Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Preventivni kontrola.

Patříte mezi Vzorné návštěvníky? Pak je tato sekce pro vás.

Moderátor: Moderátoři

Pravidla fóra
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
Zamčeno
Zpráva
Autor
KOKOS1
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 87
Registrován: 13 led 2006 11:33

Preventivni kontrola.

#1 Příspěvek od KOKOS1 »

Dobry den.
Jelikoz nejde Rsit stahnou davam sem log z FRST. Děkuji :)

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 05-03-2026
Ran by mikoa (administrator) on MIKOA (ATComputers X-DIABLO GAMER) (07-03-2026 09:48:37)
Running from C:\Users\mikoa\Downloads\FRST64.exe
Loaded Profiles: mikoa
Platform: Microsoft Windows 11 Home Version 25H2 26200.7840 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe ->) (Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\Win64\EpicWebHelper.exe <5>
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe <7>
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA Overlay.exe <5>
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA App\ShadowPlay\nvsphelper64.exe
(Discord Inc. -> Discord Inc.) C:\Users\mikoa\AppData\Local\Discord\app-1.0.9227\Discord.exe <6>
(Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe
(explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe
(Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <26>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <10>
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.) C:\Program Files (x86)\ASUS\AsusCertService\AsusCertService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AXSP\4.03.12\atkexComSvc.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Windows (R) Win 7 DDK provider) C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MidiSrv.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\NisSrv.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <4>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_021cb587ccc8964f\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_5fb296660a9719a9\RtkAudUService64.exe <2>
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.Edge.GameAssist_1.0.3590.0_x64__8wekyb3d8bbwe\EdgeGameAssist.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\SDXHelper.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2602.1001.5.0_x64__8wekyb3d8bbwe\XboxPcAppFT.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.229.1.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\AppActions.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_5fb296660a9719a9\RtkAudUService64.exe [3498408 2022-07-13] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKU\S-1-5-21-2161308482-1726367771-1223172082-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [5760152 2026-01-21] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-2161308482-1726367771-1223172082-1001\...\Run: [Discord] => C:\Users\mikoa\AppData\Local\Discord\Update.exe [1526552 2024-09-09] (Discord Inc. -> GitHub)
HKU\S-1-5-21-2161308482-1726367771-1223172082-1001\...\Run: [Opera GX Browser Assistant] => C:\Users\mikoa\AppData\Local\Programs\Opera GX\assistant\browser_assistant.exe [3291288 2021-02-01] (Opera Software AS -> Opera Software)
HKU\S-1-5-21-2161308482-1726367771-1223172082-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [41732568 2026-02-17] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-2161308482-1726367771-1223172082-1001\...\Run: [MicrosoftEdgeAutoLaunch_2D2B6870C9A9D7F35059D3C24C3F4492] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4342352 2026-02-26] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2161308482-1726367771-1223172082-1001\...\Run: [Opera Browser Assistant] => [X]
HKLM\...\Print\Monitors\PDF-XChange Lite Port Monitor: C:\WINDOWS\system32\pxcpmL.dll [1048400 2026-01-07] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [2026-01-30] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\145.0.7632.160\Installer\chrmstp.exe [2026-03-06] (Google LLC -> Google LLC)
Startup: C:\Users\mikoa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Poslat do aplikace OneNote.lnk [2024-08-13]
ShortcutTarget: Poslat do aplikace OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {12021984-3923-4C04-B721-B7A3E2C23A7D} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1612800 2026-01-23] (Adobe Inc. -> Adobe Inc.)
Task: {27C06DD6-EDBF-4006-8379-3A2C19227F95} - System32\Tasks\EOSv3 Scheduler onLogOn => C:\Users\mikoa\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe [15205744 2026-03-07] (ESET, spol. s r.o. -> ESET)
Task: {B414ADF7-1B38-4CFA-99E2-9DAE0F002720} - System32\Tasks\EOSv3 Scheduler onTime => C:\Users\mikoa\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe [15205744 2026-03-07] (ESET, spol. s r.o. -> ESET)
Task: {88C6A0D6-9AA0-48D3-890D-C077EE2417F8} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem147.0.7703.0{B3C0B9B3-1B9B-4EFF-8D8E-ACCC14673EF3} => C:\Program Files (x86)\Google\GoogleUpdater\147.0.7703.0\updater.exe [8495256 2026-02-25] (Google LLC -> Google LLC)
Task: {29CD2A83-371C-4509-8BED-75FA005259F3} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\ActionsServer\ActionsServer.exe [16301440 2026-03-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {9CF3F5F9-1C8D-4047-A94E-E486A988FF29} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28604736 2026-02-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {9F4D1F94-A382-4717-8FD3-2885E4FDF8A3} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\OFFICE16\opushutil.exe [73568 2026-03-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {BAA47CEA-306D-428A-9EE6-2B9EF8DF3B68} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28604736 2026-02-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {C18A2A35-A4F3-4114-A06D-BE9FCC2914B5} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [427808 2026-03-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {16EDC47C-C899-4776-81A2-EF627C58D4B8} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [427808 2026-03-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {63DD2AE5-EDE9-443B-9C6D-4B0D30667CDB} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\operfmon.exe [1349992 2026-03-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {EB708415-F113-4CEF-AFBD-14EA18A2440F} - System32\Tasks\Microsoft\Office\Office Startup Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\ActionsServer\ActionsServer.exe [16301440 2026-03-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {A65D6BDF-D09A-4DC3-BE64-22549B9CDA7D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpCmdRun.exe [1786528 2026-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {6BDB0A52-0EA6-428D-952E-B54C964CA63A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpCmdRun.exe [1786528 2026-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {A6951F62-97B4-43E8-B556-F30A050FF9F0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpCmdRun.exe [1786528 2026-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {90C31903-02D9-490F-B909-C4C510B51572} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpCmdRun.exe [1786528 2026-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {7E80365C-D7F4-4742-971A-F3AEF1CE4A39} - System32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA App.exe [3337328 2026-01-16] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {9FB519D5-8760-413B-B6E5-F34013CCFCEC} - System32\Tasks\Opera GX scheduled Autoupdate 1746276107 => C:\Users\mikoa\AppData\Local\Programs\Opera GX\autoupdate\opera_autoupdate.exe [6292936 2026-02-25] (Opera Norway AS -> Opera Software)
Task: {C1DF2962-DE74-410E-BAC8-813DA69A44FC} - System32\Tasks\Opera scheduled assistant Autoupdate 1745988088 => C:\Users\mikoa\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [6271448 2026-02-18] (Opera Norway AS -> Opera Software) -> --scheduledtask --productiscomponent --installdir="C:\Users\mikoa\AppData\Local\Programs\Opera\assistant" --producttype=assistant $(Arg0)
Task: {AFC047CE-B511-4850-908A-392B4987EE9F} - System32\Tasks\Opera scheduled Autoupdate 1745988085 => C:\Users\mikoa\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [6271448 2026-02-18] (Opera Norway AS -> Opera Software)
Task: {70E8EE70-5B46-4798-A355-B7D6ADD9A938} - System32\Tasks\PDFXChangeAutoUpdate => C:\Program Files\Tracker Software\Update\TrackerUpdate.exe [6214480 2026-01-07] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
Task: {65F1C589-F5D9-491F-AFF8-96AF833EACDB} - System32\Tasks\Ubisoft\Ubisoft Connect Background Update => C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\upc.exe [17241784 2025-09-10] (UBISOFT ENTERTAINMENT INC. -> Ubisoft)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{1f3cd9cd-1593-4c3a-aa41-afcebb1e4066}: [DhcpNameServer] 10.55.148.252
Tcpip\..\Interfaces\{bd043528-d6ff-4af1-88b1-3302ff9a88d8}: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2026-01-24] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2026-01-07] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2026-01-07] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2026-01-07] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2026-02-17] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-12-06] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2026-01-07] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2026-01-07] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2026-01-07] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin HKU\S-1-5-21-2161308482-1726367771-1223172082-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2026-01-07] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin HKU\S-1-5-21-2161308482-1726367771-1223172082-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2026-01-07] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin HKU\S-1-5-21-2161308482-1726367771-1223172082-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2026-01-07] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\mikoa\AppData\Local\Microsoft\Edge\User Data\Default [2026-03-07]
Edge HomePage: Default -> hxxp://www.google.cz/
Edge StartupUrls: Default -> "hxxp://www.google.cz/"
Edge Extension: (Dokumenty Google offline) - C:\Users\mikoa\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-02-27]
Edge Extension: (Dark Reader) - C:\Users\mikoa\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ifoakfbpdcdoeenechcleahebpibofpc [2026-02-11]
Edge Extension: (Edge relevant text changes) - C:\Users\mikoa\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-25]

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\mikoa\AppData\Local\Google\Chrome\User Data\Default [2026-03-07]
CHR Notifications: Default -> hxxps://avabur.com; hxxps://lyrania.co.uk; hxxps://pendoria.net; hxxps://www.avabur.com; hxxps://www.youtube.com
CHR Session Restore: Default -> is enabled.
CHR Extension: (TotalBlocker) - C:\Users\mikoa\AppData\Local\Google\Chrome\User Data\Default\Extensions\cignjngpjdkbiekiblcjnfkmfnelpjnn [2026-02-24]
CHR Extension: (Tampermonkey) - C:\Users\mikoa\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2025-12-05]
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\mikoa\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2026-03-07]
CHR Extension: (Dark Reader) - C:\Users\mikoa\AppData\Local\Google\Chrome\User Data\Default\Extensions\eimadpbcbfnmbkopoojfekhnkhdbieeh [2026-02-14]
CHR Extension: (RuFilter – прибрати російське з пошуку) - C:\Users\mikoa\AppData\Local\Google\Chrome\User Data\Default\Extensions\elpchcgflhpeddlipfgghoojkabldilc [2026-02-21]
CHR Extension: (Dokumenty Google offline) - C:\Users\mikoa\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-02-26]
CHR Extension: (Ad Skip Master for Youtube) - C:\Users\mikoa\AppData\Local\Google\Chrome\User Data\Default\Extensions\imlalpfjijneacdcjgjmphcpmlhkhkho [2025-03-21]
CHR Extension: (Eneba - Seamless Keys Activation and Cheap Games Offers) - C:\Users\mikoa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nbdedfhlakcdbjeepmdkbbobcmgcbeid [2025-11-05]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\mikoa\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-12-30]
CHR Profile: C:\Users\mikoa\AppData\Local\Google\Chrome\User Data\Guest Profile [2025-07-21]
CHR Profile: C:\Users\mikoa\AppData\Local\Google\Chrome\User Data\Profile 1 [2026-03-03]
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\mikoa\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2026-01-23]
CHR Extension: (Dokumenty Google offline) - C:\Users\mikoa\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-03-03]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\mikoa\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2026-03-03]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\mikoa\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-12-30]
CHR Profile: C:\Users\mikoa\AppData\Local\Google\Chrome\User Data\Profile 3 [2026-02-22]
CHR Notifications: Profile 3 -> hxxps://pendoria.net
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\mikoa\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2025-05-01]
CHR Extension: (Dokumenty Google offline) - C:\Users\mikoa\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-04-27]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\mikoa\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-10-09]
CHR Profile: C:\Users\mikoa\AppData\Local\Google\Chrome\User Data\System Profile [2026-03-07]
CHR HKU\S-1-5-21-2161308482-1726367771-1223172082-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]

Opera:
=======
OPR DefaultProfile: Default
StartMenuInternet: (HKU\S-1-5-21-2161308482-1726367771-1223172082-1001) Opera GXStable - "C:\Users\mikoa\AppData\Local\Programs\Opera GX\opera.exe"

Brave:
=======
BRA Profile: C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2025-07-21]
BRA Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2025-04-23]
BRA Extension: (Brave Ad Block Updater (AdGuard URL Tracking Protection Filters (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\acjngemejiflkehbcbomjgkbfhjlgioh [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Brave Ad Block First Party Filters (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\adcocjohghhfpidemphmcmlmhnfgikei [2025-04-23]
BRA Extension: (Brave Local Data Files Updater) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2025-04-23]
BRA Extension: (Brave Ad Block Updater (EasyList Finnish (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\afggnigkiebjlahlhcjgjahbhfikcipa [2025-04-23]
BRA Extension: (Brave Ad Block Updater (YouTube Anti-Shorts (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\almolcgbkikkhliiibfjkohebgklegam [2025-04-23]
BRA Extension: (Brave NTP background images) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Oficjalne Polskie Filtry Przeciwko Alertom o Adblocku (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\beeceepafhbchnbfdkfalfipoancnjkm [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Fanboy's Mobile Notifications (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\bfpgedeaaibpoidldhjcknekahbikncb [2025-04-23]
BRA Extension: (Brave Ad Block Updater (EasyList Cookie (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\cdbbhgbmjhfnhnmgeddbliobbofkgdhe [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Romanian Ad (ROad) (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\cgmhmpbimmakidhlkcnnehhicoclofep [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Fanboy's Anti-chat Apps (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\cjoooeeofnfjohnalnghhmdlalopplja [2025-04-23]
BRA Extension: (Brave Ad Block Updater (YouTube Mobile Distractions (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\cpapfkpkeaajehipopnaiihfmbfbnkdp [2025-04-23]
BRA Extension: (Brave Tor Client Updater (Windows)) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\cpoalefficncklhjfpglfiplenlpccdb [2024-12-21]
BRA Extension: (Brave Ad Block Updater (Eesti Saitidele Kohandatud (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\dcfccddjfmckaigemleendolfmmaaiii [2025-04-23]
BRA Extension: (Brave Ad Block Updater (EasyList Italy (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\eaidcpcfnepdmmhbglgjhpjdfodkdcki [2025-04-23]
BRA Extension: (Brave NTP sponsored images) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\efkihffiamafhbhefjaljejgdpkelpal [2025-04-23]
BRA Extension: (Brave Ad Block Updater (AdGuard Chinese (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\fbljdmoohhbifebddjnbbljgencmpjlb [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Bulgarian (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\fdmemomgcgpopbhhmdkdedkphkglhopj [2025-04-23]
BRA Extension: (Brave Ad Block Updater (EasyList Spanish (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\fejmaeodjeekfldnbegjagemjgnmhfof [2025-04-23]
BRA Extension: (Brave Ad Block Updater (IndianList (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\femdbljnkmindcakmnbjhfefepeaicnm [2025-04-23]
BRA Extension: (Brave Ad Block Updater (AdGuard Français (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\flnkmpokemfpaajmiimmjeiandgoodgg [2025-04-23]
BRA Extension: (Brave Ad Block Updater (EasyList Lithuania (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\fmddkdeghohhfoglgdpkhlnfgmmffklg [2025-04-23]
BRA Extension: (Brave Ad Block Updater (YousList (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\gdlpebjigadbdpjpfpdbmogebilelnbh [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Frellwit's Swedish (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\ggjlfgjhaeedkajcdpomeidjlniafdnp [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Adguard Turkish (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\gomenlogbembmkbghmaoledggliepdef [2025-04-23]
BRA Extension: (Brave NTP Super Referrer mapping table) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\heplpbhjcbmiibdlchlanmdenffpiibo [2024-12-18]
BRA Extension: (Brave Ad Block Updater (Latvian (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\hkeaopcnlcfbmbogejmbipnnopjlpiph [2025-04-23]
BRA Extension: (Brave Ad Block Updater (EasyList China (中文) (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\hmnnhojoekmmehfpmeegehbmifiijobb [2025-04-23]
BRA Extension: (Brave Ads Resources) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\iejekkikpddbbockoldagmfcdbffomfc [2025-03-21]
BRA Extension: (Brave Ad Block Updater (BitBlock Дополнительная подписка фильтров (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\iiglahilpgmhlcogkkihklnbcjjgpddl [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Fanboy's Korean (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\iihfaghdnbilkdhmmnnkebhodfgeaopd [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Brave Ad Block Updater (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Macedonian filters (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\jbjcimgbgpgbgkjalhlhgldfflklfgef [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Brave Experimental Adblock Rules (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\jcfckfokjmopfomnoebdkdhbhcgjfnbi [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Adguard Russian (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\jiajbjlakknofnkmlokcbanjbajpbdkl [2025-04-23]
BRA Extension: (Brave Ad Block Updater (EasyList Thailand (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\johkmlmpfakcaopiapbmcocgpkabdmed [2025-04-23]
BRA Extension: (Brave Ad Block Updater (EasyList Hebrew (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\kdakdkdknmkkafefhcbngpinlfoopoej [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Fanboy's Anti-Newsletter (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\kdddfellohomdnfkdhombbddhojklibj [2025-04-23]
BRA Extension: (Brave Ad Block Updater (PersianBlocker (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\keclkbppmfihehggeadflldbjpolcpgf [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Dandelion Sprout's Nordic (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\kjdbffhfijkonelaglifggkchhmgmeli [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Blocklists Anti-Porn (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\lbnibkdpkdjnookgfeogjdanfenekmpe [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Hufilter (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\ldnolaledjfkfgpjkbkcfjiaejeeanmh [2025-04-23]
BRA Extension: (Brave Ad Block Updater (EasyList Germany (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\lfmefmifdjlfneapckmpkinmlofjehbp [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Adguard Japanese filters 日本用フィルタ (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\llgjaaddopeckcifdceaaadmemagkepi [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Adguard Spanish/Portuguese (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\meimhmgfbckapkbbbdaoefgnbppmkodp [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Brave Twitch Adblock Rules (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\mhccgcegedfkhdbfbgllfkkcjhgkoinc [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Bypass Paywalls Clean Filters (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\mjhbdghipcamfoojbeikdojibeelbmil [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Liste AR (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\mpgdjfnjjmglioiflfioiappfbdbkeno [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Fanboy's Social (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\nbkknaieglghmocpollinelcggiehfco [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Oficjalne Polskie Filtry do AdBlocka (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\ngcohbdfildjnmfnicgdipopmlhdcokg [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Slovenian (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\nnpbcdahaefknppiijdmnckpdgojejck [2025-04-23]
BRA Extension: (Brave Ad Block Updater (CJX's Annoyance (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\npcnkjiaolpnapjleimicclmdcccoeme [2025-04-23]
BRA Extension: (Brave Ad Block Updater (EasyList Czech and Slovak (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\oegebjahecghlckbhkmojgnpcgdeajdi [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Icelandic (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\oimegboipnkgekgoccmlljjlhhbjaoil [2025-04-23]
BRA Extension: (Brave Ad Block Updater (ABPindo (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\olkjbfppmeijhkjhjjmfdbloighaigmh [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Fanboy's Annoyances + uBO Annoyances (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\omoaeaghhgmiojkeaemjkpkmelmalbgo [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Greek AdBlock (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\onooookdmjmijocbeafcldnbfiaobhjk [2025-04-23]
BRA Extension: (Brave Ad Block Updater (ABPVN (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\ooamlicohiiaodkaemgoimcihidbedmp [2025-04-23]
BRA Extension: (Brave Ad Block Updater (Adguard Dutch (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\oojedkppeblkjkcdlmlahnhndjmbicoi [2025-04-23]
BRA Extension: (Brave Ad Block Updater (YouTube Mobile Recommendations (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\phdmgpanpejkbmbljlhcehpadabljfbk [2025-04-23]
BRA Extension: (Brave Ad Block Updater (RU AdList Дополнительная региональная подписка (plaintext))) - C:\Users\mikoa\AppData\Local\BraveSoftware\Brave-Browser\User Data\phmomndefejccjmpiehbogokakkmnmgb [2025-04-23]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [180216 2026-01-23] (Adobe Inc. -> Adobe Inc.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\4.03.12\atkexComSvc.exe [908648 2024-09-03] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
R2 AsusCertService; C:\Program Files (x86)\ASUS\AsusCertService\AsusCertService.exe [503144 2024-11-01] (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.)
S2 AsusUpdateCheck; C:\WINDOWS\System32\AsusUpdateCheck.exe [845256 2026-03-04] (ASUSTeK Computer Inc. -> )
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [20276904 2025-11-14] (BattlEye Innovations e.K. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13270416 2026-02-21] (Microsoft Corporation -> Microsoft Corporation)
S3 Denuvo Anti-Cheat Update Service; C:\Program Files\Denuvo Anti-Cheat\denuvo-anti-cheat-update-service.exe [1220696 2025-07-08] (DENUVO GmbH -> Denuvo GmbH)
S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [964336 2024-10-28] (EasyAntiCheat Oy -> Epic Games, Inc.)
S3 EpicGamesUpdater; C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesUpdater.exe [3406264 2026-03-04] (Epic Games Inc. -> Epic Games, Inc.)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [1601952 2026-01-20] (Epic Games Inc. -> Epic Games, Inc.)
R3 GameInputRedistService; C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe [302504 2026-02-11] (Microsoft Corporation -> Windows (R) Win 7 DDK provider)
S3 LibreOfficeMaintenance; C:\Program Files\LibreOffice\program\update_service.exe [123304 2026-02-12] (The Document Foundation -> The Document Foundation)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MpDefenderCoreService.exe [2067464 2026-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_021cb587ccc8964f\Display.NvContainer\NVDisplay.Container.exe [1702632 2026-02-28] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [1565304 2026-01-14] (Rockstar Games, Inc. -> Rockstar Games)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\NisSrv.exe [4435096 2026-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26010.5-0\MsMpEng.exe [290744 2026-02-10] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 zksvc; C:\Program Files\Common Files\PUBG\zksvc.exe [26193816 2025-08-13] (KRAFTON, Inc. -> KRAFTON, Inc.)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 adgnetworkwfpdrv; C:\WINDOWS\System32\drivers\adgnetworkwfpdrv.sys [90792 2024-10-01] (Microsoft Windows Hardware Compatibility Publisher -> Adguard Software Limited)
S3 aftap0901; C:\WINDOWS\System32\drivers\aftap0901.sys [48624 2017-11-16] (AnchorFree Inc -> The OpenVPN Project)
R3 amdgpio3; C:\WINDOWS\System32\drivers\amdgpio3.sys [36928 2022-09-16] (ASMedia Technology Inc. -> Advanced Micro Devices, Inc)
R3 AmdTools64; C:\WINDOWS\System32\drivers\AmdTools64.sys [63392 2020-06-16] (Microsoft Windows Hardware Compatibility Publisher -> )
R1 Asusgio3; C:\Windows\system32\drivers\AsIO3.sys [58936 2024-11-01] (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.)
S3 Btcsrusb; C:\WINDOWS\System32\Drivers\btcusb.sys [53488 2024-01-06] (IVT CORPORATION -> IVT Corporation.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [602112 2025-11-21] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [204800 2025-11-21] (Microsoft Corporation) [File not signed]
S3 BTWDPAN; C:\WINDOWS\System32\drivers\btwdpan.sys [84008 2024-01-14] (Broadcom Corporation -> Broadcom Corporation.)
S3 Denuvo Anti-Cheat; C:\Program Files\Denuvo Anti-Cheat\denuvo-anti-cheat.sys [3795136 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Denuvo GmbH)
R0 DPIDEFil; C:\WINDOWS\System32\drivers\DPIDEFil.sys [53608 2024-01-06] (NEC Personal Computers, Ltd. -> NEC Personal Computers, Ltd.)
R0 FlashBoot; C:\WINDOWS\System32\drivers\FlashBoot.sys [17616 2024-01-06] (Challenger Backup Solutions, LLC -> Challenger Backup Solutions, LLC)
S3 gunfwfp; C:\Windows\System32\drivers\gunfwfp.sys [101440 2024-03-28] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
S3 hostpacket; C:\Windows\System32\drivers\hostpacket.sys [38472 2023-08-15] (Microsoft Windows Hardware Compatibility Publisher -> GEARUP PORTAL PTE. LTD.)
R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [82352 2026-02-10] (Microsoft Windows -> Microsoft Corporation)
R1 MSIO; C:\Windows\system32\drivers\MsIo64.sys [19672 2023-12-10] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd)
R0 nvme; C:\WINDOWS\System32\drivers\nvme.sys [96360 2024-01-06] (Phison Electronics Corporation -> Windows (R) Win 7 DDK provider)
R3 rt68cx21; C:\WINDOWS\System32\DriverStore\FileRepository\rt68cx21x64.inf_amd64_fbf50634f3ddb33d\rt68cx21x64.sys [779728 2023-12-05] (Realtek Semiconductor Corp. -> Realtek)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [21888 2026-02-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [635272 2026-02-10] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [102832 2026-02-10] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-03-07 09:48 - 2026-03-07 09:49 - 000040292 _____ C:\Users\mikoa\Downloads\FRST.txt
2026-03-07 09:46 - 2026-03-07 09:46 - 002445312 _____ (Farbar) C:\Users\mikoa\Downloads\FRST64.exe
2026-03-07 09:19 - 2026-03-07 09:19 - 000003838 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onLogOn
2026-03-07 09:19 - 2026-03-07 09:19 - 000003396 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onTime
2026-03-07 09:12 - 2026-03-07 09:12 - 008412528 _____ (ESET) C:\Users\mikoa\Downloads\esetonlinescanner.exe
2026-03-07 09:12 - 2026-03-07 09:12 - 000001389 _____ C:\Users\mikoa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk
2026-03-07 09:12 - 2026-03-07 09:12 - 000001283 _____ C:\Users\mikoa\Desktop\ESET Online Scanner.lnk
2026-03-07 09:12 - 2026-03-07 09:12 - 000000000 ____D C:\Users\mikoa\AppData\Local\ESET
2026-03-05 07:38 - 2026-03-05 07:39 - 000000000 ____D C:\Users\mikoa\Downloads\More Gather Radius - PTF - 25x-66-1-3-1739768895
2026-03-05 07:38 - 2026-03-05 07:38 - 000000822 _____ C:\Users\mikoa\Downloads\More Gather Radius - PTF - 25x-66-1-3-1739768895.7z
2026-03-05 07:35 - 2026-03-05 07:35 - 000017090 _____ C:\Users\mikoa\Downloads\Herbs Don't Spoil (PTF)-61-1-8-1765391172.zip
2026-03-05 07:35 - 2026-03-05 07:35 - 000000000 ____D C:\Users\mikoa\Downloads\Herbs Don't Spoil (PTF)-61-1-8-1765391172
2026-03-05 07:34 - 2026-03-05 07:34 - 000000000 ____D C:\Users\mikoa\Downloads\Food Doesn't Spoil (PTF)-61-1-8-1765562153
2026-03-05 07:33 - 2026-03-05 07:33 - 000033440 _____ C:\Users\mikoa\Downloads\Food Doesn't Spoil (PTF)-61-1-8-1765562153.zip
2026-03-05 07:31 - 2026-03-05 07:32 - 000000000 ____D C:\Users\mikoa\Downloads\Instant Herb Picking II-32-1-5-1-1763063140
2026-03-05 07:31 - 2026-03-05 07:31 - 000528071 _____ C:\Users\mikoa\Downloads\Instant Herb Picking II-32-1-5-1-1763063140.rar
2026-03-05 07:30 - 2026-03-05 07:30 - 000001216 _____ C:\Users\mikoa\Downloads\Better Perks - Lucky Find 100-629-1-0-1739923475 (1).zip
2026-03-05 07:29 - 2026-03-05 07:29 - 000001352 _____ C:\Users\mikoa\Downloads\Better Perks - Master Thief-629-1-0-1739750963.zip
2026-03-05 07:29 - 2026-03-05 07:29 - 000000000 ____D C:\Users\mikoa\Downloads\Better Perks - Master Thief-629-1-0-1739750963
2026-03-05 07:28 - 2026-03-05 07:28 - 000001216 _____ C:\Users\mikoa\Downloads\Better Perks - Lucky Find 100-629-1-0-1739923475.zip
2026-03-05 07:28 - 2026-03-05 07:28 - 000000000 ____D C:\Users\mikoa\Downloads\Better Perks - Lucky Find 100-629-1-0-1739923475
2026-03-05 04:22 - 2026-03-05 04:22 - 000000000 ____D C:\Users\Default\AppData\Local\UnrealEngine
2026-03-05 04:22 - 2026-03-05 04:22 - 000000000 ____D C:\Users\Default\AppData\Local\Epic Games
2026-03-05 03:54 - 2026-03-05 03:55 - 000000000 ____D C:\Users\mikoa\Downloads\Easy Smithing - 10x-83-1-2-1739293235
2026-03-05 03:54 - 2026-03-05 03:54 - 000001228 _____ C:\Users\mikoa\Downloads\Easy Smithing - 10x-83-1-2-1739293235.zip
2026-03-05 02:18 - 2026-03-05 02:18 - 000000405 _____ C:\Users\mikoa\Desktop\Kingdom Come Deliverance II.url
2026-03-04 23:42 - 2026-03-04 23:42 - 000711794 _____ C:\WINDOWS\system32\perfh005.dat
2026-03-04 23:42 - 2026-03-04 23:42 - 000153008 _____ C:\WINDOWS\system32\perfc005.dat
2026-03-04 23:37 - 2026-03-04 23:38 - 000000000 ____D C:\WINDOWS\LastGood
2026-03-04 23:23 - 2026-02-28 13:50 - 002421296 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2026-03-04 23:23 - 2026-02-28 13:50 - 002421296 _____ C:\WINDOWS\system32\vulkaninfo.exe
2026-03-04 23:23 - 2026-02-28 13:50 - 001923120 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2026-03-04 23:23 - 2026-02-28 13:50 - 001923120 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2026-03-04 23:23 - 2026-02-28 13:50 - 001625648 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2026-03-04 23:23 - 2026-02-28 13:50 - 001625648 _____ C:\WINDOWS\system32\vulkan-1.dll
2026-03-04 23:23 - 2026-02-28 13:50 - 001434672 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2026-03-04 23:23 - 2026-02-28 13:50 - 001434672 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2026-03-04 23:23 - 2026-02-28 13:50 - 000478952 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2026-03-04 23:23 - 2026-02-28 13:50 - 000375016 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2026-03-04 23:23 - 2026-02-28 13:46 - 001583336 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2026-03-04 23:23 - 2026-02-28 13:46 - 001385704 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2026-03-04 23:23 - 2026-02-28 13:46 - 001231592 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2026-03-04 23:23 - 2026-02-28 13:46 - 000675048 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvofapi64.dll
2026-03-04 23:23 - 2026-02-28 13:46 - 000509160 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvofapi.dll
2026-03-04 23:23 - 2026-02-28 13:45 - 028057832 _____ C:\WINDOWS\system32\nvidia-pcc.exe
2026-03-04 23:23 - 2026-02-28 13:45 - 002328296 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2026-03-04 23:23 - 2026-02-28 13:45 - 001724136 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2026-03-04 23:23 - 2026-02-28 13:45 - 001621224 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2026-03-04 23:23 - 2026-02-28 13:45 - 001064680 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2026-03-04 23:23 - 2026-02-28 13:45 - 000820456 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2026-03-04 23:23 - 2026-02-28 13:44 - 029136104 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2026-03-04 23:23 - 2026-02-28 13:44 - 021712104 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2026-03-04 23:23 - 2026-02-28 13:44 - 008441064 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2026-03-04 23:23 - 2026-02-28 13:44 - 005674216 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll
2026-03-04 23:23 - 2026-02-28 13:44 - 004466920 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2026-03-04 23:23 - 2026-02-28 13:44 - 000469736 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2026-03-04 23:23 - 2026-02-28 13:43 - 005925096 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2026-03-04 23:23 - 2026-02-28 13:43 - 005516488 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2026-03-04 23:23 - 2026-02-28 13:43 - 005011440 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2026-03-04 23:23 - 2026-02-28 13:43 - 000853736 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2026-03-04 23:23 - 2026-02-28 00:32 - 000162206 _____ C:\WINDOWS\system32\nvinfo.pb
2026-03-04 01:00 - 2026-03-07 01:20 - 000000000 ____D C:\WINDOWS\CbsTemp
2026-03-03 14:55 - 2026-03-03 14:55 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2026-03-02 15:18 - 2026-03-02 15:18 - 000273271 _____ C:\Users\mikoa\Downloads\Bohdan-Tkachyk-1557504-Zivotopisy.cz (1).pdf
2026-03-02 12:35 - 2026-03-02 12:35 - 000273271 _____ C:\Users\mikoa\Downloads\Bohdan-Tkachyk-1557504-Zivotopisy.cz.pdf
2026-02-28 20:07 - 2026-02-28 20:07 - 000000000 ____D C:\Program Files\Microsoft GameInput
2026-02-28 20:06 - 2026-02-28 20:06 - 000452984 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_d.dll.0
2026-02-20 15:11 - 2026-01-20 15:42 - 000127208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2026-02-20 12:27 - 2026-02-22 04:42 - 000000000 ____D C:\Users\mikoa\Desktop\techno
2026-02-20 11:11 - 2026-02-25 09:34 - 000000000 ____D C:\Users\mikoa\AppData\Local\VirtualDJ
2026-02-20 11:11 - 2026-02-20 11:11 - 000000983 _____ C:\Users\mikoa\Desktop\VirtualDJ.lnk
2026-02-20 11:11 - 2026-02-20 11:11 - 000000000 ____D C:\Users\mikoa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\VirtualDJ
2026-02-20 11:11 - 2026-02-20 11:11 - 000000000 ____D C:\Program Files\VirtualDJ
2026-02-12 19:52 - 2026-02-12 19:52 - 000000000 ____D C:\Program Files (x86)\LibreOffice Maintenance Service
2026-02-12 06:24 - 2026-02-12 06:24 - 000000000 ____D C:\WINDOWS\system32\braille-tables
2026-02-08 23:51 - 2026-02-08 23:51 - 000000222 _____ C:\Users\mikoa\Desktop\Dying Light.url
2026-02-05 03:56 - 2026-02-05 03:57 - 000000000 ____D C:\Users\mikoa\OneDrive\Dokumenty\Native Instruments
2026-02-05 03:54 - 2026-02-05 03:56 - 000000000 ____D C:\ProgramData\Native Instruments
2026-02-05 02:28 - 2026-02-05 03:57 - 000000000 ____D C:\Users\mikoa\AppData\Local\Native Instruments
2026-02-05 02:28 - 2026-02-05 03:48 - 000000000 ____D C:\Users\mikoa\OneDrive\Dokumenty\Traktor3
2026-02-05 02:28 - 2026-02-05 02:28 - 000000000 ____D C:\Users\mikoa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Native Instruments

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-03-07 09:48 - 2025-07-21 13:56 - 000000000 ____D C:\FRST
2026-03-07 09:37 - 2023-12-26 00:49 - 000000000 ____D C:\Program Files (x86)\Steam
2026-03-07 09:35 - 2024-09-16 09:13 - 000000000 ____D C:\Users\mikoa\AppData\Local\Discord
2026-03-07 08:03 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-03-06 23:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-03-06 19:12 - 2024-09-16 09:13 - 000000000 ____D C:\Users\mikoa\AppData\Roaming\discord
2026-03-06 06:32 - 2023-12-26 00:41 - 000000000 ____D C:\Users\mikoa\AppData\Local\D3DSCache
2026-03-06 06:31 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-03-06 05:20 - 2023-12-30 17:14 - 000002254 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2026-03-05 20:09 - 2024-09-16 09:13 - 000002254 _____ C:\Users\mikoa\Desktop\Discord.lnk
2026-03-05 20:09 - 2023-12-26 00:41 - 000000000 ____D C:\Users\mikoa\AppData\Local\NVIDIA
2026-03-05 19:04 - 2023-12-26 11:34 - 000000000 ____D C:\Users\mikoa\AppData\Roaming\WeMod
2026-03-05 18:10 - 2025-11-05 23:46 - 000001258 _____ C:\Users\mikoa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Wand (WeMod).lnk
2026-03-05 18:10 - 2025-11-05 23:46 - 000001250 _____ C:\Users\mikoa\Desktop\Wand (WeMod).lnk
2026-03-05 18:10 - 2025-01-03 23:13 - 000000000 ____D C:\Users\mikoa\AppData\Local\WeMod
2026-03-05 18:10 - 2023-12-26 11:34 - 000000000 ____D C:\Users\mikoa\AppData\Local\SquirrelTemp
2026-03-05 15:04 - 2024-04-01 08:24 - 000000000 ____D C:\WINDOWS\INF
2026-03-05 04:22 - 2023-12-26 03:17 - 000000000 ____D C:\ProgramData\Epic
2026-03-04 23:42 - 2025-11-21 09:23 - 001692452 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-03-04 23:38 - 2023-11-22 08:17 - 000000000 ____D C:\ProgramData\NVIDIA
2026-03-04 23:37 - 2023-11-22 08:17 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2026-03-04 23:21 - 2024-04-01 08:26 - 000000000 ___HD C:\Program Files\WindowsApps
2026-03-04 23:20 - 2025-11-21 09:21 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-03-04 23:20 - 2024-12-15 06:00 - 000005548 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2026-03-04 23:20 - 2024-04-01 08:21 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2026-03-04 23:20 - 2024-01-06 07:46 - 000901328 _____ () C:\WINDOWS\system32\wpbbin.exe
2026-03-04 23:20 - 2024-01-06 07:46 - 000845256 _____ C:\WINDOWS\system32\AsusUpdateCheck.exe
2026-03-04 23:20 - 2023-11-22 08:10 - 000012288 ___SH C:\DumpStack.log.tmp
2026-03-03 14:54 - 2023-11-22 08:18 - 000000000 ____D C:\Program Files\Microsoft Office
2026-03-02 15:20 - 2023-12-26 00:41 - 000000000 ____D C:\Users\mikoa\AppData\Local\Packages
2026-03-02 13:09 - 2025-11-21 09:21 - 000004184 _____ C:\WINDOWS\system32\Tasks\Opera GX scheduled Autoupdate 1746276107
2026-03-02 13:09 - 2025-05-03 13:41 - 000001426 _____ C:\Users\mikoa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera GX.lnk
2026-03-01 01:58 - 2025-11-21 09:21 - 000003640 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2026-03-01 01:58 - 2025-11-21 09:21 - 000003514 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2026-02-28 20:06 - 2024-01-05 05:30 - 004589944 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2026-02-28 20:06 - 2024-01-05 05:30 - 000911736 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2026-02-28 20:06 - 2024-01-05 05:30 - 000289144 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2026-02-28 20:06 - 2024-01-05 05:30 - 000260472 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2026-02-28 20:06 - 2024-01-05 05:30 - 000166264 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2026-02-28 20:06 - 2024-01-05 05:30 - 000153968 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe
2026-02-28 20:06 - 2024-01-05 05:30 - 000084344 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe
2026-02-28 11:08 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth
2026-02-28 05:59 - 2023-11-22 08:11 - 000002443 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-02-28 05:59 - 2023-11-22 08:11 - 000002281 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2026-02-24 14:14 - 2023-12-28 15:33 - 000000000 ____D C:\Users\mikoa\AppData\Roaming\Microsoft\Word
2026-02-20 14:37 - 2025-11-21 09:21 - 000004172 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1745988085
2026-02-20 14:37 - 2025-04-30 05:41 - 000001397 _____ C:\Users\mikoa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2026-02-20 07:03 - 2024-10-22 15:19 - 000002080 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2026-02-20 07:03 - 2024-10-22 15:19 - 000002068 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk
2026-02-19 12:36 - 2026-01-31 13:34 - 000000307 _____ C:\Users\mikoa\Desktop\Melle robust 3, Stamina robust 2-3,.txt
2026-02-19 07:57 - 2025-11-21 09:21 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2026-02-14 01:44 - 2025-02-22 12:31 - 000000000 ____D C:\Program Files\LibreOffice
2026-02-12 20:13 - 2023-12-26 02:22 - 000000000 ____D C:\WINDOWS\system32\MRT
2026-02-12 20:11 - 2023-12-26 02:22 - 221154392 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2026-02-12 06:25 - 2025-11-21 09:17 - 000629736 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2026-02-12 06:24 - 2025-12-05 18:32 - 000000000 ____D C:\WINDOWS\system32\NarratorMCAT
2026-02-12 06:24 - 2025-11-21 07:09 - 000000000 ____D C:\WINDOWS\InboxApps
2026-02-12 06:24 - 2025-11-21 06:54 - 000000000 ____D C:\WINDOWS\en-GB
2026-02-12 06:24 - 2024-04-01 17:30 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
2026-02-12 06:24 - 2024-04-01 17:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2026-02-12 06:24 - 2024-04-01 17:28 - 000000000 ____D C:\WINDOWS\SysWOW64\cs
2026-02-12 06:24 - 2024-04-01 17:28 - 000000000 ____D C:\WINDOWS\system32\cs
2026-02-12 06:24 - 2024-04-01 08:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2026-02-12 06:24 - 2024-04-01 08:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2026-02-12 06:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\WUModels
2026-02-12 06:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\UUS
2026-02-12 06:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2026-02-12 06:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2026-02-12 06:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2026-02-12 06:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2026-02-12 06:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemResources
2026-02-12 06:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2026-02-12 06:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2026-02-12 06:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\setup
2026-02-12 06:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2026-02-12 06:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2026-02-12 06:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2026-02-12 06:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2026-02-12 06:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\km-KH
2026-02-12 06:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2026-02-12 06:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\DDFs
2026-02-12 06:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2026-02-12 06:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2026-02-12 06:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\Provisioning
2026-02-12 06:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2026-02-12 06:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2026-02-12 06:24 - 2024-04-01 08:21 - 000000000 ____D C:\WINDOWS\servicing
2026-02-11 23:00 - 2025-11-05 18:11 - 001138088 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\GameInputRedist.dll
2026-02-11 23:00 - 2025-11-05 18:11 - 000013696 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\SysWOW64\GameInputRedist.dll
2026-02-10 21:36 - 2025-11-21 09:21 - 003276288 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2026-02-10 04:05 - 2023-11-22 08:11 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2026-02-10 01:12 - 2025-11-05 19:37 - 000000000 ____D C:\ProgramData\Whesvc
2026-02-06 06:41 - 2025-11-21 09:21 - 000004454 _____ C:\WINDOWS\system32\Tasks\Opera scheduled assistant Autoupdate 1745988088
2026-02-05 03:54 - 2023-11-22 08:14 - 000000000 ____D C:\ProgramData\Package Cache
2026-02-05 03:39 - 2023-12-26 02:47 - 000000000 ____D C:\Users\mikoa\AppData\Local\CrashDumps

==================== Files in the root of some directories ========

2024-08-04 02:44 - 2024-08-04 02:44 - 000000273 _____ () C:\ProgramData\fontcacheev1.dat
2024-02-07 05:02 - 2024-02-07 05:02 - 000004334 _____ () C:\Users\mikoa\AppData\Local\885259240
2024-06-14 03:47 - 2024-06-14 03:50 - 000000084 _____ () C:\Users\mikoa\AppData\Local\Autosofted License.txt

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================



Additional scan result of Farbar Recovery Scan Tool (x64) Version: 05-03-2026
Ran by mikoa (07-03-2026 09:50:01)
Running from C:\Users\mikoa\Downloads
Microsoft Windows 11 Home Version 25H2 26200.7840 (X64) (2025-11-21 08:21:20)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-2161308482-1726367771-1223172082-500 - Administrators - Disabled)
DefaultAccount (S-1-5-21-2161308482-1726367771-1223172082-503 - Limited - Disabled)
Guest (S-1-5-21-2161308482-1726367771-1223172082-501 - Limited - Disabled)
mikoa (S-1-5-21-2161308482-1726367771-1223172082-1001 - Administrators - Enabled) => C:\Users\mikoa
WDAGUtilityAccount (S-1-5-21-2161308482-1726367771-1223172082-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1029-1033-7760-BC15014EA700}) (Version: 25.001.21223 - Adobe)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601149}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
AMD GPIO2 Driver (HKLM-x32\...\{E9DD399F-21A3-479E-A7DF-D6CF4B2ADBF3}) (Version: 2.2.0.130 - Advanced Micro Devices, Inc.) Hidden
AMD Chipset Software (HKLM-x32\...\AMD_Chipset_IODrivers) (Version: 5.08.02.027 - Advanced Micro Devices, Inc.)
AMD PCI Driver (HKLM-x32\...\{80EC3CEE-2940-42A1-A776-B5D810D39F1E}) (Version: 1.0.0.90 - Advanced Micro Devices, Inc.) Hidden
AMD PSP Driver (HKLM-x32\...\{988F14B8-79A8-475D-BAC7-83F96AD3D821}) (Version: 5.24.0.0 - Advanced Micro Devices, Inc.) Hidden
AMD Ryzen Balanced Driver (HKLM-x32\...\{A171D320-C42C-4F3B-A2D8-C6A09F6788CC}) (Version: 8.0.0.13 - Advanced Micro Devices, Inc.) Hidden
AMD SBxxx SMBus Driver (HKLM-x32\...\{AAE0E27D-C88A-49BA-8715-77ADCD4286A3}) (Version: 5.12.0.38 - Advanced Micro Devices, Inc.) Hidden
AMD_Chipset_Drivers (HKLM-x32\...\{94dc9043-935f-4e10-ac8b-5ce0ac055188}) (Version: 5.08.02.027 - Advanced Micro Devices, Inc.) Hidden
Core Epic Installer (HKLM-x32\...\{531451dd-91d4-4b27-a171-1b9c7f325969}) (Version: 1.3.0.0 - Manticore Games) Hidden
Denuvo Anti-Cheat (HKLM\...\Denuvo Anti-Cheat) (Version: 6.7.0.8498 - Denuvo GmbH)
Discord (HKU\S-1-5-21-2161308482-1726367771-1223172082-1001\...\Discord) (Version: 1.0.9227 - Discord Inc.)
Epic Games Launcher (HKLM-x32\...\{B85FAA6E-A9AA-4655-9029-E1A4EDC05E1A}) (Version: 1.3.93.0 - Epic Games, Inc.)
Epic Online Services (HKLM-x32\...\{6730F587-C259-4C4C-A527-F7FF31D970F8}) (Version: 4.2.1 - Epic Games, Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 145.0.7632.160 - Google LLC)
Cheat Engine 7.5 (HKLM\...\Cheat Engine_is1) (Version: - Cheat Engine)
Indiana Jones: GC CZ v2.5 (HKLM-x32\...\Indiana Jones: GC CZ) (Version: 2.5 - Squiee)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
LibreOffice 25.2.0.3 (HKLM\...\{E38AFCD6-BF08-4ECA-AAFF-D6D57FAC1A3A}) (Version: 25.2.0.3 - The Document Foundation)
Microsoft .NET Host - 6.0.16 (x64) (HKLM\...\{1D0AC7F1-2B34-44AF-91F6-88757D768DA7}) (Version: 48.67.58427 - Microsoft Corporation) Hidden
Microsoft .NET Host - 8.0.15 (x64) (HKLM\...\{4C903F19-B4C3-4D0C-8CC9-D444C511AF1C}) (Version: 64.60.31149 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.16 (x64) (HKLM\...\{B8537ACA-B210-4DF5-B928-E41CEB76723D}) (Version: 48.67.58427 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.6 (x64) (HKLM\...\{089493D9-430B-4210-8A47-8F611288F461}) (Version: 48.27.42327 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.15 (x64) (HKLM\...\{11CCC9F6-77AA-4421-9EAC-BAEC36D96817}) (Version: 64.60.31149 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.16 (x64) (HKLM\...\{C71E93D2-B8B4-4858-B2A1-4C967DBC1C5F}) (Version: 48.67.58427 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.16 (x64) (HKLM-x32\...\{2a8d0f2b-911b-4b58-8252-46b29e7a4590}) (Version: 6.0.16.32323 - Microsoft Corporation)
Microsoft .NET Runtime - 6.0.6 (x64) (HKLM\...\{00478901-CD97-4A20-8FF3-3276865A2B44}) (Version: 48.27.42327 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.15 (x64) (HKLM\...\{8731E6E3-AF96-4515-ACEC-DBFB3DF55292}) (Version: 64.60.31149 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.15 (x64) (HKLM-x32\...\{c40cfd22-dfe6-4ea1-9994-a42d11989e6d}) (Version: 8.0.15.34714 - Microsoft Corporation)
Microsoft 365 - cs-cz (HKLM\...\O365HomePremRetail - cs-cz) (Version: 16.0.19725.20126 - Microsoft Corporation)
Microsoft 365 - en-us (HKLM\...\O365HomePremRetail - en-us) (Version: 16.0.19725.20126 - Microsoft Corporation)
Microsoft 365 - sk-sk (HKLM\...\O365HomePremRetail - sk-sk) (Version: 16.0.19725.20126 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 145.0.3800.82 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 145.0.3800.82 - Microsoft Corporation) Hidden
Microsoft GameInput (HKLM\...\{9F5D508B-EA43-4FA2-B0B6-8158A389442B}) (Version: 3.2.138.0 - Microsoft Corporation)
Microsoft Teams Meeting Add-in for Microsoft Office (HKLM\...\{A7AB73A3-CB10-4AA5-9D38-6AEFFBDE4C91}) (Version: 1.24.14501 - Microsoft)
Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.44.35211 (HKLM-x32\...\{d8bbe9f9-7c5b-42c6-b715-9ee898a2e515}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.44.35211 (HKLM-x32\...\{0b5169e3-39da-4313-808e-1f9c0407f3bf}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.44.35211 (HKLM\...\{86AB2CC9-08BD-4643-B0F9-F82D006D72FF}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.44.35211 (HKLM\...\{43B0D101-A022-48F4-9D04-BA404CEB1D53}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.44.35211 (HKLM-x32\...\{C18FB403-1E88-43C8-AD8A-CED50F23DE8B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.44.35211 (HKLM-x32\...\{922480B5-CAEB-4B1B-AAA4-9716EFDCE26B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.6 (x64) (HKLM\...\{B9E46F95-AC34-4943-AFE2-B72EFD56C6C0}) (Version: 48.27.42342 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.6 (x64) (HKLM-x32\...\{aad3b888-fde2-48c0-95c2-2f7a729283fb}) (Version: 6.0.6.31318 - Microsoft Corporation)
NVIDIA App 11.0.6.383 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NvApp) (Version: 11.0.6.383 - NVIDIA Corporation)
NVIDIA FrameView SDK 1.5.11821.36727370 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.5.11821.36727370 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.4.5.7 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.4.5.7 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 595.71 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 595.71 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.23.1019 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.23.1019 - NVIDIA Corporation)
Odinstalovat překlad (HKLM-x32\...\{A786F192-A558-4EB9-A3DF-8FD5BD05DCEB}}_is1) (Version: 1.03 - Jetro, Coffin Corner, Ralph Shepard)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.19725.20014 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.19029.20208 - Microsoft Corporation) Hidden
Opera GX Stable 127.0.5778.96 (HKU\S-1-5-21-2161308482-1726367771-1223172082-1001\...\Opera GX 127.0.5778.96) (Version: 127.0.5778.96 - Opera Software)
Opera Stable 127.0.5778.76 (HKU\S-1-5-21-2161308482-1726367771-1223172082-1001\...\Opera 127.0.5778.76) (Version: 127.0.5778.76 - Opera Software)
PDF-XChange Editor (HKLM\...\{8200CB74-76CB-4642-96FD-AA2B67991A23}) (Version: 10.8.2.407 - PDF-XChange Co Ltd.) Hidden
PDF-XChange Editor (HKLM-x32\...\{76c60cac-a812-4eaf-8fb9-1f68e31d5063}) (Version: 10.8.2.407 - PDF-XChange Co Ltd.)
Promontory_GPIO Driver (HKLM-x32\...\{B5512BCC-F4CD-4159-86A4-B2AD7D38FFA9}) (Version: 3.0.0.0 - Advanced Micro Devices, Inc.) Hidden
Realtek Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.9381.1 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 11.9.0614.2022 - Realtek)
REDlauncher (HKLM-x32\...\{6C25C853-BFDE-43DB-B5C1-CCCB67BD9533}) (Version: 3.2.1.1 - CD Projekt RED) Hidden
Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.105.2733 - Rockstar Games)
Rockstar Games SDK (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.4.0.146 - Rockstar Games)
ROGFontInstaller (HKLM\...\{605108C1-153E-43D8-8A67-7CE326B00ECA}) (Version: 1.0.0 - ASUS)
Satisfactory CZ v2.2 (HKLM-x32\...\Satisfactory CZ) (Version: 2.2 - Squiee)
Satisfactory Mod Manager (HKLM\...\Satisfactory Mod Manager) (Version: 3.0.3 - Satisfactory Modding)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Trust GXT929 HELOX_black (HKLM-x32\...\{51CD6743-D090-495C-9C75-EC227B5B3ED8}_is1) (Version: 1.0 - Trust)
Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 168.1.12922 - Ubisoft)
UE4 Prerequisites (x64) (HKLM\...\{1729B0A9-0490-418B-A565-89B4D5BC8F2D}) (Version: 1.2.0.0 - Epic Games, Inc.) Hidden
VirtualDJ 2026 (HKLM\...\{0565757A-5D16-422A-B9F8-6A7680AD5F96}) (Version: 8.5.9005.0 - Atomix Productions)
Wand (HKU\S-1-5-21-2161308482-1726367771-1223172082-1001\...\WeMod) (Version: 12.14.0 - WeMod)
WinRAR 7.10 (64-bit) (HKLM\...\WinRAR archiver) (Version: 7.10.0 - win.rar GmbH)

Packages:
=========
Adobe Acrobat Reader -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Assets [2026-02-20] ()
Local AI Manager for Microsoft 365 -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\AI [2026-03-03] ()
Microsoft Defender -> C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2511.3002.0_x64__8wekyb3d8bbwe [2026-01-10] (Microsoft Corporation) [Startup Task]
Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2024-12-15] (Microsoft Corp.)
Microsoft Sonia (Natural) - English (United Kingdom) -> C:\Program Files\WindowsApps\MicrosoftWindows.Voice.en-GB.Sonia.1_1.0.4.0_x64__cw5n1h2txyewy [2025-06-03] (Microsoft Windows)
Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_56.20201.588.0_x64__8wekyb3d8bbwe [2026-02-26] (Microsoft Corporation)
Microsoft.Office.ActionsServer -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\ActionsServer [2026-03-03] ()
Minecraft Education -> C:\Program Files\WindowsApps\Microsoft.MinecraftEducationEdition_1.21.13201.0_x64__8wekyb3d8bbwe [2026-03-02] (Microsoft Studios)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.969.0_x64__56jybvy8sckqj [2025-11-06] (NVIDIA Corp.)
OfficePushNotificationsUtility -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16 [2026-03-03] ()
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.1.137.0_x64__dt26b99r8h8gj [2024-12-15] (Realtek Semiconductor Corp)
Speech Pack - English (United Kingdom) -> C:\Program Files\WindowsApps\MicrosoftWindows.Speech.en-GB.1_1.0.14.0_x64__cw5n1h2txyewy [2025-07-01] (Microsoft Windows)
SpotifyAB.SpotifyMusic -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0 [2026-03-02] (Spotify AB) [Startup Task]
Supermarket Simulator -> C:\Program Files\WindowsApps\18814NAISU.SupermarketSimulator_1.0.20.0_x64__79azw0v9jg4wg [2025-12-12] (NAISU)
WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2606.102.0_x64__cv1g1gvanyjgm [2026-03-03] (WhatsApp Inc.) [Startup Task]
WinAppRuntime.Main.1.5 -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Main.1.5_5001.373.1736.0_x64__8wekyb3d8bbwe [2025-01-23] (Microsoft Corp.)
WinAppRuntime.Singleton -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Singleton_8000.770.947.0_x64__8wekyb3d8bbwe [2026-02-26] (Microsoft Corp.)
WinRAR -> C:\Program Files\WinRAR [2025-03-19] (win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2161308482-1726367771-1223172082-1001_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-2161308482-1726367771-1223172082-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-2161308482-1726367771-1223172082-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC)
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2026-02-17] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers1: [PDFXChange Editor Context menu] -> {2ACD35AB-F74A-4C20-AA9B-2DE80081626D} => C:\Program Files\Tracker Software\Shell Extensions\XCShellMenu.x64.dll [2026-01-07] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
ContextMenuHandlers5: [NvAppDesktopContext] -> {F2E8B4A1-9C7D-4F6E-B3A5-8D2C1F4E9B7A} => C:\Program Files\NVIDIA Corporation\NVIDIA App\NvCpl\nvui.dll [2026-01-16] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_021cb587ccc8964f\nvshext.dll [2026-02-28] (NVIDIA Corporation -> NVIDIA Corporation)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [MidisrvTransferComplete] => 1
HKLM\...\Drivers32: [midi1] => C:\WINDOWS\system32\wdmaud2.drv [126976 2026-02-10] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Drivers32: [midi1] => C:\Windows\SysWOW64\wdmaud2.drv [78848 2026-02-10] (Microsoft Windows -> Microsoft Corporation)

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\mikoa\Desktop\miko - Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Default"
ShortcutWithArgument: C:\Users\mikoa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\Ella - Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 1"
ShortcutWithArgument: C:\Users\mikoa\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\225bb61db2f318c1\Ahola (Práce) - Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 3"

==================== Loaded Modules (Whitelisted) =============

2025-08-15 03:15 - 2025-08-15 03:15 - 000030720 _____ (Adobe Systems Inc.) [File not signed] C:\Program Files\Adobe\Acrobat DC\Acrobat\locale\cs_cz\Acrobat Elements\ContextMenuShim64.cze
2023-11-22 08:18 - 2023-11-22 08:18 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems64.dll] C:\Program Files\Microsoft Office\Root\Office16\AppVIsvSubsystems64.dll
2023-11-22 08:18 - 2023-11-22 08:18 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R64.dll] C:\Program Files\Microsoft Office\Root\Office16\c2r64.dll
2026-01-23 14:35 - 2026-01-23 14:35 - 000000000 ____L (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\PlugIns\NVIDIA App\MessageBusRouter.dll] C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\plugins\NVIDIA Overlay\MessageBusRouter.dll
2025-12-19 02:41 - 2026-01-23 14:35 - 000000000 ____L (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA App\MessageBus\NvMessageBusBroadcast.dll] C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem\NvMessageBusBroadcast.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) =============

BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2026-01-30] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-03-03] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-03-03] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-03-03] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-03-03] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-03-03] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-03-03] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-03-03] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-03-03] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2022-05-07 06:24 - 2024-12-20 13:03 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

2024-05-31 01:50 - 2024-05-31 01:50 - 000000433 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics

==================== Network ===========================

(Currently there is no automatic fix for this section.)

DNS Servers: 192.168.1.1
Windows Firewall is enabled.

Network Binding:
=============
Ethernet: Realtek PCIe GbE Family Controller -> rt68cx21x64.sys
Wi-Fi: Realtek 8821CE Wireless LAN 802.11ac PCI-E NIC -> rtwlane.sys

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2161308482-1726367771-1223172082-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\mikoa\Downloads\pexels-visit-greenland-108649-360912.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)


==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKU\S-1-5-21-2161308482-1726367771-1223172082-1001\...\StartupApproved\StartupFolder: => "Poslat do aplikace OneNote.lnk"
HKU\S-1-5-21-2161308482-1726367771-1223172082-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-2161308482-1726367771-1223172082-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_2D2B6870C9A9D7F35059D3C24C3F4492"
HKU\S-1-5-21-2161308482-1726367771-1223172082-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-2161308482-1726367771-1223172082-1001\...\StartupApproved\Run: => "EADM"
HKU\S-1-5-21-2161308482-1726367771-1223172082-1001\...\StartupApproved\Run: => "Opera Browser Assistant"
HKU\S-1-5-21-2161308482-1726367771-1223172082-1001\...\StartupApproved\Run: => "Opera GX Browser Assistant"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{2BA32CF8-3FD7-4287-8858-85F89DCA83FE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ARK Survival Ascended\ShooterGame\Binaries\Win64\ArkAscended.exe (Wildcard Properties, LLC -> Epic Games, Inc.)
FirewallRules: [{E0422F08-6B75-461D-B5A3-A49E0DCA5C3B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ARK Survival Ascended\ShooterGame\Binaries\Win64\ArkAscended.exe (Wildcard Properties, LLC -> Epic Games, Inc.)
FirewallRules: [{CB1D66B1-95DC-43E1-AA55-6E582B6C4EF3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ARK Survival Ascended\ShooterGame\Binaries\Win64\ArkAscended_BE.exe (BattlEye Innovations e.K. -> BattlEye Innovations)
FirewallRules: [{B1DD8CE8-1DEA-4C83-969C-D11212390E44}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\ARK Survival Ascended\ShooterGame\Binaries\Win64\ArkAscended_BE.exe (BattlEye Innovations e.K. -> BattlEye Innovations)
FirewallRules: [{DEE8FF3E-B042-42B7-80E4-B3238A0C7F53}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{1F4A3827-0972-4BF8-9CD0-646CAC786097}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{EC1A5959-B667-4E0D-8B75-DCE726587437}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{4ECF4D12-986F-4EF9-8E2E-76062FFFF758}C:\xboxgames\ark- survival ascended\content\shootergame\binaries\wingdk\arkascended.exe] => (Allow) C:\xboxgames\ark- survival ascended\content\shootergame\binaries\wingdk\arkascended.exe => No File
FirewallRules: [TCP Query User{2E681E13-9493-498C-BBBA-C153459EF8E0}C:\xboxgames\ark- survival ascended\content\shootergame\binaries\wingdk\arkascended.exe] => (Allow) C:\xboxgames\ark- survival ascended\content\shootergame\binaries\wingdk\arkascended.exe => No File
FirewallRules: [UDP Query User{14886B12-7423-454A-B4C9-DAED1DD50B38}C:\users\mikoa\appdata\local\wemod\app-10.24.1\wemod.exe] => (Allow) C:\users\mikoa\appdata\local\wemod\app-10.24.1\wemod.exe => No File
FirewallRules: [TCP Query User{757D9E34-6405-466C-BAB7-C6D67E25CD2E}C:\users\mikoa\appdata\local\wemod\app-10.24.1\wemod.exe] => (Allow) C:\users\mikoa\appdata\local\wemod\app-10.24.1\wemod.exe => No File
FirewallRules: [UDP Query User{65DC132D-7CFD-4D4A-9BFC-EB5893178BBE}C:\users\mikoa\appdata\local\wemod\app-10.23.0\wemod.exe] => (Allow) C:\users\mikoa\appdata\local\wemod\app-10.23.0\wemod.exe => No File
FirewallRules: [TCP Query User{DF4A52CE-9DEB-4CA8-8169-1125DD447D33}C:\users\mikoa\appdata\local\wemod\app-10.23.0\wemod.exe] => (Allow) C:\users\mikoa\appdata\local\wemod\app-10.23.0\wemod.exe => No File
FirewallRules: [UDP Query User{10FF202C-1FE2-4D1E-BE66-4AA40A15ED2D}C:\program files (x86)\steam\steamapps\common\total war warhammer iii\warhammer3.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\total war warhammer iii\warhammer3.exe => No File
FirewallRules: [TCP Query User{A5306304-3A83-4711-8E22-EF8338A861E9}C:\program files (x86)\steam\steamapps\common\total war warhammer iii\warhammer3.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\total war warhammer iii\warhammer3.exe => No File
FirewallRules: [{7AB73E48-1FAB-487E-98E4-DE571F0A4BD8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Total War WARHAMMER III\launcher\launcher.exe => No File
FirewallRules: [{0835DFFE-2F81-4BFB-9CEA-1DD20729A084}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Total War WARHAMMER III\launcher\launcher.exe => No File
FirewallRules: [UDP Query User{CC5FD7EC-B401-462C-850E-1CD2CC81074A}C:\users\mikoa\appdata\local\programs\opera\opera.exe] => (Block) C:\users\mikoa\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [TCP Query User{0B3AB29E-8825-45CD-BC7D-AD6D65A284D8}C:\users\mikoa\appdata\local\programs\opera\opera.exe] => (Block) C:\users\mikoa\appdata\local\programs\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [UDP Query User{9A42EC4D-E565-48BE-BB2A-76C7263E4ED3}C:\xboxgames\the elder scrolls iv- oblivion remastered\content\oblivionremastered\binaries\wingdk\oblivionremastered-wingdk-shipping.exe] => (Allow) C:\xboxgames\the elder scrolls iv- oblivion remastered\content\oblivionremastered\binaries\wingdk\oblivionremastered-wingdk-shipping.exe => No File
FirewallRules: [TCP Query User{0BCD480E-A7D4-4609-8D85-B7387E98377C}C:\xboxgames\the elder scrolls iv- oblivion remastered\content\oblivionremastered\binaries\wingdk\oblivionremastered-wingdk-shipping.exe] => (Allow) C:\xboxgames\the elder scrolls iv- oblivion remastered\content\oblivionremastered\binaries\wingdk\oblivionremastered-wingdk-shipping.exe => No File
FirewallRules: [UDP Query User{081C31E9-708F-446A-8957-C50B6FD9206A}C:\users\mikoa\appdata\local\programs\opera gx\opera.exe] => (Allow) C:\users\mikoa\appdata\local\programs\opera gx\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [TCP Query User{D854419E-90E7-4D56-9B05-A8554156B627}C:\users\mikoa\appdata\local\programs\opera gx\opera.exe] => (Allow) C:\users\mikoa\appdata\local\programs\opera gx\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [UDP Query User{C6C1D433-C28A-472A-A7D2-118A812F3565}C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe => No File
FirewallRules: [TCP Query User{5F4F7585-E71A-469E-BA2D-FBF65A418590}C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe => No File
FirewallRules: [UDP Query User{0EA7DC82-512A-44A2-A4B2-90F13C1C61FB}C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe => No File
FirewallRules: [TCP Query User{E6CDE90A-5CF9-4C9E-8343-663A9BC830F5}C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe => No File
FirewallRules: [UDP Query User{B7C2B5CF-6726-4E26-8D2A-F7C29809DFF1}C:\games\core\kingdomcomedeliverance2\bin\win64mastermasterepicpgo\kingdomcome.exe] => (Allow) C:\games\core\kingdomcomedeliverance2\bin\win64mastermasterepicpgo\kingdomcome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [TCP Query User{049E600D-19EE-4E55-BD22-E92A584D4E59}C:\games\core\kingdomcomedeliverance2\bin\win64mastermasterepicpgo\kingdomcome.exe] => (Allow) C:\games\core\kingdomcomedeliverance2\bin\win64mastermasterepicpgo\kingdomcome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [TCP Query User{702B9E7C-6043-41DE-B860-AF5409067207}C:\program files\google\chrome\application\chrome.exe] => (Allow) C:\program files\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [UDP Query User{600CC7C4-3F55-4BFC-830D-A3BB258F6320}C:\program files\google\chrome\application\chrome.exe] => (Allow) C:\program files\google\chrome\application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{93591FAA-D9D5-4B3F-A128-4E20517A1883}] => (Allow) C:\Program Files (x86)\Steam\steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{E0942281-4947-4112-8321-27BCB48E7166}] => (Allow) C:\Program Files (x86)\Steam\steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{40FD6207-0C62-44A1-B3E1-0053642E17F0}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{4CC3FDE0-3C72-47D3-94E3-EB8C62CF8F55}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [TCP Query User{B94AF6D3-4E5A-4472-9E3A-01D287F72594}D:\program files (x86)\steam\steamapps\common\satisfactory\engine\binaries\win64\factorygame-win64-shipping.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\satisfactory\engine\binaries\win64\factorygame-win64-shipping.exe => No File
FirewallRules: [UDP Query User{46AE8F54-3B55-46A2-9DD5-54B8DB5B4119}D:\program files (x86)\steam\steamapps\common\satisfactory\engine\binaries\win64\factorygame-win64-shipping.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\satisfactory\engine\binaries\win64\factorygame-win64-shipping.exe => No File
FirewallRules: [TCP Query User{246434BB-F878-41C9-951E-A14A26803EEE}C:\program files (x86)\steam\steamapps\common\trackmania united\tmforever.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\trackmania united\tmforever.exe () [File not signed]
FirewallRules: [UDP Query User{062A878F-7EB4-4361-898E-DD1A2067DC37}C:\program files (x86)\steam\steamapps\common\trackmania united\tmforever.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\trackmania united\tmforever.exe () [File not signed]
FirewallRules: [{E81B2C4E-7A0F-4E00-9D99-A5E70BB2B543}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_24193.1905.3048.7590_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{C5BF8890-1B3F-41AA-8389-371B823A07E9}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_24193.1905.3048.7590_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{5F8C3521-0797-4287-A401-6578E7E7E7F3}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{24C076B5-C080-4D28-A685-80C165431BE5}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{132E26AE-F4A0-437D-8681-5059B71AA7A2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Banker Simulator Prologue\Banker Simulator Prologue.exe => No File
FirewallRules: [{E5BB91D8-93F9-4EBD-9AC4-4E2747CB326A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Banker Simulator Prologue\Banker Simulator Prologue.exe => No File
FirewallRules: [TCP Query User{FB08216D-92CC-4B86-B073-CD2547B64F93}C:\program files (x86)\steam\steamapps\common\tobacco shop simulator prologue\tobaccoshopsim\binaries\win64\tobaccoshopsim-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\tobacco shop simulator prologue\tobaccoshopsim\binaries\win64\tobaccoshopsim-win64-shipping.exe => No File
FirewallRules: [UDP Query User{662AB2BC-C52D-4335-ACC2-E3B197917F21}C:\program files (x86)\steam\steamapps\common\tobacco shop simulator prologue\tobaccoshopsim\binaries\win64\tobaccoshopsim-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\tobacco shop simulator prologue\tobaccoshopsim\binaries\win64\tobaccoshopsim-win64-shipping.exe => No File
FirewallRules: [{D17A8A44-F398-43AD-A109-B7A232F35CD4}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{75B4D40F-A127-4584-9000-C774E4C76BAF}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{48326BED-39CA-491E-9D20-335758FCD53D}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dying Light 2\ph\work\bin\x64\DyingLightGame_x64_rwdi.exe (Techland S.A. -> Techland)
FirewallRules: [{3E0EDBE6-31D5-4257-8ED2-F40E4A2B9F09}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dying Light 2\ph\work\bin\x64\DyingLightGame_x64_rwdi.exe (Techland S.A. -> Techland)
FirewallRules: [{B5550DCA-EC08-433E-8930-1D301B6ED38B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Green Hell\GH.exe () [File not signed]
FirewallRules: [{E30F29E8-76A3-41FA-93F6-072C19775CEE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Green Hell\GH.exe () [File not signed]
FirewallRules: [{FF76ABAA-389D-4BC9-BF37-92C0A83EA7AF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dying Light\DyingLightGame.exe (Techland S.A. -> Techland)
FirewallRules: [{3D0B06FD-0F6F-43A2-8542-E2677E3BAF5C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dying Light\DyingLightGame.exe (Techland S.A. -> Techland)
FirewallRules: [{DC863137-3844-4A87-A1DD-CDBB20655792}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dying Light\DevTools\DyingLightPlayer.exe (Techland S.A. -> Techland)
FirewallRules: [{B08C7723-C9DF-464A-BC13-A09914DC135A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Dying Light\DevTools\DyingLightPlayer.exe (Techland S.A. -> Techland)
FirewallRules: [TCP Query User{D42604B9-8A01-416E-90ED-777C75D2A1F0}C:\users\mikoa\appdata\local\discord\app-1.0.9224\discord.exe] => (Block) C:\users\mikoa\appdata\local\discord\app-1.0.9224\discord.exe => No File
FirewallRules: [UDP Query User{A0885C26-97EF-4AC7-9306-A40028A7A0B0}C:\users\mikoa\appdata\local\discord\app-1.0.9224\discord.exe] => (Block) C:\users\mikoa\appdata\local\discord\app-1.0.9224\discord.exe => No File
FirewallRules: [TCP Query User{EC960C4D-3D0F-4476-BC4F-C02E7D0B738C}C:\program files\virtualdj\virtualdj.exe] => (Allow) C:\program files\virtualdj\virtualdj.exe (Atomix Development FZE -> Atomix Development)
FirewallRules: [UDP Query User{95F914FE-F825-499D-930F-BA52E50CF370}C:\program files\virtualdj\virtualdj.exe] => (Allow) C:\program files\virtualdj\virtualdj.exe (Atomix Development FZE -> Atomix Development)
FirewallRules: [{909D124E-76DC-4A1C-BBD8-ED992C6A79A2}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{A3F4208D-637B-4EE3-B61D-EDAA22E8ACAC}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{71BDBE70-3186-4A92-8C30-9E772FFFAA79}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{7D1C5CDC-AC74-406C-9E59-590CB28E57B7}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{13CC8F3D-7D70-4228-BE55-FEB471E99767}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{E8EE52BE-57B1-4B62-89D5-E066D839A8E5}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{9B8B684F-B77D-4D8A-B158-699E6162B3BD}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{FD959FD7-6A9F-4722-9FB8-E6430F78C11A}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{ECED1B4D-D333-460B-B1AD-C07E5FD04604}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{4C598960-EE6D-428F-9254-74088317BCB4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{F45900E9-52DD-4D05-82EB-B4D755F3C37E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{619E8022-FE91-46DD-8F0C-C3AF5F477EEA}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{0C0B9630-A493-4959-BBF4-47F338D408EA}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.284.476.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{2AB8F58D-114F-477D-B51A-A92496A67E5F}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MinecraftEducationEdition_1.21.13201.0_x64__8wekyb3d8bbwe\Minecraft.Windows.exe (Microsoft Corporation -> )
FirewallRules: [{961D7476-FF97-43C2-B974-3F6C2443BA50}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MinecraftEducationEdition_1.21.13201.0_x64__8wekyb3d8bbwe\Minecraft.Windows.exe (Microsoft Corporation -> )
FirewallRules: [{C501AE95-BCE4-46D8-A13D-33C1BC6CF458}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

07-03-2026 00:03:45 Naplánovaný kontrolní bod

==================== Faulty Device Manager Devices ============

==================== Event log errors: ========================

Application errors:
==================
Error: (03/04/2026 11:20:15 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému..

Error: (03/04/2026 11:20:15 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.]

Error: (03/03/2026 02:56:06 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 18968. ID zprávy: [0x2509].

Error: (03/03/2026 02:54:19 PM) (Source: Microsoft-Windows-RestartManager) (EventID: 10006) (User: MIKOA)
Description: Aplikaci nebo službu Microsoft Office SDX Helper nelze ukončit.

Error: (03/02/2026 03:20:18 PM) (Source: Microsoft Office 16) (EventID: 2011) (User: )
Description: Office Subscription licensing exception: Error Code: 0x305; CorrelationId: {1CBF4C80-FE25-4214-BD56-5539C8E0F5A1}

Error: (03/02/2026 03:20:15 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 22004. ID zprávy: [0x2509].

Error: (03/02/2026 11:32:11 AM) (Source: Microsoft Office 16) (EventID: 2011) (User: )
Description: Office Subscription licensing exception: Error Code: 0x305; CorrelationId: {828D4548-A2DB-4F4F-8AA1-4ACED4BF6B7A}

Error: (03/02/2026 11:31:18 AM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 5840. ID zprávy: [0x2509].


System errors:
=============
Error: (03/06/2026 10:47:46 PM) (Source: volsnap) (EventID: 36) (User: )
Description: Stínové kopie svazku C: byly přerušeny, protože z důvodu limitu stanoveného uživatelem se nepodařilo zvětšit úložiště stínové kopie.

Error: (03/05/2026 05:07:53 PM) (Source: volsnap) (EventID: 36) (User: )
Description: Stínové kopie svazku C: byly přerušeny, protože z důvodu limitu stanoveného uživatelem se nepodařilo zvětšit úložiště stínové kopie.

Error: (03/05/2026 02:12:25 AM) (Source: volsnap) (EventID: 36) (User: )
Description: Stínové kopie svazku C: byly přerušeny, protože z důvodu limitu stanoveného uživatelem se nepodařilo zvětšit úložiště stínové kopie.

Error: (03/04/2026 11:22:54 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Aktualizace Google (gupdate) neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (03/04/2026 11:22:54 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Služba Aktualizace Google (gupdate) bylo dosaženo časového limitu (120000 ms).

Error: (03/04/2026 11:20:51 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1040) (User: NT AUTHORITY)
Description: Pre-attestation health checks confirm a critical component has failed, and the device is not expected to pass attestation.
Please see C:\WINDOWS\Logs\MeasuredBoot\0000000383-0000000000.json for detailed information on what checks were made.

Error: (03/04/2026 03:38:53 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80073d02): 9NTXGKQ8P7N0-MicrosoftWindows.CrossDevice.

Error: (03/04/2026 12:58:31 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80073d02): 9NMPJ99VJBWV-Microsoft.YourPhone.


Windows Defender:
================
Date: 2026-03-06 06:31:51
Description:
Antivirová ochrana v programu Microsoft Defender ѕĉåп нàś ъĕéń śţöрρέð вєƒόŕē сσмφℓēţĭòņ.%ŋ %ţŚсąη ĬÐ:%в{8257A466-950B-4749-B005-A7F67ADC0564}%л %тŠçáň Ŧýр℮:%ьAntimalwarový program%ⁿ %тŞçāň Ράřàmêţĕяѕ:%ьRychlé prohledávání%ʼn %ŧŬŝèѓ:%ъNT AUTHORITY\SYSTEM%ⁿ %ţŞτőρ Ŗĕąѕōñ:%ъŞĉђěδυŀзď şсåл ẃãŝ śкϊрρеđ ъè¢àϋšє тнè ŀаѕť ŝų¢сзŝšƒυĺ ѕçâń ωàş ώіτђĭʼn τђэ ľăŝŧ 7 đаўś

Date: 2026-03-05 15:16:51
Description:
Antivirová ochrana v programu Microsoft Defender ѕĉåп нàś ъĕéń śţöрρέð вєƒόŕē сσмφℓēţĭòņ.%ŋ %ţŚсąη ĬÐ:%в{CDF51405-22BF-4688-8E3A-15CA87E6FB58}%л %тŠçáň Ŧýр℮:%ьAntimalwarový program%ⁿ %тŞçāň Ράřàmêţĕяѕ:%ьRychlé prohledávání%ʼn %ŧŬŝèѓ:%ъNT AUTHORITY\SYSTEM%ⁿ %ţŞτőρ Ŗĕąѕōñ:%ъŔΡС ċоπʼnέĉťîõη яΰńδǿώň

Date: 2026-03-05 15:05:52
Description:
Antivirová ochrana v programu Microsoft Defender ѕĉåп нàś ъĕéń śţöрρέð вєƒόŕē сσмφℓēţĭòņ.%ŋ %ţŚсąη ĬÐ:%в{482BE87E-8E4C-4C94-B2E9-261856D1FB72}%л %тŠçáň Ŧýр℮:%ьAntimalwarový program%ⁿ %тŞçāň Ράřàmêţĕяѕ:%ьRychlé prohledávání%ʼn %ŧŬŝèѓ:%ъNT AUTHORITY\SYSTEM%ⁿ %ţŞτőρ Ŗĕąѕōñ:%ъŔΡС ċоπʼnέĉťîõη яΰńδǿώň

Date: 2026-03-05 08:27:59
Description:
Antivirová ochrana v programu Microsoft Defender ѕĉåп нàś ъĕéń śţöрρέð вєƒόŕē сσмφℓēţĭòņ.%ŋ %ţŚсąη ĬÐ:%в{702CEB5B-8957-46C4-B3B6-C19AED421B45}%л %тŠçáň Ŧýр℮:%ьAntimalwarový program%ⁿ %тŞçāň Ράřàmêţĕяѕ:%ьRychlé prohledávání%ʼn %ŧŬŝèѓ:%ъNT AUTHORITY\SYSTEM%ⁿ %ţŞτőρ Ŗĕąѕōñ:%ъŔΡС ċоπʼnέĉťîõη яΰńδǿώň

Date: 2026-03-04 10:03:50
Description:
Antivirová ochrana v programu Microsoft Defender ѕĉåп нàś ъĕéń śţöрρέð вєƒόŕē сσмφℓēţĭòņ.%ŋ %ţŚсąη ĬÐ:%в{05FFB4E1-EAF5-4F7E-A8A2-C12F0724C566}%л %тŠçáň Ŧýр℮:%ьAntimalwarový program%ⁿ %тŞçāň Ράřàmêţĕяѕ:%ьRychlé prohledávání%ʼn %ŧŬŝèѓ:%ъNT AUTHORITY\SYSTEM%ⁿ %ţŞτőρ Ŗĕąѕōñ:%ъŔΡС ċоπʼnέĉťîõη яΰńδǿώň

CodeIntegrity:
===============
Date: 2026-03-02 15:20:18
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\AI\aimgr.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\nvspcap64.dll that did not meet the Microsoft signing level requirements.


==================== Memory info ===========================

BIOS: American Megatrends Inc. 3403 09/20/2023
Motherboard: ASUSTeK COMPUTER INC. TUF GAMING A520M-PLUS WIFI
Processor: AMD Ryzen 5 5500
Percentage of memory in use: 51%
Total physical RAM: 16175.26 MB
Available physical RAM: 7879.5 MB
Total Virtual: 31142.84 MB
Available Virtual: 17446.82 MB

==================== Drives ================================

Drive c: (Windows) (Fixed) (Total:930.23 GB) (Free:199.01 GB) (Model: KINGSTON SNV2S1000G) NTFS
Drive d: (Elements) (Fixed) (Total:931.48 GB) (Free:925.43 GB) (Model: WD Elements 25A2 USB Device) NTFS

\\?\Volume{0825ce4a-4515-4e90-8464-08e573addd5e}\ (Recovery tools) (Fixed) (Total:1 GB) (Free:0.35 GB) NTFS
\\?\Volume{32f87435-d4cd-47df-9c12-554f5bde6c35}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 931.5 GB) (Disk ID: 0148B491)

Partition: GPT.

==========================================================
Disk: 1 (Size: 931.5 GB) (Disk ID: 16F2A91F)

Partition: GPT.

==================== End of Addition.txt =======================
Vim ze nic nevim.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119806
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Preventivni kontrola.

#2 Příspěvek od Rudy »

Zdravím!
Je v pořádku, že sem dáváte log FRST. RSIT pro současné 64b systémy není moc vhodný. Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKU\S-1-5-21-2161308482-1726367771-1223172082-1001\...\Run: [Opera Browser Assistant] => [X]
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
C:\DumpStack.log.tmp
C:\Users\mikoa\AppData\Local\885259240
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
FirewallRules: [UDP Query User{4ECF4D12-986F-4EF9-8E2E-76062FFFF758}C:\xboxgames\ark- survival ascended\content\shootergame\binaries\wingdk\arkascended.exe] => (Allow) C:\xboxgames\ark- survival ascended\content\shootergame\binaries\wingdk\arkascended.exe => No File
FirewallRules: [TCP Query User{2E681E13-9493-498C-BBBA-C153459EF8E0}C:\xboxgames\ark- survival ascended\content\shootergame\binaries\wingdk\arkascended.exe] => (Allow) C:\xboxgames\ark- survival ascended\content\shootergame\binaries\wingdk\arkascended.exe => No File
FirewallRules: [UDP Query User{14886B12-7423-454A-B4C9-DAED1DD50B38}C:\users\mikoa\appdata\local\wemod\app-10.24.1\wemod.exe] => (Allow) C:\users\mikoa\appdata\local\wemod\app-10.24.1\wemod.exe => No File
FirewallRules: [TCP Query User{757D9E34-6405-466C-BAB7-C6D67E25CD2E}C:\users\mikoa\appdata\local\wemod\app-10.24.1\wemod.exe] => (Allow) C:\users\mikoa\appdata\local\wemod\app-10.24.1\wemod.exe => No File
FirewallRules: [UDP Query User{65DC132D-7CFD-4D4A-9BFC-EB5893178BBE}C:\users\mikoa\appdata\local\wemod\app-10.23.0\wemod.exe] => (Allow) C:\users\mikoa\appdata\local\wemod\app-10.23.0\wemod.exe => No File
FirewallRules: [TCP Query User{DF4A52CE-9DEB-4CA8-8169-1125DD447D33}C:\users\mikoa\appdata\local\wemod\app-10.23.0\wemod.exe] => (Allow) C:\users\mikoa\appdata\local\wemod\app-10.23.0\wemod.exe => No File
FirewallRules: [UDP Query User{10FF202C-1FE2-4D1E-BE66-4AA40A15ED2D}C:\program files (x86)\steam\steamapps\common\total war warhammer iii\warhammer3.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\total war warhammer iii\warhammer3.exe => No File
FirewallRules: [TCP Query User{A5306304-3A83-4711-8E22-EF8338A861E9}C:\program files (x86)\steam\steamapps\common\total war warhammer iii\warhammer3.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\total war warhammer iii\warhammer3.exe => No File
FirewallRules: [{7AB73E48-1FAB-487E-98E4-DE571F0A4BD8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Total War WARHAMMER III\launcher\launcher.exe => No File
FirewallRules: [{0835DFFE-2F81-4BFB-9CEA-1DD20729A084}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Total War WARHAMMER III\launcher\launcher.exe => No File
FirewallRules: [UDP Query User{9A42EC4D-E565-48BE-BB2A-76C7263E4ED3}C:\xboxgames\the elder scrolls iv- oblivion remastered\content\oblivionremastered\binaries\wingdk\oblivionremastered-wingdk-shipping.exe] => (Allow) C:\xboxgames\the elder scrolls iv- oblivion remastered\content\oblivionremastered\binaries\wingdk\oblivionremastered-wingdk-shipping.exe => No File
FirewallRules: [TCP Query User{0BCD480E-A7D4-4609-8D85-B7387E98377C}C:\xboxgames\the elder scrolls iv- oblivion remastered\content\oblivionremastered\binaries\wingdk\oblivionremastered-wingdk-shipping.exe] => (Allow) C:\xboxgames\the elder scrolls iv- oblivion remastered\content\oblivionremastered\binaries\wingdk\oblivionremastered-wingdk-shipping.exe => No File
FirewallRules: [UDP Query User{C6C1D433-C28A-472A-A7D2-118A812F3565}C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe => No File
FirewallRules: [TCP Query User{5F4F7585-E71A-469E-BA2D-FBF65A418590}C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe => No File
FirewallRules: [UDP Query User{0EA7DC82-512A-44A2-A4B2-90F13C1C61FB}C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe => No File
FirewallRules: [TCP Query User{E6CDE90A-5CF9-4C9E-8343-663A9BC830F5}C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe => No File
FirewallRules: [{40FD6207-0C62-44A1-B3E1-0053642E17F0}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{4CC3FDE0-3C72-47D3-94E3-EB8C62CF8F55}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [TCP Query User{B94AF6D3-4E5A-4472-9E3A-01D287F72594}D:\program files (x86)\steam\steamapps\common\satisfactory\engine\binaries\win64\factorygame-win64-shipping.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\satisfactory\engine\binaries\win64\factorygame-win64-shipping.exe => No File
FirewallRules: [UDP Query User{46AE8F54-3B55-46A2-9DD5-54B8DB5B4119}D:\program files (x86)\steam\steamapps\common\satisfactory\engine\binaries\win64\factorygame-win64-shipping.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\satisfactory\engine\binaries\win64\factorygame-win64-shipping.exe => No File
FirewallRules: [{132E26AE-F4A0-437D-8681-5059B71AA7A2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Banker Simulator Prologue\Banker Simulator Prologue.exe => No File
FirewallRules: [{E5BB91D8-93F9-4EBD-9AC4-4E2747CB326A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Banker Simulator Prologue\Banker Simulator Prologue.exe => No File
FirewallRules: [TCP Query User{FB08216D-92CC-4B86-B073-CD2547B64F93}C:\program files (x86)\steam\steamapps\common\tobacco shop simulator prologue\tobaccoshopsim\binaries\win64\tobaccoshopsim-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\tobacco shop simulator prologue\tobaccoshopsim\binaries\win64\tobaccoshopsim-win64-shipping.exe => No File
FirewallRules: [UDP Query User{662AB2BC-C52D-4335-ACC2-E3B197917F21}C:\program files (x86)\steam\steamapps\common\tobacco shop simulator prologue\tobaccoshopsim\binaries\win64\tobaccoshopsim-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\tobacco shop simulator prologue\tobaccoshopsim\binaries\win64\tobaccoshopsim-win64-shipping.exe => No File
FirewallRules: [TCP Query User{D42604B9-8A01-416E-90ED-777C75D2A1F0}C:\users\mikoa\appdata\local\discord\app-1.0.9224\discord.exe] => (Block) C:\users\mikoa\appdata\local\discord\app-1.0.9224\discord.exe => No File
FirewallRules: [UDP Query User{A0885C26-97EF-4AC7-9306-A40028A7A0B0}C:\users\mikoa\appdata\local\discord\app-1.0.9224\discord.exe] => (Block) C:\users\mikoa\appdata\local\discord\app-1.0.9224\discord.exe => No File

EmptyTemp:

End
Uložte do C:\Users\mikoa\Downloads jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

KOKOS1
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 87
Registrován: 13 led 2006 11:33

Re: Preventivni kontrola.

#3 Příspěvek od KOKOS1 »

Novy log

Fix result of Farbar Recovery Scan Tool (x64) Version: 07-03-2026
Ran by mikoa (07-03-2026 13:25:16) Run:2
Running from C:\Users\mikoa\Downloads
Loaded Profiles: mikoa
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKU\S-1-5-21-2161308482-1726367771-1223172082-1001\...\Run: [Opera Browser Assistant] => [X]
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
C:\DumpStack.log.tmp
C:\Users\mikoa\AppData\Local\885259240
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
FirewallRules: [UDP Query User{4ECF4D12-986F-4EF9-8E2E-76062FFFF758}C:\xboxgames\ark- survival ascended\content\shootergame\binaries\wingdk\arkascended.exe] => (Allow) C:\xboxgames\ark- survival ascended\content\shootergame\binaries\wingdk\arkascended.exe => No File
FirewallRules: [TCP Query User{2E681E13-9493-498C-BBBA-C153459EF8E0}C:\xboxgames\ark- survival ascended\content\shootergame\binaries\wingdk\arkascended.exe] => (Allow) C:\xboxgames\ark- survival ascended\content\shootergame\binaries\wingdk\arkascended.exe => No File
FirewallRules: [UDP Query User{14886B12-7423-454A-B4C9-DAED1DD50B38}C:\users\mikoa\appdata\local\wemod\app-10.24.1\wemod.exe] => (Allow) C:\users\mikoa\appdata\local\wemod\app-10.24.1\wemod.exe => No File
FirewallRules: [TCP Query User{757D9E34-6405-466C-BAB7-C6D67E25CD2E}C:\users\mikoa\appdata\local\wemod\app-10.24.1\wemod.exe] => (Allow) C:\users\mikoa\appdata\local\wemod\app-10.24.1\wemod.exe => No File
FirewallRules: [UDP Query User{65DC132D-7CFD-4D4A-9BFC-EB5893178BBE}C:\users\mikoa\appdata\local\wemod\app-10.23.0\wemod.exe] => (Allow) C:\users\mikoa\appdata\local\wemod\app-10.23.0\wemod.exe => No File
FirewallRules: [TCP Query User{DF4A52CE-9DEB-4CA8-8169-1125DD447D33}C:\users\mikoa\appdata\local\wemod\app-10.23.0\wemod.exe] => (Allow) C:\users\mikoa\appdata\local\wemod\app-10.23.0\wemod.exe => No File
FirewallRules: [UDP Query User{10FF202C-1FE2-4D1E-BE66-4AA40A15ED2D}C:\program files (x86)\steam\steamapps\common\total war warhammer iii\warhammer3.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\total war warhammer iii\warhammer3.exe => No File
FirewallRules: [TCP Query User{A5306304-3A83-4711-8E22-EF8338A861E9}C:\program files (x86)\steam\steamapps\common\total war warhammer iii\warhammer3.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\total war warhammer iii\warhammer3.exe => No File
FirewallRules: [{7AB73E48-1FAB-487E-98E4-DE571F0A4BD8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Total War WARHAMMER III\launcher\launcher.exe => No File
FirewallRules: [{0835DFFE-2F81-4BFB-9CEA-1DD20729A084}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Total War WARHAMMER III\launcher\launcher.exe => No File
FirewallRules: [UDP Query User{9A42EC4D-E565-48BE-BB2A-76C7263E4ED3}C:\xboxgames\the elder scrolls iv- oblivion remastered\content\oblivionremastered\binaries\wingdk\oblivionremastered-wingdk-shipping.exe] => (Allow) C:\xboxgames\the elder scrolls iv- oblivion remastered\content\oblivionremastered\binaries\wingdk\oblivionremastered-wingdk-shipping.exe => No File
FirewallRules: [TCP Query User{0BCD480E-A7D4-4609-8D85-B7387E98377C}C:\xboxgames\the elder scrolls iv- oblivion remastered\content\oblivionremastered\binaries\wingdk\oblivionremastered-wingdk-shipping.exe] => (Allow) C:\xboxgames\the elder scrolls iv- oblivion remastered\content\oblivionremastered\binaries\wingdk\oblivionremastered-wingdk-shipping.exe => No File
FirewallRules: [UDP Query User{C6C1D433-C28A-472A-A7D2-118A812F3565}C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe => No File
FirewallRules: [TCP Query User{5F4F7585-E71A-469E-BA2D-FBF65A418590}C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe => No File
FirewallRules: [UDP Query User{0EA7DC82-512A-44A2-A4B2-90F13C1C61FB}C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe => No File
FirewallRules: [TCP Query User{E6CDE90A-5CF9-4C9E-8343-663A9BC830F5}C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe => No File
FirewallRules: [{40FD6207-0C62-44A1-B3E1-0053642E17F0}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{4CC3FDE0-3C72-47D3-94E3-EB8C62CF8F55}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [TCP Query User{B94AF6D3-4E5A-4472-9E3A-01D287F72594}D:\program files (x86)\steam\steamapps\common\satisfactory\engine\binaries\win64\factorygame-win64-shipping.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\satisfactory\engine\binaries\win64\factorygame-win64-shipping.exe => No File
FirewallRules: [UDP Query User{46AE8F54-3B55-46A2-9DD5-54B8DB5B4119}D:\program files (x86)\steam\steamapps\common\satisfactory\engine\binaries\win64\factorygame-win64-shipping.exe] => (Allow) D:\program files (x86)\steam\steamapps\common\satisfactory\engine\binaries\win64\factorygame-win64-shipping.exe => No File
FirewallRules: [{132E26AE-F4A0-437D-8681-5059B71AA7A2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Banker Simulator Prologue\Banker Simulator Prologue.exe => No File
FirewallRules: [{E5BB91D8-93F9-4EBD-9AC4-4E2747CB326A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Banker Simulator Prologue\Banker Simulator Prologue.exe => No File
FirewallRules: [TCP Query User{FB08216D-92CC-4B86-B073-CD2547B64F93}C:\program files (x86)\steam\steamapps\common\tobacco shop simulator prologue\tobaccoshopsim\binaries\win64\tobaccoshopsim-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\tobacco shop simulator prologue\tobaccoshopsim\binaries\win64\tobaccoshopsim-win64-shipping.exe => No File
FirewallRules: [UDP Query User{662AB2BC-C52D-4335-ACC2-E3B197917F21}C:\program files (x86)\steam\steamapps\common\tobacco shop simulator prologue\tobaccoshopsim\binaries\win64\tobaccoshopsim-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\tobacco shop simulator prologue\tobaccoshopsim\binaries\win64\tobaccoshopsim-win64-shipping.exe => No File
FirewallRules: [TCP Query User{D42604B9-8A01-416E-90ED-777C75D2A1F0}C:\users\mikoa\appdata\local\discord\app-1.0.9224\discord.exe] => (Block) C:\users\mikoa\appdata\local\discord\app-1.0.9224\discord.exe => No File
FirewallRules: [UDP Query User{A0885C26-97EF-4AC7-9306-A40028A7A0B0}C:\users\mikoa\appdata\local\discord\app-1.0.9224\discord.exe] => (Block) C:\users\mikoa\appdata\local\discord\app-1.0.9224\discord.exe => No File

EmptyTemp:

End
*****************

Processes closed successfully.
"HKU\S-1-5-21-2161308482-1726367771-1223172082-1001\Software\Microsoft\Windows\CurrentVersion\Run\\Opera Browser Assistant" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker" => removed successfully
Could not move "C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2" => Scheduled to move on reboot.
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.
C:\Users\mikoa\AppData\Local\885259240 => moved successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{4ECF4D12-986F-4EF9-8E2E-76062FFFF758}C:\xboxgames\ark- survival ascended\content\shootergame\binaries\wingdk\arkascended.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{2E681E13-9493-498C-BBBA-C153459EF8E0}C:\xboxgames\ark- survival ascended\content\shootergame\binaries\wingdk\arkascended.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{14886B12-7423-454A-B4C9-DAED1DD50B38}C:\users\mikoa\appdata\local\wemod\app-10.24.1\wemod.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{757D9E34-6405-466C-BAB7-C6D67E25CD2E}C:\users\mikoa\appdata\local\wemod\app-10.24.1\wemod.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{65DC132D-7CFD-4D4A-9BFC-EB5893178BBE}C:\users\mikoa\appdata\local\wemod\app-10.23.0\wemod.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{DF4A52CE-9DEB-4CA8-8169-1125DD447D33}C:\users\mikoa\appdata\local\wemod\app-10.23.0\wemod.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{10FF202C-1FE2-4D1E-BE66-4AA40A15ED2D}C:\program files (x86)\steam\steamapps\common\total war warhammer iii\warhammer3.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{A5306304-3A83-4711-8E22-EF8338A861E9}C:\program files (x86)\steam\steamapps\common\total war warhammer iii\warhammer3.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7AB73E48-1FAB-487E-98E4-DE571F0A4BD8}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0835DFFE-2F81-4BFB-9CEA-1DD20729A084}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{9A42EC4D-E565-48BE-BB2A-76C7263E4ED3}C:\xboxgames\the elder scrolls iv- oblivion remastered\content\oblivionremastered\binaries\wingdk\oblivionremastered-wingdk-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{0BCD480E-A7D4-4609-8D85-B7387E98377C}C:\xboxgames\the elder scrolls iv- oblivion remastered\content\oblivionremastered\binaries\wingdk\oblivionremastered-wingdk-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{C6C1D433-C28A-472A-A7D2-118A812F3565}C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{5F4F7585-E71A-469E-BA2D-FBF65A418590}C:\program files (x86)\steam\steamapps\common\red dead redemption 2\rdr2.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{0EA7DC82-512A-44A2-A4B2-90F13C1C61FB}C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{E6CDE90A-5CF9-4C9E-8343-663A9BC830F5}C:\program files (x86)\steam\steamapps\common\pubg\tslgame\binaries\win64\tslgame.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{40FD6207-0C62-44A1-B3E1-0053642E17F0}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4CC3FDE0-3C72-47D3-94E3-EB8C62CF8F55}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{B94AF6D3-4E5A-4472-9E3A-01D287F72594}D:\program files (x86)\steam\steamapps\common\satisfactory\engine\binaries\win64\factorygame-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{46AE8F54-3B55-46A2-9DD5-54B8DB5B4119}D:\program files (x86)\steam\steamapps\common\satisfactory\engine\binaries\win64\factorygame-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{132E26AE-F4A0-437D-8681-5059B71AA7A2}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E5BB91D8-93F9-4EBD-9AC4-4E2747CB326A}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{FB08216D-92CC-4B86-B073-CD2547B64F93}C:\program files (x86)\steam\steamapps\common\tobacco shop simulator prologue\tobaccoshopsim\binaries\win64\tobaccoshopsim-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{662AB2BC-C52D-4335-ACC2-E3B197917F21}C:\program files (x86)\steam\steamapps\common\tobacco shop simulator prologue\tobaccoshopsim\binaries\win64\tobaccoshopsim-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{D42604B9-8A01-416E-90ED-777C75D2A1F0}C:\users\mikoa\appdata\local\discord\app-1.0.9224\discord.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{A0885C26-97EF-4AC7-9306-A40028A7A0B0}C:\users\mikoa\appdata\local\discord\app-1.0.9224\discord.exe" => removed successfully

=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 1572864 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 91366261 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 1104327871 B
Windows/system/drivers => 23324849 B
Edge => 815297676 B
Chrome => 2184637305 B
Brave => 7018288 B
Firefox => 0 B
Opera => 440408719 B

Local\Temp, Local\*.tmp, LocalLow\Temp, Roaming\Temp, Roaming\*.tmp , IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 260 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => 124656 B
mikoa => 23554342 B

RecycleBin => 2858731382 B
EmptyTemp: => 7 GB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 07-03-2026 13:27:00)

C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2 => Could not move
C:\DumpStack.log.tmp => Could not move

==== End of Fixlog 13:27:00 ====
Vim ze nic nevim.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119806
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Preventivni kontrola.

#4 Příspěvek od Rudy »

Vše smazáno, log již vypadá čistý.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

KOKOS1
Vzorný návštěvník
Vzorný návštěvník
Příspěvky: 87
Registrován: 13 led 2006 11:33

Re: Preventivni kontrola.

#5 Příspěvek od KOKOS1 »

Děkuji za pomoc. :) Přeji hezký zbytek víkendu.
Vim ze nic nevim.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119806
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Preventivni kontrola.

#6 Příspěvek od Rudy »

Také já vám přeji hezký víkend a nemáte zač! :-)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno