42 - 2025-09-30 14:26 - 000000000 ____D C:\Users\Matti.sin\AppData\Roaming\discord
2026-01-23 17:42 - 2025-09-30 14:01 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2026-01-23 17:41 - 2025-09-30 14:26 - 000000000 ____D C:\Users\Matti.sin\AppData\Local\Discord
2026-01-23 15:50 - 2025-10-19 15:13 - 000000000 ____D C:\Users\Matti.sin\AppData\Roaming\Microsoft\Word
2026-01-23 14:43 - 2025-09-30 14:26 - 000002267 _____ C:\Users\Matti.sin\Desktop\Discord.lnk
2026-01-19 21:18 - 2025-09-30 15:04 - 000000000 ____D C:\Users\Matti.sin\AppData\Local\CrashDumps
2026-01-19 21:02 - 2025-09-30 14:01 - 000001073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2026-01-19 19:57 - 2025-09-30 17:44 - 000002395 _____ C:\Users\Matti.sin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2026-01-19 15:50 - 2025-09-30 14:00 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-01-19 15:50 - 2025-09-30 14:00 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2026-01-15 17:05 - 2025-09-30 13:50 - 000000000 ____D C:\Users\Matti.sin\AppData\Local\PlaceholderTileLogoFolder
2026-01-14 13:54 - 2025-11-05 20:56 - 000471680 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2026-01-14 13:54 - 2025-10-30 17:52 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK
2026-01-14 13:53 - 2024-04-01 17:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2026-01-14 13:53 - 2024-04-01 08:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2026-01-14 13:53 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2026-01-14 13:53 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2026-01-14 13:53 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2026-01-14 13:53 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemResources
2026-01-14 13:53 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2026-01-14 13:53 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\setup
2026-01-14 13:53 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2026-01-14 13:53 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2026-01-13 20:32 - 2025-10-29 16:12 - 003276800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2026-01-11 15:31 - 2025-11-07 22:58 - 000048926 _____ C:\Users\Matti.sin\AppData\LocalLow\41000f374dd3b3f351fe67729eb2bf74a4ac43b4013e947d159afd0348a644cb
2026-01-06 16:55 - 2025-11-12 22:18 - 000000026 _____ C:\Users\Matti.sin\AppData\LocalLow\6e53dded6316fc9f79dbbdf1f2027a068f7d6aafbf7921859e16e65d3f59a7bb
2025-12-27 18:53 - 2025-11-08 22:51 - 000002264 _____ C:\Users\Matti.sin\AppData\LocalLow\58a1b4e67ffc1c3aec072f3ddeeaf3656db249a6a5d51f0ac20c87632e6f5477
2025-12-27 16:56 - 2025-10-30 16:44 - 000002264 _____ C:\Users\Matti.sin\AppData\LocalLow\b5625821ccb446440ab7a226842d6ac4f1cf70ffbfa2d74ec18bafdcfc9541e8
==================== Files in the root of some directories ========
2025-09-30 14:00 - 2025-09-30 15:24 - 000186108 _____ () C:\Program Files\msedge_installer.log
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 22-01-2026
Ran by Matti.sin (24-01-2026 11:36:25)
Running from C:\Users\Matti.sin\Desktop
Microsoft Windows 11 Pro Version 25H2 26200.7623 (X64) (2025-10-29 15:13:59)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-3829043792-2434836364-2020864886-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3829043792-2434836364-2020864886-503 - Limited - Disabled)
Guest (S-1-5-21-3829043792-2434836364-2020864886-501 - Limited - Disabled)
Matti.sin (S-1-5-21-3829043792-2434836364-2020864886-1001 - Administrator - Enabled) => C:\Users\Matti.sin
WDAGUtilityAccount (S-1-5-21-3829043792-2434836364-2020864886-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Disabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Avast Antivirus (Disabled) {D322394B-73F7-C65E-BBB0-3B81E063D6D4}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe Redeem Launcher (HKLM-x32\...\{073F1D74-FE84-4EF8-A991-57889533FFA7}}_is1) (Version: 1.0.0.11 - MSI)
Application Verifier x64 External Package (HKLM\...\{D5419286-34A7-E062-1C25-013A7FA94E9C}) (Version: 10.1.19041.5609 - Microsoft) Hidden
Avast Cleanup Premium (HKLM\...\Avast Cleanup) (Version: 26.1.18342.22494 - Gen Digital Inc.)
Avast Driver Updater (HKLM\...\Avast Driver Updater) (Version: 26.1.6336.21016 - Gen Digital Inc.)
Avast Premium Security (HKLM\...\Avast Antivirus) (Version: 25.12.10659.3321 - Gen Digital Inc.)
Avast SecureLine VPN (HKLM\...\Avast SecureLine) (Version: 25.12.12124.16698 - Avast Software)
DB Browser for SQLite (HKLM\...\{541AE182-7C1D-426C-8155-4867303B75A4}) (Version: 3.13.1 - DB Browser for SQLite Team)
Discord (HKU\S-1-5-21-3829043792-2434836364-2020864886-1001\...\Discord) (Version: 1.0.9221 - Discord Inc.)
Documentation Manager (HKLM\...\{51C5ED88-53DF-49F4-9855-0E9949AC7522}) (Version: 23.40.0.4 - Intel Corporation) Hidden
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.983.1 - Dropbox, Inc.) Hidden
ENE Video Capture Box HAL (HKLM\...\{A096611D-BA11-4A1A-8D09-0A0462D7C8F2}) (Version: 1.0.5.15 - Ene Tech.) Hidden
ENE Video Capture Box HAL (HKLM-x32\...\{974259bf-3ed1-4cd6-9ed1-40c7f601a786}) (Version: 1.0.5.15 - Ene Tech.) Hidden
ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
ENE_EHD_M2_HAL (HKLM-x32\...\{c1d017c2-8846-4000-9254-5689eccd462e}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
ENE_External_Device_HAL (HKLM\...\{2B8E611F-0B51-4FAC-87BB-AF50D82E7DDA}) (Version: 1.0.14.0 - ENE Tech) Hidden
ENE_External_Device_HAL (HKLM-x32\...\{5d3c3229-f8ae-4c6c-9db7-7231adc1ff08}) (Version: 1.0.14.0 - ENE Tech) Hidden
ENE_MousePad_HAL (HKLM\...\{9E97178A-ADB8-4778-BE60-7E28E2A72721}) (Version: 1.0.2.0 - ENE TECHNOLOGY INC.) Hidden
ENE_MousePad_HAL (HKLM-x32\...\{c2c794a4-7986-4c45-884d-d4ca43b88df9}) (Version: 1.0.2.0 - ENE TECHNOLOGY INC.) Hidden
ENE_X_AIC_HAL (HKLM\...\{CF703694-01C6-4062-B797-84DB215662BC}) (Version: 1.0.6.3 - ENE TECHNOLOGY INC.) Hidden
ENE_X_AIC_HAL (HKLM-x32\...\{c662a481-d76a-4188-95d2-6eb4ffd55542}) (Version: 1.0.6.3 - ENE TECHNOLOGY INC.) Hidden
Google Chrome (HKLM\...\{750632BA-2593-3862-A3AE-0C9B722EC4DB}) (Version: 144.0.7559.97 - Google LLC)
Intel(R) Arc Software & Drivers (HKLM\...\Intel(R) Arc Software & Drivers) (Version: 1.0.916.8 - Intel(R) Corporation)
Intel(R) Chipset Device Software (HKLM\...\{7CE5A9A7-AD6E-4F64-9D53-E3B6F741B979}) (Version: 10.1.19899.8597 - Intel Corporation) Hidden
Intel(R) Chipset Device Software (HKLM-x32\...\{d86cfdf3-0928-4b89-9f81-d21552c39b2d}) (Version: 10.1.19899.8597 - Intel(R) Corporation)
Intel(R) Serial IO (HKLM\...\{0463150E-75E2-46F9-B447-2A13D70C9C21}) (Version: 30.100.2417.30 - Intel Corporation) Hidden
Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.2417.30 - Intel Corporation)
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{00000040-0230-1029-84C8-B8D95FA3C8C3}) (Version: 23.40.0.2 - Intel Corporation)
Intel® Software Installer (HKLM-x32\...\{061836cf-284c-4d68-beb6-30275a9debb2}) (Version: 23.40.0.4 - Intel Corporation) Hidden
Kits Configuration Installer (HKLM-x32\...\{85FC198B-F293-0ED4-CD62-09F136CBF5AD}) (Version: 10.1.19041.5609 - Microsoft) Hidden
Kontrola stavu osobního počítače s Windows (HKLM\...\{7DED818B-F556-4115-9CC0-ACE3F614CE63}) (Version: 4.0.2410.23001 - Microsoft Corporation)
Microsoft .NET Core Host - 3.1.32 (x64) (HKLM\...\{8A8E3A04-83BC-4CDE-9259-893B666C1AB1}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Host FX Resolver - 3.1.32 (x64) (HKLM\...\{ABC6B3C2-1A8D-4C5E-AC16-C2AE44F02743}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Runtime - 3.1.32 (x64) (HKLM\...\{A741B803-3F0E-4684-81EF-FC128D15A92C}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Runtime - 3.1.32 (x64) (HKLM-x32\...\{784973c8-d618-4ac8-97ed-1fd52c5bdf2f}) (Version: 3.1.32.31915 - Microsoft Corporation)
Microsoft .NET Host - 8.0.23 (x64) (HKLM\...\{8CE231CE-B9F2-488A-BC60-FA1CE584B85D}) (Version: 64.92.45415 - Microsoft Corporation) Hidden
Microsoft .NET Host - 9.0.5 (x64) (HKLM\...\{9DB9782D-9F85-4410-82DC-5AA378A393DE}) (Version: 72.20.32761 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.23 (x64) (HKLM\...\{A42EAA28-C0A1-4712-A109-796202435469}) (Version: 64.92.45415 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 9.0.5 (x64) (HKLM\...\{27B4F1C4-D1FD-4C0F-BA10-15D600657C51}) (Version: 72.20.32761 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.23 (x64) (HKLM\...\{39884818-B550-4209-9A49-81F9D21F6012}) (Version: 64.92.45415 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 9.0.5 (x64) (HKLM\...\{3AA8E866-9345-48D2-9B65-2FC8DDE659C0}) (Version: 72.20.32761 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\{E7164880-C51A-3DC7-8D39-B5D729852F5F}) (Version: 144.0.3719.82 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 144.0.3719.82 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2019 - cs-cz (HKLM\...\ProPlus2019Retail - cs-cz) (Version: 16.0.19530.20184 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3829043792-2434836364-2020864886-1001\...\OneDriveSetup.exe) (Version: 25.238.1204.0001 - Microsoft Corporation)
Microsoft Outlook 2019 - cs-cz (HKLM\...\OutLook2019Retail - cs-cz) (Version: 16.0.19530.20184 - Microsoft Corporation)
Microsoft PowerPoint 2019 - cs-cz (HKLM\...\PowerPoint2019Retail - cs-cz) (Version: 16.0.19530.20184 - Microsoft Corporation)
Microsoft Project - cs-cz (HKLM\...\ProjectPro2019Retail - cs-cz) (Version: 16.0.19530.20184 - Microsoft Corporation)
Microsoft Project - en-us (HKLM\...\ProjectPro2019Retail - en-us) (Version: 16.0.19530.20184 - Microsoft Corporation)
Microsoft Publisher 2019 - en-us (HKLM\...\Publisher2019Retail - en-us) (Version: 16.0.19530.20184 - Microsoft Corporation)
Microsoft Teams Meeting Add-in for Microsoft Office (HKLM\...\{A7AB73A3-CB10-4AA5-9D38-6AEFFBDE4C91}) (Version: 1.25.24601 - Microsoft)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visio - cs-cz (HKLM\...\VisioPro2019Retail - cs-cz) (Version: 16.0.19530.20184 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.44.35211 (HKLM-x32\...\{d8bbe9f9-7c5b-42c6-b715-9ee898a2e515}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.44.35211 (HKLM-x32\...\{0b5169e3-39da-4313-808e-1f9c0407f3bf}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2019 X64 Debug Runtime - 14.29.30157 (HKLM\...\{B2D2DB83-DEF0-4638-A634-025F645DFBDB}) (Version: 14.29.30157 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Debug Runtime - 14.29.30157 (HKLM-x32\...\{C45C7D61-1241-4033-BF55-3F7A99E06DCA}) (Version: 14.29.30157 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.44.35211 (HKLM\...\{86AB2CC9-08BD-4643-B0F9-F82D006D72FF}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.44.35211 (HKLM\...\{43B0D101-A022-48F4-9D04-BA404CEB1D53}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.44.35211 (HKLM-x32\...\{C18FB403-1E88-43C8-AD8A-CED50F23DE8B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.44.35211 (HKLM-x32\...\{922480B5-CAEB-4B1B-AAA4-9716EFDCE26B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual Studio Installer (HKLM\...\{6F320B93-EE3C-4826-85E0-ADF79F8D4C61}) (Version: 3.14.2086.54749 - Microsoft Corporation)
Microsoft Visual Studio Setup Configuration (HKLM-x32\...\{6AC5612A-D067-44B9-9C8E-2C1B3473B429}) (Version: 3.7.2182.35401 - Microsoft Corporation) Hidden
Microsoft Visual Studio Setup WMI Provider (HKLM-x32\...\{E281F6E2-136B-4AF0-895B-253279711697}) (Version: 3.7.2182.35401 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.23 (x64) (HKLM\...\{29177194-CD94-4A2D-97A4-EF77738E995A}) (Version: 64.92.45458 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.23 (x64) (HKLM-x32\...\{d653912d-5c24-4e13-9238-531257889178}) (Version: 8.0.23.35609 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 9.0.5 (x64) (HKLM\...\{4BB55880-A223-48BA-A531-775149E3D5A3}) (Version: 72.20.32770 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 9.0.5 (x64) (HKLM-x32\...\{a04113ba-971f-4916-ba50-78f2bc883b91}) (Version: 9.0.5.34816 - Microsoft Corporation)
Mozilla Firefox (x64 cs) (HKLM\...\Mozilla Firefox) (Version: 147.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 145.0.1 - Mozilla)
MSI Center SDK (HKLM-x32\...\{15289038-41BE-48F8-B8B9-0B1021D3089E}}_is1) (Version: 3.2025.1209.01 - MSI)
MSI Development Tools (HKLM-x32\...\{4CDB315B-7D34-AADB-B87D-9C00F56A430D}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Node.js (HKLM\...\{83366490-0EAB-4C6C-AE3D-6F7EA4B46DC3}) (Version: 22.21.0 - Node.js Foundation)
NVIDIA Ovladače grafiky 576.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 576.88 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.19426.20170 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.11029.20079 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0405-1000-0000000FF1CE}) (Version: 16.0.11029.20079 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0409-1000-0000000FF1CE}) (Version: 16.0.11029.20079 - Microsoft Corporation) Hidden
Postman x64 11.68.5 (HKU\S-1-5-21-3829043792-2434836364-2020864886-1001\...\Postman) (Version: 11.68.5 - Postman)
PyCharm 2025.2.3 (HKLM\...\PyCharm 2025.2.3) (Version: 252.26830.99 - JetBrains s.r.o.)
PyCharm Community Edition 2025.1.3.1 (HKLM-x32\...\PyCharm Community Edition 2025.1.3.1) (Version: 251.26927.90 - JetBrains s.r.o.)
Python 3.13.7 (64-bit) (HKU\S-1-5-21-3829043792-2434836364-2020864886-1001\...\{9a46f6d0-8f11-4f8f-a23d-d617db01bbb6}) (Version: 3.13.7150.0 - Python Software Foundation)
Python 3.13.7 Add to Path (64-bit) (HKLM\...\{235C9435-3313-4658-881D-5A7E559A5A41}) (Version: 3.13.7150.0 - Python Software Foundation) Hidden
Python 3.13.7 Core Interpreter (64-bit) (HKLM\...\{BE75E968-78F4-411D-92E4-73EC3043F7E4}) (Version: 3.13.7150.0 - Python Software Foundation) Hidden
Python 3.13.7 Development Libraries (64-bit) (HKLM\...\{96A23710-E014-4A5B-96A1-DE64AC37251B}) (Version: 3.13.7150.0 - Python Software Foundation) Hidden
Python 3.13.7 Documentation (64-bit) (HKLM\...\{CFAAA24B-16EF-4D9D-80A5-F67798771571}) (Version: 3.13.7150.0 - Python Software Foundation) Hidden
Python 3.13.7 Executables (64-bit) (HKLM\...\{E4047598-558F-4468-8B53-9FCEF7F86E0D}) (Version: 3.13.7150.0 - Python Software Foundation) Hidden
Python 3.13.7 pip Bootstrap (64-bit) (HKLM\...\{CD31E178-F872-466B-A231-9C8AA53A89FD}) (Version: 3.13.7150.0 - Python Software Foundation) Hidden
Python 3.13.7 Standard Library (64-bit) (HKLM\...\{A139F43E-8105-465D-AC80-28F349CBE08D}) (Version: 3.13.7150.0 - Python Software Foundation) Hidden
Python 3.13.7 Tcl/Tk Support (64-bit) (HKLM\...\{A65B1339-6492-4CA4-AEB5-2B25A83A20B9}) (Version: 3.13.7150.0 - Python Software Foundation) Hidden
Python 3.13.7 Test Suite (64-bit) (HKLM\...\{6BD2B618-9A2B-47D9-B24B-2F05BD2768E4}) (Version: 3.13.7150.0 - Python Software Foundation) Hidden
Python Launcher (HKLM-x32\...\{8B8DEA15-D815-4CB1-AC10-4E7713F3DFA0}) (Version: 3.13.7150.0 - Python Software Foundation)
Realtek Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.9865.1 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.74.1128.2024 - Realtek)
SDK ARM Additions (HKLM-x32\...\{4392AB59-ABB1-2E5F-21DF-0029512F36DD}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
SDK ARM Redistributables (HKLM-x32\...\{EFF45DAA-D9C6-D242-802F-64D01D664406}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
TeamViewer (HKLM\...\TeamViewer) (Version: 15.73.5 - TeamViewer)
Telegram Desktop (HKU\S-1-5-21-3829043792-2434836364-2020864886-1001\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 6.4.2 - Telegram FZ-LLC)
Universal CRT Extension SDK (HKLM-x32\...\{2D78CDCA-CE1A-6007-089C-E09908F8B1FD}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Universal CRT Headers Libraries and Sources (HKLM-x32\...\{6D7ACCE0-E08A-78C8-2EF5-63E9FAEA185C}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Universal CRT Redistributable (HKLM-x32\...\{0460C87B-7F4C-3170-FAC9-B7A6AE5CE4E9}) (Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal CRT Redistributable (HKLM-x32\...\{8FB7909F-7079-FECC-1A06-B90A324C11E9}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Universal CRT Tools x64 (HKLM\...\{099178C3-9374-7477-8D34-B28BC8FC5488}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Universal CRT Tools x86 (HKLM-x32\...\{FC8CD9CE-8902-BB8D-F832-B33100439483}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Universal General MIDI DLS Extension SDK (HKLM-x32\...\{D2C85BA9-DA49-E2D5-D4C2-351C6C2C616F}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Update for Windows 10 for x64-based Systems (KB4480730) (HKLM\...\{0746492E-47B6-4251-940C-44462DFD74BB}) (Version: 2.55.0.0 - Microsoft Corporation)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{B8D93870-98D1-4980-AFCA-E26563CDFB79}) (Version: 8.94.0.0 - Microsoft Corporation)
vcpp_crt.redist.clickonce (HKLM-x32\...\{E8AEE8FD-FE10-47FD-9B4A-5BE74520F95E}) (Version: 14.29.30157 - Microsoft Corporation) Hidden
Verbatim_SureFireGaming_Product (HKLM\...\{35CB65C6-A7E3-4EE7-AD40-738D70A72164}) (Version: 1.0.3.11 - Verbatim) Hidden
Verbatim_SureFireGaming_Product (HKLM-x32\...\{d601832a-0d94-46ce-9b19-78e8a5887313}) (Version: 1.0.3.11 - Verbatim) Hidden
Visual Studio Build Tools 2019 (HKLM-x32\...\b133f59b) (Version: 16.11.51 - Microsoft Corporation)
vs_FileTracker_Singleton (HKLM-x32\...\{AB0010C0-CA62-40C7-BDED-DB2514BDCF19}) (Version: 16.11.34827 - Microsoft Corporation) Hidden
WD P40 Game Drive (HKLM\...\{EE55DBAE-ECDD-4ADD-AAB5-23DE848B0996}) (Version: 1.0.2.18 - Western Digital Corporation) Hidden
WD P40 Game Drive (HKLM-x32\...\{72b1a866-fc31-4381-bff3-fa6cd8823777}) (Version: 1.0.2.18 - Western Digital Corporation) Hidden
WD_BLACK AN1500 (HKLM\...\{085E2365-0A70-4230-B664-02D5E4FE7E9C}) (Version: 1.0.12.0 - ENE TECHNOLOGY INC.) Hidden
WD_BLACK AN1500 (HKLM-x32\...\{9c94735f-73fd-4b0f-9ddb-8be7b3cc4681}) (Version: 1.0.12.0 - ENE TECHNOLOGY INC.) Hidden
WD_BLACK D50 (HKLM\...\{BDE43F26-5917-44F8-B86A-F1D9A6B80B32}) (Version: 1.0.9.0 - ENE TECHNOLOGY INC.) Hidden
WD_BLACK D50 (HKLM-x32\...\{a1d1ba00-92b7-4a99-8ebd-65b25c0e9e44}) (Version: 1.0.9.0 - ENE TECHNOLOGY INC.) Hidden
WinAppDeploy (HKLM-x32\...\{532B792A-577A-C684-3BE0-8266D973A314}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windhawk v1.7.3 (HKLM-x32\...\Windhawk) (Version: 1.7.3 - Ramen Software)
Windows App Certification Kit Native Components (HKLM\...\{524581F7-19EF-7567-B516-028842672D5C}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows App Certification Kit SupportedApiList x86 (HKLM-x32\...\{2FC6E546-6997-84F3-1877-1F91046B81E1}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows App Certification Kit x64 (HKLM-x32\...\{F814F02A-ECCD-2CB1-EB70-1E330C810521}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows Desktop Extension SDK (HKLM-x32\...\{16E355AC-58E7-65EE-794A-96ACB540AEA1}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows Desktop Extension SDK Contracts (HKLM-x32\...\{D721DCB8-0930-F41C-6110-A00C41A0D32C}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows IoT Extension SDK (HKLM-x32\...\{12A505CB-AA40-378D-854F-E2CF6A7FF75F}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows IoT Extension SDK Contracts (HKLM-x32\...\{C3D2FB47-9403-6F43-621C-5E5141B41EDA}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows Mobile Extension SDK (HKLM-x32\...\{D97824BC-1F9C-9A98-A458-5B0D06ECB755}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows Mobile Extension SDK Contracts (HKLM-x32\...\{DF4C943F-A46A-E489-69CE-189C54B0487E}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK (HKLM-x32\...\{D0CDB467-54EA-52D0-C1EC-B0D8323015B0}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK AddOn (HKLM-x32\...\{E63F47A7-9DBA-4154-A52F-36653BFB4028}) (Version: 10.1.0.0 - Microsoft Corporation)
Windows SDK ARM Desktop Tools (HKLM-x32\...\{FB88CFF1-D06D-72C3-0887-53277E92DAD2}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Headers arm (HKLM-x32\...\{8BE03D0F-0D5D-67F0-B04C-EC13A64C4BAC}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Headers arm64 (HKLM-x32\...\{27B3D59D-9D54-3EA4-4CCE-AE5E57918284}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Headers x64 (HKLM-x32\...\{A3B7C26F-BE21-6D16-77CA-BD5F1394A538}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Headers x86 (HKLM-x32\...\{A309246D-0781-212D-1424-4A6505425A44}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Libs arm (HKLM-x32\...\{CE78C7EF-312F-35EB-82F9-FDC326F08658}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Libs arm64 (HKLM-x32\...\{CA8A9642-147B-190E-76A3-87A23B97ADF9}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Libs x64 (HKLM-x32\...\{E22D77C1-306A-C916-15A0-08189F27E575}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Libs x86 (HKLM-x32\...\{842FBFC4-CCCC-6799-1998-17DED2BCE174}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Tools arm64 (HKLM-x32\...\{2825810D-881C-9FBB-7836-B0117552064F}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Tools x64 (HKLM-x32\...\{2A0C6A0D-A8A7-89B6-AA43-B5DF54E1E837}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Tools x86 (HKLM-x32\...\{0A2BCE78-63A3-9F82-AD76-17C310B3EAEF}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK DirectX x64 Remote (HKLM\...\{61CAE9AB-D59A-4180-FBD1-9DE7046D0BCF}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK DirectX x86 Remote (HKLM-x32\...\{8D87E449-DE1F-375B-D142-5391C06ED75C}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK EULA (HKLM-x32\...\{E2037558-0217-B40C-F00C-07FDBB82347B}) (Version: 10.1.19041.5609 - Microsoft Corporations) Hidden
Windows SDK Facade Windows WinMD Versioned (HKLM-x32\...\{DE56820F-73F3-83D6-DA12-CEF0E7585FDD}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK for Windows Store Apps (HKLM-x32\...\{778D640A-21E7-0A4A-0FB6-7C6F7FA4FDC2}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK for Windows Store Apps Contracts (HKLM-x32\...\{911F65D7-229E-FDF5-2CDC-7A778E965FAB}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK for Windows Store Apps DirectX x86 Remote (HKLM-x32\...\{AF19AD5B-2DF6-9862-B161-26B5BDB6D8EE}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK for Windows Store Apps Headers (HKLM-x32\...\{9AE69F25-AAA9-19CA-A490-FD002EF55FB0}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK for Windows Store Apps Libs (HKLM-x32\...\{8A69A3F8-0D09-7AEC-714B-21F63FD4F131}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK for Windows Store Apps Metadata (HKLM-x32\...\{80A87973-098D-8903-956C-3244FC0461A1}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK for Windows Store Apps Tools (HKLM-x32\...\{A8E49937-CC70-12A0-8B88-22A2AE629655}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK for Windows Store Managed Apps Libs (HKLM-x32\...\{EDD486C3-91EA-0B4E-2618-4F4885CC6945}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Modern Non-Versioned Developer Tools (HKLM-x32\...\{77E28521-C063-BF41-60C0-0140F5C2F811}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Modern Versioned Developer Tools (HKLM-x32\...\{6293EB7C-9B82-5D3F-016A-87D94E8C8E85}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Redistributables (HKLM-x32\...\{44C9B7CF-544B-6C2D-0AA9-DBABEE0A1D7B}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Signing Tools (HKLM-x32\...\{2BCF4E86-E0B2-C9E0-10DC-26935253CF3D}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows Software Development Kit - Windows 10.0.19041.5609 (HKLM-x32\...\{5f4dc51d-f151-4325-8ba1-8b26169529a9}) (Version: 10.1.19041.5609 - Microsoft Corporation)
Windows Team Extension SDK (HKLM-x32\...\{A5B25F16-0699-7F93-9154-D749B6037381}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows Team Extension SDK Contracts (HKLM-x32\...\{47B777FC-0E69-8326-B50D-FEAB5995B4D6}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
WinRAR 7.00 (64-bit) (HKLM\...\WinRAR archiver) (Version: 7.00.0 - win.rar GmbH)
WinRT Intellisense Desktop - en-us (HKLM-x32\...\{78F26630-7E77-27FD-1780-651E8B0EF32A}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
WinRT Intellisense Desktop - Other Languages (HKLM-x32\...\{2D57E5F2-DE65-816E-0AB4-58E046C34205}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - en-us (HKLM-x32\...\{D09F9C76-321B-88B7-316B-E655F86BDB37}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - Other Languages (HKLM-x32\...\{EC30B4D9-09E0-D607-CA2D-05EFE8F39C53}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
WinRT Intellisense Mobile - en-us (HKLM-x32\...\{0C75EFBC-6D0C-7516-AE74-4F9FADE79EA2}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - en-us (HKLM-x32\...\{ED40E403-CBE8-0CA3-5662-E8859CBFA1C0}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - Other Languages (HKLM-x32\...\{EE47B659-7AF5-9302-D4A4-3204070DB9C6}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - en-us (HKLM-x32\...\{17FAE644-5409-EA4F-91AE-B4F213FB087B}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - Other Languages (HKLM-x32\...\{B9369888-3610-E674-C077-322D40A10123}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Packages:
=========
@{MicrosoftWindows.57242383.Tasbar_1000.26100.7309.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.57242383.Tasbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.57242383.Tasbar_cw5n1h2txyewy [2026-01-14] (Microsoft Windows)
@{MicrosoftWindows.57242383.Tasbar_1000.26100.7462.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.57242383.Tasbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.57242383.Tasbar_cw5n1h2txyewy [2026-01-14] (Microsoft Windows)
@{MicrosoftWindows.58683691.InpApp_1000.26100.6899.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.58683691.InpApp/Resources/ProductPkgDisplayName} -> C:\Windows\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-12-02] ()
@{MicrosoftWindows.58683691.InpApp_1000.26100.7019.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.58683691.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-12-02] ()
@{MicrosoftWindows.59379618.InpApp_1000.26100.7019.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.59379618.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.59379618.InpApp_cw5n1h2txyewy [2026-01-14] (Microsoft Windows)
@{MicrosoftWindows.59379618.InpApp_1000.26100.7171.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.59379618.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.59379618.InpApp_cw5n1h2txyewy [2026-01-14] (Microsoft Windows)
@{MicrosoftWindows.59379618.InpApp_1000.26100.7309.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.59379618.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.59379618.InpApp_cw5n1h2txyewy [2026-01-14] (Microsoft Windows)
@{MicrosoftWindows.59379618.InpApp_1000.26100.7462.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.59379618.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.59379618.InpApp_cw5n1h2txyewy [2026-01-14] (Microsoft Windows)
Balíček prostředí funkcí systému Windows -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.57242383.Tasbar_cw5n1h2txyewy [2026-01-14] (Microsoft Windows)
Balíček prostředí funkcí systému Windows -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.59379618.InpApp_cw5n1h2txyewy [2026-01-14] (Microsoft Windows)
Boom 3D -> C:\Program Files\WindowsApps\GlobalDelightTechnologies.Boom3D_2.0.1.0_x64__b7pwcagxvespy [2026-01-15] (Global Delight Technologies Pvt. Ltd.) [Startup Task]
Disney+ -> C:\Program Files\WindowsApps\Disney.37853FC22B2CE_2024.3.211.0_neutral__6rarf9sa4v8jt [2025-11-12] (Disney)
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.27.6410.0_x64__rz1tebttyb220 [2026-01-15] (Dolby Laboratories)
Intel® Graphics Software -> C:\Program Files\WindowsApps\AppUp.IntelArcSoftware_25.44.2010.0_x64__8j3eq9eme6ctt [2025-12-31] (INTEL CORP)
Local AI Manager for Microsoft 365 -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\AI [2026-01-24] ()
Microsoft.Office.ActionsServer -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\ActionsServer [2026-01-24] ()
MSI Center -> C:\Program Files\WindowsApps\9426MICRO-STARINTERNATION.MSICenter_2.0.64.0_x64__kzh8wxbdkxb8p [2025-12-26] (MICRO-STAR INTERNATIONAL CO., LTD) [Startup Task]
MSI Game Bar -> C:\Program Files\WindowsApps\9426MICRO-STARINTERNATION.MSIGameBar_3.0.27.0_x64__kzh8wxbdkxb8p [2025-11-12] (MICRO-STAR INTERNATIONAL CO., LTD)
Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_7.0.8.0_neutral__mcm4njqhnhss8 [2025-11-12] (Netflix, Inc.)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.969.0_x64__56jybvy8sckqj [2025-11-12] (NVIDIA Corp.)
OfficePushNotificationsUtility -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16 [2026-01-24] ()
Ovládací centrum grafiky Intel® -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt [2025-11-12] (INTEL CORP) [Startup Task]
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.53.374.0_x64__dt26b99r8h8gj [2025-11-12] (Realtek Semiconductor Corp)
Tube Audio Pro - Audio Downloader -> C:\Program Files\WindowsApps\14184MeetmeXMTechnologyCo.TubeAudioPro-AudioDownlo_3.1.1.0_x64__8712n5bmjvf8t [2026-01-11] (MeetmeXM Technology Co., Ltd)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{1C67DF85-7959-43C0-92F8-2CAD0314C31C}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.201.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{2B49DB21-41C5-44C0-8358-CA4C76205AE1}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.209.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{448DD314-7FBB-429C-9DAA-C05A00D235A8}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.215.9\psuser_64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{47E6DCAF-41F8-441C-BD0E-A50D5FE6C4D1}\localserver32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\OneDrive\25.238.1204.0001_1\OneDrive.Sync.Service.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{5247F326-2FF0-4920-998E-12AA35F0883C}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.213.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{5EA43877-C6D8-4885-B77A-C0BB27E94372}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.215.9\psuser_64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{6A49690B-7DB6-424B-81CE-F51078F2A58D}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.203.13\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{81093D63-7825-417B-BFC8-ADC63FA4E53D}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.215.9\psuser_64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{917E8742-AA3B-7318-FA12-10485FB322A2}\localserver32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\OneDrive\25.238.1204.0001_1\OneDrive.Sync.Service.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{9C391760-8CB8-4F1E-AB7D-0C9915EFB004}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.211.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{A78355B5-2A4D-486B-B97A-43448FC8C34D}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.207.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{BB04C6F8-598E-4733-ABB4-07489C863436}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.205.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{EABAE40C-B27C-455A-B672-F234DD780948}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\TeamsMeetingAdd-in\1.25.24601\x64\Microsoft.Teams.MeetingAddin.DLL (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{ECCE2756-C45D-4E13-BC2D-EC9F138997E6}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.199.11\psuser_64.dll => No File
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-12-22] (Gen Digital Inc. -> Gen Digital Inc.)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-12-22] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-12-22] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers1: [Avast Cleanup Premium] -> {13004120-FCAF-4232-A255-807EAD6E7D01} => C:\Program Files\Avast Software\Cleanup\tucontextmenu.dll [2025-12-17] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2024-02-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2024-02-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-12-22] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers4: [Avast Cleanup Premium] -> {13004120-FCAF-4232-A255-807EAD6E7D01} => C:\Program Files\Avast Software\Cleanup\tucontextmenu.dll [2025-12-17] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_7840b4313191ae17\nvshext.dll [2025-12-31] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-12-22] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers6: [Avast Cleanup Premium] -> {13004120-FCAF-4232-A255-807EAD6E7D01} => C:\Program Files\Avast Software\Cleanup\tucontextmenu.dll [2025-12-17] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2024-02-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2024-02-26] (win.rar GmbH -> Alexander Roshal)
==================== Codecs (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Drivers32: [MidisrvTransferComplete] => 0
==================== Shortcuts & WMI ========================
==================== Loaded Modules (Whitelisted) =============
2025-12-17 20:52 - 2025-12-17 20:52 - 002149888 _____ () [File not signed] C:\ProgramData\Windhawk\Engine\Mods\32\libc++.whl
2025-12-17 20:52 - 2025-12-17 20:52 - 000220672 _____ () [File not signed] C:\ProgramData\Windhawk\Engine\Mods\32\libunwind.whl
2026-01-10 20:52 - 2026-01-10 20:52 - 000240128 _____ () [File not signed] C:\ProgramData\Windhawk\Engine\Mods\32\translucent-windows_1.7.2_227639.dll
2025-10-30 17:39 - 2025-12-17 20:52 - 002110976 _____ () [File not signed] C:\ProgramData\Windhawk\Engine\Mods\64\libc++.whl
2025-10-30 17:39 - 2025-12-17 20:52 - 000216064 _____ () [File not signed] C:\ProgramData\Windhawk\Engine\Mods\64\libunwind.whl
2025-12-18 14:12 - 2025-12-18 14:12 - 000107520 _____ () [File not signed] C:\ProgramData\Windhawk\Engine\Mods\64\taskbar-volume-control_1.2.2_319954.dll
2026-01-10 20:52 - 2026-01-10 20:52 - 000230912 _____ () [File not signed] C:\ProgramData\Windhawk\Engine\Mods\64\translucent-windows_1.7.2_227639.dll
2025-12-17 20:56 - 2025-12-17 20:56 - 000841728 _____ () [File not signed] C:\ProgramData\Windhawk\Engine\Mods\64\windows-11-file-explorer-styler_1.2.2_423856.dll
2025-12-17 21:03 - 2025-12-17 21:03 - 000921600 _____ () [File not signed] C:\ProgramData\Windhawk\Engine\Mods\64\windows-11-notification-center-styler_1.3.3_953363.dll
2025-12-17 21:01 - 2025-12-17 21:01 - 001315328 _____ () [File not signed] C:\ProgramData\Windhawk\Engine\Mods\64\windows-11-start-menu-styler_1.3.3_462503.dll
2025-12-17 21:02 - 2025-12-17 21:02 - 001175040 _____ () [File not signed] C:\ProgramData\Windhawk\Engine\Mods\64\windows-11-taskbar-styler_1.5.2_617531.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\GROOVEEX.DLL [2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2017-09-29 14:46 - 2017-09-29 14:44 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
==================== Network ===========================
(Currently there is no automatic fix for this section.)
DNS Servers: 192.168.0.1
Windows Firewall is enabled.
Network Binding:
=============
Wi-Fi: Intel(R) Wi-Fi 6E AX211 160MHz -> Netwtw14.sys
Síťové připojení Bluetooth: Bluetooth Device (Personal Area Network) -> bthpan.sys
Ethernet: Realtek Gaming 2.5GbE Family Controller -> rt25cx21x64.sys
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Python313\Scripts\;C:\Python313\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\dotnet\;C:\ProgramData\chocolatey\bin;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\nodejs\;C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Node.js
HKU\S-1-5-21-3829043792-2434836364-2020864886-1001\Control Panel\Desktop\\Wallpaper -> c:\users\matti.sin\appdata\local\packages\microsoft.windows.photos_8wekyb3d8bbwe\localstate\photosappbackground\774418072505.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Users\Matti.sin\AppData\Local\JetBrains\PyCharmCE2025.1
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Users\Matti.sin\PycharmProjects\PythonProject
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\Run32: => "Dropbox"
HKU\S-1-5-21-3829043792-2434836364-2020864886-1001\...\StartupApproved\Run: => "Mozilla-Firefox-308046B0AF4A39CB"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{44179D52-6A66-4214-A1D6-D2D3D57176F6}] => (Allow) C:\Program Files\Avast Software\Driver Updater\DriverUpdUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{0A566E87-3908-4E23-9177-82CF5F2D95B4}] => (Allow) C:\Program Files\Avast Software\Driver Updater\DriverUpdUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{3227A0A3-DC91-402D-8002-A6E56F37344E}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{4EFBB1C8-FDC2-4513-9171-6E0E65FB36EE}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{70777F4C-AD6D-4E43-8EE3-8B866AB1CECB}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{C1A340F8-B272-427A-ABEA-76CD9EE21237}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{A0D1E683-048C-4194-A08B-9DC10FFBB0D6}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{243AB248-84E7-4DD8-9A32-13819CD7ED0F}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{430F39F3-48AA-4EF3-B4AE-4BE00DFABD1E}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{6867D2AF-AD68-48B1-A965-CACC8B7B83AC}] => (Allow) C:\Program Files\Avast Software\SecureLine VPN\Vpn.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{8279D8C9-6BDA-4B3A-ADC3-6B720FB1BBA1}] => (Allow) C:\Program Files\Avast Software\SecureLine VPN\Vpn.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{FD6E6CFA-43FA-4D0F-B1B6-4E0B324B5364}] => (Allow) C:\Program Files\Avast Software\Cleanup\TuneupUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{3439C728-1B6B-452F-9864-E150DD9B2D63}] => (Allow) C:\Program Files\Avast Software\Cleanup\TuneupUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{3D599532-DAE7-440C-8DA9-567470A37BE3}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{781DBBC3-FF6C-4F69-83E2-278423DB6DF6}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{A5549D9E-47A4-481B-A6AA-7C641EB84A05}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{959AC464-DED5-43F9-BCD9-ED65F0A50009}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{D31EC343-9CC7-4EB8-844D-99D67F7EA457}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{9C450D84-8E3A-40A0-A8F0-AD7D00CA200E}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{36BC9C4C-4233-4D70-941F-884C02C4F49D}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{61C3DC16-A80C-48F8-A3A1-F56CEF5B5A7A}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{D3ADE778-48D2-49ED-82F7-9F943633F884}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{F2841BBA-E5C1-4521-9468-C5C3149FC0A2}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{559A14B1-44C5-47D8-80EA-3C678DEE2503}] => (Allow) C:\Program Files\WindowsApps\MSTeams_26005.204.4249.1621_x64__8wekyb3d8bbwe\ms-teams_modulehost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{B9859974-B6DA-404A-BEC6-6D9FEA181022}] => (Allow) C:\Program Files\WindowsApps\MSTeams_26005.204.4249.1621_x64__8wekyb3d8bbwe\ms-teams_modulehost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{34C052DE-57F7-4605-991F-365C148971A8}] => (Allow) C:\Program Files\WindowsApps\MSTeams_26005.204.4249.1621_x64__8wekyb3d8bbwe\ms-teams_modulehost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{BD08CC9D-2F04-47E7-A8E8-68F2A2E6A844}] => (Allow) C:\Program Files\WindowsApps\MSTeams_26005.204.4249.1621_x64__8wekyb3d8bbwe\ms-teams_modulehost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{552792E3-93FA-412F-9D7D-3DB80527A450}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{7C319032-EC20-4A15-AFCF-18AECFBC2585}] => (Allow) LPort=32683
FirewallRules: [{4A667A63-6654-4D2E-A9CC-05A687FD9441}] => (Allow) LPort=33683
FirewallRules: [{FCABB2D2-9705-4359-826D-5B2C4EF7C37A}] => (Allow) LPort=26822
==================== Restore Points =========================
19-01-2026 20:58:37 Avast Driver Updater Restore Point
22-01-2026 21:39:25 Avast Driver Updater Restore Point
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (01/24/2026 11:34:47 AM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 25188. ID zprávy: [0x2509].
Error: (01/24/2026 11:30:58 AM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 27224. ID zprávy: [0x2509].
Error: (01/23/2026 05:46:51 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 13084. ID zprávy: [0x2509].
Error: (01/23/2026 04:20:04 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 29972. ID zprávy: [0x2509].
Error: (01/23/2026 03:50:21 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 5884. ID zprávy: [0x2509].
Error: (01/23/2026 03:46:25 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 35512. ID zprávy: [0x2509].
Error: (01/23/2026 03:46:16 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 35772. ID zprávy: [0x2509].
Error: (01/23/2026 12:47:14 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 18636. ID zprávy: [0x2509].
System errors:
=============
Error: (01/23/2026 07:55:06 PM) (Source: DCOM) (EventID: 10010) (User: MATTI-SIN)
Description: Server {6FA05A24-B1DF-4155-909E-7B424F2D2BB5} se v daném časovém limitu neregistroval u služby DCOM.
Error: (01/23/2026 05:42:08 PM) (Source: DCOM) (EventID: 10010) (User: MATTI-SIN)
Description: Server {6FA05A24-B1DF-4155-909E-7B424F2D2BB5} se v daném časovém limitu neregistroval u služby DCOM.
Error: (01/23/2026 05:42:07 PM) (Source: DCOM) (EventID: 10010) (User: MATTI-SIN)
Description: Server {6FA05A24-B1DF-4155-909E-7B424F2D2BB5} se v daném časovém limitu neregistroval u služby DCOM.
Error: (01/23/2026 05:42:07 PM) (Source: DCOM) (EventID: 10010) (User: MATTI-SIN)
Description: Server {6FA05A24-B1DF-4155-909E-7B424F2D2BB5} se v daném časovém limitu neregistroval u služby DCOM.
Error: (01/22/2026 08:01:55 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80073d02): 9NMPJ99VJBWV-Microsoft.YourPhone.
Error: (01/22/2026 08:01:43 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80073d02): 9PC1H9VN18CM-Microsoft.StartExperiencesApp.
Error: (01/20/2026 08:05:48 PM) (Source: DCOM) (EventID: 10010) (User: MATTI-SIN)
Description: Server {6FA05A24-B1DF-4155-909E-7B424F2D2BB5} se v daném časovém limitu neregistroval u služby DCOM.
Error: (01/20/2026 08:05:48 PM) (Source: DCOM) (EventID: 10010) (User: MATTI-SIN)
Description: Server {6FA05A24-B1DF-4155-909E-7B424F2D2BB5} se v daném časovém limitu neregistroval u služby DCOM.
Windows Defender:
================
Date: 2026-01-23 16:02:54
Description:
Antivirová ochrana v programu Microsoft Defender śсǻη ħдѕ ъэεή šтőρρéδ ьëƒόѓë ςσмрļєťíőň.%л %τŞčąη ĮÐ:%в{39C2C612-4A46-467D-A06E-6BE1BFD55870}%й %ŧŚčâń Τỳφε:%вAntimalwarový program%ń %ŧŜċăņ Ρдѓámĕťëяš:%ъRychlé prohledávání%π %ţÚѕêґ:%ьNT AUTHORITY\SYSTEM%ń %тŠŧõρ Ŕéāşôň:%ьŞĉĥеδũĺέđ şĉāⁿ ŵāѕ ŝĸïφрёď вëčάùśε ŧĥе ℓдśт ŝůĉčęśśƒűł ѕčåñ щāś ώϊţђĭи ŧĥě ℓàŝт 7 ďàŷѕ
Date: 2026-01-22 19:55:13
Description:
Antivirová ochrana v programu Microsoft Defender śсǻη ħдѕ ъэεή šтőρρéδ ьëƒόѓë ςσмрļєťíőň.%л %τŞčąη ĮÐ:%в{54D67AE4-D4CF-48AD-89F1-75A4992A0EA9}%й %ŧŚčâń Τỳφε:%вAntimalwarový program%ń %ŧŜċăņ Ρдѓámĕťëяš:%ъRychlé prohledávání%π %ţÚѕêґ:%ьNT AUTHORITY\SYSTEM%ń %тŠŧõρ Ŕéāşôň:%ьŞĉĥеδũĺέđ şĉāⁿ ŵāѕ ŝĸïφрёď вëčάùśε ŧĥе ℓдśт ŝůĉčęśśƒűł ѕčåñ щāś ώϊţђĭи ŧĥě ℓàŝт 7 ďàŷѕ
Date: 2026-01-19 19:21:18
Description:
Antivirová ochrana v programu Microsoft Defender śсǻη ħдѕ ъэεή šтőρρéδ ьëƒόѓë ςσмрļєťíőň.%л %τŞčąη ĮÐ:%в{0F862472-488D-4536-AFD2-DAC996DD7758}%й %ŧŚčâń Τỳφε:%вAntimalwarový program%ń %ŧŜċăņ Ρдѓámĕťëяš:%ъRychlé prohledávání%π %ţÚѕêґ:%ьNT AUTHORITY\SYSTEM%ń %тŠŧõρ Ŕéāşôň:%ьŞĉĥеδũĺέđ şĉāⁿ ŵāѕ ŝĸïφрёď вëčάùśε ŧĥе ℓдśт ŝůĉčęśśƒűł ѕčåñ щāś ώϊţђĭи ŧĥě ℓàŝт 7 ďàŷѕ
Date: 2026-01-15 14:29:29
Description:
Antivirová ochrana v programu Microsoft Defender śсǻη ħдѕ ъэεή šтőρρéδ ьëƒόѓë ςσмрļєťíőň.%л %τŞčąη ĮÐ:%в{75436060-5172-47A8-9EED-0136F05531B7}%й %ŧŚčâń Τỳφε:%вAntimalwarový program%ń %ŧŜċăņ Ρдѓámĕťëяš:%ъRychlé prohledávání%π %ţÚѕêґ:%ьNT AUTHORITY\SYSTEM%ń %тŠŧõρ Ŕéāşôň:%ьŞĉĥеδũĺέđ şĉāⁿ ŵāѕ ŝĸïφрёď вëčάùśε ŧĥе ℓдśт ŝůĉčęśśƒűł ѕčåñ щāś ώϊţђĭи ŧĥě ℓàŝт 7 ďàŷѕ
Date: 2026-01-11 14:02:03
Description:
Antivirová ochrana v programu Microsoft Defender śсǻη ħдѕ ъэεή šтőρρéδ ьëƒόѓë ςσмрļєťíőň.%л %τŞčąη ĮÐ:%в{8236ED18-B1F7-4142-9285-6D6061E33E32}%й %ŧŚčâń Τỳφε:%вAntimalwarový program%ń %ŧŜċăņ Ρдѓámĕťëяš:%ъRychlé prohledávání%π %ţÚѕêґ:%ьNT AUTHORITY\SYSTEM%ń %тŠŧõρ Ŕéāşôň:%ьŞĉĥеδũĺέđ şĉāⁿ ŵāѕ ŝĸïφрёď вëčάùśε ŧĥе ℓдśт ŝůĉčęśśƒűł ѕčåñ щāś ώϊţђĭи ŧĥě ℓàŝт 7 ďàŷѕ
Event[0]
Date: 2025-11-12 22:58:32
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací a pokusí se o obnovení na předchozí verzi.
Bezpečnostní informace, které se měly načíst: Aktuální
Kód chyby: 0x80070003
Popis chyby: Systém nemůže nalézt uvedenou cestu.
Verze bezpečnostních informací: 0.0.0.0;0.0.0.0
Verze modulu: 0.0.0.0
Date: 2025-11-11 17:26:39
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.441.112.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.25100.9002
Kód chyby: 0x80072efd
Popis chyby: Spojení se serverem nebylo navázáno.
CodeIntegrity:
===============
Date: 2026-01-24 11:30:05
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Microsoft\EdgeWebView\Application\144.0.3719.82\msedgewebview2.exe) attempted to load \Device\HarddiskVolume4\Program Files\Windhawk\Engine\1.7.3_2\64\windhawk.dll that did not meet the Microsoft signing level requirements.
Date: 2026-01-24 11:29:57
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume4\Program Files\Windhawk\Engine\1.7.3_2\64\windhawk.dll that did not meet the Microsoft signing level requirements.
Date: 2026-01-24 11:28:03
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Windhawk\Engine\1.7.3_2\64\windhawk.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends International, LLC. H.C0 08/06/2025
Motherboard: Micro-Star International Co., Ltd. B760 GAMING PLUS WIFI (MS-7D98)
Processor: Intel(R) Core(TM) i5-14500
Percentage of memory in use: 16%
Total physical RAM: 65252.23 MB
Available physical RAM: 54644.97 MB
Total Virtual: 69348.23 MB
Available Virtual: 57622.33 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:930.12 GB) (Free:790.57 GB) (Model: WD_BLACK SN7100 1TB) NTFS
Drive e: (Data) (Fixed) (Total:931.39 GB) (Free:744.2 GB) (Model: WDC WD10EZEX-08WN4A0) NTFS
Drive f: (Rezervováno systémem) (Fixed) (Total:0.54 GB) (Free:0.5 GB) (Model: Samsung SSD 840 PRO Series) NTFS ==>[system with boot components (obtained from drive)]
Drive g: () (Fixed) (Total:237.4 GB) (Free:108.71 GB) (Model: Samsung SSD 840 PRO Series) NTFS
\\?\Volume{29679bec-bb55-41ae-9fc8-dd72863c66c7}\ () (Fixed) (Total:0 GB) (Free:0 GB)
\\?\Volume{58942f35-6142-4f47-8069-f817670c75fc}\ (Obnovení) (Fixed) (Total:0.49 GB) (Free:0.14 GB) NTFS
\\?\Volume{52b765f2-3ac3-4ad1-993c-eaaf04e0b674}\ () (Fixed) (Total:0.79 GB) (Free:0.12 GB) NTFS
\\?\Volume{5da774ee-0000-0000-0000-507c3b000000}\ () (Fixed) (Total:0.53 GB) (Free:0.08 GB) NTFS
\\?\Volume{d05b1c2e-8722-4f74-9d9b-3313f9818978}\ () (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 80B49758)
Partition: GPT.
==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 238.5 GB) (Disk ID: 5DA774EE)
Partition 1: (Active) - (Size=548 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=237.4 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=543 MB) - (Type=27)
==========================================================
Disk: 2 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000)
Partition: GPT.
==================== End of Addition.txt =======================
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 22-01-2026
Ran by Matti.sin (administrator) on MATTI-SIN (Micro-Star International Co., Ltd. MS-7D98) (24-01-2026 11:35:41)
Running from C:\Users\Matti.sin\Desktop\FRST64.exe
Loaded Profiles: Matti.sin
Platform: Microsoft Windows 11 Pro Version 25H2 26200.7623 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(A225F3B5-240D-4EE9-BCF4-697A07F5E93E -> Micro-Star INT'L CO., LTD.) C:\Program Files\WindowsApps\9426MICRO-STARINTERNATION.MSICenter_2.0.64.0_x64__kzh8wxbdkxb8p\DCv2\DCv2.exe
(C:\Program Files (x86)\MSI\MSI Center\MSI.CentralServer.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Program Files (x86)\MSI\MSI Center\Engine\CC_Engine_x64.exe
(C:\Program Files (x86)\MSI\MSI Center\MSI_Central_Service.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\MSI.CentralServer.exe
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\AppVShNotify.exe
(C:\Program Files\Mozilla Firefox\firefox.exe ->) (Mozilla Corporation -> Mozilla Foundation) C:\Program Files\Mozilla Firefox\crashhelper.exe
(C:\Program Files\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> ) C:\Program Files\TeamViewer\crashpad_handler.exe
(C:\Program Files\WindowsApps\AppUp.IntelArcSoftware_25.44.2010.0_x64__8j3eq9eme6ctt\VFS\ProgramFilesX64\Intel\Intel Graphics Software\IntelGraphicsSoftware.Service.exe ->) (EB51A5DA-0E72-4863-82E4-EA21C1F8DFE3 -> Intel(R) Corporation) C:\Program Files\WindowsApps\AppUp.IntelArcSoftware_25.44.2010.0_x64__8j3eq9eme6ctt\VFS\ProgramFilesX64\Intel\Intel Graphics Software\PresentMonService.exe
(C1D09E0B-E536-446C-B344-2F500D733EAA -> ) C:\Program Files\WindowsApps\GlobalDelightTechnologies.Boom3D_2.0.1.0_x64__b7pwcagxvespy\Boom3D\Boom3D.exe
(explorer.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\SecureLine VPN\Vpn.exe <3>
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5>
(Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastUI.exe <4>
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Matti.sin\AppData\Local\Microsoft\OneDrive\25.238.1204.0001_1\OneDrive.Sync.Service.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <32>
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (EB51A5DA-0E72-4863-82E4-EA21C1F8DFE3 -> Intel Corporation) C:\Program Files\WindowsApps\AppUp.IntelArcSoftware_25.44.2010.0_x64__8j3eq9eme6ctt\VFS\ProgramFilesX64\Intel\Intel Graphics Software\IntelGraphicsSoftware.Service.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\afwServ.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Driver Updater\DriverUpdSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\SecureLine VPN\VpnSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_5384aa165a2c7217\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\msiexec.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MsMpEng.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI Center\Case\MSI_Case_Service.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\MSI_Central_Service.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LightKeeperService.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\Mystic Light\Mystic_Light_Service.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_7840b4313191ae17\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Open Source Developer, Michael Maltsev -> Ramen Software) C:\Program Files\Windhawk\windhawk.exe <2>
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_7e93164ae8ff6bf7\RtkAudUService64.exe <2>
(services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.218.0.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\Matti.sin\AppData\Local\Microsoft\OneDrive\25.238.1204.0001_1\FileCoAuth.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SppExtComObj.Exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\Packages\Preview\amd64\MoUsoCoreWorker.exe
(svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> ) C:\Program Files (x86)\MSI\MSI Center\LAN Manager\MSI_LAN_Manager_Tool.exe
(svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\AI Engine\PowerModeWatcher.exe
(svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LEDKeeper2.exe
(svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.) C:\Program Files (x86)\MSI\MSI Center\True Color\New\MSI.True Color.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_7e93164ae8ff6bf7\RtkAudUService64.exe [3112448 2025-08-20] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [Avast Driver Updater UI] => C:\Program Files\Avast Software\Driver Updater\DriverUpdUI.exe [7353712 2025-12-17] (Gen Digital Inc. -> Gen Digital Inc.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [869032 2025-12-22] (Gen Digital Inc. -> Gen Digital Inc.)
HKLM\...\Run: [Avast Cleanup UI] => C:\Program Files\Avast Software\Cleanup\TuneupUI.exe [6908128 2026-01-15] (Gen Digital Inc. -> Gen Digital Inc.)
HKU\S-1-5-21-3829043792-2434836364-2020864886-1001\...\Run: [Microsoft Edge Update] => C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.215.9\MicrosoftEdgeUpdateCore.exe [277088 2025-12-22] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3829043792-2434836364-2020864886-1001\...\Run: [Mozilla-Firefox-308046B0AF4A39CB] => "C:\Program Files\Mozilla Firefox\firefox.exe" -os-autostart [680064 2026-01-19] (Mozilla Corporation -> Mozilla Corporation)
HKU\S-1-5-21-3829043792-2434836364-2020864886-1001\...\Run: [MicrosoftEdgeAutoLaunch_EBB60C441D2004E397F866701C0D90BF] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4314192 2026-01-16] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3829043792-2434836364-2020864886-1001\...\Run: [Teams] => C:\Users\Matti.sin\AppData\Local\Microsoft\WindowsApps\MSTeams_8wekyb3d8bbwe\ms-teams.exe [0 0] () [symlink -> ]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [2025-11-06] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\144.0.7559.97\Installer\chrmstp.exe [2026-01-23] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] ->
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Avast SecureLine VPN.lnk [2025-12-11]
ShortcutTarget: Avast SecureLine VPN.lnk -> C:\Program Files\Avast Software\SecureLine VPN\Vpn.exe (Gen Digital Inc. -> Gen Digital Inc.)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {4B1774D1-9853-4657-9AEE-6C5EB63971DD} - System32\Tasks\Avast Software\Avast Antivirus Patcher => C:\Program Files\Common Files\Avast Software\Icarus\avast-av\icarus.exe [9212640 2025-12-03] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {BDFEE5FD-453B-4A66-9FC2-68B0DD18D1DF} - System32\Tasks\Avast Software\Avast Cleanup BugReport => C:\Program Files\Avast Software\Cleanup\AvBugReport.exe [6201056 2026-01-15] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --silent --product 62 --programpath "C:\Program Files\Avast Software\Cleanup" --configpath "C:\ProgramData\Avast Software\Cleanup" --path "C:\ProgramData\Avast Software\Cleanup\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --logpath "C:\ProgramData\Avast Software\Cle (the data entry has 53 more characters).
Task: {04DB46A9-E128-4C90-AC37-9DAF1D65AFF3} - System32\Tasks\Avast Software\Avast Cleanup Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-tu\icarus.exe [9212640 2025-12-16] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {699604D7-FF71-42C1-B21D-FBACEA2B259A} - System32\Tasks\Avast Software\Avast Driver Updater BugReport => C:\Program Files\Avast Software\Driver Updater\AvBugReport.exe [6199664 2025-12-17] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --silent --product 148 --programpath "C:\Program Files\Avast Software\Driver Updater" --configpath "C:\ProgramData\Avast Software\Driver Updater" --path "C:\ProgramData\Avast Software\Driver Updater\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --logpath "C:\ProgramD (the data entry has 82 more characters).
Task: {31D49533-CE72-4EA5-BDFF-240F50A7CD9E} - System32\Tasks\Avast Software\Avast Driver Updater Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-du\icarus.exe [9212640 2025-12-04] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {734259EF-B952-4B70-AA6F-047F94FCDE6F} - System32\Tasks\Avast Software\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5601960 2025-12-22] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {D01E5A8C-5951-421D-B4D4-BF6678146A15} - System32\Tasks\Avast Software\Avast SecureLine VPN Bug Report => C:\Program Files\Avast Software\SecureLine VPN\AvBugReport.exe [6193832 2025-12-11] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --silent --product 11 --programpath "C:\Program Files\Avast Software\SecureLine VPN" --configpath "C:\ProgramData\Avast Software\SecureLine VPN" --path "C:\ProgramData\Avast Software\SecureLine VPN\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --logpath "C:\ProgramDat (the data entry has 80 more characters).
Task: {1D4C6284-220E-40E9-AFFB-BFDAECEC72A8} - System32\Tasks\Avast Software\Avast SecureLine VPN Emergency Update => C:\Program Files\Avast Software\SecureLine VPN\VpnUpdate.exe [3959464 2025-12-11] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {866C15B3-65CA-4BD6-A302-462DEC92B04A} - System32\Tasks\Avast Software\Avast SecureLine VPN Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-vpn\icarus.exe [9176800 2025-12-09] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {133C555C-1375-4204-87F2-737B5AA9F39F} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2977504 2025-09-30] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {80F64D38-C491-4DF5-9F28-0DDBB1138F0F} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem143.0.7482.0{F368862C-401B-44D5-AE5B-832B34E4C80E} => C:\Program Files (x86)\Google\GoogleUpdater\143.0.7482.0\updater.exe [6048408 2025-11-15] (Google LLC -> Google LLC)
Task: {F88ED0C5-84DA-4E00-B287-EF6559376FA6} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem144.0.7547.0{BDE99114-5EAE-4914-8408-C5E54022BB0A} => C:\Program Files (x86)\Google\GoogleUpdater\144.0.7547.0\updater.exe [6123160 2026-01-07] (Google LLC -> Google LLC)
Task: {86100DF2-535F-4CA9-9D9D-391FF30E4A1E} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\ActionsServer\ActionsServer.exe [16242992 2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {9712ADB0-B9B9-4326-A616-D393D1115EE7} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28636480 2026-01-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {DFDC1E70-FEEA-44A5-9051-49119F86570C} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\OFFICE16\opushutil.exe [73568 2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {63ECDF3F-3865-45FC-89B8-ECAA7D94DFFF} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28636480 2026-01-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {B32F1255-F555-484A-B4BA-0F1AFC717F1F} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [310560 2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {7808F121-BCFA-4FAB-A080-F1F1F64ED494} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [310560 2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {8362AC6D-4F2B-426D-8252-C56D90BA6EBF} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\operfmon.exe [1347320 2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {61A05AC5-6814-4419-BED9-C12FB855ADBD} - System32\Tasks\Microsoft\Office\Office Startup Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\ActionsServer\ActionsServer.exe [16242992 2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
Task: {B55A5FD5-D669-49D2-9F2A-03B2859A61B1} - System32\Tasks\Microsoft\Windows\Clip\ClipESU => %SystemRoot%\system32\clipesu.exe (No File)
Task: {152F5932-7466-4E43-8166-101C8F3CA535} - System32\Tasks\Microsoft\Windows\Clip\ClipESUConsumer => %SystemRoot%\system32\ClipESUConsumer.exe -evaluateEligibility (No File)
Task: {3DBC7719-A13E-43C5-9F70-021FDB4EC2EB} - System32\Tasks\Microsoft\Windows\Clip\ClipESUConsumerProcessECUpdate => %SystemRoot%\system32\ClipESUConsumer.exe -persistEligibilityStatus (No File)
Task: {847DF80D-C239-43D6-B77A-A7C4102A8BC4} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessPreOrder => %SystemRoot%\system32\ClipESUConsumer.exe -postProcessPreOrder (No File)
Task: {8D9ECCA9-2E65-4E5E-AC51-117F63FC051C} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessRefund => %SystemRoot%\system32\ClipESUConsumer.exe -processRefund (No File)
Task: {1B411846-7BB3-4510-A569-3B62BD8299D1} - System32\Tasks\Microsoft\Windows\Clip\EnableClipESU => %SystemRoot%\system32\clipesu.exe -e (No File)
Task: {DC58AE12-6541-42DC-A888-37A7299E1F35} - System32\Tasks\Microsoft\Windows\CUAssistant\CULauncher => %ProgramFiles%\CUAssistant\culauncher.exe (No File)
Task: {E88D9B2C-DDEA-47B2-9582-085153004DB5} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (No File)
Task: {D946EF0B-1404-4DDE-9489-4F6250EC22DE} - System32\Tasks\Microsoft\Windows\rempl\shell => %ProgramFiles%\rempl\sedlauncher.exe (No File)
Task: {6612C7A2-AFF7-40CD-BCA6-C27BC7374583} - System32\Tasks\Microsoft\Windows\Setup\PITRTask => {093cb270-c282-4c22-b2ea-7d2bf1c30bbf} C:\WINDOWS\system32\oobe\PITRTask.dll [118784 2025-12-02] (Microsoft Windows -> Microsoft Corporation)
Task: {CAB76809-EDC0-40D2-A888-AD9BEDF4E88A} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe (No File)
Task: {D0218C70-9C99-4043-BF17-667E1AE5C42E} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot => %systemroot%\system32\MusNotification.exe ReadyToReboot (No File)
Task: {32642DD6-71EA-458E-9A01-0ECF36A2ABC7} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog (No File)
Task: {784BBCC1-E9C5-48E1-B214-265B9D3125C7} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog (No File)
Task: {0634647D-9B9B-4C2B-B53C-F7C71F863618} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display => %systemroot%\system32\MusNotification.exe Display (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {6822C5F5-168D-4606-BEE4-204791535660} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {3769F0CB-09F0-45E2-A71C-0AE4698864F8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {55096348-E7FE-4F69-A1CC-C4C2960B33BE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {1BF0FB53-847D-4837-B131-BBD24B3D1024} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {4DC162FB-7B11-47F8-A9A0-EB404A175A9C} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3829043792-2434836364-2020864886-1001Core{059A352F-121E-46E6-B267-44D5F8AF947D} => C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [205920 2025-12-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {0516BC44-1593-4D6B-BC61-60AB2FC59321} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3829043792-2434836364-2020864886-1001UA{687FD920-17AD-4892-92A0-7A6806643A56} => C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [205920 2025-12-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {D981E505-1A07-468C-AFEE-271AE241ED89} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34944 2026-01-19] (Mozilla Corporation -> Mozilla Foundation)
Task: {881C6BFF-36A4-41F0-8215-CA19F1FB27DE} - System32\Tasks\MSI Task Host - LEDKeeper2_Host => C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LEDKeeper2.exe [3428504 2025-09-09] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
Task: {10214900-C2A7-4633-A75F-7C46FE7CE003} - System32\Tasks\OneDrive Startup Task-S-1-5-21-3829043792-2434836364-2020864886-1001 => C:\Users\Matti.sin\AppData\Local\Microsoft\OneDrive\25.238.1204.0001_1\OneDriveLauncher.exe [746856 2026-01-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {5C1C3733-D993-489D-B160-241E529374CA} - System32\Tasks\WindhawkRunUITask => C:\Program Files\Windhawk\windhawk.exe [835160 2025-12-17] (Open Source Developer, Michael Maltsev -> Ramen Software)
Task: {770BFC5D-F530-4DD0-BF8E-607F69BDD78C} - System32\Tasks\WindhawkUpdateTask => C:\Program Files\Windhawk\windhawk.exe [835160 2025-12-17] (Open Source Developer, Michael Maltsev -> Ramen Software)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{e1277e61-5635-4c07-84d7-7172684d72f6}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{f0d26677-2148-4279-b144-8890b64a2c8f}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{f0d26677-2148-4279-b144-8890b64a2c8f}\05F44414F513434393: [DhcpNameServer] 62.129.50.20 85.135.32.100
Tcpip\..\Interfaces\{f0d26677-2148-4279-b144-8890b64a2c8f}\160756E2C6F676E2679616: [DhcpNameServer] 192.168.0.1
FireFox:
========
FF DefaultProfile: ysomudgn.default
FF ProfilePath: C:\Users\Matti.sin\AppData\Roaming\Mozilla\Firefox\Profiles\ysomudgn.default [2025-09-30]
FF ProfilePath: C:\Users\Matti.sin\AppData\Roaming\Mozilla\Firefox\Profiles\n8h0gsjv.default-release [2026-01-24]
FF Homepage: Mozilla\Firefox\Profiles\n8h0gsjv.default-release -> seznam.cz
FF Notifications: Mozilla\Firefox\Profiles\n8h0gsjv.default-release -> hxxps://meet.google.com
FF Extension: (Language: Čeština (Czech)) - C:\Users\Matti.sin\AppData\Roaming\Mozilla\Firefox\Profiles\n8h0gsjv.default-release\Extensions\langpack-cs@firefox.mozilla.org.xpi [2026-01-19]
FF Extension: (New Tab) - C:\Users\Matti.sin\AppData\Roaming\Mozilla\Firefox\Profiles\n8h0gsjv.default-release\Extensions\newtab@mozilla.org.xpi [2025-12-22]
FF Extension: (Dark Mode) - C:\Users\Matti.sin\AppData\Roaming\Mozilla\Firefox\Profiles\n8h0gsjv.default-release\Extensions\{174b2d58-b983-4501-ab4b-07e71203cb43}.xpi [2025-12-17]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-12-07] (Microsoft Corporation -> Microsoft Corporation)
Edge:
=======
Edge Profile: C:\Users\Matti.sin\AppData\Local\Microsoft\Edge\User Data\Default [2026-01-24]
Edge Extension: (Dokumenty Google offline) - C:\Users\Matti.sin\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-12-22]
Edge Extension: (Edge relevant text changes) - C:\Users\Matti.sin\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2025-09-30]
Chrome:
=======
CHR Profile: C:\Users\Matti.sin\AppData\Local\Google\Chrome\User Data\Default [2025-11-25]
CHR Extension: (Dokumenty Google offline) - C:\Users\Matti.sin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-11-25]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Matti.sin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2025-10-11]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [7830184 2025-12-22] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [1036968 2025-12-22] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [2608296 2025-12-22] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [1090216 2025-12-22] (Gen Digital Inc. -> Gen Digital Inc.)
R2 AvastCleanupSvc; C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe [21126368 2026-01-15] (Gen Digital Inc. -> Gen Digital Inc.)
R2 AvastDriverUpdSvc; C:\Program Files\Avast Software\Driver Updater\DriverUpdSvc.exe [18753248 2025-12-17] (Gen Digital Inc. -> Gen Digital Inc.)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2025-09-30] (Avast Software s.r.o. -> AVAST Software)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13165888 2026-01-21] (Microsoft Corporation -> Microsoft Corporation)
R2 IntelGraphicsSoftwareService; C:\Program Files\WindowsApps\AppUp.IntelArcSoftware_25.44.2010.0_x64__8j3eq9eme6ctt\VFS\ProgramFilesX64\Intel\Intel Graphics Software\IntelGraphicsSoftware.Service.exe [300544 2025-12-31] (EB51A5DA-0E72-4863-82E4-EA21C1F8DFE3 -> Intel Corporation)
R2 LightKeeperService; C:\Program Files (x86)\MSI\MSI Center\Mystic Light\LightKeeperService.exe [92768 2023-05-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpDefenderCoreService.exe [2063376 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 MSI_Case_Service; C:\Program Files (x86)\MSI\MSI Center\Case\MSI_Case_Service.exe [140952 2025-09-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 MSI_Center_Service; C:\Program Files (x86)\MSI\MSI Center\MSI_Central_Service.exe [181776 2025-04-17] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
R2 Mystic_Light_Service; C:\Program Files (x86)\MSI\MSI Center\Mystic Light\Mystic_Light_Service.exe [41064 2024-04-23] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star Int'l Co., Ltd.)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_7840b4313191ae17\Display.NvContainer\NVDisplay.Container.exe [1275624 2025-12-31] (NVIDIA Corporation -> NVIDIA Corporation)
R2 SecureLine; C:\Program Files\Avast Software\SecureLine VPN\VpnSvc.exe [14622376 2025-12-11] (Gen Digital Inc. -> Gen Digital Inc.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [803088 2025-10-29] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [25756528 2025-12-17] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
S3 VSInstallerElevationService; C:\Program Files (x86)\Microsoft Visual Studio\Installer\VSInstallerElevationService.exe [43432 2025-09-30] (Microsoft Corporation -> Microsoft)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\NisSrv.exe [4426832 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MsMpEng.exe [290704 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 Windhawk; C:\Program Files\Windhawk\windhawk.exe [835160 2025-12-17] (Open Source Developer, Michael Maltsev -> Ramen Software)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [286816 2025-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [435296 2025-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [304736 2025-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [88160 2025-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [29144 2025-09-30] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [32856 2025-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [289376 2025-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [584800 2025-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [97376 2025-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [73312 2025-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [898144 2025-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [1314912 2025-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [219744 2025-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [403552 2025-12-22] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 aswVpnRdr; C:\WINDOWS\System32\drivers\aswVpnRdr.sys [85776 2025-09-30] (Microsoft Windows Hardware Compatibility Publisher -> Avast Software)
S3 aswWireGuard; C:\WINDOWS\System32\drivers\aswWireguard.sys [174912 2025-09-30] (Microsoft Windows Hardware Compatibility Publisher -> Avast Software)
R3 iaLPSS2_GPIO2_ADL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_gpio2_adl.inf_amd64_c804e238af0965e6\iaLPSS2_GPIO2_ADL.sys [142800 2025-11-10] (Intel Corporation -> Intel Corporation)
R3 IntelGNA; C:\WINDOWS\System32\DriverStore\FileRepository\gna.inf_amd64_e736ed4bed7f97b4\gna.sys [100736 2025-10-07] (Intel Corporation -> Intel Corporation)
R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [333192 2025-11-18] (Microsoft Windows -> Microsoft Corporation)
R1 MSIO; C:\WINDOWS\system32\drivers\MsIo64.sys [19672 2023-12-10] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd)
R3 NTIOLib_CC_COMM; C:\Program Files (x86)\MSI\MSI Center\Lib\SYS\NTIOLib_X64.sys [32592 2024-09-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R3 NTIOLib_MysticLight; C:\Program Files (x86)\MSI\MSI Center\Mystic Light\Lib\NTIOLib_X64.sys [32472 2024-09-10] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
R3 rt25cx21; C:\WINDOWS\System32\DriverStore\FileRepository\rt25cx21x64.inf_amd64_f1c679fae728e251\rt25cx21x64.sys [905216 2025-07-28] (Realtek Semiconductor Corp. -> Realtek)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [21928 2025-12-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [635272 2025-12-18] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [102792 2025-12-18] (Microsoft Windows -> Microsoft Corporation)
U3 aswArDisk; no ImagePath
U3 aswBcc; no ImagePath
U3 Avast Business Console Client Antivirus Service; no ImagePath
S3 dbx; system32\DRIVERS\dbx.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-01-24 11:35 - 2026-01-24 11:36 - 000034566 _____ C:\Users\Matti.sin\Desktop\FRST.txt
2026-01-24 11:35 - 2026-01-24 11:35 - 000000000 ____D C:\FRST
2026-01-24 11:34 - 2026-01-24 11:34 - 002443264 _____ (Farbar) C:\Users\Matti.sin\Desktop\FRST64.exe
2026-01-24 11:33 - 2026-01-24 11:33 - 000677108 _____ C:\WINDOWS\system32\perfh005.dat
2026-01-24 11:33 - 2026-01-24 11:33 - 000144960 _____ C:\WINDOWS\system32\perfc005.dat
2026-01-23 19:18 - 2026-01-23 19:56 - 000000000 ____D C:\WINDOWS\CbsTemp
2026-01-23 15:50 - 2026-01-23 15:50 - 006196150 _____ C:\Users\Matti.sin\Downloads\US_AC6V2.0RTL_V15.03.06.51_multi_TDE01(1).zip
2026-01-23 15:46 - 2026-01-23 15:50 - 000000000 ____D C:\Users\Matti.sin\Downloads\US_AC6V2.0RTL_V15.03.06.51_multi_TDE01
2026-01-23 15:46 - 2026-01-23 15:46 - 006196150 _____ C:\Users\Matti.sin\Downloads\US_AC6V2.0RTL_V15.03.06.51_multi_TDE01.zip
2026-01-19 15:50 - 2026-01-23 17:42 - 000000000 ____D C:\Program Files\Mozilla Firefox
2026-01-15 17:05 - 2026-01-24 11:30 - 000000000 ____D C:\ProgramData\BoomLogs
2026-01-15 17:05 - 2026-01-15 17:05 - 000000061 _____ C:\ProgramData\perma.bm
2026-01-15 17:05 - 2026-01-15 17:05 - 000000000 ____D C:\ProgramData\Boom 3D
2026-01-11 15:31 - 2026-01-11 15:31 - 000020278 _____ C:\Users\Matti.sin\AppData\LocalLow\d9b6894662d10981fe343731f20e9f9ded67dcd24f2b94d09a8dbc98c8c5fb21
2026-01-11 15:31 - 2026-01-11 15:31 - 000000026 _____ C:\Users\Matti.sin\AppData\LocalLow\2c9c7474bfa8a8254ce7bc0e4bb0a086d1a5833a795a6ba8fdf0d323ed8b3886
2026-01-06 16:55 - 2026-01-06 17:05 - 000000000 ____D C:\Users\Matti.sin\AppData\Roaming\Microsoft\Excel
2026-01-05 20:11 - 2026-01-05 20:11 - 000051454 _____ C:\Users\Matti.sin\Downloads\faktura9260008834.pdf
2025-12-31 21:57 - 2025-12-31 21:57 - 002421296 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2025-12-31 21:57 - 2025-12-31 21:57 - 002421296 _____ C:\WINDOWS\system32\vulkaninfo.exe
2025-12-31 21:57 - 2025-12-31 21:57 - 001923120 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2025-12-31 21:57 - 2025-12-31 21:57 - 001923120 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2025-12-31 21:57 - 2025-12-31 21:57 - 001625648 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2025-12-31 21:57 - 2025-12-31 21:57 - 001625648 _____ C:\WINDOWS\system32\vulkan-1.dll
2025-12-31 21:57 - 2025-12-31 21:57 - 001434672 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2025-12-31 21:57 - 2025-12-31 21:57 - 001434672 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2025-12-31 21:57 - 2025-12-31 21:57 - 000478952 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2025-12-31 21:57 - 2025-12-31 21:57 - 000375016 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2025-12-31 21:53 - 2025-12-31 21:53 - 001574632 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2025-12-31 21:53 - 2025-12-31 21:53 - 001344744 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2025-12-31 21:53 - 2025-12-31 21:53 - 001224936 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2025-12-31 21:53 - 2025-12-31 21:53 - 000675048 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvofapi64.dll
2025-12-31 21:53 - 2025-12-31 21:53 - 000509160 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvofapi.dll
2025-12-31 21:52 - 2025-12-31 21:52 - 027559656 _____ C:\WINDOWS\system32\nvidia-pcc.exe
2025-12-31 21:52 - 2025-12-31 21:52 - 002319080 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2025-12-31 21:52 - 2025-12-31 21:52 - 001716968 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2025-12-31 21:52 - 2025-12-31 21:52 - 001616104 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2025-12-31 21:52 - 2025-12-31 21:52 - 001055976 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2025-12-31 21:52 - 2025-12-31 21:52 - 000812264 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2025-12-31 21:51 - 2025-12-31 21:51 - 022613224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2025-12-31 21:51 - 2025-12-31 21:51 - 018277608 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2025-12-31 21:51 - 2025-12-31 21:51 - 007908072 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2025-12-31 21:51 - 2025-12-31 21:51 - 005924072 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2025-12-31 21:51 - 2025-12-31 21:51 - 005586664 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll
2025-12-31 21:51 - 2025-12-31 21:51 - 004288232 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2025-12-31 21:51 - 2025-12-31 21:51 - 000853736 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2025-12-31 21:51 - 2025-12-31 21:51 - 000469224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2025-12-31 21:50 - 2025-12-31 21:50 - 005687448 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2025-12-31 21:50 - 2025-12-31 21:50 - 004975632 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2025-12-30 20:59 - 2025-12-30 20:59 - 000153562 _____ C:\WINDOWS\system32\nvinfo.pb
2025-12-27 16:04 - 2025-12-27 16:04 - 000000000 ____D C:\Users\UMFD-0.Font Driver Host.000
2025-12-27 16:04 - 2025-12-27 16:04 - 000000000 ____D C:\Users\TEMP.Font Driver Host.000
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-01-24 11:34 - 2025-12-17 20:52 - 000002488 _____ C:\WINDOWS\system32\Tasks\WindhawkUpdateTask
2026-01-24 11:34 - 2025-12-17 20:52 - 000002082 _____ C:\WINDOWS\system32\Tasks\WindhawkRunUITask
2026-01-24 11:34 - 2025-10-29 16:13 - 000003828 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3829043792-2434836364-2020864886-1001UA{687FD920-17AD-4892-92A0-7A6806643A56}
2026-01-24 11:34 - 2025-10-29 16:13 - 000003728 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-3829043792-2434836364-2020864886-1001Core{059A352F-121E-46E6-B267-44D5F8AF947D}
2026-01-24 11:34 - 2025-10-29 16:13 - 000003642 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{79C6032E-4039-48ED-AE56-81C03BC971F9}
2026-01-24 11:34 - 2025-10-29 16:13 - 000003416 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{AA06E15A-6F71-42D9-8247-89E1E1B9B422}
2026-01-24 11:34 - 2025-10-29 16:13 - 000003116 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-3829043792-2434836364-2020864886-1001
2026-01-24 11:34 - 2025-10-29 16:13 - 000003066 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3829043792-2434836364-2020864886-1001
2026-01-24 11:34 - 2025-10-29 16:13 - 000002862 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3829043792-2434836364-2020864886-1001
2026-01-24 11:34 - 2025-10-29 16:13 - 000002368 _____ C:\WINDOWS\system32\Tasks\MSI Task Host - LEDKeeper2_Host
2026-01-24 11:34 - 2025-10-29 16:13 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2026-01-24 11:33 - 2025-10-29 16:16 - 001603790 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-01-24 11:33 - 2024-04-01 08:26 - 000000000 ___HD C:\Program Files\WindowsApps
2026-01-24 11:33 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-01-24 11:33 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-01-24 11:33 - 2024-04-01 08:24 - 000000000 ____D C:\WINDOWS\INF
2026-01-24 11:32 - 2025-10-19 15:08 - 000000000 ____D C:\Program Files\Microsoft Office
2026-01-24 11:31 - 2025-09-30 14:01 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2026-01-24 11:29 - 2025-09-30 14:32 - 000000000 ____D C:\Program Files\Dropbox
2026-01-24 11:29 - 2025-09-30 14:26 - 000000000 ____D C:\Program Files (x86)\Dropbox
2026-01-24 11:29 - 2022-01-01 15:54 - 000000000 ___RD C:\Users\Matti.sin\OneDrive
2026-01-23 19:56 - 2025-09-30 17:48 - 000000000 ____D C:\ProgramData\NVIDIA
2026-01-23 19:55 - 2025-10-29 16:13 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-01-23 19:55 - 2025-10-29 16:12 - 000004234 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2026-01-23 19:55 - 2025-09-30 17:43 - 000012288 ___SH C:\DumpStack.log.tmp
2026-01-23 19:55 - 2025-09-30 14:33 - 000000000 ____D C:\Program Files\TeamViewer
2026-01-23 19:55 - 2025-09-30 14:03 - 000000000 ____D C:\ProgramData\Avast Software
2026-01-23 19:55 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-01-23 19:55 - 2024-04-01 08:21 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2026-01-23 19:53 - 2025-10-11 15:58 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2026-01-23 19:53 - 2025-10-11 15:58 - 000002206 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2026-01-23 19:52 - 2025-09-30 17:49 - 000000000 ____D C:\Program Files (x86)\MSI
2026-01-23 19:51 - 2025-09-30 17:46 - 000000000 ____D C:\ProgramData\Packages
2026-01-23 19:51 - 2022-01-01 15:53 - 000000000 ____D C:\Users\Matti.sin\AppData\Local\Packages
2026-01-23 19:49 - 2025-09-30 14:38 - 000001044 _____ C:\Users\Matti.sin\Desktop\Telegram.lnk
2026-01-23 19:49 - 2025-09-30 14:38 - 000000000 ____D C:\Users\Matti.sin\AppData\Roaming\Telegram Desktop
2026-01-23 19:49 - 2025-09-30 14:38 - 000000000 ____D C:\Users\Matti.sin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Telegram Desktop
2026-01-23 19:48 - 2025-09-30 13:36 - 000000000 ____D C:\ProgramData\Package Cache
2026-01-23 19:46 - 2025-09-30 19:38 - 000000000 ____D C:\Users\Matti.sin\AppData\Local\Avast Software
2026-01-23 19:02 - 2025-09-30 18:10 - 000000000 ____D C:\Users\Matti.sin\AppData\Local\D3DSCache
2026-01-23 17:42 - 2025-10-29 16:52 - 000143341 ____H C:\Users\Matti.sin\AppData\Local\IconCache.db.backup
2026-01-23 17:42 - 2025-09-30 14:26 - 000000000 ____D C:\Users\Matti.sin\AppData\Roaming\discord
2026-01-23 17:42 - 2025-09-30 14:01 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2026-01-23 17:41 - 2025-09-30 14:26 - 000000000 ____D C:\Users\Matti.sin\AppData\Local\Discord
2026-01-23 15:50 - 2025-10-19 15:13 - 000000000 ____D C:\Users\Matti.sin\AppData\Roaming\Microsoft\Word
2026-01-23 14:43 - 2025-09-30 14:26 - 000002267 _____ C:\Users\Matti.sin\Desktop\Discord.lnk
2026-01-19 21:18 - 2025-09-30 15:04 - 000000000 ____D C:\Users\Matti.sin\AppData\Local\CrashDumps
2026-01-19 21:02 - 2025-09-30 14:01 - 000001073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2026-01-19 19:57 - 2025-09-30 17:44 - 000002395 _____ C:\Users\Matti.sin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2026-01-19 15:50 - 2025-09-30 14:00 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-01-19 15:50 - 2025-09-30 14:00 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2026-01-15 17:05 - 2025-09-30 13:50 - 000000000 ____D C:\Users\Matti.sin\AppData\Local\PlaceholderTileLogoFolder
2026-01-14 13:54 - 2025-11-05 20:56 - 000471680 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2026-01-14 13:54 - 2025-10-30 17:52 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK
2026-01-14 13:53 - 2024-04-01 17:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2026-01-14 13:53 - 2024-04-01 08:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2026-01-14 13:53 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2026-01-14 13:53 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2026-01-14 13:53 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2026-01-14 13:53 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemResources
2026-01-14 13:53 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2026-01-14 13:53 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\setup
2026-01-14 13:53 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2026-01-14 13:53 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2026-01-13 20:32 - 2025-10-29 16:12 - 003276800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2026-01-11 15:31 - 2025-11-07 22:58 - 000048926 _____ C:\Users\Matti.sin\AppData\LocalLow\41000f374dd3b3f351fe67729eb2bf74a4ac43b4013e947d159afd0348a644cb
2026-01-06 16:55 - 2025-11-12 22:18 - 000000026 _____ C:\Users\Matti.sin\AppData\LocalLow\6e53dded6316fc9f79dbbdf1f2027a068f7d6aafbf7921859e16e65d3f59a7bb
2025-12-27 18:53 - 2025-11-08 22:51 - 000002264 _____ C:\Users\Matti.sin\AppData\LocalLow\58a1b4e67ffc1c3aec072f3ddeeaf3656db249a6a5d51f0ac20c87632e6f5477
2025-12-27 16:56 - 2025-10-30 16:44 - 000002264 _____ C:\Users\Matti.sin\AppData\LocalLow\b5625821ccb446440ab7a226842d6ac4f1cf70ffbfa2d74ec18bafdcfc9541e8
==================== Files in the root of some directories ========
2025-09-30 14:00 - 2025-09-30 15:24 - 000186108 _____ () C:\Program Files\msedge_installer.log
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 22-01-2026
Ran by Matti.sin (24-01-2026 11:36:25)
Running from C:\Users\Matti.sin\Desktop
Microsoft Windows 11 Pro Version 25H2 26200.7623 (X64) (2025-10-29 15:13:59)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-3829043792-2434836364-2020864886-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3829043792-2434836364-2020864886-503 - Limited - Disabled)
Guest (S-1-5-21-3829043792-2434836364-2020864886-501 - Limited - Disabled)
Matti.sin (S-1-5-21-3829043792-2434836364-2020864886-1001 - Administrator - Enabled) => C:\Users\Matti.sin
WDAGUtilityAccount (S-1-5-21-3829043792-2434836364-2020864886-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Disabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Avast Antivirus (Disabled) {D322394B-73F7-C65E-BBB0-3B81E063D6D4}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Adobe Redeem Launcher (HKLM-x32\...\{073F1D74-FE84-4EF8-A991-57889533FFA7}}_is1) (Version: 1.0.0.11 - MSI)
Application Verifier x64 External Package (HKLM\...\{D5419286-34A7-E062-1C25-013A7FA94E9C}) (Version: 10.1.19041.5609 - Microsoft) Hidden
Avast Cleanup Premium (HKLM\...\Avast Cleanup) (Version: 26.1.18342.22494 - Gen Digital Inc.)
Avast Driver Updater (HKLM\...\Avast Driver Updater) (Version: 26.1.6336.21016 - Gen Digital Inc.)
Avast Premium Security (HKLM\...\Avast Antivirus) (Version: 25.12.10659.3321 - Gen Digital Inc.)
Avast SecureLine VPN (HKLM\...\Avast SecureLine) (Version: 25.12.12124.16698 - Avast Software)
DB Browser for SQLite (HKLM\...\{541AE182-7C1D-426C-8155-4867303B75A4}) (Version: 3.13.1 - DB Browser for SQLite Team)
Discord (HKU\S-1-5-21-3829043792-2434836364-2020864886-1001\...\Discord) (Version: 1.0.9221 - Discord Inc.)
Documentation Manager (HKLM\...\{51C5ED88-53DF-49F4-9855-0E9949AC7522}) (Version: 23.40.0.4 - Intel Corporation) Hidden
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.983.1 - Dropbox, Inc.) Hidden
ENE Video Capture Box HAL (HKLM\...\{A096611D-BA11-4A1A-8D09-0A0462D7C8F2}) (Version: 1.0.5.15 - Ene Tech.) Hidden
ENE Video Capture Box HAL (HKLM-x32\...\{974259bf-3ed1-4cd6-9ed1-40c7f601a786}) (Version: 1.0.5.15 - Ene Tech.) Hidden
ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
ENE_EHD_M2_HAL (HKLM-x32\...\{c1d017c2-8846-4000-9254-5689eccd462e}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
ENE_External_Device_HAL (HKLM\...\{2B8E611F-0B51-4FAC-87BB-AF50D82E7DDA}) (Version: 1.0.14.0 - ENE Tech) Hidden
ENE_External_Device_HAL (HKLM-x32\...\{5d3c3229-f8ae-4c6c-9db7-7231adc1ff08}) (Version: 1.0.14.0 - ENE Tech) Hidden
ENE_MousePad_HAL (HKLM\...\{9E97178A-ADB8-4778-BE60-7E28E2A72721}) (Version: 1.0.2.0 - ENE TECHNOLOGY INC.) Hidden
ENE_MousePad_HAL (HKLM-x32\...\{c2c794a4-7986-4c45-884d-d4ca43b88df9}) (Version: 1.0.2.0 - ENE TECHNOLOGY INC.) Hidden
ENE_X_AIC_HAL (HKLM\...\{CF703694-01C6-4062-B797-84DB215662BC}) (Version: 1.0.6.3 - ENE TECHNOLOGY INC.) Hidden
ENE_X_AIC_HAL (HKLM-x32\...\{c662a481-d76a-4188-95d2-6eb4ffd55542}) (Version: 1.0.6.3 - ENE TECHNOLOGY INC.) Hidden
Google Chrome (HKLM\...\{750632BA-2593-3862-A3AE-0C9B722EC4DB}) (Version: 144.0.7559.97 - Google LLC)
Intel(R) Arc Software & Drivers (HKLM\...\Intel(R) Arc Software & Drivers) (Version: 1.0.916.8 - Intel(R) Corporation)
Intel(R) Chipset Device Software (HKLM\...\{7CE5A9A7-AD6E-4F64-9D53-E3B6F741B979}) (Version: 10.1.19899.8597 - Intel Corporation) Hidden
Intel(R) Chipset Device Software (HKLM-x32\...\{d86cfdf3-0928-4b89-9f81-d21552c39b2d}) (Version: 10.1.19899.8597 - Intel(R) Corporation)
Intel(R) Serial IO (HKLM\...\{0463150E-75E2-46F9-B447-2A13D70C9C21}) (Version: 30.100.2417.30 - Intel Corporation) Hidden
Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.2417.30 - Intel Corporation)
Intel(R) Wireless Bluetooth(R) (HKLM-x32\...\{00000040-0230-1029-84C8-B8D95FA3C8C3}) (Version: 23.40.0.2 - Intel Corporation)
Intel® Software Installer (HKLM-x32\...\{061836cf-284c-4d68-beb6-30275a9debb2}) (Version: 23.40.0.4 - Intel Corporation) Hidden
Kits Configuration Installer (HKLM-x32\...\{85FC198B-F293-0ED4-CD62-09F136CBF5AD}) (Version: 10.1.19041.5609 - Microsoft) Hidden
Kontrola stavu osobního počítače s Windows (HKLM\...\{7DED818B-F556-4115-9CC0-ACE3F614CE63}) (Version: 4.0.2410.23001 - Microsoft Corporation)
Microsoft .NET Core Host - 3.1.32 (x64) (HKLM\...\{8A8E3A04-83BC-4CDE-9259-893B666C1AB1}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Host FX Resolver - 3.1.32 (x64) (HKLM\...\{ABC6B3C2-1A8D-4C5E-AC16-C2AE44F02743}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Runtime - 3.1.32 (x64) (HKLM\...\{A741B803-3F0E-4684-81EF-FC128D15A92C}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Runtime - 3.1.32 (x64) (HKLM-x32\...\{784973c8-d618-4ac8-97ed-1fd52c5bdf2f}) (Version: 3.1.32.31915 - Microsoft Corporation)
Microsoft .NET Host - 8.0.23 (x64) (HKLM\...\{8CE231CE-B9F2-488A-BC60-FA1CE584B85D}) (Version: 64.92.45415 - Microsoft Corporation) Hidden
Microsoft .NET Host - 9.0.5 (x64) (HKLM\...\{9DB9782D-9F85-4410-82DC-5AA378A393DE}) (Version: 72.20.32761 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.23 (x64) (HKLM\...\{A42EAA28-C0A1-4712-A109-796202435469}) (Version: 64.92.45415 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 9.0.5 (x64) (HKLM\...\{27B4F1C4-D1FD-4C0F-BA10-15D600657C51}) (Version: 72.20.32761 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.23 (x64) (HKLM\...\{39884818-B550-4209-9A49-81F9D21F6012}) (Version: 64.92.45415 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 9.0.5 (x64) (HKLM\...\{3AA8E866-9345-48D2-9B65-2FC8DDE659C0}) (Version: 72.20.32761 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\{E7164880-C51A-3DC7-8D39-B5D729852F5F}) (Version: 144.0.3719.82 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 144.0.3719.82 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2019 - cs-cz (HKLM\...\ProPlus2019Retail - cs-cz) (Version: 16.0.19530.20184 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3829043792-2434836364-2020864886-1001\...\OneDriveSetup.exe) (Version: 25.238.1204.0001 - Microsoft Corporation)
Microsoft Outlook 2019 - cs-cz (HKLM\...\OutLook2019Retail - cs-cz) (Version: 16.0.19530.20184 - Microsoft Corporation)
Microsoft PowerPoint 2019 - cs-cz (HKLM\...\PowerPoint2019Retail - cs-cz) (Version: 16.0.19530.20184 - Microsoft Corporation)
Microsoft Project - cs-cz (HKLM\...\ProjectPro2019Retail - cs-cz) (Version: 16.0.19530.20184 - Microsoft Corporation)
Microsoft Project - en-us (HKLM\...\ProjectPro2019Retail - en-us) (Version: 16.0.19530.20184 - Microsoft Corporation)
Microsoft Publisher 2019 - en-us (HKLM\...\Publisher2019Retail - en-us) (Version: 16.0.19530.20184 - Microsoft Corporation)
Microsoft Teams Meeting Add-in for Microsoft Office (HKLM\...\{A7AB73A3-CB10-4AA5-9D38-6AEFFBDE4C91}) (Version: 1.25.24601 - Microsoft)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visio - cs-cz (HKLM\...\VisioPro2019Retail - cs-cz) (Version: 16.0.19530.20184 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.44.35211 (HKLM-x32\...\{d8bbe9f9-7c5b-42c6-b715-9ee898a2e515}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.44.35211 (HKLM-x32\...\{0b5169e3-39da-4313-808e-1f9c0407f3bf}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2019 X64 Debug Runtime - 14.29.30157 (HKLM\...\{B2D2DB83-DEF0-4638-A634-025F645DFBDB}) (Version: 14.29.30157 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Debug Runtime - 14.29.30157 (HKLM-x32\...\{C45C7D61-1241-4033-BF55-3F7A99E06DCA}) (Version: 14.29.30157 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.44.35211 (HKLM\...\{86AB2CC9-08BD-4643-B0F9-F82D006D72FF}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.44.35211 (HKLM\...\{43B0D101-A022-48F4-9D04-BA404CEB1D53}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.44.35211 (HKLM-x32\...\{C18FB403-1E88-43C8-AD8A-CED50F23DE8B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.44.35211 (HKLM-x32\...\{922480B5-CAEB-4B1B-AAA4-9716EFDCE26B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual Studio Installer (HKLM\...\{6F320B93-EE3C-4826-85E0-ADF79F8D4C61}) (Version: 3.14.2086.54749 - Microsoft Corporation)
Microsoft Visual Studio Setup Configuration (HKLM-x32\...\{6AC5612A-D067-44B9-9C8E-2C1B3473B429}) (Version: 3.7.2182.35401 - Microsoft Corporation) Hidden
Microsoft Visual Studio Setup WMI Provider (HKLM-x32\...\{E281F6E2-136B-4AF0-895B-253279711697}) (Version: 3.7.2182.35401 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.23 (x64) (HKLM\...\{29177194-CD94-4A2D-97A4-EF77738E995A}) (Version: 64.92.45458 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.23 (x64) (HKLM-x32\...\{d653912d-5c24-4e13-9238-531257889178}) (Version: 8.0.23.35609 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 9.0.5 (x64) (HKLM\...\{4BB55880-A223-48BA-A531-775149E3D5A3}) (Version: 72.20.32770 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 9.0.5 (x64) (HKLM-x32\...\{a04113ba-971f-4916-ba50-78f2bc883b91}) (Version: 9.0.5.34816 - Microsoft Corporation)
Mozilla Firefox (x64 cs) (HKLM\...\Mozilla Firefox) (Version: 147.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 145.0.1 - Mozilla)
MSI Center SDK (HKLM-x32\...\{15289038-41BE-48F8-B8B9-0B1021D3089E}}_is1) (Version: 3.2025.1209.01 - MSI)
MSI Development Tools (HKLM-x32\...\{4CDB315B-7D34-AADB-B87D-9C00F56A430D}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Node.js (HKLM\...\{83366490-0EAB-4C6C-AE3D-6F7EA4B46DC3}) (Version: 22.21.0 - Node.js Foundation)
NVIDIA Ovladače grafiky 576.88 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 576.88 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.19426.20170 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.11029.20079 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0405-1000-0000000FF1CE}) (Version: 16.0.11029.20079 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM\...\{90160000-008C-0409-1000-0000000FF1CE}) (Version: 16.0.11029.20079 - Microsoft Corporation) Hidden
Postman x64 11.68.5 (HKU\S-1-5-21-3829043792-2434836364-2020864886-1001\...\Postman) (Version: 11.68.5 - Postman)
PyCharm 2025.2.3 (HKLM\...\PyCharm 2025.2.3) (Version: 252.26830.99 - JetBrains s.r.o.)
PyCharm Community Edition 2025.1.3.1 (HKLM-x32\...\PyCharm Community Edition 2025.1.3.1) (Version: 251.26927.90 - JetBrains s.r.o.)
Python 3.13.7 (64-bit) (HKU\S-1-5-21-3829043792-2434836364-2020864886-1001\...\{9a46f6d0-8f11-4f8f-a23d-d617db01bbb6}) (Version: 3.13.7150.0 - Python Software Foundation)
Python 3.13.7 Add to Path (64-bit) (HKLM\...\{235C9435-3313-4658-881D-5A7E559A5A41}) (Version: 3.13.7150.0 - Python Software Foundation) Hidden
Python 3.13.7 Core Interpreter (64-bit) (HKLM\...\{BE75E968-78F4-411D-92E4-73EC3043F7E4}) (Version: 3.13.7150.0 - Python Software Foundation) Hidden
Python 3.13.7 Development Libraries (64-bit) (HKLM\...\{96A23710-E014-4A5B-96A1-DE64AC37251B}) (Version: 3.13.7150.0 - Python Software Foundation) Hidden
Python 3.13.7 Documentation (64-bit) (HKLM\...\{CFAAA24B-16EF-4D9D-80A5-F67798771571}) (Version: 3.13.7150.0 - Python Software Foundation) Hidden
Python 3.13.7 Executables (64-bit) (HKLM\...\{E4047598-558F-4468-8B53-9FCEF7F86E0D}) (Version: 3.13.7150.0 - Python Software Foundation) Hidden
Python 3.13.7 pip Bootstrap (64-bit) (HKLM\...\{CD31E178-F872-466B-A231-9C8AA53A89FD}) (Version: 3.13.7150.0 - Python Software Foundation) Hidden
Python 3.13.7 Standard Library (64-bit) (HKLM\...\{A139F43E-8105-465D-AC80-28F349CBE08D}) (Version: 3.13.7150.0 - Python Software Foundation) Hidden
Python 3.13.7 Tcl/Tk Support (64-bit) (HKLM\...\{A65B1339-6492-4CA4-AEB5-2B25A83A20B9}) (Version: 3.13.7150.0 - Python Software Foundation) Hidden
Python 3.13.7 Test Suite (64-bit) (HKLM\...\{6BD2B618-9A2B-47D9-B24B-2F05BD2768E4}) (Version: 3.13.7150.0 - Python Software Foundation) Hidden
Python Launcher (HKLM-x32\...\{8B8DEA15-D815-4CB1-AC10-4E7713F3DFA0}) (Version: 3.13.7150.0 - Python Software Foundation)
Realtek Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.9865.1 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.74.1128.2024 - Realtek)
SDK ARM Additions (HKLM-x32\...\{4392AB59-ABB1-2E5F-21DF-0029512F36DD}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
SDK ARM Redistributables (HKLM-x32\...\{EFF45DAA-D9C6-D242-802F-64D01D664406}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
TeamViewer (HKLM\...\TeamViewer) (Version: 15.73.5 - TeamViewer)
Telegram Desktop (HKU\S-1-5-21-3829043792-2434836364-2020864886-1001\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 6.4.2 - Telegram FZ-LLC)
Universal CRT Extension SDK (HKLM-x32\...\{2D78CDCA-CE1A-6007-089C-E09908F8B1FD}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Universal CRT Headers Libraries and Sources (HKLM-x32\...\{6D7ACCE0-E08A-78C8-2EF5-63E9FAEA185C}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Universal CRT Redistributable (HKLM-x32\...\{0460C87B-7F4C-3170-FAC9-B7A6AE5CE4E9}) (Version: 10.0.26624 - Microsoft Corporation) Hidden
Universal CRT Redistributable (HKLM-x32\...\{8FB7909F-7079-FECC-1A06-B90A324C11E9}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Universal CRT Tools x64 (HKLM\...\{099178C3-9374-7477-8D34-B28BC8FC5488}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Universal CRT Tools x86 (HKLM-x32\...\{FC8CD9CE-8902-BB8D-F832-B33100439483}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Universal General MIDI DLS Extension SDK (HKLM-x32\...\{D2C85BA9-DA49-E2D5-D4C2-351C6C2C616F}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Update for Windows 10 for x64-based Systems (KB4480730) (HKLM\...\{0746492E-47B6-4251-940C-44462DFD74BB}) (Version: 2.55.0.0 - Microsoft Corporation)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{B8D93870-98D1-4980-AFCA-E26563CDFB79}) (Version: 8.94.0.0 - Microsoft Corporation)
vcpp_crt.redist.clickonce (HKLM-x32\...\{E8AEE8FD-FE10-47FD-9B4A-5BE74520F95E}) (Version: 14.29.30157 - Microsoft Corporation) Hidden
Verbatim_SureFireGaming_Product (HKLM\...\{35CB65C6-A7E3-4EE7-AD40-738D70A72164}) (Version: 1.0.3.11 - Verbatim) Hidden
Verbatim_SureFireGaming_Product (HKLM-x32\...\{d601832a-0d94-46ce-9b19-78e8a5887313}) (Version: 1.0.3.11 - Verbatim) Hidden
Visual Studio Build Tools 2019 (HKLM-x32\...\b133f59b) (Version: 16.11.51 - Microsoft Corporation)
vs_FileTracker_Singleton (HKLM-x32\...\{AB0010C0-CA62-40C7-BDED-DB2514BDCF19}) (Version: 16.11.34827 - Microsoft Corporation) Hidden
WD P40 Game Drive (HKLM\...\{EE55DBAE-ECDD-4ADD-AAB5-23DE848B0996}) (Version: 1.0.2.18 - Western Digital Corporation) Hidden
WD P40 Game Drive (HKLM-x32\...\{72b1a866-fc31-4381-bff3-fa6cd8823777}) (Version: 1.0.2.18 - Western Digital Corporation) Hidden
WD_BLACK AN1500 (HKLM\...\{085E2365-0A70-4230-B664-02D5E4FE7E9C}) (Version: 1.0.12.0 - ENE TECHNOLOGY INC.) Hidden
WD_BLACK AN1500 (HKLM-x32\...\{9c94735f-73fd-4b0f-9ddb-8be7b3cc4681}) (Version: 1.0.12.0 - ENE TECHNOLOGY INC.) Hidden
WD_BLACK D50 (HKLM\...\{BDE43F26-5917-44F8-B86A-F1D9A6B80B32}) (Version: 1.0.9.0 - ENE TECHNOLOGY INC.) Hidden
WD_BLACK D50 (HKLM-x32\...\{a1d1ba00-92b7-4a99-8ebd-65b25c0e9e44}) (Version: 1.0.9.0 - ENE TECHNOLOGY INC.) Hidden
WinAppDeploy (HKLM-x32\...\{532B792A-577A-C684-3BE0-8266D973A314}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windhawk v1.7.3 (HKLM-x32\...\Windhawk) (Version: 1.7.3 - Ramen Software)
Windows App Certification Kit Native Components (HKLM\...\{524581F7-19EF-7567-B516-028842672D5C}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows App Certification Kit SupportedApiList x86 (HKLM-x32\...\{2FC6E546-6997-84F3-1877-1F91046B81E1}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows App Certification Kit x64 (HKLM-x32\...\{F814F02A-ECCD-2CB1-EB70-1E330C810521}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows Desktop Extension SDK (HKLM-x32\...\{16E355AC-58E7-65EE-794A-96ACB540AEA1}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows Desktop Extension SDK Contracts (HKLM-x32\...\{D721DCB8-0930-F41C-6110-A00C41A0D32C}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows IoT Extension SDK (HKLM-x32\...\{12A505CB-AA40-378D-854F-E2CF6A7FF75F}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows IoT Extension SDK Contracts (HKLM-x32\...\{C3D2FB47-9403-6F43-621C-5E5141B41EDA}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows Mobile Extension SDK (HKLM-x32\...\{D97824BC-1F9C-9A98-A458-5B0D06ECB755}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows Mobile Extension SDK Contracts (HKLM-x32\...\{DF4C943F-A46A-E489-69CE-189C54B0487E}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK (HKLM-x32\...\{D0CDB467-54EA-52D0-C1EC-B0D8323015B0}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK AddOn (HKLM-x32\...\{E63F47A7-9DBA-4154-A52F-36653BFB4028}) (Version: 10.1.0.0 - Microsoft Corporation)
Windows SDK ARM Desktop Tools (HKLM-x32\...\{FB88CFF1-D06D-72C3-0887-53277E92DAD2}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Headers arm (HKLM-x32\...\{8BE03D0F-0D5D-67F0-B04C-EC13A64C4BAC}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Headers arm64 (HKLM-x32\...\{27B3D59D-9D54-3EA4-4CCE-AE5E57918284}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Headers x64 (HKLM-x32\...\{A3B7C26F-BE21-6D16-77CA-BD5F1394A538}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Headers x86 (HKLM-x32\...\{A309246D-0781-212D-1424-4A6505425A44}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Libs arm (HKLM-x32\...\{CE78C7EF-312F-35EB-82F9-FDC326F08658}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Libs arm64 (HKLM-x32\...\{CA8A9642-147B-190E-76A3-87A23B97ADF9}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Libs x64 (HKLM-x32\...\{E22D77C1-306A-C916-15A0-08189F27E575}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Libs x86 (HKLM-x32\...\{842FBFC4-CCCC-6799-1998-17DED2BCE174}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Tools arm64 (HKLM-x32\...\{2825810D-881C-9FBB-7836-B0117552064F}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Tools x64 (HKLM-x32\...\{2A0C6A0D-A8A7-89B6-AA43-B5DF54E1E837}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Desktop Tools x86 (HKLM-x32\...\{0A2BCE78-63A3-9F82-AD76-17C310B3EAEF}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK DirectX x64 Remote (HKLM\...\{61CAE9AB-D59A-4180-FBD1-9DE7046D0BCF}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK DirectX x86 Remote (HKLM-x32\...\{8D87E449-DE1F-375B-D142-5391C06ED75C}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK EULA (HKLM-x32\...\{E2037558-0217-B40C-F00C-07FDBB82347B}) (Version: 10.1.19041.5609 - Microsoft Corporations) Hidden
Windows SDK Facade Windows WinMD Versioned (HKLM-x32\...\{DE56820F-73F3-83D6-DA12-CEF0E7585FDD}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK for Windows Store Apps (HKLM-x32\...\{778D640A-21E7-0A4A-0FB6-7C6F7FA4FDC2}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK for Windows Store Apps Contracts (HKLM-x32\...\{911F65D7-229E-FDF5-2CDC-7A778E965FAB}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK for Windows Store Apps DirectX x86 Remote (HKLM-x32\...\{AF19AD5B-2DF6-9862-B161-26B5BDB6D8EE}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK for Windows Store Apps Headers (HKLM-x32\...\{9AE69F25-AAA9-19CA-A490-FD002EF55FB0}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK for Windows Store Apps Libs (HKLM-x32\...\{8A69A3F8-0D09-7AEC-714B-21F63FD4F131}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK for Windows Store Apps Metadata (HKLM-x32\...\{80A87973-098D-8903-956C-3244FC0461A1}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK for Windows Store Apps Tools (HKLM-x32\...\{A8E49937-CC70-12A0-8B88-22A2AE629655}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK for Windows Store Managed Apps Libs (HKLM-x32\...\{EDD486C3-91EA-0B4E-2618-4F4885CC6945}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Modern Non-Versioned Developer Tools (HKLM-x32\...\{77E28521-C063-BF41-60C0-0140F5C2F811}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Modern Versioned Developer Tools (HKLM-x32\...\{6293EB7C-9B82-5D3F-016A-87D94E8C8E85}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Redistributables (HKLM-x32\...\{44C9B7CF-544B-6C2D-0AA9-DBABEE0A1D7B}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows SDK Signing Tools (HKLM-x32\...\{2BCF4E86-E0B2-C9E0-10DC-26935253CF3D}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows Software Development Kit - Windows 10.0.19041.5609 (HKLM-x32\...\{5f4dc51d-f151-4325-8ba1-8b26169529a9}) (Version: 10.1.19041.5609 - Microsoft Corporation)
Windows Team Extension SDK (HKLM-x32\...\{A5B25F16-0699-7F93-9154-D749B6037381}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Windows Team Extension SDK Contracts (HKLM-x32\...\{47B777FC-0E69-8326-B50D-FEAB5995B4D6}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
WinRAR 7.00 (64-bit) (HKLM\...\WinRAR archiver) (Version: 7.00.0 - win.rar GmbH)
WinRT Intellisense Desktop - en-us (HKLM-x32\...\{78F26630-7E77-27FD-1780-651E8B0EF32A}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
WinRT Intellisense Desktop - Other Languages (HKLM-x32\...\{2D57E5F2-DE65-816E-0AB4-58E046C34205}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - en-us (HKLM-x32\...\{D09F9C76-321B-88B7-316B-E655F86BDB37}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
WinRT Intellisense IoT - Other Languages (HKLM-x32\...\{EC30B4D9-09E0-D607-CA2D-05EFE8F39C53}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
WinRT Intellisense Mobile - en-us (HKLM-x32\...\{0C75EFBC-6D0C-7516-AE74-4F9FADE79EA2}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - en-us (HKLM-x32\...\{ED40E403-CBE8-0CA3-5662-E8859CBFA1C0}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
WinRT Intellisense PPI - Other Languages (HKLM-x32\...\{EE47B659-7AF5-9302-D4A4-3204070DB9C6}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - en-us (HKLM-x32\...\{17FAE644-5409-EA4F-91AE-B4F213FB087B}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
WinRT Intellisense UAP - Other Languages (HKLM-x32\...\{B9369888-3610-E674-C077-322D40A10123}) (Version: 10.1.19041.5609 - Microsoft Corporation) Hidden
Packages:
=========
@{MicrosoftWindows.57242383.Tasbar_1000.26100.7309.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.57242383.Tasbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.57242383.Tasbar_cw5n1h2txyewy [2026-01-14] (Microsoft Windows)
@{MicrosoftWindows.57242383.Tasbar_1000.26100.7462.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.57242383.Tasbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.57242383.Tasbar_cw5n1h2txyewy [2026-01-14] (Microsoft Windows)
@{MicrosoftWindows.58683691.InpApp_1000.26100.6899.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.58683691.InpApp/Resources/ProductPkgDisplayName} -> C:\Windows\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-12-02] ()
@{MicrosoftWindows.58683691.InpApp_1000.26100.7019.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.58683691.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-12-02] ()
@{MicrosoftWindows.59379618.InpApp_1000.26100.7019.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.59379618.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.59379618.InpApp_cw5n1h2txyewy [2026-01-14] (Microsoft Windows)
@{MicrosoftWindows.59379618.InpApp_1000.26100.7171.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.59379618.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.59379618.InpApp_cw5n1h2txyewy [2026-01-14] (Microsoft Windows)
@{MicrosoftWindows.59379618.InpApp_1000.26100.7309.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.59379618.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.59379618.InpApp_cw5n1h2txyewy [2026-01-14] (Microsoft Windows)
@{MicrosoftWindows.59379618.InpApp_1000.26100.7462.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.59379618.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.59379618.InpApp_cw5n1h2txyewy [2026-01-14] (Microsoft Windows)
Balíček prostředí funkcí systému Windows -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.57242383.Tasbar_cw5n1h2txyewy [2026-01-14] (Microsoft Windows)
Balíček prostředí funkcí systému Windows -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.59379618.InpApp_cw5n1h2txyewy [2026-01-14] (Microsoft Windows)
Boom 3D -> C:\Program Files\WindowsApps\GlobalDelightTechnologies.Boom3D_2.0.1.0_x64__b7pwcagxvespy [2026-01-15] (Global Delight Technologies Pvt. Ltd.) [Startup Task]
Disney+ -> C:\Program Files\WindowsApps\Disney.37853FC22B2CE_2024.3.211.0_neutral__6rarf9sa4v8jt [2025-11-12] (Disney)
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.27.6410.0_x64__rz1tebttyb220 [2026-01-15] (Dolby Laboratories)
Intel® Graphics Software -> C:\Program Files\WindowsApps\AppUp.IntelArcSoftware_25.44.2010.0_x64__8j3eq9eme6ctt [2025-12-31] (INTEL CORP)
Local AI Manager for Microsoft 365 -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\AI [2026-01-24] ()
Microsoft.Office.ActionsServer -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\ActionsServer [2026-01-24] ()
MSI Center -> C:\Program Files\WindowsApps\9426MICRO-STARINTERNATION.MSICenter_2.0.64.0_x64__kzh8wxbdkxb8p [2025-12-26] (MICRO-STAR INTERNATIONAL CO., LTD) [Startup Task]
MSI Game Bar -> C:\Program Files\WindowsApps\9426MICRO-STARINTERNATION.MSIGameBar_3.0.27.0_x64__kzh8wxbdkxb8p [2025-11-12] (MICRO-STAR INTERNATIONAL CO., LTD)
Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_7.0.8.0_neutral__mcm4njqhnhss8 [2025-11-12] (Netflix, Inc.)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.969.0_x64__56jybvy8sckqj [2025-11-12] (NVIDIA Corp.)
OfficePushNotificationsUtility -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16 [2026-01-24] ()
Ovládací centrum grafiky Intel® -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt [2025-11-12] (INTEL CORP) [Startup Task]
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.53.374.0_x64__dt26b99r8h8gj [2025-11-12] (Realtek Semiconductor Corp)
Tube Audio Pro - Audio Downloader -> C:\Program Files\WindowsApps\14184MeetmeXMTechnologyCo.TubeAudioPro-AudioDownlo_3.1.1.0_x64__8712n5bmjvf8t [2026-01-11] (MeetmeXM Technology Co., Ltd)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{1C67DF85-7959-43C0-92F8-2CAD0314C31C}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.201.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{2B49DB21-41C5-44C0-8358-CA4C76205AE1}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.209.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{448DD314-7FBB-429C-9DAA-C05A00D235A8}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.215.9\psuser_64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{47E6DCAF-41F8-441C-BD0E-A50D5FE6C4D1}\localserver32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\OneDrive\25.238.1204.0001_1\OneDrive.Sync.Service.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{5247F326-2FF0-4920-998E-12AA35F0883C}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.213.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{5EA43877-C6D8-4885-B77A-C0BB27E94372}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.215.9\psuser_64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{6A49690B-7DB6-424B-81CE-F51078F2A58D}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.203.13\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{81093D63-7825-417B-BFC8-ADC63FA4E53D}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.215.9\psuser_64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{917E8742-AA3B-7318-FA12-10485FB322A2}\localserver32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\OneDrive\25.238.1204.0001_1\OneDrive.Sync.Service.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{9C391760-8CB8-4F1E-AB7D-0C9915EFB004}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.211.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{A78355B5-2A4D-486B-B97A-43448FC8C34D}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.207.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{BB04C6F8-598E-4733-ABB4-07489C863436}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.205.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{EABAE40C-B27C-455A-B672-F234DD780948}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\TeamsMeetingAdd-in\1.25.24601\x64\Microsoft.Teams.MeetingAddin.DLL (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{ECCE2756-C45D-4E13-BC2D-EC9F138997E6}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.199.11\psuser_64.dll => No File
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-12-22] (Gen Digital Inc. -> Gen Digital Inc.)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-12-22] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-12-22] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers1: [Avast Cleanup Premium] -> {13004120-FCAF-4232-A255-807EAD6E7D01} => C:\Program Files\Avast Software\Cleanup\tucontextmenu.dll [2025-12-17] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2024-02-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2024-02-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-12-22] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers4: [Avast Cleanup Premium] -> {13004120-FCAF-4232-A255-807EAD6E7D01} => C:\Program Files\Avast Software\Cleanup\tucontextmenu.dll [2025-12-17] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_7840b4313191ae17\nvshext.dll [2025-12-31] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-12-22] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers6: [Avast Cleanup Premium] -> {13004120-FCAF-4232-A255-807EAD6E7D01} => C:\Program Files\Avast Software\Cleanup\tucontextmenu.dll [2025-12-17] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2024-02-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2024-02-26] (win.rar GmbH -> Alexander Roshal)
==================== Codecs (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Drivers32: [MidisrvTransferComplete] => 0
==================== Shortcuts & WMI ========================
==================== Loaded Modules (Whitelisted) =============
2025-12-17 20:52 - 2025-12-17 20:52 - 002149888 _____ () [File not signed] C:\ProgramData\Windhawk\Engine\Mods\32\libc++.whl
2025-12-17 20:52 - 2025-12-17 20:52 - 000220672 _____ () [File not signed] C:\ProgramData\Windhawk\Engine\Mods\32\libunwind.whl
2026-01-10 20:52 - 2026-01-10 20:52 - 000240128 _____ () [File not signed] C:\ProgramData\Windhawk\Engine\Mods\32\translucent-windows_1.7.2_227639.dll
2025-10-30 17:39 - 2025-12-17 20:52 - 002110976 _____ () [File not signed] C:\ProgramData\Windhawk\Engine\Mods\64\libc++.whl
2025-10-30 17:39 - 2025-12-17 20:52 - 000216064 _____ () [File not signed] C:\ProgramData\Windhawk\Engine\Mods\64\libunwind.whl
2025-12-18 14:12 - 2025-12-18 14:12 - 000107520 _____ () [File not signed] C:\ProgramData\Windhawk\Engine\Mods\64\taskbar-volume-control_1.2.2_319954.dll
2026-01-10 20:52 - 2026-01-10 20:52 - 000230912 _____ () [File not signed] C:\ProgramData\Windhawk\Engine\Mods\64\translucent-windows_1.7.2_227639.dll
2025-12-17 20:56 - 2025-12-17 20:56 - 000841728 _____ () [File not signed] C:\ProgramData\Windhawk\Engine\Mods\64\windows-11-file-explorer-styler_1.2.2_423856.dll
2025-12-17 21:03 - 2025-12-17 21:03 - 000921600 _____ () [File not signed] C:\ProgramData\Windhawk\Engine\Mods\64\windows-11-notification-center-styler_1.3.3_953363.dll
2025-12-17 21:01 - 2025-12-17 21:01 - 001315328 _____ () [File not signed] C:\ProgramData\Windhawk\Engine\Mods\64\windows-11-start-menu-styler_1.3.3_462503.dll
2025-12-17 21:02 - 2025-12-17 21:02 - 001175040 _____ () [File not signed] C:\ProgramData\Windhawk\Engine\Mods\64\windows-11-taskbar-styler_1.5.2_617531.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\GROOVEEX.DLL [2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2017-09-29 14:46 - 2017-09-29 14:44 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
==================== Network ===========================
(Currently there is no automatic fix for this section.)
DNS Servers: 192.168.0.1
Windows Firewall is enabled.
Network Binding:
=============
Wi-Fi: Intel(R) Wi-Fi 6E AX211 160MHz -> Netwtw14.sys
Síťové připojení Bluetooth: Bluetooth Device (Personal Area Network) -> bthpan.sys
Ethernet: Realtek Gaming 2.5GbE Family Controller -> rt25cx21x64.sys
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Python313\Scripts\;C:\Python313\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;C:\Program Files\dotnet\;C:\ProgramData\chocolatey\bin;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\nodejs\;C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Node.js
HKU\S-1-5-21-3829043792-2434836364-2020864886-1001\Control Panel\Desktop\\Wallpaper -> c:\users\matti.sin\appdata\local\packages\microsoft.windows.photos_8wekyb3d8bbwe\localstate\photosappbackground\774418072505.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Users\Matti.sin\AppData\Local\JetBrains\PyCharmCE2025.1
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Users\Matti.sin\PycharmProjects\PythonProject
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\Run32: => "Dropbox"
HKU\S-1-5-21-3829043792-2434836364-2020864886-1001\...\StartupApproved\Run: => "Mozilla-Firefox-308046B0AF4A39CB"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{44179D52-6A66-4214-A1D6-D2D3D57176F6}] => (Allow) C:\Program Files\Avast Software\Driver Updater\DriverUpdUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{0A566E87-3908-4E23-9177-82CF5F2D95B4}] => (Allow) C:\Program Files\Avast Software\Driver Updater\DriverUpdUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{3227A0A3-DC91-402D-8002-A6E56F37344E}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{4EFBB1C8-FDC2-4513-9171-6E0E65FB36EE}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{70777F4C-AD6D-4E43-8EE3-8B866AB1CECB}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{C1A340F8-B272-427A-ABEA-76CD9EE21237}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{A0D1E683-048C-4194-A08B-9DC10FFBB0D6}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{243AB248-84E7-4DD8-9A32-13819CD7ED0F}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{430F39F3-48AA-4EF3-B4AE-4BE00DFABD1E}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{6867D2AF-AD68-48B1-A965-CACC8B7B83AC}] => (Allow) C:\Program Files\Avast Software\SecureLine VPN\Vpn.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{8279D8C9-6BDA-4B3A-ADC3-6B720FB1BBA1}] => (Allow) C:\Program Files\Avast Software\SecureLine VPN\Vpn.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{FD6E6CFA-43FA-4D0F-B1B6-4E0B324B5364}] => (Allow) C:\Program Files\Avast Software\Cleanup\TuneupUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{3439C728-1B6B-452F-9864-E150DD9B2D63}] => (Allow) C:\Program Files\Avast Software\Cleanup\TuneupUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{3D599532-DAE7-440C-8DA9-567470A37BE3}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{781DBBC3-FF6C-4F69-83E2-278423DB6DF6}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{A5549D9E-47A4-481B-A6AA-7C641EB84A05}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{959AC464-DED5-43F9-BCD9-ED65F0A50009}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{D31EC343-9CC7-4EB8-844D-99D67F7EA457}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{9C450D84-8E3A-40A0-A8F0-AD7D00CA200E}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{36BC9C4C-4233-4D70-941F-884C02C4F49D}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{61C3DC16-A80C-48F8-A3A1-F56CEF5B5A7A}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{D3ADE778-48D2-49ED-82F7-9F943633F884}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{F2841BBA-E5C1-4521-9468-C5C3149FC0A2}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{559A14B1-44C5-47D8-80EA-3C678DEE2503}] => (Allow) C:\Program Files\WindowsApps\MSTeams_26005.204.4249.1621_x64__8wekyb3d8bbwe\ms-teams_modulehost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{B9859974-B6DA-404A-BEC6-6D9FEA181022}] => (Allow) C:\Program Files\WindowsApps\MSTeams_26005.204.4249.1621_x64__8wekyb3d8bbwe\ms-teams_modulehost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{34C052DE-57F7-4605-991F-365C148971A8}] => (Allow) C:\Program Files\WindowsApps\MSTeams_26005.204.4249.1621_x64__8wekyb3d8bbwe\ms-teams_modulehost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{BD08CC9D-2F04-47E7-A8E8-68F2A2E6A844}] => (Allow) C:\Program Files\WindowsApps\MSTeams_26005.204.4249.1621_x64__8wekyb3d8bbwe\ms-teams_modulehost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{552792E3-93FA-412F-9D7D-3DB80527A450}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{7C319032-EC20-4A15-AFCF-18AECFBC2585}] => (Allow) LPort=32683
FirewallRules: [{4A667A63-6654-4D2E-A9CC-05A687FD9441}] => (Allow) LPort=33683
FirewallRules: [{FCABB2D2-9705-4359-826D-5B2C4EF7C37A}] => (Allow) LPort=26822
==================== Restore Points =========================
19-01-2026 20:58:37 Avast Driver Updater Restore Point
22-01-2026 21:39:25 Avast Driver Updater Restore Point
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (01/24/2026 11:34:47 AM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 25188. ID zprávy: [0x2509].
Error: (01/24/2026 11:30:58 AM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 27224. ID zprávy: [0x2509].
Error: (01/23/2026 05:46:51 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 13084. ID zprávy: [0x2509].
Error: (01/23/2026 04:20:04 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 29972. ID zprávy: [0x2509].
Error: (01/23/2026 03:50:21 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 5884. ID zprávy: [0x2509].
Error: (01/23/2026 03:46:25 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 35512. ID zprávy: [0x2509].
Error: (01/23/2026 03:46:16 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 35772. ID zprávy: [0x2509].
Error: (01/23/2026 12:47:14 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 18636. ID zprávy: [0x2509].
System errors:
=============
Error: (01/23/2026 07:55:06 PM) (Source: DCOM) (EventID: 10010) (User: MATTI-SIN)
Description: Server {6FA05A24-B1DF-4155-909E-7B424F2D2BB5} se v daném časovém limitu neregistroval u služby DCOM.
Error: (01/23/2026 05:42:08 PM) (Source: DCOM) (EventID: 10010) (User: MATTI-SIN)
Description: Server {6FA05A24-B1DF-4155-909E-7B424F2D2BB5} se v daném časovém limitu neregistroval u služby DCOM.
Error: (01/23/2026 05:42:07 PM) (Source: DCOM) (EventID: 10010) (User: MATTI-SIN)
Description: Server {6FA05A24-B1DF-4155-909E-7B424F2D2BB5} se v daném časovém limitu neregistroval u služby DCOM.
Error: (01/23/2026 05:42:07 PM) (Source: DCOM) (EventID: 10010) (User: MATTI-SIN)
Description: Server {6FA05A24-B1DF-4155-909E-7B424F2D2BB5} se v daném časovém limitu neregistroval u služby DCOM.
Error: (01/22/2026 08:01:55 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80073d02): 9NMPJ99VJBWV-Microsoft.YourPhone.
Error: (01/22/2026 08:01:43 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80073d02): 9PC1H9VN18CM-Microsoft.StartExperiencesApp.
Error: (01/20/2026 08:05:48 PM) (Source: DCOM) (EventID: 10010) (User: MATTI-SIN)
Description: Server {6FA05A24-B1DF-4155-909E-7B424F2D2BB5} se v daném časovém limitu neregistroval u služby DCOM.
Error: (01/20/2026 08:05:48 PM) (Source: DCOM) (EventID: 10010) (User: MATTI-SIN)
Description: Server {6FA05A24-B1DF-4155-909E-7B424F2D2BB5} se v daném časovém limitu neregistroval u služby DCOM.
Windows Defender:
================
Date: 2026-01-23 16:02:54
Description:
Antivirová ochrana v programu Microsoft Defender śсǻη ħдѕ ъэεή šтőρρéδ ьëƒόѓë ςσмрļєťíőň.%л %τŞčąη ĮÐ:%в{39C2C612-4A46-467D-A06E-6BE1BFD55870}%й %ŧŚčâń Τỳφε:%вAntimalwarový program%ń %ŧŜċăņ Ρдѓámĕťëяš:%ъRychlé prohledávání%π %ţÚѕêґ:%ьNT AUTHORITY\SYSTEM%ń %тŠŧõρ Ŕéāşôň:%ьŞĉĥеδũĺέđ şĉāⁿ ŵāѕ ŝĸïφрёď вëčάùśε ŧĥе ℓдśт ŝůĉčęśśƒűł ѕčåñ щāś ώϊţђĭи ŧĥě ℓàŝт 7 ďàŷѕ
Date: 2026-01-22 19:55:13
Description:
Antivirová ochrana v programu Microsoft Defender śсǻη ħдѕ ъэεή šтőρρéδ ьëƒόѓë ςσмрļєťíőň.%л %τŞčąη ĮÐ:%в{54D67AE4-D4CF-48AD-89F1-75A4992A0EA9}%й %ŧŚčâń Τỳφε:%вAntimalwarový program%ń %ŧŜċăņ Ρдѓámĕťëяš:%ъRychlé prohledávání%π %ţÚѕêґ:%ьNT AUTHORITY\SYSTEM%ń %тŠŧõρ Ŕéāşôň:%ьŞĉĥеδũĺέđ şĉāⁿ ŵāѕ ŝĸïφрёď вëčάùśε ŧĥе ℓдśт ŝůĉčęśśƒűł ѕčåñ щāś ώϊţђĭи ŧĥě ℓàŝт 7 ďàŷѕ
Date: 2026-01-19 19:21:18
Description:
Antivirová ochrana v programu Microsoft Defender śсǻη ħдѕ ъэεή šтőρρéδ ьëƒόѓë ςσмрļєťíőň.%л %τŞčąη ĮÐ:%в{0F862472-488D-4536-AFD2-DAC996DD7758}%й %ŧŚčâń Τỳφε:%вAntimalwarový program%ń %ŧŜċăņ Ρдѓámĕťëяš:%ъRychlé prohledávání%π %ţÚѕêґ:%ьNT AUTHORITY\SYSTEM%ń %тŠŧõρ Ŕéāşôň:%ьŞĉĥеδũĺέđ şĉāⁿ ŵāѕ ŝĸïφрёď вëčάùśε ŧĥе ℓдśт ŝůĉčęśśƒűł ѕčåñ щāś ώϊţђĭи ŧĥě ℓàŝт 7 ďàŷѕ
Date: 2026-01-15 14:29:29
Description:
Antivirová ochrana v programu Microsoft Defender śсǻη ħдѕ ъэεή šтőρρéδ ьëƒόѓë ςσмрļєťíőň.%л %τŞčąη ĮÐ:%в{75436060-5172-47A8-9EED-0136F05531B7}%й %ŧŚčâń Τỳφε:%вAntimalwarový program%ń %ŧŜċăņ Ρдѓámĕťëяš:%ъRychlé prohledávání%π %ţÚѕêґ:%ьNT AUTHORITY\SYSTEM%ń %тŠŧõρ Ŕéāşôň:%ьŞĉĥеδũĺέđ şĉāⁿ ŵāѕ ŝĸïφрёď вëčάùśε ŧĥе ℓдśт ŝůĉčęśśƒűł ѕčåñ щāś ώϊţђĭи ŧĥě ℓàŝт 7 ďàŷѕ
Date: 2026-01-11 14:02:03
Description:
Antivirová ochrana v programu Microsoft Defender śсǻη ħдѕ ъэεή šтőρρéδ ьëƒόѓë ςσмрļєťíőň.%л %τŞčąη ĮÐ:%в{8236ED18-B1F7-4142-9285-6D6061E33E32}%й %ŧŚčâń Τỳφε:%вAntimalwarový program%ń %ŧŜċăņ Ρдѓámĕťëяš:%ъRychlé prohledávání%π %ţÚѕêґ:%ьNT AUTHORITY\SYSTEM%ń %тŠŧõρ Ŕéāşôň:%ьŞĉĥеδũĺέđ şĉāⁿ ŵāѕ ŝĸïφрёď вëčάùśε ŧĥе ℓдśт ŝůĉčęśśƒűł ѕčåñ щāś ώϊţђĭи ŧĥě ℓàŝт 7 ďàŷѕ
Event[0]
Date: 2025-11-12 22:58:32
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací a pokusí se o obnovení na předchozí verzi.
Bezpečnostní informace, které se měly načíst: Aktuální
Kód chyby: 0x80070003
Popis chyby: Systém nemůže nalézt uvedenou cestu.
Verze bezpečnostních informací: 0.0.0.0;0.0.0.0
Verze modulu: 0.0.0.0
Date: 2025-11-11 17:26:39
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.441.112.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.25100.9002
Kód chyby: 0x80072efd
Popis chyby: Spojení se serverem nebylo navázáno.
CodeIntegrity:
===============
Date: 2026-01-24 11:30:05
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Microsoft\EdgeWebView\Application\144.0.3719.82\msedgewebview2.exe) attempted to load \Device\HarddiskVolume4\Program Files\Windhawk\Engine\1.7.3_2\64\windhawk.dll that did not meet the Microsoft signing level requirements.
Date: 2026-01-24 11:29:57
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files (x86)\Microsoft\Edge\Application\msedge.exe) attempted to load \Device\HarddiskVolume4\Program Files\Windhawk\Engine\1.7.3_2\64\windhawk.dll that did not meet the Microsoft signing level requirements.
Date: 2026-01-24 11:28:03
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume4\Program Files\Windhawk\Engine\1.7.3_2\64\windhawk.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends International, LLC. H.C0 08/06/2025
Motherboard: Micro-Star International Co., Ltd. B760 GAMING PLUS WIFI (MS-7D98)
Processor: Intel(R) Core(TM) i5-14500
Percentage of memory in use: 16%
Total physical RAM: 65252.23 MB
Available physical RAM: 54644.97 MB
Total Virtual: 69348.23 MB
Available Virtual: 57622.33 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:930.12 GB) (Free:790.57 GB) (Model: WD_BLACK SN7100 1TB) NTFS
Drive e: (Data) (Fixed) (Total:931.39 GB) (Free:744.2 GB) (Model: WDC WD10EZEX-08WN4A0) NTFS
Drive f: (Rezervováno systémem) (Fixed) (Total:0.54 GB) (Free:0.5 GB) (Model: Samsung SSD 840 PRO Series) NTFS ==>[system with boot components (obtained from drive)]
Drive g: () (Fixed) (Total:237.4 GB) (Free:108.71 GB) (Model: Samsung SSD 840 PRO Series) NTFS
\\?\Volume{29679bec-bb55-41ae-9fc8-dd72863c66c7}\ () (Fixed) (Total:0 GB) (Free:0 GB)
\\?\Volume{58942f35-6142-4f47-8069-f817670c75fc}\ (Obnovení) (Fixed) (Total:0.49 GB) (Free:0.14 GB) NTFS
\\?\Volume{52b765f2-3ac3-4ad1-993c-eaaf04e0b674}\ () (Fixed) (Total:0.79 GB) (Free:0.12 GB) NTFS
\\?\Volume{5da774ee-0000-0000-0000-507c3b000000}\ () (Fixed) (Total:0.53 GB) (Free:0.08 GB) NTFS
\\?\Volume{d05b1c2e-8722-4f74-9d9b-3313f9818978}\ () (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 80B49758)
Partition: GPT.
==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 238.5 GB) (Disk ID: 5DA774EE)
Partition 1: (Active) - (Size=548 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=237.4 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=543 MB) - (Type=27)
==========================================================
Disk: 2 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000)
Partition: GPT.
==================== End of Addition.txt =======================
- Rudy
- Site Admin

- Příspěvky: 119756
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: prosím o kontrolu logu z FRST
Zdravím!
Otevřte poznámkový blok a zkopírujte do něj:
Otevřte poznámkový blok a zkopírujte do něj:
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.Start
CVloseProcesses:
HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] ->
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {B55A5FD5-D669-49D2-9F2A-03B2859A61B1} - System32\Tasks\Microsoft\Windows\Clip\ClipESU => %SystemRoot%\system32\clipesu.exe (No File)
Task: {152F5932-7466-4E43-8166-101C8F3CA535} - System32\Tasks\Microsoft\Windows\Clip\ClipESUConsumer => %SystemRoot%\system32\ClipESUConsumer.exe -evaluateEligibility (No File)
Task: {3DBC7719-A13E-43C5-9F70-021FDB4EC2EB} - System32\Tasks\Microsoft\Windows\Clip\ClipESUConsumerProcessECUpdate => %SystemRoot%\system32\ClipESUConsumer.exe -persistEligibilityStatus (No File)
Task: {847DF80D-C239-43D6-B77A-A7C4102A8BC4} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessPreOrder => %SystemRoot%\system32\ClipESUConsumer.exe -postProcessPreOrder (No File)
Task: {8D9ECCA9-2E65-4E5E-AC51-117F63FC051C} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessRefund => %SystemRoot%\system32\ClipESUConsumer.exe -processRefund (No File)
Task: {1B411846-7BB3-4510-A569-3B62BD8299D1} - System32\Tasks\Microsoft\Windows\Clip\EnableClipESU => %SystemRoot%\system32\clipesu.exe -e (No File)
Task: {DC58AE12-6541-42DC-A888-37A7299E1F35} - System32\Tasks\Microsoft\Windows\CUAssistant\CULauncher => %ProgramFiles%\CUAssistant\culauncher.exe (No File)
Task: {E88D9B2C-DDEA-47B2-9582-085153004DB5} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (No File)
Task: {D946EF0B-1404-4DDE-9489-4F6250EC22DE} - System32\Tasks\Microsoft\Windows\rempl\shell => %ProgramFiles%\rempl\sedlauncher.exe (No File)
Task: {CAB76809-EDC0-40D2-A888-AD9BEDF4E88A} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe (No File)
Task: {D0218C70-9C99-4043-BF17-667E1AE5C42E} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot => %systemroot%\system32\MusNotification.exe ReadyToReboot (No File)
Task: {32642DD6-71EA-458E-9A01-0ECF36A2ABC7} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog (No File)
Task: {784BBCC1-E9C5-48E1-B214-265B9D3125C7} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog (No File)
Task: {0634647D-9B9B-4C2B-B53C-F7C71F863618} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display => %systemroot%\system32\MusNotification.exe Display (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AU3 aswArDisk; no ImagePath
U3 aswBcc; no ImagePath
U3 Avast Business Console Client Antivirus Service; no ImagePath
U3 aswArDisk; no ImagePath
C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
C:\DumpStack.log.tmp
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{1C67DF85-7959-43C0-92F8-2CAD0314C31C}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.201.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{2B49DB21-41C5-44C0-8358-CA4C76205AE1}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.209.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{5247F326-2FF0-4920-998E-12AA35F0883C}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.213.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{6A49690B-7DB6-424B-81CE-F51078F2A58D}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.203.13\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{9C391760-8CB8-4F1E-AB7D-0C9915EFB004}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.211.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{A78355B5-2A4D-486B-B97A-43448FC8C34D}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.207.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{BB04C6F8-598E-4733-ABB4-07489C863436}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.205.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{ECCE2756-C45D-4E13-BC2D-EC9F138997E6}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.199.11\psuser_64.dll => No File
EmptyTemp:
End
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: prosím o kontrolu logu z FRST
Fix result of Farbar Recovery Scan Tool (x64) Version: 22-01-2026
Ran by Matti.sin (24-01-2026 15:07:40) Run:3
Running from C:\Users\Matti.sin\Desktop
Loaded Profiles: Matti.sin
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CVloseProcesses:
HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] ->
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {B55A5FD5-D669-49D2-9F2A-03B2859A61B1} - System32\Tasks\Microsoft\Windows\Clip\ClipESU => %SystemRoot%\system32\clipesu.exe (No File)
Task: {152F5932-7466-4E43-8166-101C8F3CA535} - System32\Tasks\Microsoft\Windows\Clip\ClipESUConsumer => %SystemRoot%\system32\ClipESUConsumer.exe -evaluateEligibility (No File)
Task: {3DBC7719-A13E-43C5-9F70-021FDB4EC2EB} - System32\Tasks\Microsoft\Windows\Clip\ClipESUConsumerProcessECUpdate => %SystemRoot%\system32\ClipESUConsumer.exe -persistEligibilityStatus (No File)
Task: {847DF80D-C239-43D6-B77A-A7C4102A8BC4} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessPreOrder => %SystemRoot%\system32\ClipESUConsumer.exe -postProcessPreOrder (No File)
Task: {8D9ECCA9-2E65-4E5E-AC51-117F63FC051C} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessRefund => %SystemRoot%\system32\ClipESUConsumer.exe -processRefund (No File)
Task: {1B411846-7BB3-4510-A569-3B62BD8299D1} - System32\Tasks\Microsoft\Windows\Clip\EnableClipESU => %SystemRoot%\system32\clipesu.exe -e (No File)
Task: {DC58AE12-6541-42DC-A888-37A7299E1F35} - System32\Tasks\Microsoft\Windows\CUAssistant\CULauncher => %ProgramFiles%\CUAssistant\culauncher.exe (No File)
Task: {E88D9B2C-DDEA-47B2-9582-085153004DB5} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (No File)
Task: {D946EF0B-1404-4DDE-9489-4F6250EC22DE} - System32\Tasks\Microsoft\Windows\rempl\shell => %ProgramFiles%\rempl\sedlauncher.exe (No File)
Task: {CAB76809-EDC0-40D2-A888-AD9BEDF4E88A} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe (No File)
Task: {D0218C70-9C99-4043-BF17-667E1AE5C42E} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot => %systemroot%\system32\MusNotification.exe ReadyToReboot (No File)
Task: {32642DD6-71EA-458E-9A01-0ECF36A2ABC7} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog (No File)
Task: {784BBCC1-E9C5-48E1-B214-265B9D3125C7} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog (No File)
Task: {0634647D-9B9B-4C2B-B53C-F7C71F863618} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display => %systemroot%\system32\MusNotification.exe Display (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AU3 aswArDisk; no ImagePath
U3 aswBcc; no ImagePath
U3 Avast Business Console Client Antivirus Service; no ImagePath
U3 aswArDisk; no ImagePath
C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
C:\DumpStack.log.tmp
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{1C67DF85-7959-43C0-92F8-2CAD0314C31C}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.201.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{2B49DB21-41C5-44C0-8358-CA4C76205AE1}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.209.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{5247F326-2FF0-4920-998E-12AA35F0883C}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.213.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{6A49690B-7DB6-424B-81CE-F51078F2A58D}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.203.13\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{9C391760-8CB8-4F1E-AB7D-0C9915EFB004}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.211.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{A78355B5-2A4D-486B-B97A-43448FC8C34D}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.207.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{BB04C6F8-598E-4733-ABB4-07489C863436}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.205.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{ECCE2756-C45D-4E13-BC2D-EC9F138997E6}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.199.11\psuser_64.dll => No File
EmptyTemp:
End
*****************
CVloseProcesses: => Error: No automatic fix found for this entry.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Providers\{C885AA15-1764-4293-B82A-0586ADD46B35} => removed successfully
"C:\WINDOWS\system32\GroupPolicy\Machine" Folder move:
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
C:\ProgramData\NTUSER.pol => moved successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B55A5FD5-D669-49D2-9F2A-03B2859A61B1}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B55A5FD5-D669-49D2-9F2A-03B2859A61B1}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Clip\ClipESU => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Clip\ClipESU" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{152F5932-7466-4E43-8166-101C8F3CA535}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{152F5932-7466-4E43-8166-101C8F3CA535}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Clip\ClipESUConsumer => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Clip\ClipESUConsumer" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{3DBC7719-A13E-43C5-9F70-021FDB4EC2EB}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3DBC7719-A13E-43C5-9F70-021FDB4EC2EB}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Clip\ClipESUConsumerProcessECUpdate => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Clip\ClipESUConsumerProcessECUpdate" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{847DF80D-C239-43D6-B77A-A7C4102A8BC4}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{847DF80D-C239-43D6-B77A-A7C4102A8BC4}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessPreOrder => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Clip\ClipEsuConsumerProcessPreOrder" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8D9ECCA9-2E65-4E5E-AC51-117F63FC051C}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8D9ECCA9-2E65-4E5E-AC51-117F63FC051C}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessRefund => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Clip\ClipEsuConsumerProcessRefund" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1B411846-7BB3-4510-A569-3B62BD8299D1}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1B411846-7BB3-4510-A569-3B62BD8299D1}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Clip\EnableClipESU => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Clip\EnableClipESU" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DC58AE12-6541-42DC-A888-37A7299E1F35}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DC58AE12-6541-42DC-A888-37A7299E1F35}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\CUAssistant\CULauncher => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\CUAssistant\CULauncher" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E88D9B2C-DDEA-47B2-9582-085153004DB5}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E88D9B2C-DDEA-47B2-9582-085153004DB5}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Location\Notifications => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Location\Notifications" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CCDFC0B8-01A3-4E74-A820-4F13F51D269E}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CCDFC0B8-01A3-4E74-A820-4F13F51D269E}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D946EF0B-1404-4DDE-9489-4F6250EC22DE}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D946EF0B-1404-4DDE-9489-4F6250EC22DE}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\rempl\shell => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\rempl\shell" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CAB76809-EDC0-40D2-A888-AD9BEDF4E88A}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CAB76809-EDC0-40D2-A888-AD9BEDF4E88A}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunUpdateNotificationMgr" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D0218C70-9C99-4043-BF17-667E1AE5C42E}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D0218C70-9C99-4043-BF17-667E1AE5C42E}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\Reboot" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{32642DD6-71EA-458E-9A01-0ECF36A2ABC7}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{32642DD6-71EA-458E-9A01-0ECF36A2ABC7}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\Reboot_AC" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{784BBCC1-E9C5-48E1-B214-265B9D3125C7}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{784BBCC1-E9C5-48E1-B214-265B9D3125C7}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0634647D-9B9B-4C2B-B53C-F7C71F863618}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0634647D-9B9B-4C2B-B53C-F7C71F863618}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\Task: {F3E6E7ED-A196-4E44-8803-55FAB3AU3 aswArDisk; no ImagePath" => not found
HKLM\System\CurrentControlSet\Services\aswBcc => could not remove, key could be protected
HKLM\System\CurrentControlSet\Services\Avast Business Console Client Antivirus Service => could not remove, key could be protected
HKLM\System\CurrentControlSet\Services\aswArDisk => removed successfully
aswArDisk => service removed successfully
Could not move "C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2" => Scheduled to move on reboot.
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.
HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{1C67DF85-7959-43C0-92F8-2CAD0314C31C} => removed successfully
HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{2B49DB21-41C5-44C0-8358-CA4C76205AE1} => removed successfully
HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{5247F326-2FF0-4920-998E-12AA35F0883C} => removed successfully
HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{6A49690B-7DB6-424B-81CE-F51078F2A58D} => removed successfully
HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{9C391760-8CB8-4F1E-AB7D-0C9915EFB004} => removed successfully
HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{A78355B5-2A4D-486B-B97A-43448FC8C34D} => removed successfully
HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{BB04C6F8-598E-4733-ABB4-07489C863436} => removed successfully
HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{ECCE2756-C45D-4E13-BC2D-EC9F138997E6} => removed successfully
=========== EmptyTemp: ==========
FlushDNS => completed
BITS transfer queue => 1572864 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 39524831 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 429740438 B
Windows/system/drivers => 245097304 B
Edge => 371592859 B
Chrome => 86869978 B
Firefox => 1326995468 B
Opera => 0 B
Local\Temp, Local\*.tmp, LocalLow\Temp, Roaming\Temp, Roaming\*.tmp , IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 146052 B
NetworkService => 60588 B
Matti.sin => 929191676 B
RecycleBin => 4429219084 B
EmptyTemp: => 7.3 GB temporary data Removed.
================================
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 24-01-2026 15:12:01)
C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2 => Could not move
C:\DumpStack.log.tmp => Could not move
Result of scheduled keys to remove after reboot:
HKLM\System\CurrentControlSet\Services\aswBcc => could not remove, key could be protected
HKLM\System\CurrentControlSet\Services\Avast Business Console Client Antivirus Service => could not remove, key could be protected
==== End of Fixlog 15:12:01 ====
Ran by Matti.sin (24-01-2026 15:07:40) Run:3
Running from C:\Users\Matti.sin\Desktop
Loaded Profiles: Matti.sin
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CVloseProcesses:
HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] ->
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {B55A5FD5-D669-49D2-9F2A-03B2859A61B1} - System32\Tasks\Microsoft\Windows\Clip\ClipESU => %SystemRoot%\system32\clipesu.exe (No File)
Task: {152F5932-7466-4E43-8166-101C8F3CA535} - System32\Tasks\Microsoft\Windows\Clip\ClipESUConsumer => %SystemRoot%\system32\ClipESUConsumer.exe -evaluateEligibility (No File)
Task: {3DBC7719-A13E-43C5-9F70-021FDB4EC2EB} - System32\Tasks\Microsoft\Windows\Clip\ClipESUConsumerProcessECUpdate => %SystemRoot%\system32\ClipESUConsumer.exe -persistEligibilityStatus (No File)
Task: {847DF80D-C239-43D6-B77A-A7C4102A8BC4} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessPreOrder => %SystemRoot%\system32\ClipESUConsumer.exe -postProcessPreOrder (No File)
Task: {8D9ECCA9-2E65-4E5E-AC51-117F63FC051C} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessRefund => %SystemRoot%\system32\ClipESUConsumer.exe -processRefund (No File)
Task: {1B411846-7BB3-4510-A569-3B62BD8299D1} - System32\Tasks\Microsoft\Windows\Clip\EnableClipESU => %SystemRoot%\system32\clipesu.exe -e (No File)
Task: {DC58AE12-6541-42DC-A888-37A7299E1F35} - System32\Tasks\Microsoft\Windows\CUAssistant\CULauncher => %ProgramFiles%\CUAssistant\culauncher.exe (No File)
Task: {E88D9B2C-DDEA-47B2-9582-085153004DB5} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (No File)
Task: {D946EF0B-1404-4DDE-9489-4F6250EC22DE} - System32\Tasks\Microsoft\Windows\rempl\shell => %ProgramFiles%\rempl\sedlauncher.exe (No File)
Task: {CAB76809-EDC0-40D2-A888-AD9BEDF4E88A} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe (No File)
Task: {D0218C70-9C99-4043-BF17-667E1AE5C42E} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot => %systemroot%\system32\MusNotification.exe ReadyToReboot (No File)
Task: {32642DD6-71EA-458E-9A01-0ECF36A2ABC7} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog (No File)
Task: {784BBCC1-E9C5-48E1-B214-265B9D3125C7} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog (No File)
Task: {0634647D-9B9B-4C2B-B53C-F7C71F863618} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display => %systemroot%\system32\MusNotification.exe Display (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AU3 aswArDisk; no ImagePath
U3 aswBcc; no ImagePath
U3 Avast Business Console Client Antivirus Service; no ImagePath
U3 aswArDisk; no ImagePath
C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
C:\DumpStack.log.tmp
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{1C67DF85-7959-43C0-92F8-2CAD0314C31C}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.201.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{2B49DB21-41C5-44C0-8358-CA4C76205AE1}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.209.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{5247F326-2FF0-4920-998E-12AA35F0883C}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.213.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{6A49690B-7DB6-424B-81CE-F51078F2A58D}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.203.13\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{9C391760-8CB8-4F1E-AB7D-0C9915EFB004}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.211.7\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{A78355B5-2A4D-486B-B97A-43448FC8C34D}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.207.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{BB04C6F8-598E-4733-ABB4-07489C863436}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.205.9\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{ECCE2756-C45D-4E13-BC2D-EC9F138997E6}\InprocServer32 -> C:\Users\Matti.sin\AppData\Local\Microsoft\EdgeUpdate\1.3.199.11\psuser_64.dll => No File
EmptyTemp:
End
*****************
CVloseProcesses: => Error: No automatic fix found for this entry.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Providers\{C885AA15-1764-4293-B82A-0586ADD46B35} => removed successfully
"C:\WINDOWS\system32\GroupPolicy\Machine" Folder move:
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
C:\ProgramData\NTUSER.pol => moved successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{B55A5FD5-D669-49D2-9F2A-03B2859A61B1}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B55A5FD5-D669-49D2-9F2A-03B2859A61B1}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Clip\ClipESU => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Clip\ClipESU" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{152F5932-7466-4E43-8166-101C8F3CA535}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{152F5932-7466-4E43-8166-101C8F3CA535}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Clip\ClipESUConsumer => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Clip\ClipESUConsumer" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{3DBC7719-A13E-43C5-9F70-021FDB4EC2EB}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3DBC7719-A13E-43C5-9F70-021FDB4EC2EB}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Clip\ClipESUConsumerProcessECUpdate => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Clip\ClipESUConsumerProcessECUpdate" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{847DF80D-C239-43D6-B77A-A7C4102A8BC4}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{847DF80D-C239-43D6-B77A-A7C4102A8BC4}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessPreOrder => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Clip\ClipEsuConsumerProcessPreOrder" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{8D9ECCA9-2E65-4E5E-AC51-117F63FC051C}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{8D9ECCA9-2E65-4E5E-AC51-117F63FC051C}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessRefund => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Clip\ClipEsuConsumerProcessRefund" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{1B411846-7BB3-4510-A569-3B62BD8299D1}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1B411846-7BB3-4510-A569-3B62BD8299D1}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Clip\EnableClipESU => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Clip\EnableClipESU" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{DC58AE12-6541-42DC-A888-37A7299E1F35}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DC58AE12-6541-42DC-A888-37A7299E1F35}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\CUAssistant\CULauncher => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\CUAssistant\CULauncher" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E88D9B2C-DDEA-47B2-9582-085153004DB5}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E88D9B2C-DDEA-47B2-9582-085153004DB5}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Location\Notifications => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Location\Notifications" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CCDFC0B8-01A3-4E74-A820-4F13F51D269E}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CCDFC0B8-01A3-4E74-A820-4F13F51D269E}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D946EF0B-1404-4DDE-9489-4F6250EC22DE}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D946EF0B-1404-4DDE-9489-4F6250EC22DE}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\rempl\shell => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\rempl\shell" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CAB76809-EDC0-40D2-A888-AD9BEDF4E88A}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CAB76809-EDC0-40D2-A888-AD9BEDF4E88A}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunUpdateNotificationMgr" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{D0218C70-9C99-4043-BF17-667E1AE5C42E}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{D0218C70-9C99-4043-BF17-667E1AE5C42E}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\Reboot" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{32642DD6-71EA-458E-9A01-0ECF36A2ABC7}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{32642DD6-71EA-458E-9A01-0ECF36A2ABC7}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\Reboot_AC" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{784BBCC1-E9C5-48E1-B214-265B9D3125C7}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{784BBCC1-E9C5-48E1-B214-265B9D3125C7}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0634647D-9B9B-4C2B-B53C-F7C71F863618}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0634647D-9B9B-4C2B-B53C-F7C71F863618}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_Broker_Display" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\Task: {F3E6E7ED-A196-4E44-8803-55FAB3AU3 aswArDisk; no ImagePath" => not found
HKLM\System\CurrentControlSet\Services\aswBcc => could not remove, key could be protected
HKLM\System\CurrentControlSet\Services\Avast Business Console Client Antivirus Service => could not remove, key could be protected
HKLM\System\CurrentControlSet\Services\aswArDisk => removed successfully
aswArDisk => service removed successfully
Could not move "C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2" => Scheduled to move on reboot.
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.
HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{1C67DF85-7959-43C0-92F8-2CAD0314C31C} => removed successfully
HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{2B49DB21-41C5-44C0-8358-CA4C76205AE1} => removed successfully
HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{5247F326-2FF0-4920-998E-12AA35F0883C} => removed successfully
HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{6A49690B-7DB6-424B-81CE-F51078F2A58D} => removed successfully
HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{9C391760-8CB8-4F1E-AB7D-0C9915EFB004} => removed successfully
HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{A78355B5-2A4D-486B-B97A-43448FC8C34D} => removed successfully
HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{BB04C6F8-598E-4733-ABB4-07489C863436} => removed successfully
HKU\S-1-5-21-3829043792-2434836364-2020864886-1001_Classes\CLSID\{ECCE2756-C45D-4E13-BC2D-EC9F138997E6} => removed successfully
=========== EmptyTemp: ==========
FlushDNS => completed
BITS transfer queue => 1572864 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 39524831 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 429740438 B
Windows/system/drivers => 245097304 B
Edge => 371592859 B
Chrome => 86869978 B
Firefox => 1326995468 B
Opera => 0 B
Local\Temp, Local\*.tmp, LocalLow\Temp, Roaming\Temp, Roaming\*.tmp , IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 146052 B
NetworkService => 60588 B
Matti.sin => 929191676 B
RecycleBin => 4429219084 B
EmptyTemp: => 7.3 GB temporary data Removed.
================================
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 24-01-2026 15:12:01)
C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2 => Could not move
C:\DumpStack.log.tmp => Could not move
Result of scheduled keys to remove after reboot:
HKLM\System\CurrentControlSet\Services\aswBcc => could not remove, key could be protected
HKLM\System\CurrentControlSet\Services\Avast Business Console Client Antivirus Service => could not remove, key could be protected
==== End of Fixlog 15:12:01 ====
- Rudy
- Site Admin

- Příspěvky: 119756
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: prosím o kontrolu logu z FRST
Smazáno. Změnilo se něco k lepšímu?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: prosím o kontrolu logu z FRST
spiše by mě zajimalo co to zpusobuje že se vypne eternet a přepne se na wifi a pak zpet. i když wifi vypnu tak se ethernet vypne jsem offline a zachvili se zase pripoji.
- Rudy
- Site Admin

- Příspěvky: 119756
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: prosím o kontrolu logu z FRST
Může způsobovat virus (tímto bych to už vyloučil), nastavení routeru, chybný ovladač, systémová chyba. hw vada routeru. Možná jsem na něco zapoměl, ale tohle jsou hlavní možné příčiny.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: prosím o kontrolu logu z FRST
tak chyba se stale objevuje LAN se odpojuje. Od poskytovalete mam nový router i set-top box, pak mám jeste svuj router jen teda nevim zda on nemá nejakou chybu. Jak to zjistit? Ovladač od ethernetu se stahnul 2 dny zpet
- Rudy
- Site Admin

- Příspěvky: 119756
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: prosím o kontrolu logu z FRST
Zkuste resetovat router. Tj. resetovat do tov. nastavení a znovu nastavit. Také bych zkontroloval stav nakrimpovaných konektorů a stav kontaktů. I zde může být chyba. V nakrimpování může být nějaký přechoďák a kontakty mohou být zoxydované. Na dálku nevím, v jakém prostředí je provozován.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: prosím o kontrolu logu z FRST
Tak nevím kde může být problém, fyzicky jsem snad zkontrolval vše co šlo, pořád se to děje 
- Rudy
- Site Admin

- Příspěvky: 119756
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: prosím o kontrolu logu z FRST
Router na zkoušku vyměňte, nebo ho zapojte k jinému PC (v jiné síti). Případně na zkoušku spusťte jiný PC s vaším routerem.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: prosím o kontrolu logu z FRST
případ mužete uzavřít, problém byl vyřešen, za kterým stalá IP6 
- Rudy
- Site Admin

- Příspěvky: 119756
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: prosím o kontrolu logu z FRST
Aha. Normálně se vypíná. Někdy se ale nainstaluje v zapnutém stavu. 
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Přispějete na provoz fóra?