Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

prevence

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
AndySue
Návštěvník
Návštěvník
Příspěvky: 93
Registrován: 26 pro 2009 12:10

prevence

#1 Příspěvek od AndySue »

Prosím o prevenci. občas je PC pomalé a pár se nereaguje.

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 31-05-2026 01
Ran by admin (administrator) on DESKTOP-FS31EKR (HP HP Z240 Tower Workstation) (01-06-2026 18:20:57)
Running from C:\Users\admin\Desktop\FRST64.exe
Loaded Profiles: admin & MariaDB
Platform: Microsoft Windows 10 Pro Version 22H2 19045.6466 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe <2>
(C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\bin\eds-httpd.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\EasyPHP-DevServer-14.1VC11.exe ->) () [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\mysql\bin\eds-mysqld.exe
(C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\EasyPHP-DevServer-14.1VC11.exe ->) (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\bin\eds-httpd.exe <2>
(C:\Program Files (x86)\Zebra Technologies\Status Monitor\Status Monitor\StatusMonitor.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe
(C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe ->) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AcroCEF\AcroCEF.exe <6>
(C:\Program Files\Adobe\Acrobat DC\Acrobat\Acrobat.exe ->) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2>
(C:\Program Files\Google\Drive File Stream\125.0.0.0\GoogleDriveFS.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive File Stream\125.0.0.0\crashpad_handler.exe
(C:\Program Files\Google\Drive File Stream\125.0.0.0\GoogleDriveFS.exe ->) (Google LLC -> Google LLC.) C:\Program Files\Google\Drive File Stream\126.0.5.0\GoogleDriveFS.exe
(C:\Program Files\Google\Drive File Stream\126.0.5.0\GoogleDriveFS.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive File Stream\126.0.5.0\crashpad_handler.exe
(C:\Program Files\HP\HP Enabling Services\SysInfoCap.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Enabling Services\BridgeCommunication.exe
(C:\Program Files\LibreOffice\program\soffice.bin ->) (Power Software Limited -> Power Software Ltd) C:\Program Files\PowerISO\PWRISOVM.EXE
(C:\Program Files\LibreOffice\program\soffice.exe ->) (The Document Foundation -> The Document Foundation) C:\Program Files\LibreOffice\program\soffice.bin
(C:\Program Files\Mozilla Firefox\firefox.exe ->) (Mozilla Corporation -> Mozilla Foundation) C:\Program Files\Mozilla Firefox\crashhelper.exe
(C:\Program Files\Mozilla Thunderbird\thunderbird.exe ->) (Mozilla Corporation -> Mozilla Foundation) C:\Program Files\Mozilla Thunderbird\crashhelper.exe
(C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(C:\Program Files\SOLIDWORKS Corp\SOLIDWORKS\SLDWORKS.exe ->) (Dassault Systemes SolidWorks Corp. -> Dassault Systèmes SolidWorks Corp.) C:\Program Files\SOLIDWORKS Corp\SOLIDWORKS\sldProcMon.exe
(C:\Program Files\TeamViewer\TeamViewer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\148.0.3967.96\msedgewebview2.exe <6>
(C:\Program Files\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> ) C:\Program Files\TeamViewer\crashpad_handler.exe <2>
(C:\Program Files\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer.exe
(C:\Program Files\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\tv_w32.exe
(C:\Program Files\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\tv_x64.exe
(C:\Program Files\totalcmd\TOTALCMD64.EXE ->) (Jan Fiala -> Jan Fiala) C:\Program Files\PSPad editor\PSPad.exe
(C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2616.100.0_x64__cv1g1gvanyjgm\WhatsApp.Root.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\148.0.3967.83\msedgewebview2.exe <26>
(C:\Program Files\WindowsApps\Claude_1.9659.2.0_x64__pzs8sxrjxfjjc\app\claude.exe ->) (Anthropic, PBC -> Anthropic PBC) C:\Users\admin\AppData\Local\Packages\Claude_pzs8sxrjxfjjc\LocalCache\Roaming\Claude\claude-code\2.1.156\claude.exe <2>
(C:\Program Files\WindowsApps\Claude_1.9659.2.0_x64__pzs8sxrjxfjjc\app\claude.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WindowsPowerShell\v1.0\powershell.exe
(C:\Program Files\WindowsApps\Microsoft.YourPhone_1.25072.79.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.25072.79.0_x64__8wekyb3d8bbwe\YourPhoneAppProxy.exe
(C:\Users\admin\AppData\Roaming\ArduinoCloudAgent\Arduino_Cloud_Agent.exe ->) () [File not signed] C:\Users\admin\.arduino-create\builtin\serial-discovery\1.4.3\serial-discovery.exe
(C:\Windows\SysWOW64\cmd.exe ->) (Python Software Foundation -> Python Software Foundation) C:\Users\admin\AppData\Local\Programs\Python\Python312\python.exe
(cmd.exe ->) (The PHP Group) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\php\php_runningversion\php.exe <6>
(explorer.exe ->) () [File not signed] C:\Users\admin\AppData\Roaming\ArduinoCloudAgent\Arduino_Cloud_Agent.exe
(explorer.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> WhatsApp.Root) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2616.100.0_x64__cv1g1gvanyjgm\WhatsApp.Root.exe
(explorer.exe ->) (Dassault Systemes SolidWorks Corp. -> Dassault Systèmes SolidWorks Corp.) C:\Program Files (x86)\Common Files\Manažer instalací SOLIDWORKS\BackgroundDownloading\sldBgDwld.exe
(explorer.exe ->) (Dassault Systemes SolidWorks Corp. -> Dassault Systèmes SolidWorks Corp.) C:\Program Files\SOLIDWORKS Corp\SOLIDWORKS\SLDWORKS.exe
(explorer.exe ->) (Dassault Systemes SolidWorks Corp. -> Dassault Systèmes SolidWorks Corp.) C:\Program Files\SOLIDWORKS Corp\SOLIDWORKS\sldworks_fs.exe
(explorer.exe ->) (EasyPHP) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\EasyPHP-DevServer-14.1VC11.exe
(explorer.exe ->) (Ghisler Software GmbH -> Ghisler Software GmbH) C:\Program Files\totalcmd\TOTALCMD64.EXE
(explorer.exe ->) (Google LLC -> Google LLC.) C:\Program Files\Google\Drive File Stream\125.0.0.0\GoogleDriveFS.exe
(explorer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(explorer.exe ->) (Open Source Developer, Stefan Kueng -> hxxps://tortoisesvn.net) C:\Program Files\TortoiseSVN\bin\TSVNCache.exe
(explorer.exe ->) (Petr Laštovička) [File not signed] C:\Program Files (x86)\hotkeyp\HotkeyP.exe
(explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(explorer.exe ->) (Star Micronics Co., Ltd.) [File not signed] C:\Program Files (x86)\StarMicronics\TSP100\Software\20221130\Ondemand.exe
(explorer.exe ->) (Zebra Technologies Corporation -> Zebra Technologies Corporation) [File not signed] C:\Program Files (x86)\Zebra Technologies\Status Monitor\Status Monitor\StatusMonitor.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotifyIcon.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Taskmgr.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\timeout.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <76>
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Thunderbird\thunderbird.exe <4>
(services.exe ->) () [File not signed] C:\Program Files (x86)\TRENDnet Wireless USB Adapter Driver\WPSService20.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Anthropic, PBC -> ) C:\Program Files\WindowsApps\Claude_1.9659.2.0_x64__pzs8sxrjxfjjc\app\resources\cowork-svc.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(services.exe ->) (Flexera Software LLC -> Flexera Software LLC) C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe
(services.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome Remote Desktop\148.0.7778.23\remoting_host.exe <2>
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Enabling Services\AppHelperCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Enabling Services\DiagsCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Enabling Services\NetworkCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Enabling Services\SysInfoCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_a55aa2cd52a3429d\LMS.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe
(services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Windows\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\TPMProvisioningService.exe
(services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Windows\SysWOW64\XtuService.exe
(services.exe ->) (MariaDB Corporation Ab -> ) C:\Program Files\MariaDB 11.3\bin\mysqld.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\NisSrv.exe
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvwu.inf_amd64_3f2a4c162f79e81f\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvwu.inf_amd64_3f2a4c162f79e81f\NVWMI\nvWmi64.exe <2>
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(sihost.exe ->) (Anthropic, PBC -> Anthropic) C:\Program Files\WindowsApps\Claude_1.9659.2.0_x64__pzs8sxrjxfjjc\app\claude.exe <9>
(sihost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_11.2508.4.0_x64__8wekyb3d8bbwe\CalculatorApp.exe <2>
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.ZuneMusic_11.2604.9.0_x64__8wekyb3d8bbwe\Microsoft.Media.Player.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\admin\AppData\Local\Microsoft\OneDrive\26.084.0504.0007\FileCoAuth.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe <8>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <4>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(The Document Foundation -> The Document Foundation) C:\Program Files\LibreOffice\program\soffice.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [18391120 2019-03-04] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [TSP100ecoOndemand] => C:\Program Files (x86)\StarMicronics\TSP100\Software\20221130\Ondemand.exe [476672 2017-12-22] (Star Micronics Co., Ltd.) [File not signed]
HKLM-x32\...\Run: [PWRISOVM.EXE] => C:\Program Files\PowerISO\PWRISOVM.EXE [463488 2025-04-30] (Power Software Limited -> Power Software Ltd)
HKLM\...\RunOnce: [msedge_cleanup_{F3017226-FE2A-4295-8BDF-00C3A9A7E4C5}] => C:\Program Files (x86)\Microsoft\EdgeWebView\Application\148.0.3967.96\Installer\setup.exe [5324144 2026-05-30] (Microsoft Corporation -> Microsoft Corporation)
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION
HKLM\SYSTEM\...\Terminal Server: [fDenyTSConnections] = 0 <==== ATTENTION
HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\126.0.5.0\GoogleDriveFS.exe [78282392 2026-05-28] (Google LLC -> Google LLC.)
HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\126.0.5.0\GoogleDriveFS.exe [78282392 2026-05-28] (Google LLC -> Google LLC.)
HKU\S-1-5-21-4195152011-4283894360-3570850043-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\126.0.5.0\GoogleDriveFS.exe [78282392 2026-05-28] (Google LLC -> Google LLC.)
HKU\S-1-5-21-4195152011-4283894360-3570850043-1001\...\Run: [EasyPHP] => C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\EasyPHP-DevServer-14.1VC11.exe [279552 2014-01-09] (EasyPHP) [File not signed]
HKU\S-1-5-21-4195152011-4283894360-3570850043-1001\...\Run: [HotkeyP] => C:\Program Files (x86)\hotkeyp\HotkeyP.exe [147456 2012-11-20] (Petr Laštovička) [File not signed]
HKU\S-1-5-21-4195152011-4283894360-3570850043-1001\...\Run: [Mozilla-Firefox-308046B0AF4A39CB] => "C:\Program Files\Mozilla Firefox\firefox.exe" -os-autostart [705152 2026-05-21] (Mozilla Corporation -> Mozilla Corporation)
HKU\S-1-5-21-4195152011-4283894360-3570850043-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [42087896 2026-05-13] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-4195152011-4283894360-3570850043-1001\...\RunOnce: [Delete Cached Update Binary] => C:\Windows\system32\cmd.exe /q /c del /q "C:\Users\admin\AppData\Local\Microsoft\OneDrive\Update\OneDriveSetup.exe" [117611880 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-4195152011-4283894360-3570850043-1001\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\Windows\system32\cmd.exe /q /c del /q "C:\Users\admin\AppData\Local\Microsoft\OneDrive\StandaloneUpdater\OneDriveSetup.exe" (No File)
HKU\S-1-5-21-4195152011-4283894360-3570850043-1001\...\RunOnce: [Uninstall 26.078.0426.0002] => C:\Windows\system32\cmd.exe /q /c rmdir /s /q "C:\Users\admin\AppData\Local\Microsoft\OneDrive\26.078.0426.0002" [0 2026-05-27]
HKU\S-1-5-21-4195152011-4283894360-3570850043-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\scrnsave.scr [39936 2024-05-22] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-80-3070791953-3247979545-275873789-2352004973-969172767\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\126.0.5.0\GoogleDriveFS.exe [78282392 2026-05-28] (Google LLC -> Google LLC.)
HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\126.0.5.0\GoogleDriveFS.exe [78282392 2026-05-28] (Google LLC -> Google LLC.)
HKLM\...\Print\Monitors\Star Language Monitor Host: C:\Windows\system32\SMJLMHOST.DLL [31048 2021-09-03] (Microsoft Windows Hardware Compatibility Publisher -> Star Micronics Co., Ltd.)
HKLM\...\Print\Monitors\TSP100LAN Port: C:\Windows\system32\smjt100epm.dll [360960 2021-10-06] (Star Micronics Co., Ltd.) [File not signed]
HKLM\...\Print\Monitors\ZDesigner Language Monitor: C:\Windows\system32\zdnNLM64.dll [892056 2023-08-28] (Euro Plus d.o.o. -> Euro Plus d.o.o.)
HKLM\...\Print\Monitors\ZDesigner Port Monitor: C:\Windows\system32\zdnPMS.dll [290968 2021-02-02] (Microsoft Windows Hardware Compatibility Publisher -> Euro Plus d.o.o.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [3995288 2026-05-21] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\148.0.7778.179\Installer\chrmstp.exe [7621272 2026-05-22] (Google LLC -> Google LLC)
Startup: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Arduino Cloud Agent.lnk [2024-12-14]
ShortcutTarget: Arduino Cloud Agent.lnk -> C:\Users\admin\AppData\Roaming\ArduinoCloudAgent\Arduino_Cloud_Agent.exe () [File not signed]
Startup: C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\LibreOffice 7.5.lnk [2024-07-08]
ShortcutTarget: LibreOffice 7.5.lnk -> C:\Program Files\LibreOffice\program\quickstart.exe (The Document Foundation -> The Document Foundation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SOLIDWORKS 2016 Rychlé spuštění.lnk [2023-10-29]
ShortcutTarget: SOLIDWORKS 2016 Rychlé spuštění.lnk -> C:\Windows\Installer\{768F3B65-1695-47B7-9002-B11400CB111D}\NewShortcut2_87EDF6C81D0A4B7B84F42FE0C6A9D608.exe (Flexera Software LLC) [File not signed]
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\SOLIDWORKS Nástroj pro stahování na pozadí.lnk [2023-10-29]
ShortcutTarget: SOLIDWORKS Nástroj pro stahování na pozadí.lnk -> C:\Program Files (x86)\Common Files\Manažer instalací SOLIDWORKS\BackgroundDownloading\sldBgDwld.exe (Dassault Systemes SolidWorks Corp. -> Dassault Systèmes SolidWorks Corp.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Zebra Status Monitor.lnk [2024-03-01]
ShortcutTarget: Zebra Status Monitor.lnk -> C:\Program Files (x86)\Zebra Technologies\Status Monitor\Status Monitor\StatusMonitor.exe (Zebra Technologies Corporation -> Zebra Technologies Corporation) [File not signed]
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {5D14D1C4-B128-45CD-A4AA-F55089B6C810} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1612800 2026-01-23] (Adobe Inc. -> Adobe Inc.)
Task: {2F040900-C75F-44EB-A3A9-68A581A8139C} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe (No File)
Task: {325799CC-9E03-484E-BF8D-D4A3D534CED2} - System32\Tasks\FIRMA EnviCon WIN CRON 231122 => C:\Users\admin\Documents\www\www.admin.loc\system\BAT\environment_control.bat [252 2023-12-21] () [File not signed]
Task: {A816C1B9-AFD2-418C-9CF4-D55E2508ADB1} - System32\Tasks\FIRMA IMAP syncro 231018 => C:\Users\admin\Documents\www\www.admin.loc\system\Python\imap_syncro.bat [120 2026-03-13] () [File not signed]
Task: {9D47B887-D9C3-40A0-A6D2-7ABFDEA1DB0E} - System32\Tasks\FIRMA machines_log => C:\Users\admin\Documents\www\www.admin.loc\system\BAT\machines_log_loop.bat [1099 2025-11-25] () [File not signed]
Task: {807ECA39-F18D-412D-A42C-984C2594A765} - System32\Tasks\FIRMA machines_log_babyplast => C:\Users\admin\Documents\www\www.admin.loc\system\BAT\machine_log_babyplast.bat [254 2025-04-18] () [File not signed]
Task: {F1219E15-2BD8-451F-A89E-6C690EEAB6BD} - System32\Tasks\FIRMA ModBus update_register_values => C:\Users\admin\Documents\www\www.admin.loc\system\BAT\update_modbus_register_values.bat [403 2025-10-28] () [File not signed]
Task: {2B61D230-7393-4B16-8082-D54EA0E74425} - System32\Tasks\FIRMA MySQL repair tables => C:\Users\admin\Documents\www\www.admin.loc\system\BAT\mysqlcheck_repair_database.bat [703 2023-10-10] () [File not signed]
Task: {57BE48EC-80C8-46FD-949A-A6630EC03B01} - System32\Tasks\FIRMA netatmo WIN CRON 231122 => C:\Users\admin\Documents\www\www.admin.loc\system\BAT\neatmo_datalogger_loop.bat [258 2025-01-05] () [File not signed]
Task: {C6A93376-162F-455D-8FE9-A23D15470163} - System32\Tasks\FIRMA shelly datalogger WIN CRON 250307 => C:\Users\admin\Documents\www\www.admin.loc\system\BAT\shelly_datalogger_loop .bat [253 2025-02-06] () [File not signed]
Task: {379A822F-7F92-4F00-AD58-C358692D6FA3} - System32\Tasks\FIRMA spot_data => C:\Users\admin\Documents\www\www.admin.loc\system\BAT\spot_datalogger.bat [246 2025-02-24] () [File not signed]
Task: {09A4D201-68D7-4D48-92E7-584D051C1066} - System32\Tasks\FIRMA update => C:\Users\admin\Documents\www\www.admin.loc\system\BAT\update_company_loop.bat [393 2023-07-26] () [File not signed]
Task: {BCDA2884-4FCF-4602-8A10-D8EDECB7EF0D} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem149.0.7814.0{32C9A04B-4E22-46C1-A482-DCAAE923982D} => C:\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\updater.exe [8770200 2026-04-28] (Google LLC -> Google LLC)
Task: {63F8C573-B758-4621-A1CE-737C519AC508} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Update Notice => C:\Program Files (x86)\HP\HP Support Framework\Resources\BingPopup\BingPopup.exe [1015880 2025-12-15] (HP Inc. -> HP Inc.) -> C:\Program Files (x86)\HP\HP Support Framework\\/show
Task: {2C06E407-82AE-49BB-8802-DCBA29FAEEB0} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [480264 2025-12-15] (HP Inc. -> HP Inc.)
Task: {EFFF80A3-16B0-4759-A841-7D89ECD47A52} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HPPrinterLowInk => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPPrinterLowInk\HPPrinterLowInk.exe [231944 2025-12-15] (HP Inc. -> HP Inc.) -> C:\Program Files (x86)\HP\HP Support Framework\\/show
Task: {80E18DBA-43D7-4154-93A7-C0BBD6808EA3} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe [95240 2026-04-08] (HP Inc. -> HP Inc.)
Task: {8C27B44F-2F1E-4798-8B98-FF5A8217CCB1} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor Logon => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe [95240 2026-04-08] (HP Inc. -> HP Inc.)
Task: {E57F4FC9-B3C3-4C3B-ACE6-746381E6C8B5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\MpCmdRun.exe [1794752 2026-05-21] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {3B6EB3AC-7AEC-4817-8BA8-6042F8CE87C8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\MpCmdRun.exe [1794752 2026-05-21] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {49055789-A444-4910-8742-8983633AB4BB} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\MpCmdRun.exe [1794752 2026-05-21] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {039AEE08-7B10-432D-8CDA-2D51E131B070} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\MpCmdRun.exe [1794752 2026-05-21] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {DBCE80E3-4681-4216-9E18-9FD4429CE123} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-4195152011-4283894360-3570850043-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [705152 2026-05-21] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {C86D8830-BD6E-4B3B-AF90-1A75C4CBE83B} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [33920 2026-05-21] (Mozilla Corporation -> Mozilla Foundation)
Task: {D5D95642-ED86-4F5B-A37D-6C737AAD7121} - System32\Tasks\nWizard_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\nview\nwiz.exe [1554120 2023-10-29] (Nvidia Corporation -> NVIDIA Corporation) -> C:\Program Files\NVIDIA Corporation\nview\/installquiet
Task: {98BC8EB2-29D3-47B9-95C7-3E0A315224B8} - System32\Tasks\python beep => G:\Můj disk\#dev\Python\Zvuk\#RUN# demo.bat [34 2024-02-24] () [File not signed]
Task: {0D1EA15C-623A-4DAB-B05F-78E0B169BB76} - System32\Tasks\ZoomUpdateTaskUser-S-1-5-21-4195152011-4283894360-3570850043-1001 => C:\Users\admin\AppData\Roaming\Zoom\bin\Zoom.exe [434488 2025-03-07] (Zoom Video Communications, Inc. -> Zoom Communications, Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [121704 2011-08-30] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [132968 2011-08-30] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.11.1
Tcpip\..\Interfaces\{e8b2eadf-34b4-491c-8507-1c3a230950d9}: [DhcpNameServer] 192.168.11.1
Tcpip\..\Interfaces\{e8b2eadf-34b4-491c-8507-1c3a230950d9}: [DhcpDomain] suchomelplasty.loc

FireFox:
========
FF TaskBarID: 308046B0AF4A39CB -> C:\Program Files\Mozilla Firefox
FF Plugin: 3ds.com/ComposerPlayerWebPlugin_x86_64 -> C:\PROGRA~1\SOLIDW~1\SOLIDW~3\Bin\NPCOMP~1.DLL [2016-10-13] (DASSAULT SYSTEMES SA -> Dassault Systemes)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2026-05-13] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: 3ds.com/ComposerPlayerWebPlugin -> C:\PROGRA~1\SOLIDW~1\SOLIDW~3\Bin\x86\NPCOMP~1.DLL [2016-10-13] (DASSAULT SYSTEMES SA -> Dassault Systemes)

Edge:
=======
Edge Profile: C:\Users\admin\AppData\Local\Microsoft\Edge\User Data\Default [2026-05-25]
Edge Session Restore: Default -> is enabled.
Edge Extension: (Dokumenty Google offline) - C:\Users\admin\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-05-19]
Edge Extension: (Edge relevant text changes) - C:\Users\admin\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]

Chrome:
=======
CHR Profile: C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default [2026-05-11]
CHR Notifications: Default -> hxxps://calendar.google.com; hxxps://home.netatmo.com
CHR StartupUrls: Default -> "hxxps://tvgo.t-mobile.cz/"
CHR Session Restore: Default -> is enabled.
CHR Extension: (Tablet Gestures) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\adpfjochlgeifbpfnlchcdcmoaafnoim [2023-10-28]
CHR Extension: (Adblock na Youtube™) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmedhionkhpnakcndndgjdbohmhepckk [2026-05-10]
CHR Extension: (Type-ahead-find) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\cpecbmjeidppdiampimghndkikcmoadk [2025-04-14]
CHR Extension: (Sider: Chat with all AI: GPT-5, Claude, DeepSeek, Gemini, Grok) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\difoiogjjojoaoomphldepapgpbgkhkb [2026-05-10]
CHR Extension: (Typio Form Recovery) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\djkbihbnjhkjahbhjaadbepppbpoedaa [2023-10-28]
CHR Extension: (Go Back With Backspace) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\eekailopagacbcdloonjhbiecobagjci [2024-10-31]
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2026-05-10]
CHR Extension: (I don't care about cookies) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\fihnjjcciajhdojfnbdddfaoknhalnja [2024-07-11]
CHR Extension: (Dokumenty Google offline) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-05-10]
CHR Extension: (RestMan) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihgpcfpkpmdcghlnaofdmjkoemnlijdi [2025-03-09]
CHR Extension: (Chrome Remote Desktop) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\inomeogfingihgjfjlpeplalcfajhgai [2023-10-28]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-10-28]
CHR Extension: (x3d-viewer) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\nneaojlgmfmngeckfemdbfpgedgfpgdg [2024-03-23]
CHR Extension: (Open Email Client) - C:\Users\admin\AppData\Local\Google\Chrome\User Data\Default\Extensions\oofmnabdpcibefadlibdpnnbglcehfpj [2024-07-31]
CHR HKU\S-1-5-21-4195152011-4283894360-3570850043-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKU\S-1-5-21-4195152011-4283894360-3570850043-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [180216 2026-01-23] (Adobe Inc. -> Adobe Inc.)
R2 chromoting; C:\Program Files (x86)\Google\Chrome Remote Desktop\148.0.7778.23\remoting_host.exe [74392 2026-04-13] (Google LLC -> Google LLC)
R2 CoworkVMService; C:\Program Files\WindowsApps\Claude_1.9659.2.0_x64__pzs8sxrjxfjjc\app\resources\cowork-svc.exe [12649808 2026-05-29] (Anthropic, PBC -> )
R2 HPAppHelperCap; C:\Program Files\HP\HP Enabling Services\AppHelperCap.exe [930400 2025-09-02] (HP Inc. -> HP Inc.)
R2 HPDiagsCap; C:\Program Files\HP\HP Enabling Services\DiagsCap.exe [928864 2025-09-02] (HP Inc. -> HP Inc.)
R2 HPNetworkCap; C:\Program Files\HP\HP Enabling Services\NetworkCap.exe [924784 2025-09-02] (HP Inc. -> HP Inc.)
R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [244232 2026-04-08] (HP Inc. -> HP Inc.)
R2 HPSysInfoCap; C:\Program Files\HP\HP Enabling Services\SysInfoCap.exe [929400 2025-09-02] (HP Inc. -> HP Inc.)
R2 MariaDB; C:\Program Files\MariaDB 11.3\bin\mysqld.exe [34728 2023-09-17] (MariaDB Corporation Ab -> )
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\MpDefenderCoreService.exe [2096384 2026-05-21] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVWMI; C:\Windows\System32\DriverStore\FileRepository\nvwu.inf_amd64_3f2a4c162f79e81f\NVWMI\nvWmi64.exe [4476632 2023-10-29] (Nvidia Corporation -> NVIDIA Corporation)
S3 PortEmulator; C:\Program Files\StarMicronics\TSP100\Software\20221130\portemu_umdf_tsp100.exe [207872 2016-02-26] () [File not signed]
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [803064 2025-11-21] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 SolidWorks Licensing Service; C:\Program Files (x86)\Common Files\SolidWorks Shared\Service\SolidWorksLicensing.exe [79360 2023-10-29] (SolidWorks) [File not signed]
S3 TcpEmulatorTSP100LAN; C:\Program Files\StarMicronics\TSP100\Software\20221130\tcpemu_tsp100lan.exe [351744 2015-05-22] (STAR MICRONICS CO,.LTD) [File not signed]
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [26931024 2026-05-20] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\NisSrv.exe [4484680 2026-05-21] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\MsMpEng.exe [290704 2026-05-21] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WPSService20; C:\Program Files (x86)\TRENDnet Wireless USB Adapter Driver\WPSService20.exe [96768 2017-01-06] () [File not signed]
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nvwu.inf_amd64_3f2a4c162f79e81f\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\Windows\System32\DriverStore\FileRepository\nvwu.inf_amd64_3f2a4c162f79e81f\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 FTDIBUS; C:\Windows\system32\drivers\ftdibus.sys [152608 2024-11-19] (WDKTestCert andy.miller,132291778652267126 -> Future Technology Devices International Ltd.)
R3 FTSER2K; C:\Windows\system32\drivers\ftser2k.sys [101520 2024-11-19] (WDKTestCert andy.miller,132291778652267126 -> Future Technology Devices International Ltd.)
R2 googledrivefs31931; C:\Program Files\Google\Drive File Stream\Drivers\31931\googledrivefs31931.sys [386256 2025-05-07] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.)
R3 KslD; C:\Windows\System32\drivers\wd\KslD.sys [82312 2026-05-21] (Microsoft Windows -> Microsoft Corporation)
R3 plser; C:\Windows\system32\DRIVERS\plser64.sys [336736 2026-01-28] (Microsoft Windows Hardware Compatibility Publisher -> Prolific Technology Inc.)
S3 ss_conn_usb_driver2; C:\Windows\System32\Drivers\ss_conn_usb_driver2.sys [50720 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [21888 2026-05-21] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [606600 2026-05-21] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [100784 2026-05-21] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-06-01 18:20 - 2026-06-01 18:23 - 000035753 _____ C:\Users\admin\Desktop\FRST.txt
2026-06-01 18:07 - 2026-06-01 18:07 - 002782208 _____ (Farbar) C:\Users\admin\Desktop\FRST64.exe
2026-06-01 18:04 - 2026-06-01 18:04 - 000025513 _____ C:\Users\admin\.claude.json
2026-05-27 17:23 - 2026-05-28 13:51 - 000000000 ____D C:\Program Files\Mozilla Thunderbird
2026-05-22 03:58 - 2026-05-22 03:58 - 000000000 ____D C:\Users\admin\AppData\Roaming\Python
2026-05-21 21:58 - 2026-05-21 21:58 - 000000000 ____D C:\Users\admin\AppData\Roaming\CadSoft
2026-05-21 21:58 - 2026-05-21 21:58 - 000000000 ____D C:\Users\admin\AppData\Local\ADPWebView
2026-05-21 21:11 - 2026-05-21 21:11 - 000000000 ____D C:\Users\admin\AppData\Local\Fusion360
2026-05-21 21:10 - 2026-05-21 21:10 - 000002674 _____ C:\Users\admin\Desktop\Autodesk Fusion.lnk
2026-05-21 21:10 - 2026-05-21 21:10 - 000000000 ____D C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Autodesk
2026-05-21 21:10 - 2026-05-21 21:10 - 000000000 ____D C:\Users\admin\AppData\Roaming\Fusion360
2026-05-21 21:03 - 2026-05-26 21:03 - 000000000 ____D C:\Program Files\Mozilla Firefox
2026-05-21 21:03 - 2026-05-21 21:03 - 013171144 _____ (Autodesk, Inc) C:\Users\admin\Downloads\Fusion Client Downloader.exe
2026-05-20 18:00 - 2026-05-20 18:00 - 000002933 _____ C:\Users\admin\Downloads\order_34730426.csv
2026-05-17 09:16 - 2026-05-17 09:16 - 000000000 ____D C:\Users\admin\.config
2026-05-11 14:11 - 2026-05-11 14:11 - 000000062 _____ C:\Users\admin\.gitconfig
2026-05-11 14:01 - 2026-05-21 05:13 - 000023291 _____ C:\Users\admin\.claude.json.backup
2026-05-11 13:57 - 2026-06-01 14:35 - 000000000 ____D C:\Users\admin\.claude
2026-05-11 13:54 - 2026-05-11 13:54 - 000000000 ____D C:\ProgramData\Claude

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-06-01 18:22 - 2024-01-26 20:41 - 000000000 ____D C:\FRST
2026-06-01 18:08 - 2023-10-28 21:32 - 000000000 ____D C:\Users\admin\AppData\Local\GHISLER
2026-06-01 18:04 - 2023-10-28 21:08 - 000000000 ____D C:\Users\admin
2026-06-01 17:39 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-06-01 17:35 - 2023-10-28 21:09 - 000000000 ___SD C:\Users\admin\AppData\Roaming\Microsoft\Credentials
2026-06-01 17:00 - 2023-10-28 20:58 - 000000000 ____D C:\Windows\system32\SleepStudy
2026-06-01 13:32 - 2022-09-08 05:11 - 000000000 ____D C:\Windows\SystemTemp
2026-06-01 11:54 - 2026-01-06 16:00 - 000000000 ____D C:\Program Files\TeamViewer
2026-06-01 11:54 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2026-06-01 11:53 - 2023-10-28 21:33 - 000000000 ____D C:\Users\admin\AppData\Local\D3DSCache
2026-06-01 11:51 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2026-06-01 11:51 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2026-05-31 15:18 - 2023-10-29 21:01 - 000000000 ____D C:\ProgramData\NVIDIA
2026-05-30 17:11 - 2023-10-28 20:59 - 000003638 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2026-05-30 17:11 - 2023-10-28 20:59 - 000003512 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2026-05-30 11:12 - 2023-10-28 12:58 - 000001231 _____ C:\Users\admin\Desktop\!zaslat.cz.csv
2026-05-30 07:13 - 2023-10-28 20:59 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-05-29 14:37 - 2023-10-28 22:43 - 000002336 ____H C:\Users\admin\Documents\Default.rdp
2026-05-29 14:37 - 2019-12-07 16:45 - 000000000 ____D C:\Windows\system32\FxsTmp
2026-05-29 13:54 - 2023-10-29 16:04 - 000000000 ____D C:\Users\admin\AppData\Local\TempAdresářZálohySW
2026-05-28 23:20 - 2023-10-28 21:14 - 000002173 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk
2026-05-28 13:52 - 2023-10-29 15:25 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2026-05-28 13:51 - 2023-10-29 15:25 - 000001055 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Thunderbird.lnk
2026-05-28 06:46 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ServiceState
2026-05-27 13:41 - 2025-01-28 05:11 - 000003576 _____ C:\Windows\system32\Tasks\OneDrive Startup Task-S-1-5-21-4195152011-4283894360-3570850043-1001
2026-05-27 13:41 - 2023-10-28 21:11 - 000003592 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-4195152011-4283894360-3570850043-1001
2026-05-27 13:41 - 2023-10-28 21:10 - 000003380 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-4195152011-4283894360-3570850043-1001
2026-05-27 13:41 - 2023-10-28 21:08 - 000002383 _____ C:\Users\admin\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2026-05-26 16:53 - 2024-03-14 10:07 - 000000000 ____D C:\Users\admin\Desktop\temp
2026-05-25 13:46 - 2023-10-29 17:11 - 000002146 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2026-05-25 13:34 - 2023-10-28 21:08 - 001694140 _____ C:\Windows\system32\PerfStringBackup.INI
2026-05-25 13:34 - 2019-12-07 16:43 - 000717008 _____ C:\Windows\system32\perfh005.dat
2026-05-25 13:34 - 2019-12-07 16:43 - 000145186 _____ C:\Windows\system32\perfc005.dat
2026-05-25 13:30 - 2023-10-29 15:25 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2026-05-25 13:27 - 2023-10-28 20:59 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2026-05-25 13:27 - 2023-10-28 20:58 - 000008192 ___SH C:\DumpStack.log.tmp
2026-05-22 13:59 - 2024-03-22 21:55 - 000001073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2026-05-22 13:59 - 2024-03-22 21:55 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla
2026-05-22 10:30 - 2023-10-29 15:29 - 000000000 ____D C:\Users\admin\Documents\1.SUCO
2026-05-22 04:21 - 2025-03-12 12:18 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2026-05-22 04:21 - 2025-03-12 12:18 - 000002206 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2026-05-21 21:58 - 2023-10-30 20:41 - 000000000 ____D C:\Users\admin\AppData\Roaming\Autodesk
2026-05-21 21:10 - 2023-10-30 20:41 - 000000000 ____D C:\Users\admin\AppData\Local\Autodesk
2026-05-21 21:10 - 2023-10-30 20:33 - 000000000 ____D C:\ProgramData\Autodesk
2026-05-21 20:50 - 2023-10-28 20:59 - 000000000 ____D C:\Windows\system32\Drivers\wd
2026-05-17 16:07 - 2023-10-29 00:23 - 000000000 ____D C:\Windows\system32\MRT
2026-05-17 15:56 - 2023-10-29 00:23 - 220340424 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2026-05-11 13:57 - 2023-10-28 21:57 - 000000000 ____D C:\Users\admin\Documents\www
2026-05-11 13:54 - 2023-10-28 21:09 - 000000000 ____D C:\Users\admin\AppData\Local\Packages
2026-05-11 13:54 - 2023-10-28 21:09 - 000000000 ____D C:\ProgramData\Packages
2026-05-03 11:46 - 2023-10-29 15:30 - 000000000 ____D C:\Users\admin\Documents\2.Suchomel PLASTY

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

AndySue
Návštěvník
Návštěvník
Příspěvky: 93
Registrován: 26 pro 2009 12:10

Re: prevence

#2 Příspěvek od AndySue »

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 31-05-2026 01
Ran by admin (01-06-2026 18:24:47)
Running from C:\Users\admin\Desktop
Microsoft Windows 10 Pro Version 22H2 19045.6466 (X64) (2023-10-28 19:00:44)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

admin (S-1-5-21-4195152011-4283894360-3570850043-1001 - Administrators - Enabled) => C:\Users\admin
Administrator (S-1-5-21-4195152011-4283894360-3570850043-500 - Administrators - Disabled)
DefaultAccount (S-1-5-21-4195152011-4283894360-3570850043-503 - Limited - Disabled)
Guest (S-1-5-21-4195152011-4283894360-3570850043-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-4195152011-4283894360-3570850043-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1033-1033-7760-BC15014EA700}) (Version: 26.001.21563 - Adobe)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601149}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Anaconda3 2024.02-1 (Python 3.11.7 64-bit) (HKU\S-1-5-21-4195152011-4283894360-3570850043-1001\...\Anaconda3 2024.02-1 (Python 3.11.7 64-bit)) (Version: 2024.02-1 - Anaconda, Inc.)
Arduino Cloud Agent (HKLM-x32\...\Arduino Cloud Agent 1.6.1) (Version: 1.6.1 - Arduino LLC)
ARsoftCFG (HKLM-x32\...\ARsoftCFG_is1) (Version: - Apar)
Asian Language And Spelling Dictionaries Support For Adobe Acrobat Reader (HKLM\...\{AC76BA86-7AD7-0000-0000-BC17084FC500}) (Version: 23.008.20421 - Adobe Systems Incorporated)
Autodesk Fusion (HKU\S-1-5-21-4195152011-4283894360-3570850043-1001\...\73e72ada57b7480280f7a6f4a289729f) (Version: 2702.1.58 - Autodesk, Inc.)
Bonjour (HKLM\...\{6E3610B2-430D-4EB0-81E3-2B57E8B9DE8D}) (Version: 3.0.0.10 - Apple Inc.)
Cambridge One Desktop App 2.38.0 (HKU\S-1-5-21-4195152011-4283894360-3570850043-1001\...\218a02d0-3630-5821-b978-4f4f20a932f0) (Version: 2.38.0 - Cambridge University Press & Assessment)
CCleaner Update Helper (HKLM-x32\...\{E4EAC0E2-A80B-479F-BA45-DCDA595C9A93}) (Version: 1.8.1691.6 - Piriform Software) Hidden
Cognex In-Sight Software 6.5.0 (HKLM-x32\...\{82D1D72F-40B6-428B-92E7-000600050000}) (Version: 6.5.0.42 - Cognex Corporation)
CrystalDiskInfo 9.2.2 (HKLM\...\CrystalDiskInfo_is1) (Version: 9.2.2 - Crystal Dew World)
Dynamic Application Loader Host Interface Service (HKLM\...\{E3AB2E94-D548-48A7-9F0E-A44D82ED1D7A}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Free Video Compressor (HKLM-x32\...\{01554C33-4131-4BC7-9E6D-AF85E02BDF4F}_is1) (Version: - freevideocompressor.com)
FreeCAD 0.21.2 (HKLM\...\FreeCAD0212) (Version: 0.21.2 - FreeCAD Team)
FreeCAD 1.0.2 (HKLM\...\FreeCAD102) (Version: 1.0.2 - FreeCAD Team)
Git (HKLM\...\Git_is1) (Version: 2.50.1 - The Git Development Community)
Google Drive (HKLM\...\{6BBAE539-2232-434A-A4E5-9A33560C6283}) (Version: 126.0.5.0 - Google LLC)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 148.0.7778.179 - Google LLC)
GPL Ghostscript (HKLM\...\GPL Ghostscript 10.03.1) (Version: 10.03.1 - Artifex Software Inc.)
HSMWorks x64 2016 R2.40513 (HKLM\...\{07404224-03A7-4ffc-9AFB-EC32BD898C55}_is1) (Version: 2016 R2.40513 - Autodesk, Inc.)
Chrome Remote Desktop Host (HKLM-x32\...\{8D8D41FD-63A8-437B-95D3-1F13FDE1898E}) (Version: 148.0.7778.23 - Google LLC)
Inkscape (HKLM\...\{2AB0D298-5B41-4C70-BB32-46F153F7A1BF}) (Version: 1.3.2 - Inkscape)
Intel(R) Icls (HKLM\...\{57640D80-A187-4A4F-BB91-7F2EF7AB5FE9}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) LMS (HKLM\...\{62609178-ECD7-473C-9D1F-9E0CF6927E45}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 2242.3.34.0 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{939DFEE4-2675-4B42-904B-B213B857E347}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{E4697D8A-D9C0-4BCE-AC7F-5A56DD250529}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Driver (HKLM\...\{EC8B054F-9D60-4AFC-9920-25ABFF987B29}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) ME WMI Provider (HKLM\...\{3C66C597-3BAA-403D-9BCD-561ED78B0F1B}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) SOL LMS Extension (HKLM\...\{D36619E0-ADBA-41C6-A5AC-222FCFBF762B}) (Version: 1.0.0.0 - Intel Corporation) Hidden
IrfanView 64 (remove only) (HKLM\...\IrfanView64) (Version: 4.42 - Irfan Skiljan)
IVC Studio 3.3_SR3 (HKLM-x32\...\{ecc1cc9a-79a4-4df8-910d-ae9f1bea86fa}) (Version: 3.3.6.12 - SICK)
IV-Navigator (HKLM-x32\...\{03DCFA6F-A000-4FD8-9A56-A73475D6AD21}) (Version: 5.50.20.0 - KEYENCE CORPORATION)
Kits Configuration Installer (HKLM-x32\...\{78011ACC-E1CB-4B42-EDC3-91EAED6F933B}) (Version: 10.1.22621.2428 - Microsoft) Hidden
LibreOffice 7.5.7.1 (HKLM\...\{E2C32F4F-C16F-4266-A996-F27C7C38B36E}) (Version: 7.5.7.1 - The Document Foundation)
LinuxLive USB Creator (HKLM-x32\...\LinuxLive USB Creator) (Version: 2.9 - Thibaut Lauziere)
MariaDB 11.3 (x64) (HKLM\...\{5FF32D41-2607-426F-BD7B-A361B93740CD}) (Version: 11.3.0.0 - MariaDB Corporation Ab) Hidden
MariaDB 11.3 (x64) (HKLM\...\MariaDB 11.3 (x64)) (Version: 11.3.0.0 - MariaDB Corporation Ab)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 148.0.3967.96 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 148.0.3967.96 - Microsoft Corporation) Hidden
Microsoft Office 2003 Web Components (HKLM-x32\...\{90120000-00A4-0409-0000-0000000FF1CE}) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-4195152011-4283894360-3570850043-1001\...\OneDriveSetup.exe) (Version: 26.084.0504.0007 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual Basic for Applications 7.1 (x64) (HKLM\...\{90120064-0070-0000-0000-4000000FF1CE}) (Version: 7.1.00.00 - Microsoft Corporation) Hidden
Microsoft Visual Basic for Applications 7.1 (x64) English (HKLM\...\{90F60409-7000-11D3-8CFE-0150048383C9}) (Version: 7.1.0.0 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{6ce5bae9-d3ca-4b99-891a-1dc6c118a5fc}) (Version: 8.0.59192 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24212 (HKLM-x32\...\{462f63a8-6347-4894-a1b3-dbfe3a4c981d}) (Version: 14.0.24212.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24212 (HKLM-x32\...\{844ECB74-9B63-3D5C-958C-30BD23F19EE4}) (Version: 14.0.24212 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24212 (HKLM-x32\...\{37B55901-995A-3650-80B1-BBFD047E2911}) (Version: 14.0.24212 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.36.32532 (HKLM-x32\...\{8bdfe669-9705-4184-9368-db9ce581e0e7}) (Version: 14.36.32532.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.36.32532 (HKLM\...\{0025DD72-A959-45B5-A0A3-7EFEB15A8050}) (Version: 14.36.32532 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.36.32532 (HKLM\...\{D5D19E2F-7189-42FE-8103-92CD1FA457C2}) (Version: 14.36.32532 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2005 Remote Debugger Light (x64) - ENU (HKLM\...\Microsoft Visual Studio 2005 Remote Debugger Light (x64) - ENU) (Version: - Microsoft Corporation)
Microsoft Visual Studio Code (User) (HKU\S-1-5-21-4195152011-4283894360-3570850043-1001\...\{771FD6B0-FA20-440A-A002-3B3BAC16DC50}_is1) (Version: 1.84.2 - Microsoft Corporation)
ModbusTool (HKLM-x32\...\{383556CA-16FD-4BBB-89C9-5E185B750ACF}) (Version: 2.0.0 - SkyeTracker)
MozBackup 1.5.1 (HKLM-x32\...\MozBackup) (Version: - Pavel Cvrcek)
Mozilla Firefox (x64 cs) (HKLM\...\Mozilla Firefox) (Version: 151.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 124.0.1 - Mozilla)
Mozilla Thunderbird ESR (x64 cs) (HKLM\...\Mozilla Thunderbird 140.11.1 ESR (x64 cs)) (Version: 140.11.1 - Mozilla)
NVIDIA Ovladač HD audia 1.3.39.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.39.3 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 512.78 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 512.78 - NVIDIA Corporation)
NVIDIA RTX Desktop Manager 202.85 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NView) (Version: 202.85 - NVIDIA Corporation)
PowerISO (HKLM-x32\...\PowerISO) (Version: 9.1 - Power Software Ltd)
Psaní všemi deseti 1.5 (HKLM-x32\...\Psaní všemi deseti_is1) (Version: - Richard Šusta, David Vejchoda)
PSPad editor (HKLM\...\PSPad editor 64bit_is1) (Version: 5.0.7.775 - Jan Fiala)
PuTTY release 0.79 (64-bit) (HKLM\...\{E07417FF-E888-4648-878C-73E25D64D50D}) (Version: 0.79.0.0 - Simon Tatham)
Python 3.12.0 (64-bit) (HKU\S-1-5-21-4195152011-4283894360-3570850043-1001\...\{cf9c4d97-48a7-4a27-b9fc-91b88a803c40}) (Version: 3.12.150.0 - Python Software Foundation)
Python 3.12.0 Add to Path (64-bit) (HKLM\...\{380DEEDA-4227-4F0E-9F7C-34C75649DE59}) (Version: 3.12.150.0 - Python Software Foundation) Hidden
Python 3.12.0 Core Interpreter (64-bit) (HKLM\...\{6B58F6F9-656A-4CC4-8BAB-22177BFFA45F}) (Version: 3.12.150.0 - Python Software Foundation) Hidden
Python 3.12.0 Development Libraries (64-bit) (HKLM\...\{225BAA2C-BDCA-4D63-9D72-D92CE5E2421D}) (Version: 3.12.150.0 - Python Software Foundation) Hidden
Python 3.12.0 Documentation (64-bit) (HKLM\...\{5DF0B8D8-4E7F-43EB-AD16-30FFA931A905}) (Version: 3.12.150.0 - Python Software Foundation) Hidden
Python 3.12.0 Executables (64-bit) (HKLM\...\{575EC8EB-A481-4CF1-BAB0-3C1DBD2E50A7}) (Version: 3.12.150.0 - Python Software Foundation) Hidden
Python 3.12.0 pip Bootstrap (64-bit) (HKLM\...\{24B8988D-E785-4124-BF77-1DC6A3E62050}) (Version: 3.12.150.0 - Python Software Foundation) Hidden
Python 3.12.0 Standard Library (64-bit) (HKLM\...\{14BBD330-AA3F-4F7A-8A39-DFB28AECFA82}) (Version: 3.12.150.0 - Python Software Foundation) Hidden
Python 3.12.0 Tcl/Tk Support (64-bit) (HKLM\...\{6EAF677E-4EE8-4A22-9781-9131C5298D26}) (Version: 3.12.150.0 - Python Software Foundation) Hidden
Python 3.12.0 Test Suite (64-bit) (HKLM\...\{0A9B38A7-D393-44A5-A94E-9FEC927DC39C}) (Version: 3.12.150.0 - Python Software Foundation) Hidden
Python Launcher (HKLM-x32\...\{3182A195-B671-44A8-B0C7-7876B916BA5A}) (Version: 3.12.150.0 - Python Software Foundation)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8644 - Realtek Semiconductor Corp.)
RealVNC Viewer 7.12.1 (HKLM\...\{AA54831D-7B76-48DF-8DC2-94BCD2879896}) (Version: 7.12.1.21 - RealVNC)
SDK Debuggers (HKLM-x32\...\{7BCA6411-E2E7-D7F5-10D4-382BA91890B1}) (Version: 10.1.22621.2428 - Microsoft Corporation) Hidden
SOLIDWORKS 2016 x64 Czech Resources (HKLM\...\{BD37B53B-592C-41B4-BECA-D156E3D0B058}) (Version: 24.150.58 - Dassault Systemes SolidWorks Corp) Hidden
SOLIDWORKS 2016 x64 Edition SP05 (HKLM\...\{768F3B65-1695-47B7-9002-B11400CB111D}) (Version: 24.150.58 - Dassault Systemes SolidWorks Corp) Hidden
SOLIDWORKS 2016 x64 Edition SP05 (HKLM-x32\...\SolidWorks Installation Manager 20160-40500-1100-100) (Version: 24.5.0.58 - SolidWorks Corporation)
SOLIDWORKS Composer Player 2016 SP05 x64 Edition (HKLM\...\{8537E059-C18B-4DE6-AED6-CD9B90240C35}) (Version: 24.50.58 - Dassault Systemes SolidWorks Corp) Hidden
SOLIDWORKS eDrawings 2016 x64 Edition SP05 (HKLM\...\{12339098-76B6-47CD-B52A-52E4809108F6}) (Version: 16.5.0084 - Společnost Dassault Systemes SolidWorks Corp) Hidden
SOLIDWORKS Explorer 2016 SP05 x64 Edition (HKLM\...\{41E08694-1890-4B39-9D1C-B9D27A1D67B3}) (Version: 24.50.58 - Společnost Dassault Systemes SolidWorks Corp) Hidden
TeamViewer (HKLM\...\TeamViewer) (Version: 15.78.3 - TeamViewer)
Tesseract-OCR - open source OCR engine (HKLM-x32\...\Tesseract-OCR) (Version: 3.02.02 - Tesseract-OCR community)
Thonny 4.1.6 (HKLM-x32\...\Thonny_is1) (Version: 4.1.6 - Aivar Annamaa)
TortoiseSVN 1.14.9.29743 (64 bit) (HKLM\...\{23095FB3-EE67-4F2C-9827-7BE50F389442}) (Version: 1.14.29743 - TortoiseSVN)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 11.01 - Ghisler Software GmbH)
TRENDnet Wireless USB Adapter Driver (HKLM-x32\...\{B63CCD1C-A133-4DF8-8306-DA0387231152}) (Version: 1.00.0274 - TRENDnet Inc.)
TSP100 Setup Version 7.7.0 (HKLM\...\{3A67E289-0888-4BD5-A334-B0CECABF7128}) (Version: 7.7.0 - Star Micronics)
UltiMaker Cura (HKLM\...\{886DAE2D-EA56-4B5D-8835-FBC619403268}) (Version: 5.9.1 - UltiMaker)
UltraVNC (HKLM\...\Ultravnc2_is1) (Version: 1.4.3.6 - uvnc bvba)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{B8D93870-98D1-4980-AFCA-E26563CDFB79}) (Version: 8.94.0.0 - Microsoft Corporation)
VictronConnect version 6.19 (HKLM-x32\...\VictronConnect_is1) (Version: 6.19 - Victron Energy)
Windows SDK EULA (HKLM-x32\...\{7520C851-321C-30E7-0372-74CC71E40113}) (Version: 10.1.22621.2428 - Microsoft Corporations) Hidden
Windows Software Development Kit - Windows 10.0.22621.2428 (HKLM-x32\...\{7645bd51-e95b-48cd-bf4b-0e9ab7ef33b0}) (Version: 10.1.22621.2428 - Microsoft Corporation)
WinRAR 5.40 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
wkhtmltox 0.12.6-1 (HKLM\...\wkhtmltopdf) (Version: - )
WPTx64 (HKLM-x32\...\{0B2C58EB-67A2-225B-60B2-D1990E55DD33}) (Version: 8.100.26866 - Microsoft)
Zebra Font Downloader (HKLM-x32\...\Zebra Font Downloader_is1) (Version: - Zebra Technologies Corporation)
Zebra Setup Utilities (HKLM-x32\...\{9207A8EC-3B2D-4A4A-8BF7-957FC19BB3DE}) (Version: 1.1.9.1290 - Zebra Technologies) Hidden
Zebra Setup Utilities (HKLM-x32\...\Zebra Setup Utilities) (Version: 1.1.9.1290 - Zebra Technologies)
Zebra Status Monitor 5.0.0 (HKLM-x32\...\Zebra Status Monitor_is1) (Version: - Zebra\Status Monitor)
Zoom Workplace (HKU\S-1-5-21-4195152011-4283894360-3570850043-1001\...\ZoomUMX) (Version: 6.3.11 (60501) - Zoom Communications, Inc.)

Packages:
=========
Adobe Acrobat Reader -> C:\Program Files\Adobe\Acrobat DC [2026-02-23] ()
Arduino IDE -> C:\Program Files\WindowsApps\ArduinoLLC.ArduinoIDE_1.8.57.0_x86__mdqgnx93n4wtt [2024-10-10] (Arduino LLC)
Claude -> C:\Program Files\WindowsApps\Claude_1.9659.2.0_x64__pzs8sxrjxfjjc [2026-06-01] (Anthropic, PBC) [Startup Task]
FreeMind powered by weatherlights.com -> C:\Program Files\WindowsApps\HaukeGtze.FreeMindpoweredbyweatherlights.com_1.101.9.0_x64__6bk20wvc8rfx2 [2025-05-31] (Hauke Hasselberg)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_164.1.1128.0_x64__v10z8vjag6ke6 [2026-04-08] (HP Inc.)
HP Support Assistant -> C:\Program Files\WindowsApps\AD2F1837.HPSupportAssistant_9.51.14.0_x64__v10z8vjag6ke6 [2026-02-08] (HP Inc.)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.969.0_x64__56jybvy8sckqj [2025-11-07] (NVIDIA Corp.)
Spotify – hudba a podcasty -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.290.451.0_x64__zpdnekdrzrea0 [2026-05-22] (Spotify AB) [Startup Task]
WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2616.100.0_x64__cv1g1gvanyjgm [2026-05-16] (WhatsApp Inc.) [Startup Task]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-4195152011-4283894360-3570850043-1001_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-4195152011-4283894360-3570850043-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-4195152011-4283894360-3570850043-1001_Classes\CLSID\{73a1ee5f-5a0a-484b-b770-46bfbc161c24}\InprocServer32 -> C:\Program Files\Mozilla Thunderbird\notificationserver.dll (Mozilla Corporation -> Mozilla Foundation)
CustomCLSID: HKU\S-1-5-21-4195152011-4283894360-3570850043-1001_Classes\CLSID\{889B3D5C-D74E-450D-A9C9-3A492E98DA26}\InprocServer32 -> C:\Program Files\Mozilla Thunderbird\notificationserver.dll (Mozilla Corporation -> Mozilla Foundation)
CustomCLSID: HKU\S-1-5-21-4195152011-4283894360-3570850043-1001_Classes\CLSID\{BEA218D2-6950-497B-9434-61683EC065FE}\InprocServer32 -> C:\Users\admin\AppData\Local\Programs\Python\Launcher\pyshellext.amd64.dll (Python Software Foundation -> Python Software Foundation)
CustomCLSID: HKU\S-1-5-21-4195152011-4283894360-3570850043-1001_Classes\CLSID\{C4F0910E-E0B4-4E68-8086-452730C7A26A}\InprocServer32 -> C:\Users\admin\AppData\Local\Autodesk\webdeploy\production\4bca736941837d3e42bba21bb36b9891e34b2fce\NPreview10.dll (Autodesk, Inc. -> )
CustomCLSID: HKU\S-1-5-21-4195152011-4283894360-3570850043-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-4195152011-4283894360-3570850043-1001_Classes\CLSID\{ED90173A-3B4C-4E7E-B9CF-79714425D4B5}\InprocServer32 -> C:\Program Files\PSPad editor\pspshellx64.dll () [File not signed]
ShellIconOverlayIdentifiers: [ GoogleDriveCloudOverlayIconHandler] -> {A8E52322-8734-481D-A7E2-27B309EF8D56} => C:\Program Files\Google\Drive File Stream\126.0.5.0\drivefsext.dll [2026-05-28] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers: [ GoogleDriveMirrorBlacklistedOverlayIconHandler] -> {51EF1569-67EE-4AD6-9646-E726C3FFC8A2} => C:\Program Files\Google\Drive File Stream\126.0.5.0\drivefsext.dll [2026-05-28] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers: [ GoogleDrivePinnedOverlayIconHandler] -> {CFE8B367-77A7-41D7-9C90-75D16D7DC6B6} => C:\Program Files\Google\Drive File Stream\126.0.5.0\drivefsext.dll [2026-05-28] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers: [ GoogleDriveProgressOverlayIconHandler] -> {C973DA94-CBDF-4E77-81D1-E5B794FBD146} => C:\Program Files\Google\Drive File Stream\126.0.5.0\drivefsext.dll [2026-05-28] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers: [ Tortoise1Normal] -> {C5994560-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers: [ Tortoise2Modified] -> {C5994561-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers: [ Tortoise3Conflict] -> {C5994562-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers: [ Tortoise4Locked] -> {C5994563-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers: [ Tortoise5ReadOnly] -> {C5994564-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers: [ Tortoise6Deleted] -> {C5994565-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers: [ Tortoise7Added] -> {C5994566-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers: [ Tortoise8Ignored] -> {C5994567-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers: [ Tortoise9Unversioned] -> {C5994568-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [ GoogleDriveCloudOverlayIconHandler] -> {A8E52322-8734-481D-A7E2-27B309EF8D56} => C:\Program Files\Google\Drive File Stream\126.0.5.0\drivefsext.dll [2026-05-28] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers-x32: [ GoogleDriveMirrorBlacklistedOverlayIconHandler] -> {51EF1569-67EE-4AD6-9646-E726C3FFC8A2} => C:\Program Files\Google\Drive File Stream\126.0.5.0\drivefsext.dll [2026-05-28] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers-x32: [ GoogleDrivePinnedOverlayIconHandler] -> {CFE8B367-77A7-41D7-9C90-75D16D7DC6B6} => C:\Program Files\Google\Drive File Stream\126.0.5.0\drivefsext.dll [2026-05-28] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers-x32: [ GoogleDriveProgressOverlayIconHandler] -> {C973DA94-CBDF-4E77-81D1-E5B794FBD146} => C:\Program Files\Google\Drive File Stream\126.0.5.0\drivefsext.dll [2026-05-28] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers-x32: [ Tortoise1Normal] -> {C5994560-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [ Tortoise2Modified] -> {C5994561-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [ Tortoise3Conflict] -> {C5994562-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [ Tortoise4Locked] -> {C5994563-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [ Tortoise5ReadOnly] -> {C5994564-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [ Tortoise6Deleted] -> {C5994565-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [ Tortoise7Added] -> {C5994566-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [ Tortoise8Ignored] -> {C5994567-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ShellIconOverlayIdentifiers-x32: [ Tortoise9Unversioned] -> {C5994568-53D9-4125-87C9-F193FC689CB2} => C:\Program Files\Common Files\TortoiseOverlays\TortoiseOverlays.dll [2022-08-29] (Open Source Developer, Stefan KUENG -> hxxps://tortoisesvn.net)
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2026-05-13] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers1: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\126.0.5.0\drivefsext.dll [2026-05-28] (Google LLC -> Google LLC.)
ContextMenuHandlers1: [IrfanViewShellExt] -> {C835F12F-DD15-4294-B245-954A877D778A} => C:\Program Files\IrfanView\Shell Extension\IrfanViewShellExt64.dll [2025-07-14] (Irfan Skiljan) [File not signed]
ContextMenuHandlers1: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => C:\Program Files\PowerISO\PWRISOSH.DLL [2025-04-30] (Power Software Limited -> Power Software Ltd)
ContextMenuHandlers1: [TortoiseSVN] -> {30351349-7B7D-4FCC-81B4-1E394CA267EB} => C:\Program Files\TortoiseSVN\bin\TortoiseStub.dll [2024-11-30] (Open Source Developer, Stefan Kueng -> hxxps://tortoisesvn.net)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-14] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-08-14] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [TortoiseSVN] -> {30351349-7B7D-4FCC-81B4-1E394CA267EB} => C:\Program Files\TortoiseSVN\bin\TortoiseStub.dll [2024-11-30] (Open Source Developer, Stefan Kueng -> hxxps://tortoisesvn.net)
ContextMenuHandlers4: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\126.0.5.0\drivefsext.dll [2026-05-28] (Google LLC -> Google LLC.)
ContextMenuHandlers4: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => C:\Program Files\PowerISO\PWRISOSH.DLL [2025-04-30] (Power Software Limited -> Power Software Ltd)
ContextMenuHandlers4: [TortoiseSVN] -> {30351349-7B7D-4FCC-81B4-1E394CA267EB} => C:\Program Files\TortoiseSVN\bin\TortoiseStub.dll [2024-11-30] (Open Source Developer, Stefan Kueng -> hxxps://tortoisesvn.net)
ContextMenuHandlers5: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\126.0.5.0\drivefsext.dll [2026-05-28] (Google LLC -> Google LLC.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nvwu.inf_amd64_3f2a4c162f79e81f\nvshext.dll [2023-10-29] (Nvidia Corporation -> NVIDIA Corporation)
ContextMenuHandlers5: [NvQuadroView] -> {1E9B04FB-F9E5-4718-997B-B8DA88302A48} => C:\Program Files\NVIDIA Corporation\nview\nvshell.dll [2023-10-29] (Nvidia Corporation -> NVIDIA Corporation)
ContextMenuHandlers5: [TortoiseSVN] -> {30351349-7B7D-4FCC-81B4-1E394CA267EB} => C:\Program Files\TortoiseSVN\bin\TortoiseStub.dll [2024-11-30] (Open Source Developer, Stefan Kueng -> hxxps://tortoisesvn.net)
ContextMenuHandlers6: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => C:\Program Files\PowerISO\PWRISOSH.DLL [2025-04-30] (Power Software Limited -> Power Software Ltd)
ContextMenuHandlers6: [TortoiseSVN] -> {30351349-7B7D-4FCC-81B4-1E394CA267EB} => C:\Program Files\TortoiseSVN\bin\TortoiseStub.dll [2024-11-30] (Open Source Developer, Stefan Kueng -> hxxps://tortoisesvn.net)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2016-08-14] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2016-08-14] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1_S-1-5-21-4195152011-4283894360-3570850043-1001: [EditWithPSPad] -> {ED90173A-3B4C-4E7E-B9CF-79714425D4B5} => C:\Program Files\PSPad editor\pspshellx64.dll [2014-11-02] () [File not signed]

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2023-10-28 21:50 - 2013-07-08 18:34 - 000114688 _____ () [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\bin\pcre.dll
2020-08-27 17:46 - 2020-08-27 17:46 - 000091136 _____ () [File not signed] C:\Program Files (x86)\StarMicronics\TSP100\Software\20221130\StarMicronicsCloudNativeLibrary_futurePRNT.dll
2023-10-30 20:33 - 2015-08-05 19:21 - 017864192 _____ () [File not signed] C:\Program Files\HSMWorks\machineworks.dll
2023-10-30 20:33 - 2014-01-30 17:38 - 003328512 _____ () [File not signed] C:\Program Files\HSMWorks\mozjs.dll
2023-10-28 21:45 - 2014-11-02 18:45 - 000029184 _____ () [File not signed] C:\Program Files\PSPad editor\pspshellx64.dll
2020-08-27 17:46 - 2020-08-27 17:46 - 000111616 _____ () [File not signed] C:\Program Files\StarMicronics\TSP100\Software\20221130\StarMicronicsCloudNativeLibrary_futurePRNT.dll
2023-10-28 22:55 - 2023-10-28 22:55 - 000058880 _____ () [File not signed] C:\Users\admin\AppData\Local\Programs\Python\Python312\Lib\site-packages\_mysql_connector.cp312-win_amd64.pyd
2025-11-21 19:55 - 2025-11-21 19:55 - 000369152 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\annotationcplu\c934883fa2fecea6b64ce2b64e03ae66\annotationcplu.ni.dll
2025-11-21 19:57 - 2025-11-21 19:57 - 000723968 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\asmfeaturecplu\f7382da96b63cbca401cb77352ac6495\asmfeaturecplu.ni.dll
2025-05-06 15:12 - 2025-05-06 15:12 - 000160256 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\clrloadu\1b34bbef61658f10665732477862d32e\clrloadu.ni.dll
2025-11-21 19:56 - 2025-11-21 19:56 - 000743936 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\contentcplu\af5c5a7b8b3607570068225ccbaa6b4b\contentcplu.ni.dll
2025-11-21 19:56 - 2025-11-21 19:56 - 001688064 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\couplingBase\0ee38f8e9d528f0303f77e4275801619\couplingBase.ni.dll
2025-11-21 19:57 - 2025-11-21 19:57 - 000395776 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\featurecplu\9cb190e72fba76b48485b56a00eba500\featurecplu.ni.dll
2025-11-21 19:57 - 2025-11-21 19:57 - 000256000 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\refgeomcplu\3e47967a0efd6d7f25a67437689d1bf7\refgeomcplu.ni.dll
2025-11-21 19:57 - 2025-11-21 19:57 - 000736256 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\sheetmetalcplu\1f75da1b9002ceef71043c89ce63b1b2\sheetmetalcplu.ni.dll
2025-11-21 19:57 - 2025-11-21 19:57 - 001113600 _____ () [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Sketchcplu\88d4bcdb5e7bf77a8b7a970b4d0feef0\Sketchcplu.ni.dll
2023-10-28 21:50 - 2013-11-22 03:12 - 000152576 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\bin\libapr-1.dll
2023-10-28 21:50 - 2013-11-22 03:12 - 000027136 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\bin\libapriconv-1.dll
2023-10-28 21:50 - 2013-11-22 03:12 - 000206848 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\bin\libaprutil-1.dll
2023-10-28 21:50 - 2013-11-22 03:13 - 000328192 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\bin\libhttpd.dll
2023-10-28 21:50 - 2013-11-22 03:07 - 000012288 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\modules\mod_access_compat.so
2023-10-28 21:50 - 2013-11-22 03:07 - 000011264 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\modules\mod_actions.so
2023-10-28 21:50 - 2013-11-22 03:07 - 000013824 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\modules\mod_alias.so
2023-10-28 21:50 - 2013-11-22 03:07 - 000009728 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\modules\mod_allowmethods.so
2023-10-28 21:50 - 2013-11-22 03:07 - 000010752 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\modules\mod_asis.so
2023-10-28 21:50 - 2013-11-22 03:07 - 000014336 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\modules\mod_auth_basic.so
2023-10-28 21:50 - 2013-11-22 03:07 - 000011776 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\modules\mod_authn_core.so
2023-10-28 21:50 - 2013-11-22 03:07 - 000011264 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\modules\mod_authn_file.so
2023-10-28 21:50 - 2013-11-22 03:07 - 000018944 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\modules\mod_authz_core.so
2023-10-28 21:50 - 2013-11-22 03:07 - 000011776 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\modules\mod_authz_groupfile.so
2023-10-28 21:50 - 2013-11-22 03:07 - 000011264 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\modules\mod_authz_host.so
2023-10-28 21:50 - 2013-11-22 03:07 - 000009728 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\modules\mod_authz_user.so
2023-10-28 21:50 - 2013-11-22 03:07 - 000030208 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\modules\mod_autoindex.so
2023-10-28 21:50 - 2013-11-22 03:07 - 000020480 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\modules\mod_cgi.so
2023-10-28 21:50 - 2013-11-22 03:07 - 000012288 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\modules\mod_dir.so
2023-10-28 21:50 - 2013-11-22 03:07 - 000010752 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\modules\mod_env.so
2023-10-28 21:50 - 2013-11-22 03:07 - 000017920 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\modules\mod_headers.so
2023-10-28 21:50 - 2013-11-22 03:08 - 000039424 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\modules\mod_include.so
2023-10-28 21:50 - 2013-11-22 03:08 - 000024064 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\modules\mod_isapi.so
2023-10-28 21:50 - 2013-11-22 03:08 - 000024576 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\modules\mod_log_config.so
2023-10-28 21:50 - 2013-11-22 03:08 - 000016896 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\modules\mod_mime.so
2023-10-28 21:50 - 2013-11-22 03:08 - 000029184 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\modules\mod_negotiation.so
2023-10-28 21:50 - 2013-11-22 03:08 - 000051200 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\modules\mod_rewrite.so
2023-10-28 21:50 - 2013-11-22 03:08 - 000013824 _____ (Apache Software Foundation) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\modules\mod_setenvif.so
2025-11-21 19:55 - 2025-11-21 19:55 - 000020992 _____ (Dassault Systèmes SolidWorks Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AnnotationOperation\6265c0e88d274c5647f7a9d5cdcd3b5c\AnnotationOperation.ni.dll
2025-11-21 19:56 - 2025-11-21 19:56 - 000026112 _____ (Dassault Systèmes SolidWorks Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AnnotationUI\fb0c33d6214fa0727d4370be9dbf0b7b\AnnotationUI.ni.dll
2025-11-21 19:56 - 2025-11-21 19:56 - 000260608 _____ (Dassault Systèmes SolidWorks Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AnnotationWPF\50f16affce2add49e425d0d15fd55d54\AnnotationWPF.ni.dll
2025-11-21 19:56 - 2025-11-21 19:56 - 000024576 _____ (Dassault Systèmes SolidWorks Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\AsmFeatureOperation\25ce9842045a4b19373bf23406d1b767\AsmFeatureOperation.ni.dll
2025-11-21 19:57 - 2025-11-21 19:57 - 000034304 _____ (Dassault Systèmes SolidWorks Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\asmfeatureui\0da8763c724678078d25c6c5b052b1b2\asmfeatureui.ni.dll
2025-11-21 19:57 - 2025-11-21 19:57 - 000046592 _____ (Dassault Systèmes SolidWorks Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\asmfeaturewpf\c327f76748f09aacf2da1e85ff7233b5\asmfeaturewpf.ni.dll
2025-11-21 19:56 - 2025-11-21 19:56 - 000203264 _____ (Dassault Systèmes SolidWorks Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CmdInterface\fd9957202f2c541920864831a99e13a3\CmdInterface.ni.dll
2025-11-21 19:56 - 2025-11-21 19:56 - 000029696 _____ (Dassault Systèmes SolidWorks Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ContentOperation\28260580cfdd00436b921c3a61a5039d\ContentOperation.ni.dll
2025-11-21 19:56 - 2025-11-21 19:56 - 000028672 _____ (Dassault Systèmes SolidWorks Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\ContentUI\fde9ffa7d3f786ffe4ad31b0b6e5aff5\ContentUI.ni.dll
2025-11-21 19:56 - 2025-11-21 19:56 - 000592384 _____ (Dassault Systèmes SolidWorks Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\Controls\c6271835573a5392e017a8929f231a69\Controls.ni.dll
2025-11-21 19:55 - 2025-11-21 19:55 - 000063488 _____ (Dassault Systèmes SolidWorks Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\CoreInterface\264942b52bc169f3f6b7815ea74b66bd\CoreInterface.ni.dll
2025-11-21 19:56 - 2025-11-21 19:56 - 000099328 _____ (Dassault Systèmes SolidWorks Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\DveSupport\7bd3fb597ff32370abf17301827d500b\DveSupport.ni.dll
2025-11-21 19:57 - 2025-11-21 19:57 - 000028672 _____ (Dassault Systèmes SolidWorks Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\FeatureOperation\7063609e2230ba7bfd9c714a40c9f42c\FeatureOperation.ni.dll
2025-11-21 19:57 - 2025-11-21 19:57 - 000067072 _____ (Dassault Systèmes SolidWorks Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\FeatureUI\b48aeb903b159a164b6a561979fa9db7\FeatureUI.ni.dll
2025-11-21 19:57 - 2025-11-21 19:57 - 000114688 _____ (Dassault Systèmes SolidWorks Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\FeatureWPF\3c78d4b0145fdaa8adfb8ca06b3641f7\FeatureWPF.ni.dll
2025-11-21 19:57 - 2025-11-21 19:57 - 000023552 _____ (Dassault Systèmes SolidWorks Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\RefGeomOperation\059923558a2ec03f80babe0a0f9a1402\RefGeomOperation.ni.dll
2025-11-21 19:57 - 2025-11-21 19:57 - 000091648 _____ (Dassault Systèmes SolidWorks Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\RefGeomUI\fff199d0686596afa2dcef98e75bd4ff\RefGeomUI.ni.dll
2025-11-21 19:57 - 2025-11-21 19:57 - 000078336 _____ (Dassault Systèmes SolidWorks Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\RefPlaneWPF\104ba34f4b1325e9e929807807e9b297\RefPlaneWPF.ni.dll
2025-11-21 19:57 - 2025-11-21 19:57 - 000024576 _____ (Dassault Systèmes SolidWorks Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\SheetMetalOperation\1acdd41c9d72aec994a925e2f010da64\SheetMetalOperation.ni.dll
2025-11-21 19:57 - 2025-11-21 19:57 - 000180736 _____ (Dassault Systèmes SolidWorks Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\SheetMetalUi\d0aa4c4dd17bbdd4e4a181ff124fa9ee\SheetMetalUi.ni.dll
2025-11-21 19:57 - 2025-11-21 19:57 - 000102912 _____ (Dassault Systèmes SolidWorks Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\SheetMetalWPF\1e7984cc55725da13f549a3b3bce680a\SheetMetalWPF.ni.dll
2025-11-21 19:57 - 2025-11-21 19:57 - 000027648 _____ (Dassault Systèmes SolidWorks Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\SketchOperation\167d41ecf6fbcc8f73cb8db01171fa7b\SketchOperation.ni.dll
2025-11-21 19:57 - 2025-11-21 19:57 - 000057344 _____ (Dassault Systèmes SolidWorks Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\SketchUI\3543abf3cd39b6763205597220f37edb\SketchUI.ni.dll
2025-11-21 19:57 - 2025-11-21 19:57 - 000095744 _____ (Dassault Systèmes SolidWorks Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\SketchWPF\2594fa98720f3f1e1ebbfa9faa7e309f\SketchWPF.ni.dll
2025-11-21 19:56 - 2025-11-21 19:56 - 000150016 _____ (Dassault Systèmes SolidWorks Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\UiBase\94573be947652efe5f6c501559ad2b20\UiBase.ni.dll
2025-11-21 19:56 - 2025-11-21 19:56 - 002051072 _____ (Dassault Systèmes SolidWorks Corporation) [File not signed] C:\Windows\assembly\NativeImages_v4.0.30319_64\WPFRes\81e790c043ed3a1e047140af215b304c\WPFRes.ni.dll
2025-07-14 09:59 - 2025-07-14 09:59 - 000167424 _____ (Irfan Skiljan) [File not signed] C:\Program Files\IrfanView\Shell Extension\IrfanViewShellExt64.dll
2023-11-22 09:16 - 2017-01-06 17:51 - 000524288 _____ (Realtek Semiconductor Corp.) [File not signed] C:\Program Files (x86)\TRENDnet Wireless USB Adapter Driver\RtlLib.dll
2023-11-22 09:16 - 2017-01-06 17:51 - 000200704 _____ (Realtek) [File not signed] C:\Program Files (x86)\TRENDnet Wireless USB Adapter Driver\IpLib.dll
2023-11-22 09:16 - 2017-01-06 17:51 - 000286720 _____ (Realtek) [File not signed] C:\Program Files (x86)\TRENDnet Wireless USB Adapter Driver\RtlIhvOid.dll
2021-04-02 18:25 - 2021-04-02 18:25 - 000138240 _____ (Star Micronics Co., Ltd.) [File not signed] C:\Program Files\StarMicronics\TSP100\Software\20221130\AddImageGAF.dll
2021-04-02 18:24 - 2021-04-02 18:24 - 000166912 _____ (Star Micronics Co., Ltd.) [File not signed] C:\Program Files\StarMicronics\TSP100\Software\20221130\CmdSubPP.dll
2021-04-02 18:23 - 2021-04-02 18:23 - 000173056 _____ (Star Micronics Co., Ltd.) [File not signed] C:\Program Files\StarMicronics\TSP100\Software\20221130\CommandEmulator.dll
2021-04-02 18:25 - 2021-04-02 18:25 - 000157184 _____ (Star Micronics Co., Ltd.) [File not signed] C:\Program Files\StarMicronics\TSP100\Software\20221130\CompGAF.dll
2021-04-02 18:23 - 2021-04-02 18:23 - 000417280 _____ (Star Micronics Co., Ltd.) [File not signed] C:\Program Files\StarMicronics\TSP100\Software\20221130\Configuration.dll
2021-04-02 18:25 - 2021-04-02 18:25 - 000129536 _____ (Star Micronics Co., Ltd.) [File not signed] C:\Program Files\StarMicronics\TSP100\Software\20221130\CropGAF.dll
2021-04-02 18:26 - 2021-04-02 18:26 - 000120832 _____ (Star Micronics Co., Ltd.) [File not signed] C:\Program Files\StarMicronics\TSP100\Software\20221130\EcoResultGAF.dll
2021-04-02 18:26 - 2021-04-02 18:26 - 003606016 _____ (Star Micronics Co., Ltd.) [File not signed] C:\Program Files\StarMicronics\TSP100\Software\20221130\ESCPOSSE.dll
2021-04-02 18:24 - 2021-04-02 18:24 - 000335360 _____ (Star Micronics Co., Ltd.) [File not signed] C:\Program Files\StarMicronics\TSP100\Software\20221130\GenericAction.dll
2021-04-02 18:24 - 2021-04-02 18:24 - 000134144 _____ (Star Micronics Co., Ltd.) [File not signed] C:\Program Files\StarMicronics\TSP100\Software\20221130\HexDumpPP.dll
2021-04-02 18:25 - 2021-04-02 18:25 - 000470016 _____ (Star Micronics Co., Ltd.) [File not signed] C:\Program Files\StarMicronics\TSP100\Software\20221130\ImageSaveGAF.dll
2021-04-02 18:25 - 2021-04-02 18:25 - 000130560 _____ (Star Micronics Co., Ltd.) [File not signed] C:\Program Files\StarMicronics\TSP100\Software\20221130\MergeGAF.dll
2021-04-02 18:25 - 2021-04-02 18:25 - 000136192 _____ (Star Micronics Co., Ltd.) [File not signed] C:\Program Files\StarMicronics\TSP100\Software\20221130\MultiCopyGAF.dll
2021-04-02 18:25 - 2021-04-02 18:25 - 000211968 _____ (Star Micronics Co., Ltd.) [File not signed] C:\Program Files\StarMicronics\TSP100\Software\20221130\OndemandGAF.dll
2015-10-27 11:28 - 2015-10-27 11:28 - 000486912 _____ (Star Micronics Co., Ltd.) [File not signed] C:\Program Files\StarMicronics\TSP100\Software\20221130\StarIOPort.dll
2021-04-02 18:26 - 2021-04-02 18:26 - 006893568 _____ (Star Micronics Co., Ltd.) [File not signed] C:\Program Files\StarMicronics\TSP100\Software\20221130\StarLineModeSE.dll
2021-04-02 18:25 - 2021-04-02 18:25 - 000144896 _____ (Star Micronics Co., Ltd.) [File not signed] C:\Program Files\StarMicronics\TSP100\Software\20221130\StarTSPTC.dll
2021-04-02 18:24 - 2021-04-02 18:24 - 000110592 _____ (Star Micronics Co., Ltd.) [File not signed] C:\Program Files\StarMicronics\TSP100\Software\20221130\TargetAction.dll
2021-10-06 19:44 - 2021-10-06 19:44 - 000591360 _____ (Star Micronics Co., Ltd.) [File not signed] C:\Program Files\StarMicronics\TSP100\Software\20221130\tsp100elm.dll
2021-04-02 18:26 - 2021-04-02 18:26 - 000105984 _____ (Star Micronics Co., Ltd.) [File not signed] C:\Program Files\StarMicronics\TSP100\Software\20221130\WallMountGAF.dll
2021-10-06 19:43 - 2021-10-06 19:43 - 000360960 _____ (Star Micronics Co., Ltd.) [File not signed] C:\Windows\System32\smjt100epm.dll
2023-10-28 21:50 - 2013-07-08 18:29 - 001175040 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\bin\libeay32.dll
2023-10-28 21:50 - 2013-07-08 18:29 - 000269312 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\apache\bin\ssleay32.dll
2023-10-28 22:06 - 2014-01-09 08:37 - 001169920 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\php\php_runningversion\LIBEAY32.dll
2023-10-28 22:06 - 2014-01-09 08:37 - 000269312 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\php\php_runningversion\SSLEAY32.dll
2023-11-22 09:16 - 2017-01-06 17:51 - 001122304 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\TRENDnet Wireless USB Adapter Driver\LIBEAY32.dll
2023-10-28 22:55 - 2023-10-28 22:55 - 005148160 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Users\admin\AppData\Local\Programs\Python\Python312\Lib\site-packages\libcrypto-3-x64.dll
2023-10-28 22:55 - 2023-10-28 22:55 - 000778240 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Users\admin\AppData\Local\Programs\Python\Python312\Lib\site-packages\libssl-3-x64.dll
2023-10-28 22:06 - 2014-01-09 08:37 - 000066560 _____ (The PHP Group) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\php\php_runningversion\ext\php_bz2.dll
2023-10-28 22:06 - 2014-01-09 08:37 - 000072704 _____ (The PHP Group) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\php\php_runningversion\ext\php_com_dotnet.dll
2023-10-28 22:06 - 2014-01-09 08:37 - 000492032 _____ (The PHP Group) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\php\php_runningversion\ext\php_curl.dll
2023-10-28 22:06 - 2014-01-09 08:37 - 000043008 _____ (The PHP Group) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\php\php_runningversion\ext\php_exif.dll
2023-10-28 22:06 - 2014-01-09 08:37 - 001348096 _____ (The PHP Group) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\php\php_runningversion\ext\php_gd2.dll
2023-10-28 22:06 - 2014-01-09 08:37 - 000831488 _____ (The PHP Group) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\php\php_runningversion\ext\php_imap.dll
2023-10-28 22:06 - 2014-01-09 08:37 - 001239552 _____ (The PHP Group) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\php\php_runningversion\ext\php_mbstring.dll
2023-10-28 22:06 - 2014-01-09 08:37 - 000036864 _____ (The PHP Group) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\php\php_runningversion\ext\php_mysql.dll
2023-10-28 22:06 - 2014-01-09 08:37 - 000088576 _____ (The PHP Group) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\php\php_runningversion\ext\php_mysqli.dll
2023-10-28 22:06 - 2014-01-09 08:37 - 000072704 _____ (The PHP Group) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\php\php_runningversion\ext\php_openssl.dll
2023-10-28 22:06 - 2014-01-09 08:37 - 000024576 _____ (The PHP Group) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\php\php_runningversion\ext\php_pdo_mysql.dll
2023-10-28 22:06 - 2014-01-09 08:37 - 000399872 _____ (The PHP Group) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\php\php_runningversion\ext\php_pdo_sqlite.dll
2023-10-28 22:06 - 2014-01-09 08:37 - 000054784 _____ (The PHP Group) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\php\php_runningversion\ext\php_sockets.dll
2023-10-28 22:06 - 2014-01-09 08:37 - 000553472 _____ (The PHP Group) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\php\php_runningversion\ext\php_sqlite3.dll
2023-10-28 22:06 - 2014-01-09 08:37 - 000231936 _____ (The PHP Group) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\php\php_runningversion\ext\php_xsl.dll
2023-10-28 22:06 - 2014-01-09 08:37 - 000026624 _____ (The PHP Group) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\php\php_runningversion\php5apache2_4.dll
2023-10-28 22:06 - 2014-01-09 08:37 - 006155264 _____ (The PHP Group) [File not signed] C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\php\php_runningversion\php5ts.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) =============

BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2025-12-15] (HP Inc. -> HP Inc.)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2025-12-15] (HP Inc. -> HP Inc.)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-12-07 11:14 - 2019-12-07 11:12 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

==================== Network ===========================

(Currently there is no automatic fix for this section.)

DNS Servers: 192.168.11.1
Windows Firewall is enabled.

Network Binding:
=============
Ethernet: Intel(R) Ethernet Connection (2) I219-LM -> e1d65x64.sys
Síťové připojení Bluetooth 2: Bluetooth Device (Personal Area Network) #2 -> bthpan.sys

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files (x86)\EasyPHP-DevServer-14.1VC11\binaries\php\php_runningversion;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files (x86)\Windows Kits\8.1\Windows Performance Toolkit\;C:\Program Files\PuTTY\;C:\Program Files\gs\gs10.03.1\bin;C:\Program Files\Git\cmd;C:\Program Files\TortoiseSVN\bin;C:\Program Files (x86)\Tesseract-OCR
HKU\S-1-5-21-4195152011-4283894360-3570850043-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\admin\AppData\Roaming\IrfanView\IrfanView_Wallpaper.bmp
HKU\S-1-5-80-3070791953-3247979545-275873789-2352004973-969172767\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)


==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [TCP Query User{FD422773-E821-40FD-B9AB-7FC479280E6F}C:\program files (x86)\easyphp-devserver-14.1vc11\binaries\apache\bin\eds-httpd.exe] => (Allow) C:\program files (x86)\easyphp-devserver-14.1vc11\binaries\apache\bin\eds-httpd.exe (Apache Software Foundation) [File not signed]
FirewallRules: [UDP Query User{67BE45B1-8730-4A7E-93DB-B19DD1C4BF1A}C:\program files (x86)\easyphp-devserver-14.1vc11\binaries\apache\bin\eds-httpd.exe] => (Allow) C:\program files (x86)\easyphp-devserver-14.1vc11\binaries\apache\bin\eds-httpd.exe (Apache Software Foundation) [File not signed]
FirewallRules: [{103E3917-2EDD-445A-8703-282FAD00D933}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{20135625-797B-42C8-ACA1-D5A35488A6BA}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{0713621F-B954-46BB-97E8-D7F07D37D913}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{15C345E4-6B36-4BD1-BF4D-9D9CFE2C1457}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{0806160D-4AD9-496F-AB0C-3FBD061A1471}] => (Allow) C:\Program Files\MariaDB 11.3\bin\mysqld.exe (MariaDB Corporation Ab -> )
FirewallRules: [TCP Query User{1F4FDF1D-2174-45B3-97BD-994AE027F281}C:\program files (x86)\easyphp-devserver-14.1vc11\binaries\php\php_runningversion\php.exe] => (Allow) C:\program files (x86)\easyphp-devserver-14.1vc11\binaries\php\php_runningversion\php.exe (The PHP Group) [File not signed]
FirewallRules: [UDP Query User{14C32BEC-7936-47CD-94F9-4F861DED6789}C:\program files (x86)\easyphp-devserver-14.1vc11\binaries\php\php_runningversion\php.exe] => (Allow) C:\program files (x86)\easyphp-devserver-14.1vc11\binaries\php\php_runningversion\php.exe (The PHP Group) [File not signed]
FirewallRules: [TCP Query User{18B15418-E882-4D23-A6C7-4AC10C016185}C:\program files (x86)\starmicronics\tsp100\software\20221130\tsp100lan_bt_setting.exe] => (Allow) C:\program files (x86)\starmicronics\tsp100\software\20221130\tsp100lan_bt_setting.exe (STAR MICRONICS CO., LTD. -> Star Micronics Co., Ltd.)
FirewallRules: [UDP Query User{5E3855C6-738D-4DE6-9A96-34BE61CC647D}C:\program files (x86)\starmicronics\tsp100\software\20221130\tsp100lan_bt_setting.exe] => (Allow) C:\program files (x86)\starmicronics\tsp100\software\20221130\tsp100lan_bt_setting.exe (STAR MICRONICS CO., LTD. -> Star Micronics Co., Ltd.)
FirewallRules: [{BB8D6D90-3A7A-4F78-8BE6-CA45B1827F9E}] => (Allow) C:\Program Files (x86)\Cognex\In-Sight\In-Sight Explorer 6.5.0\In-Sight Explorer.exe (Cognex Corporation -> Cognex Corporation)
FirewallRules: [{4514D332-57D0-45EE-903A-2E88F7908CD1}] => (Allow) C:\Program Files (x86)\Cognex\In-Sight\In-Sight Explorer 6.5.0\In-Sight Explorer.exe (Cognex Corporation -> Cognex Corporation)
FirewallRules: [{D2AAC823-B91F-4D97-9A15-0F015DCEA24B}] => (Allow) C:\Program Files (x86)\Cognex\In-Sight\Emulators\6.5.0\In-Sight.exe (Cognex Corporation -> )
FirewallRules: [{4232BE96-E3A1-442D-8D65-F35DA3035CEE}] => (Allow) C:\Program Files (x86)\Cognex\In-Sight\Emulators\6.5.0\In-Sight.exe (Cognex Corporation -> )
FirewallRules: [{BA1486DF-A30B-45F8-BBF8-CD193BCADA10}] => (Allow) C:\Program Files (x86)\Cognex\In-Sight\Emulators\4.10.5 PR1\In-Sight.exe () [File not signed]
FirewallRules: [{885DC3E2-C07D-4610-8B4B-ADA663BEA37B}] => (Allow) C:\Program Files (x86)\Cognex\In-Sight\Emulators\4.10.5 PR1\In-Sight.exe () [File not signed]
FirewallRules: [TCP Query User{58058B60-C2B9-4421-B44D-A223B0F1BA43}C:\program files (x86)\keyence\iv-navigator\iv-navigator.exe] => (Allow) C:\program files (x86)\keyence\iv-navigator\iv-navigator.exe (KEYENCE CORPORATION) [File not signed]
FirewallRules: [UDP Query User{685E7925-C794-43B5-8B26-C3F5F717C602}C:\program files (x86)\keyence\iv-navigator\iv-navigator.exe] => (Allow) C:\program files (x86)\keyence\iv-navigator\iv-navigator.exe (KEYENCE CORPORATION) [File not signed]
FirewallRules: [{D62E8D41-3E34-4F82-8176-EABC133D515B}] => (Allow) LPort=5900
FirewallRules: [{F117F7A3-FB25-49FE-BA60-D7BBECB1B7F2}] => (Allow) LPort=5800
FirewallRules: [{5F746B51-DCD0-406A-A077-7B83B44F52B1}] => (Allow) C:\Program Files\uvnc bvba\UltraVNC\winvnc.exe (uvnc bvba -> UltraVNC)
FirewallRules: [{ABAA7298-CC54-4C75-B2A2-0BE7CC7E975F}] => (Allow) C:\Program Files\uvnc bvba\UltraVNC\winvnc.exe (uvnc bvba -> UltraVNC)
FirewallRules: [{4A72D8F2-661F-477C-ABEF-CE4BBA4A5BBF}] => (Allow) C:\Program Files\uvnc bvba\UltraVNC\vncviewer.exe (uvnc bvba -> UltraVNC)
FirewallRules: [{77366E0D-7D9B-48E4-8FD6-D66929122543}] => (Allow) C:\Program Files\uvnc bvba\UltraVNC\vncviewer.exe (uvnc bvba -> UltraVNC)
FirewallRules: [{A31970C8-3147-4F3D-A40D-EC66857136CF}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{C9549858-33AB-426B-A867-3FB8BEA4AF60}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{C46A7901-2BFB-4BE8-A694-C271A8861335}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{8CDD9CD0-98F7-4B90-A470-4A2938092F21}C:\program files\mozilla firefox\firefox.exe] => (Block) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{15A9B05F-221A-43C0-98CE-8ED1A4312365}C:\users\admin\anaconda3\envs\pyoccenv\python.exe] => (Allow) C:\users\admin\anaconda3\envs\pyoccenv\python.exe (Python Software Foundation) [File not signed]
FirewallRules: [UDP Query User{15A5EE76-EECA-45F8-B83D-0649B1EEAEAA}C:\users\admin\anaconda3\envs\pyoccenv\python.exe] => (Allow) C:\users\admin\anaconda3\envs\pyoccenv\python.exe (Python Software Foundation) [File not signed]
FirewallRules: [{470CBB5A-6781-4E28-866B-A6D5B5A1EAB4}] => (Allow) C:\Users\admin\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Communications, Inc.)
FirewallRules: [{CA48DE8A-7A10-4C98-9B56-BAFD30F73BCC}] => (Allow) C:\Users\admin\AppData\Roaming\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{1437FA41-57D3-4EFA-ABB0-117A7126B26F}] => (Allow) C:\Users\admin\AppData\Roaming\Zoom\bin\airhost.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [TCP Query User{7FECFD14-DACF-4989-914C-E31FADCFD904}C:\program files (x86)\easyphp-devserver-14.1vc11\binaries\apache\bin\eds-httpd.exe] => (Allow) C:\program files (x86)\easyphp-devserver-14.1vc11\binaries\apache\bin\eds-httpd.exe (Apache Software Foundation) [File not signed]
FirewallRules: [UDP Query User{3F7437A5-AC5B-42B1-86DE-FA95059149A2}C:\program files (x86)\easyphp-devserver-14.1vc11\binaries\apache\bin\eds-httpd.exe] => (Allow) C:\program files (x86)\easyphp-devserver-14.1vc11\binaries\apache\bin\eds-httpd.exe (Apache Software Foundation) [File not signed]
FirewallRules: [TCP Query User{F6F5DBCE-8726-475B-A007-BE621D32AC96}C:\program files (x86)\easyphp-devserver-14.1vc11\binaries\php\php_runningversion\php.exe] => (Allow) C:\program files (x86)\easyphp-devserver-14.1vc11\binaries\php\php_runningversion\php.exe (The PHP Group) [File not signed]
FirewallRules: [UDP Query User{E8F04379-6EFC-4CC1-9D08-19745E1D4461}C:\program files (x86)\easyphp-devserver-14.1vc11\binaries\php\php_runningversion\php.exe] => (Allow) C:\program files (x86)\easyphp-devserver-14.1vc11\binaries\php\php_runningversion\php.exe (The PHP Group) [File not signed]
FirewallRules: [TCP Query User{74DEA3A4-E6B3-48BF-A9AE-712586D30607}C:\program files\windowsapps\arduinollc.arduinoide_1.8.57.0_x86__mdqgnx93n4wtt\java\bin\javaw.exe] => (Allow) C:\program files\windowsapps\arduinollc.arduinoide_1.8.57.0_x86__mdqgnx93n4wtt\java\bin\javaw.exe
FirewallRules: [UDP Query User{C3A0F074-E92A-4AA9-935D-7222AEBCC372}C:\program files\windowsapps\arduinollc.arduinoide_1.8.57.0_x86__mdqgnx93n4wtt\java\bin\javaw.exe] => (Allow) C:\program files\windowsapps\arduinollc.arduinoide_1.8.57.0_x86__mdqgnx93n4wtt\java\bin\javaw.exe
FirewallRules: [{19833EF5-89D0-40C6-8355-7BB353F0705C}] => (Allow) C:\Program Files\UltiMaker Cura 5.9.1\UltiMaker-Cura.exe (Ultimaker B.V. -> )
FirewallRules: [{4A5D49A7-95A8-48BE-92D2-26F5F6292111}] => (Allow) C:\Program Files\UltiMaker Cura 5.9.1\CuraEngine.exe (Ultimaker B.V. -> Ultimaker BV.)
FirewallRules: [TCP Query User{876AF4C8-B33E-41FD-A99C-47617384E4D2}C:\program files (x86)\victron energy\victronconnect\victronconnect.exe] => (Allow) C:\program files (x86)\victron energy\victronconnect\victronconnect.exe () [File not signed]
FirewallRules: [UDP Query User{839DCEAB-0A8B-4E60-A7C7-56D93FCE73F8}C:\program files (x86)\victron energy\victronconnect\victronconnect.exe] => (Allow) C:\program files (x86)\victron energy\victronconnect\victronconnect.exe () [File not signed]
FirewallRules: [{1354ACDD-430F-45AE-9BC5-AC1D348DF2DD}] => (Allow) C:\Program Files (x86)\Google\Chrome Remote Desktop\148.0.7778.23\remoting_host.exe (Google LLC -> Google LLC)
FirewallRules: [{C9D293A5-FF65-43A7-8B52-15D1FDA67777}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{283D0EFE-3051-4FB2-A87D-905A0B75BB62}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.290.451.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{FDD1EAC0-1F6C-4EEC-96A4-FBC29AF58996}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.290.451.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{81DD4568-1D27-411A-8760-4E0A1555308D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.290.451.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{5C62EA74-630C-4A81-B815-1F388E91ECAF}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.290.451.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{B06B2AA2-CA3D-4465-9E43-E9F1E0EA0D19}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.290.451.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{BC24A7A2-6E6D-4839-8154-5CAB814511DD}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.290.451.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{F002514A-E886-4DCE-ABBB-F97068CD941E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.290.451.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{D8C2FC05-3589-4FDC-8D1C-E971B4381BEC}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.290.451.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{69EC6750-1019-4A61-98F4-A9429A0FF68A}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.290.451.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{4784B83B-B332-458D-9D32-A39F740CDC07}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.290.451.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{A3E8C917-F1B1-4872-BFCE-5332C226F42E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.290.451.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{0F1319D6-E93C-4925-81F3-A9E554826643}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.290.451.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{19098582-C3A9-4A79-A6CA-69956E44E69B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.290.451.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{4B9F96AE-2984-4E83-84C4-5AAC054C7EE9}] => (Allow) C:\Program Files\WindowsApps\Claude_1.9659.2.0_x64__pzs8sxrjxfjjc\app\Claude.exe (Anthropic, PBC -> Anthropic)
FirewallRules: [{761494D9-44B8-46E3-A5D1-BB18E6BD754A}] => (Allow) C:\Program Files\WindowsApps\Claude_1.9659.2.0_x64__pzs8sxrjxfjjc\app\Claude.exe (Anthropic, PBC -> Anthropic)
FirewallRules: [{F18840B9-5ED1-4C53-ADBA-3DD810BA4C23}] => (Allow) C:\Program Files\WindowsApps\Claude_1.9659.2.0_x64__pzs8sxrjxfjjc\app\resources\cowork-svc.exe (Anthropic, PBC -> )
FirewallRules: [{4B4F41DB-1759-48C2-BD93-CE1B2972A4B7}] => (Allow) C:\Program Files\WindowsApps\Claude_1.9659.2.0_x64__pzs8sxrjxfjjc\app\resources\cowork-svc.exe (Anthropic, PBC -> )
FirewallRules: [{A3D0340B-85DE-43CF-9D28-9727EAB60977}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{68ED4BF4-EBF1-4B3A-9F12-7A135D81A052}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{3529C916-B541-4CFE-A017-8D7237231126}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{C831B990-2871-40DB-B872-88BDF0AEE02E}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)

==================== Restore Points =========================


==================== Faulty Device Manager Devices ============
Name: Kompatibilní myš PS/2
Description: Kompatibilní myš PS/2
Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: Standardní klávesnice PS/2
Description: Standardní klávesnice PS/2
Class Guid: {4d36e96b-e325-11ce-bfc1-08002be10318}
Manufacturer: (Standardní klávesnice)
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.

Name: WD SES Device USB Device
Description: WD SES Device USB Device
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: ========================

Application errors:
==================
Error: (05/28/2026 07:01:47 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Nový svazek (D:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (05/28/2026 01:51:03 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program thunderbird.exe verze 140.10.2.0 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 5340

Čas spuštění: 01dcec39f5c17621

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Program Files\Mozilla Thunderbird\thunderbird.exe

ID hlášení: 15a79dfa-550e-4c53-9a81-67e9e114855c

Úplný název balíčku s chybou:

ID aplikace relativní podle balíčku s chybou:

Typ zablokování: Top level window is idle

Error: (05/28/2026 06:57:17 AM) (Source: MySQL) (EventID: 100) (User: )
Description: Event-ID 100

Error: (05/28/2026 06:57:17 AM) (Source: MySQL) (EventID: 100) (User: )
Description: Event-ID 100

Error: (05/28/2026 06:57:17 AM) (Source: MySQL) (EventID: 100) (User: )
Description: Event-ID 100

Error: (05/28/2026 06:57:15 AM) (Source: MySQL) (EventID: 100) (User: )
Description: Event-ID 100

Error: (05/28/2026 06:57:15 AM) (Source: MySQL) (EventID: 100) (User: )
Description: Event-ID 100

Error: (05/28/2026 06:47:28 AM) (Source: Thunderbird Notification Server) (EventID: 0) (User: )
Description: Event-ID 0


System errors:
=============
Error: (05/31/2026 10:09:22 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80073d02): 9NKSQGP7F2NH-5319275A.WhatsAppDesktop.

Error: (05/30/2026 05:04:53 PM) (Source: volsnap) (EventID: 36) (User: )
Description: Stínové kopie svazku C: byly přerušeny, protože z důvodu limitu stanoveného uživatelem se nepodařilo zvětšit úložiště stínové kopie.

Error: (05/29/2026 10:17:44 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80073d02): 9NKSQGP7F2NH-5319275A.WhatsAppDesktop.

Error: (05/29/2026 05:53:24 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80073d02): 9WZDNCRD29V9-MICROSOFT.MICROSOFTOFFICEHUB.

Error: (05/29/2026 05:53:11 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80073d02): 9NKSQGP7F2NH-5319275A.WhatsAppDesktop.

Error: (05/26/2026 08:46:29 AM) (Source: BTHUSB) (EventID: 16) (User: )
Description: Vzájemné ověření mezi místním adaptérem Bluetooth a zařízením s adresou adaptéru Bluetooth (a4:75:b9:64:19:09) se nezdařilo.

Error: (05/25/2026 01:32:39 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: FirmwareManufacturer:HP;FirmwareVersion:N51 Ver. 01.89;OEMModelBaseBoard:802F;OEMManufacturerName:HP;OSArchitecture:amd64;
BucketId: 9af88203e9c7102f38e8189e778cef948a441b04341ba4c57f4a276bc34a9f4c
BucketConfidenceLevel:
UpdateType: 0
HResult: 0

Error: (05/25/2026 01:29:43 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Aktualizace Google (gupdate) neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.


Windows Defender:
================
Date: 2026-05-31 21:27:50
Description:
Antivirová ochrana v programu Microsoft Defender ѕċăŋ ħаŝ вėёⁿ śτõρφēð ьęƒōřέ ¢ǿmφļêŧĩōñ.%ⁿ %τŠćáŋ İĐ:%ь{72B5AB1F-0B33-4CBA-B587-1B63D6D174B3}%ή %ťЅĉªп Ŧўφě:%ъAntimalwarový program%ñ %ťŜ¢απ Ρäŕâmзτєřš:%вRychlé prohledávání%и %тŰšèŕ:%ъNT AUTHORITY\SYSTEM%п %ťŞŧόр Яëαşби:%ьŜčћêďŭľëđ ś¢ăп ŵâŝ śκΐφρèð вєćąűśë τћ℮ ļâѕт ŝűċčэşšƒµℓ ŝċаπ щàś ẃīτнĩñ тђë ľâşτ 7 ðαўş

Date: 2026-05-30 21:27:48
Description:
Antivirová ochrana v programu Microsoft Defender ѕċăŋ ħаŝ вėёⁿ śτõρφēð ьęƒōřέ ¢ǿmφļêŧĩōñ.%ⁿ %τŠćáŋ İĐ:%ь{8B18A68E-F36C-485D-82F5-391ABDB2AB9F}%ή %ťЅĉªп Ŧўφě:%ъAntimalwarový program%ñ %ťŜ¢απ Ρäŕâmзτєřš:%вRychlé prohledávání%и %тŰšèŕ:%ъNT AUTHORITY\SYSTEM%п %ťŞŧόр Яëαşби:%ьŜčћêďŭľëđ ś¢ăп ŵâŝ śκΐφρèð вєćąűśë τћ℮ ļâѕт ŝűċčэşšƒµℓ ŝċаπ щàś ẃīτнĩñ тђë ľâşτ 7 ðαўş

Date: 2026-05-30 11:34:28
Description:
Antivirová ochrana v programu Microsoft Defender ѕċăŋ ħаŝ вėёⁿ śτõρφēð ьęƒōřέ ¢ǿmφļêŧĩōñ.%ⁿ %τŠćáŋ İĐ:%ь{E6A8EA84-1C95-4F43-B4F8-97435068286C}%ή %ťЅĉªп Ŧўφě:%ъAntimalwarový program%ñ %ťŜ¢απ Ρäŕâmзτєřš:%вRychlé prohledávání%и %тŰšèŕ:%ъNT AUTHORITY\SYSTEM%п %ťŞŧόр Яëαşби:%ьŜčћêďŭľëđ ś¢ăп ŵâŝ śκΐφρèð вєćąűśë τћ℮ ļâѕт ŝűċčэşšƒµℓ ŝċаπ щàś ẃīτнĩñ тђë ľâşτ 7 ðαўş

Date: 2026-05-28 21:27:45
Description:
Antivirová ochrana v programu Microsoft Defender ѕċăŋ ħаŝ вėёⁿ śτõρφēð ьęƒōřέ ¢ǿmφļêŧĩōñ.%ⁿ %τŠćáŋ İĐ:%ь{6639B33E-6577-4ECD-B7AB-A1F5FFEDDCC3}%ή %ťЅĉªп Ŧўφě:%ъAntimalwarový program%ñ %ťŜ¢απ Ρäŕâmзτєřš:%вRychlé prohledávání%и %тŰšèŕ:%ъNT AUTHORITY\SYSTEM%п %ťŞŧόр Яëαşби:%ьŜčћêďŭľëđ ś¢ăп ŵâŝ śκΐφρèð вєćąűśë τћ℮ ļâѕт ŝűċčэşšƒµℓ ŝċаπ щàś ẃīτнĩñ тђë ľâşτ 7 ðαўş

Date: 2026-05-27 21:27:45
Description:
Antivirová ochrana v programu Microsoft Defender ѕċăŋ ħаŝ вėёⁿ śτõρφēð ьęƒōřέ ¢ǿmφļêŧĩōñ.%ⁿ %τŠćáŋ İĐ:%ь{665CC707-8B99-481E-8D74-C1DDAB20E504}%ή %ťЅĉªп Ŧўφě:%ъAntimalwarový program%ñ %ťŜ¢απ Ρäŕâmзτєřš:%вRychlé prohledávání%и %тŰšèŕ:%ъNT AUTHORITY\SYSTEM%п %ťŞŧόр Яëαşби:%ьŜčћêďŭľëđ ś¢ăп ŵâŝ śκΐφρèð вєćąűśë τћ℮ ļâѕт ŝűċčэşšƒµℓ ŝċаπ щàś ẃīτнĩñ тђë ľâşτ 7 ðαўş
Event[0]:

Date: 2026-04-07 23:06:24
Description:
Antivirová ochrana v programu Microsoft Defender narazil na kritickou chybu při provádění akce s malwarem nebo jiným potenciálně nežádoucím softwarem.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Exploit:O97M/CVE-2017-11882.RVBM!MTB
Závažnost: Vážné
Kategorie: Zneužití
Cesta: file:_E:\0.ZÁLOHY\_POSLEDNÍ\Thundebird 260704\Profiles\30stodzh.default\ImapMail\wes1-imap.wedos.net\Spam->(part0551:Minolta Government Orders 2026.docx)->word/emen.rtf->(Rtf0001)
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Systém
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: Unknown
Akce: Karanténa
Stav akce: No additional actions required
Kód chyby: 0x800700de
Popis chyby: Ukládaný nebo načítaný typ souboru byl zablokován.
Verze bezpečnostních informací: AV: 1.447.218.0, AS: 1.447.218.0, NIS: 1.447.218.0
Verze modulu: AM: 1.1.26020.3, NIS: 1.1.26020.3

Date: 2026-04-07 16:13:55
Description:
Antivirová ochrana v programu Microsoft Defender narazil na kritickou chybu při provádění akce s malwarem nebo jiným potenciálně nežádoucím softwarem.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Exploit:O97M/CVE-2017-11882.RVBM!MTB
Závažnost: Vážné
Kategorie: Zneužití
Cesta: file:_C:\Users\admin\AppData\Roaming\Thunderbird\Profiles\30stodzh.default\ImapMail\wes1-imap.wedos.net\Spam->(part0551:Minolta Government Orders 2026.docx)->word/emen.rtf->(Rtf0001)
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Systém
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: Unknown
Akce: Karanténa
Stav akce: No additional actions required
Kód chyby: 0x800700de
Popis chyby: Ukládaný nebo načítaný typ souboru byl zablokován.
Verze bezpečnostních informací: AV: 1.447.215.0, AS: 1.447.215.0, NIS: 1.447.215.0
Verze modulu: AM: 1.1.26020.3, NIS: 1.1.26020.3

Date: 2026-04-07 14:02:30
Description:
Antivirová ochrana v programu Microsoft Defender narazil na kritickou chybu při provádění akce s malwarem nebo jiným potenciálně nežádoucím softwarem.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Exploit:O97M/CVE-2017-11882.RVBM!MTB
Závažnost: Vážné
Kategorie: Zneužití
Cesta: file:_C:\Users\admin\AppData\Roaming\Thunderbird\Profiles\30stodzh.default\ImapMail\wes1-imap.wedos.net\Spam->(part0551:Minolta Government Orders 2026.docx)->word/emen.rtf->(Rtf0001)
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Systém
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: Unknown
Akce: Karanténa
Stav akce: No additional actions required
Kód chyby: 0x800700de
Popis chyby: Ukládaný nebo načítaný typ souboru byl zablokován.
Verze bezpečnostních informací: AV: 1.447.196.0, AS: 1.447.196.0, NIS: 1.447.196.0
Verze modulu: AM: 1.1.26020.3, NIS: 1.1.26020.3

Date: 2026-02-15 17:31:29
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.445.32.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.26010.1
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.

Date: 2026-02-15 17:31:29
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.445.32.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.26010.1
Kód chyby: 0x80072ee7
Popis chyby: Nelze rozpoznat název nebo adresu serveru.

CodeIntegrity:
===============
Date: 2026-06-01 18:13:00
Description:
Code Integrity determined that a process (\Device\HarddiskVolume5\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.

Date: 2026-06-01 18:12:59
Description:
Code Integrity determined that a process (\Device\HarddiskVolume5\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\MpDefenderCoreService.exe) attempted to load \Device\HarddiskVolume5\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info ===========================

BIOS: HP N51 Ver. 01.89 07/28/2023
Motherboard: HP 802F
Processor: Intel(R) Core(TM) i7-6700 CPU @ 3.40GHz
Percentage of memory in use: 52%
Total physical RAM: 32686.74 MB
Available physical RAM: 15388.57 MB
Total Virtual: 58889.65 MB
Available Virtual: 19149.91 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:475.75 GB) (Free:26 GB) (Model: KINGSTON SKC600512G) NTFS
Drive d: (Nový svazek) (Fixed) (Total:931.39 GB) (Free:45.23 GB) (Model: WDC WD10EZEX-60WN4A0) NTFS
Drive g: (Google Drive) (Fixed) (Total:475.75 GB) (Free:24.7 GB) (Model: KINGSTON SKC600512G) FAT32
Drive h: (My Book) (Fixed) (Total:5589 GB) (Free:434.83 GB) (Model: WD My Book 25EE USB Device) exFAT

\\?\Volume{2d11b580-00ec-446f-8c28-fccb217c6554}\ (Obnovení) (Fixed) (Total:0.44 GB) (Free:0.43 GB) NTFS
\\?\Volume{8cece581-d353-4b03-a381-f10bd18e0060}\ () (Fixed) (Total:0.63 GB) (Free:0.08 GB) NTFS
\\?\Volume{a70e0bb1-edf6-4ce0-9565-b1fe5b665825}\ () (Fixed) (Total:0.09 GB) (Free:0.05 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Protective MBR) (Size: 476.9 GB) (Disk ID: 00000000)

Partition: GPT.

==========================================================
Disk: 1 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000)

Partition: GPT.

==========================================================
Disk: 2 (Size: 5589 GB) (Disk ID: 16F2A91F)

Partition: GPT.

==================== End of Addition.txt =======================

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15875
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: prevence

#3 Příspěvek od JaRon »

Ahoj,
vycisti PC s Ccleanerom vcetne registrov
Restart
a vloz novy frtst.txt - staci iba ten
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Odpovědět