Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o vyřešení problému - pop up okno

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
markalous
Návštěvník
Návštěvník
Příspěvky: 51
Registrován: 12 bře 2005 12:20

Prosím o vyřešení problému - pop up okno

#1 Příspěvek od markalous »

Prosím o kontrolu logu. Vyskakuje mi okno jakoby od Windows Defender s upozorněním na trojan. Při zavření mě to odkazuje na stránky, které díkybohu Norton firewall blokuje.
Děkuji předem za pomoc.
-----------------------------------------
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 14-05-2026 01
Ran by vikto (administrator) on VIKTOROVO (LENOVO 82XX) (15-05-2026 18:59:03)
Running from C:\Users\vikto\Downloads\FRST64.exe
Loaded Profiles: vikto
Platform: Microsoft Windows 11 Home Version 25H2 26200.8457 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe
(0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe
(8F32EFB2-B494-4AEC-A27C-4B0736252363 -> Lenovo Limited Company) C:\Program Files\WindowsApps\E046963F.LenovoVoiceWorldWide_3.0.26.0_x64__k1h2ywk1493x8\GlobalPresenter\GlobalPresenter.exe
(C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\LenovoVantage-(GenericMessagingAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\LenovoVantage-(SmartPanelAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\LenovoVantage-(VantageCoreAddin).exe
(C:\Program Files\Lenovo\Lenovo Smart Appearance Components\Components\IntelligentSensingAwareService\LsaRpcServer.exe ->) (Lenovo -> Lenovo) C:\Program Files\Lenovo\Lenovo Smart Appearance Components\Components\IntelligentSensingAwareService\LsaServerPartner.exe
(C:\Program Files\Lenovo\Lenovo Smart Appearance Components\Components\IntelligentSensingAwareService\LsaRpcServer.exe ->) (Lenovo -> Lenovo) C:\Program Files\Lenovo\Lenovo Smart Appearance Components\Components\IntelligentSensingAwareService\LsaToast.exe
(C:\Program Files\Lenovo\Lenovo Smart Appearance Components\Components\SmartAppearanceAIService\SmartAppearanceSVC.exe ->) (Lenovo -> Lenovo) C:\Program Files\Lenovo\Lenovo Smart Appearance Components\Components\SmartAppearanceAIService\FaceBeautify.exe
(C:\Program Files\Microsoft Office\root\Office16\WINWORD.EXE ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\AI\ai.exe
(C:\Program Files\Norton\Suite\NortonSvc.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\aswEngSrv.exe
(C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe ->) (0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSSrcExt.exe
(C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe ->) (0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\cncmd.exe
(Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe
(drivers\Lenovo\udc\Service\UDClientService.exe ->) (Lenovo -> ) C:\ProgramData\Lenovo\Udc\Hosts\x64\MessagingPlugin.exe
(DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_5e21bf389d23855a\LenovoUtilityService.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_5e21bf389d23855a\FnHotkeyCapsLKNumLK.exe
(DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_5e21bf389d23855a\LenovoUtilityService.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_5e21bf389d23855a\FnHotkeyUtility.exe
(DriverStore\FileRepository\u0418731.inf_amd64_0f48de5f9a2b4190\B417132\atiesrxx.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0418731.inf_amd64_0f48de5f9a2b4190\B417132\atieclxx.exe
(explorer.exe ->) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2>
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <44>
(explorer.exe ->) (Grammarly, Inc. -> Grammarly Inc.) C:\Users\vikto\AppData\Local\Grammarly\DesktopIntegrations\Grammarly.Desktop.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\26.070.0414.0001\OneDrive.Sync.Service.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe
(FMService64.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMAudioMonitor.exe
(Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\NortonUI.exe <4>
(Lenovo -> Lenovo) C:\ProgramData\Lenovo\Vantage\AddinData\LenovoBatteryGaugeAddin\x64\QSHelper.exe
(LNBITSSvc.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\AutoModeDetect.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\WINWORD.EXE
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0418731.inf_amd64_0f48de5f9a2b4190\B417132\atiesrxx.exe
(services.exe ->) (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(services.exe ->) (Dolby Laboratories, Inc. -> Dolby Laboratories) C:\Windows\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_52fab4c0c715a075\DAX3API.exe
(services.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\afwServ.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\aswidsagent.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\nllToolsSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\NortonSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe
(services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\System32\drivers\Lenovo\udc\Service\UDClientService.exe
(services.exe ->) (Lenovo -> Lenovo Limited Company) C:\Program Files\Lenovo\LVA Pro Service\VoiceAssistantService.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\Smart Note\SmartNote.Service.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\LenovoVantageService.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Program Files\Lenovo\Lenovo Smart Appearance Components\Components\IntelligentSensingAwareService\LsaRpcServer.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Program Files\Lenovo\Lenovo Smart Appearance Components\Components\SmartAppearanceAIService\SmartAppearanceSVC.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_5e21bf389d23855a\LenovoUtilityService.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\LNBITSSvc.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\YMC.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncHelper.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\GameInputSvc.exe <2>
(services.exe ->) (Microsoft Corporation -> Windows (R) Win 7 DDK provider) C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe <2>
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Locator.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\DriverStore\FileRepository\amdfendr.inf_amd64_987f8cede005f427\amdfendrsr.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe
(services.exe ->) (NortonLifeLock Inc. -> NortonLifeLock Inc.) C:\Program Files\Norton\Suite\wsc_proxy.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) C:\Windows\System32\DriverStore\FileRepository\rtkbtfilter.inf_amd64_b7779c678ebb5b75\RtkBtManServ.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_1f375c301924ceef\RtkAudUService64.exe <3>
(services.exe ->) (Wacom Co., Ltd. -> Wacom Technology, Corp.) C:\Windows\System32\DriverStore\FileRepository\wtabletserviceisd.inf_amd64_915f627712ed92f8\WTabletServiceISD.exe <2>
(sihost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> WhatsApp.Root) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2616.100.0_x64__cv1g1gvanyjgm\WhatsApp.Root.exe
(sihost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2605.41181.0_x64__8wekyb3d8bbwe\M365Copilot.exe
(svchost.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner.exe
(svchost.exe ->) (Lenovo -> ) C:\Program Files (x86)\Lenovo\Smart Note\LSNUpdater.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.StorePurchaseApp_22601.1401.7.0_x64__8wekyb3d8bbwe\StoreExperienceHost.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileCoAuth.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.264.3.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\DataExchangeHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\AppActions.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\amd64\MoUsoCoreWorker.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [LVAW] => C:\Program Files\Lenovo\LVA Pro Service\StartupHelper.exe [699680 2023-02-10] (Lenovo -> Lenovo Limited Company)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_1f375c301924ceef\RtkAudUService64.exe [3113496 2025-08-06] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [NortonUI.exe] => C:\Program Files\Norton\Suite\AvLaunch.exe [1063080 2026-05-09] (Gen Digital Inc. -> Gen Digital Inc.)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX2] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe [271496 2017-11-02] (Canon Inc. -> CANON INC.)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-3709009798-2618340189-3513383678-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4748176 2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3709009798-2618340189-3513383678-1001\...\Run: [LenovoVantageToolbar] => C:\ProgramData\Lenovo\Vantage\AddinData\LenovoBatteryGaugeAddin\x64\QSHelper.exe [87960 2025-01-23] (Lenovo -> Lenovo)
HKU\S-1-5-21-3709009798-2618340189-3513383678-1001\...\Run: [LenovoVantage] => C:\ProgramData\Lenovo\Vantage\Addins\LenovoCompanionAppAddin\1.0.0.51\LenovoVantage.exe [40928 2026-05-08] (Lenovo -> Lenovo)
HKU\S-1-5-21-3709009798-2618340189-3513383678-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [42087896 2026-04-29] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-3709009798-2618340189-3513383678-1001\...\Run: [Microsoft.Lists] => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\OneDrive.Sync.Service.exe [956264 2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3709009798-2618340189-3513383678-1001\...\Run: [Grammarly] => C:\Users\vikto\AppData\Local\Grammarly\DesktopIntegrations\Grammarly.Desktop.exe [352408 2026-05-13] (Grammarly, Inc. -> Grammarly Inc.)
HKLM\...\Windows x64\Print Processors\Canon TS6300 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDFQ.DLL [529408 2020-06-21] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor TS6300 series: C:\WINDOWS\system32\CNMLMFQ.DLL [959488 2020-06-21] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\EPSON XP-530 Series 64MonitorBE: C:\WINDOWS\system32\E_YLMBPME.DLL [187392 2018-06-15] (Seiko Epson Corporation) [File not signed]
HKLM\...\Print\Monitors\PDF-XChange Lite Port Monitor: C:\WINDOWS\system32\pxcpmL.dll [1048912 2026-02-24] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [3971224 2026-04-18] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\148.0.7778.168\Installer\chrmstp.exe [7605912 2026-05-15] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{89B4C1CD-B018-4511-B0A1-5476DBF70820}] -> C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Edge: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {E1E26F93-3600-4349-A90F-5D0CAE9EF64F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1612800 2026-01-23] (Adobe Inc. -> Adobe Inc.)
Task: {96B03FCB-2C65-4989-A1BF-2F84E71F8E8E} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem149.0.7814.0{53EC39F3-69FB-4DC8-B8EB-C8C6B14FC5B5} => C:\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\updater.exe [8770200 2026-04-28] (Google LLC -> Google LLC)
Task: {663A6C53-0801-410E-AE41-54EB152937BC} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2401792 2026-03-19] () [File not signed]
Task: {76DFACBD-690C-41B7-B8C6-0D1D94DF7F3C} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\WINDOWS\system32\ImController.InfInstaller.exe [94496 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {425C05CF-0806-4BE0-AB78-F93E55198D08} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => C:\WINDOWS\system32\sc.exe [102400 2025-10-11] (Microsoft Windows -> Microsoft Corporation) -> START ImControllerService
Task: {91B8C59F-B0D6-4E5E-8084-B6A3628555E0} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => C:\WINDOWS\System32\reg.exe [110592 2025-10-11] (Microsoft Windows -> Microsoft Corporation) -> add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32
Task: {77D80773-10DE-48E4-A98F-36523BD5A5B8} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\22265a90-67f5-4370-bf1d-60992b37a81c => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {3FA195CC-3C2F-43C6-A8F9-195C83B1E9D0} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\6f8b4338-a46c-46c9-86ce-088b33dbaa97 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {DD3CDFE7-3FC5-4691-A31F-6646D514323A} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\90628bb8-5544-4ef8-aae1-70587fc07437 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {5A83DF58-F7C2-4268-BF8C-016E179C086F} - System32\Tasks\Lenovo\LenovoNowLauncher => C:\Program Files (x86)\Lenovo\LenovoNow\x86\LenovoNow.exe [468448 2026-03-10] (Lenovo -> Lenovo) -> C:\Program Files (x86)\Lenovo\LenovoNow\x86\/task
Task: {98A5DF6E-C7C3-4ABA-BF84-FCD829175E6F} - System32\Tasks\Lenovo\LenovoNowQuarterlyLaunch => C:\Program Files (x86)\Lenovo\LenovoNow\x86\LenovoNow.Task.exe [471520 2026-03-10] (Lenovo -> Lenovo)
Task: {E8122962-0E74-4AD6-8D58-A2FF48D1C17B} - System32\Tasks\Lenovo\LenovoNowTask => C:\Program Files (x86)\Lenovo\LenovoNow\x86\LenovoNow.Task.exe [471520 2026-03-10] (Lenovo -> Lenovo) -> C:\Program Files (x86)\Lenovo\LenovoNow\x86\$(EventData)
Task: {C4A56618-3ECB-434F-97D5-27DC95A25F7B} - System32\Tasks\Lenovo\UDC\Lenovo UDC Diagnostic Scan => C:\WINDOWS\system32\sc.exe [102400 2025-10-11] (Microsoft Windows -> Microsoft Corporation) -> control udcservice 210
Task: {5A053547-13FA-458A-8F23-EB5627122E4A} - System32\Tasks\Lenovo\UDC\Lenovo UDC Lazy Deployment => C:\WINDOWS\system32\sc.exe [102400 2025-10-11] (Microsoft Windows -> Microsoft Corporation) -> control udcservice 221
Task: {802EFF4C-570D-4E33-B49A-60057FCCD3B3} - System32\Tasks\Lenovo\UDC\Lenovo UDC Maintainance Task => C:\WINDOWS\system32\sc.exe [102400 2025-10-11] (Microsoft Windows -> Microsoft Corporation) -> control udcservice 220
Task: {6988B71E-3897-4341-9D2C-1885020C13F8} - System32\Tasks\Lenovo\UDC\Lenovo UDC Monitor => C:\WINDOWS\system32\drivers\lenovo\udc\data\InfBackup\UdcInfInstaller.exe [257936 2026-04-01] (Lenovo -> Lenovo Group Ltd.)
Task: {C8E8717B-7343-40F9-8224-F9E195ABB601} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServciePatch => "C:\Program Files (x86)\Lenovo\VantageService\3.13.25.0\OOBECompleteWatch.exe" (No File)
Task: {D2A50D04-C354-44D2-AD42-A1100488F75C} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServiceMaintainance => C:\WINDOWS\system32\sc.exe [102400 2025-10-11] (Microsoft Windows -> Microsoft Corporation) -> start LenovoVantageService
Task: {AD07F157-D36E-48C7-BADF-033E0C895320} - System32\Tasks\Lenovo\Vantage\Schedule\BatteryGaugeAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {0C10BCC0-764E-4101-B167-FBA1480599F9} - System32\Tasks\Lenovo\Vantage\Schedule\ConsumerAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {F4F7DF91-F7C5-4B52-A313-F87F3368B3CF} - System32\Tasks\Lenovo\Vantage\Schedule\DailyTelemetryTransmission => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {7A47D975-7EAB-49E9-810A-F2D62B643838} - System32\Tasks\Lenovo\Vantage\Schedule\GenericMessagingAddin => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {90B2CA0B-A040-4B1D-A7C5-8760C171FB04} - System32\Tasks\Lenovo\Vantage\Schedule\GenericMessagingAddin_Pulsation => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {AD111C7F-CCC9-4B8B-95AB-4DCC53BEA509} - System32\Tasks\Lenovo\Vantage\Schedule\HeartbeatAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {20618EFE-DEAC-450E-8D86-F75C8FE4A720} - System32\Tasks\Lenovo\Vantage\Schedule\IdeaNotebookAddinDailyEvent => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {1434D11A-067F-4DB5-B4DE-F9BEC70A8554} - System32\Tasks\Lenovo\Vantage\Schedule\Lenovo.Vantage.SmartPerformance.MonthlyReport => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {0A616CD8-EAFD-4A13-BD67-86DE9573A2F8} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoBoostAddin.Prompt => C:\Program Files (x86)\Lenovo\VantageService\4.0.52.0\ScheduleEventAction.exe LenovoBoostAddin.Prompt (No File)
Task: {C15006EF-86DA-434D-9340-DFF65ECAEAD0} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoCompanionAppAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {5DE0D919-2F4A-488E-9691-101456CB9027} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoSupportHealthReportSchedule => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {A753BDB6-94AF-4585-BCA6-022FEB823984} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoSystemUpdateAddin_WeeklyTask => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {C7A6538B-2074-4694-8F5A-B7F3E64B1811} - System32\Tasks\Lenovo\Vantage\Schedule\SettingsWidgetAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {1B70117A-DFA6-4D13-9118-B24044103A6A} - System32\Tasks\Lenovo\Vantage\Schedule\SmartPerformance.ExpireReminder => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {9AA911F2-DE75-4047-ABE7-5F57D8A3D73B} - System32\Tasks\Lenovo\Vantage\Schedule\VantageCoreAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {8024F7A5-C7D2-4E93-A6EE-B81DBC955E01} - System32\Tasks\Lenovo\Vantage\Schedule\VantageCoreAddinIdleScheduleTask => C:\ProgramData\Lenovo\Vantage\Addins\VantageCoreAddin\1.1.0.29\x86\IdleScheduleEventAction.exe [173536 2026-04-21] (Lenovo -> )
Task: {5D68BA85-D837-4937-AAA2-A2B1EA8F0351} - System32\Tasks\Lenovo\Vantage\Schedule\VantageCoreAddinWeekScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {12AD21ED-AA47-499A-9B2B-A4520770B21A} - System32\Tasks\Lenovo\Vantage\StartupFixPlan => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\\uninstall.exe /repair (No File)
Task: {6CD0093D-EC78-443F-8C6E-E1692D6308BA} - System32\Tasks\LSNUpdater => C:\Program Files (x86)\Lenovo\Smart Note\LSNUpdater.exe [33120 2021-12-10] (Lenovo -> )
Task: {BE027551-AD6B-44AD-B2CD-5A5E7C955C60} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\ActionsServer\ActionsServer.exe [17010024 2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {2D7F4F24-40A2-41E8-9D24-AE711E241067} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29024640 2025-09-12] (Microsoft Corporation -> Microsoft Corporation)
Task: {0686D202-6D11-4EA6-89C6-31060EB40830} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\OFFICE16\opushutil.exe [70528 2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {37C1F031-CDBF-4395-96E0-A0F8DDD40D85} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29024640 2025-09-12] (Microsoft Corporation -> Microsoft Corporation)
Task: {0EEE8F0A-EF86-4C2C-A98F-4F21C9B13EE1} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [313632 2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {B5ED46AC-5F70-4A60-AAAE-4F6E2A5E967E} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [313632 2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {0A43D02D-D032-4DED-AC0F-383D11B083FF} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\operfmon.exe [1365272 2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {2261976F-05EB-4120-9AF8-F7F066D7B77D} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\OS Edition Upgrade event listener created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [573440 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {2784DEF8-3FE4-4B4B-AF64-EE9D2EE6AA28} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\Passport for Work alert created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [573440 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {E6DDEE77-7D2F-469E-B072-85F24A7542D7} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\Policy Manager Login Refresh Schedule => C:\WINDOWS\system32\deviceenroller.exe [573440 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {660BE667-4037-4891-9AC9-1B89F0E5C97E} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\Provisioning initiated session => C:\WINDOWS\system32\deviceenroller.exe [573440 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {B4A615C4-5043-4E8D-8621-14CFAAFEF175} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\PushLaunch => C:\WINDOWS\system32\deviceenroller.exe [573440 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {ACDCA29D-45D6-4A08-AC12-922368C457C5} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\PushRenewal => C:\WINDOWS\system32\deviceenroller.exe [573440 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {2CF1DFEE-C1D6-40F3-A047-6684CBC31A9A} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\PushUpgrade => C:\WINDOWS\system32\deviceenroller.exe [573440 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {A2BB6F43-670E-494C-88DA-0750A31F846B} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\Schedule #1 created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [573440 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {C77591E2-36C1-4685-A68F-405471EE6DBD} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\Schedule #2 created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [573440 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {69D721E2-1AFE-4111-94A6-9F6EE8EB2669} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\Schedule #3 created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [573440 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {A2ED4D4F-79A4-43B0-8571-4CCE66042050} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\Schedule created by enrollment client for renewal of certificate warning => C:\WINDOWS\system32\deviceenroller.exe [573440 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {11EBB418-DA70-4860-8B30-E0ED72A3FBB3} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\Schedule to run OMADMClient by client => C:\WINDOWS\system32\omadmclient.exe [589824 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {3A2D25DA-4424-4230-BC8B-E5B5268BCD42} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\Schedule to run OMADMClient by server => C:\WINDOWS\system32\omadmclient.exe [589824 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {87E356B3-E2DA-4B7B-AC3F-5A8041595CB3} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\Win10 S Mode event listener created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [573440 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {55337710-CE85-4FAC-9AA4-FF0ACD1AC6A3} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\Wsc Startup event listener created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [573440 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {0BB36A32-0D9E-4297-AFD7-6BD7B5DB4C9B} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {D620A0AF-67B8-4B94-9E17-BD428D99669C} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-3709009798-2618340189-3513383678-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [696960 2025-12-20] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {97CD22F4-BEC7-45B5-99D9-376ED31F0A31} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34944 2025-12-20] (Mozilla Corporation -> Mozilla Foundation)
Task: {A5AD9D41-EB4A-4B10-A2E8-FB8FE5B46E5A} - System32\Tasks\Norton\Norton 360 Patcher => C:\Program Files\Common Files\Norton\Icarus\norton-suite\icarus.exe [9868512 2026-04-21] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {90BEFE5B-60D9-4AE6-B3AD-979C4F9FDA45} - System32\Tasks\Norton\Overseer => C:\Program Files\Common Files\Norton\Overseer\overseer.exe [3369184 2026-04-13] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {47525D44-89C4-49C7-8EAC-C6E4967F8751} - System32\Tasks\Norton\Suite Emergency Update => C:\Program Files\Norton\Suite\AvEmUpdate.exe [5785256 2026-05-09] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {E4F36D9B-1C83-4121-B87D-A6FA41042ADB} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4428176 2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {712620F5-E1B0-4753-8CF4-B150850753F3} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3709009798-2618340189-3513383678-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4428176 2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {A3AAE1C8-4BD4-4240-B026-BCD7773AD8CD} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3709009798-2618340189-3513383678-1002 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4428176 2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {013FE559-EE15-43DE-BCB3-FAC88FB0BE8F} - System32\Tasks\OneDrive Startup Task-S-1-5-21-3709009798-2618340189-3513383678-1001 => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\OneDriveLauncher.exe [758632 2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {DD969094-BD20-4E67-8E1A-252B1E93047E} - System32\Tasks\PDFXChangeAutoUpdate => C:\Program Files\Tracker Software\Update\TrackerUpdate.exe [6225232 2026-02-24] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
Task: {82FB9006-36DA-4CF9-A4B0-54C6274C7A5A} - System32\Tasks\Piriform\CCleaner 7 - S-1-5-21-3709009798-2618340189-3513383678-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [5598328 2026-04-27] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {76D8FB2E-BF93-4CD2-9AC4-81F7C814D246} - System32\Tasks\Piriform\CCleaner 7 - Scheduled Cleaning - default - S-1-5-21-3709009798-2618340189-3513383678-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [5598328 2026-04-27] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {ED04A5B0-A1CE-4F5C-A9F3-983DB182A8AD} - System32\Tasks\Piriform\CCleaner 7 BugReport => C:\Program Files\Piriform\CCleaner 7\CCleanerBugReport.exe [6635128 2026-04-27] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --product 234 --programpath "C:\Program Files\Piriform\CCleaner 7" --configpath "C:\Program Files\Piriform\CCleaner 7\data" --path "C:\Program Files\Piriform\CCleaner 7\log" --path "C:\Program Files\Piriform\CCleaner 7\data\dumps" --logpath "C:\Program Files\Piriform\CCleaner 7 (the data entry has 58 more characters).
Task: {8FB1580B-1615-426C-87B6-89B0A0AEAC0F} - System32\Tasks\Piriform\CCleaner 7 Update => C:\Program Files\Common Files\Piriform\Icarus\piriform-ccl\icarus.exe [9274080 2026-01-19] (Gen Digital Inc. -> Gen Digital Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{1d2790b0-25e9-4545-9751-ef9d8043ce49}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{1d2790b0-25e9-4545-9751-ef9d8043ce49}\34F607973656E6472757D6: [DhcpNameServer] 213.155.229.197 213.155.255.12
Tcpip\..\Interfaces\{1d2790b0-25e9-4545-9751-ef9d8043ce49}\3547574656E647: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{1d2790b0-25e9-4545-9751-ef9d8043ce49}\E656479637: [DhcpNameServer] 93.93.32.32 93.93.33.33 192.168.1.1

FireFox:
========
FF TaskBarID: 308046B0AF4A39CB -> C:\Program Files\Mozilla Firefox
FF DefaultProfile: 9sqsbjpb.default-release -> 308046B0AF4A39CB
FF ProfilePath: C:\Users\vikto\AppData\Roaming\Mozilla\Firefox\Profiles\ogc97p6n.default [2025-01-07]
FF ProfilePath: C:\Users\vikto\AppData\Roaming\Mozilla\Firefox\Profiles\9sqsbjpb.default-release [2026-05-15]
FF Homepage: Mozilla\Firefox\Profiles\9sqsbjpb.default-release -> www.seznam.cz
FF Extension: (New Tab) - C:\Users\vikto\AppData\Roaming\Mozilla\Firefox\Profiles\9sqsbjpb.default-release\Extensions\newtab@mozilla.org.xpi [2025-12-28]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2026-02-24] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2026-02-24] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2026-02-24] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2026-04-29] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2026-02-24] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2026-02-24] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2026-02-24] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin HKU\S-1-5-21-3709009798-2618340189-3513383678-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2026-02-24] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin HKU\S-1-5-21-3709009798-2618340189-3513383678-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2026-02-24] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin HKU\S-1-5-21-3709009798-2618340189-3513383678-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2026-02-24] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\vikto\AppData\Local\Microsoft\Edge\User Data\Default [2026-05-15]
Edge Notifications: Default -> hxxps://d82mtginaffc73bb5dng.vhbd-adguard.co.in; hxxps://drive.google.com; hxxps://www.facebook.com; hxxps://www.instagram.com; hxxps://www.messenger.com
Edge HomePage: Default -> hxxp://www.seznam.cz/
Edge StartupUrls: Default -> "hxxp://www.seznam.cz/"
Edge Extension: (Dokumenty Google offline) - C:\Users\vikto\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-05-10]
Edge Extension: (Edge relevant text changes) - C:\Users\vikto\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]

Chrome:
=======
CHR DefaultProfile: Profile 5
CHR Profile: C:\Users\vikto\AppData\Local\Google\Chrome\User Data\Profile 5 [2026-05-15]
CHR Notifications: Profile 5 -> hxxps://cs.economy-pedia.com; hxxps://www.instagram.com; hxxps://www.messenger.com
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\vikto\AppData\Local\Google\Chrome\User Data\Profile 5\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2026-05-15]
CHR Extension: (Dokumenty Google offline) - C:\Users\vikto\AppData\Local\Google\Chrome\User Data\Profile 5\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-05-15]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\vikto\AppData\Local\Google\Chrome\User Data\Profile 5\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-04-03]
CHR Profile: C:\Users\vikto\AppData\Local\Google\Chrome\User Data\System Profile [2025-02-13]
CHR HKU\S-1-5-21-3709009798-2618340189-3513383678-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [180216 2026-01-23] (Adobe Inc. -> Adobe Inc.)
R2 CCleaner7; C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe [30293112 2026-04-27] (Gen Digital Inc. -> Gen Digital Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13287824 2025-09-12] (Microsoft Corporation -> Microsoft Corporation)
R2 DbxSvc; C:\WINDOWS\System32\DbxSvc.exe [58984 2025-10-07] (Dropbox, Inc -> Dropbox, Inc.)
R2 DolbyDAXAPI; C:\WINDOWS\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_52fab4c0c715a075\DAX3API.exe [2787920 2025-07-02] (Dolby Laboratories, Inc. -> Dolby Laboratories)
R3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncHelper.exe [3610984 2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
R2 FMAPOService; C:\WINDOWS\System32\FMService64.exe [1070624 2025-06-20] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia)
R2 GameInputRedistService; C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe [400768 2026-03-31] (Microsoft Corporation -> Windows (R) Win 7 DDK provider)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [446328 2023-09-13] (Canon Inc. -> )
R2 ImControllerService; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
R2 Lenovo Smart Appearance Intelligent Sensing Aware Service; C:\Program Files\Lenovo\Lenovo Smart Appearance Components\Components\IntelligentSensingAwareService\LsaRpcServer.exe [160552 2022-09-07] (Lenovo -> Lenovo)
R2 LenovoFnAndFunctionKeys; C:\WINDOWS\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_5e21bf389d23855a\LenovoUtilityService.exe [199744 2026-03-09] (Lenovo -> Lenovo)
R2 LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\LenovoVantageService.exe [34368 2026-03-19] (Lenovo -> Lenovo)
R2 LITSSVC; C:\WINDOWS\System32\LNBITSSvc.exe [1872000 2025-10-23] (Lenovo -> Lenovo)
R2 LVAWService; C:\Program Files\Lenovo\LVA Pro Service\VoiceAssistantService.exe [693536 2023-02-10] (Lenovo -> Lenovo Limited Company)
S3 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\MpDefenderCoreService.exe [2009608 2025-04-14] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 nllbIDSAgent; C:\Program Files\Norton\Suite\aswidsagent.exe [8244904 2026-05-09] (Gen Digital Inc. -> Gen Digital Inc.)
R2 Norton Antivirus; C:\Program Files\Norton\Suite\NortonSvc.exe [1040040 2026-05-09] (Gen Digital Inc. -> Gen Digital Inc.)
R2 Norton Firewall; C:\Program Files\Norton\Suite\afwServ.exe [2739880 2026-05-09] (Gen Digital Inc. -> Gen Digital Inc.)
R2 Norton Tools; C:\Program Files\Norton\Suite\nllToolsSvc.exe [1093288 2026-05-09] (Gen Digital Inc. -> Gen Digital Inc.)
R2 NortonWscReporter; C:\Program Files\Norton\Suite\wsc_proxy.exe [76552 2024-10-29] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\26.070.0414.0001\OneDriveUpdaterService.exe [4018024 2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
R2 RtkBtManServ; C:\WINDOWS\System32\DriverStore\FileRepository\rtkbtfilter.inf_amd64_b7779c678ebb5b75\RtkBtManServ.exe [352392 2025-09-11] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
R2 SmartAppearanceAISVC; C:\Program Files\Lenovo\Lenovo Smart Appearance Components\Components\SmartAppearanceAIService\SmartAppearanceSVC.exe [75560 2022-09-07] (Lenovo -> Lenovo)
R2 SmartNoteService; C:\Program Files (x86)\Lenovo\Smart Note\SmartNote.Service.exe [92000 2021-12-10] (Lenovo -> Lenovo)
R2 UDCService; C:\WINDOWS\System32\drivers\Lenovo\udc\Service\UDClientService.exe [72592 2026-04-01] (Lenovo -> Lenovo Group Ltd.)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\NisSrv.exe [4538400 2025-04-14] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\MsMpEng.exe [278320 2025-04-14] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 YMC; C:\WINDOWS\System32\YMC.exe [927784 2025-09-07] (Lenovo -> Lenovo)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 amdfendrmgr; C:\WINDOWS\System32\DriverStore\FileRepository\amdfendr.inf_amd64_987f8cede005f427\amdfendrmgr.sys [36040 2024-05-08] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R3 amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0418731.inf_amd64_0f48de5f9a2b4190\B417132\amdkmdag.sys [106597288 2025-08-31] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
S3 amdwirelessbutton; C:\WINDOWS\System32\drivers\amdwirelessbutton.sys [42744 2022-06-06] (Advanced Micro Devices INC. -> Advanced Micro Devices, Inc)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [602112 2025-10-11] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [204800 2025-10-11] (Microsoft Corporation) [File not signed]
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [175824 2024-10-17] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R0 fse; C:\WINDOWS\System32\drivers\fse.sys [226768 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
S3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [331168 2025-04-14] (Microsoft Windows -> Microsoft Corporation)
S2 l1vhlwf; C:\WINDOWS\System32\drivers\l1vhlwf.sys [144856 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
R0 nllArDisk; C:\WINDOWS\System32\drivers\nllArDisk.sys [21088 2026-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllArPot; C:\WINDOWS\System32\drivers\nllArPot.sys [259168 2026-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllbidsdriver; C:\WINDOWS\System32\drivers\nllbidsdriver.sys [451168 2026-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 nllbidsh; C:\WINDOWS\System32\drivers\nllbidsh.sys [315488 2026-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 nllbuniv; C:\WINDOWS\System32\drivers\nllbuniv.sys [87136 2026-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 nllElam; C:\WINDOWS\System32\drivers\nllElam.sys [29144 2025-07-22] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 nllKbd; C:\WINDOWS\System32\drivers\nllKbd.sys [32864 2026-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllMonFlt; C:\WINDOWS\System32\drivers\nllMonFlt.sys [289376 2026-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllNetHub; C:\WINDOWS\System32\drivers\nllNetHub.sys [633440 2026-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllRdr; C:\WINDOWS\System32\drivers\nllRdr2.sys [96864 2026-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 nllRvrt; C:\WINDOWS\System32\drivers\nllRvrt.sys [71776 2026-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllSnx; C:\WINDOWS\System32\drivers\nllSnx.sys [911456 2026-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllSP; C:\WINDOWS\System32\drivers\nllSP.sys [1292896 2026-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 nllStm; C:\WINDOWS\System32\drivers\nllStm.sys [250464 2026-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 nllVmm; C:\WINDOWS\System32\drivers\nllVmm.sys [466016 2026-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 RtkBtFilter2; C:\WINDOWS\System32\DriverStore\FileRepository\rtkbtfilter.inf_amd64_b7779c678ebb5b75\RtkBtFilter2.sys [334416 2025-09-11] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174264 2024-10-17] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 vmbusproxy; C:\WINDOWS\system32\drivers\vmbusproxy.sys [98304 2025-10-11] (Microsoft Windows -> Microsoft Corporation)
R3 WacHIDRouterISDF; C:\WINDOWS\System32\drivers\WacHIDRouterISDF.sys [148616 2025-05-05] (Wacom Co., Ltd. -> Wacom Technology, Corp.)
S3 WacHIDRouterISDFV; C:\WINDOWS\System32\drivers\WacHIDRouterISDF.sys [148616 2025-05-05] (Wacom Co., Ltd. -> Wacom Technology, Corp.)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [20016 2025-04-14] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [605576 2025-04-14] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [100744 2025-04-14] (Microsoft Windows -> Microsoft Corporation)
S3 WSDPrintDevice; C:\WINDOWS\System32\DriverStore\FileRepository\wsdprint.inf_amd64_1f9e32519098c0b6\WSDPrint.sys [57344 2025-10-11] (Microsoft Windows -> Microsoft Corporation)
S3 WSDScan; C:\WINDOWS\System32\DriverStore\FileRepository\sti.inf_amd64_a6dc64e436f22951\WSDScan.sys [61440 2025-10-11] (Microsoft Windows -> Microsoft Corporation)
U3 FamilySvc; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-05-15 18:59 - 2026-05-15 18:59 - 000051239 _____ C:\Users\vikto\Downloads\FRST.txt
2026-05-15 18:58 - 2026-05-15 18:59 - 000000000 ____D C:\FRST
2026-05-15 18:58 - 2026-05-15 18:58 - 002448384 _____ (Farbar) C:\Users\vikto\Downloads\FRST64.exe
2026-05-15 18:38 - 2026-05-15 18:38 - 000000000 ____D C:\AdwCleaner
2026-05-14 11:35 - 2026-05-14 11:35 - 000678362 _____ C:\WINDOWS\system32\perfh005.dat
2026-05-14 11:35 - 2026-05-14 11:35 - 000145178 _____ C:\WINDOWS\system32\perfc005.dat
2026-05-14 11:21 - 2026-05-15 13:36 - 000000000 ____D C:\WINDOWS\CbsTemp
2026-05-14 11:20 - 2026-05-14 11:20 - 000000000 ____D C:\WINDOWS\SecureBoot
2026-05-14 09:06 - 2026-05-14 09:06 - 000853888 _____ (InterPromo GMBH) C:\Users\vikto\Downloads\4kvideodownloaderplus_26.1.1_x64_online (2).exe
2026-05-14 08:45 - 2026-05-14 08:45 - 004130184 _____ () C:\Users\vikto\Downloads\OperaGXSetup.exe
2026-05-14 08:42 - 2026-05-14 08:45 - 000000000 ____D C:\Users\vikto\AppData\Roaming\Opera Software
2026-05-14 00:20 - 2026-05-14 00:20 - 002161302 _____ C:\Users\vikto\Downloads\Geronimo_ Americká legenda (1).pdf
2026-05-14 00:18 - 2026-05-14 00:18 - 002209056 _____ C:\Users\vikto\Downloads\Geronimo_ Americká legenda.pdf
2026-05-13 11:54 - 2026-05-13 11:54 - 037500899 _____ C:\Users\vikto\Downloads\16.Oborová specifika muzejní prezentace I.- úprava (2).pptx
2026-05-10 18:50 - 2026-05-10 18:50 - 000112274 _____ C:\Users\vikto\Downloads\studijní plán.pdf
2026-05-10 18:49 - 2026-05-10 18:49 - 001549364 _____ C:\Users\vikto\Downloads\uzpůsobení podmínek.pdf
2026-05-09 22:11 - 2026-05-09 22:11 - 000000000 ____D C:\Program Files\Microsoft GameInput
2026-05-09 22:09 - 2026-05-09 21:59 - 000477640 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_e.dll.0
2026-05-09 10:51 - 2026-05-09 10:51 - 000324264 _____ (Gen Digital Inc.) C:\WINDOWS\system32\nllBoot.exe
2026-05-08 17:28 - 2026-05-08 17:28 - 012511492 _____ C:\Users\vikto\Downloads\Architektura_dulnich_staveb_na_Ostravsku_a_jejich_soucasny_stav_Archive.pdf
2026-05-05 21:45 - 2026-05-05 21:47 - 037511584 _____ C:\Users\vikto\Downloads\16.Oborova_specifika_muzejni_prezentace_I.-_uprava (1).pptx
2026-05-05 21:45 - 2026-05-05 21:45 - 037500899 _____ C:\Users\vikto\Downloads\16.Oborova_specifika_muzejni_prezentace_I.-_uprava.pptx
2026-05-05 21:43 - 2026-05-05 21:43 - 028098894 _____ C:\Users\vikto\Downloads\18._Archeologicke_expozice_uprava.pptx
2026-05-05 21:42 - 2026-05-05 21:42 - 050890451 _____ C:\Users\vikto\Downloads\19.Vystava_v_archivu.pptx
2026-05-04 12:28 - 2026-05-04 12:28 - 000085913 _____ C:\WINDOWS\SysWOW64\ctac.json
2026-05-04 12:28 - 2026-05-04 12:28 - 000085913 _____ C:\WINDOWS\system32\ctac.json
2026-05-04 12:28 - 2026-05-04 12:28 - 000003872 _____ C:\WINDOWS\system32\DeviceFeatureDDF.json
2026-05-01 22:28 - 2026-05-01 22:29 - 179247111 _____ C:\Users\vikto\Downloads\4-5_Kulturne-historicke_a_etnograficke_regiony_ceskych_zemi (23).pptx
2026-05-01 22:26 - 2026-05-01 22:26 - 009596253 _____ C:\Users\vikto\Downloads\2_Kultura_a_kulturni_dedictvi (24).pptx
2026-05-01 22:24 - 2026-05-01 22:25 - 001824514 _____ C:\Users\vikto\Downloads\1_Uvod_do_studia (10).pptx
2026-05-01 22:24 - 2026-05-01 22:24 - 001824514 _____ C:\Users\vikto\Downloads\1_Uvod_do_studia (9).pptx
2026-05-01 22:23 - 2026-05-01 22:23 - 016183214 _____ C:\Users\vikto\Downloads\2-3_Uzemne-spravni_a_politicke_regiony_v_Ceske_republice (5).pptx
2026-05-01 22:22 - 2026-05-01 22:22 - 001824514 _____ C:\Users\vikto\Downloads\1_Uvod_do_studia (8).pptx
2026-04-27 21:47 - 2026-04-27 21:47 - 007106966 _____ C:\Users\vikto\Downloads\videoplayback (2) (1).mp4
2026-04-27 18:39 - 2026-04-27 18:39 - 000000000 ____D C:\WINDOWS\system32\Tasks\S-1-5-21-3709009798-2618340189-3513383678-1001
2026-04-26 22:50 - 2026-04-26 22:50 - 007106966 _____ C:\Users\vikto\Downloads\videoplayback (2).mp4
2026-04-26 14:07 - 2026-04-26 14:07 - 000000000 ___RD C:\Users\vikto\OneDrive\Documents\Viktor\CR - maturita\OneDrive\Plocha\Praxe
2026-04-25 19:22 - 2026-04-25 19:22 - 007943491 _____ C:\Users\vikto\Downloads\videoplayback (1).mp4
2026-04-25 19:00 - 2026-04-25 19:00 - 033586283 _____ C:\Users\vikto\Downloads\videoplayback.mp4
2026-04-25 11:53 - 2026-04-25 11:53 - 003717485 _____ C:\Users\vikto\OneDrive\Documents\Viktor\CR - maturita\OneDrive\Plocha\výstava obrazů.mp4
2026-04-25 11:46 - 2026-04-25 11:46 - 010907426 _____ C:\Users\vikto\OneDrive\Documents\Viktor\CR - maturita\OneDrive\Plocha\tradiční kultura.mp4
2026-04-23 09:42 - 2026-04-23 09:42 - 007713086 _____ C:\Users\vikto\Downloads\Thor Heyerdahl.pptx
2026-04-22 00:26 - 2026-04-22 00:26 - 000008133 _____ C:\Users\vikto\Downloads\export.gpx
2026-04-21 10:41 - 2026-04-21 10:41 - 000000000 ____D C:\Users\vikto\AppData\Roaming\xpdf
2026-04-20 15:05 - 2026-04-20 16:19 - 016185288 _____ C:\Users\vikto\Downloads\18. Archeologické expozice.pptx
2026-04-20 15:02 - 2026-04-20 15:03 - 020107505 _____ C:\Users\vikto\Downloads\16.Oborová specifika muzejní prezentace I.- úprava (1).pptx
2026-04-20 15:01 - 2026-04-20 15:02 - 020107505 _____ C:\Users\vikto\Downloads\16.Oborová specifika muzejní prezentace I.- úprava.pptx
2026-04-20 14:36 - 2026-04-20 15:00 - 016223039 _____ C:\Users\vikto\Downloads\18.+Archeologické+expozice.pptx
2026-04-19 11:00 - 2026-04-19 11:00 - 000000000 ____D C:\ProgramData\PDF-XChange
2026-04-19 04:51 - 2026-04-19 04:51 - 001738650 _____ C:\Users\vikto\OneDrive\Documents\Viktor\CR - maturita\OneDrive\Plocha\modrá.mhtml
2026-04-19 04:11 - 2026-04-19 04:11 - 001712767 _____ C:\Users\vikto\OneDrive\Documents\Viktor\CR - maturita\OneDrive\Plocha\Video.mhtml
2026-04-19 04:09 - 2026-04-19 04:09 - 001712742 _____ C:\Users\vikto\OneDrive\Documents\Viktor\CR - maturita\OneDrive\Plocha\Video Tugendhat 90 - Vila Tugendhat.mhtml
2026-04-17 17:55 - 2026-04-17 17:55 - 069160244 _____ C:\Users\vikto\Downloads\Josef_Petran_ed_Dejiny_hmotne_kultury_Di (3).pdf
2026-04-17 17:52 - 2026-04-17 17:52 - 073845327 _____ C:\Users\vikto\Downloads\Josef_Petran_ed_Dejiny_hmotne_kultury_Di (2).pdf
2026-04-17 17:51 - 2026-04-17 17:51 - 070509915 _____ C:\Users\vikto\Downloads\Josef_Petran_ed_Dejiny_hmotne_kultury_Di (1).pdf
2026-04-17 17:45 - 2026-04-17 17:46 - 005461990 _____ C:\Users\vikto\Downloads\Josef_Petran_ed_Dejiny_hmotne_kultury_Di (1).pdf.crdownload
2026-04-17 17:43 - 2026-04-17 17:43 - 068379007 _____ C:\Users\vikto\Downloads\Josef_Petran_ed_Dejiny_hmotne_kultury_Di.pdf
2026-04-17 00:29 - 2025-03-02 23:56 - 000017934 _____ C:\Users\vikto\OneDrive\Documents\Viktor\CR - maturita\OneDrive\Plocha\Volný čas.xlsx

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-05-15 19:00 - 2022-12-22 04:55 - 000000512 _____ C:\Users\Public\amdsfhdcd.bin
2026-05-15 18:50 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-05-15 18:36 - 2024-01-01 12:55 - 000000000 ____D C:\Users\vikto\AppData\Local\Norton
2026-05-15 18:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-05-15 18:17 - 2025-10-11 09:06 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2026-05-15 14:15 - 2023-12-27 21:23 - 000000000 ____D C:\Users\vikto\AppData\Local\Packages
2026-05-15 13:34 - 2023-12-28 23:55 - 000000000 ____D C:\Users\vikto\AppData\Roaming\Microsoft\Word
2026-05-15 13:19 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-05-15 13:17 - 2024-04-01 09:26 - 000000000 ___HD C:\Program Files\WindowsApps
2026-05-15 09:29 - 2023-12-27 21:38 - 000002258 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2026-05-14 23:31 - 2026-02-12 14:14 - 000000000 ___RD C:\Users\vikto\OneDrive\Documents\Viktor\CR - maturita\OneDrive\Plocha\FPF 2.semestr
2026-05-14 18:13 - 2023-12-27 21:23 - 000000000 ____D C:\Users\vikto\AppData\Local\D3DSCache
2026-05-14 11:35 - 2025-10-11 09:20 - 001603798 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-05-14 11:35 - 2024-04-01 09:24 - 000000000 ____D C:\WINDOWS\INF
2026-05-14 11:24 - 2025-10-11 09:18 - 000009344 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2026-05-14 11:24 - 2025-10-11 09:15 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-05-14 11:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ServiceState
2026-05-14 11:24 - 2023-12-27 21:40 - 000000000 ____D C:\ProgramData\Norton
2026-05-14 11:24 - 2022-05-25 21:05 - 000012288 ___SH C:\DumpStack.log.tmp
2026-05-14 11:23 - 2024-04-01 09:21 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2026-05-14 11:22 - 2025-10-11 09:06 - 000472584 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2026-05-14 11:21 - 2025-10-11 09:06 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK
2026-05-14 11:21 - 2024-04-01 18:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2026-05-14 11:21 - 2024-04-01 18:28 - 000000000 ____D C:\WINDOWS\SysWOW64\cs
2026-05-14 11:21 - 2024-04-01 18:28 - 000000000 ____D C:\WINDOWS\system32\cs
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ur-PK
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ug-CN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\tt-RU
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\te-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ta-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\sq-AL
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\quz-PE
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\qps-plocm
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\qps-ploc
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\or-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\nn-NO
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ne-NP
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mt-MT
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mr-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ml-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mk-MK
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mi-NZ
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lo-LA
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lb-LU
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kok-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kn-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\km-KH
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kk-KZ
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ka-GE
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\is-IS
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\hy-AM
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\hi-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gu-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gl-ES
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gd-GB
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ga-IE
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\fil-PH
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\fa-IR
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\eu-ES
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\cy-GB
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\be-BY
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\as-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\am-ET
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\af-ZA
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemResources
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\vi-VN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ur-PK
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ug-CN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\tt-RU
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\te-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ta-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\sq-AL
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\quz-PE
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\qps-plocm
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\qps-ploc
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\pa-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\or-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\nn-NO
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ne-NP
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mt-MT
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mr-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ml-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mk-MK
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mi-NZ
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lo-LA
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lb-LU
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kok-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kn-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\km-KH
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kk-KZ
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ka-GE
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\is-IS
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\id-ID
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\hy-AM
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\hi-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\gu-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\gl-ES
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\gd-GB
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ga-IE
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\fil-PH
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\fa-IR
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\eu-ES
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\et-EE
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\es-MX
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\cy-GB
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ca-ES
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\bn-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\be-BY
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\as-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\am-ET
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\af-ZA
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2026-05-14 04:19 - 2023-12-27 21:36 - 000000000 ____D C:\Users\vikto\AppData\Roaming\Microsoft\PowerPoint
2026-05-13 23:31 - 2024-04-21 21:01 - 000001438 _____ C:\Users\vikto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Grammarly.lnk
2026-05-13 23:31 - 2024-04-21 21:01 - 000000000 ____D C:\Users\vikto\AppData\Local\Grammarly
2026-05-13 18:06 - 2025-10-11 09:11 - 003268096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2026-05-13 18:01 - 2023-12-28 00:24 - 000000000 ____D C:\WINDOWS\system32\MRT
2026-05-13 17:59 - 2023-12-28 00:24 - 220340424 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2026-05-11 12:28 - 2025-10-11 09:11 - 000000000 ____D C:\Users\vikto
2026-05-10 11:01 - 2024-04-01 09:26 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2026-05-10 11:01 - 2024-02-03 21:30 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2026-05-09 22:07 - 2024-01-16 20:07 - 004553160 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2026-05-09 22:07 - 2024-01-16 20:07 - 000154056 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe
2026-05-09 22:07 - 2024-01-16 20:07 - 000084424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe
2026-05-09 22:06 - 2024-01-16 20:07 - 000166344 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2026-05-09 21:58 - 2024-01-16 20:07 - 001141192 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2026-05-09 21:58 - 2024-01-16 20:07 - 000289224 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2026-05-09 21:58 - 2024-01-16 20:07 - 000264648 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2026-05-09 21:51 - 2022-05-25 21:06 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-05-09 21:50 - 2025-10-11 09:15 - 000003596 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3709009798-2618340189-3513383678-1001
2026-05-09 21:50 - 2025-10-11 09:15 - 000003552 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-3709009798-2618340189-3513383678-1001
2026-05-09 21:50 - 2025-10-11 09:15 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2026-05-09 21:50 - 2024-02-01 17:54 - 000002034 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2026-05-09 10:51 - 2025-10-11 09:15 - 000000000 ____D C:\WINDOWS\system32\Tasks\Norton
2026-05-09 10:51 - 2024-10-30 00:43 - 001292896 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllSP.sys
2026-05-09 10:51 - 2024-10-30 00:43 - 000911456 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllSnx.sys
2026-05-09 10:51 - 2024-10-30 00:43 - 000633440 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllNetHub.sys
2026-05-09 10:51 - 2024-10-30 00:43 - 000466016 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllVmm.sys
2026-05-09 10:51 - 2024-10-30 00:43 - 000451168 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllbidsdriver.sys
2026-05-09 10:51 - 2024-10-30 00:43 - 000315488 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllbidsh.sys
2026-05-09 10:51 - 2024-10-30 00:43 - 000289376 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllMonFlt.sys
2026-05-09 10:51 - 2024-10-30 00:43 - 000259168 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllArPot.sys
2026-05-09 10:51 - 2024-10-30 00:43 - 000096864 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllRdr2.sys
2026-05-09 10:51 - 2024-10-30 00:43 - 000087136 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllbuniv.sys
2026-05-09 10:51 - 2024-10-30 00:43 - 000071776 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllRvrt.sys
2026-05-09 10:51 - 2024-10-30 00:43 - 000032864 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllKbd.sys
2026-05-09 10:51 - 2024-10-30 00:43 - 000021088 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllArDisk.sys
2026-05-08 13:43 - 2024-01-16 20:09 - 000000000 ____D C:\ProgramData\CanonIJPLM
2026-05-05 19:40 - 2025-10-11 10:02 - 000000000 ____D C:\WINDOWS\system32\ruxim
2026-05-05 19:40 - 2024-04-01 18:31 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\UUS
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemApps
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\setup
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\Program Files\Common Files\System
2026-05-05 19:40 - 2024-04-01 09:21 - 000000000 ____D C:\WINDOWS\servicing
2026-05-04 12:19 - 2024-01-08 21:58 - 000002157 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2026-05-01 22:19 - 2025-10-11 09:15 - 000003638 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2026-05-01 22:19 - 2025-10-11 09:15 - 000003512 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2026-04-25 19:46 - 2023-12-28 23:55 - 000000000 ____D C:\Users\vikto\AppData\Roaming\Microsoft\Office
2026-04-24 17:15 - 2026-04-14 18:56 - 000000000 ____D C:\WINDOWS\Minidump
2026-04-24 17:15 - 2022-12-22 04:50 - 002078107 ____N C:\WINDOWS\Minidump\042426-12875-01.dmp
2026-04-24 17:14 - 2023-12-27 21:49 - 000000000 ____D C:\Users\vikto\AppData\Local\CrashDumps
2026-04-20 14:41 - 2023-12-27 21:38 - 000000000 ____D C:\Users\vikto\AppData\Local\Comms
2026-04-17 00:30 - 2024-03-28 14:31 - 000000000 ____D C:\Users\vikto\AppData\Roaming\Microsoft\Excel

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14-05-2026 01
Ran by vikto (15-05-2026 19:00:42)
Running from C:\Users\vikto\Downloads
Microsoft Windows 11 Home Version 25H2 26200.8457 (X64) (2025-10-11 07:15:41)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-3709009798-2618340189-3513383678-500 - Administrators - Disabled)
DefaultAccount (S-1-5-21-3709009798-2618340189-3513383678-503 - Limited - Disabled)
Guest (S-1-5-21-3709009798-2618340189-3513383678-501 - Limited - Disabled)
marka (S-1-5-21-3709009798-2618340189-3513383678-1004 - Limited - Disabled)
ssuch (S-1-5-21-3709009798-2618340189-3513383678-1005 - Limited - Disabled)
vikto (S-1-5-21-3709009798-2618340189-3513383678-1001 - Administrators - Enabled) => C:\Users\vikto
WDAGUtilityAccount (S-1-5-21-3709009798-2618340189-3513383678-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Norton Security Ultra (Enabled - Up to date) {343E1860-FD6F-AB8D-96E4-A5006AA98D2C}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Norton Security Ultra (Enabled) {0C059945-B700-AAD5-BDBB-0C35947ACA57}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1033-1033-7760-BC15014EA700}) (Version: 26.001.21529 - Adobe)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601149}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Canon IJ Network Scanner Selector EX2 (HKLM-x32\...\Canon_IJ_Network_Scanner_Selector_EX2) (Version: 2.0.10.2 - Canon Inc.)
Canon IJ Printer Assistant Tool (HKLM-x32\...\Canon IJ Printer Assistant Tool) (Version: 1.30.1.52 - Canon Inc.)
Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: 1.5.5.3 - Canon Inc.)
Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version: 6.5.2 - Canon Inc.)
Canon TS6300 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_TS6300_series) (Version: 1.02 - Canon Inc.)
Canon Wi-Fi Connection Assistant (HKLM-x32\...\Wi-Fi Connection Assistant) (Version: 1.50.0 - Canon Inc.)
CCleaner 7 (HKLM\...\CCleaner 7) (Version: 7.7.1313.1667 - Piriform)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.983.1 - Dropbox, Inc.) Hidden
FL Cloud Plugins version 1.9.6 (HKLM-x32\...\FL Cloud Plugins_is1) (Version: 1.9.6 - )
FL Studio 2025 (HKLM-x32\...\FL Studio 2025) (Version: 25.1.5.4976 - Image-Line)
FL Studio ASIO (HKLM-x32\...\FL Studio ASIO) (Version: - Image-Line)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 148.0.7778.168 - Google LLC)
Grammarly for Windows (HKU\S-1-5-21-3709009798-2618340189-3513383678-1001\...\Grammarly Desktop Integrations) (Version: 1.2.260.1887 - Grammarly Inc.)
K-Lite Codec Pack 19.6.0 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 19.6.0 - KLCP)
Lenovo Now (HKLM-x32\...\{622FA116-13E7-4BB6-839C-A3E0E3ECDFE6}_is1) (Version: 4.6.0.44 - Lenovo)
Lenovo Smart Appearance Components (HKLM-x32\...\{13E9CBF6-6E32-40D0-874A-018DFEFB0851}_is1) (Version: 2.3.15.0 - Lenovo)
Lenovo Vantage Service (HKLM-x32\...\VantageSRV_is1) (Version: 4.2601.21.0 - Lenovo Group Ltd.)
Lenovo Voice Service (HKLM\...\{C59A85F5-DB04-4D09-BE1F-1B49B49EA9DA}_is1) (Version: 3.0.26.0 - Lenovo Group Ltd.)
Microsoft 365 - cs-cz (HKLM\...\O365HomePremRetail - cs-cz) (Version: 16.0.19029.20184 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 148.0.3967.54 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 148.0.3967.54 - Microsoft Corporation) Hidden
Microsoft GameInput (HKLM\...\{E0F8B2C9-50A7-4495-913B-AC17EF66F104}) (Version: 3.3.182.0 - Microsoft Corporation)
Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 26.070.0414.0001 - Microsoft Corporation)
Microsoft OneNote - cs-cz (HKLM\...\OneNoteFreeRetail - cs-cz) (Version: 16.0.19029.20184 - Microsoft Corporation)
Microsoft Teams Meeting Add-in for Microsoft Office (HKLM\...\{A7AB73A3-CB10-4AA5-9D38-6AEFFBDE4C91}) (Version: 1.26.08901 - Microsoft)
Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.38.33135 (HKLM-x32\...\{c649ede4-f16a-4486-a117-dcc2f2a35165}) (Version: 14.38.33135.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.38.33135 (HKLM\...\{19AFE054-CA83-45D5-A9DB-4108EF4BD391}) (Version: 14.38.33135 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.38.33135 (HKLM\...\{AA0C8AB5-7297-4D46-A0D9-08096FE59E46}) (Version: 14.38.33135 - Microsoft Corporation) Hidden
Movavi Video Editor 26 (HKU\S-1-5-21-3709009798-2618340189-3513383678-1001\...\Movavi Video Editor 26) (Version: 26.9.0 - Movavi)
Mozilla Firefox (x64 cs) (HKLM\...\Mozilla Firefox) (Version: 146.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 134.0 - Mozilla)
Norton Security Ultra (HKLM\...\Norton 360) (Version: 26.4.10932.2463 - Gen Digital Inc.)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.19029.20184 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.19029.20184 - Microsoft Corporation) Hidden
PDF-XChange Editor (HKLM\...\{4F71777D-BC2E-40B6-A7D3-8C8DB2EEA6E4}) (Version: 10.8.4.409 - PDF-XChange Co Ltd.) Hidden
PDF-XChange Editor (HKLM-x32\...\{bddb91ce-4e19-42b5-999b-19a99e2642e4}) (Version: 10.8.4.409 - PDF-XChange Co Ltd.)
Příručky společnosti EPSON (HKLM-x32\...\{84CECC1B-21EF-41B1-9A91-3E724E5D99D3}) (Version: 1.57.0.0 - Seiko Epson Corporation)
Registrace tiskárny (HKLM-x32\...\Canon EISRegistration) (Version: 1.9.1 - Canon Inc.)
Smart Note (HKLM\...\{E2715359-FAFC-4C28-8064-526EB44096AD}_is1) (Version: 1.0.13.1121 - Lenovo Group Limited)
WinRAR 7.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 7.01.0 - win.rar GmbH)

Chrome apps:
============
Google Photos (HKU\S-1-5-21-3709009798-2618340189-3513383678-1001\...\d309c1139a9ef4c16ebfda91d214451f) (Version: 1.0 - Google\Chrome)

Packages:
=========
Adobe Acrobat Reader -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Assets [2026-05-04] ()
AMD Radeon Software -> C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m [2025-08-01] (Advanced Micro Devices Inc.) [Startup Task]
Canon PRINT -> C:\Program Files\WindowsApps\34791E63.CanonInkjetSmartConnect_1.12.1.0_x64__6e5tt8cgb93ep [2026-02-27] (Canon Inc.) [Startup Task]
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.27.9430.0_x64__rz1tebttyb220 [2026-05-11] (Dolby Laboratories)
Dolby Digital Plus decoder for PC OEMs -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyDigitalPlusDecoderOEM_1.2.588.0_x64__rz1tebttyb220 [2026-02-04] (Dolby Laboratories)
FMAPOControl2 -> C:\Program Files\WindowsApps\4505Fortemedia.FMAPOControl2_2.1.31.0_x64__4pejv7q2gmsnr [2025-09-22] (Fortemedia)
iCloud -> C:\Program Files\WindowsApps\AppleInc.iCloud_15.7.56.0_x64__nzyj5cx40ttqa [2026-01-30] (Apple Inc.) [Startup Task]
Instagram -> C:\Program Files\WindowsApps\Facebook.InstagramBeta_42.0.23.0_neutral__8xx8rvfyw5nnt [2025-09-25] (Instagram)
Lenovo Hotkeys -> C:\Program Files\WindowsApps\E0469640.LenovoUtility_4.7.18.0_x64__5grkq8ppsgwt4 [2025-06-09] (LENOVO INC) [Startup Task]
Lenovo Pen Settings -> C:\Program Files\WindowsApps\WacomTechnologyCorp.157535B83C264_8.2.8.0_neutral__ss941bf8mfs8a [2025-09-22] (Wacom Technology Corp.)
Lenovo Smart Appearance -> C:\Program Files\WindowsApps\E0469640.SmartAppearance_2.3.54.0_x64__5grkq8ppsgwt4 [2025-09-22] (LENOVO INC) [Startup Task]
Lenovo Vantage -> C:\Program Files\WindowsApps\E046963F.LenovoCompanion_10.2603.12.0_x64__k1h2ywk1493x8 [2026-04-23] (LENOVO INC.)
Lenovo Voice -> C:\Program Files\WindowsApps\E046963F.LenovoVoiceWorldWide_3.0.26.0_x64__k1h2ywk1493x8 [2025-08-01] (LENOVO INC.)
Microsoft Defender -> C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2602.23002.0_x64__8wekyb3d8bbwe [2026-03-22] (Microsoft Corporation) [Startup Task]
Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2023-12-27] (Microsoft Corp.)
Microsoft Journal -> C:\Program Files\WindowsApps\Microsoft.MicrosoftJournal_1.0.127.0_x64__8wekyb3d8bbwe [2025-12-11] (Microsoft Corporation)
Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_56.20201.588.0_x64__8wekyb3d8bbwe [2026-02-28] (Microsoft Corporation)
Microsoft.AIFabric.CBS.1.6 -> C:\WINDOWS\SystemApps\Microsoft.AIFabric.CBS.1.6_8wekyb3d8bbwe [2026-05-05] (Microsoft Corporation)
Microsoft.Office.ActionsServer -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\ActionsServer [2025-09-22] ()
Movavi Video Editor -> C:\Users\vikto\AppData\Roaming\Movavi Video Editor 26 [2026-03-01] ()
OfficePushNotificationsUtility -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16 [2025-09-22] ()
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.53.374.0_x64__dt26b99r8h8gj [2026-02-02] (Realtek Semiconductor Corp)
SpotifyAB.SpotifyMusic -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.289.539.0_x64__zpdnekdrzrea0 [2026-05-11] (Spotify AB) [Startup Task]
WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2616.100.0_x64__cv1g1gvanyjgm [2026-05-11] (WhatsApp Inc.) [Startup Task]
WinRAR -> C:\Program Files\WinRAR [2025-02-13] (win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3709009798-2618340189-3513383678-1001_Classes\CLSID\{113b8d53-e3e1-b7a2-c90a-176c40f3f722}\localserver32 -> C:\ProgramData\Lenovo\Udc\Hosts\x64\MessagingPlugin.exe (Lenovo -> )
CustomCLSID: HKU\S-1-5-21-3709009798-2618340189-3513383678-1001_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-3709009798-2618340189-3513383678-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-3709009798-2618340189-3513383678-1001_Classes\CLSID\{51694bf6-7178-71ba-ba8c-cd64aadfc7f1}\localserver32 -> "C:\ProgramData\Lenovo\Udc\Hosts\24.10.0.10\x64\MessagingPlugin.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-3709009798-2618340189-3513383678-1001_Classes\CLSID\{d4ae5d89-8f17-bc59-b756-da2f0979eaa4}\localserver32 -> C:\Users\vikto\AppData\Local\Grammarly\DesktopIntegrations\Grammarly.Desktop.exe (Grammarly, Inc. -> Grammarly Inc.)
CustomCLSID: HKU\S-1-5-21-3709009798-2618340189-3513383678-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-3709009798-2618340189-3513383678-1001_Classes\CLSID\{EABAE40C-B27C-455A-B672-F234DD780948}\InprocServer32 -> C:\Users\vikto\AppData\Local\Microsoft\TeamsMeetingAdd-in\1.26.08901\x64\Microsoft.Teams.MeetingAddin.DLL (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3709009798-2618340189-3513383678-1001_Classes\CLSID\{efd4e8f5-6e0e-9405-4ec4-9c673447cfee}\localserver32 -> C:\Program Files\Lenovo\Lenovo Smart Appearance Components\Components\IntelligentSensingAwareService\LsaToast.exe (Lenovo -> Lenovo)
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [001BUOverlayProtected] -> {9C11454A-4B5C-4586-B0BB-E51BB6033668} => C:\Program Files\Norton\Suite\ashShell.dll [2026-05-09] (Gen Digital Inc. -> Gen Digital Inc.)
ShellIconOverlayIdentifiers: [002BUOverlayPending] -> {5A4597A9-CC87-4ED2-A7E5-3BC62CF54901} => C:\Program Files\Norton\Suite\ashShell.dll [2026-05-09] (Gen Digital Inc. -> Gen Digital Inc.)
ShellIconOverlayIdentifiers: [003BUOverlayExcluded] -> {42DE06EE-09E4-4808-A8AA-F63B1D3F6CE5} => C:\Program Files\Norton\Suite\ashShell.dll [2026-05-09] (Gen Digital Inc. -> Gen Digital Inc.)
ShellIconOverlayIdentifiers: [00nll] -> {472083B2-C522-11CF-8763-00608CC02F24} => C:\Program Files\Norton\Suite\ashShell.dll [2026-05-09] (Gen Digital Inc. -> Gen Digital Inc.)
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [00nll] -> {472083B2-C522-11CF-8763-00608CC02F24} => C:\Program Files\Norton\Suite\ashShell.dll [2026-05-09] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2026-04-29] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers1: [norton] -> {472083B2-C522-11CF-8763-00608CC02F24} => C:\Program Files\Norton\Suite\ashShell.dll [2026-05-09] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers1: [PDFXChange Editor Context menu] -> {2ACD35AB-F74A-4C20-AA9B-2DE80081626D} => C:\Program Files\Tracker Software\Shell Extensions\XCShellMenu.x64.dll [2026-02-24] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
ContextMenuHandlers3: [00nll] -> {472083B2-C522-11CF-8763-00608CC02F24} => C:\Program Files\Norton\Suite\ashShell.dll [2026-05-09] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers6: [norton] -> {472083B2-C522-11CF-8763-00608CC02F24} => C:\Program Files\Norton\Suite\ashShell.dll [2026-05-09] (Gen Digital Inc. -> Gen Digital Inc.)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\vikto\AppData\Local\Google\Chrome\User Data\Profile 5\Web Applications\_crx_ncmjhecbjeaamljdfahankockkkdmedg\Google Photos.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 5" --app-id=ncmjhecbjeaamljdfahankockkkdmedg
ShortcutWithArgument: C:\Users\vikto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\Google Photos.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 5" --app-id=ncmjhecbjeaamljdfahankockkkdmedg
ShortcutWithArgument: C:\Users\vikto\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Photos.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 5" --app-id=ncmjhecbjeaamljdfahankockkkdmedg

==================== Loaded Modules (Whitelisted) =============

2022-12-22 04:54 - 2023-02-10 11:51 - 000393216 _____ () [File not signed] C:\Program Files\Lenovo\LVA Pro Service\libglog.dll
2024-01-16 20:11 - 2017-11-02 16:36 - 000008192 _____ (CANON INC.) [File not signed] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNS2_CSY.DLL
2024-01-16 20:11 - 2017-11-02 16:36 - 000104960 _____ (CANON INC.) [File not signed] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNS2_IMG.dll
2022-12-22 04:55 - 2022-12-22 04:55 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems64.dll] C:\Program Files\Microsoft Office\root\Client\AppVIsvSubsystems64.dll
2022-12-22 04:55 - 2022-12-22 04:55 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems64.dll] C:\Program Files\Microsoft Office\Root\Office16\AppVIsvSubsystems64.dll
2022-12-22 04:55 - 2022-12-22 04:55 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R64.dll] C:\Program Files\Microsoft Office\root\Client\C2R64.dll
2022-12-22 04:55 - 2022-12-22 04:55 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R64.dll] C:\Program Files\Microsoft Office\Root\Office16\c2r64.dll
2024-01-08 21:44 - 2018-06-15 05:14 - 000187392 _____ (Seiko Epson Corporation) [File not signed] C:\WINDOWS\System32\E_YLMBPME.DLL

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\nllSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\nllSP.sys => ""="Driver"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) =============

BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-09-22] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2022-05-07 07:24 - 2022-05-07 07:22 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Network ===========================

(Currently there is no automatic fix for this section.)

DNS Servers: 192.168.0.1
Windows Firewall is enabled.

Network Binding:
=============
Síťové připojení Bluetooth: Bluetooth Device (Personal Area Network) -> bthpan.sys
Wi-Fi: Realtek RTL8852BE WiFi 6 802.11ax PCIe Adapter -> rtwlane601.sys

vms_vsf: Hyper-V Virtual Switch Extension Filter
ms_l1vhlwf: Nested Network Virtualization
vms_vsp: Hyper-V Virtual Switch Extension Protocol

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3709009798-2618340189-3513383678-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\vikto\AppData\Local\Packages\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\LocalCache\Microsoft\IrisService\11557233108920658582\134233190739547901.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)


==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKU\S-1-5-21-3709009798-2618340189-3513383678-1001\...\StartupApproved\Run: => "LenovoVantageToolbar"
HKU\S-1-5-21-3709009798-2618340189-3513383678-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{FD2430E6-CC06-4224-AB8C-0858F58A7EB5}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{33207493-42BE-487A-BDC7-8E2DE206405B}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{41995420-42D9-4F25-93CA-A53500FF6ABF}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{DC3D390B-0452-4615-BD02-F56E606FBF29}] => (Allow) C:\Program Files\Norton\Suite\NortonUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{10E0B064-A35D-4A88-B4EB-12B816086AB4}] => (Allow) C:\Program Files\Norton\Suite\NortonUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{E1DBD264-A50A-421D-9DF6-8482FED7BCB7}] => (Allow) C:\Program Files (x86)\Canon\Wi-Fi Connection Assistant\cnwiddsu\cnwiddsu2.exe (Canon Inc. -> CANON INC.)
FirewallRules: [{B738BFB8-9916-46FB-B6DD-F02BD2CDCBD3}] => (Allow) C:\Program Files (x86)\Canon\Wi-Fi Connection Assistant\cnwidadr2.exe (Canon Inc. -> CANON INC.)
FirewallRules: [EdgeWebView2-MDNS-In-UDP] => (Allow) C:\WINDOWS\system32\Microsoft-Edge-WebView\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{4299D57A-A15F-44F8-B2DB-D2CB2C752116}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.289.539.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{68398356-EE43-4ECF-8F97-9B4E4D43C9CE}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.289.539.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{CECB0C01-AA3B-4E97-B134-CCD05FF6AA73}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.289.539.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{94CD6DA8-B91C-46A0-AABA-4B840B1378FA}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.289.539.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{FFB1E700-FAE9-44EC-A481-34886EDAE382}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.289.539.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{FE7E262B-75B0-4BDF-A464-4E785FD00A96}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.289.539.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{B4FBFA12-6665-45F8-84C0-42CAF9BF04F2}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.289.539.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{8DC933E8-0DFE-4FCD-94EB-31D896F659B4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.289.539.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{470E1CB3-3CC2-4954-9C0C-E85FD8516038}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.289.539.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{83EFEF02-5CA7-4655-B14A-B484F827379D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.289.539.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{F868DAB3-5D75-4510-AFEA-07D3CD2CE31A}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.289.539.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{98E3AB37-691F-434F-80F4-65AABAF59895}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.289.539.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{6BA0EFFA-23A1-4524-B792-D185CD9EB796}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.289.539.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{B085B70E-647A-4D62-AE82-BA17DDB6E4E5}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

13-05-2026 17:59:09 Windows Update

==================== Faulty Device Manager Devices ============

==================== Event log errors: ========================

Application errors:
==================
Error: (05/15/2026 04:23:26 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 31652. ID zprávy: [0x2509].

Error: (05/15/2026 09:28:10 AM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 7876. ID zprávy: [0x2509].

Error: (05/14/2026 07:40:21 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 14316. ID zprávy: [0x2509].

Error: (05/14/2026 04:32:33 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 27368. ID zprávy: [0x2509].

Error: (05/14/2026 01:17:44 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 400. ID zprávy: [0x2509].

Error: (05/14/2026 09:33:48 AM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 26436. ID zprávy: [0x2509].

Error: (05/14/2026 04:20:07 AM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 17328. ID zprávy: [0x2509].

Error: (05/14/2026 04:19:34 AM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 31172. ID zprávy: [0x2509].


System errors:
=============
Error: (05/15/2026 06:56:16 PM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3509) (User: NT AUTHORITY)
Description: Nepovedlo se přidružit zařízení – Vybrat ceremonii.

Error: (05/15/2026 06:46:15 PM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3509) (User: NT AUTHORITY)
Description: Nepovedlo se přidružit zařízení – Vybrat ceremonii.

Error: (05/15/2026 06:36:15 PM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3509) (User: NT AUTHORITY)
Description: Nepovedlo se přidružit zařízení – Vybrat ceremonii.

Error: (05/15/2026 06:21:56 PM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3509) (User: NT AUTHORITY)
Description: Nepovedlo se přidružit zařízení – Vybrat ceremonii.

Error: (05/15/2026 05:47:40 PM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3509) (User: NT AUTHORITY)
Description: Nepovedlo se přidružit zařízení – Vybrat ceremonii.

Error: (05/15/2026 05:37:40 PM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3509) (User: NT AUTHORITY)
Description: Nepovedlo se přidružit zařízení – Vybrat ceremonii.

Error: (05/15/2026 05:27:39 PM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3509) (User: NT AUTHORITY)
Description: Nepovedlo se přidružit zařízení – Vybrat ceremonii.

Error: (05/15/2026 05:17:38 PM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3509) (User: NT AUTHORITY)
Description: Nepovedlo se přidružit zařízení – Vybrat ceremonii.

Error: (04/25/2026 12:00:08 PM) (Source: disk) (EventID: 11) (User: )
Description: Ovladač zjistil chybu řadiče na \Device\Harddisk1\DR4.


CodeIntegrity:
===============
Date: 2026-05-11 10:24:21
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Norton\Suite\NortonSvc.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2026-04-24 17:12:38
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\edgehtml.dll that did not meet the Windows signing level requirements.

Date: 2026-04-24 17:12:38
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\UserDataPlatformHelperUtil.dll that did not meet the Windows signing level requirements.


==================== Memory info ===========================

BIOS: LENOVO L7CN26WW 05/23/2025
Motherboard: LENOVO LNVNB161216
Processor: AMD Ryzen 5 7530U with Radeon Graphics
Percentage of memory in use: 64%
Total physical RAM: 15726.31 MB
Available physical RAM: 5548.48 MB
Total Virtual: 23150.31 MB
Available Virtual: 7722.63 MB

==================== Drives ================================

Drive c: (Windows-SSD) (Fixed) (Total:951.65 GB) (Free:790.1 GB) (Model: SAMSUNG MZAL41T0HBLB-00BL2) NTFS

\\?\Volume{af26619a-bb03-4432-a8f8-8f6f62c90ff7}\ (WINRE_DRV) (Fixed) (Total:1.95 GB) (Free:1.2 GB) NTFS
\\?\Volume{2ef6a67e-32d7-40cd-a08c-4fa15342410e}\ (SYSTEM_DRV) (Fixed) (Total:0.25 GB) (Free:0.21 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 953.9 GB) (Disk ID: FE68812C)

Partition: GPT.

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119914
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o vyřešení problému - pop up okno

#2 Příspěvek od Rudy »

Zdravím!
Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Edge: Restriction <==== ATTENTION
Task: {12AD21ED-AA47-499A-9B2B-A4520770B21A} - System32\Tasks\Lenovo\Vantage\StartupFixPlan => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\\uninstall.exe /repair (No File)
Task: {0A616CD8-EAFD-4A13-BD67-86DE9573A2F8} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoBoostAddin.Prompt => C:\Program Files (x86)\Lenovo\VantageService\4.0.52.0\ScheduleEventAction.exe LenovoBoostAddin.Prompt (No File)
Task: {C8E8717B-7343-40F9-8224-F9E195ABB601} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServciePatch => "C:\Program Files (x86)\Lenovo\VantageService\3.13.25.0\OOBECompleteWatch.exe" (No File)
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {0BB36A32-0D9E-4297-AFD7-6BD7B5DB4C9B} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
U3 FamilySvc; no ImagePath
C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
C:\DumpStack.log.tmp

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

markalous
Návštěvník
Návštěvník
Příspěvky: 51
Registrován: 12 bře 2005 12:20

Re: Prosím o vyřešení problému - pop up okno

#3 Příspěvek od markalous »

Posílám log po fixu.
Jinak jsem vyskakovací okno bloknul v Edge v sekci oznamování. Dělala to nějaká stránka s příponou .in
Teď už nic nevyskakuje.
------------------------------------------------------------
Fix result of Farbar Recovery Scan Tool (x64) Version: 14-05-2026 01
Ran by vikto (15-05-2026 21:58:46) Run:1
Running from C:\Users\vikto\OneDrive\Documents\Viktor\CR - maturita\OneDrive\Plocha
Loaded Profiles: vikto
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Edge: Restriction <==== ATTENTION
Task: {12AD21ED-AA47-499A-9B2B-A4520770B21A} - System32\Tasks\Lenovo\Vantage\StartupFixPlan => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\\uninstall.exe /repair (No File)
Task: {0A616CD8-EAFD-4A13-BD67-86DE9573A2F8} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoBoostAddin.Prompt => C:\Program Files (x86)\Lenovo\VantageService\4.0.52.0\ScheduleEventAction.exe LenovoBoostAddin.Prompt (No File)
Task: {C8E8717B-7343-40F9-8224-F9E195ABB601} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServciePatch => "C:\Program Files (x86)\Lenovo\VantageService\3.13.25.0\OOBECompleteWatch.exe" (No File)
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {0BB36A32-0D9E-4297-AFD7-6BD7B5DB4C9B} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
U3 FamilySvc; no ImagePath
C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
C:\DumpStack.log.tmp

EmptyTemp:
End
*****************

Processes closed successfully.
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiSpyware"="0" => value restored successfully
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiVirus"="0" => value restored successfully
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => removed successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
HKLM\SOFTWARE\Policies\Google => removed successfully
HKLM\SOFTWARE\Policies\Microsoft\Edge => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{12AD21ED-AA47-499A-9B2B-A4520770B21A}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{12AD21ED-AA47-499A-9B2B-A4520770B21A}" => removed successfully
C:\WINDOWS\System32\Tasks\Lenovo\Vantage\StartupFixPlan => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\Vantage\StartupFixPlan" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0A616CD8-EAFD-4A13-BD67-86DE9573A2F8}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0A616CD8-EAFD-4A13-BD67-86DE9573A2F8}" => removed successfully
C:\WINDOWS\System32\Tasks\Lenovo\Vantage\Schedule\LenovoBoostAddin.Prompt => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\Vantage\Schedule\LenovoBoostAddin.Prompt" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C8E8717B-7343-40F9-8224-F9E195ABB601}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C8E8717B-7343-40F9-8224-F9E195ABB601}" => removed successfully
C:\WINDOWS\System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServciePatch => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\Vantage\Lenovo.Vantage.ServciePatch" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{077BA067-7C15-40F0-B22E-C9DC2A54B4A2}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{077BA067-7C15-40F0-B22E-C9DC2A54B4A2}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Location\Notifications => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Location\Notifications" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0BB36A32-0D9E-4297-AFD7-6BD7B5DB4C9B}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0BB36A32-0D9E-4297-AFD7-6BD7B5DB4C9B}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunUpdateNotificationMgr" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker" => removed successfully
HKLM\System\CurrentControlSet\Services\FamilySvc => removed successfully
FamilySvc => service removed successfully
Could not move "C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2" => Scheduled to move on reboot.
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.

=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 49722990 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B
Windows/system/drivers => 174302409 B
Edge => 771097940 B
Chrome => 3355035597 B
Firefox => 1322808 B
Opera => 0 B

Local\Temp, Local\*.tmp, LocalLow\Temp, Roaming\Temp, Roaming\*.tmp , IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 106885422 B
systemprofile32 => 0 B
LocalService => 260248 B
NetworkService => 1178 B
vikto => 389471868 B

RecycleBin => 0 B
EmptyTemp: => 4.5 GB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 15-05-2026 22:03:38)

C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2 => Is moved successfully
C:\DumpStack.log.tmp => Could not move

==== End of Fixlog 22:03:38 ====

Odpovědět