Prosím o kontrolu preventivně

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Blazacz
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 31 Říj 2023 21:05

Prosím o kontrolu preventivně

#1 Příspěvek od Blazacz »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 05-06-2026
Ran by marti (administrator) on MARTIN (ASRock Z790 Steel Legend WiFi) (08-06-2026 20:07:14)
Running from C:\Users\marti\Downloads\FRST64.exe
Loaded Profiles: marti
Platform: Microsoft Windows 11 Pro Version 25H2 26200.8524 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\149.0.4022.52\identity_helper.exe
(C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\SimLogic.exe ->) (WINWING) [File not signed] C:\Users\marti\AppData\Local\Temp\3EcEoK7tyD8Hw6BmLlPWZBoDowr\SimLogic.exe <3>
(C:\Program Files (x86)\SimAppPro\SimAppPro.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe <8>
(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\Malwarebytes.exe
(C:\Windows\SysWOW64\cmd.exe ->) (WINWING) [File not signed] [File is in use] C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\SimLogic.exe
(drivers\RivetNetworks\Killer\KAPSService.exe ->) (Intel Corporation -> Intel® Corporation) C:\Windows\System32\drivers\RivetNetworks\Killer\KAPS.exe
(drivers\RivetNetworks\Killer\KNDBWMService.exe ->) (Intel Corporation -> Intel® Corporation) C:\Windows\System32\drivers\RivetNetworks\Killer\KNDBWM.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <16>
(explorer.exe ->) (Navigraph KB -> Navigraph) C:\Program Files\Navigraph\Simlink\NavigraphSimlink.exe
(explorer.exe ->) (Navigraph Kommanditbolag -> Navigraph) C:\Users\marti\AppData\Local\Programs\navigraph-hub\Navigraph Hub.exe <4>
(explorer.exe ->) (REX Game Studios, LLC.) [File not signed] C:\REX Atmos Core\weathercreator.exe
(explorer.exe ->) (tritrisim) [File not signed] C:\Users\marti\AppData\Local\TriTriSim Hub\tritrisim-installer.exe
(explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SystemSettingsAdminFlows.exe
(Roy Kronenfeld -> ) C:\Users\marti\AppData\Roaming\Microsoft Flight Simulator 2024\Packages\Community\rkapps-fsrealistic\service\FSRealisticWatcher.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe
(services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Windows\SysWOW64\XtuService.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Windows\System32\drivers\RivetNetworks\Killer\KillerAnalyticsService.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Windows\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe
(services.exe ->) (Intel Corporation -> Intel® Corporation) C:\Windows\System32\drivers\RivetNetworks\Killer\KAPSService.exe
(services.exe ->) (Intel Corporation -> Intel® Corporation) C:\Windows\System32\drivers\RivetNetworks\Killer\KNDBWMService.exe
(services.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\GameInputSvc.exe <2>
(services.exe ->) (Microsoft Corporation -> Windows (R) Win 7 DDK provider) C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe <2>
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster®) C:\Program Files\Thrustmaster\TM Flight Series\drivers\amd64\tmHInstall.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\NisSrv.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_c8bc842500fab35b\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_09eece2033f5a691\RtkAudUService64.exe <2>
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe
(sihost.exe ->) (HP Inc. -> Hewlett-Packard Development Company, L.P.) C:\Program Files\WindowsApps\33C30B79.NGENUITY_2.35.0.0_x64__922sw8z9z7n5w\Assets\Native\NGenuity2Helper.exe
(sihost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2605.1001.14.0_x64__8wekyb3d8bbwe\XboxPcTray.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.Edge.GameAssist_1.0.4019.0_x64__8wekyb3d8bbwe\EdgeGameAssist.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2605.1001.14.0_x64__8wekyb3d8bbwe\XboxPcAppFT.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.302.5.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\marti\AppData\Local\Microsoft\OneDrive\26.084.0504.0007\FileCoAuth.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\amd64\MoUsoCoreWorker.exe
(svchost.exe ->) (PALIT MICROSYSTEMS LTD. TAIWAN BRANCH (BELIZE) -> Palit Microsystems Ltd.) C:\Program Files\Thunder Master\ThPanel.exe
(WINWING) [File not signed] C:\Program Files (x86)\SimAppPro\SimAppPro.exe <4>

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_09eece2033f5a691\RtkAudUService64.exe [1862040 2024-08-02] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [SimAppPro] => C:\Program Files (x86)\SimAppPro\SimAppPro.exe [90632704 2026-06-03] (WINWING) [File not signed]
HKLM-x32\...\Run: [FSRealisticWatcher] => C:\Users\marti\AppData\Roaming\Microsoft Flight Simulator 2024\Packages\Community\rkapps-fsrealistic\service\FSRealisticWatcher.exe [137064 2026-02-11] (Roy Kronenfeld -> )
HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [5775000 2026-06-01] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\Run: [Navigraph Hub] => C:\Users\marti\AppData\Local\Programs\navigraph-hub\Navigraph Hub.exe [176372304 2025-11-21] (Navigraph Kommanditbolag -> Navigraph)
HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\Run: [Navigraph Simlink] => C:\Program Files\Navigraph\Simlink\NavigraphSimlink.exe [1804880 2026-05-28] (Navigraph KB -> Navigraph)
HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\Run: [ASRock A-Tuning] => [X]
HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\Run: [MicrosoftEdgeAutoLaunch_4A886EB596DDE810C696BFE47BAAC943] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [5257584 2026-06-04] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\Print\Monitors\HP D811 Status Monitor: C:\WINDOWS\system32\hpinkstsD811LM.dll [393352 2017-04-05] (Hewlett Packard -> HP Inc.)

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {004EC059-9202-403A-A7A1-D85999201684} - System32\Tasks\ATuning => C:\Program Files (x86)\ASRock Utility\A-Tuning\Bin\ATuning.exe [10455016 2024-08-09] (ASROCK INC. -> ASRock Incorporation)
Task: {402CD80F-5AFB-47CA-9F51-750B4D325AD0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\MpCmdRun.exe [1794752 2026-05-21] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {7B1E8076-CDF1-450B-B9F8-9AB00E785929} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\MpCmdRun.exe [1794752 2026-05-21] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {E3412246-C648-4C5F-9659-B0DAA99FF5B6} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\MpCmdRun.exe [1794752 2026-05-21] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {46C146DB-6278-466E-9F23-6BAE8637B9D4} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\MpCmdRun.exe [1794752 2026-05-21] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {59B4C5AD-9DC1-4F21-BD06-B4478B0D0A1B} - System32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA App.exe [3346544 2026-04-24] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {06A857A6-1C14-40BE-87FB-032E645D7ECC} - System32\Tasks\ThunderMaster => C:\Program Files\Thunder Master\ThPanel.exe [4569512 2025-02-19] (PALIT MICROSYSTEMS LTD. TAIWAN BRANCH (BELIZE) -> Palit Microsystems Ltd.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{b8d9ed00-1987-41df-9510-461c6ad73bdb}: [DhcpNameServer] 172.20.10.1
Tcpip\..\Interfaces\{ee1a321e-2873-4950-8725-cc3e6a03f061}: [DhcpNameServer] 192.168.1.1

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\marti\AppData\Local\Microsoft\Edge\User Data\Default [2026-06-08]
Edge Notifications: Default -> hxxps://www.facebook.com
Edge HomePage: Default -> hxxp://www.google.com/
Edge Extension: (Dokumenty Google offline) - C:\Users\marti\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-06-05]
Edge Extension: (Adblock Plus - free ad blocker) - C:\Users\marti\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmgoamodcdcjnbaobigkjelfplakmdhh [2026-06-07]
Edge Extension: (Edge relevant text changes) - C:\Users\marti\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2026-03-14]
Edge HKLM\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn]
Edge HKLM-x32\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn]

Chrome:
=======
CHR HKLM\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 GameInputRedistService; C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe [401792 2026-05-14] (Microsoft Corporation -> Windows (R) Win 7 DDK provider)
S2 Intel(R) Platform License Manager Service; C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\PlatformLicenseManagerService.exe [741488 2023-12-14] (Intel Corporation -> Intel(R) Corporation)
R3 KAPSService; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KAPSService.exe [76576 2022-07-27] (Intel Corporation -> Intel® Corporation)
R2 Killer Analytics Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerAnalyticsService.exe [2454304 2022-07-27] (Intel Corporation -> Intel)
R2 Killer Network Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe [2898744 2022-07-27] (Intel Corporation -> Intel)
R3 KNDBWM; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KNDBWMService.exe [76600 2022-07-27] (Intel Corporation -> Intel® Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [11481048 2026-05-08] (Malwarebytes Inc -> Malwarebytes)
S3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe [2788304 2025-02-01] (Malwarebytes Inc. -> Malwarebytes)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\MpDefenderCoreService.exe [2096384 2026-05-21] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_c8bc842500fab35b\Display.NvContainer\NVDisplay.Container.exe [1702632 2026-05-21] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [877528 2026-05-27] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 tmHInstall; C:\Program Files\Thrustmaster\TM Flight Series\drivers\amd64\tmHInstall.exe [139456 2025-06-02] (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster®)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\NisSrv.exe [4484680 2026-05-21] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26040.7-0\MsMpEng.exe [290704 2026-05-21] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 AsrDrv202; C:\WINDOWS\SysWOW64\Drivers\AsrDrv202.sys [68208 2025-03-02] (ASROCK INC. -> ASRock Incorporation)
S3 AsrDrv204; C:\WINDOWS\SysWOW64\Drivers\AsrDrv204.sys [68840 2026-04-02] (ASROCK INC. -> ASRock Incorporation)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [602112 2025-08-16] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [204800 2025-08-16] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [110592 2025-08-16] (Microsoft Corporation) [File not signed]
R1 CTIIO; C:\WINDOWS\system32\drivers\CtiIo64.sys [39672 2026-04-02] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Innovation Co., LTd.)
R3 DynamicLightingVHFDriver_D212; C:\WINDOWS\System32\drivers\DynamicLightingVHFDriver_D212.sys [45840 2024-12-01] (Holtek Semiconductor Incorporation -> Holtek Semiconductor Inc)
R3 GuiHidUsbDevLowerTFH; C:\WINDOWS\System32\drivers\GuiHidUsbDevLowerTFH.sys [256704 2025-06-02] (Microsoft Windows Hardware Compatibility Publisher -> © Guillemot R&D, 2020. All rights reserved.)
R3 KfeCoSvc; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KfeCo11X64.sys [188072 2022-07-27] (Intel Corporation -> Rivet Networks, LLC.)
R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [82312 2026-05-21] (Microsoft Windows -> Microsoft Corporation)
R2 mbamchameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [236136 2026-05-27] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [22120 2025-03-13] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [245864 2026-04-11] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S3 TmHid; C:\WINDOWS\system32\DRIVERS\TmHid.sys [49040 2023-12-14] (WDKTestCert plukidis,131540205154897060 -> Guillemot Corporation)
S3 TmHidFsimBus; C:\WINDOWS\System32\drivers\tmHidFsimBus.sys [202440 2025-06-02] (Microsoft Windows Hardware Compatibility Publisher -> © Guillemot R&D, 2021. All rights reserved.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [21888 2026-05-21] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [606600 2026-05-21] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [100784 2026-05-21] (Microsoft Windows -> Microsoft Corporation)
S3 WSDPrintDevice; C:\WINDOWS\System32\DriverStore\FileRepository\wsdprint.inf_amd64_1f9e32519098c0b6\WSDPrint.sys [57344 2025-08-16] (Microsoft Windows -> Microsoft Corporation)
S3 WSDScan; C:\WINDOWS\System32\DriverStore\FileRepository\sti.inf_amd64_a6dc64e436f22951\WSDScan.sys [61440 2025-09-01] (Microsoft Windows -> Microsoft Corporation)
S3 MSIO; \??\C:\Program Files (x86)\ASRock Utility\ASRRGBLED\Bin\msio64.sys (No File)

==================== SvcHost (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-06-08 20:07 - 2026-06-08 20:08 - 000018388 _____ C:\Users\marti\Downloads\FRST.txt
2026-06-08 20:06 - 2026-06-08 20:06 - 002646016 _____ (Farbar) C:\Users\marti\Downloads\FRST64.exe
2026-06-08 11:55 - 2026-06-08 19:44 - 000000000 ____D C:\WINDOWS\CbsTemp
2026-06-07 15:30 - 2026-06-07 15:32 - 1250533412 _____ C:\Users\marti\Downloads\mkstudios-airport-lppr-porto-v2-0-2-msfs-2024.rar
2026-06-07 14:03 - 2026-06-07 14:03 - 000677108 _____ C:\WINDOWS\system32\perfh005.dat
2026-06-07 14:03 - 2026-06-07 14:03 - 000144960 _____ C:\WINDOWS\system32\perfc005.dat
2026-06-07 11:31 - 2026-06-07 11:31 - 000352768 _____ C:\Users\marti\Downloads\IMG_1847.jpeg
2026-06-07 11:01 - 2026-06-07 11:07 - 2267172047 _____ C:\Users\marti\Downloads\Hues zCore - 3.0.4_Txbup.rar
2026-06-05 22:09 - 2026-06-05 22:09 - 045569392 _____ (Navigraph ) C:\Users\marti\Downloads\Navigraph+Simlink.exe
2026-05-27 21:32 - 2026-05-27 21:32 - 000037366 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2026-05-27 21:32 - 2026-05-27 21:32 - 000037366 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2026-05-27 21:32 - 2026-05-27 21:32 - 000004066 _____ C:\WINDOWS\system32\DeviceFeatureDDF.json
2026-05-26 16:19 - 2026-05-21 07:41 - 003082800 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2026-05-26 16:19 - 2026-05-21 07:41 - 003082800 _____ C:\WINDOWS\system32\vulkaninfo.exe
2026-05-26 16:19 - 2026-05-21 07:41 - 002626608 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2026-05-26 16:19 - 2026-05-21 07:41 - 002626608 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2026-05-26 16:19 - 2026-05-21 07:41 - 001730096 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2026-05-26 16:19 - 2026-05-21 07:41 - 001730096 _____ C:\WINDOWS\system32\vulkan-1.dll
2026-05-26 16:19 - 2026-05-21 07:41 - 001542192 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2026-05-26 16:19 - 2026-05-21 07:41 - 001542192 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2026-05-26 16:19 - 2026-05-21 07:41 - 000540904 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2026-05-26 16:19 - 2026-05-21 07:41 - 000418024 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2026-05-26 16:19 - 2026-05-21 07:36 - 001408232 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2026-05-26 16:19 - 2026-05-21 07:36 - 000676584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvofapi64.dll
2026-05-26 16:19 - 2026-05-21 07:36 - 000510696 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvofapi.dll
2026-05-26 16:19 - 2026-05-21 07:35 - 028094184 _____ C:\WINDOWS\system32\nvidia-pcc.exe
2026-05-26 16:19 - 2026-05-21 07:35 - 002337512 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2026-05-26 16:19 - 2026-05-21 07:35 - 001731304 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2026-05-26 16:19 - 2026-05-21 07:35 - 001682152 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2026-05-26 16:19 - 2026-05-21 07:35 - 001592040 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2026-05-26 16:19 - 2026-05-21 07:35 - 001238760 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2026-05-26 16:19 - 2026-05-21 07:35 - 001068264 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2026-05-26 16:19 - 2026-05-21 07:35 - 000824040 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2026-05-26 16:19 - 2026-05-21 07:34 - 032166632 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2026-05-26 16:19 - 2026-05-21 07:34 - 000469736 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2026-05-26 16:19 - 2026-05-21 07:33 - 020993768 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2026-05-26 16:19 - 2026-05-21 07:33 - 008488168 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2026-05-26 16:19 - 2026-05-21 07:33 - 005925608 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2026-05-26 16:19 - 2026-05-21 07:33 - 005796072 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll
2026-05-26 16:19 - 2026-05-21 07:33 - 004714728 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2026-05-26 16:19 - 2026-05-21 07:32 - 000853736 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2026-05-26 16:19 - 2026-05-21 07:31 - 000572368 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2026-05-26 16:19 - 2026-05-21 07:31 - 000441368 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2026-05-26 16:19 - 2026-05-20 03:53 - 000167381 _____ C:\WINDOWS\system32\nvinfo.pb
2026-05-21 18:55 - 2026-05-24 16:36 - 000000000 ____D C:\Users\marti\AppData\Local\TriTriSim_Alpha
2026-05-21 18:54 - 2026-05-21 18:56 - 000001304 _____ C:\Users\marti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\TriTriSim Hub.lnk
2026-05-21 18:54 - 2026-05-21 18:56 - 000001302 _____ C:\Users\marti\OneDrive\Plocha\TriTriSim Hub.lnk
2026-05-21 18:54 - 2026-05-21 18:55 - 000000000 ____D C:\Users\marti\AppData\Local\com.tritrisim.hub
2026-05-21 18:54 - 2026-05-21 18:54 - 000000000 ____D C:\Users\marti\AppData\Local\TriTriSim Hub
2026-05-19 17:41 - 2026-05-19 17:41 - 000000000 ____D C:\Program Files\Microsoft GameInput
2026-05-17 13:24 - 2026-05-17 13:24 - 000000000 ____D C:\MSFS 2024 SDK
2026-05-15 21:59 - 2026-06-07 14:22 - 000000000 ___RD C:\Users\marti\OneDrive\Plocha\AIG
2026-05-15 21:59 - 2026-05-18 16:10 - 000000000 ____D C:\ProgramData\AIGTech
2026-05-15 21:59 - 2026-05-15 23:44 - 000000000 ____D C:\Users\marti\AppData\Local\AIGTech
2026-05-15 21:59 - 2026-05-15 21:59 - 000000000 ____D C:\Users\marti\AppData\Local\AWSToolkit
2026-05-14 17:22 - 2026-05-14 17:22 - 000000000 ____D C:\WINDOWS\SecureBoot
2026-05-11 18:49 - 2026-06-08 18:25 - 000000000 ____D C:\Users\marti\AppData\Roaming\PSXT
2026-05-11 18:37 - 2026-05-11 18:46 - 000000000 ____D C:\Users\marti\AppData\Roaming\InsideSystems
2026-05-11 18:37 - 2026-05-11 18:37 - 000000951 _____ C:\Users\marti\OneDrive\Plocha\RealTraffic Launcher.lnk
2026-05-11 18:37 - 2026-05-11 18:37 - 000000000 ____D C:\ProgramData\Oracle
2026-05-11 18:37 - 2026-05-11 18:37 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RealTraffic Launcher
2026-05-11 18:37 - 2026-05-11 18:37 - 000000000 ____D C:\Program Files\RealTrafficLauncher
2026-05-11 18:24 - 2026-06-08 18:25 - 000000000 ____D C:\PSXT
2026-05-11 18:24 - 2026-05-21 19:05 - 000000593 _____ C:\Users\marti\OneDrive\Plocha\PSXT.lnk
2026-05-11 18:24 - 2026-05-21 19:05 - 000000000 ____D C:\Users\marti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PSXT
2026-05-10 17:00 - 2026-05-10 17:00 - 000085913 _____ C:\WINDOWS\SysWOW64\ctac.json
2026-05-10 17:00 - 2026-05-10 17:00 - 000085913 _____ C:\WINDOWS\system32\ctac.json
2026-05-09 15:25 - 2026-05-09 15:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BleachBit

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-06-08 20:07 - 2025-10-23 19:37 - 000000000 ____D C:\FRST
2026-06-08 20:04 - 2026-04-10 00:11 - 000000000 ___RD C:\Users\marti\OneDrive\Plocha\Moc nepoužívané letiště
2026-06-08 20:04 - 2025-02-01 01:49 - 000000000 ____D C:\Program Files (x86)\Steam
2026-06-08 20:04 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-06-08 20:02 - 2026-01-29 22:03 - 000000037 _____ C:\Users\marti\OneDrive\Plocha\Koupeno Traffic.txt
2026-06-08 20:02 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-06-08 19:59 - 2025-05-11 19:29 - 000000000 ____D C:\Users\marti\AppData\Roaming\pesim-central-v2-client
2026-06-08 19:59 - 2025-02-01 15:14 - 000000000 ____D C:\Users\marti\AppData\Local\Malwarebytes
2026-06-08 19:59 - 2025-02-01 14:30 - 000000000 ____D C:\Users\marti\OneDrive\Plocha\FS2024
2026-06-08 19:58 - 2026-04-11 13:52 - 000000000 ____D C:\Users\marti\AppData\Local\D3DSCache
2026-06-08 19:58 - 2025-05-11 19:29 - 000000000 ____D C:\Users\marti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\GitHub, Inc
2026-06-08 19:58 - 2025-02-01 14:19 - 000000000 ____D C:\Users\marti\AppData\Roaming\iniManager
2026-06-08 19:57 - 2026-02-14 22:11 - 000000000 ____D C:\Users\marti\AppData\Roaming\virtuali
2026-06-08 19:57 - 2026-02-14 22:11 - 000000000 ____D C:\ProgramData\virtuali
2026-06-08 19:57 - 2025-02-01 14:16 - 000000000 ____D C:\Users\marti\AppData\Roaming\navigraph-hub
2026-06-08 19:56 - 2025-12-18 19:54 - 000000000 ____D C:\Users\marti\AppData\Roaming\pmdg-oc3
2026-06-08 19:49 - 2026-04-11 13:51 - 000000000 ____D C:\Users\marti\AppData\Local\NVIDIA
2026-06-08 19:47 - 2025-08-07 17:22 - 000000000 ____D C:\Users\marti\AppData\Roaming\Microsoft Flight Simulator 2024
2026-06-08 17:55 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-06-08 17:51 - 2025-08-29 16:53 - 000000000 ____D C:\REX Atmos Core
2026-06-08 17:49 - 2025-02-01 14:11 - 000000000 ____D C:\Users\marti\AppData\Roaming\FlyByWire Installer
2026-06-08 17:47 - 2025-02-01 14:28 - 000000000 ____D C:\FSUIPC7
2026-06-08 17:45 - 2025-02-01 14:25 - 000000000 ____D C:\Users\marti\AppData\Roaming\Aerosoft One
2026-06-08 17:44 - 2026-01-23 16:24 - 000000000 ____D C:\Users\marti\AppData\Roaming\SimAppPro
2026-06-08 17:44 - 2025-02-01 01:00 - 000000000 ___RD C:\Users\marti\OneDrive
2026-06-08 14:21 - 2026-04-11 13:51 - 000000000 ____D C:\ProgramData\NVIDIA
2026-06-08 14:19 - 2024-04-01 09:26 - 000000000 ___HD C:\Program Files\WindowsApps
2026-06-08 11:42 - 2025-08-17 00:25 - 000003716 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{67CC9047-C3AD-4539-B2A6-99C3DD181152}
2026-06-08 11:42 - 2025-08-17 00:25 - 000003590 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{99CA179B-4625-40F9-81A8-B9FBE1F9501A}
2026-06-07 14:03 - 2025-08-17 00:28 - 001603790 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-06-07 14:03 - 2024-04-01 09:24 - 000000000 ____D C:\WINDOWS\INF
2026-06-07 11:07 - 2026-01-23 17:11 - 000000000 ____D C:\Program Files (x86)\SimAppPro
2026-06-07 11:07 - 2025-02-01 05:34 - 000000000 ____D C:\Users\marti\AppData\Local\CrashDumps
2026-06-05 22:31 - 2025-02-01 00:47 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-06-05 22:11 - 2025-02-01 00:49 - 000000000 ____D C:\ProgramData\Packages
2026-06-05 22:09 - 2025-08-17 00:25 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3429602048-725292175-2964145443-1001
2026-06-05 22:09 - 2025-08-17 00:25 - 000003570 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-3429602048-725292175-2964145443-1001
2026-06-05 22:09 - 2025-08-17 00:25 - 000003360 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3429602048-725292175-2964145443-1001
2026-06-05 22:09 - 2025-02-01 14:18 - 000000998 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Navigraph Simlink.lnk
2026-06-05 22:09 - 2025-02-01 01:00 - 000002379 _____ C:\Users\marti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2026-05-27 21:49 - 2025-08-17 00:25 - 000023506 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2026-05-27 21:49 - 2025-08-17 00:25 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-05-27 21:49 - 2025-08-17 00:23 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK
2026-05-27 21:49 - 2025-02-01 00:47 - 000012288 ___SH C:\DumpStack.log.tmp
2026-05-27 21:49 - 2024-04-01 09:21 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2026-05-27 21:48 - 2025-08-17 00:23 - 000297264 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2026-05-27 21:48 - 2024-04-01 18:31 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\UUS
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\quz-PE
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mi-NZ
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemResources
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ta-IN
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\quz-PE
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mt-MT
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mk-MK
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mi-NZ
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\es-MX
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2026-05-27 21:48 - 2024-04-01 09:26 - 000000000 ____D C:\Program Files\Common Files\System
2026-05-27 21:48 - 2024-04-01 09:21 - 000000000 ____D C:\WINDOWS\servicing
2026-05-27 21:46 - 2026-02-08 14:51 - 000002013 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\MFS Cleaner Fixer.lnk
2026-05-27 21:32 - 2025-08-17 00:26 - 003261440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2026-05-26 17:40 - 2025-02-01 16:30 - 000000000 ____D C:\Users\marti\AppData\Roaming\fsltl-trafic-injector
2026-05-24 18:43 - 2025-02-01 00:57 - 000000000 ____D C:\Users\marti\AppData\Local\Packages
2026-05-21 21:42 - 2025-02-01 14:11 - 000002523 _____ C:\Users\marti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\FlyByWire Installer.lnk
2026-05-21 21:42 - 2025-02-01 14:11 - 000002521 _____ C:\Users\marti\OneDrive\Plocha\FlyByWire Installer.lnk
2026-05-21 18:46 - 2025-02-01 00:47 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2026-05-19 17:41 - 2026-05-08 09:54 - 000477640 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_e.dll.0
2026-05-19 17:41 - 2026-05-08 09:54 - 000477640 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_e.dll
2026-05-19 17:41 - 2025-02-01 01:22 - 004553160 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2026-05-19 17:41 - 2025-02-01 01:22 - 001141192 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2026-05-19 17:41 - 2025-02-01 01:22 - 000289224 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2026-05-19 17:41 - 2025-02-01 01:22 - 000264648 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2026-05-19 17:41 - 2025-02-01 01:22 - 000166344 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2026-05-19 17:41 - 2025-02-01 01:22 - 000154056 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe
2026-05-19 17:41 - 2025-02-01 01:22 - 000084424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe
2026-05-15 19:21 - 2025-05-11 19:13 - 000000000 ____D C:\Users\marti\AppData\Local\iniManager
2026-05-15 19:21 - 2025-02-01 14:19 - 000000000 ____D C:\Users\marti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iniBuilds Ltd
2026-05-15 00:08 - 2026-03-03 19:05 - 001155456 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\GameInputRedist.dll
2026-05-15 00:08 - 2025-04-12 20:28 - 000145280 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\SysWOW64\XInput1_3.dll
2026-05-15 00:07 - 2026-03-03 19:05 - 000013736 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\SysWOW64\GameInputRedist.dll
2026-05-15 00:07 - 2025-04-12 20:28 - 000182656 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\XInput1_3.dll
2026-05-15 00:07 - 2025-04-12 20:28 - 000182144 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\XInput1_2.dll
2026-05-15 00:07 - 2025-04-12 20:28 - 000182144 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\XInput1_1.dll
2026-05-15 00:07 - 2025-04-12 20:28 - 000143784 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\SysWOW64\XInput1_2.dll
2026-05-15 00:07 - 2025-04-12 20:28 - 000143744 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\SysWOW64\XInput1_1.dll
2026-05-14 17:22 - 2024-04-01 18:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2026-05-14 17:22 - 2024-04-01 18:28 - 000000000 ____D C:\WINDOWS\SysWOW64\cs
2026-05-14 17:22 - 2024-04-01 18:28 - 000000000 ____D C:\WINDOWS\system32\cs
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ur-PK
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ug-CN
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\tt-RU
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\te-IN
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ta-IN
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\sq-AL
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\qps-plocm
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\qps-ploc
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-IN
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\or-IN
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\nn-NO
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ne-NP
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mt-MT
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mr-IN
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ml-IN
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mk-MK
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lo-LA
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lb-LU
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kok-IN
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kn-IN
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\km-KH
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kk-KZ
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ka-GE
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\is-IS
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\hy-AM
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\hi-IN
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gu-IN
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gl-ES
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gd-GB
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ga-IE
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\fil-PH
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\fa-IR
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\eu-ES
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\cy-GB
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-IN
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\be-BY
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\as-IN
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\am-ET
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\af-ZA
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\vi-VN
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ur-PK
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ug-CN
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\tt-RU
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\te-IN
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\sq-AL
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\qps-plocm
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\qps-ploc
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\pa-IN
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\or-IN
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\nn-NO
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ne-NP
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mr-IN
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ml-IN
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lo-LA
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lb-LU
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kok-IN
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kn-IN
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\km-KH
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kk-KZ
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ka-GE
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\is-IS
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\id-ID
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\hy-AM
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\hi-IN
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\gu-IN
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\gl-ES
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\gd-GB
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ga-IE
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\fil-PH
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\fa-IR
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\eu-ES
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\et-EE
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\cy-GB
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ca-ES
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\bn-IN
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\be-BY
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\as-IN
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\am-ET
2026-05-14 17:22 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\af-ZA
2026-05-14 17:08 - 2025-02-01 01:11 - 000000000 ____D C:\WINDOWS\system32\MRT
2026-05-14 17:06 - 2025-02-01 01:11 - 220340424 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2026-05-14 17:05 - 2025-10-14 13:59 - 000000000 ____D C:\ProgramData\Fenix
2026-05-14 17:04 - 2025-02-01 14:26 - 000000000 ____D C:\Users\marti\Aerosoft One Library
2026-05-11 18:55 - 2025-02-01 01:17 - 000000000 ____D C:\ProgramData\Package Cache
2026-05-10 17:12 - 2025-08-17 00:10 - 000000000 ____D C:\WINDOWS\system32\ruxim
2026-05-10 17:12 - 2024-04-01 18:31 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2026-05-10 17:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2026-05-10 17:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemApps
2026-05-10 17:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\setup
2026-05-10 17:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2026-05-10 16:55 - 2026-04-11 13:51 - 000003834 _____ C:\WINDOWS\system32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2026-05-10 16:55 - 2025-02-01 13:42 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2026-05-09 15:25 - 2025-08-16 23:26 - 000000000 ____D C:\Program Files (x86)\BleachBit
2026-05-09 15:24 - 2025-11-20 20:05 - 000001466 _____ C:\Users\marti\OneDrive\Plocha\MSFS24.lnk

==================== Files in the root of some directories ========

2025-02-09 17:36 - 2025-02-09 17:40 - 000024576 _____ () C:\Users\marti\AppData\Roaming\EFB.db
2025-11-03 20:27 - 2025-11-03 20:27 - 000007603 _____ () C:\Users\marti\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 05-06-2026
Ran by marti (08-06-2026 20:08:58)
Running from C:\Users\marti\Downloads
Microsoft Windows 11 Pro Version 25H2 26200.8524 (X64) (2025-08-16 22:26:01)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-3429602048-725292175-2964145443-500 - Administrators - Disabled)
DefaultAccount (S-1-5-21-3429602048-725292175-2964145443-503 - Limited - Disabled)
Guest (S-1-5-21-3429602048-725292175-2964145443-501 - Limited - Disabled)
marti (S-1-5-21-3429602048-725292175-2964145443-1001 - Administrators - Enabled) => C:\Users\marti
WDAGUtilityAccount (S-1-5-21-3429602048-725292175-2964145443-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Aerosoft One 0.16.14 (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\6cfbc6f2-d82c-56dd-8cbb-177a5d4b5b90) (Version: 0.16.14 - Aerosoft GmbH)
APP Shop v2.0.0.6 (HKLM-x32\...\{3B9B2DDC-07B8-4F28-82D9-4092C4LE5B67}_is1) (Version: 2.0.0.6 - ASRock Inc.)
ASRock Restart to UEFI v1.0.15 (HKLM-x32\...\ASRock Restart to UEFI_is1) (Version: 1.0.15 - ASRock Inc.)
ASRRGBLED v2.0.217 (HKLM-x32\...\ASRock RGB LED_is1) (Version: 2.0.217 - ASRock Inc.)
A-Tuning v4.1.11 (HKLM-x32\...\A-Tuning_is1) (Version: 4.1.11 - ASRock Inc.)
BleachBit (HKLM-x32\...\BleachBit) (Version: 6.0.0.3482 - BleachBit)
Copilot (HKLM-x32\...\Microsoft Copilot) (Version: 148.0.3967.96 - Microsoft Corporation)
CPUID HWMonitor 1.63 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.63 - CPUID, Inc.)
Display Driver Uninstaller (HKLM-x32\...\Display Driver Uninstaller) (Version: 18.1.5.1 - Wagnardsoft)
Dynamic Application Loader Host Interface Service (HKLM\...\{12EF5653-F4C0-4B29-A4EE-E2C7A527E668}) (Version: 1.0.0.0 - Intel Corporation) Hidden
ENE Video Capture Box HAL (HKLM\...\{A096611D-BA11-4A1A-8D09-0A0462D7C8F2}) (Version: 1.0.5.15 - Ene Tech.) Hidden
ENE Video Capture Box HAL (HKLM-x32\...\{974259bf-3ed1-4cd6-9ed1-40c7f601a786}) (Version: 1.0.5.15 - Ene Tech.) Hidden
ENE_DRAM_RGB_AIO (HKLM\...\{DFAD06E0-C5FC-4154-8F95-65871D5AB5BF}) (Version: 1.0.23.1 - Ene Tech.) Hidden
ENE_DRAM_RGB_AIO (HKLM-x32\...\{3a0741bc-3391-41cd-81aa-0122796a0648}) (Version: 1.0.23.1 - Ene Tech.) Hidden
ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.0.17.0 - ENE TECHNOLOGY INC.) Hidden
ENE_EHD_M2_HAL (HKLM-x32\...\{6a0e18d7-c33b-4c8c-aa31-4beedf5956c6}) (Version: 1.0.17.0 - ENE TECHNOLOGY INC.) Hidden
ENE_External_Device_HAL (HKLM\...\{2B8E611F-0B51-4FAC-87BB-AF50D82E7DDA}) (Version: 1.0.12.7 - ENE Tech) Hidden
ENE_External_Device_HAL (HKLM-x32\...\{a7b1cf47-d8f0-423d-9494-568195f1c864}) (Version: 1.0.12.7 - ENE Tech) Hidden
ENE_MousePad_HAL (HKLM\...\{9E97178A-ADB8-4778-BE60-7E28E2A72721}) (Version: 1.0.2.0 - ENE TECHNOLOGY INC.) Hidden
ENE_MousePad_HAL (HKLM-x32\...\{c2c794a4-7986-4c45-884d-d4ca43b88df9}) (Version: 1.0.2.0 - ENE TECHNOLOGY INC.) Hidden
ENE_QSI_Loki_HAL (HKLM\...\{BDE43F26-5917-44F8-B86A-F1D9A6B80B32}) (Version: 1.0.3.0 - ENE TECHNOLOGY INC.) Hidden
ENE_QSI_Loki_HAL (HKLM-x32\...\{205ef3a8-937b-43cb-90fc-2f58f71408d8}) (Version: 1.0.3.0 - ENE TECHNOLOGY INC.) Hidden
ENE_X_AIC_HAL (HKLM\...\{CF703694-01C6-4062-B797-84DB215662BC}) (Version: 1.0.6.3 - ENE TECHNOLOGY INC.) Hidden
ENE_X_AIC_HAL (HKLM-x32\...\{c662a481-d76a-4188-95d2-6eb4ffd55542}) (Version: 1.0.6.3 - ENE TECHNOLOGY INC.) Hidden
Fenix Installer (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\FenixApp) (Version: 1.0.286 - FenixSim Ltd.)
FenixSim A320 (HKLM\...\{49120c8f-c92c-47c4-ba07-e99057c45d3d}) (Version: 2.4.0.4720 - FenixSim Ltd.)
FlyByWire Installer 3.7.2 (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\0d879536-06f1-5ce8-a012-f15731d81514) (Version: 3.7.2 - FlyByWire Simulations)
FS-ATC-Chatter (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\FS-ATC-Chatter) (Version: 1.2.4 - Stick And Rudder Studios)
FSDreamTeam Universal Installer version 1.2.8 (HKLM-x32\...\FSDreamTeam Universal Installer_is1) (Version: 1.2.8 - VIRTUALI Sagl)
FSRealistic+ version 1.1.9 (HKLM-x32\...\FSRealistic+_is1) (Version: 1.1.9 - )
FSUIPC7 v7.5.7 (HKLM-x32\...\FSUIPC72024) (Version: v7.5.7 - John L. Dowson)
ChasePlane for MSFS2024 (HKLM\...\{abce464a-86a8-4808-97ab-060158290100}) (Version: 2026.18.5.12 - Parallel 42)
iniManager (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\iniManager) (Version: 2.5.6 - iniBuilds Ltd.)
Intel(R) Chipset Device Software (HKLM\...\{2B96B7E3-FA08-4749-9D23-CDC64F1B835B}) (Version: 10.1.19600.8418 - Intel Corporation) Hidden
Intel(R) Chipset Device Software (HKLM-x32\...\{404581d0-19c1-47ba-bcd3-10178793c239}) (Version: 10.1.19600.8418 - Intel(R) Corporation)
Intel(R) Icls (HKLM\...\{39C50D87-BFD1-43DD-8A18-676086E328C9}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 2340.5.36.0 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{BA97A47F-9B59-4B07-BC82-FF3F6CE6E597}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Driver (HKLM\...\{C8EEBC98-5759-4B1D-9834-E5F897161475}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) ME WMI Provider (HKLM\...\{8105FECC-2670-4EA1-A98B-FA803A30AEEB}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Killer Performance Driver Suite UWD (HKLM\...\{FFC31014-7FD6-4720-8C5D-7B16E9E6F73E}) (Version: 3.1222.750 - Rivet Networks)
Malwarebytes version 5.5.4.252 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.5.4.252 - Malwarebytes)
MFS Cleaner/Fixer version 1.4.12 (HKLM\...\MfsCleanerFixer_is1) (Version: 1.4.12 - CraigyBabyJ)
Microsoft .NET Host - 6.0.36 (x64) (HKLM\...\{D6932D97-36F1-40B8-9CDC-CA8365B21000}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Host - 7.0.17 (x64) (HKLM\...\{089B0F2C-87D9-4470-B6E6-154DD6961C56}) (Version: 56.68.10360 - Microsoft Corporation) Hidden
Microsoft .NET Host - 8.0.19 (x64) (HKLM\...\{B84443A1-BE1B-4C5E-B834-E12133604B12}) (Version: 64.76.37566 - Microsoft Corporation) Hidden
Microsoft .NET Host - 9.0.10 (x64) (HKLM\...\{EB00D346-1FB5-46E0-89C0-93F056F5ACF4}) (Version: 72.40.40927 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.36 (x64) (HKLM\...\{A9E32B25-994B-4856-A12B-0EBED3050410}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 7.0.17 (x64) (HKLM\...\{6B4D3428-4800-446B-971F-62A7377F06F6}) (Version: 56.68.10360 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.19 (x64) (HKLM\...\{69A17DA9-300A-49B9-97F1-1EB7424570DE}) (Version: 64.76.37566 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 9.0.10 (x64) (HKLM\...\{FDC862D8-5CDD-4FC6-8E9A-873A689600BC}) (Version: 72.40.40927 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.36 (x64) (HKLM\...\{C912E33F-956A-4921-9F55-CC11AE8F09AF}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.36 (x64) (HKLM-x32\...\{9d3fc73f-1cf4-412c-a1c9-d2ad28ccbd62}) (Version: 6.0.36.34214 - Microsoft Corporation)
Microsoft .NET Runtime - 7.0.17 (x64) (HKLM\...\{A638EFAE-5229-46A8-9A18-D0FF9D9827D2}) (Version: 56.68.10360 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.19 (x64) (HKLM\...\{B9F7A454-0CCD-410C-A3E0-D1AAC300F150}) (Version: 64.76.37566 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.19 (x64) (HKLM-x32\...\{04f2ebb7-4f99-4441-bcc6-f5c28c103f3f}) (Version: 8.0.19.35115 - Microsoft Corporation)
Microsoft .NET Runtime - 9.0.10 (x64) (HKLM\...\{05987870-6EDD-4352-ADEA-4A8694040F3E}) (Version: 72.40.40927 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 149.0.4022.52 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 148.0.3967.96 - Microsoft Corporation) Hidden
Microsoft Flight Simulator 2024 SDK 1.6.9 (Core) (HKLM\...\{36ED6236-6D4B-4DE8-8712-EACF51F4274D}) (Version: 1.6.9 - Microsoft)
Microsoft Flight Simulator SDK 0.24.4 (Core) (HKLM\...\{3D42EBFC-1EBC-4468-9B77-388C2A3290FE}) (Version: 0.24.4 - Microsoft)
Microsoft GameInput (HKLM\...\{14EDF950-06B9-415F-862C-1D5DEC321AE6}) (Version: 3.3.221.0 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\OneDriveSetup.exe) (Version: 26.084.0504.0007 - Microsoft Corporation)
Microsoft Teams Meeting Add-in for Microsoft Office (HKLM\...\{A7AB73A3-CB10-4AA5-9D38-6AEFFBDE4C91}) (Version: 1.25.18302 - Microsoft)
Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.44.35211 (HKLM-x32\...\{0b5169e3-39da-4313-808e-1f9c0407f3bf}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.50.35719 (HKLM\...\{AECD4ED0-8A3B-41E9-92D1-6BEE0374CCAF}) (Version: 14.50.35719 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.50.35719 (HKLM\...\{61B44572-8722-4DAF-8ACF-8E742D30BCC5}) (Version: 14.50.35719 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.44.35211 (HKLM-x32\...\{C18FB403-1E88-43C8-AD8A-CED50F23DE8B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.44.35211 (HKLM-x32\...\{922480B5-CAEB-4B1B-AAA4-9716EFDCE26B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ v14 Redistributable (x64) - 14.50.35719 (HKLM-x32\...\{91ee571b-0e8a-4c65-9eaf-2e2f5fc60c00}) (Version: 14.50.35719.0 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 6.0.36 (x64) (HKLM\...\{61D4736B-3325-4D4A-BD41-8BD206C6A86E}) (Version: 48.144.23186 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.36 (x64) (HKLM-x32\...\{0532b8f2-12d7-43de-95fc-7b87006758a8}) (Version: 6.0.36.34217 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 7.0.17 (x64) (HKLM\...\{93812F65-BAA9-42E0-AF19-F15F39A92E3C}) (Version: 56.68.10379 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 7.0.17 (x64) (HKLM-x32\...\{24a68a65-6ac6-4276-9d7d-2c3939d8474e}) (Version: 7.0.17.33416 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.19 (x64) (HKLM\...\{A6EA542C-884C-4FE7-89E4-8C28E14B601C}) (Version: 64.76.37602 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.19 (x64) (HKLM-x32\...\{6b2575e2-0248-44c3-93f3-2eba040331ed}) (Version: 8.0.19.35118 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 9.0.10 (x64) (HKLM\...\{8466C2EB-71A6-4529-A615-0E8FE0CCCBED}) (Version: 72.40.40921 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 9.0.10 (x64) (HKLM-x32\...\{877aacfd-984e-464a-ba89-9fc575eb79ed}) (Version: 9.0.10.35325 - Microsoft Corporation)
Navigraph Hub 1.2.24 (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\55f042a9-1285-5a7a-abcd-4e2044c5b51b) (Version: 1.2.24 - Navigraph)
Navigraph Simlink 1.1.41.1805 (HKLM\...\{E5431A0D-8735-4E89-9E41-D820334B2909}}_is1) (Version: 1.1.41.1805 - Navigraph)
NVIDIA App 11.0.7.247 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NvApp) (Version: 11.0.7.247 - NVIDIA Corporation)
NVIDIA FrameView SDK 1.7.12227.37421622 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.7.12227.37421622 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.4.5.7 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.4.5.7 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 610.47 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 610.47 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.23.1019 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.23.1019 - NVIDIA Corporation)
Orbx Central 4.5.27 (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\7cf15176-b7c3-5704-8319-ddca84b92c9a) (Version: 4.5.27 - Orbx Simulation Systems Pty Ltd)
Pilot Experience Sim Central V2 (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\pesim-central-v2-client) (Version: 2.1.8 - Pilot Experience Sim)
PMDG OC3 3.0.281 (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\e64f4b9a-948d-5251-9b57-0bd6f3fbb888) (Version: 3.0.281 - PMDG Simulations, LLC.)
PSXT 15.3.2 (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\PSXT_is1) (Version: - Nico Kaan)
RealTraffic Launcher (HKLM\...\RealTraffic Launcher_is1) (Version: - Inside Systems Pty Ltd)
REX Atmos Core (HKLM\...\{5187A19E-80FF-4BDE-BCC5-84AA3F006640}) (Version: 8.1.2025.1210 - REX Game Studios, LLC.)
REX Atmos Core (HKLM\...\{525601AC-690F-4B81-A037-9F46BB5AA798}) (Version: 8.0.2025.0825 - REX Game Studios, LLC.)
SimAppPro 1.16.99 (HKLM-x32\...\2873a9d6-0e65-5078-b232-daee9dce2239) (Version: 1.16.99 - WINWING)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
T.Flight Hotas drivers (HKLM-x32\...\{E08E6F77-E66C-47FC-8565-0AA3389D48C8}) (Version: 4.TFHT.2025 - Thrustmaster)
Thunder Master v4.17 (HKLM\...\{EE04522C-0814-4B63-AE57-0B63E5A355BB}_is1) (Version: 4.17.0.4 - Palit Microsystems Ltd.)
TriTriSim Hub (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\TriTriSim Hub) (Version: 1.1.2 - tritrisim)
vAMSYS Pegasus (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\vAMSYS-Pegasus) (Version: 2.0.5 - vAMSYS LTD)
Verbatim_SureFireGaming_Product (HKLM\...\{35CB65C6-A7E3-4EE7-AD40-738D70A72164}) (Version: 1.0.3.11 - Verbatim) Hidden
Verbatim_SureFireGaming_Product (HKLM-x32\...\{d601832a-0d94-46ce-9b19-78e8a5887313}) (Version: 1.0.3.11 - Verbatim) Hidden
WinRAR 7.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 7.01.0 - win.rar GmbH)

Packages:
=========
Edit Docx PLUS -> C:\Program Files\WindowsApps\24091FileFormatApps.WordEditorBasic_2.1.13.0_x64__8t2vtv4rwtrk0 [2026-03-18] (File Format Apps)
HyperX NGENUITY -> C:\Program Files\WindowsApps\33C30B79.NGENUITY_2.35.0.0_x64__922sw8z9z7n5w [2026-04-02] (HP Inc.) [Startup Task]
Killer Intelligence Center -> C:\Program Files\WindowsApps\rivetnetworks.killercontrolcenter_3.1222.726.0_x64__rh07ty8m5nkag [2025-05-18] (Rivet Networks LLC) [Startup Task]
Malwarebytes Anti-Malware -> C:\Program Files\Malwarebytes\Anti-Malware [2026-05-08] ()
Microsoft Jenny (Natural) - English (United States) -> C:\Program Files\WindowsApps\MicrosoftWindows.Voice.en-US.Jenny.1_1.0.8.0_x64__cw5n1h2txyewy [2025-05-18] (Microsoft Windows)
Microsoft.AIFabric.CBS.1.6 -> C:\WINDOWS\SystemApps\Microsoft.AIFabric.CBS.1.6_8wekyb3d8bbwe [2026-05-27] (Microsoft Corporation)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.969.0_x64__56jybvy8sckqj [2026-04-11] (NVIDIA Corp.)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.43.296.0_x64__dt26b99r8h8gj [2025-08-09] (Realtek Semiconductor Corp)
Speech Pack - English (United States) -> C:\Program Files\WindowsApps\MicrosoftWindows.Speech.en-US.1_1.0.28.0_x64__cw5n1h2txyewy [2026-04-14] (Microsoft Windows)
WinRAR -> C:\Program Files\WinRAR [2025-03-16] (win.rar GmbH)
XboxInsiderHub -> C:\Program Files\WindowsApps\Microsoft.XboxInsider_1.2508.26001.0_x64__8wekyb3d8bbwe [2025-09-17] (Microsoft Corporation)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3429602048-725292175-2964145443-1001_Classes\CLSID\{80172dde-4e20-4df0-81a2-0a48553e80bb}\localserver32 -> "C:\Users\marti\AppData\Local\NhNotifSys\nahimic\nahimicNotifSys.exe" -ToastActivated /app nahimic => No File
CustomCLSID: HKU\S-1-5-21-3429602048-725292175-2964145443-1001_Classes\CLSID\{EABAE40C-B27C-455A-B672-F234DD780948}\InprocServer32 -> C:\Users\marti\AppData\Local\Microsoft\TeamsMeetingAdd-in\1.25.18302\x64\Microsoft.Teams.MeetingAddin.DLL (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2026-05-08] (Malwarebytes Inc -> Malwarebytes)
ContextMenuHandlers5: [NvAppDesktopContext] -> {F2E8B4A1-9C7D-4F6E-B3A5-8D2C1F4E9B7A} => C:\Program Files\NVIDIA Corporation\NVIDIA App\NvCpl\nvui.dll [2026-04-24] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_c8bc842500fab35b\nvshext.dll [2026-05-21] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2026-05-08] (Malwarebytes Inc -> Malwarebytes)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2025-12-10 16:29 - 2025-12-10 16:29 - 000158208 _____ () [File not signed] [File is in use] C:\REX Atmos Core\Microsoft.FlightSimulator.SimConnect.dll
2026-06-07 11:07 - 2026-06-03 08:59 - 000072704 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\MagicThread.dll
2026-06-07 11:07 - 2026-06-03 08:59 - 000023552 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTDefaultEvents.dll
2026-06-07 11:07 - 2026-06-03 08:59 - 000090112 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTEventsBinding.dll
2026-06-07 11:07 - 2026-06-03 08:59 - 000035840 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTFactoryTest.dll
2026-06-07 11:07 - 2026-06-03 08:59 - 000359936 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTHID.dll
2026-06-07 11:07 - 2026-06-03 08:59 - 000627200 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTHID_JSAPI.node
2026-06-07 11:07 - 2026-06-03 08:59 - 000136192 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTMapConfigLink.dll
2026-06-07 11:07 - 2026-06-03 08:59 - 000017920 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTMapLink.dll
2026-06-07 11:07 - 2026-06-03 08:59 - 000032256 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTMonitor.dll
2026-06-07 11:07 - 2026-06-03 08:59 - 000033792 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTVirtualDeviceConfig.dll
2026-06-08 17:44 - 2026-06-03 08:53 - 000130048 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3EcEoK7tyD8Hw6BmLlPWZBoDowr\resources\app.asar.unpacked\node\WWTEffect_NODE\WWTEffect_NODE.node
2026-06-08 17:44 - 2026-06-03 08:53 - 000067072 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3EcEoK7tyD8Hw6BmLlPWZBoDowr\resources\app.asar.unpacked\node\WWTGP_NODE\SimConnect.dll
2026-06-08 17:44 - 2026-06-03 08:53 - 000154624 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3EcEoK7tyD8Hw6BmLlPWZBoDowr\resources\app.asar.unpacked\node\WWTGP_NODE\WWTDcsLinker.dll
2026-06-08 17:44 - 2026-06-03 08:53 - 000300544 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3EcEoK7tyD8Hw6BmLlPWZBoDowr\resources\app.asar.unpacked\node\WWTGP_NODE\WWTGP_NODE.node
2026-06-08 17:44 - 2026-06-03 08:53 - 000119808 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3EcEoK7tyD8Hw6BmLlPWZBoDowr\resources\app.asar.unpacked\node\WWTGP_NODE\WWTP3DSimConnect.dll
2026-06-08 17:44 - 2026-06-03 08:53 - 000141824 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3EcEoK7tyD8Hw6BmLlPWZBoDowr\resources\app.asar.unpacked\node\WWTGP_NODE\WWTXPlaneLinker.dll
2026-06-08 17:44 - 2026-06-03 08:53 - 000094720 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3EcEoK7tyD8Hw6BmLlPWZBoDowr\resources\app.asar.unpacked\node\WWTHID_NODE\MagicThread.dll
2026-06-08 17:44 - 2026-06-03 08:53 - 000483840 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3EcEoK7tyD8Hw6BmLlPWZBoDowr\resources\app.asar.unpacked\node\WWTHID_NODE\WWTHID.dll
2026-06-08 17:44 - 2026-06-03 08:53 - 000206336 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3EcEoK7tyD8Hw6BmLlPWZBoDowr\resources\app.asar.unpacked\node\WWTHID_NODE\WWTHID_NODE.node
2026-06-08 17:44 - 2026-06-03 08:53 - 000125440 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3EcEoK7tyD8Hw6BmLlPWZBoDowr\resources\app.asar.unpacked\node\WWTOS_NODE\WWTOS_NODE.node
2026-06-08 17:44 - 2026-06-08 17:44 - 001685504 ____N () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\caa0278d-d809-461d-83c0-017031558f08.tmp.node
2026-02-19 17:57 - 2026-06-03 08:59 - 002163200 _____ () [File not signed] C:\Program Files (x86)\SimAppPro\ffmpeg.dll
2026-02-19 17:57 - 2026-06-03 08:59 - 000311808 _____ () [File not signed] C:\Program Files (x86)\SimAppPro\libegl.dll
2026-02-19 17:57 - 2026-06-03 08:59 - 006904320 _____ () [File not signed] C:\Program Files (x86)\SimAppPro\libglesv2.dll
2025-12-16 16:25 - 2025-12-16 16:25 - 001119232 _____ () [File not signed] C:\REX Atmos Core\MSFSWXDLL2024.dll
2025-12-10 16:29 - 2025-12-10 16:29 - 000070656 _____ () [File not signed] C:\REX Atmos Core\SimConnect.dll
2025-02-01 14:16 - 2025-11-21 13:31 - 002866176 _____ () [File not signed] C:\Users\marti\AppData\Local\Programs\navigraph-hub\ffmpeg.dll
2025-02-01 14:16 - 2025-11-21 13:31 - 000479232 _____ () [File not signed] C:\Users\marti\AppData\Local\Programs\navigraph-hub\libegl.dll
2025-02-01 14:16 - 2025-11-21 13:31 - 007672320 _____ () [File not signed] C:\Users\marti\AppData\Local\Programs\navigraph-hub\libglesv2.dll
2025-02-01 14:16 - 2025-11-21 13:31 - 005312000 _____ () [File not signed] C:\Users\marti\AppData\Local\Programs\navigraph-hub\vk_swiftshader.dll
2026-06-08 17:44 - 2026-06-03 08:53 - 002877440 _____ () [File not signed] C:\Users\marti\AppData\Local\Temp\3EcEoK7tyD8Hw6BmLlPWZBoDowr\ffmpeg.dll
2026-06-08 17:44 - 2026-06-03 08:53 - 000478208 _____ () [File not signed] C:\Users\marti\AppData\Local\Temp\3EcEoK7tyD8Hw6BmLlPWZBoDowr\libegl.dll
2026-06-08 17:44 - 2026-06-03 08:53 - 007808512 _____ () [File not signed] C:\Users\marti\AppData\Local\Temp\3EcEoK7tyD8Hw6BmLlPWZBoDowr\libglesv2.dll
2026-06-08 17:44 - 2026-06-03 08:53 - 005238784 _____ () [File not signed] C:\Users\marti\AppData\Local\Temp\3EcEoK7tyD8Hw6BmLlPWZBoDowr\vk_swiftshader.dll
2026-06-08 17:44 - 2026-06-08 17:44 - 000012288 _____ () [File not signed] C:\Users\marti\AppData\Local\Temp\nslE6E8.tmp\System.dll
2025-06-12 19:35 - 2025-06-12 19:35 - 000067072 _____ () [File not signed] C:\Users\marti\AppData\Local\TriTriSim Hub\SimConnect.dll
2026-06-07 11:07 - 2026-06-03 08:59 - 006018560 _____ (FreeImage) [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\FreeImage.dll
2024-02-21 11:22 - 2024-02-21 11:22 - 000504832 _____ (Maurício David) [File not signed] [File is in use] C:\REX Atmos Core\LiteDB.dll
2026-06-08 17:44 - 2026-06-08 17:44 - 000102400 _____ (Muldersoft.com Free Software Division) [File not signed] C:\Users\marti\AppData\Local\Temp\nslE6E8.tmp\StdUtils.dll
2026-04-11 13:51 - 2026-05-10 16:55 - 000000000 ____L (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA App\MessageBus\NvMessageBusBroadcast.dll] C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem\NvMessageBusBroadcast.dll
2025-12-29 13:36 - 2025-12-29 13:36 - 001385984 _____ (REX Game Studios, LLC.) [File not signed] [File is in use] C:\REX Atmos Core\weathercreator.dll
2025-12-29 14:01 - 2025-12-29 14:01 - 000087552 _____ (REX Game Studios, LLC.) [File not signed] [File is in use] C:\REX Atmos Core\weatherforcemsfs24.dll
2025-02-01 14:18 - 2024-04-18 13:27 - 002293248 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files\Navigraph\Simlink\LIBEAY32.dll
2025-02-01 14:18 - 2024-04-18 13:27 - 000386560 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files\Navigraph\Simlink\ssleay32.dll
2025-02-01 14:18 - 2024-04-18 13:27 - 000047616 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\bearer\qgenericbearer.dll
2025-02-01 14:18 - 2024-04-18 13:27 - 000031744 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\imageformats\qgif.dll
2025-02-01 14:18 - 2024-04-18 13:27 - 000040960 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\imageformats\qicns.dll
2025-02-01 14:18 - 2024-04-18 13:27 - 000032256 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\imageformats\qico.dll
2025-02-01 14:18 - 2024-04-18 13:27 - 000397312 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\imageformats\qjpeg.dll
2025-02-01 14:18 - 2024-04-18 13:27 - 000025600 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\imageformats\qsvg.dll
2025-02-01 14:18 - 2024-04-18 13:27 - 000025088 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\imageformats\qtga.dll
2025-02-01 14:18 - 2024-04-18 13:27 - 000374272 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\imageformats\qtiff.dll
2025-02-01 14:18 - 2024-04-18 13:27 - 000023552 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\imageformats\qwbmp.dll
2025-02-01 14:18 - 2024-04-18 13:27 - 000491520 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\imageformats\qwebp.dll
2025-02-01 14:18 - 2024-04-18 13:27 - 001453568 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\platforms\qwindows.dll
2025-02-01 14:18 - 2024-04-18 13:27 - 006130176 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\Qt5Core.dll
2025-02-01 14:18 - 2024-04-18 13:27 - 006470656 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\Qt5Gui.dll
2025-02-01 14:18 - 2024-04-18 13:27 - 001314816 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\Qt5Network.dll
2025-02-01 14:18 - 2024-04-18 13:27 - 000332288 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\Qt5Svg.dll
2025-02-01 14:18 - 2024-04-18 13:27 - 005580800 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\Qt5Widgets.dll
2025-02-01 14:18 - 2024-04-18 13:27 - 000137216 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\styles\qwindowsvistastyle.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) =============


==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2025-02-01 00:42 - 2025-02-01 00:42 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

2025-12-08 20:57 - 2025-12-08 20:57 - 000000437 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics

==================== Network ===========================

(Currently there is no automatic fix for this section.)

DNS Servers: 192.168.1.1
Windows Firewall is enabled.

Network Binding:
=============
Ethernet: Realtek Gaming 2.5GbE Family Controller -> rt640x64.sys
Wi-Fi: Killer(R) Wi-Fi 6E AX1675x 160MHz Wireless Network Adapter (210NGW) -> Netwtw14.sys
Síťové připojení Bluetooth: Bluetooth Device (Personal Area Network) -> bthpan.sys

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3429602048-725292175-2964145443-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\marti\AppData\Local\Packages\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\LocalCache\Microsoft\IrisService\15681135844265366823\134253856673660566.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 5) (TamperProtectionSource: 2)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Program Files (x86)\Addon Manager
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Program Files\FenixSim A320
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Program Files\FenixSim A320\Fenix.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Program Files\FenixSim A320\deps\FenixBootstrapper.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Program Files\FenixSim A320\deps\FenixCDU.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Program Files\FenixSim A320\deps\FenixDisplay.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Program Files\FenixSim A320\deps\FenixSystem.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Program Files\FenixSim A320\deps\GqlGateway\Fenix.GqlGateway.exe


==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_4A886EB596DDE810C696BFE47BAAC943"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{4DB20927-AB65-476B-86A9-FAA3185BA230}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Stronghold Crusader Definitive Edition\Stronghold Crusader Definitive Edition.exe () [File not signed]
FirewallRules: [{6DEA4A50-4212-4C94-A751-475E55D6B3AF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Stronghold Crusader Definitive Edition\Stronghold Crusader Definitive Edition.exe () [File not signed]
FirewallRules: [UDP Query User{85C1CEF4-E338-432C-A2B4-D4EFA3C6D5D4}C:\users\marti\appdata\roaming\microsoft flight simulator 2024\packages\community\fsltl-traffic-injector\fsltl-trafficinjector.exe] => (Allow) C:\users\marti\appdata\roaming\microsoft flight simulator 2024\packages\community\fsltl-traffic-injector\fsltl-trafficinjector.exe (Node.js) [File not signed]
FirewallRules: [TCP Query User{D2C14152-CC5F-41D7-8E71-BF18B4382A16}C:\users\marti\appdata\roaming\microsoft flight simulator 2024\packages\community\fsltl-traffic-injector\fsltl-trafficinjector.exe] => (Allow) C:\users\marti\appdata\roaming\microsoft flight simulator 2024\packages\community\fsltl-traffic-injector\fsltl-trafficinjector.exe (Node.js) [File not signed]
FirewallRules: [UDP Query User{03823B6E-D220-4505-880B-A2A419C55560}C:\program files\fenixsim a320\deps\gqlgateway\fenix.gqlgateway.exe] => (Allow) C:\program files\fenixsim a320\deps\gqlgateway\fenix.gqlgateway.exe (FenixSim Limited -> FenixSim Ltd.)
FirewallRules: [TCP Query User{4A59D9D8-093E-4293-BB1B-2B9AC0DFEA50}C:\program files\fenixsim a320\deps\gqlgateway\fenix.gqlgateway.exe] => (Allow) C:\program files\fenixsim a320\deps\gqlgateway\fenix.gqlgateway.exe (FenixSim Limited -> FenixSim Ltd.)
FirewallRules: [UDP Query User{C627BBA9-8E18-477B-8F94-B33C89EE7DA4}C:\program files\fenixsim a320\deps\fenixsystem.exe] => (Allow) C:\program files\fenixsim a320\deps\fenixsystem.exe (FenixSim Limited -> FenixSim Ltd.)
FirewallRules: [TCP Query User{44FC857C-1A87-4A94-B2D1-B6825823E407}C:\program files\fenixsim a320\deps\fenixsystem.exe] => (Allow) C:\program files\fenixsim a320\deps\fenixsystem.exe (FenixSim Limited -> FenixSim Ltd.)
FirewallRules: [{3DB3E66F-10AF-4AEB-A46F-5EEE913A285C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\KingdomComeDeliverance2\Bin\Win64MasterMasterSteamPGO\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [{81AF212D-8C22-4885-9625-4F4CF2417AFE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\KingdomComeDeliverance2\Bin\Win64MasterMasterSteamPGO\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [{FE7793A9-39CF-43E9-888A-A3D0F00B5BFE}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{D6C9F1FF-425A-44A9-8C31-9B6D935ABAE3}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [TCP Query User{113B68B2-EDC0-4914-A02C-2012AC8F7740}C:\program files (x86)\simapppro\simapppro.exe] => (Allow) C:\program files (x86)\simapppro\simapppro.exe (WINWING) [File not signed]
FirewallRules: [UDP Query User{884759EC-8ED9-4C6D-9937-6AB86754CA26}C:\program files (x86)\simapppro\simapppro.exe] => (Allow) C:\program files (x86)\simapppro\simapppro.exe (WINWING) [File not signed]
FirewallRules: [{E12F0322-7D7B-4121-9D46-D6C660DDC024}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25212.2101.3846.4105_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{51B8DDEF-2C2B-48B2-AC35-6441862DABBB}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25212.2101.3846.4105_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{D2FDC3A0-64F8-4993-8D60-C20EFDC6206F}] => (Allow) LPort=8736
FirewallRules: [{6BD3D8FC-AACA-4F0D-991D-273BC13BCA17}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\MSFS2024\FlightSimulator2024.exe (Asobo Studio) [File not signed]
FirewallRules: [{87B3C153-D1BE-4493-83A1-04307CC3DC8E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\MSFS2024\FlightSimulator2024.exe (Asobo Studio) [File not signed]
FirewallRules: [TCP Query User{C2F847EB-0FF2-4A7B-97FF-45B4B0BA3DAC}C:\users\marti\appdata\local\programs\pmdg-oc3\pmdg oc3.exe] => (Allow) C:\users\marti\appdata\local\programs\pmdg-oc3\pmdg oc3.exe (Gotaclue Robert Miroszewski -> PMDG Simulations, LLC.)
FirewallRules: [UDP Query User{A1793A8B-4146-4494-99A1-BF50A8D97388}C:\users\marti\appdata\local\programs\pmdg-oc3\pmdg oc3.exe] => (Allow) C:\users\marti\appdata\local\programs\pmdg-oc3\pmdg oc3.exe (Gotaclue Robert Miroszewski -> PMDG Simulations, LLC.)
FirewallRules: [{08350F58-A2C8-4284-A912-E61F7A84E019}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{9710A58C-4B8A-4214-8E14-FA3DAD4B0DC6}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [TCP Query User{A8A554D7-2436-4BC4-8733-6E9DC2BD6D56}C:\users\marti\appdata\local\inimanager\app-2.4.9\inimanager.exe] => (Allow) C:\users\marti\appdata\local\inimanager\app-2.4.9\inimanager.exe => No File
FirewallRules: [UDP Query User{D30C317D-B92D-4ABF-BF35-C60095BE1547}C:\users\marti\appdata\local\inimanager\app-2.4.9\inimanager.exe] => (Allow) C:\users\marti\appdata\local\inimanager\app-2.4.9\inimanager.exe => No File
FirewallRules: [TCP Query User{94C8DDBE-2839-4A51-8943-48402C05A3A5}C:\users\marti\appdata\roaming\microsoft flight simulator 2024\packages\community\rkapps-fsrealistic\service\fsrealistic-plus.exe] => (Allow) C:\users\marti\appdata\roaming\microsoft flight simulator 2024\packages\community\rkapps-fsrealistic\service\fsrealistic-plus.exe (Roy Kronenfeld -> rkApps)
FirewallRules: [UDP Query User{9FF9441A-8853-4DF2-87BC-862B16B6F0B9}C:\users\marti\appdata\roaming\microsoft flight simulator 2024\packages\community\rkapps-fsrealistic\service\fsrealistic-plus.exe] => (Allow) C:\users\marti\appdata\roaming\microsoft flight simulator 2024\packages\community\rkapps-fsrealistic\service\fsrealistic-plus.exe (Roy Kronenfeld -> rkApps)
FirewallRules: [TCP Query User{E25F9916-C669-4252-B876-40F3C158102D}C:\users\marti\appdata\local\programs\aerosoft-one\aerosoft one.exe] => (Allow) C:\users\marti\appdata\local\programs\aerosoft-one\aerosoft one.exe (aerosoft gmbH Luftfahrt-Datentechnik -> Aerosoft GmbH)
FirewallRules: [UDP Query User{A6E68B3F-14F8-4EA8-810B-A5B86DE69F08}C:\users\marti\appdata\local\programs\aerosoft-one\aerosoft one.exe] => (Allow) C:\users\marti\appdata\local\programs\aerosoft-one\aerosoft one.exe (aerosoft gmbH Luftfahrt-Datentechnik -> Aerosoft GmbH)
FirewallRules: [EdgeWebView2-MDNS-In-UDP] => (Allow) C:\WINDOWS\system32\Microsoft-Edge-WebView\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{1EB0AB62-5E2E-4A62-B29C-79B937C065C8}C:\program files\realtrafficlauncher\jre\bin\java.exe] => (Allow) C:\program files\realtrafficlauncher\jre\bin\java.exe
FirewallRules: [UDP Query User{0EF71082-98CA-4578-B02C-0DAB37A1CB8B}C:\program files\realtrafficlauncher\jre\bin\java.exe] => (Allow) C:\program files\realtrafficlauncher\jre\bin\java.exe
FirewallRules: [TCP Query User{17F3C6BD-98CC-4ECB-AA49-4E459E4839AB}C:\psxt\psxt.exe] => (Allow) C:\psxt\psxt.exe () [File not signed]
FirewallRules: [UDP Query User{88820988-A524-4111-AA52-7B37BA7CD500}C:\psxt\psxt.exe] => (Allow) C:\psxt\psxt.exe () [File not signed]
FirewallRules: [{758B92EB-4C6B-43DC-81CE-50B0AD8C7AC2}] => (Allow) C:\Program Files (x86)\Microsoft\Copilot\Application\mscopilot.exe (Microsoft Corporation -> Microsoft Corporation)

==================== Restore Points =========================


==================== Faulty Device Manager Devices ============

==================== Event log errors: ========================

Application errors:
==================
Error: (06/08/2026 02:19:05 PM) (Source: Application Hang) (EventID: 1002) (User: NT AUTHORITY)
Description: Verze 10.0.26100.8521 programu explorer.exe ukončila interakci se systémem Windows a byla ukončena. Pokud chcete zjistit, zda jsou k dispozici další informace o problému, zkontrolujte historii problémů v ovládacím panelu Zabezpečení a údržba.

Error: (06/08/2026 02:18:17 PM) (Source: Application Hang) (EventID: 1002) (User: NT AUTHORITY)
Description: Verze 10.0.26100.8521 programu explorer.exe ukončila interakci se systémem Windows a byla ukončena. Pokud chcete zjistit, zda jsou k dispozici další informace o problému, zkontrolujte historii problémů v ovládacím panelu Zabezpečení a údržba.

Error: (06/07/2026 11:07:01 AM) (Source: Application Error) (EventID: 1000) (User: MARTIN)
Description: Název chybující aplikace: bad_module_info, verze: 0.0.0.0, časové razítko: 0x00000000
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0x00000000
Posun chyby: 0x0000000000000000
ID chybujícího procesu: 0x60a4
Čas spuštění chybující aplikace: 0x1dcf65b8dea0709
Cesta k chybující aplikaci: bad_module_info
Cesta k chybujícímu modulu: unknown
ID sestavy: 7424b6e1-a473-44b5-8caa-7b45cb49872d
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:

Error: (05/24/2026 06:43:56 PM) (Source: Application Hang) (EventID: 1002) (User: NT AUTHORITY)
Description: Verze 10.0.26100.8328 programu dllhost.exe ukončila interakci se systémem Windows a byla ukončena. Pokud chcete zjistit, zda jsou k dispozici další informace o problému, zkontrolujte historii problémů v ovládacím panelu Zabezpečení a údržba.

Error: (05/19/2026 05:41:47 PM) (Source: Application Hang) (EventID: 1002) (User: NT AUTHORITY)
Description: Verze 0.0.0.0 programu StoreDesktopExtension.exe ukončila interakci se systémem Windows a byla ukončena. Pokud chcete zjistit, zda jsou k dispozici další informace o problému, zkontrolujte historii problémů v ovládacím panelu Zabezpečení a údržba.

Error: (05/16/2026 06:15:40 PM) (Source: Application Error) (EventID: 1000) (User: MARTIN)
Description: Název chybující aplikace: couatl64_MSFS2024.exe, verze: 5.0.0.6569, časové razítko: 0x69fa91fa
Název chybujícího modulu: ntdll.dll, verze: 10.0.26100.8328, časové razítko: 0x0022b8e0
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001519d
ID chybujícího procesu: 0x5964
Čas spuštění chybující aplikace: 0x1dce540c9410551
Cesta k chybující aplikaci: C:\Program Files (x86)\Addon Manager\couatl64\couatl64_MSFS2024.exe
Cesta k chybujícímu modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
ID sestavy: dd209331-ffaf-4f59-8ac6-a17b0bd5a7a5
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:

Error: (05/16/2026 10:29:17 AM) (Source: Application Hang) (EventID: 1002) (User: NT AUTHORITY)
Description: Verze 15.1.2.0 programu PSXT.exe ukončila interakci se systémem Windows a byla ukončena. Pokud chcete zjistit, zda jsou k dispozici další informace o problému, zkontrolujte historii problémů v ovládacím panelu Zabezpečení a údržba.

Error: (05/15/2026 07:39:42 PM) (Source: Application Error) (EventID: 1000) (User: MARTIN)
Description: Název chybující aplikace: couatl64_MSFS2024.exe, verze: 5.0.0.6569, časové razítko: 0x69fa91fa
Název chybujícího modulu: soft_oal.dll, verze: 1.23.1.0, časové razítko: 0x6435bcaf
Kód výjimky: 0x40000015
Posun chyby: 0x00000000000d9076
ID chybujícího procesu: 0x3f00
Čas spuštění chybující aplikace: 0x1dce4903c830f56
Cesta k chybující aplikaci: C:\Program Files (x86)\Addon Manager\couatl64\couatl64_MSFS2024.exe
Cesta k chybujícímu modulu: C:\Program Files (x86)\Addon Manager\couatl64\soft_oal.dll
ID sestavy: 43f476af-42f2-49a2-b28e-37e28d36ea0a
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:


System errors:
=============
Error: (06/08/2026 02:21:06 PM) (Source: DCOM) (EventID: 10010) (User: MARTIN)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (06/08/2026 02:21:06 PM) (Source: DCOM) (EventID: 10010) (User: MARTIN)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (06/08/2026 02:21:06 PM) (Source: DCOM) (EventID: 10010) (User: MARTIN)
Description: Server {021E4F06-9DCC-49AD-88CF-ECC2DA314C8A} se v daném časovém limitu neregistroval u služby DCOM.

Error: (06/08/2026 02:21:06 PM) (Source: DCOM) (EventID: 10010) (User: MARTIN)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (06/08/2026 02:21:06 PM) (Source: DCOM) (EventID: 10010) (User: MARTIN)
Description: Server {021E4F06-9DCC-49AD-88CF-ECC2DA314C8A} se v daném časovém limitu neregistroval u služby DCOM.

Error: (06/08/2026 02:21:06 PM) (Source: DCOM) (EventID: 10010) (User: MARTIN)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (06/08/2026 02:21:06 PM) (Source: DCOM) (EventID: 10010) (User: MARTIN)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (06/08/2026 02:21:06 PM) (Source: DCOM) (EventID: 10010) (User: MARTIN)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.


Windows Defender:
================
Date: 2026-06-08 11:52:35
Description:
Antivirová ochrana v programu Microsoft Defender ѕċăŋ ħаŝ вėёⁿ śτõρφēð ьęƒōřέ ¢ǿmφļêŧĩōñ.%ⁿ %τŠćáŋ İĐ:%ь{B81B1EB8-3F0E-42C1-A754-FC56DAF6E9BC}%ή %ťЅĉªп Ŧўφě:%ъAntimalwarový program%ñ %ťŜ¢απ Ρäŕâmзτєřš:%вRychlé prohledávání%и %тŰšèŕ:%ъNT AUTHORITY\SYSTEM%п %ťŞŧόр Яëαşби:%ьŜčћêďŭľëđ ś¢ăп ŵâŝ śκΐφρèð вєćąűśë τћ℮ ļâѕт ŝűċčэşšƒµℓ ŝċаπ щàś ẃīτнĩñ тђë ľâşτ 7 ðαўş

Date: 2026-05-26 16:16:59
Description:
Antivirová ochrana v programu Microsoft Defender ѕċăŋ ħаŝ вėёⁿ śτõρφēð ьęƒōřέ ¢ǿmφļêŧĩōñ.%ⁿ %τŠćáŋ İĐ:%ь{2C815233-296B-4AA0-8EAE-F8E4CC7F935A}%ή %ťЅĉªп Ŧўφě:%ъAntimalwarový program%ñ %ťŜ¢απ Ρäŕâmзτєřš:%вRychlé prohledávání%и %тŰšèŕ:%ъNT AUTHORITY\SYSTEM%п %ťŞŧόр Яëαşби:%ьŘРĈ сбллêςťίôп гüπðóшп

Date: 2026-05-16 18:40:44
Description:
Antivirová ochrana v programu Microsoft Defender ѕċăŋ ħаŝ вėёⁿ śτõρφēð ьęƒōřέ ¢ǿmφļêŧĩōñ.%ⁿ %τŠćáŋ İĐ:%ь{9F0E1062-7A97-4EAC-AC61-586137A6F9E5}%ή %ťЅĉªп Ŧўφě:%ъAntimalwarový program%ñ %ťŜ¢απ Ρäŕâmзτєřš:%вRychlé prohledávání%и %тŰšèŕ:%ъNT AUTHORITY\SYSTEM%п %ťŞŧόр Яëαşби:%ьЅċћêďùℓêð šςāņ ẃάš ѕķįррέð ъέĉąύšě ŧħє ŀäѕŧ śџć¢éŝѕƒũℓ şčãň ώăѕ ωîŧћίŋ ŧĥë ŀāşτ 7 ðåýŝ

Date: 2026-05-10 16:52:37
Description:
Antivirová ochrana v programu Microsoft Defender ѕċăŋ ħаŝ вėёⁿ śτõρφēð ьęƒōřέ ¢ǿmφļêŧĩōñ.%ⁿ %τŠćáŋ İĐ:%ь{4F76E534-64F5-4DC3-BE9E-24DB714E0B9A}%ή %ťЅĉªп Ŧўφě:%ъAntimalwarový program%ñ %ťŜ¢απ Ρäŕâmзτєřš:%вRychlé prohledávání%и %тŰšèŕ:%ъNT AUTHORITY\SYSTEM%п %ťŞŧόр Яëαşби:%ьЅċћêďùℓêð šςāņ ẃάš ѕķįррέð ъέĉąύšě ŧħє ŀäѕŧ śџć¢éŝѕƒũℓ şčãň ώăѕ ωîŧћίŋ ŧĥë ŀāşτ 7 ðåýŝ

Date: 2026-04-24 19:11:41
Description:
Antivirová ochrana v programu Microsoft Defender ѕċăŋ ħаŝ вėёⁿ śτõρφēð ьęƒōřέ ¢ǿmφļêŧĩōñ.%ⁿ %τŠćáŋ İĐ:%ь{2470FD8B-B005-4AC7-A2F3-3B16DE198A2C}%ή %ťЅĉªп Ŧўφě:%ъAntimalwarový program%ñ %ťŜ¢απ Ρäŕâmзτєřš:%вRychlé prohledávání%и %тŰšèŕ:%ъNT AUTHORITY\SYSTEM%п %ťŞŧόр Яëαşби:%ьЅċћêďùℓêð šςāņ ẃάš ѕķįррέð ъέĉąύšě ŧħє ŀäѕŧ śџć¢éŝѕƒũℓ şčãň ώăѕ ωîŧћίŋ ŧĥë ŀāşτ 7 ðåýŝ
Event[0]

Date: 2026-05-21 18:46:07
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.451.29.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.26040.8
Kód chyby: 0x80240016
Popis chyby: Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.

Date: 2026-04-11 13:59:09
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.449.44.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.26030.3008
Kód chyby: 0x8007045b
Popis chyby: Probíhá vypnutí systému.

Date: 2026-04-11 13:47:39
Description:
Funkce Ochrana v reálném čase u prohledávání Antivirová ochrana v programu Microsoft Defender zjistila chybu a došlo k jejímu selhání.
Funkce: Při přístupu
Kód chyby: 0x8007043c
Popis chyby: Tuto službu nelze spustit v nouzovém režimu.
Důvod: Antimalwarové bezpečnostní informace přestaly z neznámých důvodů fungovat. V některých případech se tento problém dá vyřešit restartováním služby.

Date: 2026-02-26 17:52:24
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací a pokusí se o obnovení na předchozí verzi.
Bezpečnostní informace, které se měly načíst: Aktuální
Kód chyby: 0x80501102
Popis chyby: Došlo k neočekávaným potížím. Nainstalujte všechny dostupné aktualizace a potom opakujte spuštění programu. Informace o instalaci aktualizací naleznete v nápovědě a podpoře.
Verze bezpečnostních informací: 1.445.84.0;1.445.84.0
Verze modulu: 1.1.26010.1

Date: 2026-01-19 14:33:31
Description:
Funkce Ochrana v reálném čase u prohledávání Antivirová ochrana v programu Microsoft Defender zjistila chybu a došlo k jejímu selhání.
Funkce: Při přístupu
Kód chyby: 0x8007043c
Popis chyby: Tuto službu nelze spustit v nouzovém režimu.
Důvod: Antimalwarové bezpečnostní informace přestaly z neznámých důvodů fungovat. V některých případech se tento problém dá vyřešit restartováním služby.

CodeIntegrity:
===============
Date: 2026-03-03 17:54:30
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SecurityHealthService.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbamsi64.dll that did not meet the Windows signing level requirements.


==================== Memory info ===========================

BIOS: American Megatrends International, LLC. 21.02 10/08/2025
Motherboard: ASRock Z790 Steel Legend WiFi
Processor: Intel(R) Core(TM) i7-14700K
Percentage of memory in use: 22%
Total physical RAM: 65295.25 MB
Available physical RAM: 50363.25 MB
Total Virtual: 69391.25 MB
Available Virtual: 51774.84 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:1862.05 GB) (Free:1021.4 GB) (Model: WD_BLACK SN770 2TB) NTFS

\\?\Volume{d6b9cc35-b6c2-4f1f-b3a7-4cc9f2139a31}\ () (Fixed) (Total:0.85 GB) (Free:0.1 GB) NTFS
\\?\Volume{a3314b53-6b5b-465c-97cc-70ba011d202f}\ () (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Protective MBR) (Size: 1863 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt =======================

Avatar uživatele
JaRon
Moderátor
Moderátor
Příspěvky: 15882
Registrován: 29 Bře 2005 13:39
Místo/Bydliště: BB-SK

Re: Prosím o kontrolu preventivně

#2 Příspěvek od JaRon »

Ahoj,
pouzi fixlist.txt s obsahom:

Start

CloseProcesses:

S3 MSIO; \??\C:\Program Files (x86)\ASRock Utility\ASRRGBLED\Bin\msio64.sys (No File)

FirewallRules: [TCP Query User{A8A554D7-2436-4BC4-8733-6E9DC2BD6D56}C:\users\marti\appdata\local\inimanager\app-2.4.9\inimanager.exe] => (Allow) C:\users\marti\appdata\local\inimanager\app-2.4.9\inimanager.exe => No File
FirewallRules: [UDP Query User{D30C317D-B92D-4ABF-BF35-C60095BE1547}C:\users\marti\appdata\local\inimanager\app-2.4.9\inimanager.exe] => (Allow) C:\users\marti\appdata\local\inimanager\app-2.4.9\inimanager.exe => No File

EmptyTemp:

End
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Blazacz
Návštěvník
Návštěvník
Příspěvky: 10
Registrován: 31 Říj 2023 21:05

Re: Prosím o kontrolu preventivně

#3 Příspěvek od Blazacz »

Díky tak snad se to udělal dobře :)

Fix result of Farbar Recovery Scan Tool (x64) Version: 05-06-2026
Ran by marti (08-06-2026 22:31:00) Run:3
Running from C:\Users\marti\Downloads
Loaded Profiles: marti
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:

S3 MSIO; \??\C:\Program Files (x86)\ASRock Utility\ASRRGBLED\Bin\msio64.sys (No File)

FirewallRules: [TCP Query User{A8A554D7-2436-4BC4-8733-6E9DC2BD6D56}C:\users\marti\appdata\local\inimanager\app-2.4.9\inimanager.exe] => (Allow) C:\users\marti\appdata\local\inimanager\app-2.4.9\inimanager.exe => No File
FirewallRules: [UDP Query User{D30C317D-B92D-4ABF-BF35-C60095BE1547}C:\users\marti\appdata\local\inimanager\app-2.4.9\inimanager.exe] => (Allow) C:\users\marti\appdata\local\inimanager\app-2.4.9\inimanager.exe => No File

EmptyTemp:

End
*****************

Processes closed successfully.
HKLM\System\CurrentControlSet\Services\MSIO => removed successfully
MSIO => service removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{A8A554D7-2436-4BC4-8733-6E9DC2BD6D56}C:\users\marti\appdata\local\inimanager\app-2.4.9\inimanager.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{D30C317D-B92D-4ABF-BF35-C60095BE1547}C:\users\marti\appdata\local\inimanager\app-2.4.9\inimanager.exe" => removed successfully

=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 1572864 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 200441504 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 776311931 B
Windows/system/drivers => 3673133 B
Edge => 1569763344 B
Firefox => 0 B
Opera => 0 B

Local\Temp, Local\*.tmp, LocalLow\Temp, Roaming\Temp, Roaming\*.tmp , IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 9338 B
systemprofile32 => 0 B
LocalService => 32228 B
NetworkService => 88622 B
marti => 1448318223 B

RecycleBin => 0 B
EmptyTemp: => 3.7 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 22:31:35 ====

Avatar uživatele
JaRon
Moderátor
Moderátor
Příspěvky: 15882
Registrován: 29 Bře 2005 13:39
Místo/Bydliště: BB-SK

Re: Prosím o kontrolu preventivně

#4 Příspěvek od JaRon »

Spravne :)
Pocitac by mal byt zdravy
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Odpovědět