Dobrý den, cca. 4 dny se mi začal zaplňovat SSD měl jsem tam cca 25gb volného místa a najednou jsem tam měl 800mb, tak jsem zkusil zase uvolnit místo cca. 10gb, zašel jsem si udělat oběd, přijdu k pc a je tam zase 500-800mb. Děkuji za pomoc.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-06-2026
Ran by micha (administrator) on PETR (ASUS System Product Name) (21-06-2026 11:48:33)
Running from C:\Users\micha\OneDrive\Plocha\FRST64.exe
Loaded Profiles: micha
Platform: Microsoft Windows 11 Home Version 25H2 26200.8655 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
() [File not signed] C:\Users\micha\AppData\Local\CZManager\czmanager-agent.exe
(ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe <5>
(ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe
(Brave Software, Inc. -> Brave Software, Inc.) C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe <47>
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe
(C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe ->) (ASUSTeK COMPUTER INC. -> ) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\SwAgent\ArmourySwAgent.exe
(C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe
(C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe ->) (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler.exe
(C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe ->) (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler64.exe
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzAppManager
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzBTLEManager
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzDeviceManager
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzDiagnostic
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzChromaConnectManager
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzChromaConnectServer
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzIoTDeviceManager
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSmartlightingDeviceManager
(C:\Program Files (x86)\Razer\Razer Services\Razer Central\Razer Central.exe ->) (Razer USA Ltd. -> The CefSharp Authors) C:\Program Files (x86)\Razer\Razer Services\Razer Central\CefSharp.BrowserSubprocess.exe <5>
(C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Services\Razer Central\Razer Central.exe
(C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe ->) (Razer USA Ltd. -> ) C:\Program Files (x86)\Razer\Synapse3\UserProcess\Razer Synapse Service Process.exe
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\gameoverlayui64.exe
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve) C:\Program Files (x86)\Steam\steamapps\common\Half-Life\hl.exe
(C:\Program Files\ASUS\Armoury Crate Service\ArmouryCrate.Service.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\Armoury Crate Service\ArmouryCrate.UserSessionHelper.exe
(C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe ->) () [File not signed] C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmw.exe
(C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe ->) () [File not signed] C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmwj.exe
(C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(C:\Program Files\LGHUB\lghub_agent.exe ->) (Logitech Inc -> Sentry and Logitech, Inc.) C:\Program Files\LGHUB\logi_crashpad_handler.exe
(C:\Program Files\LGHUB\lghub_updater.exe ->) (Logitech Inc -> Sentry and Logitech, Inc.) C:\Program Files\LGHUB\logi_crashpad_handler.exe
(C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe
(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\Malwarebytes.exe
(C:\Program Files\Softdeluxe\Free Download Manager\wenativehost.exe ->) (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe
(C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_526.11701.50.0_x64__cw5n1h2txyewy\WidgetBoard.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\149.0.4022.80\msedgewebview2.exe
(cmd.exe ->) (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\wenativehost.exe
(DriverStore\FileRepository\u0420529.inf_amd64_94ad5a6c4d1a04e2\B419765\atiesrxx.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0420529.inf_amd64_94ad5a6c4d1a04e2\B419765\atieclxx.exe
(explorer.exe ->) (Brave Software, Inc. -> Brave Software, Inc.) C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe
(explorer.exe ->) (Gen Digital Inc. -> Privax Limited) C:\Program Files\Privax\HMA VPN\Vpn.exe
(explorer.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
(explorer.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe
(explorer.exe ->) (Riot Games, Inc. -> Riot Games, Inc.) C:\Program Files\Riot Vanguard\vgtray.exe
(explorer.exe ->) (SocialChain Inc -> Socialchain Inc.) C:\Users\micha\AppData\Local\Programs\pi-network-desktop\Pi Network.exe
(explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe
(Gen Digital Inc. -> Privax Limited) C:\Program Files\Privax\HMA VPN\Vpn.exe <2>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <9>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\149.0.4022.80\msedgewebview2.exe <10>
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\GameInputSvc.exe
(Microsoft Corporation -> Windows (R) Win 7 DDK provider) C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe
(services.exe ->) () [File not signed] C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0420529.inf_amd64_94ad5a6c4d1a04e2\B419765\atiesrxx.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUS Inc.) C:\Program Files (x86)\ASUS\GameSDK Service\GameSDK.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.) C:\Program Files (x86)\ASUS\AsusCertService\1.3.2\AsusCertService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AXSP\4.08.06\atkexComSvc.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\LightingService\LightingService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\Armoury Crate Service\ArmouryCrate.Service.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe
(services.exe ->) (Gen Digital Inc. -> Privax Limited) C:\Program Files\Privax\HMA VPN\VpnSvc.exe
(services.exe ->) (INPLERON LTD -> ) C:\Program Files (x86)\GameGuard\acsvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_5aab0cb93cd60e87\RstMwService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe
(services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
(services.exe ->) (LogMeIn, Inc. -> LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe
(services.exe ->) (LogMeIn, Inc. -> LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
(services.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WSL\wslservice.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\GameInputSvc.exe
(services.exe ->) (Microsoft Corporation -> Windows (R) Win 7 DDK provider) C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\DriverStore\FileRepository\amdfendr.inf_amd64_1aafc0a9b0693712\amdfendrsr.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster®) C:\Program Files\Thrustmaster\FFB Racing wheel\drivers\amd64\tmInstall.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\NisSrv.exe
(services.exe ->) (nordvpn s.a. -> nordvpn S.A.) C:\Program Files\NordUpdater\NordUpdateService.exe
(services.exe ->) (nordvpn s.a. -> nordvpn S.A.) C:\Program Files\NordVPN\nordvpn-service.exe
(services.exe ->) (Novabench Inc. -> Novabench Inc.) C:\Program Files\Novabench\resources\NovabenchService.exe
(services.exe ->) (PALTALK, INC. -> AVM Software) C:\Program Files (x86)\Paltalk\update\pt_update_service.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc) C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzChromaStreamServer.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe
(services.exe ->) (Surfshark B.V. -> Surfshark.Service) C:\Program Files\Surfshark\Surfshark.Service.exe
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe
(SocialChain Inc -> Socialchain Inc.) C:\Users\micha\AppData\Local\Programs\pi-network-desktop\Pi Network.exe <5>
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ) C:\Program Files\ASUS\KINGSTON_Aac_DRAM\AacKingstonDramHal_x64.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ) C:\Program Files\ASUS\KINGSTON_Aac_DRAM\AacKingstonDramHal_x86.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUS) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AcPowerNotification\AcPowerNotification.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUS) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\MBLedSDK\NoiseCancelingEngine.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Compputer Inc.) C:\Program Files\ASUS\AacMB\Aac3572MbHal_x86.exe <2>
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\AacExtCard\extensionCardHal_x86.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\ASUS_Aac_DRAM\Aac3572DramHal_x86.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.Edge.GameAssist_1.0.4019.0_x64__8wekyb3d8bbwe\EdgeGameAssist.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2606.1001.27.0_x64__8wekyb3d8bbwe\XboxGameBarWidgets.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2606.1001.27.0_x64__8wekyb3d8bbwe\XboxPcAppFT.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.302.5.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_7.326.6011.0_x64__8wekyb3d8bbwe\GameBar.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_7.326.6011.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\GameBarPresenceWriter.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
(svchost.exe ->) (ORANGE VIEW LIMITED -> iTop Inc.) C:\Program Files (x86)\iTop Screenshot\iScrShot.exe
(svchost.exe ->) (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\helperservice.exe
(svchost.exe ->) (Spotify AB -> ) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\XboxGameBarSpotify.exe
(Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe <6>
(Wondershare Technology Co.,Ltd -> Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe
==================== Registry (Whitelisted) ===================
HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [4148120 2026-05-01] (Riot Games, Inc. -> Riot Games, Inc.)
HKLM-x32\...\Run: [Launcher6015B] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\Launcher\xrlaunch.exe [2569728 2011-04-28] (Xerox) [File not signed]
HKLM-x32\...\Run: [6015B RUN] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmRun.exe [355840 2012-07-16] () [File not signed]
HKLM-x32\...\Run: [YKB 3400 PANZER] => C:\Program Files\FAST\PANZER\YKB 3400 PANZER.exe [1828864 2019-08-01] (TODO: <Company name>) [File not signed]
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [7811960 2024-03-25] (LogMeIn, Inc. -> LogMeIn Inc.)
HKLM-x32\...\Run: [PC Suite Tray] => C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [1516632 2012-06-26] (Nokia -> Nokia)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2133728 2024-09-29] (Wondershare Technology Co.,Ltd -> Wondershare)
HKLM-x32\...\Run: [VideoPlayTool] => C:\Program Files (x86)\VideoPlayTool\Bin\VideoPlayTool.exe [912384 2025-11-03] () [File not signed]
HKLM-x32\...\Run: [mo_pc_offical_soc] => E:\FunPlus\Sea of Conquest\Launcher.exe (No File)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [5776024 2026-06-09] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Opera GX Stable] => "C:\Users\micha\AppData\Local\Programs\Opera GX\opera.exe" --autostart [2980808 2026-06-15] (Opera Norway AS -> Opera Software)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [51722680 2026-05-11] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Discord] => C:\Users\micha\AppData\Local\Discord\Update.exe [1512608 2021-09-21] (Discord Inc. -> GitHub)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [G-Menu] => C:\G-Menu\G-Menu.exe [110791560 2024-12-27] (TOP VICTORY ELECTRONICS (TAIWAN) CO., LTD. -> AOC)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Free Download Manager] => C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe [10551296 2026-03-24] (Softdeluxe) [File not signed]
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [RiotClient] => C:\Riot Games\Riot Client\RiotClientServices.exe [75647752 2026-06-11] (Riot Games, Inc. -> Riot Games, Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [com.blitz.app] => C:\Users\micha\AppData\Local\Programs\Blitz\Blitz.exe [180674520 2026-06-04] (Swift Media Entertainment, Inc. -> Blitz, Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [PaltalkLauncher] => C:\Program Files (x86)\Paltalk\PaltalkLauncher.exe [1310288 2023-12-29] (PALTALK, INC. -> Paltalk, Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [NordVPN] => C:\Program Files\NordVPN\NordVPN.exe [263256 2023-09-25] (nordvpn s.a. -> nordvpn S.A.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3599496 2025-03-11] (Razer USA Ltd. -> Razer Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Battle.net] => D:\Battle.net\Battle.net.exe [981632 2025-05-16] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [EADM] => C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALauncher.exe [3393184 2026-04-15] (Electronic Arts, Inc. -> Electronic Arts)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Wargaming.net Game Center] => D:\Wargaming.net\GameCenter\wgc.exe [2580728 2026-01-24] (Wargaming Group Limited -> Wargaming.net)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [IO Auto Clicker] => C:\Users\micha\Programs\IO Auto Clicker\IO-Auto-Clicker.exe [38201072 2023-08-08] (Massive Computing, Inc. -> Wonkru Media (OPC) Private Limited)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [PlanetVPN] => C:\Program Files (x86)\PlanetVPN\PlanetVPN.exe [28895528 2025-03-18] (FREE VPN PLANET S.R.L. -> )
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45741280 2025-07-18] (Gen Digital Inc. -> Gen Digital Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [NokiaSuite.exe] => C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe [1090912 2013-04-19] (Nokia -> Nokia)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [VoicemodV3] => C:\Program Files\Voicemod V3\Voicemod.exe [6302096 2024-11-21] (VOICEMOD, INC. SUCURSAL EN ESPAÑA -> Voicemod Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe [26286744 2026-05-01] (Logitech Inc -> Logitech, Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [electron.app.Pi Network] => C:\Users\micha\AppData\Local\Programs\pi-network-desktop\Pi Network.exe [199201592 2025-10-22] (SocialChain Inc -> Socialchain Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Surfshark] => C:\Program Files\Surfshark\Surfshark.exe [258752 2025-05-21] (Surfshark B.V. -> Surfshark)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [AMDNoiseSuppression] => C:\Windows\system32\AMD\ANR\AMDNoiseSuppression.exe [164840 2024-06-24] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [ut] => C:\Users\micha\AppData\Roaming\uTorrent\uTorrent.exe [3680688 2025-10-09] (BitTorrent Inc -> BitTorrent Limited)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [MicrosoftEdgeAutoLaunch_ED02E366447D09E4F124EF89B233D989] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [5304648 2026-06-17] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\Windows x64\Print Processors\xrhk1apps: C:\Windows\System32\spool\prtprocs\x64\xrhk1apps.dll [33280 2012-03-15] (Microsoft Windows Hardware Compatibility Publisher -> Xerox)
HKLM\...\Print\Monitors\Xerox WorkCentre 6015B Language Monitor: C:\Windows\system32\xrhk1alm.dll [22528 2012-03-09] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\Software\...\AppCompatFlags\Custom\Game.exe: [{481dc351-bab0-4f86-b085-87a5626fe6dc}.sdb] -> Mafia Compatibility Database
HKLM\Software\...\AppCompatFlags\InstalledSDB\{481dc351-bab0-4f86-b085-87a5626fe6dc}: [DatabasePath] -> C:\WINDOWS\AppPatch\CustomSDB\{481dc351-bab0-4f86-b085-87a5626fe6dc}.sdb [2017-10-31]
HKLM\Software\Microsoft\Active Setup\Installed Components: [>OpenVPN_UserSetup] -> reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Run /v OPENVPN-GUI /f
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4044440 2026-06-06] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\149.0.7827.114\Installer\chrmstp.exe [7662744 2026-06-13] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\149.1.91.175\Installer\chrmstp.exe [6180432 2026-06-17] (Brave Software, Inc. -> Brave Software, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HMA VPN.lnk [2026-06-12]
ShortcutTarget: HMA VPN.lnk -> C:\Program Files\Privax\HMA VPN\Vpn.exe (Gen Digital Inc. -> Privax Limited)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {07383BA5-AC71-4542-A27D-0B1365A76DC5} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1612800 2026-01-23] (Adobe Inc. -> Adobe Inc.)
Task: {58598953-64C1-498A-969D-7E530D78BD35} - System32\Tasks\ASUS\AcPowerNotification => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AcPowerNotification\AcPowerNotification.exe [401304 2026-03-09] (ASUSTeK COMPUTER INC. -> ASUS)
Task: {4B79E43A-0A8C-4450-85D7-92F1259546C0} - System32\Tasks\ASUS\ArmourySocketServer => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\TaskSchedulerTool_ArmourySocketServer.exe [120728 2026-03-09] (ASUSTeK COMPUTER INC. -> TODO: <公司名稱>)
Task: {BA57A88A-1A4D-4745-868C-8343AC7BB574} - System32\Tasks\ASUS\ASUSUpdateTaskMachineCore1dc8b0f8264b10e => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [253848 2026-01-21] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
Task: {A82E61FC-C1C2-4BB6-8045-424DEB3F411C} - System32\Tasks\ASUS\ASUSUpdateTaskMachineUA => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [253848 2026-01-21] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
Task: {0BBB9D13-8182-43EA-9D70-A341B104C8D5} - System32\Tasks\ASUS\NoiseCancelingEngine => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\MBLedSDK\NoiseCancelingEngine.exe [1261464 2025-09-02] (ASUSTeK COMPUTER INC. -> ASUS)
Task: {91EA2448-4E55-4FAD-BC70-DAB9590D29B9} - System32\Tasks\ASUS\P508PowerAgent_sdk => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ShareFromArmouryIII\Mouse\ROG STRIX CARRY\P508PowerAgent.exe (No File)
Task: {1CC508F2-2CEA-4175-B350-1A3E8EF97637} - System32\Tasks\AVG\AVG Driver Updater BugReport => C:\Program Files\AVG\Driver Updater\AvBugReport.exe -> --send "dumps|report" --silent --product 149 --programpath "C:\Program Files\AVG\Driver Updater\Setup\.." --configpath "C:\Program Files\AVG\Driver Updater\Setup" --path "C:\ProgramData\AVG\Driver Updater\log" --path "C:\ProgramData\AVG\Icarus\Logs" --logpath "C:\ProgramData\AVG\Driver Updater\log" (the data entry has 44 more characters).
Task: {4A23D69E-5CF9-42ED-A89C-293693D2BCFB} - System32\Tasks\AVG\AVG Driver Updater Update => C:\Program Files\Common Files\AVG\Icarus\avg-du\icarus.exe /update:avg-du /silent (No File)
Task: {96849D15-173B-45F8-BC00-2CF4DB8197EC} - System32\Tasks\CZManagerAgent => C:\Windows\system32\WindowsPowerShell\v1.0\powershell.exe [454656 2025-09-09] (Microsoft Windows -> Microsoft Corporation) -> -WindowStyle Hidden -Command Start-Process -FilePath 'C:\Users\micha\AppData\Local\CZManager\czmanager-agent.exe' -WindowStyle Hidden
Task: {0E2AFA7F-E936-4DF1-9D3B-26ACEFDFF1E1} - System32\Tasks\FreeDownloadManagerHelperService => C:\Program Files\Softdeluxe\Free Download Manager\helperservice.exe [139776 2026-03-24] (Softdeluxe) [File not signed]
Task: {BFAF617D-C894-46EF-9F24-5A2448C7D7B1} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem150.0.7863.0{9A1F49F2-B9A2-4FF8-8274-F7B59D04E8BD} => C:\Program Files (x86)\Google\GoogleUpdater\150.0.7863.0\updater.exe [8728216 2026-05-28] (Google LLC -> Google LLC)
Task: {0CAA4159-CBA2-429E-8515-CEBCE0710748} - System32\Tasks\GoogleUserPEH\RunPlatformExperienceHelper_Daily => C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4044440 2026-06-06] (Google LLC -> Google LLC)
Task: {289F1DC7-9AC7-41B2-B1CD-527C67F9E505} - System32\Tasks\GoogleUserPEH\RunPlatformExperienceHelper_Metrics => C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4044440 2026-06-06] (Google LLC -> Google LLC)
Task: {CADB948C-124D-458F-9DF4-02DB8693A495} - System32\Tasks\iTop Screen Recorder SkipUAC (micha) => C:\Program Files\iTop Screen Recorder\iScrRec.exe [15769656 2025-09-26] (ORANGE VIEW LIMITED -> iTop Inc.) -> C:\Program Files\iTop Screen Recorder\\/skipuac
Task: {4B96F151-97A7-4594-9114-042B455D99DC} - System32\Tasks\iTop Screen Recorder Startup => C:\Program Files\iTop Screen Recorder\iScrRec.exe [15769656 2025-09-26] (ORANGE VIEW LIMITED -> iTop Inc.) -> C:\Program Files\iTop Screen Recorder\\/autorun
Task: {1E2EF058-B5AD-4EB7-B196-EA895CDC061C} - System32\Tasks\iTop Screen Recorder Update => C:\Program Files\iTop Screen Recorder\AutoUpdate.exe [3570232 2025-07-29] (ORANGE VIEW LIMITED -> iTop Inc.) -> C:\Program Files\iTop Screen Recorder\\/auto
Task: {DC9705A8-88CC-4154-B39B-0D45A1C2C611} - System32\Tasks\iTop Screenshot SkipUAC (micha) => C:\Program Files (x86)\iTop Screenshot\iScrShot.exe [7622400 2023-05-11] (ORANGE VIEW LIMITED -> iTop Inc.) -> C:\Program Files (x86)\iTop Screenshot\\/skipuac
Task: {E3EAD2AC-F085-4A38-BD75-637B32BF1C9E} - System32\Tasks\iTop Screenshot Startup => C:\Program Files (x86)\iTop Screenshot\iScrShot.exe [7622400 2023-05-11] (ORANGE VIEW LIMITED -> iTop Inc.) -> C:\Program Files (x86)\iTop Screenshot\\/autorun
Task: {08038785-058A-4615-B290-9B987C6330AF} - System32\Tasks\iTop Screenshot Update => C:\Program Files (x86)\iTop Screenshot\AutoUpdate.exe [3081472 2023-05-17] (ORANGE VIEW LIMITED -> iTop Inc.) -> C:\Program Files (x86)\iTop Screenshot\\/auto
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {ABC7034D-3937-4B4A-82C7-95D2D3AE5D97} - System32\Tasks\Microsoft\Windows\Setup\SnapshotCleanupTask => C:\Windows\System32\OOBE\SetupPlatform\SetupPlatform.exe -removesnapshot (No File)
Task: {0BB36A32-0D9E-4297-AFD7-6BD7B5DB4C9B} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {262840F9-0B02-4A64-95E7-7F7352AFE986} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpCmdRun.exe [1906320 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F1BCDA2D-2EBA-4EDC-A515-F495BC7699E8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpCmdRun.exe [1906320 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {DCA45B5B-8512-402E-B3BE-FF892EB05B32} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpCmdRun.exe [1906320 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {BE1B17B4-5C4D-4095-9E5F-623D408A95E8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpCmdRun.exe [1906320 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {261C748D-8E6F-4711-9D47-7E084864C474} - System32\Tasks\Opera GX scheduled assistant Autoupdate 1704714885 => C:\Users\micha\AppData\Local\Programs\Opera GX\autoupdate\opera_autoupdate.exe [7636936 2026-06-10] (Opera Norway AS -> Opera Software) -> --scheduledtask --productiscomponent --installdir="C:\Users\micha\AppData\Local\Programs\Opera GX\assistant" --producttype=assistant $(Arg0)
Task: {E5CEE4AE-386B-4109-82E3-9BD53F078E92} - System32\Tasks\Opera GX scheduled Autoupdate 1704393290 => C:\Users\micha\AppData\Local\Programs\Opera GX\autoupdate\opera_autoupdate.exe [7636936 2026-06-10] (Opera Norway AS -> Opera Software)
Task: {487CFED9-2C96-424D-8868-096D1A0408C1} - System32\Tasks\Privax\HMA VPN Bug Report => C:\Program Files\Privax\HMA VPN\AvBugReport.exe [6605536 2026-06-11] (Gen Digital Inc. -> Privax Limited) -> --filter "*.dmp;*.mdmp;icarus.log" --send "dumps|report" --silent --product 78 --programpath "C:\Program Files\Privax\HMA VPN" --configpath "C:\ProgramData\Privax\HMA VPN" --path "C:\ProgramData\Privax\HMA VPN\log" --path "C:\ProgramData\Privax\Icarus\Logs" --logpath "C:\ProgramData\Privax\HMA VPN\l (the data entry has 47 more characters).
Task: {838A083D-1997-4EBC-88D2-B0122E6E3A13} - System32\Tasks\Privax\HMA VPN Emergency Update => C:\Program Files\Privax\HMA VPN\VpnUpdate.exe [4037856 2026-06-11] (Gen Digital Inc. -> Privax Limited)
Task: {E092C7B3-915D-490F-8252-1684233C029B} - System32\Tasks\Privax\HMA VPN Update => C:\Program Files\Common Files\Privax\Icarus\privax-vpn\icarus.exe [9715424 2026-05-21] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {353900EC-C8D8-4D46-9EAB-9123A2D37F51} - System32\Tasks\Privax\IcarusPrivaxVpnUpgrade => C:\Program Files\Privax\HMA VPN\setup\privax_vpn_online_setup.exe -> /silent /ShowVpnGui=0 /RestartUpdaterTaskName=IcarusPrivaxVpnUpgrade /RestartUpdaterAppExe="C:\Program Files\Privax\HMA VPN\setup\privax_vpn_online_setup.exe"
Task: {26BD7906-16E7-4328-B7CF-BAD752531406} - System32\Tasks\Ubisoft\Ubisoft Connect Background Update => C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\upc.exe [17246392 2026-01-24] (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\BlueStacksHelper_nxt.job => C:\Program Files\BlueStacks_nxt\BlueStacksHelper.exe
Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
Task: C:\WINDOWS\Tasks\Driver Booster SkipUAC (micha).job => C:\Program Files (x86)\IObit\Driver Booster\12.1.0\DriverBooster.exe
Task: C:\WINDOWS\Tasks\Driver Booster Update.job => C:\Program Files (x86)\IObit\Driver Booster\12.1.0\AutoUpdate.exe
Task: C:\WINDOWS\Tasks\npcapwatchdog.job => C:\Program Files\Npcap\CheckStatus.bat <==== ATTENTION
Task: C:\WINDOWS\Tasks\Overwolf Updater Task.job => C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe
Task: C:\WINDOWS\Tasks\RunOW.job => C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{8e9b2ac2-45d0-4e62-8d4f-db8b6bd7671c}: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{8e9b2ac2-45d0-4e62-8d4f-db8b6bd7671c}\055647277237027416C616879702143323: [DhcpNameServer] 10.40.221.78
Tcpip\..\Interfaces\{8e9b2ac2-45d0-4e62-8d4f-db8b6bd7671c}\44F6D61684F627E696: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{8e9b2ac2-45d0-4e62-8d4f-db8b6bd7671c}\4505D2C496E6B6F5F4574746F6F627F53353834325F657475627: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{8e9b2ac2-45d0-4e62-8d4f-db8b6bd7671c}\75966696F5352535550574D4C42384: [DhcpNameServer] 192.168.10.10
Tcpip\..\Interfaces\{f6fbe2a6-9f33-45e3-955e-6f0c3fd9a8db}: [DhcpNameServer] 192.168.1.1 192.168.1.1
FireFox:
========
FF DefaultProfile: 3iwgnaym.default-release -> 308046B0AF4A39CB
FF ProfilePath: C:\Users\micha\AppData\Roaming\Mozilla\Firefox\Profiles\duwbd8eu.default [2025-05-26]
FF ProfilePath: C:\Users\micha\AppData\Roaming\Mozilla\Firefox\Profiles\3iwgnaym.default-release [2025-08-08]
FF Extension: (Language: English (GB)) - C:\Users\micha\AppData\Roaming\Mozilla\Firefox\Profiles\3iwgnaym.default-release\Extensions\langpack-en-GB@firefox.mozilla.org.xpi [2025-05-26]
FF Plugin: @videolan.org/vlc,version=3.0.21 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2026-06-08] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @nokia.com/EnablerPlugin -> C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll [2013-04-19] (Nokia -> )
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default [2026-06-21]
Edge Extension: (7TV) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ammjkodgmmoknidbanneddgankgfejfh [2026-05-22]
Edge Extension: (YouTube Shorts Extractor) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bcbngjmjfkdnmpfdmdkpggkcahimnbhh [2025-10-28]
Edge Extension: (AHA Music - Song Finder for Browser) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ejfccgmelcclnoadalcepdmnpgcnglfc [2026-05-08]
Edge Extension: (Dokumenty Google offline) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-06-05]
Edge Extension: (Tampermonkey) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\iikmkjmpaadaobahmlepeloendndfphd [2026-05-25]
Edge Extension: (Show YouTube Video Tags (Advanced)) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jlimlbghmhifobdaampfgllomdldpmeg [2025-10-28]
Edge Extension: (Edge relevant text changes) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]
Edge Extension: (Video DownloadHelper) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmkaglaafmhbcpleggkmaliipiilhldn [2026-06-04]
Edge Extension: (Adblocker plus pro Twitch ™) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kdiaieegfcpclpalpkmjgfkkggfenamf [2025-05-21]
Edge Extension: (Zdarma VPN pro Chrome – VPN Proxy VeePN) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\majdfhpaihoncoakbjgbdhglocklcgno [2026-05-18]
Edge Extension: (Shazam: Find song names from your browser) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mmioliijnhnoblpgimnlajmefafdfilb [2025-04-22]
Edge Extension: (Urban VPN Proxy) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nimlmejbmnecnaghgmbahmbaddhjbecg [2026-06-10]
Edge Extension: (MetaMask) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nkbihfbeogaeaoehlefnkodbefgpgknn [2026-06-18]
Edge Extension: (vidIQ Vision for YouTube) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\pachckjkecffpdphbpmfolblodfkgbhl [2026-06-17]
Chrome:
=======
CHR Profile: C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default [2026-01-27]
CHR StartupUrls: Default -> "hxxp://mystart.incredibar.com/?a=6R906EYcyS&loc=skw","hxxp://www2.delta-search.com/?babsrc=HP_ss&mntrId=3C0D0025225507B2&affID=120007&tt=160913_c3&tsp=5011","hxxp://www.search.ask.com/?tpid=ATU3-SAT&o=APN ... g=EN&cc=CZ"
CHR DefaultSearchURL: Default -> hxxps://search.brave.com/search?q={searchTerms}
CHR DefaultSearchKeyword: Default -> search.brave.com
CHR DefaultSuggestURL: Default -> hxxps://search.brave.com/api/suggest?q={searchTerms}
CHR Extension: (The FFZ Add-On Pack) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\aiimboljphncldaakcnapfolgnjonlea [2024-01-04]
CHR Extension: (BetterTTV) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2026-01-27]
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2025-12-15]
CHR Extension: (Steam Inventory Helper) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmeakgjggjdlcpncigglobpjbkabhmjl [2025-12-15]
CHR Extension: (Black green shards) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\cojkleigdijnbfecdhjigpgalhfhkdee [2024-01-04]
CHR Extension: (FrankerFaceZ) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\fadndhdgpmmaapbmfcknlfgcflmmmieb [2025-12-15]
CHR Extension: (Dokumenty Google offline) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-12-15]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2025-12-15]
CHR Extension: (Repeek (formerly FACEIT Enhancer)) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\mokknliiomknodkdmpcellamkopbdmao [2025-12-15]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-01-04]
CHR Profile: C:\Users\micha\AppData\Local\Google\Chrome\User Data\System Profile [2024-01-04]
CHR HKU\S-1-5-21-756127909-4058986209-260929036-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [kadaohckdkghfaclhjmkmplebcdcnfnp] - <no Path/update_url>
Opera:
=======
StartMenuInternet: (HKU\S-1-5-21-756127909-4058986209-260929036-1001) Opera GXStable - "C:\Users\micha\AppData\Local\Programs\Opera GX\opera.exe"
Brave:
=======
BRA Profile: C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2026-06-21]
BRA Notifications: Default -> hxxps://cs2.fastcup.net
BRA Extension: (Překladač Google) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2025-02-14]
BRA Extension: (Free Download Manager) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ahmpjcflkgiildlgicmcieglgoilbfdp [2026-05-12]
BRA Extension: (The FFZ Add-On Pack) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\aiimboljphncldaakcnapfolgnjonlea [2024-01-04]
BRA Extension: (Surfshark VPN Extension) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ailoabdmgclmfmhdagmlohpjlbpffblp [2026-05-25]
BRA Extension: (VPN Mexico - Planet VPN lite Proxy) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\anojflfckeghbodjglfogdpgkmfinloi [2026-05-27]
BRA Extension: (PureVPN Proxy - Best VPN for Chrome) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\bfidboloedlamgdmenmlbipfnccokknp [2026-04-09]
BRA Extension: (Touch VPN - Secure and unlimited VPN proxy) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\bihmplhobchoageeokmgbdihknkjbknd [2024-09-30]
BRA Extension: (change-language) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\cofdbpoegempjloogbagkncekinflcnj [2026-06-16]
BRA Extension: (Tipli: Cashback odměny a kupóny) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\dbnfnbehhjknomdbfhcobpgpphnlnikp [2026-04-30]
BRA Extension: (AHA Music - Song Finder for Browser) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\dpacanjfikmhoddligfbehkpomnbgblf [2026-05-07]
BRA Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2026-06-15]
BRA Extension: (Video Downloader Professional) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\elicpjhcidhpjomhibiffojpinpmmpil [2026-03-12]
BRA Extension: (Urban VPN Proxy) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\eppiocemhmnlbhjplcgkofciiegomcon [2026-06-10]
BRA Extension: (FrankerFaceZ) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\fadndhdgpmmaapbmfcknlfgcflmmmieb [2026-02-10]
BRA Extension: (Fastcup.net Helper) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\fafpkjpdfmhkhicmhhaokkbcbhielpjh [2024-08-08]
BRA Extension: (VPN Free - Betternet Unlimited VPN Proxy) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\gjknjjomckknofjidppipffbpoekiipm [2024-11-05]
BRA Extension: (Bezplatná VPN pro Chrome a blokátor reklam - Planet VPN) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\hipncndjamdcmphkgngojegjblibadbe [2026-05-22]
BRA Extension: (Bezplatný VPN Proxy - VPN pro Chrome uVPN) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\jaoafpkngncfpfggjefnekilbkcpjdgp [2026-04-05]
BRA Extension: (Free VPN - Bezplatná VPN pro Chrome) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\jcbiifklmgnkppebelchllpdbnibihel [2026-02-06]
BRA Extension: (CSFloat Market Checker) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\jjicbefpemnphinccgikpdaagjebbnhg [2026-05-07]
BRA Extension: (Turbo Download Manager (Classic)) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\kemfccojgjoilhfmcblgimbggikekjip [2024-03-16]
BRA Extension: (Video DownloadHelper) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\lmjnegcaeklhafolokijcfjliaokphfk [2026-06-05]
BRA Extension: (Zdarma VPN pro Chrome – VPN Proxy VeePN) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\majdfhpaihoncoakbjgbdhglocklcgno [2026-05-17]
BRA Extension: (Video Downloader PLUS) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\njgehaondchbmjmajphnhlojfnbfokng [2025-10-07]
BRA Extension: (VPN Bridge) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ogbcbagecoekhkhedecneoeebjidplfn [2025-07-10]
BRA Extension: (Waxpeer Extension) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\pmfjgkjalfcnnipmgfkeipkbehecpjbk [2025-12-15]
BRA Extension: (Brave Ad Block Updater (Brave First Party Adblock Filters (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\adcocjohghhfpidemphmcmlmhnfgikei [2026-06-20]
BRA Extension: (Brave Local Data Files Updater) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2026-06-21]
BRA Extension: (Brave NTP background images) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2026-04-16]
BRA Extension: (Brave Ad Block Updater (Mobile app promo blocker (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\bfpgedeaaibpoidldhjcknekahbikncb [2026-06-16]
BRA Extension: (Wallet Data Files Updater) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2026-06-15]
BRA Extension: (Brave Ad Block Updater (Cookie notice blocker (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\cdbbhgbmjhfnhnmgeddbliobbofkgdhe [2026-06-21]
BRA Extension: (Brave Tor Client Updater (Windows)) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\cpoalefficncklhjfpglfiplenlpccdb [2025-02-23]
BRA Extension: (Brave NTP sponsored images) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\efkihffiamafhbhefjaljejgdpkelpal [2026-06-21]
BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2026-06-10]
BRA Extension: (Brave Ads Resources) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\iejekkikpddbbockoldagmfcdbffomfc [2026-02-21]
BRA Extension: (Brave Ad Block Updater (Brave Default Adblock Filters (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2026-06-21]
BRA Extension: (Brave Ad Block Updater (Brave Default Privacy Filters (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\kihnoaefogbkmblfimmibknnmkllbhlf [2026-06-21]
BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2026-06-21]
BRA Extension: (Brave Ad Block Updater (Brave Twitch Adblock Rules (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\mhccgcegedfkhdbfbgllfkkcjhgkoinc [2024-09-19]
BRA Extension: (Brave User Agent) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\nlpaeekllejnmhoonlpcefpfnpbajbpe [2026-06-21]
BRA Extension: (Brave Ad Block Updater (Czech and Slovak website ad blocker (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\oegebjahecghlckbhkmojgnpcgdeajdi [2026-05-28]
BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2024-01-04]
BRA Extension: (P3A Configuration) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\P3AConfig [2025-09-27]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [180216 2026-01-23] (Adobe Inc. -> Adobe Inc.)
S3 AntiCheatExpert Protection; C:\Program Files\AntiCheatExpert\ACE-Service64.exe [3493272 2025-05-01] (ACEVILLE PTE LTD -> ANTICHEATEXPERT.COM)
S3 AntiCheatExpert Service; C:\Program Files\AntiCheatExpert\SGuard\x64\SGuardSvc64.exe [2098080 2025-05-01] (ACEVILLE PTE LTD -> ANTICHEATEXPERT.COM)
R2 ArmouryCrateService; C:\Program Files\ASUS\Armoury Crate Service\ArmouryCrate.Service.exe [507296 2026-05-17] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\4.08.06\atkexComSvc.exe [1142168 2026-04-02] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
S2 asus; C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [253848 2026-01-21] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
R2 AsusCertService; C:\Program Files (x86)\ASUS\AsusCertService\1.3.2\AsusCertService.exe [497560 2026-04-08] (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.)
S2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\2.03.54\AsusFanControlService.exe [1879960 2026-04-02] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
S3 asusm; C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [253848 2026-01-21] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
S2 AsusROGLSLService; C:\Program Files (x86)\ASUS\AsusROGLSLService\AsusROGLSLService.exe [682904 2026-01-21] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
S2 AsusUpdateCheck; C:\WINDOWS\System32\AsusUpdateCheck.exe [842128 2026-06-21] (ASUSTeK Computer Inc. -> )
S3 battlenet_helpersvc; C:\ProgramData\Battle.net_components\battlenet_helpersvc\AgentHelper.exe [3384464 2025-05-16] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [20352680 2026-04-09] (BattlEye Innovations e.K. -> )
S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-01-01] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 BraveElevationService; C:\Program Files\BraveSoftware\Brave-Browser\Application\149.1.91.175\elevation_service.exe [4805200 2026-06-17] (Brave Software, Inc. -> Brave Software, Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-01-01] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1080544 2025-07-18] (Gen Digital Inc. -> Gen Digital Inc.)
S3 Denuvo Anti-Cheat Update Service; C:\Program Files\Denuvo Anti-Cheat\denuvo-anti-cheat-update-service.exe [1220760 2025-11-24] (DENUVO GmbH -> Denuvo GmbH)
S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [20690592 2026-04-15] (Electronic Arts, Inc. -> Electronic Arts)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [1137576 2024-02-01] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [1048360 2026-04-29] (EasyAntiCheat Oy -> Epic Games, Inc.)
S3 EpicGamesUpdater; C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesUpdater.exe [3407800 2026-05-11] (Epic Games Inc. -> Epic Games, Inc.)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [2607032 2026-04-29] (Epic Games Inc. -> Epic Games, Inc.)
S3 FACEITService; C:\Program Files\FACEIT AC\faceitservice.exe [116503048 2026-06-01] (ESL FACEIT Group Ltd. -> )
R2 GameInputRedistService; C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe [401792 2026-05-14] (Microsoft Corporation -> Windows (R) Win 7 DDK provider)
R2 GameSDK Service; C:\Program Files (x86)\ASUS\GameSDK Service\GameSDK.exe [397544 2022-05-31] (ASUSTeK COMPUTER INC. -> ASUS Inc.)
R2 ggsvc; C:\Program Files (x86)\GameGuard\acsvc.exe [424416 2025-01-26] (INPLERON LTD -> )
R2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [4920184 2024-03-25] (LogMeIn, Inc. -> LogMeIn Inc.)
R2 HmaProVpn; C:\Program Files\Privax\HMA VPN\VpnSvc.exe [15282400 2026-06-11] (Gen Digital Inc. -> Privax Limited)
R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [20769432 2026-05-01] (Logitech Inc -> Logitech, Inc.)
R2 LightingService; C:\Program Files (x86)\LightingService\LightingService.exe [5059480 2026-04-09] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [11506480 2026-06-14] (Malwarebytes Inc -> Malwarebytes)
S3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe [4291576 2026-06-14] (Malwarebytes Inc -> Malwarebytes)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpDefenderCoreService.exe [2150144 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 NGS; C:\ProgramData\Nexon\NGS\NGService.exe [3189352 2024-03-20] (NEXON Korea Corporation. -> NEXON Korea Corporation)
S3 nordsec-threatprotection-service; C:\Program Files\NordVPN\NordSec ThreatProtection\nordsec-threatprotection-service.exe [320088 2023-09-25] (nordvpn s.a. -> nordvpn S.A.)
R2 NordUpdaterService; C:\Program Files\NordUpdater\NordUpdateService.exe [297848 2022-12-21] (nordvpn s.a. -> nordvpn S.A.)
R2 nordvpn-service; C:\Program Files\NordVPN\nordvpn-service.exe [263256 2023-09-25] (nordvpn s.a. -> nordvpn S.A.)
R2 NovabenchService5; C:\Program Files\Novabench\resources\NovabenchService.exe [41979096 2023-12-09] (Novabench Inc. -> Novabench Inc.)
S3 OverwolfUpdater; C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2398016 2026-01-01] (Overwolf Ltd -> Overwolf LTD)
R2 paltalk_update_service; C:\Program Files (x86)\Paltalk\update\pt_update_service.exe [1336624 2023-04-25] (PALTALK, INC. -> AVM Software)
R2 Razer Chroma SDK Server; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe [1882024 2024-10-18] (Razer USA Ltd. -> Razer Inc.)
R2 Razer Chroma SDK Service; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe [232360 2024-10-18] (Razer USA Ltd. -> Razer Inc.)
R2 Razer Chroma Stream Server; C:\Program Files (x86)\Razer Chroma SDK\bin\RzChromaStreamServer.exe [1268176 2024-07-18] (Razer USA Ltd. -> Razer Inc.)
R2 Razer Game Manager Service; C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe [256256 2024-10-15] (Razer USA Ltd. -> Razer Inc)
R2 Razer Synapse Service; C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe [300168 2025-03-11] (Razer USA Ltd. -> Razer Inc.)
S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [1523832 2026-04-29] (Rockstar Games, Inc. -> Rockstar Games)
R2 ROG Live Service; C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe [2852768 2026-04-29] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
R2 RzActionSvc; C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe [513672 2025-03-06] (Razer USA Ltd. -> Razer Inc.)
R2 Surfshark Service; C:\Program Files\Surfshark\Surfshark.Service.exe [150720 2025-05-21] (Surfshark B.V. -> Surfshark.Service)
R2 tmInstall; C:\Program Files\Thrustmaster\FFB Racing wheel\drivers\amd64\tmInstall.EXE [295592 2024-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster®)
S3 ucldr_battlegrounds_gl; C:\Program Files\Common Files\Wellbia.com\ucldr_battlegrounds_gl.exe [5084200 2024-05-01] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
S3 UpcElevationService; C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher Core\UpcElevationService.exe [351928 2026-01-24] (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [66393768 2026-05-01] (Riot Games, Inc. -> Riot Games, Inc.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\NisSrv.exe [4608640 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MsMpEng.exe [290744 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 XRNADB; C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe [96768 2012-07-16] () [File not signed]
S3 zksvc; C:\Program Files\Common Files\PUBG\zksvc.exe [12458336 2024-05-01] (KRAFTON, Inc. -> KRAFTON, Inc)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 ACE-BASE; C:\Windows\system32\drivers\ACE-BASE.sys [4323992 2025-05-03] (Microsoft Windows Hardware Compatibility Publisher -> ANTICHEATEXPERT.COM)
S3 ace-game; C:\WINDOWS\System32\drivers\ace-game.sys [3281160 2025-05-03] (Tencent Technology (Shenzhen) Company Limited -> ANTICHEATEXPERT.COM)
S3 ACE-SSC-DRV64; C:\Program Files\AntiCheatExpert\SGuard\x64\plugins\ACE-SSC-DRV64.sys [236136 2025-05-01] (Microsoft Windows Hardware Compatibility Publisher -> ANTICHEATEXPERT.COM)
R3 amdfendrmgr; C:\WINDOWS\System32\DriverStore\FileRepository\amdfendr.inf_amd64_1aafc0a9b0693712\amdfendrmgr.sys [37208 2025-02-06] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
R3 AMDSAFD; C:\WINDOWS\System32\DriverStore\FileRepository\amdsafd.inf_amd64_d4de13a10f2586d0\amdsafd.sys [112952 2024-06-15] (AMD Test Build -> Advanced Micro Devices)
S3 amduw23g-417878-33000e3f; C:\WINDOWS\System32\DriverStore\FileRepository\u0417878.inf_amd64_cf56f0cbce08e931\B417693\amdkmdag.sys [101637624 2025-08-01] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
R3 amduw23g-420529-5f0fe368; C:\WINDOWS\System32\DriverStore\FileRepository\u0420529.inf_amd64_94ad5a6c4d1a04e2\B419765\amdkmdag.sys [101819840 2025-10-27] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [63008 2024-05-16] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R1 Asusgio3; C:\WINDOWS\system32\drivers\AsIO3.sys [69768 2026-04-08] (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.)
S3 atvi-brynhildr; C:\ProgramData\Battle.net_components\brynhildr_odin\brynhildr.sys [2336008 2024-03-30] (Activision Publishing Inc -> Activision Blizzard, Inc.)
S3 atvi-randgrid; C:\ProgramData\Battle.net_components\randgridauks\randgrid.sys [9055040 2025-02-05] (Activision Publishing Inc -> Activision Blizzard, Inc.)
S3 atvi-randgrid_sr; E:\SteamLibrary\steamapps\common\Call of Duty HQ\randgrid.sys [9109880 2025-11-21] (Activision Publishing Inc -> Activision Blizzard, Inc.)
R1 avpndriver; C:\WINDOWS\System32\drivers\avpndriver.sys [116760 2024-12-16] (GZ Systems Limited -> Windows (R) Win 7 DDK provider)
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [110592 2025-08-11] (Microsoft Corporation) [File not signed]
R3 cpuz158; C:\WINDOWS\temp\cpuz158\cpuz158_x64.sys [44576 2026-06-21] (Microsoft Windows Hardware Compatibility Publisher -> CPUID) <==== ATTENTION
R1 CTIAIO; C:\WINDOWS\system32\drivers\CtiAIo64.sys [39672 2026-01-21] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Innovation Co., LTd.)
S3 Denuvo Anti-Cheat; C:\Program Files\Denuvo Anti-Cheat\denuvo-anti-cheat.sys [3819200 2025-11-24] (Microsoft Windows Hardware Compatibility Publisher -> Denuvo GmbH)
R1 FACEIT; C:\Program Files\FACEIT AC\FACEIT_AC.sys [87378120 2026-06-20] (Microsoft Windows Hardware Compatibility Publisher -> )
R0 fse; C:\WINDOWS\System32\drivers\fse.sys [230896 2026-06-10] (Microsoft Windows -> Microsoft Corporation)
R3 iaLPSS2_GPIO2_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_gpio2_tgl.inf_amd64_4fcff055ed32f652\iaLPSS2_GPIO2_TGL.sys [132072 2024-12-04] (Intel Corporation -> Intel Corporation)
R3 iaLPSS2_I2C_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_i2c_tgl.inf_amd64_bd1c0a60b9594248\iaLPSS2_I2C_TGL.sys [205400 2024-12-04] (Intel Corporation -> Intel Corporation)
R4 IOMap; C:\WINDOWS\system32\drivers\IOMap64.sys [55416 2024-12-02] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
R3 iriuna0; C:\WINDOWS\system32\drivers\iriuna0.sys [46976 2021-04-06] (Iriun Oy -> Windows (R) Win 7 DDK provider)
S3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [82312 2026-05-20] (Microsoft Windows -> Microsoft Corporation)
S2 l1vhlwf; C:\WINDOWS\System32\drivers\l1vhlwf.sys [144872 2026-06-10] (Microsoft Windows -> Microsoft Corporation)
R3 logi_audio_surround; C:\WINDOWS\System32\DriverStore\FileRepository\logi_audio.inf_amd64_affafe6e263c4f51\logi_audio_surround.sys [44112 2025-02-14] (Microsoft Windows Hardware Compatibility Publisher -> Logitech, Inc.)
R3 logi_joy_bus_enum; C:\WINDOWS\System32\drivers\logi_joy_bus_enum.x64.sys [45448 2026-04-04] (Logitech Inc -> Logitech)
R3 logi_joy_vir_hid; C:\WINDOWS\System32\drivers\logi_joy_vir_hid.x64.sys [32648 2026-04-04] (Logitech Inc -> Logitech)
R3 logi_joy_xlcore; C:\WINDOWS\System32\drivers\logi_joy_xlcore.x64.sys [74632 2026-04-04] (Logitech Inc -> Logitech)
S3 ManyCam; C:\WINDOWS\system32\DRIVERS\mcvidrv.sys [65448 2023-01-17] (ManyCam ULC -> ManyCam ULC)
R2 mbamchameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [235624 2026-06-21] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [22120 2025-03-14] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [245864 2026-06-14] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S3 mcaudrv_simple; C:\WINDOWS\system32\drivers\mcaudrv_x64.sys [35960 2014-12-29] (ManyCam -> Visicom Media Inc.)
R1 MSIO; C:\WINDOWS\system32\drivers\MsIo64.sys [19672 2023-12-10] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd)
R2 NDivert; C:\Program Files\NordVPN\7.31.8.0\Drivers\NDivert.sys [131472 2024-10-31] (nordvpn s.a. -> Nordvpn S.A.)
R1 networx; C:\WINDOWS\System32\drivers\networx.sys [103496 2022-05-03] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
R1 nordlwf; C:\WINDOWS\system32\DRIVERS\nordlwf.sys [44928 2024-01-18] (nordvpn s.a. -> TEFINCOM S.A.)
R1 npcap; C:\WINDOWS\system32\DRIVERS\npcap.sys [69984 2024-01-18] (WDKTestCert Nmap,133147429230506937 -> Insecure.Com LLC.)
R3 ovpn-dco; C:\WINDOWS\System32\drivers\ovpn-dco.sys [104600 2024-10-30] (WDKTestCert lev,133391533294737317 -> OpenVPN, Inc)
S3 pccsmcfd; C:\WINDOWS\system32\DRIVERS\pccsmcfdx64.sys [26112 2012-10-17] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
S3 pvxVpnRdr; C:\WINDOWS\System32\drivers\pvxVpnRdr.sys [87800 2026-05-10] (Microsoft Windows Hardware Compatibility Publisher -> Privax Limited)
S3 pvxWireGuard; C:\WINDOWS\System32\drivers\pvxWireguard.sys [174872 2026-05-10] (Microsoft Windows Hardware Compatibility Publisher -> Privax Limited)
R3 rt25cx21; C:\WINDOWS\System32\DriverStore\FileRepository\rt25cx21x64.inf_amd64_7a47c3c01d4b9cab\rt25cx21x64.sys [897472 2024-12-04] (Realtek Semiconductor Corp. -> Realtek)
S3 RzCommon; C:\WINDOWS\System32\drivers\RzCommon.sys [64168 2022-08-18] (Razer USA Ltd. -> Razer Inc)
S3 RzDev_0084; C:\WINDOWS\System32\drivers\RzDev_0084.sys [54152 2020-08-24] (Razer USA Ltd. -> Razer Inc)
R3 SteamStreamingMicrophone; C:\WINDOWS\system32\drivers\SteamStreamingMicrophone.sys [40736 2020-06-01] (Valve Corp. -> )
R3 SteamStreamingSpeakers; C:\WINDOWS\system32\drivers\SteamStreamingSpeakers.sys [40736 2020-06-01] (Valve Corp. -> )
S3 SurfsharkBypasser; C:\Program Files\Surfshark\Resources\x64\SurfsharkBypasser.sys [128672 2025-04-04] (Microsoft Windows Hardware Compatibility Publisher -> Surfshark)
R3 tapnordvpn; C:\WINDOWS\System32\drivers\tapnordvpn.sys [41120 2024-08-29] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
S3 tmhidusb; C:\WINDOWS\system32\DRIVERS\tmhidusb.sys [568488 2024-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster)
S3 tmwbulk; C:\WINDOWS\System32\Drivers\tmwbulk.sys [383008 2022-09-08] (Microsoft Windows Hardware Compatibility Publisher -> © Guillemot R&D, 2022. All rights reserved.)
R1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [53793336 2026-05-01] (Riot Games, Inc. -> Riot Games, Inc.)
S3 vmbusproxy; C:\WINDOWS\system32\drivers\vmbusproxy.sys [98304 2025-08-11] (Microsoft Windows -> Microsoft Corporation)
R3 VOICEMOD_Driver; C:\WINDOWS\system32\drivers\mvvad.sys [51840 2024-11-11] (VOICEMOD, INC. SUCURSAL EN ESPAÑA -> Windows (R) Win 7 DDK provider)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [21888 2026-06-09] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [646536 2026-06-09] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [115120 2026-06-09] (Microsoft Windows -> Microsoft Corporation)
S3 wintun; C:\WINDOWS\System32\drivers\wintun.sys [38176 2024-07-29] (WireGuard LLC -> WireGuard LLC)
R3 WireGuard; C:\WINDOWS\System32\drivers\wireguard.sys [489368 2026-01-24] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
S3 xhunter1; C:\Windows\xhunter1.sys [215864 2024-05-21] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
S3 cpuz159; \??\C:\WINDOWS\temp\cpuz159\cpuz159_x64.sys (No File) <==== ATTENTION
==================== SvcHost (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-06-21 11:48 - 2026-06-21 11:49 - 000067803 _____ C:\Users\micha\OneDrive\Plocha\FRST.txt
2026-06-21 11:47 - 2026-06-21 11:49 - 000000000 ____D C:\FRST
2026-06-21 11:47 - 2026-06-21 11:47 - 002449920 _____ (Farbar) C:\Users\micha\OneDrive\Plocha\FRST64.exe
2026-06-21 10:42 - 2026-06-21 10:42 - 000711764 _____ C:\WINDOWS\system32\perfh005.dat
2026-06-21 10:42 - 2026-06-21 10:42 - 000152978 _____ C:\WINDOWS\system32\perfc005.dat
2026-06-20 23:52 - 2026-06-20 23:54 - 000000000 ____D C:\KVRT2020_Data
2026-06-14 00:44 - 2026-06-14 00:43 - 000481736 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_11.dll.0
2026-06-13 18:00 - 2026-06-20 23:38 - 000000000 ____D C:\WINDOWS\CbsTemp
2026-06-12 12:32 - 2026-06-12 12:32 - 000000000 _____ C:\Users\micha\OneDrive\Plocha\copypastas.txt
2026-06-10 13:04 - 2026-06-10 13:04 - 000000000 ___HD C:\$WinREAgent
2026-06-10 11:00 - 2026-06-10 11:00 - 000037366 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2026-06-10 11:00 - 2026-06-10 11:00 - 000037366 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2026-06-10 11:00 - 2026-06-10 11:00 - 000004066 _____ C:\WINDOWS\system32\DeviceFeatureDDF.json
2026-06-05 19:27 - 2026-06-05 19:46 - 2236456448 _____ C:\Users\micha\OneDrive\Plocha\Elite+Squad+(2007)+[Elitní+jednotka]+[114+min,+FHD-x265,+5.1]+[cs,+sk,+pt].mkv
2026-05-30 22:49 - 2026-05-31 13:24 - 000000000 ____D C:\Users\micha\AppData\Local\BET
2026-05-30 22:26 - 2026-05-30 22:26 - 000000223 _____ C:\Users\micha\OneDrive\Plocha\Backrooms Escape Together.url
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-06-21 11:50 - 2025-03-14 18:13 - 000000000 ____D C:\Users\micha\AppData\Local\Malwarebytes
2026-06-21 11:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-06-21 11:37 - 2024-01-04 20:26 - 000000000 ____D C:\Program Files (x86)\Steam
2026-06-21 11:18 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-06-21 10:45 - 2024-06-08 19:08 - 000000000 ____D C:\Users\micha\AppData\Local\Ubisoft Game Launcher
2026-06-21 10:45 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-06-21 10:42 - 2025-08-11 15:55 - 001692332 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-06-21 10:42 - 2024-04-01 09:24 - 000000000 ____D C:\WINDOWS\INF
2026-06-21 10:38 - 2025-08-07 17:04 - 000000000 ____D C:\Users\micha\AppData\Local\D3DSCache
2026-06-21 10:37 - 2025-02-23 12:46 - 000000000 ____D C:\Users\micha\AppData\Roaming\Pi Network
2026-06-21 10:37 - 2024-01-15 22:02 - 000000001 _____ C:\WINDOWS\vgkbootstatus.dat
2026-06-21 10:36 - 2025-11-14 18:48 - 000003868 _____ C:\WINDOWS\system32\Tasks\iTop Screen Recorder Update
2026-06-21 10:36 - 2024-01-05 14:05 - 000000000 ____D C:\ProgramData\iTop
2026-06-21 10:35 - 2026-05-10 12:31 - 000000000 ____D C:\WINDOWS\system32\Tasks\Privax
2026-06-21 10:35 - 2026-05-10 12:31 - 000000000 ____D C:\ProgramData\Privax
2026-06-21 10:35 - 2026-01-21 22:08 - 000000000 ____D C:\Users\micha\AppData\Roaming\asus_framework
2026-06-21 10:35 - 2025-08-11 15:50 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-06-21 10:35 - 2025-08-11 15:48 - 000067598 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2026-06-21 10:35 - 2024-04-01 09:26 - 000000000 ___HD C:\Program Files\WindowsApps
2026-06-21 10:35 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ServiceState
2026-06-21 10:35 - 2024-01-04 19:39 - 000000000 ____D C:\Users\micha\AppData\Local\Packages
2026-06-21 10:35 - 2024-01-04 19:21 - 000842128 _____ C:\WINDOWS\system32\AsusUpdateCheck.exe
2026-06-21 10:34 - 2024-01-04 19:21 - 000880672 _____ C:\WINDOWS\system32\wpbbin.exe
2026-06-21 02:00 - 2024-04-01 09:21 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2026-06-21 00:53 - 2025-04-08 10:14 - 000000000 ____D C:\ProgramData\PackerCrashCanary
2026-06-21 00:03 - 2026-02-21 14:59 - 000000000 ____D C:\Program Files\Upscayl
2026-06-20 23:56 - 2024-01-04 23:44 - 000000000 ____D C:\Program Files\FACEIT AC
2026-06-20 22:41 - 2024-03-16 18:57 - 000000000 ____D C:\Users\micha\AppData\Roaming\Movavi Video Converter 22 Premium
2026-06-20 22:38 - 2024-09-07 17:00 - 000000000 ____D C:\Users\micha\AppData\Roaming\BitTorrent Web
2026-06-20 21:20 - 2025-03-01 15:24 - 000000000 ____D C:\Users\micha\.docker
2026-06-20 21:20 - 2025-03-01 15:17 - 000000000 ____D C:\Users\micha\AppData\Roaming\Docker
2026-06-20 21:20 - 2025-03-01 15:17 - 000000000 ____D C:\ProgramData\DockerDesktop
2026-06-20 11:27 - 2025-08-11 15:50 - 000003640 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2026-06-20 11:27 - 2025-08-11 15:50 - 000003514 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2026-06-20 11:18 - 2025-03-05 12:25 - 000000498 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics
2026-06-20 00:00 - 2024-01-04 20:28 - 000000000 ____D C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2026-06-19 23:41 - 2024-01-04 23:59 - 000000000 ____D C:\Users\micha\AppData\Local\CrashDumps
2026-06-19 02:12 - 2025-08-11 15:47 - 000000000 ____D C:\Users\micha
2026-06-18 23:33 - 2025-12-16 00:07 - 000000000 ____D C:\WINDOWS\system32\Tasks\GoogleUserPEH
2026-06-18 21:53 - 2024-01-04 19:22 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-06-18 17:16 - 2025-08-11 15:45 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2026-06-17 21:58 - 2025-01-01 17:37 - 000002364 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk
2026-06-16 12:38 - 2025-08-11 15:50 - 000003584 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-756127909-4058986209-260929036-1001
2026-06-16 12:38 - 2025-08-11 15:50 - 000003564 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-756127909-4058986209-260929036-1001
2026-06-16 12:38 - 2025-08-11 15:50 - 000003354 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-756127909-4058986209-260929036-1001
2026-06-16 12:38 - 2024-01-04 19:41 - 000002377 _____ C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2026-06-15 10:38 - 2025-08-11 15:50 - 000004466 _____ C:\WINDOWS\system32\Tasks\Opera GX scheduled assistant Autoupdate 1704714885
2026-06-15 10:38 - 2025-08-11 15:50 - 000004178 _____ C:\WINDOWS\system32\Tasks\Opera GX scheduled Autoupdate 1704393290
2026-06-15 10:38 - 2024-01-04 20:34 - 000001415 _____ C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera GX.lnk
2026-06-15 10:32 - 2024-11-10 22:37 - 134222904 _____ C:\WINDOWS\392667600.dat
2026-06-14 14:33 - 2024-01-15 20:52 - 000000000 ____D C:\ProgramData\Riot Games
2026-06-14 14:32 - 2026-01-22 20:54 - 000000000 ____D C:\Users\micha\AppData\Roaming\Riot Client
2026-06-14 14:32 - 2024-02-17 20:15 - 000000000 ____D C:\Users\micha\AppData\Roaming\riot-client-ux
2026-06-14 10:14 - 2025-03-14 18:13 - 000245864 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2026-06-14 00:44 - 2024-08-30 16:18 - 004561352 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2026-06-14 00:44 - 2024-08-30 16:18 - 000158152 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe
2026-06-14 00:44 - 2024-08-30 16:18 - 000084424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe
2026-06-14 00:43 - 2024-08-30 16:18 - 001182152 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2026-06-14 00:43 - 2024-08-30 16:18 - 000338376 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2026-06-14 00:43 - 2024-08-30 16:18 - 000268744 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2026-06-14 00:43 - 2024-08-30 16:18 - 000166344 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2026-06-13 17:40 - 2024-01-12 19:11 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2026-06-12 20:10 - 2025-03-15 12:08 - 000002146 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2026-06-10 21:48 - 2025-08-11 15:45 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK
2026-06-10 21:45 - 2025-08-11 15:45 - 000306744 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2026-06-10 21:44 - 2025-08-11 16:36 - 000000000 ____D C:\WINDOWS\system32\Drivers\en-GB
2026-06-10 21:44 - 2024-04-01 18:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\UUS
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\quz-PE
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mi-NZ
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemResources
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ta-IN
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\quz-PE
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mt-MT
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mk-MK
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mi-NZ
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\es-MX
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\Program Files\Common Files\System
2026-06-10 21:44 - 2024-04-01 09:21 - 000000000 ____D C:\WINDOWS\servicing
2026-06-10 11:02 - 2024-01-04 20:09 - 000000000 ____D C:\WINDOWS\system32\MRT
2026-06-10 11:00 - 2025-08-11 15:48 - 003261440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2026-06-10 10:54 - 2024-01-04 20:09 - 222431176 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2026-06-10 00:06 - 2026-02-07 19:24 - 000000000 ____D C:\WINDOWS\Minidump
2026-06-10 00:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2026-06-09 11:57 - 2024-01-04 19:22 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2026-06-08 20:39 - 2024-01-15 23:56 - 000000000 ____D C:\Users\micha\AppData\Roaming\Blitz
2026-06-08 13:58 - 2024-01-15 23:56 - 000002213 _____ C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blitz.lnk
2026-06-08 13:58 - 2024-01-15 23:56 - 000000032 _____ C:\Users\micha\AppData\Roaming\.machineId
2026-06-06 10:43 - 2024-01-15 20:54 - 000000000 ____D C:\Program Files\Riot Vanguard
2026-06-03 00:42 - 2024-01-04 19:23 - 000000000 ____D C:\ProgramData\Packages
2026-05-23 20:16 - 2024-01-04 20:27 - 000000000 ____D C:\Users\micha\AppData\Local\Steam
==================== Files in the root of some directories ========
2024-01-15 23:56 - 2026-06-08 13:58 - 000000032 _____ () C:\Users\micha\AppData\Roaming\.machineId
2024-01-14 20:36 - 2024-01-14 20:36 - 000000016 _____ () C:\Users\micha\AppData\Roaming\obs-virtualcam.txt
2024-01-08 15:30 - 2024-01-08 15:30 - 000000044 _____ () C:\Users\micha\AppData\Roaming\Screen+.data
2025-11-27 21:04 - 2025-11-27 21:04 - 000000048 ____R () C:\Users\micha\AppData\Local\0119AC2FC90D95AC063B177717B7B3B6
2025-04-19 23:11 - 2025-04-19 23:11 - 000000048 ____R () C:\Users\micha\AppData\Local\66302C3ABCF0203701B7744560199EA1
2024-12-15 11:05 - 2024-12-15 11:05 - 000000048 ____R () C:\Users\micha\AppData\Local\8B1D271A9281777F9A783A29EC6394D2
2025-10-19 16:48 - 2026-04-30 00:43 - 000000003 _____ () C:\Users\micha\AppData\Local\Autosofted License.txt
2025-03-11 13:19 - 2025-06-03 08:12 - 000007630 _____ () C:\Users\micha\AppData\Local\resmon.resmoncfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Prosím o kontrolu logu z důvodu úbytku místa na SSD
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: Prosím o kontrolu logu z důvodu úbytku místa na SSD
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20-06-2026
Ran by micha (21-06-2026 11:50:50)
Running from C:\Users\micha\OneDrive\Plocha
Microsoft Windows 11 Home Version 25H2 26200.8655 (X64) (2025-08-11 13:50:35)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-756127909-4058986209-260929036-500 - Administrators - Disabled)
Black (S-1-5-21-756127909-4058986209-260929036-1004 - Limited - Disabled)
DefaultAccount (S-1-5-21-756127909-4058986209-260929036-503 - Limited - Disabled)
Guest (S-1-5-21-756127909-4058986209-260929036-501 - Limited - Disabled)
kolom (S-1-5-21-756127909-4058986209-260929036-1003 - Limited - Disabled)
micha (S-1-5-21-756127909-4058986209-260929036-1001 - Administrators - Enabled) => C:\Users\micha
Shoot (S-1-5-21-756127909-4058986209-260929036-1002 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-756127909-4058986209-260929036-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\uTorrent) (Version: 3.6.0.47224 - BitTorrent Limited)
Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1029-1033-7760-BC15014EA700}) (Version: 26.001.21662 - Adobe)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601149}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
AMD Install Manager (HKLM\...\{45E3ACCD-D14E-412E-82D7-F65278ACD8EE}) (Version: 25.10.25205.2240 - Advanced Micro Devices, Inc.)
AMD Privacy View (HKLM\...\{D8E24EA6-807B-48D0-86D6-A9C5E74B8F2C}) (Version: 1.02.0001 - Eyeware Tech SA)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 25.8.1 - Advanced Micro Devices, Inc.)
AniMeVisionFont_MB (HKLM\...\{93E38BA3-9745-4D67-91BC-F65F81523D0A}) (Version: 1.0.1 - ASUSTek Computer Inc.) Hidden
Antidote by Sekg 1.18.3 (HKLM\...\3e510627-0501-5809-9ff3-e0dcca6cef0e) (Version: 1.18.3 - Sekg)
AntiCheatExpert (HKLM\...\AntiCheatExpert) (Version: 15.0.2405.347 - )
Armoury Crate Service (HKLM\...\Armoury Crate Service) (Version: 6.5.7.0 - ASUSTeK COMPUTER INC.)
ASUS AIOFan HAL (HKLM\...\{EAE80DED-1A39-41C5-9F60-87CC947F6454}) (Version: 1.5.5.0 - ASUSTeK COMPUTER INC.) Hidden
ASUS AIOFan HAL (HKLM-x32\...\{7c790d87-e250-4c7e-ad7f-e921dab6777d}) (Version: 1.5.5.0 - ASUSTeK COMPUTER INC.) Hidden
ASUS Ambient HAL (HKLM\...\{158AC6D1-5591-4BA5-AE57-50B66F1055AA}) (Version: 7.20.0.0 - ASUSTeK COMPUTER INC.) Hidden
ASUS Ambient HAL (HKLM-x32\...\{5f21a988-01f3-468f-a06e-0b13304d11cb}) (Version: 7.20.0.0 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Extension Card HAL (HKLM\...\{237E1CAC-1708-4940-AC34-DF15C079AB70}) (Version: 1.1.0.20 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Extension Card HAL (HKLM-x32\...\{49c4358d-054e-4cf1-9ec1-dca3487f304a}) (Version: 1.1.0.20 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Motherboard HAL (HKLM\...\{359B9A9D-A289-4962-BCE2-13EBFD50D532}) (Version: 1.6.1.5 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Motherboard HAL (HKLM-x32\...\{f88c8031-a585-43ae-969c-43a196cbebf1}) (Version: 1.6.1.5 - ASUSTeK COMPUTER INC.) Hidden
ASUS Aura SDK (HKLM\...\{CF8E6E00-9C03-4440-81C0-21FACB921A6B}) (Version: 3.07.05 - ASUSTeK COMPUTER INC.) Hidden
ASUS Framework Service (HKLM-x32\...\{339A6383-7862-46DA-8A9D-E84180EF9424}) (Version: 4.2.4.13 - ASUSTeK Computer Inc.)
ASUS Motherboard (HKLM-x32\...\{93795eb8-bd86-4d4d-ab27-ff80f9467b37}) (Version: 5.02.06 - ASUSTek Computer Inc.)
ASUS Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.107.159 - ASUSTeK Computer Inc.) Hidden
AURA DRAM Component (HKLM\...\{86D4C8A2-DB22-4948-950D-28DD5145F91C}) (Version: 1.1.29 - ASUS) Hidden
AURA DRAM Component (HKLM-x32\...\{f70a8a88-540d-485d-9aa8-001486fb050e}) (Version: 1.1.29 - ASUS) Hidden
AURA lighting effect add-on (HKLM-x32\...\{1E2EA04B-FCA7-457E-B6F4-F33E1858E859}) (Version: 0.0.55 - ASUSTek COMPUTER INC.)
AURA lighting effect add-on x64 (HKLM\...\{C5A4A164-4428-4931-B728-96EEF0FA3C44}) (Version: 0.0.55 - ASUSTek COMPUTER INC.)
AURA Service (HKLM-x32\...\{56EEEF7D-0AE3-401A-898B-581719D005AE}) (Version: 3.10.10 - ASUSTeK COMPUTER INC.) Hidden
AURA Service (HKLM-x32\...\{c74e7336-6fc2-472d-b921-ba6f5e58bd59}) (Version: 3.10.10 - ASUSTeK COMPUTER INC.)
Auto Keyboard by MurGee.com v10.6.1 (HKLM-x32\...\{71E16EE4-BBED-44A8-8724-9E68D05EE945}_is1) (Version: 10.6.1 - MurGee.com)
Auto Keyboard Presser 2.1.1.8 (HKLM-x32\...\{8A64FE75-FD59-40C9-93C5-9F6C47106F4B}_is1) (Version: - AutoMacroRecorder.com, Inc.)
Balíček ovladače systému Windows - Nokia Modem (02/25/2011 4.7) (HKLM\...\E0AC723A3DE3A04256288CADBBB011B112AED454) (Version: 02/25/2011 4.7 - Nokia)
Balíček ovladače systému Windows - Nokia Modem (02/25/2011 7.01.0.9) (HKLM\...\72A50F48CC5601190B9C4E74D81161693133E7F7) (Version: 02/25/2011 7.01.0.9 - Nokia)
Balíček ovladače systému Windows - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) (HKLM\...\62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F) (Version: 05/31/2012 7.1.2.0 - Nokia)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Battlefield™ 6 (HKLM-x32\...\{c508544b-57bd-4c6c-96ed-8f57235285b4}) (Version: 1.0.397.41940 - Electronic Arts)
BitTorrent Web (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\btweb) (Version: 1.5.0 - BitTorrent Limited)
Blackmagic RAW Common Components (HKLM\...\{EB1F744F-B900-4BAD-82E8-5350C910AB38}) (Version: 4.1 - Blackmagic Design)
Blitz (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\153f8ce0-b97a-575b-ba12-4ff8b1481894) (Version: 2.1.582 - Blitz, Inc.)
Bolt Food (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\0fcc5bccdcfb99592c6ff73083a4eb00) (Version: 1.0 - BraveSoftware\Brave-Browser)
Branding64 (HKLM\...\{492AEFBE-1B81-4C20-A111-E6974BB98EC5}) (Version: 1.00.0009 - Advanced Micro Devices, Inc.) Hidden
Brave (HKLM-x32\...\BraveSoftware Brave-Browser) (Version: 149.1.91.175 - Autoři prohlížeče Brave)
BUFF (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Overwolf_caboggillkkpgkiokbjmgldfkedbfnpkgadakcdl) (Version: 0.9.36.0 - Overwolf app)
Call of Duty (HKLM-x32\...\Call of Duty) (Version: - Blizzard Entertainment)
Call of Duty Modern Warfare (HKLM-x32\...\Call of Duty Modern Warfare) (Version: - Blizzard Entertainment)
Call of Duty(R) 2 (HKLM-x32\...\InstallShield_{D0A05794-48C2-4424-A15A-9F20FCFDD374}) (Version: 1.00.0000 - Activision)
CapCut (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\CapCut) (Version: 6.2.0.2385 - Bytedance Pte. Ltd.)
CCleaner (HKLM\...\CCleaner) (Version: 6.38 - Piriform)
CoD 2 čeština (HKLM-x32\...\CoD 2 čeština_is1) (Version: - #'Pan[S]al!er!)
CPUID CPU-Z 2.08 (HKLM\...\CPUID CPU-Z_is1) (Version: 2.08 - CPUID, Inc.)
CPUID HWMonitor 1.52 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.52 - CPUID, Inc.)
CrystalDiskMark 8.0.4c (HKLM\...\CrystalDiskMark8_is1) (Version: 8.0.4c - Crystal Dew World)
CurseForge (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Overwolf_cchhcaiapeikjbdbpfplgmpobbcdkdaphclbmkbj) (Version: 1.296.1.364 - Overwolf app)
DaVinci Resolve (HKLM\...\{A42AD466-8352-466F-B920-67F54C4F8679}) (Version: 19.0.00051 - Blackmagic Design)
DaVinci Resolve Control Panels (HKLM\...\{3739CA49-792F-4F1F-9B76-42DFBBBED27E}) (Version: 2.3.0.0 - Blackmagic Design)
DaVinci Resolve Renderer (HKLM\...\{953AAFB1-E9E3-4FED-9E35-575B960236CC}) (Version: 19.0.00051 - Blackmagic Design)
Denuvo Anti-Cheat (HKLM\...\Denuvo Anti-Cheat) (Version: 6.7.0.6846 - Denuvo GmbH)
Discord (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Discord) (Version: 1.0.9228 - Discord Inc.)
DownloadHelper CoApp (HKLM-x32\...\DownloadHelper CoApp) (Version: 2.0.19.0 - ACLAP)
Dynamic Application Loader Host Interface Service (HKLM\...\{439E5170-CFC8-4944-8119-746ECF219399}) (Version: 1.0.0.0 - Intel Corporation) Hidden
EA app (HKLM\...\{C2622085-ABD2-49E5-8AB9-D3D6A642C091}) (Version: 13.680.0.6193 - Electronic Arts) Hidden
EA app (HKLM-x32\...\{d473ca0c-6e51-4386-a9d8-0458f243b271}) (Version: 13.680.0.6193 - Electronic Arts)
ENE RGB HAL (HKLM\...\{E050E98C-5524-4AFB-9E53-97700BEF2C02}) (Version: 1.1.62.5 - Ene Tech.) Hidden
ENE RGB HAL (HKLM-x32\...\{cc8ca0dc-1a3a-4f92-ae52-0f35ca2d2ec5}) (Version: 1.1.62.5 - Ene Tech.) Hidden
ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
ENE_EHD_M2_HAL (HKLM-x32\...\{c1d017c2-8846-4000-9254-5689eccd462e}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
Epic Games Launcher (HKLM-x32\...\{FAC47927-1A6A-4C6E-AD7D-E9756794A4BC}) (Version: 1.3.23.0 - Epic Games, Inc.)
Epic Online Services (HKLM-x32\...\{758842D2-1538-4008-A8E3-66F65A061C52}) (Version: 2.0.33.0 - Epic Games, Inc.)
FACEIT (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\FACEIT) (Version: 2.0.26 - FACEIT Ltd.)
FACEIT Anti-Cheat (HKLM\...\{1419E44C-0EF4-4822-9194-9F1A4D43973D}_is1) (Version: 2.1 - FACEIT LTD)
Fairlight Audio Accelerator Utility (HKLM\...\FairlightAudioAccelerator_is1) (Version: 1.0.15 - Blackmagic Design)
FFB Racing Wheel drivers (HKLM-x32\...\{28B758EA-5C83-48B1-B352-C70F12C73F5A}) (Version: 1.TTRS.2024 - Thrustmaster)
FiveM (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\CitizenFX_FiveM) (Version: - Cfx.re)
Free Download Manager (HKLM\...\{0C1D4CF2-5575-4786-834C-B0FC977E9714}}_is1) (Version: 6.33.2.6656 - Softdeluxe)
GameGuard (HKLM-x32\...\{DB58A440-02BB-433B-AE99-D0B8AF31A839}) (Version: 1.0.0.0 - GameGuard AntiCheat, OnMoon Company LLC)
GameSDK Service (HKLM-x32\...\{021d69c3-d686-4a94-8fb5-fd1ee782fb14}) (Version: 1.0.5.0 - ASUSTek COMPUTER INC.)
GameSDK Service (HKLM-x32\...\{7160DA8D-3F25-4F6E-ABC8-F693551D82FA}) (Version: 1.0.5.0 - ASUSTek COMPUTER INC.) Hidden
GMenu (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\4ac46a8d-c0d4-56ee-87f3-9abd4ce22e7f) (Version: 3.28.0 - AOC)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 149.0.7827.114 - Google LLC)
GTA San Andreas (HKLM-x32\...\{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}) (Version: 1.00.00001 - Rockstar Games)
Hamachi (HKLM-x32\...\{C00E2143-38F2-49BA-AB8A-03F22F02F0A4}) (Version: 2.3.0.111 - LogMeIn, Inc.) Hidden
Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.3.0.111 - LogMeIn, Inc.)
Hextech Repair Tool (HKLM-x32\...\{7F9A97E6-E666-11E5-B582-B88687E82322}) (Version: 1.1.176 - Riot Games, Inc.)
HMA VPN (HKLM\...\Privax HMA) (Version: 26.5.12311.16202 - Privax)
Intel(R) Chipset Device Software (HKLM\...\{2EE411D3-03C6-4647-81F5-A3C13F25FDC5}) (Version: 10.1.18838.8284 - Intel Corporation) Hidden
Intel(R) Chipset Device Software (HKLM-x32\...\{2d8d3782-0c02-4681-87f4-e004b3d4a8f6}) (Version: 10.1.18838.8284 - Intel(R) Corporation)
Intel(R) LMS (HKLM\...\{DFFC9992-3A41-4155-A834-9831C6E58D98}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 2130.16.0.2387 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{FA6E1882-F6C1-47E1-A6CB-FC1F5460E311}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Driver (HKLM\...\{38F0D70E-8F07-4BF9-A5E0-6946C3D614D8}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.2129.8 - Intel Corporation)
Intel(R) Serial IO (HKLM\...\{A5530342-3F3E-4C02-9ECA-20DC35944BFD}) (Version: 30.100.2129.8 - Intel Corporation) Hidden
INUI (C) (HKLM\...\INUI) (Version: 1.0.0 - INUI GAMING FZ LLC)
IO Auto Clicker version 1.2.0 (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\IO Auto Clicker_is1) (Version: 1.2.0 - Wonkru Media (OPC) Private Limited)
Iriun Webcam version 2.8.4 (HKLM-x32\...\IriunWebcam_is1) (Version: 2.8.4 - Iriun)
iTop Screen Recorder (HKLM-x32\...\iTop Screen Recorder_is1) (Version: 6.2.0.3488 - iTop Inc.)
iTop Screenshot (HKLM-x32\...\iTop Screenshot_is1) (Version: 1.2.3.544 - iTop Inc.)
Kinect for Windows Speech Recognition Language Pack (en-AU) (HKLM-x32\...\{48CEC0A3-AE10-4EE3-AC62-76D3D58792E5}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-CA) (HKLM-x32\...\{9C5505DA-F9C1-46CB-9F8F-AC38F8EA518A}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-GB) (HKLM-x32\...\{A0186231-0A8B-455A-8A25-B64AABCC11A6}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-US) (HKLM-x32\...\{8AAA44BB-487E-4D01-AF76-484ACB90DBFE}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kingston AURA DRAM Component (HKLM\...\{965CDF5F-901C-476F-B3A8-7396701B1129}) (Version: 1.1.44 - KINGSTON COMPONENTS INC.) Hidden
Kingston AURA DRAM Component (HKLM-x32\...\{9cfd6488-af6d-4b35-9df3-e16b0c6b791b}) (Version: 1.1.44 - KINGSTON COMPONENTS INC.) Hidden
KMPlayer (remove only) (HKLM-x32\...\The KMPlayer) (Version: 4.2.3.7 - PandoraTV)
Kodi (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Kodi) (Version: 21.1.0.0 - XBMC Foundation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
League of Legends (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Riot Game league_of_legends.live) (Version: - Riot Games, Inc)
Logitech G HUB (HKLM\...\{521c89be-637f-4274-a840-baaf7460c2b2}) (Version: 2026.3.880543 - Logitech)
LSC_Battletron 2.0.17 (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\4682e427-f1d4-58e9-ae92-7249f6aeeff5) (Version: 2.0.17 - )
Mafia (HKLM-x32\...\1595659240_is1) (Version: 1.3 - GOG.com)
Mafia Compatibility Database (HKLM\...\{481dc351-bab0-4f86-b085-87a5626fe6dc}.sdb) (Version: - )
Mafia II Definitive Edition (HKLM-x32\...\1449710114_is1) (Version: 1.0 - GOG.com)
Malwarebytes version 5.5.7.255 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.5.7.255 - Malwarebytes)
Massive (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\{07F54E47-DE08-486E-921C-D09624774BB6}_is1) (Version: 0.19.2 - Massive Computing, Inc.) <==== ATTENTION
Microsoft .NET 9.0 Templates 9.0.312 (x64) (HKLM\...\{CC355296-727E-4588-B4BE-F019FCBBE942}) (Version: 36.11.56644 - Microsoft Corporation) Hidden
Microsoft .NET AppHost Pack - 9.0.14 (x64) (HKLM\...\{7755F4D3-1735-4CD7-B1B8-293F1822CD96}) (Version: 72.56.48826 - Microsoft Corporation) Hidden
Microsoft .NET AppHost Pack - 9.0.14 (x64_arm64) (HKLM\...\{DD425E5F-3B08-4EFB-B0E7-999FE0A11545}) (Version: 72.56.48826 - Microsoft Corporation) Hidden
Microsoft .NET AppHost Pack - 9.0.14 (x64_x86) (HKLM\...\{A8EBAB5C-7A03-4C95-BCDC-979E5D1C8D68}) (Version: 72.56.48826 - Microsoft Corporation) Hidden
Microsoft .NET Host - 6.0.14 (x86) (HKLM-x32\...\{364225D5-48A0-4CF2-9BDF-F72872EE07FF}) (Version: 48.59.55225 - Microsoft Corporation) Hidden
Microsoft .NET Host - 6.0.5 (x64) (HKLM\...\{F3B3A61B-DC16-429A-A260-DBAFE66741A9}) (Version: 48.23.40665 - Microsoft Corporation) Hidden
Microsoft .NET Host - 7.0.7 (x64) (HKLM\...\{E914E975-A0B1-49F7-AB71-28DACD495C44}) (Version: 56.31.61636 - Microsoft Corporation) Hidden
Microsoft .NET Host - 8.0.21 (x64) (HKLM\...\{72357746-B194-485C-A161-FB80F419DC20}) (Version: 64.84.40925 - Microsoft Corporation) Hidden
Microsoft .NET Host - 9.0.14 (x64) (HKLM\...\{1BDBCEB3-9590-47AF-91CA-C0F467760A5A}) (Version: 72.56.48826 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.14 (x86) (HKLM-x32\...\{C20F1D07-10B7-4B92-8FA0-DF8E58D6467F}) (Version: 48.59.55225 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.5 (x64) (HKLM\...\{3E6CCD41-6B96-47BD-8E1E-D7B593CEE976}) (Version: 48.23.40665 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 7.0.7 (x64) (HKLM\...\{62A9DE14-DB7A-41D9-9D7E-ED494E6FCBAF}) (Version: 56.31.61636 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.21 (x64) (HKLM\...\{B382D796-20D3-45DA-AB94-E98D99668B10}) (Version: 64.84.40925 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.8 (x64) (HKLM\...\{7FE24458-0796-4428-99C2-9A0F8DAB93CC}) (Version: 64.32.18380 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 9.0.14 (x64) (HKLM\...\{A5622318-9DBD-4A19-808D-CDA0929CA1DF}) (Version: 72.56.48826 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.14 (x86) (HKLM-x32\...\{101779FE-3FE4-420A-94DD-01B3ED37DE84}) (Version: 48.59.55225 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.5 (x64) (HKLM\...\{089A177D-98AE-4195-A115-D3C45613B875}) (Version: 48.23.40665 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 7.0.7 (x64) (HKLM\...\{ECCA3DB0-6DEF-42CD-A21A-F2F7B918FB59}) (Version: 56.31.61636 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.21 (x64) (HKLM\...\{EEFB29A5-3E62-4DCE-8527-0DF45D780126}) (Version: 64.84.40925 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.21 (x64) (HKLM-x32\...\{cf83f56a-4c10-4d97-9594-0764dfeb96e3}) (Version: 8.0.21.35325 - Microsoft Corporation)
Microsoft .NET Runtime - 8.0.8 (x64) (HKLM\...\{9ACB23DB-4D32-49ED-A5E3-F4E2F8D9D2AA}) (Version: 64.32.18380 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 9.0.14 (x64) (HKLM\...\{7D8CA9A1-03AD-4726-8FAD-91DE906279DE}) (Version: 72.56.48826 - Microsoft Corporation) Hidden
Microsoft .NET SDK 9.0.312 (x64) (HKLM-x32\...\{2bc246c1-704c-455e-b2be-a51402659f2a}) (Version: 9.3.1226.12004 - Microsoft Corporation)
Microsoft .NET Standard Targeting Pack - 2.1.0 (x64) (HKLM\...\{A7036CFB-B403-4598-85FF-D397ABB88173}) (Version: 24.0.28113 - Microsoft Corporation) Hidden
Microsoft .NET Targeting Pack - 9.0.14 (x64) (HKLM\...\{F51EFB18-E243-4626-966E-11E0847B3877}) (Version: 72.56.48826 - Microsoft Corporation) Hidden
Microsoft .NET Toolset 9.0.312 (x64) (HKLM\...\{AB20E512-EB28-4AF1-B055-3E6E2AF9C45B}) (Version: 36.11.56644 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 9.0.14 Shared Framework (x64) (HKLM\...\{05C6BB69-26B0-3DDE-94A6-E8EE704DC45A}) (Version: 9.0.14.26119 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 9.0.14 Targeting Pack (x64) (HKLM\...\{93AA5DC3-A927-3582-BADC-071D914460DB}) (Version: 9.0.14.26119 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 149.0.4022.80 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 149.0.4022.80 - Microsoft Corporation) Hidden
Microsoft GameInput (HKLM\...\{14EDF950-06B9-415F-862C-1D5DEC321AE6}) (Version: 3.3.221.0 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\OneDriveSetup.exe) (Version: 26.095.0519.0003 - Microsoft Corporation)
Microsoft Server Speech Platform Runtime (x64) (HKLM\...\{3B433087-E62E-4BF5-97F9-4AF6E1C2409C}) (Version: 11.0.7400.345 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.44.35211 (HKLM-x32\...\{d8bbe9f9-7c5b-42c6-b715-9ee898a2e515}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.44.35211 (HKLM-x32\...\{0b5169e3-39da-4313-808e-1f9c0407f3bf}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.44.35211 (HKLM\...\{86AB2CC9-08BD-4643-B0F9-F82D006D72FF}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.44.35211 (HKLM\...\{43B0D101-A022-48F4-9D04-BA404CEB1D53}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.44.35211 (HKLM-x32\...\{C18FB403-1E88-43C8-AD8A-CED50F23DE8B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.44.35211 (HKLM-x32\...\{922480B5-CAEB-4B1B-AAA4-9716EFDCE26B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.14 (x86) (HKLM-x32\...\{0CA8F91E-EE14-4ED7-94A4-BAD16EA67D2F}) (Version: 48.59.55235 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.14 (x86) (HKLM-x32\...\{c31ad3df-16b7-41b3-81fa-7658cb450781}) (Version: 6.0.14.32124 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 6.0.5 (x64) (HKLM\...\{DE578B32-084A-49E7-8E55-6F58A37578C0}) (Version: 48.23.40699 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.5 (x64) (HKLM-x32\...\{0f711ee3-eb88-456d-acb4-c2ee31add211}) (Version: 6.0.5.31215 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 7.0.7 (x64) (HKLM\...\{593F16DC-C2D3-4740-ABD4-A171B4E32B06}) (Version: 56.31.61651 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 7.0.7 (x64) (HKLM-x32\...\{e875fc20-9a37-4344-b046-0bb037cb2d57}) (Version: 7.0.7.32525 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.8 (x64) (HKLM\...\{663E7053-3B36-4AE5-8223-234867FAEAE6}) (Version: 64.32.18376 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.8 (x64) (HKLM-x32\...\{33832ff3-5583-4b81-b270-d9fd42760e1a}) (Version: 8.0.8.33916 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 9.0.14 (x64) (HKLM\...\{8CE06646-49A6-427F-9155-5E1F50190E08}) (Version: 72.56.48819 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Targeting Pack - 9.0.14 (x64) (HKLM\...\{701F71AE-5DE0-410F-A621-55A232BC8E24}) (Version: 72.56.48819 - Microsoft Corporation) Hidden
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Microsoft.NET.Sdk.Android.Manifest-9.0.100 (x64) (HKLM\...\{76737228-5B3F-4431-9C02-BC3C1B25198B}) (Version: 35.0.7 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.Aspire.Manifest-8.0.100 (x64) (HKLM\...\{2E5C5364-621F-4F22-8B81-18524D6F0361}) (Version: 64.136.23253 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.iOS.Manifest-9.0.100 (x64) (HKLM\...\{736FFE9E-6571-4059-B73D-F97F07E9F98D}) (Version: 18.0.9617 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.MacCatalyst.Manifest-9.0.100 (x64) (HKLM\...\{393886C4-81D0-4CB7-BE11-B2B974BAE978}) (Version: 18.0.9617 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.macOS.Manifest-9.0.100 (x64) (HKLM\...\{16C48C75-42D8-4E6A-845B-233207524190}) (Version: 15.0.9617 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.Maui.Manifest-9.0.100 (x64) (HKLM\...\{3214CADE-AAED-4B9A-8927-49D866E2A758}) (Version: 9.0.0 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.tvOS.Manifest-9.0.100 (x64) (HKLM\...\{CF59BE56-B314-4B17-B3C2-8B7197681D56}) (Version: 18.0.9617 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Emscripten.Current.Manifest (x64) (HKLM\...\{AB59D4BA-BE3B-4C22-B984-AA9E065842D0}) (Version: 72.56.48675 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Emscripten.net6.Manifest (x64) (HKLM\...\{DA29E54E-9E8C-4DA4-9D78-A9024BE5876C}) (Version: 72.56.48675 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Emscripten.net7.Manifest (x64) (HKLM\...\{C6644939-33AC-4395-B668-402FD42BA3D7}) (Version: 72.56.48675 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Emscripten.net8.Manifest (x64) (HKLM\...\{1B9AD5AC-6636-4611-AFDD-E4FE9EC3B885}) (Version: 72.56.48675 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Mono.Toolchain.Current.Manifest (x64) (HKLM\...\{65ADB65C-239A-4B43-9580-4F3F5564E91C}) (Version: 72.0.48826 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Mono.Toolchain.net6.Manifest (x64) (HKLM\...\{2C405A91-A1AB-4A47-AC40-CD35C632E4CD}) (Version: 72.0.48826 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Mono.Toolchain.net7.Manifest (x64) (HKLM\...\{55DFE7C5-961B-4685-9561-ECA6E3C2ADB7}) (Version: 72.0.48826 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Mono.Toolchain.net8.Manifest (x64) (HKLM\...\{0EDAC286-5E7D-46E0-BCE5-8D71CBC0C1A0}) (Version: 72.0.48826 - Microsoft Corporation) Hidden
Microsoft_VC100_CRT_SP1_x64 (HKLM\...\{680EDA59-9266-44B4-949E-0C24F65DFF82}) (Version: 10.0.40219.1 - Nokia) Hidden
Microsoft_VC100_CRT_SP1_x86 (HKLM-x32\...\{E3B64CC5-C011-40C0-92BC-7316CD5E5688}) (Version: 10.0.40219.1 - Nokia) Hidden
Minecraft Launcher (HKLM-x32\...\{A26EF561-5945-46FD-8094-FA34E44D460F}) (Version: 2.0.0.0 - Mojang)
MKVcleaver 64 bit (HKLM\...\{2C9ACE67-EEDB-4DE6-8C62-11B4AC037D50}) (Version: 6.0.2 - Ilia Bakhmoutski (sheck))
MKVCleaver 64 bit (HKLM\...\{32886311-ABB4-45BE-8274-1F53641B2AC7}_is1) (Version: 0.8.0.0 - Ilia Bakhmoutski)
MKVToolNix 82.0.0 (64-bit) (HKLM-x32\...\MKVToolNix) (Version: 82.0.0 - Moritz Bunkus)
Movavi Video Converter 22 Premium (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Movavi Video Converter 22 Premium) (Version: 22.5.0 - Movavi)
MSI Afterburner 4.6.5 (HKLM-x32\...\Afterburner) (Version: 4.6.5 - MSI Co., LTD)
MSVC80_x64_v2 (HKLM\...\{4D668D4F-FAA2-4726-834C-31F4614F312E}) (Version: 1.0.3.0 - Nokia) Hidden
MSVC80_x86_v2 (HKLM-x32\...\{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}) (Version: 1.0.3.0 - Nokia) Hidden
MSVC90_x64 (HKLM\...\{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}) (Version: 1.0.1.2 - Nokia) Hidden
MSVC90_x86 (HKLM-x32\...\{AF111648-99A1-453E-81DD-80DBBF6DAD0D}) (Version: 1.0.1.2 - Nokia) Hidden
Nmap 7.95 (HKLM-x32\...\Nmap) (Version: 7.95 - Nmap Project)
Nokia Connectivity Cable Driver (HKLM-x32\...\{29373274-977E-413C-A4DE-DC0F8E80C429}) (Version: 7.1.172.0 - Nokia)
Nokia PC Suite (HKLM-x32\...\{866C4563-ED53-43F3-A29D-8BEE2BD1BA3C}) (Version: 7.1.180.94 - Nokia) Hidden
Nokia PC Suite (HKLM-x32\...\Nokia PC Suite) (Version: 7.1.180.94 - Nokia)
Nokia Suite (HKLM-x32\...\{0C808377-8C23-44ED-9016-05F42E6D4900}) (Version: 3.8.30.0 - Nokia) Hidden
Nokia Suite (HKLM-x32\...\Nokia Suite) (Version: 3.8.30.0 - Nokia)
NordUpdater (HKLM\...\{6E35DB82-3D19-4DD6-B8CB-F082815FDE18}_is1) (Version: 1.5.0.1028 - Nord Security)
NordVPN (HKLM\...\{19465C24-3D5D-4327-B99F-3CC0A1D38151}_is1) (Version: 7.31.8.0 - Nord Security)
Novabench (HKLM\...\{33CB129E-2220-4858-AA71-4CE4CD7792CA}) (Version: 5.4.1 - Novabench Inc.)
Npcap (HKLM-x32\...\NpcapInst) (Version: 1.79 - Nmap Project)
NVIDIA PhysX (HKLM-x32\...\{B455E95A-B804-439F-B533-336B1635AE97}) (Version: 9.14.0702 - NVIDIA Corporation)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Opera GX Stable 132.0.5905.43 (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Opera GX 132.0.5905.43) (Version: 132.0.5905.43 - Opera Software)
Overwolf (HKLM-x32\...\Overwolf) (Version: 0.292.1.1 - Overwolf Ltd.)
Paltalk (HKLM-x32\...\Paltalk) (Version: - )
Patriot Viper DRAM RGB (HKLM\...\{1F9C282E-CCB4-4D8E-A5CB-7B74DFCD8C95}) (Version: 1.0.9.8 - Patriot Memory) Hidden
Patriot Viper DRAM RGB (HKLM-x32\...\{55993b50-5bec-47c8-8b2b-1aecad927e48}) (Version: 1.0.9.8 - Patriot Memory) Hidden
Patriot Viper M2 SSD RGB (HKLM\...\{8B4C0A3D-C135-4E1F-98D8-3926494B4D61}) (Version: 1.1.0.3 - Patriot Memory) Hidden
Patriot Viper M2 SSD RGB (HKLM-x32\...\{6e0eff60-c502-43bb-8f56-360ca07e73d9}) (Version: 1.1.0.3 - Patriot Memory) Hidden
PC Building Simulator 2 MULTi10 - ElAmigos version 1.14.02 (HKLM-x32\...\{DE7FDD1D-071F-4771-B811-95A48B3072FB}_is1) (Version: 1.14.02 - Spiral House)
PC Connectivity Solution (HKLM-x32\...\{6D01D1B1-17BD-4F10-BB11-F08F0C47D42B}) (Version: 12.0.109.0 - Nokia)
Pi Network 0.5.4 (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\375fce00-6280-59a8-8dfe-c557d5fd3e90) (Version: 0.5.4 - Socialchain Inc.)
Plane Arcade (HKLM-x32\...\Plane Arcade) (Version: - 3D Games Development)
PlanetVPN-2.10.30.68 (HKLM-x32\...\{33eecf4f-167f-4fa6-9e3e-5a4be965965c}_is1) (Version: 2.10.30.68 - PlanetVPN)
PlaytestCloud (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\PlaytestCloud) (Version: 3.16.0 - PlaytestCloud)
PSPad editor (HKLM\...\PSPad editor 64bit_is1) (Version: 5.0.7.775 - Jan Fiala)
PureVPN (HKLM-x32\...\{c017a6e5-ca99-4e7e-b23d-66fb702e4fbf}) (Version: 14.7.0.13 - ) Hidden
Python 3.13.1 (64-bit) (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\{1abbd55d-059a-4d1e-bdf1-35bb74697f5a}) (Version: 3.13.1150.0 - Python Software Foundation)
Python 3.13.1 Add to Path (64-bit) (HKLM\...\{95338D2D-2A7C-4C57-ABC4-39FF8568C2FF}) (Version: 3.13.1150.0 - Python Software Foundation) Hidden
Python 3.13.1 Core Interpreter (64-bit) (HKLM\...\{B7C30E07-E007-43ED-A9E1-EEDA7F57C8BC}) (Version: 3.13.1150.0 - Python Software Foundation) Hidden
Python 3.13.1 Development Libraries (64-bit) (HKLM\...\{FE9B3181-7FDD-4F6A-855A-305940D9A6E8}) (Version: 3.13.1150.0 - Python Software Foundation) Hidden
Python 3.13.1 Documentation (64-bit) (HKLM\...\{29EEEBD6-F97B-4274-A640-FD8715025124}) (Version: 3.13.1150.0 - Python Software Foundation) Hidden
Python 3.13.1 Executables (64-bit) (HKLM\...\{8AFC9846-E7A8-4817-93FD-3542456A3E52}) (Version: 3.13.1150.0 - Python Software Foundation) Hidden
Python 3.13.1 pip Bootstrap (64-bit) (HKLM\...\{2BB3559A-6DFD-453E-8B7B-E6166958D099}) (Version: 3.13.1150.0 - Python Software Foundation) Hidden
Python 3.13.1 Standard Library (64-bit) (HKLM\...\{29A3DBE6-A3D3-42C9-9338-A321F61C897A}) (Version: 3.13.1150.0 - Python Software Foundation) Hidden
Python 3.13.1 Tcl/Tk Support (64-bit) (HKLM\...\{C6718DB8-8965-4EE7-A056-1AA8F3836208}) (Version: 3.13.1150.0 - Python Software Foundation) Hidden
Python 3.13.1 Test Suite (64-bit) (HKLM\...\{7A5D8A6D-A0A9-4459-88EF-33C91DAFB0C2}) (Version: 3.13.1150.0 - Python Software Foundation) Hidden
Python Launcher (HKLM-x32\...\{7102CAE5-270C-4E81-AC25-27699156D8AE}) (Version: 3.13.1150.0 - Python Software Foundation)
r2modman 3.1.57 (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\ac231ef6-6414-5f8d-b36f-3b57705721dd) (Version: 3.1.57 - ebkr)
Razer Synapse (HKLM-x32\...\Razer Synapse) (Version: 3.10.0315.031117 - Razer Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.50.511.2021 - Realtek)
Riot Client (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Riot Game Riot_Client.) (Version: - Riot Games, Inc)
Riot Vanguard (HKLM\...\Riot Vanguard) (Version: - Riot Games, Inc.)
RivaTuner Statistics Server 7.3.4 (HKLM-x32\...\RTSS) (Version: 7.3.4 - Unwinder)
Roblox Player for micha (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\roblox-player) (Version: - Roblox Corporation)
Roblox Studio for micha (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\roblox-studio) (Version: - Roblox Corporation)
Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.106.2874 - Rockstar Games)
Rockstar Games SDK (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.4.0.194 - Rockstar Games)
ROG Live Service (HKLM\...\{2D87BFB6-C184-4A59-9BBE-3E20CE797631}) (Version: 3.5.6.0 - ASUSTek COMPUTER INC.)
ROGFontInstaller (HKLM\...\{605108C1-153E-43D8-8A67-7CE326B00ECA}) (Version: 1.0.0 - ASUS)
Rollercoin (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\4966a9b04c347a68a3da48fb5fae3aee) (Version: 1.0 - BraveSoftware\Brave-Browser)
STAR WARS™ Battlefront™ II (HKLM-x32\...\{8a882ce0-0c0b-4eb2-850c-28ebadab4f50}) (Version: 1.1.8.16162 - Electronic Arts)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Steel Hunters (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\4219147420) (Version: - Wargaming.net)
Streamlabs Desktop 1.15.1 (HKLM\...\029c4619-0385-5543-9426-46f9987161d9) (Version: 1.15.1 - General Workings, Inc.)
Subtitle Edit (HKLM\...\SubtitleEdit_is1) (Version: 4.0.11.0 - Nikse)
Surfshark (HKLM\...\{46E0D35D-2D6C-4585-A1F3-7EB73DCC6AF6}) (Version: 5.16.0999 - Surfshark) Hidden
Surfshark (HKLM\...\Surfshark 5.16.0999) (Version: 5.16.0999 - Surfshark)
TeamSpeak (HKLM\...\{EE883F28-D7AF-48E5-87B6-1F59D856362F}) (Version: 5.0.0 - TeamSpeak)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.6.2 - TeamSpeak Systems GmbH)
Telegram Desktop (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 6.8.2 - Telegram FZ-LLC)
Time Adjuster STANDARD 3.1 (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\TimeAdjuster) (Version: - IrekSoftware.com)
TurtleWoW (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\TurtleWoW) (Version: 2.2.7 - turtle-wow)
Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 153.1.11069 - Ubisoft)
UE Prerequisites (x64) (HKLM\...\{C4175120-313E-467B-AAA7-825979CBAEE7}) (Version: 1.0.20.0 - Epic Games, Inc.) Hidden
UE Prerequisites (x64) (HKLM-x32\...\{b24cae82-bb64-4ad2-820a-dc2c4031c914}) (Version: 1.0.20.0 - Epic Games, Inc.) Hidden
Universal Holtek RGB DRAM (HKLM\...\{826388E4-E31F-4514-948B-3BB954FB3EAF}) (Version: 1.0.0.7 - PD) Hidden
Universal Holtek RGB DRAM (HKLM-x32\...\{9a732423-e2f4-47d0-87ab-ef745c7dba69}) (Version: 1.0.0.7 - PD) Hidden
V380 (HKLM-x32\...\{09BA00ED-4332-42BA-BCC7-2B00563A36E5}_is1) (Version: 2.0.4 - M@cro-video Technologies Co.)
VALORANT (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Riot Game valorant.live) (Version: - Riot Games, Inc)
VideoPlayTool 4.0.3.1 (HKLM-x32\...\VideoPlayTool) (Version: 4.0.3.1 - )
VLC media player (HKLM\...\VLC media player) (Version: 3.0.21 - VideoLAN)
Voicemod (HKLM\...\{FE519A29-8B15-47C4-BCD6-A513277DC26F}_is1) (Version: 1.3.0 - Voicemod Inc., Sucursal en España)
VPNGame 4.0.9 (HKLM-x32\...\3aaf459b-cb56-5f30-8941-e520cc78ea0a) (Version: 4.0.9 - VPNGame)
Wargaming.net Game Center (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Wargaming.net Game Center) (Version: 25.7.0.1174 - Wargaming.net)
WD_BLACK AN1500 (HKLM\...\{085E2365-0A70-4230-B664-02D5E4FE7E9C}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
WD_BLACK AN1500 (HKLM-x32\...\{e42c5874-37b0-4977-9e8d-70bf006e1f76}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
webOS Dev Manager (HKLM\...\{BB9B508F-6C9C-4F28-9534-499BA22B632F}) (Version: 1.13.3 - webosbrew)
Windows Subsystem for Linux (HKLM\...\{4D1F0C57-B154-4968-81B8-C8CA343B7998}) (Version: 2.4.11.0 - Microsoft Corporation) Hidden
WinRAR 6.24 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.24.0 - win.rar GmbH)
Wondershare Filmora 14(Build 14.3.14.11421) (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Wondershare Filmora 14_is1) (Version: - Wondershare Software)
Wondershare Helper Compact 2.6.0 (HKLM-x32\...\{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Version: 2.6.0 - Wondershare)
Xerox WorkCentre 6015B (HKLM-x32\...\{E16CF080-B932-4BA1-93FF-4021096F006C}) (Version: 1.009.00 - Xerox) Hidden
Xerox WorkCentre 6015B (HKLM-x32\...\InstallShield_{E16CF080-B932-4BA1-93FF-4021096F006C}) (Version: 1.009.00 - Xerox)
YKB 3400 PANZER (HKLM-x32\...\YKB 3400 PANZER) (Version: V1.05n - FAST CR a.s.)
Packages:
=========
Adobe Acrobat Reader -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Assets [2026-06-12] ()
AMD Radeon Software -> C:\Program Files\AMD\CNext\CNext [2025-08-07] (Advanced Micro Devices Inc.)
Armoury Crate -> C:\Program Files\ASUS\AacAmbientHal [2026-06-21] (Sparse Package)
Armoury Crate -> C:\Program Files\WindowsApps\B9ECED6F.ArmouryCrate_6.5.7.0_x64__qmba6cd70vzyy [2026-05-17] (ASUSTeK COMPUTER INC.)
AURA Creator -> C:\Program Files\WindowsApps\B9ECED6F.AURACreator_4.5.4.0_x64__qmba6cd70vzyy [2026-05-19] (ASUSTeK COMPUTER INC.)
Auto Clicker for Windows -> C:\Program Files\WindowsApps\2420ShazApp.AutoClickerforWindows_1.2.2.0_x64__1c69h7y6sr26m [2025-10-19] (ShazApp)
ChatGPT -> C:\Program Files\WindowsApps\OpenAI.ChatGPT-Desktop_1.2026.133.0_x64__2p2nqsd0c76g0 [2026-05-17] (OpenAI) [Startup Task]
Malwarebytes Anti-Malware -> C:\Program Files\Malwarebytes\Anti-Malware [2026-06-14] ()
Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2024-01-11] (Microsoft Corp.)
Microsoft.AIFabric.CBS.1.6 -> C:\WINDOWS\SystemApps\Microsoft.AIFabric.CBS.1.6_8wekyb3d8bbwe [2026-06-10] (Microsoft Corporation)
Minecraft Launcher -> C:\Program Files\WindowsApps\Microsoft.4297127D64EC6_2.6.2.0_x64__8wekyb3d8bbwe [2026-05-08] (Microsoft Studios)
Movie Maker - FREE -> C:\Program Files\WindowsApps\21336V3TApps.MovieMaker-FREE_3.11.1.0_x64__bzg06mxvgh4fa [2026-06-19] (AI Photo Editor Lab)
MyASUS -> C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.66.0_x64__qmba6cd70vzyy [2026-05-01] (ASUSTeK COMPUTER INC.) [Startup Task]
Record Screen - Video & Audio Recorder -> C:\Program Files\WindowsApps\21336V3TApps.ScreenRecorder-FREE_1.3.1.0_x64__bzg06mxvgh4fa [2026-04-01] (AI Photo Editor Lab)
SpotifyAB.SpotifyMusic -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0 [2026-06-16] (Spotify AB) [Startup Task]
WinAppRuntime.Singleton -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Singleton_8002.2.0.0_x64__8wekyb3d8bbwe [2026-06-19] (Microsoft Corp.)
Windows App Runtime DDLM 4000.1049.117.0-x6 -> C:\Program Files\WindowsApps\Microsoft.WinAppRuntime.DDLM.4000.1049.117.0-x6_4000.1049.117.0_x64__8wekyb3d8bbwe [2026-02-23] (Microsoft Corporation)
WinRAR -> C:\Program Files\WinRAR [2024-01-05] (win.rar GmbH)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{14100442-9664-1407-2647-000000000000}\localserver32 -> "C:\Users\micha\AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{4e6f7264-5650-4e00-0000-000000000000}\localserver32 -> C:\Program Files\NordVPN\NordVPN.exe (nordvpn s.a. -> nordvpn S.A.)
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{73F8144D-FFD8-4496-B65E-4D756FF689FE}\localserver32 -> "c:\program files (x86)\bytedance\douyin\7.3.0\tray\douyin_tray.exe" ----AppNotificationActivated: => No File
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{BEA218D2-6950-497B-9434-61683EC065FE}\InprocServer32 -> C:\Users\micha\AppData\Local\Programs\Python\Launcher\pyshellext.amd64.dll (Python Software Foundation -> Python Software Foundation)
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{ED90173A-3B4C-4E7E-B9CF-79714425D4B5}\InprocServer32 -> C:\Program Files\PSPad editor\pspshellx64.dll () [File not signed]
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2026-06-08] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers1: [ContextMenuHandlerFilmora] -> {5F542218-AF8A-4CF8-8ACA-DF63B73C528D} => C:\Windows\system32\FilmoraContextMenu.dll [2025-02-07] () [File not signed]
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2026-06-06] (Malwarebytes Inc -> Malwarebytes)
ContextMenuHandlers4: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => -> No File
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2026-06-06] (Malwarebytes Inc -> Malwarebytes)
ContextMenuHandlers6: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => -> No File
ContextMenuHandlers1_S-1-5-21-756127909-4058986209-260929036-1001: [EditWithPSPad] -> {ED90173A-3B4C-4E7E-B9CF-79714425D4B5} => C:\Program Files\PSPad editor\pspshellx64.dll [2014-11-02] () [File not signed]
==================== Codecs (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\system32\rtvcvfw64.dll [246272 2012-09-28] () [File not signed]
HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\SysWOW64\rtvcvfw32.dll [247296 2012-09-28] () [File not signed]
HKLM\...\Drivers32-x32: [vidc.XVID] => xvidvfw.dll
HKLM\...\Drivers32-x32: [VIDC.VP80] => vp8vfw.dll
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
Shortcut: C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Massive\Massive.lnk -> C:\Users\micha\Programs\Massive\RunMassiveStartMenuScript.bat ()
ShortcutWithArgument: C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Web Applications\_crx_mpbdhnpafnokpojekbkdnbfchkjahdnf\Bolt Food.lnk -> C:\Program Files\BraveSoftware\Brave-Browser\Application\chrome_proxy.exe (Brave Software, Inc.) -> --profile-directory=Default --app-id=mpbdhnpafnokpojekbkdnbfchkjahdnf
ShortcutWithArgument: C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Brave\Bolt Food.lnk -> C:\Program Files\BraveSoftware\Brave-Browser\Application\chrome_proxy.exe (Brave Software, Inc.) -> --profile-directory=Default --app-id=mpbdhnpafnokpojekbkdnbfchkjahdnf
ShortcutWithArgument: C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Brave\Rollercoin.lnk -> C:\Program Files\BraveSoftware\Brave-Browser\Application\chrome_proxy.exe (Brave Software, Inc.) -> --profile-directory=Default --app-id=mckfidonbdljlhdmdakihaildpbgbplb
==================== Loaded Modules (Whitelisted) =============
2026-05-17 17:14 - 2025-12-31 10:23 - 000367616 _____ () [File not signed] \\?\C:\Program Files (x86)\ASUS\ArmouryDevice\resources\app.asar.unpacked\node_modules\@img\sharp-win32-ia32\lib\sharp-win32-ia32.node
2025-02-15 23:10 - 2024-09-29 15:45 - 000137728 _____ () [File not signed] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\CBSCreateVC.dll
2025-02-15 23:10 - 2024-09-29 15:45 - 001506304 _____ () [File not signed] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\DAQExp.dll
2024-08-05 14:46 - 2024-08-05 14:46 - 000874496 _____ () [File not signed] C:\Program Files (x86)\Steam\steamapps\common\Half-Life\chromehtml.dll
2024-08-05 14:47 - 2024-08-05 14:47 - 000071680 _____ () [File not signed] C:\Program Files (x86)\Steam\steamapps\common\Half-Life\mssmp3.asi
2024-08-05 14:47 - 2024-08-05 14:47 - 000153088 _____ () [File not signed] C:\Program Files (x86)\Steam\steamapps\common\Half-Life\mssvoice.asi
2024-12-01 12:27 - 2024-12-01 12:27 - 002024448 _____ () [File not signed] C:\Program Files (x86)\Steam\steamapps\common\Half-Life\SDL2.dll
2024-12-01 12:28 - 2024-12-01 12:28 - 000027136 _____ () [File not signed] c:\program files (x86)\steam\steamapps\common\half-life\valve\cl_dlls\particleman.dll
2025-02-23 12:46 - 2025-10-22 20:09 - 003001344 _____ () [File not signed] C:\Users\micha\AppData\Local\Programs\pi-network-desktop\ffmpeg.dll
2025-02-23 12:46 - 2025-10-22 20:09 - 000493056 _____ () [File not signed] C:\Users\micha\AppData\Local\Programs\pi-network-desktop\libegl.dll
2025-02-23 12:46 - 2025-10-22 20:09 - 008019968 _____ () [File not signed] C:\Users\micha\AppData\Local\Programs\pi-network-desktop\libglesv2.dll
2025-02-23 12:46 - 2025-10-22 20:09 - 005577728 _____ () [File not signed] C:\Users\micha\AppData\Local\Programs\pi-network-desktop\vk_swiftshader.dll
2023-04-07 16:49 - 2023-04-07 16:49 - 000061928 _____ (Eyeware Tech SA -> ) [File not signed] C:\Program Files\AMD\AMD Privacy View\ewvcam\APV\x64\eyeware_vcam.dll
2012-06-26 14:08 - 2012-06-26 14:08 - 000026624 _____ (Nokia) [File not signed] C:\Program Files (x86)\Nokia\Nokia PC Suite 7\Lang\PhoneBrowser_cze.nlr
2012-06-26 12:58 - 2012-06-26 12:58 - 001262592 _____ (Nokia) [File not signed] C:\Program Files (x86)\Nokia\Nokia PC Suite 7\NGSCM64.DLL
2012-06-26 14:08 - 2012-06-26 14:08 - 000572928 _____ (Nokia) [File not signed] C:\Program Files (x86)\Nokia\Nokia PC Suite 7\Resource\PhoneBrowser_Nokia.ngr
2024-08-05 14:46 - 2024-08-05 14:46 - 000446976 _____ (RAD Game Tools, Inc.) [File not signed] C:\Program Files (x86)\Steam\steamapps\common\Half-Life\mss32.dll
2024-01-12 16:05 - 2026-03-24 14:58 - 000139776 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\downloadsbatch.dll
2024-01-12 16:05 - 2026-03-24 15:00 - 004432384 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\downloadsbt.dll
2026-05-10 12:32 - 2026-03-24 14:59 - 000138752 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\downloadsfragments.dll
2024-01-12 16:05 - 2026-03-24 15:00 - 000119808 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\downloadsjsp.dll
2024-01-12 16:05 - 2026-03-24 15:00 - 000249344 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\downloadsm3u.dll
2024-01-12 16:05 - 2026-03-24 15:00 - 000718336 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\downloadsms.dll
2024-01-12 16:05 - 2026-03-24 14:59 - 001174528 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\downloadswww.dll
2024-01-12 16:05 - 2026-03-24 14:38 - 000044544 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\logger.dll
2024-01-12 16:05 - 2026-03-24 14:41 - 000249344 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\quazip.dll
2024-01-12 16:05 - 2026-03-24 14:57 - 000822272 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\vmsclshared.dll
2024-01-12 16:05 - 2026-03-24 14:44 - 000038400 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\winunivappfeatures.dll
2026-05-10 12:32 - 2021-10-06 16:30 - 000029696 _____ (The ICU Project) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\icuuc.dll
2026-05-10 12:32 - 2025-06-11 13:54 - 004853760 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\libcrypto-3-x64.dll
2026-05-10 12:32 - 2025-06-11 13:54 - 001173504 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\libssl-3-x64.DLL
2025-02-15 23:10 - 2024-09-29 15:45 - 000708096 _____ (Wondershare) [File not signed] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\CBSProducstInfo.dll
2011-03-23 12:20 - 2011-03-23 12:20 - 000285696 _____ (Xerox) [File not signed] C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmnet.dll
==================== Alternate Data Streams (Whitelisted) ========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\ProgramData\mntemp:8EAD8B3507 [3442]
AlternateDataStreams: C:\ProgramData\tyvfcquz.wxt:B63721167D [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk:BE32D07BC5 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FACEIT AC.lnk:550995E265 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Novabench 5.lnk:B68549C808 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Streamlabs Desktop.lnk:578370639A [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk:F208FC6732 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak.lnk:DBB58A0286 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\V380.lnk:942A4CABE6 [3442]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [5646]
==================== Safe Mode (Whitelisted) ==================
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2022-05-07 07:24 - 2026-06-20 21:20 - 000000318 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1 localhost
109.94.209.70 fitgirlrepacks.in # Fake FitGirl site
109.94.209.70 www.fitgirlrepacks.in # Fake FitGirl site
109.94.209.70 fitgirlrepacks.co # Fake FitGirl site
109.94.209.70 fitgirl-repacks.cc # Fake FitGirl site
2025-03-05 12:25 - 2026-06-20 11:18 - 000000498 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics
172.26.32.1 Petr.mshome.net # 2031 6 4 19 9 18 41 271
41
172.26.32.1 Petr.mshome.net # 2031 5 4 1 8 50 46 460
==================== Network ===========================
(Currently there is no automatic fix for this section.)
DNS Servers: 192.168.1.1
Windows Firewall is enabled.
Network Binding:
=============
NordLynx: NordLynx Tunnel -> wireguard.sys
Ethernet: Realtek Gaming 2.5GbE Family Controller -> rt25cx21x64.sys
Síťové připojení Bluetooth: Bluetooth Device (Personal Area Network) -> bthpan.sys
Wi-Fi: Intel(R) Wi-Fi 6 AX201 160MHz -> Netwtw10.sys
Připojení k místní síti: TAP-NordVPN Windows Adapter V9 -> tapnordvpn.sys
OpenVPN Data Channel Offload for NordVPN: OpenVPN Data Channel Offload -> ovpn-dco.sys
vms_vsf: Hyper-V Virtual Switch Extension Filter
INSECURE_NPCAP: Npcap Packet Driver (NPCAP)
NordLwf: NordVPN LightWeight Firewall
ms_l1vhlwf: Nested Network Virtualization
vms_vsp: Hyper-V Virtual Switch Extension Protocol
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\PC Connectivity Solution\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files (x86)\Razer Chroma SDK\bin;C:\Program Files\Razer Chroma SDK\bin;C:\Program Files (x86)\Razer\ChromaBroadcast\bin;C:\Program Files\Razer\ChromaBroadcast\bin;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files\dotnet\;C:\Users\micha\AppData\Local\Microsoft\WindowsApps;C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\WindowsApps;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-756127909-4058986209-260929036-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\micha\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\d1a6750c-8dea-4869-9654-1d409979ee88.png
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 5) (TamperProtectionSource: 2)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|E:\24122024\24122024\dControl.exe
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\StartupFolder: => "Perfect Privacy.lnk"
HKLM\...\StartupApproved\Run: => "DriverUpdUI.exe"
HKLM\...\StartupApproved\Run32: => "Launcher6015B"
HKLM\...\StartupApproved\Run32: => "YKB 3400 PANZER"
HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui"
HKLM\...\StartupApproved\Run32: => "PC Suite Tray"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\StartupFolder: => "hide.me VPN.lnk"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "BraveSoftware Update"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "Opera GX Stable"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_ED02E366447D09E4F124EF89B233D989"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "Discord"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "G-Menu"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "com.blitz.app"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "Free Download Manager"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "RiotClient"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "uTorrent"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "PaltalkLauncher"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "Windscribe"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "ProtonVPN"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "CyberGhost"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "PlanetVPN"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "NordVPN"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "Battle.net"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "EADM"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "Wargaming.net Game Center"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "IO Auto Clicker"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "Surfshark"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "btweb"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "VoicemodV3"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "NokiaSuite.exe"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "Overwolf"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "ut"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{279F621A-B779-4DA7-AD46-AE5C76540507}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25198.1001.3811.7774_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{E08F3F1A-D227-4D4A-8788-75F27DE1128D}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25198.1001.3811.7774_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{BA606EBB-ACA7-464E-89D4-A356F7D7E95F}E:\battlefield 6 event\bf6event.exe] => (Allow) E:\battlefield 6 event\bf6event.exe => No File
FirewallRules: [TCP Query User{FBD4AD8B-A72E-4FAE-9B92-BA605D0FB6D9}E:\battlefield 6 event\bf6event.exe] => (Allow) E:\battlefield 6 event\bf6event.exe => No File
FirewallRules: [TCP Query User{88CF7637-1DFA-4F16-9D7B-3630ED57359E}C:\riot games\riot client\riotclientelectron\riot client.exe] => (Allow) C:\riot games\riot client\riotclientelectron\riot client.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [UDP Query User{9CA9FB52-5F7B-4127-A4A2-7D648BC290A9}C:\riot games\riot client\riotclientelectron\riot client.exe] => (Allow) C:\riot games\riot client\riotclientelectron\riot client.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [TCP Query User{A46B875F-A28C-460F-B7CE-1292E42C20CB}C:\g-menu\g-menu.exe] => (Block) C:\g-menu\g-menu.exe (TOP VICTORY ELECTRONICS (TAIWAN) CO., LTD. -> AOC)
FirewallRules: [UDP Query User{7A623E78-2293-48B8-8349-8122267F97F8}C:\g-menu\g-menu.exe] => (Block) C:\g-menu\g-menu.exe (TOP VICTORY ELECTRONICS (TAIWAN) CO., LTD. -> AOC)
FirewallRules: [TCP Query User{386E5117-D7C3-4CF5-9032-017E7B423828}C:\users\micha\appdata\roaming\bittorrent web\btweb.exe] => (Block) C:\users\micha\appdata\roaming\bittorrent web\btweb.exe => No File
FirewallRules: [UDP Query User{CAF064AD-F740-4F3A-BD93-254EBDBBA0A5}C:\users\micha\appdata\roaming\bittorrent web\btweb.exe] => (Block) C:\users\micha\appdata\roaming\bittorrent web\btweb.exe => No File
FirewallRules: [TCP Query User{5CB43197-7789-4AF5-8B61-EF54339BE0C1}C:\g-menu\resources\bin\g_menu.exe] => (Block) C:\g-menu\resources\bin\g_menu.exe (TOP VICTORY ELECTRONICS (TAIWAN) CO., LTD. -> Zeasn)
FirewallRules: [UDP Query User{07799B0B-368D-435F-96F4-CE14BEED5076}C:\g-menu\resources\bin\g_menu.exe] => (Block) C:\g-menu\resources\bin\g_menu.exe (TOP VICTORY ELECTRONICS (TAIWAN) CO., LTD. -> Zeasn)
FirewallRules: [TCP Query User{46A23AA3-D0C2-4102-A562-50A014E9590C}C:\users\micha\appdata\local\voicemodv3\app\last\voicemod.exe] => (Block) C:\users\micha\appdata\local\voicemodv3\app\last\voicemod.exe (VOICEMOD, INC. SUCURSAL EN ESPAÑA -> Voicemod Inc., Sucursal en España)
FirewallRules: [UDP Query User{FE8D1458-4D31-4C06-9EF2-01FD78BD1EF0}C:\users\micha\appdata\local\voicemodv3\app\last\voicemod.exe] => (Block) C:\users\micha\appdata\local\voicemodv3\app\last\voicemod.exe (VOICEMOD, INC. SUCURSAL EN ESPAÑA -> Voicemod Inc., Sucursal en España)
FirewallRules: [TCP Query User{FB891921-9AC7-454B-AEB3-C270990F8C40}C:\program files\bravesoftware\brave-browser\application\brave.exe] => (Allow) C:\program files\bravesoftware\brave-browser\application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [UDP Query User{E7D841BD-B7A2-414E-AA1D-BD6358E45FE0}C:\program files\bravesoftware\brave-browser\application\brave.exe] => (Allow) C:\program files\bravesoftware\brave-browser\application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [TCP Query User{15475545-4979-4595-B803-073922E0D13F}E:\sea of thieves\call of duty\content\cod.exe] => (Allow) E:\sea of thieves\call of duty\content\cod.exe => No File
FirewallRules: [UDP Query User{71031F81-EE69-4A14-8C9C-5AE66C0E3C42}E:\sea of thieves\call of duty\content\cod.exe] => (Allow) E:\sea of thieves\call of duty\content\cod.exe => No File
FirewallRules: [TCP Query User{8EDE6D18-C435-431A-8552-E7855E62A2C7}E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe] => (Allow) E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe => No File
FirewallRules: [UDP Query User{8D18AAD1-B496-4F5D-97BE-8DF5127BAF68}E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe] => (Allow) E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe => No File
FirewallRules: [TCP Query User{29CFFE07-C69D-4B38-8B37-CDA8FC3442B1}C:\program files (x86)\microsoft\edge\application\msedge.exe] => (Block) C:\program files (x86)\microsoft\edge\application\msedge.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{4EFCF67B-1FCA-418D-AAD6-8AFCE3EA947E}C:\program files (x86)\microsoft\edge\application\msedge.exe] => (Block) C:\program files (x86)\microsoft\edge\application\msedge.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{40D59B36-0865-495E-9708-710CA50F68DA}C:\users\micha\appdata\local\programs\opera gx\opera.exe] => (Block) C:\users\micha\appdata\local\programs\opera gx\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [UDP Query User{86BB23A4-F681-43BD-B3F1-D90F038E5E24}C:\users\micha\appdata\local\programs\opera gx\opera.exe] => (Block) C:\users\micha\appdata\local\programs\opera gx\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [{35A3ADD7-D167-4BEA-B3F1-0A88EF891CCC}] => (Allow) C:\Program Files (x86)\Steam\steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{D0EAF2A7-C8F1-4E9B-A2AD-A9C0C282D3CE}] => (Allow) C:\Program Files (x86)\Steam\steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{131E5D88-F4CC-4A8C-ADD0-88EAAF24FCB9}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{1E7BE9C4-0658-45E4-B65F-A85929E8B901}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [TCP Query User{1020EA32-7A2C-4C37-9D71-963B86C936F7}E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe] => (Block) E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe => No File
FirewallRules: [UDP Query User{C0D520F0-B762-490B-873D-D151DA181329}E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe] => (Block) E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe => No File
FirewallRules: [TCP Query User{974B5E9C-F3DC-49BB-955A-C2994803E1B1}C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe => No File
FirewallRules: [UDP Query User{3C8F5FBB-6F9F-464B-90C3-234A1ED944ED}C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe => No File
FirewallRules: [{E84C56EB-0377-4BF3-9DB9-785A2DAF4798}] => (Allow) C:\Users\micha\AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe => No File
FirewallRules: [{AADE2BAA-EF44-476F-A06C-BEBFAE7925FB}] => (Allow) D:\Call of duty modern warfare\Call of Duty\_retail_\cod22\cod22-cod.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{A53181A9-A488-48FD-BDCA-071B528DBD36}] => (Allow) D:\Call of duty modern warfare\Call of Duty\_retail_\cod22\codCrashHandler.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{97C5755C-F1E2-4C53-ACE9-DC5EA3147480}] => (Allow) D:\Call of duty modern warfare\Call of Duty\_retail_\cod23\cod23-cod.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{B0E47C93-CA7C-46A3-9C01-DE97B0BD7483}] => (Allow) D:\Call of duty modern warfare\Call of Duty\_retail_\cod23\codCrashHandler.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{36229AC4-5E75-4EE6-9F8D-8699B7F09557}] => (Allow) D:\Call of duty modern warfare\Call of Duty\_retail_\bootstrapper.exe (Activision Publishing Inc -> )
FirewallRules: [{8DEE1472-7D76-4D51-86AD-1EF4D31A030D}] => (Allow) D:\Call of duty modern warfare\Call of Duty\_retail_\bootstrapperCrashHandler.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{E34F81E8-BDBF-4123-B255-306D52378E80}] => (Allow) D:\Call of duty modern warfare\Call of Duty\_retail_\codCrashHandler.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{54664C03-C429-49DD-A4ED-7F9C33F4BBF2}] => (Allow) D:\Call of duty modern warfare\Call of Duty\_retail_\cod.exe (Activision Publishing Inc -> Activision)
FirewallRules: [TCP Query User{0670EDD1-9B02-4342-8360-761EB4B60763}D:\davinci\resolve.exe] => (Block) D:\davinci\resolve.exe => No File
FirewallRules: [UDP Query User{A9281C5A-67BA-44EE-91CD-3F30EF7C880B}D:\davinci\resolve.exe] => (Block) D:\davinci\resolve.exe => No File
FirewallRules: [TCP Query User{496800E3-14CC-453D-94F8-35DCDEB485D5}C:\program files (x86)\steam\steamapps\common\half-life\hl.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\half-life\hl.exe (Valve Corp. -> Valve)
FirewallRules: [UDP Query User{0682F5D5-5803-421F-AF0B-843A4659ABE7}C:\program files (x86)\steam\steamapps\common\half-life\hl.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\half-life\hl.exe (Valve Corp. -> Valve)
FirewallRules: [TCP Query User{077A134E-F3AF-4502-94BF-6F3A75AC063A}D:\worldwarz\en_us\client\bin\pc\wwzretailegs.exe] => (Allow) D:\worldwarz\en_us\client\bin\pc\wwzretailegs.exe (Saber Interactive) [File not signed]
FirewallRules: [UDP Query User{417C93BE-2AA9-4207-8614-49D83E8737C3}D:\worldwarz\en_us\client\bin\pc\wwzretailegs.exe] => (Allow) D:\worldwarz\en_us\client\bin\pc\wwzretailegs.exe (Saber Interactive) [File not signed]
FirewallRules: [{F873D22A-8197-497F-9730-3C660A093C3E}] => (Allow) D:\SteamLibrary\steamapps\common\Ready Or Not\Engine\Binaries\Win64\CrashReporter.exe => No File
FirewallRules: [{2E7AB9CD-A6C1-4429-86C0-62665E93CDE7}] => (Allow) D:\SteamLibrary\steamapps\common\Ready Or Not\Engine\Binaries\Win64\CrashReporter.exe => No File
FirewallRules: [TCP Query User{9E1C92D4-8B6C-47A5-98B0-9E6AC6B6E4AC}D:\wargaming.net\gamecenter\wgc.exe] => (Block) D:\wargaming.net\gamecenter\wgc.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [UDP Query User{789E23F4-9E7B-4C07-A5AC-5918455BB4BD}D:\wargaming.net\gamecenter\wgc.exe] => (Block) D:\wargaming.net\gamecenter\wgc.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [TCP Query User{B0F4BB22-0085-4901-B98F-B9F91693D452}D:\world_of_tanks_eu\win64\worldoftanks.exe] => (Block) D:\world_of_tanks_eu\win64\worldoftanks.exe => No File
FirewallRules: [UDP Query User{8BCC2B64-0E9C-4DF8-8046-3FFCDBF0DAE2}D:\world_of_tanks_eu\win64\worldoftanks.exe] => (Block) D:\world_of_tanks_eu\win64\worldoftanks.exe => No File
FirewallRules: [TCP Query User{020F479B-87E5-41C7-8447-D18C7F33A816}C:\program files\docker\docker\resources\com.docker.backend.exe] => (Allow) C:\program files\docker\docker\resources\com.docker.backend.exe => No File
FirewallRules: [UDP Query User{67B178AB-6448-49E0-BD89-D98101310F87}C:\program files\docker\docker\resources\com.docker.backend.exe] => (Allow) C:\program files\docker\docker\resources\com.docker.backend.exe => No File
FirewallRules: [TCP Query User{2EB13A60-1C78-40C4-9334-6298A013F7B0}C:\program files (x86)\gz systems\purevpn\purevpn.exe] => (Allow) C:\program files (x86)\gz systems\purevpn\purevpn.exe => No File
FirewallRules: [UDP Query User{6ED330CC-49FF-4524-B76C-E896E6D1B180}C:\program files (x86)\gz systems\purevpn\purevpn.exe] => (Allow) C:\program files (x86)\gz systems\purevpn\purevpn.exe => No File
FirewallRules: [{C098C10D-814B-4648-ADF7-9954388CC4EA}] => (Allow) LPort=31400
FirewallRules: [{1378EC31-F890-4B50-A6F8-82A762159FC9}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{2E6B8883-7DC3-492F-B7FF-55CDD663DC27}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{EE3F9BB2-6DA4-4DD3-92A5-CFE207EA9607}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{90AE84E6-AF25-48FF-8E87-CD9E51CE0C4D}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{E096663F-65FE-456F-8B8A-EFEE0C8A550C}] => (Allow) LPort=31401
FirewallRules: [{3AB4AC46-6E28-4F74-8692-ABC7BA295EBD}] => (Allow) LPort=31402
FirewallRules: [{BC434F6A-2664-41EE-B1A2-2E203C9435F3}] => (Allow) %ProgramFiles%\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{455F0D1D-A5E5-4115-B4A0-996B6C61C2D2}] => (Allow) LPort=31404
FirewallRules: [{1B37CC3B-0B21-46E1-95E8-FFEEB3585984}] => (Allow) LPort=31405
FirewallRules: [{36755F0E-BCD4-4EFE-98DA-3844CD2BEBAF}] => (Allow) LPort=31406
FirewallRules: [{DFA4CA03-6BB5-461A-A808-415652FF7198}] => (Allow) LPort=31407
FirewallRules: [{FE017E8C-0E1B-4BC9-B06B-09F4175203C5}] => (Allow) LPort=31408
FirewallRules: [{08B16306-7A96-4237-8B9F-AD84E2500744}] => (Allow) LPort=31409
FirewallRules: [TCP Query User{485C1239-0A7D-447F-89F0-5A6B7D077CAE}C:\users\micha\downloads\anydesk.exe] => (Allow) C:\users\micha\downloads\anydesk.exe => No File
FirewallRules: [UDP Query User{AD38CA56-2A23-4F12-96D6-A761894A58A3}C:\users\micha\downloads\anydesk.exe] => (Allow) C:\users\micha\downloads\anydesk.exe => No File
FirewallRules: [{F9E94027-57D5-48B7-A1DB-3F654D5989B6}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\Resolve.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [{FE8AB767-946E-4967-B4AA-60EE540B489F}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\bmdpaneld.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{6D4E5261-9947-4D17-840E-B1847B8BCC5F}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\DaVinciPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{A06E5BC3-6E5D-437F-8B44-283B7A96C3E3}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\JLCooperPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{A0F72178-EE18-49B2-BD02-2B6C0CEE8CAC}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\EuphonixPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{9E0B93F2-0DCA-48F9-AAE5-D47E2F251AEF}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\TangentPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{6245B822-0F08-47AD-8269-E0B68C04BC14}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\ElementsPanelDaemon.exe => No File
FirewallRules: [{899A0ADC-2443-481D-9918-85CE4365F64C}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\fuscript.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.)
FirewallRules: [TCP Query User{5105BEB2-54E5-40FC-AC1D-DC96B66C314D}C:\program files\blackmagic design\davinci resolve\resolve.exe] => (Block) C:\program files\blackmagic design\davinci resolve\resolve.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [UDP Query User{C5D6E8D9-0DAE-4D37-872D-B8B332970AA0}C:\program files\blackmagic design\davinci resolve\resolve.exe] => (Block) C:\program files\blackmagic design\davinci resolve\resolve.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [TCP Query User{90DEBF62-31CA-451B-ACC3-599A9BF3FA4F}C:\program files\blackmagic design\davinci resolve\fuscript.exe] => (Block) C:\program files\blackmagic design\davinci resolve\fuscript.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.)
FirewallRules: [UDP Query User{93EB184E-B075-471E-A677-4EB9F8E3688B}C:\program files\blackmagic design\davinci resolve\fuscript.exe] => (Block) C:\program files\blackmagic design\davinci resolve\fuscript.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.)
FirewallRules: [TCP Query User{C7AB7D83-23F3-4C95-A332-DA511934682A}C:\program files (x86)\steam\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe (Valve Corp. -> )
FirewallRules: [UDP Query User{6C35FEB8-A590-40F0-832D-04790D5ED2E2}C:\program files (x86)\steam\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe (Valve Corp. -> )
FirewallRules: [TCP Query User{DBB65758-0417-464E-899A-DAFF52017D76}C:\users\micha\appdata\local\programs\lsc_battletron\lsc_battletron.exe] => (Block) C:\users\micha\appdata\local\programs\lsc_battletron\lsc_battletron.exe (GitHub, Inc.) [File not signed]
FirewallRules: [UDP Query User{0A7C0E8F-4613-49C1-B4D4-80CBD936B8D5}C:\users\micha\appdata\local\programs\lsc_battletron\lsc_battletron.exe] => (Block) C:\users\micha\appdata\local\programs\lsc_battletron\lsc_battletron.exe (GitHub, Inc.) [File not signed]
FirewallRules: [TCP Query User{7D178FD3-D0E3-41B2-BF3B-AF5F6C7ED1D5}C:\users\micha\appdata\local\programs\blitz\blitz.exe] => (Block) C:\users\micha\appdata\local\programs\blitz\blitz.exe (Swift Media Entertainment, Inc. -> Blitz, Inc.)
FirewallRules: [UDP Query User{9DEFC1F0-A822-4C53-82FA-3386D4F012D2}C:\users\micha\appdata\local\programs\blitz\blitz.exe] => (Block) C:\users\micha\appdata\local\programs\blitz\blitz.exe (Swift Media Entertainment, Inc. -> Blitz, Inc.)
FirewallRules: [TCP Query User{7DAB56FD-A2C8-4E7E-8B25-2759214023E0}D:\schedule.i.v0.3.3f13\schedule i.exe] => (Block) D:\schedule.i.v0.3.3f13\schedule i.exe () [File not signed]
FirewallRules: [UDP Query User{ADA90415-CDAE-467F-A790-FD745E05CF77}D:\schedule.i.v0.3.3f13\schedule i.exe] => (Block) D:\schedule.i.v0.3.3f13\schedule i.exe () [File not signed]
FirewallRules: [TCP Query User{9366605A-B99A-4644-81D7-D1CE6FFFA14B}C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe] => (Allow) C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe => No File
FirewallRules: [UDP Query User{B1BD089E-C939-4484-9373-6473763A148B}C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe] => (Allow) C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe => No File
FirewallRules: [TCP Query User{6303E824-75A0-4962-981A-122A4D93EE1B}C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe] => (Block) C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe => No File
FirewallRules: [UDP Query User{9F7EB77E-BED0-493E-84C0-C44F9AC8D0E1}C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe] => (Block) C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe => No File
FirewallRules: [{43786D7A-2D09-4490-A4DF-84EBF56CFAC3}] => (Allow) E:\SteamLibrary\steamapps\common\Ghost Watchers\Ghost Watchers.exe () [File not signed]
FirewallRules: [{A0598503-B89F-470D-9894-765794B9A7BA}] => (Allow) E:\SteamLibrary\steamapps\common\Ghost Watchers\Ghost Watchers.exe () [File not signed]
FirewallRules: [TCP Query User{0003EB38-44C6-468A-B7AE-65025471798A}C:\program files (x86)\iriun webcam\iriunwebcam.exe] => (Allow) C:\program files (x86)\iriun webcam\iriunwebcam.exe (IriunWebcam) [File not signed]
FirewallRules: [UDP Query User{35B494A7-2C90-4D2B-A9C9-9E5084C547AF}C:\program files (x86)\iriun webcam\iriunwebcam.exe] => (Allow) C:\program files (x86)\iriun webcam\iriunwebcam.exe (IriunWebcam) [File not signed]
FirewallRules: [TCP Query User{D31EDD4E-6F1F-48F7-BF04-70624D5CD859}D:\football.life.simulator.early.access\football life simulator.exe] => (Block) D:\football.life.simulator.early.access\football life simulator.exe => No File
FirewallRules: [UDP Query User{415A3AFA-7F76-4442-B9A4-C3D630C920A9}D:\football.life.simulator.early.access\football life simulator.exe] => (Block) D:\football.life.simulator.early.access\football life simulator.exe => No File
FirewallRules: [TCP Query User{FC88C696-51DA-4C64-8193-66421996A2FE}D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe] => (Block) D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe => No File
FirewallRules: [UDP Query User{0C368F59-947E-43F0-8801-48D67EAEA95C}D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe] => (Block) D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe => No File
FirewallRules: [TCP Query User{1B413620-1991-4B9C-A665-08DE87CC761F}D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe] => (Block) D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe => No File
FirewallRules: [UDP Query User{78BE4651-1CCF-4BDB-B782-56D461028DA6}D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe] => (Block) D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe => No File
FirewallRules: [TCP Query User{9863FE5E-073C-4741-9835-2AF7609F2286}D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe] => (Block) D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe => No File
FirewallRules: [UDP Query User{3D1A32C3-C4B8-4BCB-918A-B1F55C7E3BA4}D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe] => (Block) D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe => No File
FirewallRules: [{E79F17D6-ED1E-4DE4-A3B2-4784365B01F1}] => (Allow) D:\SteamLibrary\steamapps\common\Delta Force\Launcher\df_launcher.exe => No File
FirewallRules: [{9EECD3EB-4F9B-46A7-975A-A6E28031CEA0}] => (Allow) D:\SteamLibrary\steamapps\common\Delta Force\Launcher\df_launcher.exe => No File
FirewallRules: [TCP Query User{27BA6085-CFC9-4437-9507-DA440ED57636}E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe] => (Allow) E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe => No File
FirewallRules: [UDP Query User{261BA844-0209-455B-8C8F-EDF6C567C0A0}E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe] => (Allow) E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe => No File
FirewallRules: [{619366B2-C57B-40E0-A55E-730090104413}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe => No File
FirewallRules: [TCP Query User{E66BF433-B841-40DD-B35F-2B0901D71BAE}C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe] => (Block) C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe => No File
FirewallRules: [UDP Query User{E26E2408-5876-4D03-941E-E996B41B9BFC}C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe] => (Block) C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe => No File
FirewallRules: [{17D4C8B3-53E8-4E4A-B51F-6221C67467A5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Phasmophobia\Phasmophobia.exe => No File
FirewallRules: [{BC8EFC50-5F78-4B9E-AEC7-F41F139F5A19}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Phasmophobia\Phasmophobia.exe => No File
FirewallRules: [TCP Query User{3AD948F4-1D6A-4220-9236-6B4A136B9F60}D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe] => (Block) D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe => No File
FirewallRules: [UDP Query User{78CA9D04-A3CD-4C1F-A96C-D66A66373624}D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe] => (Block) D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe => No File
FirewallRules: [{CDAD4C8E-D429-4F51-8219-15326AA59615}] => (Allow) E:\SteamLibrary\steamapps\common\Mafia The Old Country\MafiaTheOldCountry\Binaries\Win64\MafiaTheOldCountry.exe => No File
FirewallRules: [{5B2A4E1C-3EBA-4790-9E81-8F698209F775}] => (Allow) E:\SteamLibrary\steamapps\common\Mafia The Old Country\MafiaTheOldCountry\Binaries\Win64\MafiaTheOldCountry.exe => No File
FirewallRules: [{E455DDA3-6B10-4CD8-9B15-79F27AEF118A}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25198.1001.3811.7774_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{57D82175-B1D2-436F-9E26-BD181D301C9D}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25198.1001.3811.7774_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{CD70C673-7818-49C6-9CF9-EEEB637006D3}D:\minecraft launcher\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Block) D:\minecraft launcher\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe
FirewallRules: [UDP Query User{E1ACE06F-603F-45AA-8A44-1CF6F61404C5}D:\minecraft launcher\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Block) D:\minecraft launcher\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe
FirewallRules: [TCP Query User{57703199-0D81-4544-8510-A0E7198FA739}C:\users\micha\curseforge\minecraft\install\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe] => (Block) C:\users\micha\curseforge\minecraft\install\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe
FirewallRules: [UDP Query User{9F4EA80C-EE30-4386-B29F-5DF34F93393B}C:\users\micha\curseforge\minecraft\install\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe] => (Block) C:\users\micha\curseforge\minecraft\install\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe
FirewallRules: [TCP Query User{A4A2232E-09B6-4B68-ABFE-21D3D92500EE}C:\users\micha\curseforge\minecraft\install\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Block) C:\users\micha\curseforge\minecraft\install\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe
FirewallRules: [UDP Query User{C987D179-564D-4AD9-A726-C11ADE807F71}C:\users\micha\curseforge\minecraft\install\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Block) C:\users\micha\curseforge\minecraft\install\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe
FirewallRules: [{165EB7D2-AD07-4002-B6C4-899C7EE2460C}] => (Allow) C:\Riot Games\League of Legends\LeagueClient.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [{57805A5F-ADFC-487B-A528-EDFF0AC84FA2}] => (Allow) C:\Riot Games\League of Legends\LeagueClient.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [TCP Query User{D1E473FD-B060-488F-80C3-D6D8193264AA}D:\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{5823A439-B0A8-4EA9-B8E5-32EF320B5FC6}D:\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{07EF1D75-68FC-41DB-A091-6DF10AC0A70F}] => (Allow) E:\SteamLibrary\steamapps\common\Prologue Go Wayback! Open Beta\PrologueSteam.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{F7E1D146-A242-4AEA-B926-50DE2EB4DC95}] => (Allow) E:\SteamLibrary\steamapps\common\Prologue Go Wayback! Open Beta\PrologueSteam.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [TCP Query User{8A6879D1-1164-4F68-A485-E3F4E414578A}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{2FE76676-6D0D-420D-B6AA-67B9E850E335}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{EEA2D371-5330-4CD6-B706-8CF0D7FCE019}D:\dying light the beast\dying.light.the.beast.v1.2.0c-ofme\dying light the beast\ph_ft\work\bin\x64\dyinglightgame_thebeast_x64_rwdi.exe] => (Allow) D:\dying light the beast\dying.light.the.beast.v1.2.0c-ofme\dying light the beast\ph_ft\work\bin\x64\dyinglightgame_thebeast_x64_rwdi.exe (Techland S.A. -> Techland)
FirewallRules: [UDP Query User{79B95E69-31AB-4C1C-8196-CAAF2589F8FF}D:\dying light the beast\dying.light.the.beast.v1.2.0c-ofme\dying light the beast\ph_ft\work\bin\x64\dyinglightgame_thebeast_x64_rwdi.exe] => (Allow) D:\dying light the beast\dying.light.the.beast.v1.2.0c-ofme\dying light the beast\ph_ft\work\bin\x64\dyinglightgame_thebeast_x64_rwdi.exe (Techland S.A. -> Techland)
FirewallRules: [{4AC0DE93-9B8D-4C4E-A973-A067B23B40D7}] => (Allow) D:\SteamLibrary\steamapps\common\SILENT HILL f\SHf.exe (KONAMI) [File not signed]
FirewallRules: [{82440F4F-3F87-4376-8259-8E834A948ADE}] => (Allow) D:\SteamLibrary\steamapps\common\SILENT HILL f\SHf.exe (KONAMI) [File not signed]
FirewallRules: [{3C13005D-7C22-460E-9F11-B24FF973D611}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{4EE8469D-7EC0-448F-A8C0-8501C0B9D0A3}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{7BEE4023-F291-4C99-B33A-01E24EBC1C51}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{6C005D06-0310-443E-BBCD-75CAF18843C7}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{290704D3-0CC2-4D71-979B-F1CA9F506395}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{22C45E53-7783-457D-8631-9B93E843EA04}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{9B685567-0BD8-493F-8A7A-B69C753F4D67}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{E120767C-69AA-48C9-B7CE-F0DF19BDA670}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{54F3931C-F36B-4967-B571-3055503070DD}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{1436BFDB-005A-4492-86E6-33C854814629}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{55840764-D8F0-4244-AA08-6171D6F775B0}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALaunchHelper.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [TCP Query User{AE9FA2BF-853A-41E0-81CE-7A6044D0DF95}E:\battlefield 6\bf6.exe] => (Allow) E:\battlefield 6\bf6.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [UDP Query User{EB6FF99C-D4DE-4BA5-BC07-664149D323AE}E:\battlefield 6\bf6.exe] => (Allow) E:\battlefield 6\bf6.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [TCP Query User{ED1B53EB-1F37-4865-9AF7-DC72E73392D9}E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe] => (Allow) E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe => No File
FirewallRules: [UDP Query User{0D02FAD8-020B-4609-A000-1DEC57347CF5}E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe] => (Allow) E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe => No File
FirewallRules: [{690B7FE9-C96F-428E-9BB9-C59B68BEF82C}] => (Allow) E:\SteamLibrary\steamapps\common\Call of Duty HQ\bootstrapper.exe (Activision Publishing Inc -> )
FirewallRules: [{6D84AE58-667D-4B8E-9371-3C131F9ABB48}] => (Allow) E:\SteamLibrary\steamapps\common\Call of Duty HQ\bootstrapper.exe (Activision Publishing Inc -> )
FirewallRules: [{16D6A08B-937B-4708-8AB4-4E4C9E00E333}] => (Allow) E:\SteamLibrary\steamapps\common\Call of Duty HQ\cod.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{AFFE680B-51CC-4D7C-92F8-54A2B67D0988}] => (Allow) E:\SteamLibrary\steamapps\common\Call of Duty HQ\cod.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{58B00E54-E93F-458C-956D-2BF97A36628B}] => (Allow) E:\SteamLibrary\steamapps\common\The Finals\Discovery.exe (Embark Studios AB -> Embark Studios AB)
FirewallRules: [{6E979216-C250-497B-B4A4-6E8BF02F1501}] => (Allow) E:\SteamLibrary\steamapps\common\The Finals\Discovery.exe (Embark Studios AB -> Embark Studios AB)
FirewallRules: [TCP Query User{D1F56D54-D841-4DFF-86B5-B8D2ACA86627}C:\users\micha\curseforge\minecraft\install\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe] => (Block) C:\users\micha\curseforge\minecraft\install\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe
FirewallRules: [UDP Query User{CAB7C7E0-B5E0-4C2E-A155-1CEF8298E01B}C:\users\micha\curseforge\minecraft\install\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe] => (Block) C:\users\micha\curseforge\minecraft\install\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe
FirewallRules: [TCP Query User{87F04713-64C8-4079-ADE0-F7F3C85A72F8}E:\steamlibrary\steamapps\common\the finals\discovery\binaries\win64\discovery-d.exe] => (Allow) E:\steamlibrary\steamapps\common\the finals\discovery\binaries\win64\discovery-d.exe (Embark Studios AB -> Embark Studios AB)
FirewallRules: [UDP Query User{B9442780-716E-486A-9A3A-186A3D90D6AF}E:\steamlibrary\steamapps\common\the finals\discovery\binaries\win64\discovery-d.exe] => (Allow) E:\steamlibrary\steamapps\common\the finals\discovery\binaries\win64\discovery-d.exe (Embark Studios AB -> Embark Studios AB)
FirewallRules: [{E5E67892-710C-4DA6-BA79-6849AF11F890}] => (Allow) E:\SteamLibrary\steamapps\common\Shift At Midnight Demo\ShiftAtMidnight.exe () [File not signed]
FirewallRules: [{A76C8F88-AFD4-4A99-8102-CC8FB9B52398}] => (Allow) E:\SteamLibrary\steamapps\common\Shift At Midnight Demo\ShiftAtMidnight.exe () [File not signed]
FirewallRules: [{93C65364-076B-4653-93BA-3F74DB7B1E63}] => (Allow) E:\Battlefield 6\EAAntiCheat.GameServiceLauncher.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{271EF77A-EF22-4EA7-8EB4-95F10C8EDA3C}] => (Allow) E:\Battlefield 6\EAAntiCheat.GameServiceLauncher.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{ECDF86DE-6320-4383-A606-DBE79C07110D}] => (Allow) E:\Battlefield 6\SP\bf6.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [{05F47C7B-D6A0-409B-A307-9A964DB72EB2}] => (Allow) E:\Battlefield 6\SP\bf6.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [TCP Query User{49223C06-B8A3-408F-9F6D-73A2C0C54603}D:\geo.political.simulator.5.build.21132820\_start.exe] => (Block) D:\geo.political.simulator.5.build.21132820\_start.exe => No File
FirewallRules: [UDP Query User{651650A5-6458-41C0-8FC7-6D16FE172277}D:\geo.political.simulator.5.build.21132820\_start.exe] => (Block) D:\geo.political.simulator.5.build.21132820\_start.exe => No File
FirewallRules: [TCP Query User{8768545B-4649-4DF0-925E-893EA772158D}D:\bank.simulator.build.20501759\bank simulator.exe] => (Block) D:\bank.simulator.build.20501759\bank simulator.exe => No File
FirewallRules: [UDP Query User{52D4F417-1589-49BA-9BC6-DFB9B5B36477}D:\bank.simulator.build.20501759\bank simulator.exe] => (Block) D:\bank.simulator.build.20501759\bank simulator.exe => No File
FirewallRules: [{63542FC3-E15E-4ED1-AF10-E862EF306301}] => (Allow) E:\SteamLibrary\steamapps\common\MarvelRivals\MarvelRivals_Launcher.exe => No File
FirewallRules: [{F8AC2413-BE69-4BD4-99C7-7BE6F6E47E99}] => (Allow) E:\SteamLibrary\steamapps\common\MarvelRivals\MarvelRivals_Launcher.exe => No File
FirewallRules: [{EAD70F97-3314-4A03-B251-458142EE1BC2}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{D84589F5-EA0B-4652-AFA6-9C10743D3DBF}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{E28274D6-78F1-4F22-829D-045CBF96F166}] => (Allow) C:\Users\micha\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Limited)
FirewallRules: [{4FA36512-8925-4325-BBC4-7AC239BB5963}] => (Allow) C:\Users\micha\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Limited)
FirewallRules: [TCP Query User{D7566707-6ACB-473F-8391-D06B97EDC2FE}D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe] => (Block) D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe => No File
FirewallRules: [UDP Query User{A21FAB12-608A-4C75-B6B7-F758ADAD27F2}D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe] => (Block) D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe => No File
FirewallRules: [{5FB88A17-74A6-413E-8F69-A3C0F52C724F}] => (Allow) D:\SteamLibrary\steamapps\common\Detroit Become Human\DetroitBecomeHuman.exe () [File not signed]
FirewallRules: [{E1ED6E99-E359-4A96-A024-3F662BDBA916}] => (Allow) D:\SteamLibrary\steamapps\common\Detroit Become Human\DetroitBecomeHuman.exe () [File not signed]
FirewallRules: [TCP Query User{717727EE-545A-4CBC-B830-E15494BA6714}C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe] => (Block) C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe => No File
FirewallRules: [UDP Query User{67C34866-CEBB-45AA-9493-945586A2E767}C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe] => (Block) C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe => No File
FirewallRules: [TCP Query User{A302FDF6-D4FB-4BD2-93D3-D20A7581706D}D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe] => (Block) D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe => No File
FirewallRules: [UDP Query User{A24B9A21-36B4-4BE5-846C-0C355D0CD68A}D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe] => (Block) D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe => No File
FirewallRules: [{9FAA9656-B894-4090-9C6C-1E1744836F80}] => (Allow) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [{56E477B2-F75E-45A3-B06A-DC0A7E425435}] => (Allow) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [{F0A0F709-9870-4B3A-86CF-E8E51B01274F}] => (Block) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [{D7FACDDF-8015-4085-A0FE-A1AC3CD68917}] => (Block) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [{4CD29641-FCF1-4EF7-BB6E-5B469239B83F}] => (Allow) C:\Program Files (x86)\Overwolf\0.292.1.1\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [{E1527F55-0A34-4D19-BFFB-591DF3B7DE56}] => (Allow) C:\Program Files (x86)\Overwolf\0.292.1.1\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [TCP Query User{EE57F4D8-EDA0-4015-AEFE-D5A211453CA8}D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe] => (Block) D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe => No File
FirewallRules: [UDP Query User{666BAD15-61A2-4216-938C-19D73595FABD}D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe] => (Block) D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe => No File
FirewallRules: [TCP Query User{8699C09C-28F1-4DB2-B22C-212E9E46B919}C:\program files (x86)\videoplaytool\bin\videoplaytool.exe] => (Allow) C:\program files (x86)\videoplaytool\bin\videoplaytool.exe () [File not signed]
FirewallRules: [UDP Query User{60D2B5D5-0317-4BF3-B962-24B94372FA28}C:\program files (x86)\videoplaytool\bin\videoplaytool.exe] => (Allow) C:\program files (x86)\videoplaytool\bin\videoplaytool.exe () [File not signed]
FirewallRules: [TCP Query User{0496F097-5D63-4809-BF91-EDC96AB124F1}C:\program files (x86)\videoplaytool\bin\videoplugin_x64.exe] => (Allow) C:\program files (x86)\videoplaytool\bin\videoplugin_x64.exe () [File not signed]
FirewallRules: [UDP Query User{20CFB431-3DA9-45C4-A6CA-B89F919912C3}C:\program files (x86)\videoplaytool\bin\videoplugin_x64.exe] => (Allow) C:\program files (x86)\videoplaytool\bin\videoplugin_x64.exe () [File not signed]
FirewallRules: [{19D6DC51-B5BF-43CB-854E-A30D84219EB2}] => (Allow) C:\Users\micha\AppData\Local\Temp\ACFL20260121205229\ACSetup\ACSetup.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{E4CF1FE5-22ED-43C1-AFC9-056A586EFC4E}] => (Allow) C:\Users\micha\AppData\Local\Temp\ACFL20260121205229\ACSetup\ACSetup.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{146C8DB4-165B-4BC5-9907-608592F7876F}] => (Allow) D:\SteamLibrary\steamapps\common\Golf With Your Friends\Golf With Your Friends.exe () [File not signed]
FirewallRules: [{FEB8EF87-6EB2-4A0F-9C03-B7792FA0D9C9}] => (Allow) D:\SteamLibrary\steamapps\common\Golf With Your Friends\Golf With Your Friends.exe () [File not signed]
FirewallRules: [{9B4A50DB-9C53-4049-A0F2-B8DD70E3FE08}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\REANIMAL Demo\Everholm\Binaries\Win64\REANIMAL.exe => No File
FirewallRules: [{44F12B77-E7D7-4713-AFF8-BC2DBEAB7CBC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\REANIMAL Demo\Everholm\Binaries\Win64\REANIMAL.exe => No File
FirewallRules: [{3CA21691-C81D-4758-9924-E637F3559D95}] => (Allow) D:\SteamLibrary\steamapps\common\Gang of Frogs Playtest\NebulaCoopProject.exe (Error3: CryptCATAdminCalcHashFromFileHandle failed to return cbHash, #2 -> Epic Games, Inc.) [File not signed]
FirewallRules: [{61F4D655-3CFE-4EA4-8379-907DDB42742C}] => (Allow) D:\SteamLibrary\steamapps\common\Gang of Frogs Playtest\NebulaCoopProject.exe (Error3: CryptCATAdminCalcHashFromFileHandle failed to return cbHash, #2 -> Epic Games, Inc.) [File not signed]
FirewallRules: [{96AA32D3-6739-463F-A451-DEF1FCA517C2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\We Were Here Expeditions - The FriendShip\We Were Here Expeditions The FriendShip.exe () [File not signed]
FirewallRules: [{D47C780E-CD69-4E33-AEEC-75555232547B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\We Were Here Expeditions - The FriendShip\We Were Here Expeditions The FriendShip.exe () [File not signed]
FirewallRules: [{7BC07D96-D236-4452-92E6-0F1929373823}] => (Allow) E:\SteamLibrary\steamapps\common\RESIDENT EVIL requiem BIOHAZARD requiem\re9.exe => No File
FirewallRules: [{6040D1B2-7EF1-4EF1-822F-9BE469363A7F}] => (Allow) E:\SteamLibrary\steamapps\common\RESIDENT EVIL requiem BIOHAZARD requiem\re9.exe => No File
FirewallRules: [{6FA219E2-F406-4C00-9992-8CEF586972CB}] => (Allow) D:\SteamLibrary\steamapps\common\Exit8\Exit8.exe (Error3: CryptCATAdminCalcHashFromFileHandle failed to return cbHash, #2 -> Epic Games, Inc.) [File not signed]
FirewallRules: [{CBCA7707-CA20-44C0-A34E-277C79CEFEA0}] => (Allow) D:\SteamLibrary\steamapps\common\Exit8\Exit8.exe (Error3: CryptCATAdminCalcHashFromFileHandle failed to return cbHash, #2 -> Epic Games, Inc.) [File not signed]
FirewallRules: [{35304E9A-B2ED-4F13-AAD9-8F46BCF7A163}] => (Allow) E:\SteamLibrary\steamapps\common\Level Unknown Backrooms Demo\LevelUnknown.exe (Error3: CryptCATAdminCalcHashFromFileHandle failed to return cbHash, #2 -> Epic Games, Inc.) [File not signed]
FirewallRules: [{88A68A1E-7B0D-4E58-AD3B-2EB8EABC70B8}] => (Allow) E:\SteamLibrary\steamapps\common\Level Unknown Backrooms Demo\LevelUnknown.exe (Error3: CryptCATAdminCalcHashFromFileHandle failed to return cbHash, #2 -> Epic Games, Inc.) [File not signed]
FirewallRules: [{082D4619-647F-4FE8-B6C7-FE4007E611D3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Platform8\Platform8.exe (Error3: CryptCATAdminCalcHashFromFileHandle failed to return cbHash, #2 -> Epic Games, Inc.) [File not signed]
FirewallRules: [{829E5420-356B-4BFC-B5F1-FE7529652D4E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Platform8\Platform8.exe (Error3: CryptCATAdminCalcHashFromFileHandle failed to return cbHash, #2 -> Epic Games, Inc.) [File not signed]
FirewallRules: [{4C1530A4-CA3D-497A-8AF6-423960B9BF68}] => (Allow) E:\SteamLibrary\steamapps\common\Subliminal Demo\Subliminal.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{743C4C50-FCA2-44E0-AC09-42094C5F6F8A}] => (Allow) E:\SteamLibrary\steamapps\common\Subliminal Demo\Subliminal.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [TCP Query User{F8EC5A97-19AA-43E3-BF64-7C02F1191CFA}C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe] => (Allow) C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe => No File
FirewallRules: [UDP Query User{9BCD94D3-2983-4669-B8F2-9151CD414C11}C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe] => (Allow) C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe => No File
FirewallRules: [TCP Query User{7E688C0D-7EEB-4001-9398-F57B5D64D7C9}E:\steamlibrary\steamapps\common\level unknown backrooms demo\levelunknown\binaries\win64\levelunknown-win64-shipping.exe] => (Allow) E:\steamlibrary\steamapps\common\level unknown backrooms demo\levelunknown\binaries\win64\levelunknown-win64-shipping.exe (Podarge Visions) [File not signed]
FirewallRules: [UDP Query User{044B0236-0A23-4B93-BB39-D44871FE6BDA}E:\steamlibrary\steamapps\common\level unknown backrooms demo\levelunknown\binaries\win64\levelunknown-win64-shipping.exe] => (Allow) E:\steamlibrary\steamapps\common\level unknown backrooms demo\levelunknown\binaries\win64\levelunknown-win64-shipping.exe (Podarge Visions) [File not signed]
FirewallRules: [{7332F137-2FCB-45A3-BA27-13258A6D7B5B}] => (Allow) C:\Users\micha\AppData\Local\Temp\ACFL\ACSetup\ACSetup.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{90E0F42C-78E7-4B45-B55E-3E2ED7E46E77}] => (Allow) C:\Users\micha\AppData\Local\Temp\ACFL\ACSetup\ACSetup.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [TCP Query User{57487E1A-1D38-4C31-A43B-DBF09551A900}D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe] => (Allow) D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe => No File
FirewallRules: [UDP Query User{D2A7A198-93F4-4B0C-8F85-FBD7DA39AFEF}D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe] => (Allow) D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe => No File
FirewallRules: [{2BB9BD6C-1901-4EAB-8634-33EE71AC9580}] => (Allow) E:\FunPlus\Sea of Conquest\Launcher.exe => No File
FirewallRules: [{FE0DAA54-F25E-470E-83C5-26D33F9186FF}] => (Allow) E:\FunPlus\Sea of Conquest\Launcher.exe => No File
FirewallRules: [{949E6E87-2E32-4425-8171-D7017509969C}] => (Allow) E:\FunPlus\Sea of Conquest\ngame\1.1.680.396679\seaofconquest.exe => No File
FirewallRules: [{DE20E273-C14E-439A-9D8E-A9A832E100EC}] => (Allow) E:\FunPlus\Sea of Conquest\ngame\1.1.680.396679\seaofconquest.exe => No File
FirewallRules: [TCP Query User{2B04CB50-BE19-4CB7-9B09-03A690B45333}E:\gtavenhanced\gta5_enhanced.exe] => (Allow) E:\gtavenhanced\gta5_enhanced.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [UDP Query User{67FEAA56-EB72-440E-BF0D-60313942F931}E:\gtavenhanced\gta5_enhanced.exe] => (Allow) E:\gtavenhanced\gta5_enhanced.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{333037B7-FB5D-4900-9127-0F529CDBD1A3}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.66.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.)
FirewallRules: [{D1DA1D65-284C-414D-B2D1-C993B0F72080}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.66.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.)
FirewallRules: [{F0607026-FCA8-4DAD-9402-3B9433AE4F9A}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.66.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.)
FirewallRules: [{43C2F16A-A753-48F6-8640-5C28FA83A09A}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.66.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.)
FirewallRules: [{F15517AF-7E6A-49B3-84E7-736301632822}] => (Allow) C:\Program Files\Privax\HMA VPN\Vpn.exe (Gen Digital Inc. -> Privax Limited)
FirewallRules: [{EBB68865-94CA-4452-A493-338B487F5C3A}] => (Allow) C:\Program Files\Privax\HMA VPN\Vpn.exe (Gen Digital Inc. -> Privax Limited)
FirewallRules: [{DF997B85-A5CC-4AB0-BB8C-EE82AD0AE664}] => (Allow) C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe (Softdeluxe) [File not signed]
FirewallRules: [{47FE176A-C4F5-4E03-AC63-80AF09276403}] => (Allow) C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe (Softdeluxe) [File not signed]
FirewallRules: [{1465E95C-70DF-436D-970C-2ED8E1EBEADD}] => (Allow) C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe (Softdeluxe) [File not signed]
FirewallRules: [{FF77FF0C-D2A5-4CD2-B895-BB5F4D3BAF18}] => (Allow) C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe (Softdeluxe) [File not signed]
FirewallRules: [TCP Query User{1EF11284-B2A4-4E46-8C6B-444CE104883A}C:\program files\softdeluxe\free download manager\fdm.exe] => (Allow) C:\program files\softdeluxe\free download manager\fdm.exe (Softdeluxe) [File not signed]
FirewallRules: [UDP Query User{C9FF6B2D-3762-4546-85D5-0D68AB554FB5}C:\program files\softdeluxe\free download manager\fdm.exe] => (Allow) C:\program files\softdeluxe\free download manager\fdm.exe (Softdeluxe) [File not signed]
FirewallRules: [EdgeWebView2-MDNS-In-UDP] => (Allow) C:\WINDOWS\system32\Microsoft-Edge-WebView\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{6F21CB09-6C5A-4344-BF1C-EA741EE3B92D}] => (Allow) C:\Program Files\WindowsApps\OpenAI.ChatGPT-Desktop_1.2026.133.0_x64__2p2nqsd0c76g0\app\ChatGPT.exe (50BDFD77-8903-4850-9FFE-6E8522F64D5B -> OpenAI)
FirewallRules: [{03C266D7-323C-41E2-AD3F-3971CAA19AB1}] => (Allow) C:\Program Files\WindowsApps\OpenAI.ChatGPT-Desktop_1.2026.133.0_x64__2p2nqsd0c76g0\app\ChatGPT.exe (50BDFD77-8903-4850-9FFE-6E8522F64D5B -> OpenAI)
FirewallRules: [{D7B68C98-87B6-48F2-871E-FE32B67993C0}] => (Allow) C:\Program Files\WindowsApps\OpenAI.ChatGPT-Desktop_1.2026.133.0_x64__2p2nqsd0c76g0\app\ChatGPT.exe (50BDFD77-8903-4850-9FFE-6E8522F64D5B -> OpenAI)
FirewallRules: [{C35A8C71-8852-4CEE-9DAE-EA5F6F6A580C}] => (Allow) C:\Program Files\WindowsApps\OpenAI.ChatGPT-Desktop_1.2026.133.0_x64__2p2nqsd0c76g0\app\ChatGPT.exe (50BDFD77-8903-4850-9FFE-6E8522F64D5B -> OpenAI)
FirewallRules: [{4DC02301-DA0B-4DAE-AB59-3699104C05CE}] => (Allow) C:\ProgramData\ASUS\ARMOURY CRATE One Package\ACFL20260517171130\ACSetup\ACSetup.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{3EFE7AEF-9E5C-4F3B-981E-1ECCF674AAC9}] => (Allow) C:\ProgramData\ASUS\ARMOURY CRATE One Package\ACFL20260517171130\ACSetup\ACSetup.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{18D6E95F-C817-4DDF-A7AD-75F1A1024F26}] => (Allow) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{7D672467-152E-4E17-ADF7-702086E5BA44}] => (Allow) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{6309903D-B4E8-4C24-ABBC-CA028065F7D0}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
FirewallRules: [{BBA197BB-FB8A-4BC1-98E9-481813356EFB}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
FirewallRules: [{22E3668F-9299-46E7-AABA-01FEA6879199}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmouryHtmlDebugServer.exe (ASUSTeK COMPUTER INC. -> ASUS)
FirewallRules: [{3CB0E3CE-F152-45D8-A271-808DC286E94B}] => (Allow) C:\Program Files\ASUS\AacAmbientHal\AacAmbientLighting.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{034AEB15-A6D9-4568-BFF4-99901C333BFF}] => (Allow) E:\SteamLibrary\steamapps\common\Backrooms_Escape_Together\BetGame.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{F0613130-3034-4F4E-8EE9-2FFDF29313CC}] => (Allow) E:\SteamLibrary\steamapps\common\Backrooms_Escape_Together\BetGame.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [TCP Query User{C122A2E0-9886-492C-825D-00F0A7E6D756}E:\steamlibrary\steamapps\common\backrooms_escape_together\bet\binaries\win64\betgamesteam-win64-shipping.exe] => (Allow) E:\steamlibrary\steamapps\common\backrooms_escape_together\bet\binaries\win64\betgamesteam-win64-shipping.exe (Triiodide Studios) [File not signed]
FirewallRules: [UDP Query User{FDE49F1B-B44D-4364-902D-491F9A233287}E:\steamlibrary\steamapps\common\backrooms_escape_together\bet\binaries\win64\betgamesteam-win64-shipping.exe] => (Allow) E:\steamlibrary\steamapps\common\backrooms_escape_together\bet\binaries\win64\betgamesteam-win64-shipping.exe (Triiodide Studios) [File not signed]
FirewallRules: [{B3D95749-8863-44F3-9A92-A2809FAEAD2F}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{77049CD5-31A3-4D3C-B1CE-207C5042C5E8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{1933BDA0-EDA5-4662-9B21-D512D2277A7C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{FE46AFBB-E31B-4F9D-B191-D8664A730E43}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{C655455A-8894-4943-93F1-2D8E081F9FC8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{0C527AD0-60DC-459B-AA95-D0FF117D8465}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{9CC825B3-1F12-4727-9278-97F94D62E3BA}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{3F6529FC-847A-4882-8580-7EF9FB57904B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{BC7326F4-57FA-42BB-8F6C-713C750D3DF5}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{4C4CD58B-85FE-4E9D-8518-F85C6039CBA1}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{7ED28EB1-88AC-4327-A468-FBEDA0DA2C2B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{2AEB9F72-9141-4948-9F4A-C01174204E2B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{601E84BF-9F26-4650-9600-C897288DDB54}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{2E06499D-ABC8-4531-92D4-D4F7E302821D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{5D13A91D-5432-4E2E-8B13-9D99DCD909C7}] => (Allow) C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [{E170FAF8-A3A9-46FC-8D1B-C8C6ACE89920}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2606.48051.0_x64__8wekyb3d8bbwe\M365Copilot.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{E24BE7EB-31F9-4AED-9D96-1EC6F0F1CFE3}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2606.48051.0_x64__8wekyb3d8bbwe\M365Copilot.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{AED4305C-00AC-4312-B1E8-81DE7EDD367B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2606.48051.0_x64__8wekyb3d8bbwe\M365Copilot.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{71E7097B-407E-4047-93DF-39853D944C65}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2606.48051.0_x64__8wekyb3d8bbwe\M365Copilot.exe (Microsoft Corporation -> Microsoft Corporation)
==================== Restore Points =========================
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (06/20/2026 11:39:14 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: Vytvoření bodu obnovení se nezdařilo (Proces = C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s wuauserv; Popis = Windows Update; Chyba = 0x8004231f).
Error: (06/19/2026 11:41:45 PM) (Source: Application Error) (EventID: 1005) (User: PETR)
Description: C:\Users\micha\AppData\Local\Microsoft\OneDrive\logs\Common\telemetryCache.otc-shmMicrosoft OneDriveFile Co-Authoring Executable0xc000007f0x3
Error: (06/19/2026 11:41:45 PM) (Source: Application Error) (EventID: 1000) (User: PETR)
Description: Název chybující aplikace: FileCoAuth.exe, verze: 26.95.519.3, časové razítko: 0x8dace483
Název chybujícího modulu: OneDriveTelemetryStable.dll, verze: 26.95.519.3, časové razítko: 0xe02a4d5f
Kód výjimky: 0xc0000006
Posun chyby: 0x000000000015df56
ID chybujícího procesu: 0x3a70
Čas spuštění chybující aplikace: 0x1dd00346ca4172e
Cesta k chybující aplikaci: C:\Users\micha\AppData\Local\Microsoft\OneDrive\26.095.0519.0003\FileCoAuth.exe
Cesta k chybujícímu modulu: C:\Users\micha\AppData\Local\Microsoft\OneDrive\26.095.0519.0003\OneDriveTelemetryStable.dll
ID sestavy: 60d5ffc0-9f68-428c-96bb-f56306f452b9
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:
Error: (06/19/2026 02:12:54 AM) (Source: Application Error) (EventID: 1000) (User: NT AUTHORITY)
Description: Název chybující aplikace: nordvpn-service.exe, verze: 1.1.0.34, časové razítko: 0x65112d57
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.26100.8655, časové razítko: 0x9e0ffa42
Kód výjimky: 0xe0434352
Posun chyby: 0x00000000000c1b6a
ID chybujícího procesu: 0x145c
Čas spuštění chybující aplikace: 0x1dcff13f490d600
Cesta k chybující aplikaci: C:\Program Files\NordVPN\nordvpn-service.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\KERNELBASE.dll
ID sestavy: ab358147-833f-40ac-98fc-257bfbadce68
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:
Error: (06/19/2026 02:12:50 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému..
Error: (06/19/2026 02:12:50 AM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.]
Error: (06/19/2026 02:12:50 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému..
Error: (06/19/2026 02:12:50 AM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.]
System errors:
=============
Error: (06/21/2026 11:02:04 AM) (Source: Netwtw10) (EventID: 5010) (User: )
Description: Intel(R) Wi-Fi 6 AX201 160MHz : Síťový adaptér vrátil ovladači neplatnou hodnotu.
5010 - Driver DBG_ASSERT - instead of BSOD
Error: (06/21/2026 11:02:04 AM) (Source: Netwtw10) (EventID: 5010) (User: )
Description: Intel(R) Wi-Fi 6 AX201 160MHz : Síťový adaptér vrátil ovladači neplatnou hodnotu.
5010 - Driver DBG_ASSERT - instead of BSOD
Error: (06/21/2026 10:37:14 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Aktualizace Google (gupdate) neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.
Error: (06/21/2026 10:37:14 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Služba Aktualizace Google (gupdate) bylo dosaženo časového limitu (90000 ms).
Error: (06/21/2026 10:35:21 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba AsusFanControlService neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.
Error: (06/21/2026 10:35:21 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby AsusFanControlService bylo dosaženo časového limitu (90000 ms).
Error: (06/21/2026 10:35:21 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba AsusFanControlService neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.
Error: (06/21/2026 10:35:21 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby AsusFanControlService bylo dosaženo časového limitu (90000 ms).
Windows Defender:
================
Date: 2026-06-16 12:42:13
Description:
Antivirová ochrana v programu Microsoft Defender šçαń ħãś ьёэй šţθρφεð ьĕƒõяė ¢οмφŀèтіõⁿ.%ń %ţŠĉдń ÍÐ:%ъ{2E25A665-9029-46F9-9F59-575E560C61AB}%й %ťŞçäη Τурè:%ъAntimalwarový program%ń %τЅĉăņ Рǻřǻмĕτзřş:%вRychlé prohledávání%л %ťЏŝèŗ:%вNT AUTHORITY\SYSTEM%л %ŧŞţор Ŕëάŝσŋ:%вЯРČ çőпήзćťíσп гŭⁿđŏщи
Date: 2026-06-14 11:18:25
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: PUADlManager:Win32/InstallCore
Závažnost: Nízké
Kategorie: Potenciálně nežádoucí software
Cesta: file:_E:\GTA SAN ANDREAS\HOODLUM\hlm-intro.exe; file:_E:\HOODLUM\hlm-intro.exe
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Ochrana v reálném čase
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: C:\Program Files\Malwarebytes\Anti-Malware\DDSHelper.exe
Verze bezpečnostních informací: AV: 1.453.86.0, AS: 1.453.86.0, NIS: 1.453.86.0
Verze modulu: AM: 1.1.26050.11, NIS: 1.1.26050.11
Date: 2026-06-14 11:17:17
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: PUADlManager:Win32/InstallCore
Závažnost: Nízké
Kategorie: Potenciálně nežádoucí software
Cesta: file:_E:\GTA SAN ANDREAS\HOODLUM\hlm-intro.exe
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Ochrana v reálném čase
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: C:\Program Files\Malwarebytes\Anti-Malware\DDSHelper.exe
Verze bezpečnostních informací: AV: 1.453.86.0, AS: 1.453.86.0, NIS: 1.453.86.0
Verze modulu: AM: 1.1.26050.11, NIS: 1.1.26050.11
Date: 2026-06-10 13:06:21
Description:
Antivirová ochrana v programu Microsoft Defender šçαń ħãś ьёэй šţθρφεð ьĕƒõяė ¢οмφŀèтіõⁿ.%ń %ţŠĉдń ÍÐ:%ъ{58D99B81-2179-4234-BC4E-8E54A9B95BC1}%й %ťŞçäη Τурè:%ъAntimalwarový program%ń %τЅĉăņ Рǻřǻмĕτзřş:%вRychlé prohledávání%л %ťЏŝèŗ:%вNT AUTHORITY\SYSTEM%л %ŧŞţор Ŕëάŝσŋ:%вЯРČ çőпήзćťíσп гŭⁿđŏщи
Date: 2026-06-07 13:32:57
Description:
Antivirová ochrana v programu Microsoft Defender šçαń ħãś ьёэй šţθρφεð ьĕƒõяė ¢οмφŀèтіõⁿ.%ń %ţŠĉдń ÍÐ:%ъ{AE61C05C-DD09-4863-8B9F-01157A764EDE}%й %ťŞçäη Τурè:%ъAntimalwarový program%ń %τЅĉăņ Рǻřǻмĕτзřş:%вRychlé prohledávání%л %ťЏŝèŗ:%вNT AUTHORITY\SYSTEM%л %ŧŞţор Ŕëάŝσŋ:%вŜčћêďŭľëđ ś¢ăп ŵâŝ śκΐφρèð вєćąűśë τћ℮ ļâѕт ŝűċčэşšƒµℓ ŝċаπ щàś ẃīτнĩñ тђë ľâşτ 7 ðαўş
Event[0]
Date: 2026-06-21 02:00:37
Description:
Služba Antivirová ochrana v programu Microsoft Defender zřejmě během vypnutí neodpovídá.
Timout (sekundy): 0
Součást: UninitializeServiceWppTracing
Ukončeno: 0
Date: 2026-04-15 10:10:35
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.449.106.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.26030.3008
Kód chyby: 0x8024402c
Popis chyby: Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.
Date: 2026-04-07 14:23:18
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.447.204.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.26020.3
Kód chyby: 0x8024402c
Popis chyby: Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.
Date: 2026-04-05 12:05:50
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.447.168.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.26020.3
Kód chyby: 0x8024402c
Popis chyby: Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.
Date: 2026-03-25 15:42:34
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.445.744.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.26010.1
Kód chyby: 0x8024402c
Popis chyby: Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.
CodeIntegrity:
===============
Date: 2026-04-09 21:33:58
Description:
Code Integrity determined that a process (\Device\HarddiskVolume8\Users\micha\AppData\Local\Discord\app-1.0.9228\Discord.exe) attempted to load \Device\HarddiskVolume8\Program Files (x86)\Overwolf\0.292.1.1\OWClient.dll that did not meet the Microsoft signing level requirements.
Date: 2026-04-09 21:33:58
Description:
Code Integrity determined that a process (\Device\HarddiskVolume8\Users\micha\AppData\Local\Discord\app-1.0.9228\Discord.exe) attempted to load \Device\HarddiskVolume8\Program Files (x86)\Overwolf\0.292.1.1\ow-graphics-vulkan.dll that did not meet the Microsoft signing level requirements.
Date: 2026-04-09 21:33:58
Description:
Code Integrity determined that a process (\Device\HarddiskVolume8\Users\micha\AppData\Local\Discord\app-1.0.9228\Discord.exe) attempted to load \Device\HarddiskVolume8\ProgramData\obs-studio-hook\graphics-hook64.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends Inc. 1203 10/28/2021
Motherboard: ASUSTeK COMPUTER INC. TUF GAMING B560M-PLUS WIFI
Processor: 11th Gen Intel(R) Core(TM) i5-11400F @ 2.60GHz
Percentage of memory in use: 72%
Total physical RAM: 16217.73 MB
Available physical RAM: 4397.11 MB
Total Virtual: 35673.73 MB
Available Virtual: 16655.8 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:464.22 GB) (Free:0.48 GB) (Model: WDS500G1X0E-00AFY0) NTFS
Drive d: () (Fixed) (Total:931.07 GB) (Free:64.94 GB) (Model: ST1000DM003-1CH162) NTFS
Drive e: () (Fixed) (Total:930.38 GB) (Free:196.33 GB) (Model: WDC WD10EZRZ-00HTKB0) NTFS
\\?\Volume{46029b4d-50e3-4957-bc8f-c0b2a31dc2bc}\ (Obnovení) (Fixed) (Total:0.52 GB) (Free:0.09 GB) NTFS
\\?\Volume{4b280e1e-daf8-44f3-842e-2a7f1ce8ec12}\ () (Fixed) (Total:0.51 GB) (Free:0.49 GB) NTFS
\\?\Volume{264207f5-8b5b-4217-b1e6-8dd2e0f04815}\ () (Fixed) (Total:0.85 GB) (Free:0.07 GB) NTFS
\\?\Volume{08ab3d1f-4e35-4487-85f6-dbaed34b5da3}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32
\\?\Volume{0cd24771-04e1-47f0-9f7a-3b9a182df020}\ () (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 1 (Size: 931.5 GB) (Disk ID: 7D324914)
Partition 1: (Not Active) - (Size=931.1 GB) - (Type=07 NTFS)
==========================================================
Disk: 2 (Protective MBR) (Size: 465.8 GB) (Disk ID: 00000000)
Partition: GPT.
==================== End of Addition.txt =======================
Ran by micha (21-06-2026 11:50:50)
Running from C:\Users\micha\OneDrive\Plocha
Microsoft Windows 11 Home Version 25H2 26200.8655 (X64) (2025-08-11 13:50:35)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-756127909-4058986209-260929036-500 - Administrators - Disabled)
Black (S-1-5-21-756127909-4058986209-260929036-1004 - Limited - Disabled)
DefaultAccount (S-1-5-21-756127909-4058986209-260929036-503 - Limited - Disabled)
Guest (S-1-5-21-756127909-4058986209-260929036-501 - Limited - Disabled)
kolom (S-1-5-21-756127909-4058986209-260929036-1003 - Limited - Disabled)
micha (S-1-5-21-756127909-4058986209-260929036-1001 - Administrators - Enabled) => C:\Users\micha
Shoot (S-1-5-21-756127909-4058986209-260929036-1002 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-756127909-4058986209-260929036-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
µTorrent (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\uTorrent) (Version: 3.6.0.47224 - BitTorrent Limited)
Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1029-1033-7760-BC15014EA700}) (Version: 26.001.21662 - Adobe)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601149}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
AMD Install Manager (HKLM\...\{45E3ACCD-D14E-412E-82D7-F65278ACD8EE}) (Version: 25.10.25205.2240 - Advanced Micro Devices, Inc.)
AMD Privacy View (HKLM\...\{D8E24EA6-807B-48D0-86D6-A9C5E74B8F2C}) (Version: 1.02.0001 - Eyeware Tech SA)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 25.8.1 - Advanced Micro Devices, Inc.)
AniMeVisionFont_MB (HKLM\...\{93E38BA3-9745-4D67-91BC-F65F81523D0A}) (Version: 1.0.1 - ASUSTek Computer Inc.) Hidden
Antidote by Sekg 1.18.3 (HKLM\...\3e510627-0501-5809-9ff3-e0dcca6cef0e) (Version: 1.18.3 - Sekg)
AntiCheatExpert (HKLM\...\AntiCheatExpert) (Version: 15.0.2405.347 - )
Armoury Crate Service (HKLM\...\Armoury Crate Service) (Version: 6.5.7.0 - ASUSTeK COMPUTER INC.)
ASUS AIOFan HAL (HKLM\...\{EAE80DED-1A39-41C5-9F60-87CC947F6454}) (Version: 1.5.5.0 - ASUSTeK COMPUTER INC.) Hidden
ASUS AIOFan HAL (HKLM-x32\...\{7c790d87-e250-4c7e-ad7f-e921dab6777d}) (Version: 1.5.5.0 - ASUSTeK COMPUTER INC.) Hidden
ASUS Ambient HAL (HKLM\...\{158AC6D1-5591-4BA5-AE57-50B66F1055AA}) (Version: 7.20.0.0 - ASUSTeK COMPUTER INC.) Hidden
ASUS Ambient HAL (HKLM-x32\...\{5f21a988-01f3-468f-a06e-0b13304d11cb}) (Version: 7.20.0.0 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Extension Card HAL (HKLM\...\{237E1CAC-1708-4940-AC34-DF15C079AB70}) (Version: 1.1.0.20 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Extension Card HAL (HKLM-x32\...\{49c4358d-054e-4cf1-9ec1-dca3487f304a}) (Version: 1.1.0.20 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Motherboard HAL (HKLM\...\{359B9A9D-A289-4962-BCE2-13EBFD50D532}) (Version: 1.6.1.5 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Motherboard HAL (HKLM-x32\...\{f88c8031-a585-43ae-969c-43a196cbebf1}) (Version: 1.6.1.5 - ASUSTeK COMPUTER INC.) Hidden
ASUS Aura SDK (HKLM\...\{CF8E6E00-9C03-4440-81C0-21FACB921A6B}) (Version: 3.07.05 - ASUSTeK COMPUTER INC.) Hidden
ASUS Framework Service (HKLM-x32\...\{339A6383-7862-46DA-8A9D-E84180EF9424}) (Version: 4.2.4.13 - ASUSTeK Computer Inc.)
ASUS Motherboard (HKLM-x32\...\{93795eb8-bd86-4d4d-ab27-ff80f9467b37}) (Version: 5.02.06 - ASUSTek Computer Inc.)
ASUS Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.107.159 - ASUSTeK Computer Inc.) Hidden
AURA DRAM Component (HKLM\...\{86D4C8A2-DB22-4948-950D-28DD5145F91C}) (Version: 1.1.29 - ASUS) Hidden
AURA DRAM Component (HKLM-x32\...\{f70a8a88-540d-485d-9aa8-001486fb050e}) (Version: 1.1.29 - ASUS) Hidden
AURA lighting effect add-on (HKLM-x32\...\{1E2EA04B-FCA7-457E-B6F4-F33E1858E859}) (Version: 0.0.55 - ASUSTek COMPUTER INC.)
AURA lighting effect add-on x64 (HKLM\...\{C5A4A164-4428-4931-B728-96EEF0FA3C44}) (Version: 0.0.55 - ASUSTek COMPUTER INC.)
AURA Service (HKLM-x32\...\{56EEEF7D-0AE3-401A-898B-581719D005AE}) (Version: 3.10.10 - ASUSTeK COMPUTER INC.) Hidden
AURA Service (HKLM-x32\...\{c74e7336-6fc2-472d-b921-ba6f5e58bd59}) (Version: 3.10.10 - ASUSTeK COMPUTER INC.)
Auto Keyboard by MurGee.com v10.6.1 (HKLM-x32\...\{71E16EE4-BBED-44A8-8724-9E68D05EE945}_is1) (Version: 10.6.1 - MurGee.com)
Auto Keyboard Presser 2.1.1.8 (HKLM-x32\...\{8A64FE75-FD59-40C9-93C5-9F6C47106F4B}_is1) (Version: - AutoMacroRecorder.com, Inc.)
Balíček ovladače systému Windows - Nokia Modem (02/25/2011 4.7) (HKLM\...\E0AC723A3DE3A04256288CADBBB011B112AED454) (Version: 02/25/2011 4.7 - Nokia)
Balíček ovladače systému Windows - Nokia Modem (02/25/2011 7.01.0.9) (HKLM\...\72A50F48CC5601190B9C4E74D81161693133E7F7) (Version: 02/25/2011 7.01.0.9 - Nokia)
Balíček ovladače systému Windows - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) (HKLM\...\62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F) (Version: 05/31/2012 7.1.2.0 - Nokia)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Battlefield™ 6 (HKLM-x32\...\{c508544b-57bd-4c6c-96ed-8f57235285b4}) (Version: 1.0.397.41940 - Electronic Arts)
BitTorrent Web (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\btweb) (Version: 1.5.0 - BitTorrent Limited)
Blackmagic RAW Common Components (HKLM\...\{EB1F744F-B900-4BAD-82E8-5350C910AB38}) (Version: 4.1 - Blackmagic Design)
Blitz (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\153f8ce0-b97a-575b-ba12-4ff8b1481894) (Version: 2.1.582 - Blitz, Inc.)
Bolt Food (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\0fcc5bccdcfb99592c6ff73083a4eb00) (Version: 1.0 - BraveSoftware\Brave-Browser)
Branding64 (HKLM\...\{492AEFBE-1B81-4C20-A111-E6974BB98EC5}) (Version: 1.00.0009 - Advanced Micro Devices, Inc.) Hidden
Brave (HKLM-x32\...\BraveSoftware Brave-Browser) (Version: 149.1.91.175 - Autoři prohlížeče Brave)
BUFF (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Overwolf_caboggillkkpgkiokbjmgldfkedbfnpkgadakcdl) (Version: 0.9.36.0 - Overwolf app)
Call of Duty (HKLM-x32\...\Call of Duty) (Version: - Blizzard Entertainment)
Call of Duty Modern Warfare (HKLM-x32\...\Call of Duty Modern Warfare) (Version: - Blizzard Entertainment)
Call of Duty(R) 2 (HKLM-x32\...\InstallShield_{D0A05794-48C2-4424-A15A-9F20FCFDD374}) (Version: 1.00.0000 - Activision)
CapCut (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\CapCut) (Version: 6.2.0.2385 - Bytedance Pte. Ltd.)
CCleaner (HKLM\...\CCleaner) (Version: 6.38 - Piriform)
CoD 2 čeština (HKLM-x32\...\CoD 2 čeština_is1) (Version: - #'Pan[S]al!er!)
CPUID CPU-Z 2.08 (HKLM\...\CPUID CPU-Z_is1) (Version: 2.08 - CPUID, Inc.)
CPUID HWMonitor 1.52 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.52 - CPUID, Inc.)
CrystalDiskMark 8.0.4c (HKLM\...\CrystalDiskMark8_is1) (Version: 8.0.4c - Crystal Dew World)
CurseForge (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Overwolf_cchhcaiapeikjbdbpfplgmpobbcdkdaphclbmkbj) (Version: 1.296.1.364 - Overwolf app)
DaVinci Resolve (HKLM\...\{A42AD466-8352-466F-B920-67F54C4F8679}) (Version: 19.0.00051 - Blackmagic Design)
DaVinci Resolve Control Panels (HKLM\...\{3739CA49-792F-4F1F-9B76-42DFBBBED27E}) (Version: 2.3.0.0 - Blackmagic Design)
DaVinci Resolve Renderer (HKLM\...\{953AAFB1-E9E3-4FED-9E35-575B960236CC}) (Version: 19.0.00051 - Blackmagic Design)
Denuvo Anti-Cheat (HKLM\...\Denuvo Anti-Cheat) (Version: 6.7.0.6846 - Denuvo GmbH)
Discord (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Discord) (Version: 1.0.9228 - Discord Inc.)
DownloadHelper CoApp (HKLM-x32\...\DownloadHelper CoApp) (Version: 2.0.19.0 - ACLAP)
Dynamic Application Loader Host Interface Service (HKLM\...\{439E5170-CFC8-4944-8119-746ECF219399}) (Version: 1.0.0.0 - Intel Corporation) Hidden
EA app (HKLM\...\{C2622085-ABD2-49E5-8AB9-D3D6A642C091}) (Version: 13.680.0.6193 - Electronic Arts) Hidden
EA app (HKLM-x32\...\{d473ca0c-6e51-4386-a9d8-0458f243b271}) (Version: 13.680.0.6193 - Electronic Arts)
ENE RGB HAL (HKLM\...\{E050E98C-5524-4AFB-9E53-97700BEF2C02}) (Version: 1.1.62.5 - Ene Tech.) Hidden
ENE RGB HAL (HKLM-x32\...\{cc8ca0dc-1a3a-4f92-ae52-0f35ca2d2ec5}) (Version: 1.1.62.5 - Ene Tech.) Hidden
ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
ENE_EHD_M2_HAL (HKLM-x32\...\{c1d017c2-8846-4000-9254-5689eccd462e}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
Epic Games Launcher (HKLM-x32\...\{FAC47927-1A6A-4C6E-AD7D-E9756794A4BC}) (Version: 1.3.23.0 - Epic Games, Inc.)
Epic Online Services (HKLM-x32\...\{758842D2-1538-4008-A8E3-66F65A061C52}) (Version: 2.0.33.0 - Epic Games, Inc.)
FACEIT (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\FACEIT) (Version: 2.0.26 - FACEIT Ltd.)
FACEIT Anti-Cheat (HKLM\...\{1419E44C-0EF4-4822-9194-9F1A4D43973D}_is1) (Version: 2.1 - FACEIT LTD)
Fairlight Audio Accelerator Utility (HKLM\...\FairlightAudioAccelerator_is1) (Version: 1.0.15 - Blackmagic Design)
FFB Racing Wheel drivers (HKLM-x32\...\{28B758EA-5C83-48B1-B352-C70F12C73F5A}) (Version: 1.TTRS.2024 - Thrustmaster)
FiveM (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\CitizenFX_FiveM) (Version: - Cfx.re)
Free Download Manager (HKLM\...\{0C1D4CF2-5575-4786-834C-B0FC977E9714}}_is1) (Version: 6.33.2.6656 - Softdeluxe)
GameGuard (HKLM-x32\...\{DB58A440-02BB-433B-AE99-D0B8AF31A839}) (Version: 1.0.0.0 - GameGuard AntiCheat, OnMoon Company LLC)
GameSDK Service (HKLM-x32\...\{021d69c3-d686-4a94-8fb5-fd1ee782fb14}) (Version: 1.0.5.0 - ASUSTek COMPUTER INC.)
GameSDK Service (HKLM-x32\...\{7160DA8D-3F25-4F6E-ABC8-F693551D82FA}) (Version: 1.0.5.0 - ASUSTek COMPUTER INC.) Hidden
GMenu (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\4ac46a8d-c0d4-56ee-87f3-9abd4ce22e7f) (Version: 3.28.0 - AOC)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 149.0.7827.114 - Google LLC)
GTA San Andreas (HKLM-x32\...\{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}) (Version: 1.00.00001 - Rockstar Games)
Hamachi (HKLM-x32\...\{C00E2143-38F2-49BA-AB8A-03F22F02F0A4}) (Version: 2.3.0.111 - LogMeIn, Inc.) Hidden
Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.3.0.111 - LogMeIn, Inc.)
Hextech Repair Tool (HKLM-x32\...\{7F9A97E6-E666-11E5-B582-B88687E82322}) (Version: 1.1.176 - Riot Games, Inc.)
HMA VPN (HKLM\...\Privax HMA) (Version: 26.5.12311.16202 - Privax)
Intel(R) Chipset Device Software (HKLM\...\{2EE411D3-03C6-4647-81F5-A3C13F25FDC5}) (Version: 10.1.18838.8284 - Intel Corporation) Hidden
Intel(R) Chipset Device Software (HKLM-x32\...\{2d8d3782-0c02-4681-87f4-e004b3d4a8f6}) (Version: 10.1.18838.8284 - Intel(R) Corporation)
Intel(R) LMS (HKLM\...\{DFFC9992-3A41-4155-A834-9831C6E58D98}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 2130.16.0.2387 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{FA6E1882-F6C1-47E1-A6CB-FC1F5460E311}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Driver (HKLM\...\{38F0D70E-8F07-4BF9-A5E0-6946C3D614D8}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.2129.8 - Intel Corporation)
Intel(R) Serial IO (HKLM\...\{A5530342-3F3E-4C02-9ECA-20DC35944BFD}) (Version: 30.100.2129.8 - Intel Corporation) Hidden
INUI (C) (HKLM\...\INUI) (Version: 1.0.0 - INUI GAMING FZ LLC)
IO Auto Clicker version 1.2.0 (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\IO Auto Clicker_is1) (Version: 1.2.0 - Wonkru Media (OPC) Private Limited)
Iriun Webcam version 2.8.4 (HKLM-x32\...\IriunWebcam_is1) (Version: 2.8.4 - Iriun)
iTop Screen Recorder (HKLM-x32\...\iTop Screen Recorder_is1) (Version: 6.2.0.3488 - iTop Inc.)
iTop Screenshot (HKLM-x32\...\iTop Screenshot_is1) (Version: 1.2.3.544 - iTop Inc.)
Kinect for Windows Speech Recognition Language Pack (en-AU) (HKLM-x32\...\{48CEC0A3-AE10-4EE3-AC62-76D3D58792E5}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-CA) (HKLM-x32\...\{9C5505DA-F9C1-46CB-9F8F-AC38F8EA518A}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-GB) (HKLM-x32\...\{A0186231-0A8B-455A-8A25-B64AABCC11A6}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-US) (HKLM-x32\...\{8AAA44BB-487E-4D01-AF76-484ACB90DBFE}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kingston AURA DRAM Component (HKLM\...\{965CDF5F-901C-476F-B3A8-7396701B1129}) (Version: 1.1.44 - KINGSTON COMPONENTS INC.) Hidden
Kingston AURA DRAM Component (HKLM-x32\...\{9cfd6488-af6d-4b35-9df3-e16b0c6b791b}) (Version: 1.1.44 - KINGSTON COMPONENTS INC.) Hidden
KMPlayer (remove only) (HKLM-x32\...\The KMPlayer) (Version: 4.2.3.7 - PandoraTV)
Kodi (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Kodi) (Version: 21.1.0.0 - XBMC Foundation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
League of Legends (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Riot Game league_of_legends.live) (Version: - Riot Games, Inc)
Logitech G HUB (HKLM\...\{521c89be-637f-4274-a840-baaf7460c2b2}) (Version: 2026.3.880543 - Logitech)
LSC_Battletron 2.0.17 (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\4682e427-f1d4-58e9-ae92-7249f6aeeff5) (Version: 2.0.17 - )
Mafia (HKLM-x32\...\1595659240_is1) (Version: 1.3 - GOG.com)
Mafia Compatibility Database (HKLM\...\{481dc351-bab0-4f86-b085-87a5626fe6dc}.sdb) (Version: - )
Mafia II Definitive Edition (HKLM-x32\...\1449710114_is1) (Version: 1.0 - GOG.com)
Malwarebytes version 5.5.7.255 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.5.7.255 - Malwarebytes)
Massive (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\{07F54E47-DE08-486E-921C-D09624774BB6}_is1) (Version: 0.19.2 - Massive Computing, Inc.) <==== ATTENTION
Microsoft .NET 9.0 Templates 9.0.312 (x64) (HKLM\...\{CC355296-727E-4588-B4BE-F019FCBBE942}) (Version: 36.11.56644 - Microsoft Corporation) Hidden
Microsoft .NET AppHost Pack - 9.0.14 (x64) (HKLM\...\{7755F4D3-1735-4CD7-B1B8-293F1822CD96}) (Version: 72.56.48826 - Microsoft Corporation) Hidden
Microsoft .NET AppHost Pack - 9.0.14 (x64_arm64) (HKLM\...\{DD425E5F-3B08-4EFB-B0E7-999FE0A11545}) (Version: 72.56.48826 - Microsoft Corporation) Hidden
Microsoft .NET AppHost Pack - 9.0.14 (x64_x86) (HKLM\...\{A8EBAB5C-7A03-4C95-BCDC-979E5D1C8D68}) (Version: 72.56.48826 - Microsoft Corporation) Hidden
Microsoft .NET Host - 6.0.14 (x86) (HKLM-x32\...\{364225D5-48A0-4CF2-9BDF-F72872EE07FF}) (Version: 48.59.55225 - Microsoft Corporation) Hidden
Microsoft .NET Host - 6.0.5 (x64) (HKLM\...\{F3B3A61B-DC16-429A-A260-DBAFE66741A9}) (Version: 48.23.40665 - Microsoft Corporation) Hidden
Microsoft .NET Host - 7.0.7 (x64) (HKLM\...\{E914E975-A0B1-49F7-AB71-28DACD495C44}) (Version: 56.31.61636 - Microsoft Corporation) Hidden
Microsoft .NET Host - 8.0.21 (x64) (HKLM\...\{72357746-B194-485C-A161-FB80F419DC20}) (Version: 64.84.40925 - Microsoft Corporation) Hidden
Microsoft .NET Host - 9.0.14 (x64) (HKLM\...\{1BDBCEB3-9590-47AF-91CA-C0F467760A5A}) (Version: 72.56.48826 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.14 (x86) (HKLM-x32\...\{C20F1D07-10B7-4B92-8FA0-DF8E58D6467F}) (Version: 48.59.55225 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.5 (x64) (HKLM\...\{3E6CCD41-6B96-47BD-8E1E-D7B593CEE976}) (Version: 48.23.40665 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 7.0.7 (x64) (HKLM\...\{62A9DE14-DB7A-41D9-9D7E-ED494E6FCBAF}) (Version: 56.31.61636 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.21 (x64) (HKLM\...\{B382D796-20D3-45DA-AB94-E98D99668B10}) (Version: 64.84.40925 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.8 (x64) (HKLM\...\{7FE24458-0796-4428-99C2-9A0F8DAB93CC}) (Version: 64.32.18380 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 9.0.14 (x64) (HKLM\...\{A5622318-9DBD-4A19-808D-CDA0929CA1DF}) (Version: 72.56.48826 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.14 (x86) (HKLM-x32\...\{101779FE-3FE4-420A-94DD-01B3ED37DE84}) (Version: 48.59.55225 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.5 (x64) (HKLM\...\{089A177D-98AE-4195-A115-D3C45613B875}) (Version: 48.23.40665 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 7.0.7 (x64) (HKLM\...\{ECCA3DB0-6DEF-42CD-A21A-F2F7B918FB59}) (Version: 56.31.61636 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.21 (x64) (HKLM\...\{EEFB29A5-3E62-4DCE-8527-0DF45D780126}) (Version: 64.84.40925 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.21 (x64) (HKLM-x32\...\{cf83f56a-4c10-4d97-9594-0764dfeb96e3}) (Version: 8.0.21.35325 - Microsoft Corporation)
Microsoft .NET Runtime - 8.0.8 (x64) (HKLM\...\{9ACB23DB-4D32-49ED-A5E3-F4E2F8D9D2AA}) (Version: 64.32.18380 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 9.0.14 (x64) (HKLM\...\{7D8CA9A1-03AD-4726-8FAD-91DE906279DE}) (Version: 72.56.48826 - Microsoft Corporation) Hidden
Microsoft .NET SDK 9.0.312 (x64) (HKLM-x32\...\{2bc246c1-704c-455e-b2be-a51402659f2a}) (Version: 9.3.1226.12004 - Microsoft Corporation)
Microsoft .NET Standard Targeting Pack - 2.1.0 (x64) (HKLM\...\{A7036CFB-B403-4598-85FF-D397ABB88173}) (Version: 24.0.28113 - Microsoft Corporation) Hidden
Microsoft .NET Targeting Pack - 9.0.14 (x64) (HKLM\...\{F51EFB18-E243-4626-966E-11E0847B3877}) (Version: 72.56.48826 - Microsoft Corporation) Hidden
Microsoft .NET Toolset 9.0.312 (x64) (HKLM\...\{AB20E512-EB28-4AF1-B055-3E6E2AF9C45B}) (Version: 36.11.56644 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 9.0.14 Shared Framework (x64) (HKLM\...\{05C6BB69-26B0-3DDE-94A6-E8EE704DC45A}) (Version: 9.0.14.26119 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 9.0.14 Targeting Pack (x64) (HKLM\...\{93AA5DC3-A927-3582-BADC-071D914460DB}) (Version: 9.0.14.26119 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 149.0.4022.80 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 149.0.4022.80 - Microsoft Corporation) Hidden
Microsoft GameInput (HKLM\...\{14EDF950-06B9-415F-862C-1D5DEC321AE6}) (Version: 3.3.221.0 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\OneDriveSetup.exe) (Version: 26.095.0519.0003 - Microsoft Corporation)
Microsoft Server Speech Platform Runtime (x64) (HKLM\...\{3B433087-E62E-4BF5-97F9-4AF6E1C2409C}) (Version: 11.0.7400.345 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.44.35211 (HKLM-x32\...\{d8bbe9f9-7c5b-42c6-b715-9ee898a2e515}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.44.35211 (HKLM-x32\...\{0b5169e3-39da-4313-808e-1f9c0407f3bf}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.44.35211 (HKLM\...\{86AB2CC9-08BD-4643-B0F9-F82D006D72FF}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.44.35211 (HKLM\...\{43B0D101-A022-48F4-9D04-BA404CEB1D53}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.44.35211 (HKLM-x32\...\{C18FB403-1E88-43C8-AD8A-CED50F23DE8B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.44.35211 (HKLM-x32\...\{922480B5-CAEB-4B1B-AAA4-9716EFDCE26B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.14 (x86) (HKLM-x32\...\{0CA8F91E-EE14-4ED7-94A4-BAD16EA67D2F}) (Version: 48.59.55235 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.14 (x86) (HKLM-x32\...\{c31ad3df-16b7-41b3-81fa-7658cb450781}) (Version: 6.0.14.32124 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 6.0.5 (x64) (HKLM\...\{DE578B32-084A-49E7-8E55-6F58A37578C0}) (Version: 48.23.40699 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.5 (x64) (HKLM-x32\...\{0f711ee3-eb88-456d-acb4-c2ee31add211}) (Version: 6.0.5.31215 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 7.0.7 (x64) (HKLM\...\{593F16DC-C2D3-4740-ABD4-A171B4E32B06}) (Version: 56.31.61651 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 7.0.7 (x64) (HKLM-x32\...\{e875fc20-9a37-4344-b046-0bb037cb2d57}) (Version: 7.0.7.32525 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.8 (x64) (HKLM\...\{663E7053-3B36-4AE5-8223-234867FAEAE6}) (Version: 64.32.18376 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.8 (x64) (HKLM-x32\...\{33832ff3-5583-4b81-b270-d9fd42760e1a}) (Version: 8.0.8.33916 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 9.0.14 (x64) (HKLM\...\{8CE06646-49A6-427F-9155-5E1F50190E08}) (Version: 72.56.48819 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Targeting Pack - 9.0.14 (x64) (HKLM\...\{701F71AE-5DE0-410F-A621-55A232BC8E24}) (Version: 72.56.48819 - Microsoft Corporation) Hidden
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Microsoft.NET.Sdk.Android.Manifest-9.0.100 (x64) (HKLM\...\{76737228-5B3F-4431-9C02-BC3C1B25198B}) (Version: 35.0.7 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.Aspire.Manifest-8.0.100 (x64) (HKLM\...\{2E5C5364-621F-4F22-8B81-18524D6F0361}) (Version: 64.136.23253 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.iOS.Manifest-9.0.100 (x64) (HKLM\...\{736FFE9E-6571-4059-B73D-F97F07E9F98D}) (Version: 18.0.9617 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.MacCatalyst.Manifest-9.0.100 (x64) (HKLM\...\{393886C4-81D0-4CB7-BE11-B2B974BAE978}) (Version: 18.0.9617 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.macOS.Manifest-9.0.100 (x64) (HKLM\...\{16C48C75-42D8-4E6A-845B-233207524190}) (Version: 15.0.9617 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.Maui.Manifest-9.0.100 (x64) (HKLM\...\{3214CADE-AAED-4B9A-8927-49D866E2A758}) (Version: 9.0.0 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.tvOS.Manifest-9.0.100 (x64) (HKLM\...\{CF59BE56-B314-4B17-B3C2-8B7197681D56}) (Version: 18.0.9617 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Emscripten.Current.Manifest (x64) (HKLM\...\{AB59D4BA-BE3B-4C22-B984-AA9E065842D0}) (Version: 72.56.48675 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Emscripten.net6.Manifest (x64) (HKLM\...\{DA29E54E-9E8C-4DA4-9D78-A9024BE5876C}) (Version: 72.56.48675 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Emscripten.net7.Manifest (x64) (HKLM\...\{C6644939-33AC-4395-B668-402FD42BA3D7}) (Version: 72.56.48675 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Emscripten.net8.Manifest (x64) (HKLM\...\{1B9AD5AC-6636-4611-AFDD-E4FE9EC3B885}) (Version: 72.56.48675 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Mono.Toolchain.Current.Manifest (x64) (HKLM\...\{65ADB65C-239A-4B43-9580-4F3F5564E91C}) (Version: 72.0.48826 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Mono.Toolchain.net6.Manifest (x64) (HKLM\...\{2C405A91-A1AB-4A47-AC40-CD35C632E4CD}) (Version: 72.0.48826 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Mono.Toolchain.net7.Manifest (x64) (HKLM\...\{55DFE7C5-961B-4685-9561-ECA6E3C2ADB7}) (Version: 72.0.48826 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Mono.Toolchain.net8.Manifest (x64) (HKLM\...\{0EDAC286-5E7D-46E0-BCE5-8D71CBC0C1A0}) (Version: 72.0.48826 - Microsoft Corporation) Hidden
Microsoft_VC100_CRT_SP1_x64 (HKLM\...\{680EDA59-9266-44B4-949E-0C24F65DFF82}) (Version: 10.0.40219.1 - Nokia) Hidden
Microsoft_VC100_CRT_SP1_x86 (HKLM-x32\...\{E3B64CC5-C011-40C0-92BC-7316CD5E5688}) (Version: 10.0.40219.1 - Nokia) Hidden
Minecraft Launcher (HKLM-x32\...\{A26EF561-5945-46FD-8094-FA34E44D460F}) (Version: 2.0.0.0 - Mojang)
MKVcleaver 64 bit (HKLM\...\{2C9ACE67-EEDB-4DE6-8C62-11B4AC037D50}) (Version: 6.0.2 - Ilia Bakhmoutski (sheck))
MKVCleaver 64 bit (HKLM\...\{32886311-ABB4-45BE-8274-1F53641B2AC7}_is1) (Version: 0.8.0.0 - Ilia Bakhmoutski)
MKVToolNix 82.0.0 (64-bit) (HKLM-x32\...\MKVToolNix) (Version: 82.0.0 - Moritz Bunkus)
Movavi Video Converter 22 Premium (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Movavi Video Converter 22 Premium) (Version: 22.5.0 - Movavi)
MSI Afterburner 4.6.5 (HKLM-x32\...\Afterburner) (Version: 4.6.5 - MSI Co., LTD)
MSVC80_x64_v2 (HKLM\...\{4D668D4F-FAA2-4726-834C-31F4614F312E}) (Version: 1.0.3.0 - Nokia) Hidden
MSVC80_x86_v2 (HKLM-x32\...\{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}) (Version: 1.0.3.0 - Nokia) Hidden
MSVC90_x64 (HKLM\...\{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}) (Version: 1.0.1.2 - Nokia) Hidden
MSVC90_x86 (HKLM-x32\...\{AF111648-99A1-453E-81DD-80DBBF6DAD0D}) (Version: 1.0.1.2 - Nokia) Hidden
Nmap 7.95 (HKLM-x32\...\Nmap) (Version: 7.95 - Nmap Project)
Nokia Connectivity Cable Driver (HKLM-x32\...\{29373274-977E-413C-A4DE-DC0F8E80C429}) (Version: 7.1.172.0 - Nokia)
Nokia PC Suite (HKLM-x32\...\{866C4563-ED53-43F3-A29D-8BEE2BD1BA3C}) (Version: 7.1.180.94 - Nokia) Hidden
Nokia PC Suite (HKLM-x32\...\Nokia PC Suite) (Version: 7.1.180.94 - Nokia)
Nokia Suite (HKLM-x32\...\{0C808377-8C23-44ED-9016-05F42E6D4900}) (Version: 3.8.30.0 - Nokia) Hidden
Nokia Suite (HKLM-x32\...\Nokia Suite) (Version: 3.8.30.0 - Nokia)
NordUpdater (HKLM\...\{6E35DB82-3D19-4DD6-B8CB-F082815FDE18}_is1) (Version: 1.5.0.1028 - Nord Security)
NordVPN (HKLM\...\{19465C24-3D5D-4327-B99F-3CC0A1D38151}_is1) (Version: 7.31.8.0 - Nord Security)
Novabench (HKLM\...\{33CB129E-2220-4858-AA71-4CE4CD7792CA}) (Version: 5.4.1 - Novabench Inc.)
Npcap (HKLM-x32\...\NpcapInst) (Version: 1.79 - Nmap Project)
NVIDIA PhysX (HKLM-x32\...\{B455E95A-B804-439F-B533-336B1635AE97}) (Version: 9.14.0702 - NVIDIA Corporation)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Opera GX Stable 132.0.5905.43 (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Opera GX 132.0.5905.43) (Version: 132.0.5905.43 - Opera Software)
Overwolf (HKLM-x32\...\Overwolf) (Version: 0.292.1.1 - Overwolf Ltd.)
Paltalk (HKLM-x32\...\Paltalk) (Version: - )
Patriot Viper DRAM RGB (HKLM\...\{1F9C282E-CCB4-4D8E-A5CB-7B74DFCD8C95}) (Version: 1.0.9.8 - Patriot Memory) Hidden
Patriot Viper DRAM RGB (HKLM-x32\...\{55993b50-5bec-47c8-8b2b-1aecad927e48}) (Version: 1.0.9.8 - Patriot Memory) Hidden
Patriot Viper M2 SSD RGB (HKLM\...\{8B4C0A3D-C135-4E1F-98D8-3926494B4D61}) (Version: 1.1.0.3 - Patriot Memory) Hidden
Patriot Viper M2 SSD RGB (HKLM-x32\...\{6e0eff60-c502-43bb-8f56-360ca07e73d9}) (Version: 1.1.0.3 - Patriot Memory) Hidden
PC Building Simulator 2 MULTi10 - ElAmigos version 1.14.02 (HKLM-x32\...\{DE7FDD1D-071F-4771-B811-95A48B3072FB}_is1) (Version: 1.14.02 - Spiral House)
PC Connectivity Solution (HKLM-x32\...\{6D01D1B1-17BD-4F10-BB11-F08F0C47D42B}) (Version: 12.0.109.0 - Nokia)
Pi Network 0.5.4 (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\375fce00-6280-59a8-8dfe-c557d5fd3e90) (Version: 0.5.4 - Socialchain Inc.)
Plane Arcade (HKLM-x32\...\Plane Arcade) (Version: - 3D Games Development)
PlanetVPN-2.10.30.68 (HKLM-x32\...\{33eecf4f-167f-4fa6-9e3e-5a4be965965c}_is1) (Version: 2.10.30.68 - PlanetVPN)
PlaytestCloud (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\PlaytestCloud) (Version: 3.16.0 - PlaytestCloud)
PSPad editor (HKLM\...\PSPad editor 64bit_is1) (Version: 5.0.7.775 - Jan Fiala)
PureVPN (HKLM-x32\...\{c017a6e5-ca99-4e7e-b23d-66fb702e4fbf}) (Version: 14.7.0.13 - ) Hidden
Python 3.13.1 (64-bit) (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\{1abbd55d-059a-4d1e-bdf1-35bb74697f5a}) (Version: 3.13.1150.0 - Python Software Foundation)
Python 3.13.1 Add to Path (64-bit) (HKLM\...\{95338D2D-2A7C-4C57-ABC4-39FF8568C2FF}) (Version: 3.13.1150.0 - Python Software Foundation) Hidden
Python 3.13.1 Core Interpreter (64-bit) (HKLM\...\{B7C30E07-E007-43ED-A9E1-EEDA7F57C8BC}) (Version: 3.13.1150.0 - Python Software Foundation) Hidden
Python 3.13.1 Development Libraries (64-bit) (HKLM\...\{FE9B3181-7FDD-4F6A-855A-305940D9A6E8}) (Version: 3.13.1150.0 - Python Software Foundation) Hidden
Python 3.13.1 Documentation (64-bit) (HKLM\...\{29EEEBD6-F97B-4274-A640-FD8715025124}) (Version: 3.13.1150.0 - Python Software Foundation) Hidden
Python 3.13.1 Executables (64-bit) (HKLM\...\{8AFC9846-E7A8-4817-93FD-3542456A3E52}) (Version: 3.13.1150.0 - Python Software Foundation) Hidden
Python 3.13.1 pip Bootstrap (64-bit) (HKLM\...\{2BB3559A-6DFD-453E-8B7B-E6166958D099}) (Version: 3.13.1150.0 - Python Software Foundation) Hidden
Python 3.13.1 Standard Library (64-bit) (HKLM\...\{29A3DBE6-A3D3-42C9-9338-A321F61C897A}) (Version: 3.13.1150.0 - Python Software Foundation) Hidden
Python 3.13.1 Tcl/Tk Support (64-bit) (HKLM\...\{C6718DB8-8965-4EE7-A056-1AA8F3836208}) (Version: 3.13.1150.0 - Python Software Foundation) Hidden
Python 3.13.1 Test Suite (64-bit) (HKLM\...\{7A5D8A6D-A0A9-4459-88EF-33C91DAFB0C2}) (Version: 3.13.1150.0 - Python Software Foundation) Hidden
Python Launcher (HKLM-x32\...\{7102CAE5-270C-4E81-AC25-27699156D8AE}) (Version: 3.13.1150.0 - Python Software Foundation)
r2modman 3.1.57 (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\ac231ef6-6414-5f8d-b36f-3b57705721dd) (Version: 3.1.57 - ebkr)
Razer Synapse (HKLM-x32\...\Razer Synapse) (Version: 3.10.0315.031117 - Razer Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.50.511.2021 - Realtek)
Riot Client (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Riot Game Riot_Client.) (Version: - Riot Games, Inc)
Riot Vanguard (HKLM\...\Riot Vanguard) (Version: - Riot Games, Inc.)
RivaTuner Statistics Server 7.3.4 (HKLM-x32\...\RTSS) (Version: 7.3.4 - Unwinder)
Roblox Player for micha (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\roblox-player) (Version: - Roblox Corporation)
Roblox Studio for micha (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\roblox-studio) (Version: - Roblox Corporation)
Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.106.2874 - Rockstar Games)
Rockstar Games SDK (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.4.0.194 - Rockstar Games)
ROG Live Service (HKLM\...\{2D87BFB6-C184-4A59-9BBE-3E20CE797631}) (Version: 3.5.6.0 - ASUSTek COMPUTER INC.)
ROGFontInstaller (HKLM\...\{605108C1-153E-43D8-8A67-7CE326B00ECA}) (Version: 1.0.0 - ASUS)
Rollercoin (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\4966a9b04c347a68a3da48fb5fae3aee) (Version: 1.0 - BraveSoftware\Brave-Browser)
STAR WARS™ Battlefront™ II (HKLM-x32\...\{8a882ce0-0c0b-4eb2-850c-28ebadab4f50}) (Version: 1.1.8.16162 - Electronic Arts)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Steel Hunters (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\4219147420) (Version: - Wargaming.net)
Streamlabs Desktop 1.15.1 (HKLM\...\029c4619-0385-5543-9426-46f9987161d9) (Version: 1.15.1 - General Workings, Inc.)
Subtitle Edit (HKLM\...\SubtitleEdit_is1) (Version: 4.0.11.0 - Nikse)
Surfshark (HKLM\...\{46E0D35D-2D6C-4585-A1F3-7EB73DCC6AF6}) (Version: 5.16.0999 - Surfshark) Hidden
Surfshark (HKLM\...\Surfshark 5.16.0999) (Version: 5.16.0999 - Surfshark)
TeamSpeak (HKLM\...\{EE883F28-D7AF-48E5-87B6-1F59D856362F}) (Version: 5.0.0 - TeamSpeak)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.6.2 - TeamSpeak Systems GmbH)
Telegram Desktop (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 6.8.2 - Telegram FZ-LLC)
Time Adjuster STANDARD 3.1 (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\TimeAdjuster) (Version: - IrekSoftware.com)
TurtleWoW (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\TurtleWoW) (Version: 2.2.7 - turtle-wow)
Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 153.1.11069 - Ubisoft)
UE Prerequisites (x64) (HKLM\...\{C4175120-313E-467B-AAA7-825979CBAEE7}) (Version: 1.0.20.0 - Epic Games, Inc.) Hidden
UE Prerequisites (x64) (HKLM-x32\...\{b24cae82-bb64-4ad2-820a-dc2c4031c914}) (Version: 1.0.20.0 - Epic Games, Inc.) Hidden
Universal Holtek RGB DRAM (HKLM\...\{826388E4-E31F-4514-948B-3BB954FB3EAF}) (Version: 1.0.0.7 - PD) Hidden
Universal Holtek RGB DRAM (HKLM-x32\...\{9a732423-e2f4-47d0-87ab-ef745c7dba69}) (Version: 1.0.0.7 - PD) Hidden
V380 (HKLM-x32\...\{09BA00ED-4332-42BA-BCC7-2B00563A36E5}_is1) (Version: 2.0.4 - M@cro-video Technologies Co.)
VALORANT (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Riot Game valorant.live) (Version: - Riot Games, Inc)
VideoPlayTool 4.0.3.1 (HKLM-x32\...\VideoPlayTool) (Version: 4.0.3.1 - )
VLC media player (HKLM\...\VLC media player) (Version: 3.0.21 - VideoLAN)
Voicemod (HKLM\...\{FE519A29-8B15-47C4-BCD6-A513277DC26F}_is1) (Version: 1.3.0 - Voicemod Inc., Sucursal en España)
VPNGame 4.0.9 (HKLM-x32\...\3aaf459b-cb56-5f30-8941-e520cc78ea0a) (Version: 4.0.9 - VPNGame)
Wargaming.net Game Center (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Wargaming.net Game Center) (Version: 25.7.0.1174 - Wargaming.net)
WD_BLACK AN1500 (HKLM\...\{085E2365-0A70-4230-B664-02D5E4FE7E9C}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
WD_BLACK AN1500 (HKLM-x32\...\{e42c5874-37b0-4977-9e8d-70bf006e1f76}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
webOS Dev Manager (HKLM\...\{BB9B508F-6C9C-4F28-9534-499BA22B632F}) (Version: 1.13.3 - webosbrew)
Windows Subsystem for Linux (HKLM\...\{4D1F0C57-B154-4968-81B8-C8CA343B7998}) (Version: 2.4.11.0 - Microsoft Corporation) Hidden
WinRAR 6.24 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.24.0 - win.rar GmbH)
Wondershare Filmora 14(Build 14.3.14.11421) (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Wondershare Filmora 14_is1) (Version: - Wondershare Software)
Wondershare Helper Compact 2.6.0 (HKLM-x32\...\{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Version: 2.6.0 - Wondershare)
Xerox WorkCentre 6015B (HKLM-x32\...\{E16CF080-B932-4BA1-93FF-4021096F006C}) (Version: 1.009.00 - Xerox) Hidden
Xerox WorkCentre 6015B (HKLM-x32\...\InstallShield_{E16CF080-B932-4BA1-93FF-4021096F006C}) (Version: 1.009.00 - Xerox)
YKB 3400 PANZER (HKLM-x32\...\YKB 3400 PANZER) (Version: V1.05n - FAST CR a.s.)
Packages:
=========
Adobe Acrobat Reader -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Assets [2026-06-12] ()
AMD Radeon Software -> C:\Program Files\AMD\CNext\CNext [2025-08-07] (Advanced Micro Devices Inc.)
Armoury Crate -> C:\Program Files\ASUS\AacAmbientHal [2026-06-21] (Sparse Package)
Armoury Crate -> C:\Program Files\WindowsApps\B9ECED6F.ArmouryCrate_6.5.7.0_x64__qmba6cd70vzyy [2026-05-17] (ASUSTeK COMPUTER INC.)
AURA Creator -> C:\Program Files\WindowsApps\B9ECED6F.AURACreator_4.5.4.0_x64__qmba6cd70vzyy [2026-05-19] (ASUSTeK COMPUTER INC.)
Auto Clicker for Windows -> C:\Program Files\WindowsApps\2420ShazApp.AutoClickerforWindows_1.2.2.0_x64__1c69h7y6sr26m [2025-10-19] (ShazApp)
ChatGPT -> C:\Program Files\WindowsApps\OpenAI.ChatGPT-Desktop_1.2026.133.0_x64__2p2nqsd0c76g0 [2026-05-17] (OpenAI) [Startup Task]
Malwarebytes Anti-Malware -> C:\Program Files\Malwarebytes\Anti-Malware [2026-06-14] ()
Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2024-01-11] (Microsoft Corp.)
Microsoft.AIFabric.CBS.1.6 -> C:\WINDOWS\SystemApps\Microsoft.AIFabric.CBS.1.6_8wekyb3d8bbwe [2026-06-10] (Microsoft Corporation)
Minecraft Launcher -> C:\Program Files\WindowsApps\Microsoft.4297127D64EC6_2.6.2.0_x64__8wekyb3d8bbwe [2026-05-08] (Microsoft Studios)
Movie Maker - FREE -> C:\Program Files\WindowsApps\21336V3TApps.MovieMaker-FREE_3.11.1.0_x64__bzg06mxvgh4fa [2026-06-19] (AI Photo Editor Lab)
MyASUS -> C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.66.0_x64__qmba6cd70vzyy [2026-05-01] (ASUSTeK COMPUTER INC.) [Startup Task]
Record Screen - Video & Audio Recorder -> C:\Program Files\WindowsApps\21336V3TApps.ScreenRecorder-FREE_1.3.1.0_x64__bzg06mxvgh4fa [2026-04-01] (AI Photo Editor Lab)
SpotifyAB.SpotifyMusic -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0 [2026-06-16] (Spotify AB) [Startup Task]
WinAppRuntime.Singleton -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Singleton_8002.2.0.0_x64__8wekyb3d8bbwe [2026-06-19] (Microsoft Corp.)
Windows App Runtime DDLM 4000.1049.117.0-x6 -> C:\Program Files\WindowsApps\Microsoft.WinAppRuntime.DDLM.4000.1049.117.0-x6_4000.1049.117.0_x64__8wekyb3d8bbwe [2026-02-23] (Microsoft Corporation)
WinRAR -> C:\Program Files\WinRAR [2024-01-05] (win.rar GmbH)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{14100442-9664-1407-2647-000000000000}\localserver32 -> "C:\Users\micha\AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{4e6f7264-5650-4e00-0000-000000000000}\localserver32 -> C:\Program Files\NordVPN\NordVPN.exe (nordvpn s.a. -> nordvpn S.A.)
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{73F8144D-FFD8-4496-B65E-4D756FF689FE}\localserver32 -> "c:\program files (x86)\bytedance\douyin\7.3.0\tray\douyin_tray.exe" ----AppNotificationActivated: => No File
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{BEA218D2-6950-497B-9434-61683EC065FE}\InprocServer32 -> C:\Users\micha\AppData\Local\Programs\Python\Launcher\pyshellext.amd64.dll (Python Software Foundation -> Python Software Foundation)
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{ED90173A-3B4C-4E7E-B9CF-79714425D4B5}\InprocServer32 -> C:\Program Files\PSPad editor\pspshellx64.dll () [File not signed]
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2026-06-08] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers1: [ContextMenuHandlerFilmora] -> {5F542218-AF8A-4CF8-8ACA-DF63B73C528D} => C:\Windows\system32\FilmoraContextMenu.dll [2025-02-07] () [File not signed]
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2026-06-06] (Malwarebytes Inc -> Malwarebytes)
ContextMenuHandlers4: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => -> No File
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2026-06-06] (Malwarebytes Inc -> Malwarebytes)
ContextMenuHandlers6: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => -> No File
ContextMenuHandlers1_S-1-5-21-756127909-4058986209-260929036-1001: [EditWithPSPad] -> {ED90173A-3B4C-4E7E-B9CF-79714425D4B5} => C:\Program Files\PSPad editor\pspshellx64.dll [2014-11-02] () [File not signed]
==================== Codecs (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\system32\rtvcvfw64.dll [246272 2012-09-28] () [File not signed]
HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\SysWOW64\rtvcvfw32.dll [247296 2012-09-28] () [File not signed]
HKLM\...\Drivers32-x32: [vidc.XVID] => xvidvfw.dll
HKLM\...\Drivers32-x32: [VIDC.VP80] => vp8vfw.dll
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
Shortcut: C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Massive\Massive.lnk -> C:\Users\micha\Programs\Massive\RunMassiveStartMenuScript.bat ()
ShortcutWithArgument: C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Web Applications\_crx_mpbdhnpafnokpojekbkdnbfchkjahdnf\Bolt Food.lnk -> C:\Program Files\BraveSoftware\Brave-Browser\Application\chrome_proxy.exe (Brave Software, Inc.) -> --profile-directory=Default --app-id=mpbdhnpafnokpojekbkdnbfchkjahdnf
ShortcutWithArgument: C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Brave\Bolt Food.lnk -> C:\Program Files\BraveSoftware\Brave-Browser\Application\chrome_proxy.exe (Brave Software, Inc.) -> --profile-directory=Default --app-id=mpbdhnpafnokpojekbkdnbfchkjahdnf
ShortcutWithArgument: C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Brave\Rollercoin.lnk -> C:\Program Files\BraveSoftware\Brave-Browser\Application\chrome_proxy.exe (Brave Software, Inc.) -> --profile-directory=Default --app-id=mckfidonbdljlhdmdakihaildpbgbplb
==================== Loaded Modules (Whitelisted) =============
2026-05-17 17:14 - 2025-12-31 10:23 - 000367616 _____ () [File not signed] \\?\C:\Program Files (x86)\ASUS\ArmouryDevice\resources\app.asar.unpacked\node_modules\@img\sharp-win32-ia32\lib\sharp-win32-ia32.node
2025-02-15 23:10 - 2024-09-29 15:45 - 000137728 _____ () [File not signed] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\CBSCreateVC.dll
2025-02-15 23:10 - 2024-09-29 15:45 - 001506304 _____ () [File not signed] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\DAQExp.dll
2024-08-05 14:46 - 2024-08-05 14:46 - 000874496 _____ () [File not signed] C:\Program Files (x86)\Steam\steamapps\common\Half-Life\chromehtml.dll
2024-08-05 14:47 - 2024-08-05 14:47 - 000071680 _____ () [File not signed] C:\Program Files (x86)\Steam\steamapps\common\Half-Life\mssmp3.asi
2024-08-05 14:47 - 2024-08-05 14:47 - 000153088 _____ () [File not signed] C:\Program Files (x86)\Steam\steamapps\common\Half-Life\mssvoice.asi
2024-12-01 12:27 - 2024-12-01 12:27 - 002024448 _____ () [File not signed] C:\Program Files (x86)\Steam\steamapps\common\Half-Life\SDL2.dll
2024-12-01 12:28 - 2024-12-01 12:28 - 000027136 _____ () [File not signed] c:\program files (x86)\steam\steamapps\common\half-life\valve\cl_dlls\particleman.dll
2025-02-23 12:46 - 2025-10-22 20:09 - 003001344 _____ () [File not signed] C:\Users\micha\AppData\Local\Programs\pi-network-desktop\ffmpeg.dll
2025-02-23 12:46 - 2025-10-22 20:09 - 000493056 _____ () [File not signed] C:\Users\micha\AppData\Local\Programs\pi-network-desktop\libegl.dll
2025-02-23 12:46 - 2025-10-22 20:09 - 008019968 _____ () [File not signed] C:\Users\micha\AppData\Local\Programs\pi-network-desktop\libglesv2.dll
2025-02-23 12:46 - 2025-10-22 20:09 - 005577728 _____ () [File not signed] C:\Users\micha\AppData\Local\Programs\pi-network-desktop\vk_swiftshader.dll
2023-04-07 16:49 - 2023-04-07 16:49 - 000061928 _____ (Eyeware Tech SA -> ) [File not signed] C:\Program Files\AMD\AMD Privacy View\ewvcam\APV\x64\eyeware_vcam.dll
2012-06-26 14:08 - 2012-06-26 14:08 - 000026624 _____ (Nokia) [File not signed] C:\Program Files (x86)\Nokia\Nokia PC Suite 7\Lang\PhoneBrowser_cze.nlr
2012-06-26 12:58 - 2012-06-26 12:58 - 001262592 _____ (Nokia) [File not signed] C:\Program Files (x86)\Nokia\Nokia PC Suite 7\NGSCM64.DLL
2012-06-26 14:08 - 2012-06-26 14:08 - 000572928 _____ (Nokia) [File not signed] C:\Program Files (x86)\Nokia\Nokia PC Suite 7\Resource\PhoneBrowser_Nokia.ngr
2024-08-05 14:46 - 2024-08-05 14:46 - 000446976 _____ (RAD Game Tools, Inc.) [File not signed] C:\Program Files (x86)\Steam\steamapps\common\Half-Life\mss32.dll
2024-01-12 16:05 - 2026-03-24 14:58 - 000139776 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\downloadsbatch.dll
2024-01-12 16:05 - 2026-03-24 15:00 - 004432384 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\downloadsbt.dll
2026-05-10 12:32 - 2026-03-24 14:59 - 000138752 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\downloadsfragments.dll
2024-01-12 16:05 - 2026-03-24 15:00 - 000119808 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\downloadsjsp.dll
2024-01-12 16:05 - 2026-03-24 15:00 - 000249344 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\downloadsm3u.dll
2024-01-12 16:05 - 2026-03-24 15:00 - 000718336 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\downloadsms.dll
2024-01-12 16:05 - 2026-03-24 14:59 - 001174528 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\downloadswww.dll
2024-01-12 16:05 - 2026-03-24 14:38 - 000044544 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\logger.dll
2024-01-12 16:05 - 2026-03-24 14:41 - 000249344 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\quazip.dll
2024-01-12 16:05 - 2026-03-24 14:57 - 000822272 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\vmsclshared.dll
2024-01-12 16:05 - 2026-03-24 14:44 - 000038400 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\winunivappfeatures.dll
2026-05-10 12:32 - 2021-10-06 16:30 - 000029696 _____ (The ICU Project) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\icuuc.dll
2026-05-10 12:32 - 2025-06-11 13:54 - 004853760 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\libcrypto-3-x64.dll
2026-05-10 12:32 - 2025-06-11 13:54 - 001173504 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\libssl-3-x64.DLL
2025-02-15 23:10 - 2024-09-29 15:45 - 000708096 _____ (Wondershare) [File not signed] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\CBSProducstInfo.dll
2011-03-23 12:20 - 2011-03-23 12:20 - 000285696 _____ (Xerox) [File not signed] C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmnet.dll
==================== Alternate Data Streams (Whitelisted) ========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\ProgramData\mntemp:8EAD8B3507 [3442]
AlternateDataStreams: C:\ProgramData\tyvfcquz.wxt:B63721167D [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk:BE32D07BC5 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FACEIT AC.lnk:550995E265 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Novabench 5.lnk:B68549C808 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Streamlabs Desktop.lnk:578370639A [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk:F208FC6732 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak.lnk:DBB58A0286 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\V380.lnk:942A4CABE6 [3442]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [5646]
==================== Safe Mode (Whitelisted) ==================
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2022-05-07 07:24 - 2026-06-20 21:20 - 000000318 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1 localhost
109.94.209.70 fitgirlrepacks.in # Fake FitGirl site
109.94.209.70 www.fitgirlrepacks.in # Fake FitGirl site
109.94.209.70 fitgirlrepacks.co # Fake FitGirl site
109.94.209.70 fitgirl-repacks.cc # Fake FitGirl site
2025-03-05 12:25 - 2026-06-20 11:18 - 000000498 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics
172.26.32.1 Petr.mshome.net # 2031 6 4 19 9 18 41 271
41
172.26.32.1 Petr.mshome.net # 2031 5 4 1 8 50 46 460
==================== Network ===========================
(Currently there is no automatic fix for this section.)
DNS Servers: 192.168.1.1
Windows Firewall is enabled.
Network Binding:
=============
NordLynx: NordLynx Tunnel -> wireguard.sys
Ethernet: Realtek Gaming 2.5GbE Family Controller -> rt25cx21x64.sys
Síťové připojení Bluetooth: Bluetooth Device (Personal Area Network) -> bthpan.sys
Wi-Fi: Intel(R) Wi-Fi 6 AX201 160MHz -> Netwtw10.sys
Připojení k místní síti: TAP-NordVPN Windows Adapter V9 -> tapnordvpn.sys
OpenVPN Data Channel Offload for NordVPN: OpenVPN Data Channel Offload -> ovpn-dco.sys
vms_vsf: Hyper-V Virtual Switch Extension Filter
INSECURE_NPCAP: Npcap Packet Driver (NPCAP)
NordLwf: NordVPN LightWeight Firewall
ms_l1vhlwf: Nested Network Virtualization
vms_vsp: Hyper-V Virtual Switch Extension Protocol
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\PC Connectivity Solution\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files (x86)\Razer Chroma SDK\bin;C:\Program Files\Razer Chroma SDK\bin;C:\Program Files (x86)\Razer\ChromaBroadcast\bin;C:\Program Files\Razer\ChromaBroadcast\bin;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files\dotnet\;C:\Users\micha\AppData\Local\Microsoft\WindowsApps;C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\WindowsApps;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-756127909-4058986209-260929036-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\micha\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\d1a6750c-8dea-4869-9654-1d409979ee88.png
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 5) (TamperProtectionSource: 2)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|E:\24122024\24122024\dControl.exe
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\StartupFolder: => "Perfect Privacy.lnk"
HKLM\...\StartupApproved\Run: => "DriverUpdUI.exe"
HKLM\...\StartupApproved\Run32: => "Launcher6015B"
HKLM\...\StartupApproved\Run32: => "YKB 3400 PANZER"
HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui"
HKLM\...\StartupApproved\Run32: => "PC Suite Tray"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\StartupFolder: => "hide.me VPN.lnk"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "BraveSoftware Update"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "Opera GX Stable"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_ED02E366447D09E4F124EF89B233D989"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "Discord"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "G-Menu"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "com.blitz.app"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "Free Download Manager"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "RiotClient"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "uTorrent"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "PaltalkLauncher"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "Windscribe"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "ProtonVPN"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "CyberGhost"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "PlanetVPN"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "NordVPN"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "Battle.net"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "EADM"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "Wargaming.net Game Center"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "IO Auto Clicker"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "Surfshark"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "btweb"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "VoicemodV3"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "NokiaSuite.exe"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "Overwolf"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "ut"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{279F621A-B779-4DA7-AD46-AE5C76540507}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25198.1001.3811.7774_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{E08F3F1A-D227-4D4A-8788-75F27DE1128D}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25198.1001.3811.7774_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{BA606EBB-ACA7-464E-89D4-A356F7D7E95F}E:\battlefield 6 event\bf6event.exe] => (Allow) E:\battlefield 6 event\bf6event.exe => No File
FirewallRules: [TCP Query User{FBD4AD8B-A72E-4FAE-9B92-BA605D0FB6D9}E:\battlefield 6 event\bf6event.exe] => (Allow) E:\battlefield 6 event\bf6event.exe => No File
FirewallRules: [TCP Query User{88CF7637-1DFA-4F16-9D7B-3630ED57359E}C:\riot games\riot client\riotclientelectron\riot client.exe] => (Allow) C:\riot games\riot client\riotclientelectron\riot client.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [UDP Query User{9CA9FB52-5F7B-4127-A4A2-7D648BC290A9}C:\riot games\riot client\riotclientelectron\riot client.exe] => (Allow) C:\riot games\riot client\riotclientelectron\riot client.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [TCP Query User{A46B875F-A28C-460F-B7CE-1292E42C20CB}C:\g-menu\g-menu.exe] => (Block) C:\g-menu\g-menu.exe (TOP VICTORY ELECTRONICS (TAIWAN) CO., LTD. -> AOC)
FirewallRules: [UDP Query User{7A623E78-2293-48B8-8349-8122267F97F8}C:\g-menu\g-menu.exe] => (Block) C:\g-menu\g-menu.exe (TOP VICTORY ELECTRONICS (TAIWAN) CO., LTD. -> AOC)
FirewallRules: [TCP Query User{386E5117-D7C3-4CF5-9032-017E7B423828}C:\users\micha\appdata\roaming\bittorrent web\btweb.exe] => (Block) C:\users\micha\appdata\roaming\bittorrent web\btweb.exe => No File
FirewallRules: [UDP Query User{CAF064AD-F740-4F3A-BD93-254EBDBBA0A5}C:\users\micha\appdata\roaming\bittorrent web\btweb.exe] => (Block) C:\users\micha\appdata\roaming\bittorrent web\btweb.exe => No File
FirewallRules: [TCP Query User{5CB43197-7789-4AF5-8B61-EF54339BE0C1}C:\g-menu\resources\bin\g_menu.exe] => (Block) C:\g-menu\resources\bin\g_menu.exe (TOP VICTORY ELECTRONICS (TAIWAN) CO., LTD. -> Zeasn)
FirewallRules: [UDP Query User{07799B0B-368D-435F-96F4-CE14BEED5076}C:\g-menu\resources\bin\g_menu.exe] => (Block) C:\g-menu\resources\bin\g_menu.exe (TOP VICTORY ELECTRONICS (TAIWAN) CO., LTD. -> Zeasn)
FirewallRules: [TCP Query User{46A23AA3-D0C2-4102-A562-50A014E9590C}C:\users\micha\appdata\local\voicemodv3\app\last\voicemod.exe] => (Block) C:\users\micha\appdata\local\voicemodv3\app\last\voicemod.exe (VOICEMOD, INC. SUCURSAL EN ESPAÑA -> Voicemod Inc., Sucursal en España)
FirewallRules: [UDP Query User{FE8D1458-4D31-4C06-9EF2-01FD78BD1EF0}C:\users\micha\appdata\local\voicemodv3\app\last\voicemod.exe] => (Block) C:\users\micha\appdata\local\voicemodv3\app\last\voicemod.exe (VOICEMOD, INC. SUCURSAL EN ESPAÑA -> Voicemod Inc., Sucursal en España)
FirewallRules: [TCP Query User{FB891921-9AC7-454B-AEB3-C270990F8C40}C:\program files\bravesoftware\brave-browser\application\brave.exe] => (Allow) C:\program files\bravesoftware\brave-browser\application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [UDP Query User{E7D841BD-B7A2-414E-AA1D-BD6358E45FE0}C:\program files\bravesoftware\brave-browser\application\brave.exe] => (Allow) C:\program files\bravesoftware\brave-browser\application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [TCP Query User{15475545-4979-4595-B803-073922E0D13F}E:\sea of thieves\call of duty\content\cod.exe] => (Allow) E:\sea of thieves\call of duty\content\cod.exe => No File
FirewallRules: [UDP Query User{71031F81-EE69-4A14-8C9C-5AE66C0E3C42}E:\sea of thieves\call of duty\content\cod.exe] => (Allow) E:\sea of thieves\call of duty\content\cod.exe => No File
FirewallRules: [TCP Query User{8EDE6D18-C435-431A-8552-E7855E62A2C7}E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe] => (Allow) E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe => No File
FirewallRules: [UDP Query User{8D18AAD1-B496-4F5D-97BE-8DF5127BAF68}E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe] => (Allow) E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe => No File
FirewallRules: [TCP Query User{29CFFE07-C69D-4B38-8B37-CDA8FC3442B1}C:\program files (x86)\microsoft\edge\application\msedge.exe] => (Block) C:\program files (x86)\microsoft\edge\application\msedge.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{4EFCF67B-1FCA-418D-AAD6-8AFCE3EA947E}C:\program files (x86)\microsoft\edge\application\msedge.exe] => (Block) C:\program files (x86)\microsoft\edge\application\msedge.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{40D59B36-0865-495E-9708-710CA50F68DA}C:\users\micha\appdata\local\programs\opera gx\opera.exe] => (Block) C:\users\micha\appdata\local\programs\opera gx\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [UDP Query User{86BB23A4-F681-43BD-B3F1-D90F038E5E24}C:\users\micha\appdata\local\programs\opera gx\opera.exe] => (Block) C:\users\micha\appdata\local\programs\opera gx\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [{35A3ADD7-D167-4BEA-B3F1-0A88EF891CCC}] => (Allow) C:\Program Files (x86)\Steam\steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{D0EAF2A7-C8F1-4E9B-A2AD-A9C0C282D3CE}] => (Allow) C:\Program Files (x86)\Steam\steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{131E5D88-F4CC-4A8C-ADD0-88EAAF24FCB9}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{1E7BE9C4-0658-45E4-B65F-A85929E8B901}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [TCP Query User{1020EA32-7A2C-4C37-9D71-963B86C936F7}E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe] => (Block) E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe => No File
FirewallRules: [UDP Query User{C0D520F0-B762-490B-873D-D151DA181329}E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe] => (Block) E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe => No File
FirewallRules: [TCP Query User{974B5E9C-F3DC-49BB-955A-C2994803E1B1}C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe => No File
FirewallRules: [UDP Query User{3C8F5FBB-6F9F-464B-90C3-234A1ED944ED}C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe => No File
FirewallRules: [{E84C56EB-0377-4BF3-9DB9-785A2DAF4798}] => (Allow) C:\Users\micha\AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe => No File
FirewallRules: [{AADE2BAA-EF44-476F-A06C-BEBFAE7925FB}] => (Allow) D:\Call of duty modern warfare\Call of Duty\_retail_\cod22\cod22-cod.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{A53181A9-A488-48FD-BDCA-071B528DBD36}] => (Allow) D:\Call of duty modern warfare\Call of Duty\_retail_\cod22\codCrashHandler.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{97C5755C-F1E2-4C53-ACE9-DC5EA3147480}] => (Allow) D:\Call of duty modern warfare\Call of Duty\_retail_\cod23\cod23-cod.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{B0E47C93-CA7C-46A3-9C01-DE97B0BD7483}] => (Allow) D:\Call of duty modern warfare\Call of Duty\_retail_\cod23\codCrashHandler.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{36229AC4-5E75-4EE6-9F8D-8699B7F09557}] => (Allow) D:\Call of duty modern warfare\Call of Duty\_retail_\bootstrapper.exe (Activision Publishing Inc -> )
FirewallRules: [{8DEE1472-7D76-4D51-86AD-1EF4D31A030D}] => (Allow) D:\Call of duty modern warfare\Call of Duty\_retail_\bootstrapperCrashHandler.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{E34F81E8-BDBF-4123-B255-306D52378E80}] => (Allow) D:\Call of duty modern warfare\Call of Duty\_retail_\codCrashHandler.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{54664C03-C429-49DD-A4ED-7F9C33F4BBF2}] => (Allow) D:\Call of duty modern warfare\Call of Duty\_retail_\cod.exe (Activision Publishing Inc -> Activision)
FirewallRules: [TCP Query User{0670EDD1-9B02-4342-8360-761EB4B60763}D:\davinci\resolve.exe] => (Block) D:\davinci\resolve.exe => No File
FirewallRules: [UDP Query User{A9281C5A-67BA-44EE-91CD-3F30EF7C880B}D:\davinci\resolve.exe] => (Block) D:\davinci\resolve.exe => No File
FirewallRules: [TCP Query User{496800E3-14CC-453D-94F8-35DCDEB485D5}C:\program files (x86)\steam\steamapps\common\half-life\hl.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\half-life\hl.exe (Valve Corp. -> Valve)
FirewallRules: [UDP Query User{0682F5D5-5803-421F-AF0B-843A4659ABE7}C:\program files (x86)\steam\steamapps\common\half-life\hl.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\half-life\hl.exe (Valve Corp. -> Valve)
FirewallRules: [TCP Query User{077A134E-F3AF-4502-94BF-6F3A75AC063A}D:\worldwarz\en_us\client\bin\pc\wwzretailegs.exe] => (Allow) D:\worldwarz\en_us\client\bin\pc\wwzretailegs.exe (Saber Interactive) [File not signed]
FirewallRules: [UDP Query User{417C93BE-2AA9-4207-8614-49D83E8737C3}D:\worldwarz\en_us\client\bin\pc\wwzretailegs.exe] => (Allow) D:\worldwarz\en_us\client\bin\pc\wwzretailegs.exe (Saber Interactive) [File not signed]
FirewallRules: [{F873D22A-8197-497F-9730-3C660A093C3E}] => (Allow) D:\SteamLibrary\steamapps\common\Ready Or Not\Engine\Binaries\Win64\CrashReporter.exe => No File
FirewallRules: [{2E7AB9CD-A6C1-4429-86C0-62665E93CDE7}] => (Allow) D:\SteamLibrary\steamapps\common\Ready Or Not\Engine\Binaries\Win64\CrashReporter.exe => No File
FirewallRules: [TCP Query User{9E1C92D4-8B6C-47A5-98B0-9E6AC6B6E4AC}D:\wargaming.net\gamecenter\wgc.exe] => (Block) D:\wargaming.net\gamecenter\wgc.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [UDP Query User{789E23F4-9E7B-4C07-A5AC-5918455BB4BD}D:\wargaming.net\gamecenter\wgc.exe] => (Block) D:\wargaming.net\gamecenter\wgc.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [TCP Query User{B0F4BB22-0085-4901-B98F-B9F91693D452}D:\world_of_tanks_eu\win64\worldoftanks.exe] => (Block) D:\world_of_tanks_eu\win64\worldoftanks.exe => No File
FirewallRules: [UDP Query User{8BCC2B64-0E9C-4DF8-8046-3FFCDBF0DAE2}D:\world_of_tanks_eu\win64\worldoftanks.exe] => (Block) D:\world_of_tanks_eu\win64\worldoftanks.exe => No File
FirewallRules: [TCP Query User{020F479B-87E5-41C7-8447-D18C7F33A816}C:\program files\docker\docker\resources\com.docker.backend.exe] => (Allow) C:\program files\docker\docker\resources\com.docker.backend.exe => No File
FirewallRules: [UDP Query User{67B178AB-6448-49E0-BD89-D98101310F87}C:\program files\docker\docker\resources\com.docker.backend.exe] => (Allow) C:\program files\docker\docker\resources\com.docker.backend.exe => No File
FirewallRules: [TCP Query User{2EB13A60-1C78-40C4-9334-6298A013F7B0}C:\program files (x86)\gz systems\purevpn\purevpn.exe] => (Allow) C:\program files (x86)\gz systems\purevpn\purevpn.exe => No File
FirewallRules: [UDP Query User{6ED330CC-49FF-4524-B76C-E896E6D1B180}C:\program files (x86)\gz systems\purevpn\purevpn.exe] => (Allow) C:\program files (x86)\gz systems\purevpn\purevpn.exe => No File
FirewallRules: [{C098C10D-814B-4648-ADF7-9954388CC4EA}] => (Allow) LPort=31400
FirewallRules: [{1378EC31-F890-4B50-A6F8-82A762159FC9}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{2E6B8883-7DC3-492F-B7FF-55CDD663DC27}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{EE3F9BB2-6DA4-4DD3-92A5-CFE207EA9607}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{90AE84E6-AF25-48FF-8E87-CD9E51CE0C4D}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{E096663F-65FE-456F-8B8A-EFEE0C8A550C}] => (Allow) LPort=31401
FirewallRules: [{3AB4AC46-6E28-4F74-8692-ABC7BA295EBD}] => (Allow) LPort=31402
FirewallRules: [{BC434F6A-2664-41EE-B1A2-2E203C9435F3}] => (Allow) %ProgramFiles%\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{455F0D1D-A5E5-4115-B4A0-996B6C61C2D2}] => (Allow) LPort=31404
FirewallRules: [{1B37CC3B-0B21-46E1-95E8-FFEEB3585984}] => (Allow) LPort=31405
FirewallRules: [{36755F0E-BCD4-4EFE-98DA-3844CD2BEBAF}] => (Allow) LPort=31406
FirewallRules: [{DFA4CA03-6BB5-461A-A808-415652FF7198}] => (Allow) LPort=31407
FirewallRules: [{FE017E8C-0E1B-4BC9-B06B-09F4175203C5}] => (Allow) LPort=31408
FirewallRules: [{08B16306-7A96-4237-8B9F-AD84E2500744}] => (Allow) LPort=31409
FirewallRules: [TCP Query User{485C1239-0A7D-447F-89F0-5A6B7D077CAE}C:\users\micha\downloads\anydesk.exe] => (Allow) C:\users\micha\downloads\anydesk.exe => No File
FirewallRules: [UDP Query User{AD38CA56-2A23-4F12-96D6-A761894A58A3}C:\users\micha\downloads\anydesk.exe] => (Allow) C:\users\micha\downloads\anydesk.exe => No File
FirewallRules: [{F9E94027-57D5-48B7-A1DB-3F654D5989B6}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\Resolve.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [{FE8AB767-946E-4967-B4AA-60EE540B489F}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\bmdpaneld.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{6D4E5261-9947-4D17-840E-B1847B8BCC5F}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\DaVinciPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{A06E5BC3-6E5D-437F-8B44-283B7A96C3E3}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\JLCooperPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{A0F72178-EE18-49B2-BD02-2B6C0CEE8CAC}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\EuphonixPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{9E0B93F2-0DCA-48F9-AAE5-D47E2F251AEF}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\TangentPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{6245B822-0F08-47AD-8269-E0B68C04BC14}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\ElementsPanelDaemon.exe => No File
FirewallRules: [{899A0ADC-2443-481D-9918-85CE4365F64C}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\fuscript.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.)
FirewallRules: [TCP Query User{5105BEB2-54E5-40FC-AC1D-DC96B66C314D}C:\program files\blackmagic design\davinci resolve\resolve.exe] => (Block) C:\program files\blackmagic design\davinci resolve\resolve.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [UDP Query User{C5D6E8D9-0DAE-4D37-872D-B8B332970AA0}C:\program files\blackmagic design\davinci resolve\resolve.exe] => (Block) C:\program files\blackmagic design\davinci resolve\resolve.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [TCP Query User{90DEBF62-31CA-451B-ACC3-599A9BF3FA4F}C:\program files\blackmagic design\davinci resolve\fuscript.exe] => (Block) C:\program files\blackmagic design\davinci resolve\fuscript.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.)
FirewallRules: [UDP Query User{93EB184E-B075-471E-A677-4EB9F8E3688B}C:\program files\blackmagic design\davinci resolve\fuscript.exe] => (Block) C:\program files\blackmagic design\davinci resolve\fuscript.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.)
FirewallRules: [TCP Query User{C7AB7D83-23F3-4C95-A332-DA511934682A}C:\program files (x86)\steam\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe (Valve Corp. -> )
FirewallRules: [UDP Query User{6C35FEB8-A590-40F0-832D-04790D5ED2E2}C:\program files (x86)\steam\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe (Valve Corp. -> )
FirewallRules: [TCP Query User{DBB65758-0417-464E-899A-DAFF52017D76}C:\users\micha\appdata\local\programs\lsc_battletron\lsc_battletron.exe] => (Block) C:\users\micha\appdata\local\programs\lsc_battletron\lsc_battletron.exe (GitHub, Inc.) [File not signed]
FirewallRules: [UDP Query User{0A7C0E8F-4613-49C1-B4D4-80CBD936B8D5}C:\users\micha\appdata\local\programs\lsc_battletron\lsc_battletron.exe] => (Block) C:\users\micha\appdata\local\programs\lsc_battletron\lsc_battletron.exe (GitHub, Inc.) [File not signed]
FirewallRules: [TCP Query User{7D178FD3-D0E3-41B2-BF3B-AF5F6C7ED1D5}C:\users\micha\appdata\local\programs\blitz\blitz.exe] => (Block) C:\users\micha\appdata\local\programs\blitz\blitz.exe (Swift Media Entertainment, Inc. -> Blitz, Inc.)
FirewallRules: [UDP Query User{9DEFC1F0-A822-4C53-82FA-3386D4F012D2}C:\users\micha\appdata\local\programs\blitz\blitz.exe] => (Block) C:\users\micha\appdata\local\programs\blitz\blitz.exe (Swift Media Entertainment, Inc. -> Blitz, Inc.)
FirewallRules: [TCP Query User{7DAB56FD-A2C8-4E7E-8B25-2759214023E0}D:\schedule.i.v0.3.3f13\schedule i.exe] => (Block) D:\schedule.i.v0.3.3f13\schedule i.exe () [File not signed]
FirewallRules: [UDP Query User{ADA90415-CDAE-467F-A790-FD745E05CF77}D:\schedule.i.v0.3.3f13\schedule i.exe] => (Block) D:\schedule.i.v0.3.3f13\schedule i.exe () [File not signed]
FirewallRules: [TCP Query User{9366605A-B99A-4644-81D7-D1CE6FFFA14B}C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe] => (Allow) C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe => No File
FirewallRules: [UDP Query User{B1BD089E-C939-4484-9373-6473763A148B}C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe] => (Allow) C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe => No File
FirewallRules: [TCP Query User{6303E824-75A0-4962-981A-122A4D93EE1B}C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe] => (Block) C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe => No File
FirewallRules: [UDP Query User{9F7EB77E-BED0-493E-84C0-C44F9AC8D0E1}C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe] => (Block) C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe => No File
FirewallRules: [{43786D7A-2D09-4490-A4DF-84EBF56CFAC3}] => (Allow) E:\SteamLibrary\steamapps\common\Ghost Watchers\Ghost Watchers.exe () [File not signed]
FirewallRules: [{A0598503-B89F-470D-9894-765794B9A7BA}] => (Allow) E:\SteamLibrary\steamapps\common\Ghost Watchers\Ghost Watchers.exe () [File not signed]
FirewallRules: [TCP Query User{0003EB38-44C6-468A-B7AE-65025471798A}C:\program files (x86)\iriun webcam\iriunwebcam.exe] => (Allow) C:\program files (x86)\iriun webcam\iriunwebcam.exe (IriunWebcam) [File not signed]
FirewallRules: [UDP Query User{35B494A7-2C90-4D2B-A9C9-9E5084C547AF}C:\program files (x86)\iriun webcam\iriunwebcam.exe] => (Allow) C:\program files (x86)\iriun webcam\iriunwebcam.exe (IriunWebcam) [File not signed]
FirewallRules: [TCP Query User{D31EDD4E-6F1F-48F7-BF04-70624D5CD859}D:\football.life.simulator.early.access\football life simulator.exe] => (Block) D:\football.life.simulator.early.access\football life simulator.exe => No File
FirewallRules: [UDP Query User{415A3AFA-7F76-4442-B9A4-C3D630C920A9}D:\football.life.simulator.early.access\football life simulator.exe] => (Block) D:\football.life.simulator.early.access\football life simulator.exe => No File
FirewallRules: [TCP Query User{FC88C696-51DA-4C64-8193-66421996A2FE}D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe] => (Block) D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe => No File
FirewallRules: [UDP Query User{0C368F59-947E-43F0-8801-48D67EAEA95C}D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe] => (Block) D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe => No File
FirewallRules: [TCP Query User{1B413620-1991-4B9C-A665-08DE87CC761F}D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe] => (Block) D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe => No File
FirewallRules: [UDP Query User{78BE4651-1CCF-4BDB-B782-56D461028DA6}D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe] => (Block) D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe => No File
FirewallRules: [TCP Query User{9863FE5E-073C-4741-9835-2AF7609F2286}D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe] => (Block) D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe => No File
FirewallRules: [UDP Query User{3D1A32C3-C4B8-4BCB-918A-B1F55C7E3BA4}D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe] => (Block) D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe => No File
FirewallRules: [{E79F17D6-ED1E-4DE4-A3B2-4784365B01F1}] => (Allow) D:\SteamLibrary\steamapps\common\Delta Force\Launcher\df_launcher.exe => No File
FirewallRules: [{9EECD3EB-4F9B-46A7-975A-A6E28031CEA0}] => (Allow) D:\SteamLibrary\steamapps\common\Delta Force\Launcher\df_launcher.exe => No File
FirewallRules: [TCP Query User{27BA6085-CFC9-4437-9507-DA440ED57636}E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe] => (Allow) E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe => No File
FirewallRules: [UDP Query User{261BA844-0209-455B-8C8F-EDF6C567C0A0}E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe] => (Allow) E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe => No File
FirewallRules: [{619366B2-C57B-40E0-A55E-730090104413}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe => No File
FirewallRules: [TCP Query User{E66BF433-B841-40DD-B35F-2B0901D71BAE}C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe] => (Block) C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe => No File
FirewallRules: [UDP Query User{E26E2408-5876-4D03-941E-E996B41B9BFC}C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe] => (Block) C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe => No File
FirewallRules: [{17D4C8B3-53E8-4E4A-B51F-6221C67467A5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Phasmophobia\Phasmophobia.exe => No File
FirewallRules: [{BC8EFC50-5F78-4B9E-AEC7-F41F139F5A19}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Phasmophobia\Phasmophobia.exe => No File
FirewallRules: [TCP Query User{3AD948F4-1D6A-4220-9236-6B4A136B9F60}D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe] => (Block) D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe => No File
FirewallRules: [UDP Query User{78CA9D04-A3CD-4C1F-A96C-D66A66373624}D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe] => (Block) D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe => No File
FirewallRules: [{CDAD4C8E-D429-4F51-8219-15326AA59615}] => (Allow) E:\SteamLibrary\steamapps\common\Mafia The Old Country\MafiaTheOldCountry\Binaries\Win64\MafiaTheOldCountry.exe => No File
FirewallRules: [{5B2A4E1C-3EBA-4790-9E81-8F698209F775}] => (Allow) E:\SteamLibrary\steamapps\common\Mafia The Old Country\MafiaTheOldCountry\Binaries\Win64\MafiaTheOldCountry.exe => No File
FirewallRules: [{E455DDA3-6B10-4CD8-9B15-79F27AEF118A}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25198.1001.3811.7774_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{57D82175-B1D2-436F-9E26-BD181D301C9D}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25198.1001.3811.7774_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{CD70C673-7818-49C6-9CF9-EEEB637006D3}D:\minecraft launcher\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Block) D:\minecraft launcher\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe
FirewallRules: [UDP Query User{E1ACE06F-603F-45AA-8A44-1CF6F61404C5}D:\minecraft launcher\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Block) D:\minecraft launcher\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe
FirewallRules: [TCP Query User{57703199-0D81-4544-8510-A0E7198FA739}C:\users\micha\curseforge\minecraft\install\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe] => (Block) C:\users\micha\curseforge\minecraft\install\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe
FirewallRules: [UDP Query User{9F4EA80C-EE30-4386-B29F-5DF34F93393B}C:\users\micha\curseforge\minecraft\install\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe] => (Block) C:\users\micha\curseforge\minecraft\install\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe
FirewallRules: [TCP Query User{A4A2232E-09B6-4B68-ABFE-21D3D92500EE}C:\users\micha\curseforge\minecraft\install\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Block) C:\users\micha\curseforge\minecraft\install\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe
FirewallRules: [UDP Query User{C987D179-564D-4AD9-A726-C11ADE807F71}C:\users\micha\curseforge\minecraft\install\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Block) C:\users\micha\curseforge\minecraft\install\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe
FirewallRules: [{165EB7D2-AD07-4002-B6C4-899C7EE2460C}] => (Allow) C:\Riot Games\League of Legends\LeagueClient.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [{57805A5F-ADFC-487B-A528-EDFF0AC84FA2}] => (Allow) C:\Riot Games\League of Legends\LeagueClient.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [TCP Query User{D1E473FD-B060-488F-80C3-D6D8193264AA}D:\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{5823A439-B0A8-4EA9-B8E5-32EF320B5FC6}D:\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{07EF1D75-68FC-41DB-A091-6DF10AC0A70F}] => (Allow) E:\SteamLibrary\steamapps\common\Prologue Go Wayback! Open Beta\PrologueSteam.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{F7E1D146-A242-4AEA-B926-50DE2EB4DC95}] => (Allow) E:\SteamLibrary\steamapps\common\Prologue Go Wayback! Open Beta\PrologueSteam.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [TCP Query User{8A6879D1-1164-4F68-A485-E3F4E414578A}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{2FE76676-6D0D-420D-B6AA-67B9E850E335}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{EEA2D371-5330-4CD6-B706-8CF0D7FCE019}D:\dying light the beast\dying.light.the.beast.v1.2.0c-ofme\dying light the beast\ph_ft\work\bin\x64\dyinglightgame_thebeast_x64_rwdi.exe] => (Allow) D:\dying light the beast\dying.light.the.beast.v1.2.0c-ofme\dying light the beast\ph_ft\work\bin\x64\dyinglightgame_thebeast_x64_rwdi.exe (Techland S.A. -> Techland)
FirewallRules: [UDP Query User{79B95E69-31AB-4C1C-8196-CAAF2589F8FF}D:\dying light the beast\dying.light.the.beast.v1.2.0c-ofme\dying light the beast\ph_ft\work\bin\x64\dyinglightgame_thebeast_x64_rwdi.exe] => (Allow) D:\dying light the beast\dying.light.the.beast.v1.2.0c-ofme\dying light the beast\ph_ft\work\bin\x64\dyinglightgame_thebeast_x64_rwdi.exe (Techland S.A. -> Techland)
FirewallRules: [{4AC0DE93-9B8D-4C4E-A973-A067B23B40D7}] => (Allow) D:\SteamLibrary\steamapps\common\SILENT HILL f\SHf.exe (KONAMI) [File not signed]
FirewallRules: [{82440F4F-3F87-4376-8259-8E834A948ADE}] => (Allow) D:\SteamLibrary\steamapps\common\SILENT HILL f\SHf.exe (KONAMI) [File not signed]
FirewallRules: [{3C13005D-7C22-460E-9F11-B24FF973D611}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{4EE8469D-7EC0-448F-A8C0-8501C0B9D0A3}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{7BEE4023-F291-4C99-B33A-01E24EBC1C51}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{6C005D06-0310-443E-BBCD-75CAF18843C7}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{290704D3-0CC2-4D71-979B-F1CA9F506395}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{22C45E53-7783-457D-8631-9B93E843EA04}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{9B685567-0BD8-493F-8A7A-B69C753F4D67}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{E120767C-69AA-48C9-B7CE-F0DF19BDA670}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{54F3931C-F36B-4967-B571-3055503070DD}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{1436BFDB-005A-4492-86E6-33C854814629}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{55840764-D8F0-4244-AA08-6171D6F775B0}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALaunchHelper.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [TCP Query User{AE9FA2BF-853A-41E0-81CE-7A6044D0DF95}E:\battlefield 6\bf6.exe] => (Allow) E:\battlefield 6\bf6.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [UDP Query User{EB6FF99C-D4DE-4BA5-BC07-664149D323AE}E:\battlefield 6\bf6.exe] => (Allow) E:\battlefield 6\bf6.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [TCP Query User{ED1B53EB-1F37-4865-9AF7-DC72E73392D9}E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe] => (Allow) E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe => No File
FirewallRules: [UDP Query User{0D02FAD8-020B-4609-A000-1DEC57347CF5}E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe] => (Allow) E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe => No File
FirewallRules: [{690B7FE9-C96F-428E-9BB9-C59B68BEF82C}] => (Allow) E:\SteamLibrary\steamapps\common\Call of Duty HQ\bootstrapper.exe (Activision Publishing Inc -> )
FirewallRules: [{6D84AE58-667D-4B8E-9371-3C131F9ABB48}] => (Allow) E:\SteamLibrary\steamapps\common\Call of Duty HQ\bootstrapper.exe (Activision Publishing Inc -> )
FirewallRules: [{16D6A08B-937B-4708-8AB4-4E4C9E00E333}] => (Allow) E:\SteamLibrary\steamapps\common\Call of Duty HQ\cod.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{AFFE680B-51CC-4D7C-92F8-54A2B67D0988}] => (Allow) E:\SteamLibrary\steamapps\common\Call of Duty HQ\cod.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{58B00E54-E93F-458C-956D-2BF97A36628B}] => (Allow) E:\SteamLibrary\steamapps\common\The Finals\Discovery.exe (Embark Studios AB -> Embark Studios AB)
FirewallRules: [{6E979216-C250-497B-B4A4-6E8BF02F1501}] => (Allow) E:\SteamLibrary\steamapps\common\The Finals\Discovery.exe (Embark Studios AB -> Embark Studios AB)
FirewallRules: [TCP Query User{D1F56D54-D841-4DFF-86B5-B8D2ACA86627}C:\users\micha\curseforge\minecraft\install\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe] => (Block) C:\users\micha\curseforge\minecraft\install\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe
FirewallRules: [UDP Query User{CAB7C7E0-B5E0-4C2E-A155-1CEF8298E01B}C:\users\micha\curseforge\minecraft\install\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe] => (Block) C:\users\micha\curseforge\minecraft\install\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe
FirewallRules: [TCP Query User{87F04713-64C8-4079-ADE0-F7F3C85A72F8}E:\steamlibrary\steamapps\common\the finals\discovery\binaries\win64\discovery-d.exe] => (Allow) E:\steamlibrary\steamapps\common\the finals\discovery\binaries\win64\discovery-d.exe (Embark Studios AB -> Embark Studios AB)
FirewallRules: [UDP Query User{B9442780-716E-486A-9A3A-186A3D90D6AF}E:\steamlibrary\steamapps\common\the finals\discovery\binaries\win64\discovery-d.exe] => (Allow) E:\steamlibrary\steamapps\common\the finals\discovery\binaries\win64\discovery-d.exe (Embark Studios AB -> Embark Studios AB)
FirewallRules: [{E5E67892-710C-4DA6-BA79-6849AF11F890}] => (Allow) E:\SteamLibrary\steamapps\common\Shift At Midnight Demo\ShiftAtMidnight.exe () [File not signed]
FirewallRules: [{A76C8F88-AFD4-4A99-8102-CC8FB9B52398}] => (Allow) E:\SteamLibrary\steamapps\common\Shift At Midnight Demo\ShiftAtMidnight.exe () [File not signed]
FirewallRules: [{93C65364-076B-4653-93BA-3F74DB7B1E63}] => (Allow) E:\Battlefield 6\EAAntiCheat.GameServiceLauncher.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{271EF77A-EF22-4EA7-8EB4-95F10C8EDA3C}] => (Allow) E:\Battlefield 6\EAAntiCheat.GameServiceLauncher.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{ECDF86DE-6320-4383-A606-DBE79C07110D}] => (Allow) E:\Battlefield 6\SP\bf6.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [{05F47C7B-D6A0-409B-A307-9A964DB72EB2}] => (Allow) E:\Battlefield 6\SP\bf6.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [TCP Query User{49223C06-B8A3-408F-9F6D-73A2C0C54603}D:\geo.political.simulator.5.build.21132820\_start.exe] => (Block) D:\geo.political.simulator.5.build.21132820\_start.exe => No File
FirewallRules: [UDP Query User{651650A5-6458-41C0-8FC7-6D16FE172277}D:\geo.political.simulator.5.build.21132820\_start.exe] => (Block) D:\geo.political.simulator.5.build.21132820\_start.exe => No File
FirewallRules: [TCP Query User{8768545B-4649-4DF0-925E-893EA772158D}D:\bank.simulator.build.20501759\bank simulator.exe] => (Block) D:\bank.simulator.build.20501759\bank simulator.exe => No File
FirewallRules: [UDP Query User{52D4F417-1589-49BA-9BC6-DFB9B5B36477}D:\bank.simulator.build.20501759\bank simulator.exe] => (Block) D:\bank.simulator.build.20501759\bank simulator.exe => No File
FirewallRules: [{63542FC3-E15E-4ED1-AF10-E862EF306301}] => (Allow) E:\SteamLibrary\steamapps\common\MarvelRivals\MarvelRivals_Launcher.exe => No File
FirewallRules: [{F8AC2413-BE69-4BD4-99C7-7BE6F6E47E99}] => (Allow) E:\SteamLibrary\steamapps\common\MarvelRivals\MarvelRivals_Launcher.exe => No File
FirewallRules: [{EAD70F97-3314-4A03-B251-458142EE1BC2}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{D84589F5-EA0B-4652-AFA6-9C10743D3DBF}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{E28274D6-78F1-4F22-829D-045CBF96F166}] => (Allow) C:\Users\micha\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Limited)
FirewallRules: [{4FA36512-8925-4325-BBC4-7AC239BB5963}] => (Allow) C:\Users\micha\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Limited)
FirewallRules: [TCP Query User{D7566707-6ACB-473F-8391-D06B97EDC2FE}D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe] => (Block) D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe => No File
FirewallRules: [UDP Query User{A21FAB12-608A-4C75-B6B7-F758ADAD27F2}D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe] => (Block) D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe => No File
FirewallRules: [{5FB88A17-74A6-413E-8F69-A3C0F52C724F}] => (Allow) D:\SteamLibrary\steamapps\common\Detroit Become Human\DetroitBecomeHuman.exe () [File not signed]
FirewallRules: [{E1ED6E99-E359-4A96-A024-3F662BDBA916}] => (Allow) D:\SteamLibrary\steamapps\common\Detroit Become Human\DetroitBecomeHuman.exe () [File not signed]
FirewallRules: [TCP Query User{717727EE-545A-4CBC-B830-E15494BA6714}C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe] => (Block) C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe => No File
FirewallRules: [UDP Query User{67C34866-CEBB-45AA-9493-945586A2E767}C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe] => (Block) C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe => No File
FirewallRules: [TCP Query User{A302FDF6-D4FB-4BD2-93D3-D20A7581706D}D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe] => (Block) D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe => No File
FirewallRules: [UDP Query User{A24B9A21-36B4-4BE5-846C-0C355D0CD68A}D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe] => (Block) D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe => No File
FirewallRules: [{9FAA9656-B894-4090-9C6C-1E1744836F80}] => (Allow) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [{56E477B2-F75E-45A3-B06A-DC0A7E425435}] => (Allow) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [{F0A0F709-9870-4B3A-86CF-E8E51B01274F}] => (Block) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [{D7FACDDF-8015-4085-A0FE-A1AC3CD68917}] => (Block) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [{4CD29641-FCF1-4EF7-BB6E-5B469239B83F}] => (Allow) C:\Program Files (x86)\Overwolf\0.292.1.1\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [{E1527F55-0A34-4D19-BFFB-591DF3B7DE56}] => (Allow) C:\Program Files (x86)\Overwolf\0.292.1.1\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [TCP Query User{EE57F4D8-EDA0-4015-AEFE-D5A211453CA8}D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe] => (Block) D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe => No File
FirewallRules: [UDP Query User{666BAD15-61A2-4216-938C-19D73595FABD}D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe] => (Block) D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe => No File
FirewallRules: [TCP Query User{8699C09C-28F1-4DB2-B22C-212E9E46B919}C:\program files (x86)\videoplaytool\bin\videoplaytool.exe] => (Allow) C:\program files (x86)\videoplaytool\bin\videoplaytool.exe () [File not signed]
FirewallRules: [UDP Query User{60D2B5D5-0317-4BF3-B962-24B94372FA28}C:\program files (x86)\videoplaytool\bin\videoplaytool.exe] => (Allow) C:\program files (x86)\videoplaytool\bin\videoplaytool.exe () [File not signed]
FirewallRules: [TCP Query User{0496F097-5D63-4809-BF91-EDC96AB124F1}C:\program files (x86)\videoplaytool\bin\videoplugin_x64.exe] => (Allow) C:\program files (x86)\videoplaytool\bin\videoplugin_x64.exe () [File not signed]
FirewallRules: [UDP Query User{20CFB431-3DA9-45C4-A6CA-B89F919912C3}C:\program files (x86)\videoplaytool\bin\videoplugin_x64.exe] => (Allow) C:\program files (x86)\videoplaytool\bin\videoplugin_x64.exe () [File not signed]
FirewallRules: [{19D6DC51-B5BF-43CB-854E-A30D84219EB2}] => (Allow) C:\Users\micha\AppData\Local\Temp\ACFL20260121205229\ACSetup\ACSetup.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{E4CF1FE5-22ED-43C1-AFC9-056A586EFC4E}] => (Allow) C:\Users\micha\AppData\Local\Temp\ACFL20260121205229\ACSetup\ACSetup.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{146C8DB4-165B-4BC5-9907-608592F7876F}] => (Allow) D:\SteamLibrary\steamapps\common\Golf With Your Friends\Golf With Your Friends.exe () [File not signed]
FirewallRules: [{FEB8EF87-6EB2-4A0F-9C03-B7792FA0D9C9}] => (Allow) D:\SteamLibrary\steamapps\common\Golf With Your Friends\Golf With Your Friends.exe () [File not signed]
FirewallRules: [{9B4A50DB-9C53-4049-A0F2-B8DD70E3FE08}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\REANIMAL Demo\Everholm\Binaries\Win64\REANIMAL.exe => No File
FirewallRules: [{44F12B77-E7D7-4713-AFF8-BC2DBEAB7CBC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\REANIMAL Demo\Everholm\Binaries\Win64\REANIMAL.exe => No File
FirewallRules: [{3CA21691-C81D-4758-9924-E637F3559D95}] => (Allow) D:\SteamLibrary\steamapps\common\Gang of Frogs Playtest\NebulaCoopProject.exe (Error3: CryptCATAdminCalcHashFromFileHandle failed to return cbHash, #2 -> Epic Games, Inc.) [File not signed]
FirewallRules: [{61F4D655-3CFE-4EA4-8379-907DDB42742C}] => (Allow) D:\SteamLibrary\steamapps\common\Gang of Frogs Playtest\NebulaCoopProject.exe (Error3: CryptCATAdminCalcHashFromFileHandle failed to return cbHash, #2 -> Epic Games, Inc.) [File not signed]
FirewallRules: [{96AA32D3-6739-463F-A451-DEF1FCA517C2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\We Were Here Expeditions - The FriendShip\We Were Here Expeditions The FriendShip.exe () [File not signed]
FirewallRules: [{D47C780E-CD69-4E33-AEEC-75555232547B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\We Were Here Expeditions - The FriendShip\We Were Here Expeditions The FriendShip.exe () [File not signed]
FirewallRules: [{7BC07D96-D236-4452-92E6-0F1929373823}] => (Allow) E:\SteamLibrary\steamapps\common\RESIDENT EVIL requiem BIOHAZARD requiem\re9.exe => No File
FirewallRules: [{6040D1B2-7EF1-4EF1-822F-9BE469363A7F}] => (Allow) E:\SteamLibrary\steamapps\common\RESIDENT EVIL requiem BIOHAZARD requiem\re9.exe => No File
FirewallRules: [{6FA219E2-F406-4C00-9992-8CEF586972CB}] => (Allow) D:\SteamLibrary\steamapps\common\Exit8\Exit8.exe (Error3: CryptCATAdminCalcHashFromFileHandle failed to return cbHash, #2 -> Epic Games, Inc.) [File not signed]
FirewallRules: [{CBCA7707-CA20-44C0-A34E-277C79CEFEA0}] => (Allow) D:\SteamLibrary\steamapps\common\Exit8\Exit8.exe (Error3: CryptCATAdminCalcHashFromFileHandle failed to return cbHash, #2 -> Epic Games, Inc.) [File not signed]
FirewallRules: [{35304E9A-B2ED-4F13-AAD9-8F46BCF7A163}] => (Allow) E:\SteamLibrary\steamapps\common\Level Unknown Backrooms Demo\LevelUnknown.exe (Error3: CryptCATAdminCalcHashFromFileHandle failed to return cbHash, #2 -> Epic Games, Inc.) [File not signed]
FirewallRules: [{88A68A1E-7B0D-4E58-AD3B-2EB8EABC70B8}] => (Allow) E:\SteamLibrary\steamapps\common\Level Unknown Backrooms Demo\LevelUnknown.exe (Error3: CryptCATAdminCalcHashFromFileHandle failed to return cbHash, #2 -> Epic Games, Inc.) [File not signed]
FirewallRules: [{082D4619-647F-4FE8-B6C7-FE4007E611D3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Platform8\Platform8.exe (Error3: CryptCATAdminCalcHashFromFileHandle failed to return cbHash, #2 -> Epic Games, Inc.) [File not signed]
FirewallRules: [{829E5420-356B-4BFC-B5F1-FE7529652D4E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Platform8\Platform8.exe (Error3: CryptCATAdminCalcHashFromFileHandle failed to return cbHash, #2 -> Epic Games, Inc.) [File not signed]
FirewallRules: [{4C1530A4-CA3D-497A-8AF6-423960B9BF68}] => (Allow) E:\SteamLibrary\steamapps\common\Subliminal Demo\Subliminal.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{743C4C50-FCA2-44E0-AC09-42094C5F6F8A}] => (Allow) E:\SteamLibrary\steamapps\common\Subliminal Demo\Subliminal.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [TCP Query User{F8EC5A97-19AA-43E3-BF64-7C02F1191CFA}C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe] => (Allow) C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe => No File
FirewallRules: [UDP Query User{9BCD94D3-2983-4669-B8F2-9151CD414C11}C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe] => (Allow) C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe => No File
FirewallRules: [TCP Query User{7E688C0D-7EEB-4001-9398-F57B5D64D7C9}E:\steamlibrary\steamapps\common\level unknown backrooms demo\levelunknown\binaries\win64\levelunknown-win64-shipping.exe] => (Allow) E:\steamlibrary\steamapps\common\level unknown backrooms demo\levelunknown\binaries\win64\levelunknown-win64-shipping.exe (Podarge Visions) [File not signed]
FirewallRules: [UDP Query User{044B0236-0A23-4B93-BB39-D44871FE6BDA}E:\steamlibrary\steamapps\common\level unknown backrooms demo\levelunknown\binaries\win64\levelunknown-win64-shipping.exe] => (Allow) E:\steamlibrary\steamapps\common\level unknown backrooms demo\levelunknown\binaries\win64\levelunknown-win64-shipping.exe (Podarge Visions) [File not signed]
FirewallRules: [{7332F137-2FCB-45A3-BA27-13258A6D7B5B}] => (Allow) C:\Users\micha\AppData\Local\Temp\ACFL\ACSetup\ACSetup.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{90E0F42C-78E7-4B45-B55E-3E2ED7E46E77}] => (Allow) C:\Users\micha\AppData\Local\Temp\ACFL\ACSetup\ACSetup.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [TCP Query User{57487E1A-1D38-4C31-A43B-DBF09551A900}D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe] => (Allow) D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe => No File
FirewallRules: [UDP Query User{D2A7A198-93F4-4B0C-8F85-FBD7DA39AFEF}D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe] => (Allow) D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe => No File
FirewallRules: [{2BB9BD6C-1901-4EAB-8634-33EE71AC9580}] => (Allow) E:\FunPlus\Sea of Conquest\Launcher.exe => No File
FirewallRules: [{FE0DAA54-F25E-470E-83C5-26D33F9186FF}] => (Allow) E:\FunPlus\Sea of Conquest\Launcher.exe => No File
FirewallRules: [{949E6E87-2E32-4425-8171-D7017509969C}] => (Allow) E:\FunPlus\Sea of Conquest\ngame\1.1.680.396679\seaofconquest.exe => No File
FirewallRules: [{DE20E273-C14E-439A-9D8E-A9A832E100EC}] => (Allow) E:\FunPlus\Sea of Conquest\ngame\1.1.680.396679\seaofconquest.exe => No File
FirewallRules: [TCP Query User{2B04CB50-BE19-4CB7-9B09-03A690B45333}E:\gtavenhanced\gta5_enhanced.exe] => (Allow) E:\gtavenhanced\gta5_enhanced.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [UDP Query User{67FEAA56-EB72-440E-BF0D-60313942F931}E:\gtavenhanced\gta5_enhanced.exe] => (Allow) E:\gtavenhanced\gta5_enhanced.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{333037B7-FB5D-4900-9127-0F529CDBD1A3}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.66.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.)
FirewallRules: [{D1DA1D65-284C-414D-B2D1-C993B0F72080}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.66.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.)
FirewallRules: [{F0607026-FCA8-4DAD-9402-3B9433AE4F9A}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.66.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.)
FirewallRules: [{43C2F16A-A753-48F6-8640-5C28FA83A09A}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.66.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.)
FirewallRules: [{F15517AF-7E6A-49B3-84E7-736301632822}] => (Allow) C:\Program Files\Privax\HMA VPN\Vpn.exe (Gen Digital Inc. -> Privax Limited)
FirewallRules: [{EBB68865-94CA-4452-A493-338B487F5C3A}] => (Allow) C:\Program Files\Privax\HMA VPN\Vpn.exe (Gen Digital Inc. -> Privax Limited)
FirewallRules: [{DF997B85-A5CC-4AB0-BB8C-EE82AD0AE664}] => (Allow) C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe (Softdeluxe) [File not signed]
FirewallRules: [{47FE176A-C4F5-4E03-AC63-80AF09276403}] => (Allow) C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe (Softdeluxe) [File not signed]
FirewallRules: [{1465E95C-70DF-436D-970C-2ED8E1EBEADD}] => (Allow) C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe (Softdeluxe) [File not signed]
FirewallRules: [{FF77FF0C-D2A5-4CD2-B895-BB5F4D3BAF18}] => (Allow) C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe (Softdeluxe) [File not signed]
FirewallRules: [TCP Query User{1EF11284-B2A4-4E46-8C6B-444CE104883A}C:\program files\softdeluxe\free download manager\fdm.exe] => (Allow) C:\program files\softdeluxe\free download manager\fdm.exe (Softdeluxe) [File not signed]
FirewallRules: [UDP Query User{C9FF6B2D-3762-4546-85D5-0D68AB554FB5}C:\program files\softdeluxe\free download manager\fdm.exe] => (Allow) C:\program files\softdeluxe\free download manager\fdm.exe (Softdeluxe) [File not signed]
FirewallRules: [EdgeWebView2-MDNS-In-UDP] => (Allow) C:\WINDOWS\system32\Microsoft-Edge-WebView\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{6F21CB09-6C5A-4344-BF1C-EA741EE3B92D}] => (Allow) C:\Program Files\WindowsApps\OpenAI.ChatGPT-Desktop_1.2026.133.0_x64__2p2nqsd0c76g0\app\ChatGPT.exe (50BDFD77-8903-4850-9FFE-6E8522F64D5B -> OpenAI)
FirewallRules: [{03C266D7-323C-41E2-AD3F-3971CAA19AB1}] => (Allow) C:\Program Files\WindowsApps\OpenAI.ChatGPT-Desktop_1.2026.133.0_x64__2p2nqsd0c76g0\app\ChatGPT.exe (50BDFD77-8903-4850-9FFE-6E8522F64D5B -> OpenAI)
FirewallRules: [{D7B68C98-87B6-48F2-871E-FE32B67993C0}] => (Allow) C:\Program Files\WindowsApps\OpenAI.ChatGPT-Desktop_1.2026.133.0_x64__2p2nqsd0c76g0\app\ChatGPT.exe (50BDFD77-8903-4850-9FFE-6E8522F64D5B -> OpenAI)
FirewallRules: [{C35A8C71-8852-4CEE-9DAE-EA5F6F6A580C}] => (Allow) C:\Program Files\WindowsApps\OpenAI.ChatGPT-Desktop_1.2026.133.0_x64__2p2nqsd0c76g0\app\ChatGPT.exe (50BDFD77-8903-4850-9FFE-6E8522F64D5B -> OpenAI)
FirewallRules: [{4DC02301-DA0B-4DAE-AB59-3699104C05CE}] => (Allow) C:\ProgramData\ASUS\ARMOURY CRATE One Package\ACFL20260517171130\ACSetup\ACSetup.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{3EFE7AEF-9E5C-4F3B-981E-1ECCF674AAC9}] => (Allow) C:\ProgramData\ASUS\ARMOURY CRATE One Package\ACFL20260517171130\ACSetup\ACSetup.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{18D6E95F-C817-4DDF-A7AD-75F1A1024F26}] => (Allow) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{7D672467-152E-4E17-ADF7-702086E5BA44}] => (Allow) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{6309903D-B4E8-4C24-ABBC-CA028065F7D0}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
FirewallRules: [{BBA197BB-FB8A-4BC1-98E9-481813356EFB}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
FirewallRules: [{22E3668F-9299-46E7-AABA-01FEA6879199}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmouryHtmlDebugServer.exe (ASUSTeK COMPUTER INC. -> ASUS)
FirewallRules: [{3CB0E3CE-F152-45D8-A271-808DC286E94B}] => (Allow) C:\Program Files\ASUS\AacAmbientHal\AacAmbientLighting.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{034AEB15-A6D9-4568-BFF4-99901C333BFF}] => (Allow) E:\SteamLibrary\steamapps\common\Backrooms_Escape_Together\BetGame.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{F0613130-3034-4F4E-8EE9-2FFDF29313CC}] => (Allow) E:\SteamLibrary\steamapps\common\Backrooms_Escape_Together\BetGame.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [TCP Query User{C122A2E0-9886-492C-825D-00F0A7E6D756}E:\steamlibrary\steamapps\common\backrooms_escape_together\bet\binaries\win64\betgamesteam-win64-shipping.exe] => (Allow) E:\steamlibrary\steamapps\common\backrooms_escape_together\bet\binaries\win64\betgamesteam-win64-shipping.exe (Triiodide Studios) [File not signed]
FirewallRules: [UDP Query User{FDE49F1B-B44D-4364-902D-491F9A233287}E:\steamlibrary\steamapps\common\backrooms_escape_together\bet\binaries\win64\betgamesteam-win64-shipping.exe] => (Allow) E:\steamlibrary\steamapps\common\backrooms_escape_together\bet\binaries\win64\betgamesteam-win64-shipping.exe (Triiodide Studios) [File not signed]
FirewallRules: [{B3D95749-8863-44F3-9A92-A2809FAEAD2F}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{77049CD5-31A3-4D3C-B1CE-207C5042C5E8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{1933BDA0-EDA5-4662-9B21-D512D2277A7C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{FE46AFBB-E31B-4F9D-B191-D8664A730E43}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{C655455A-8894-4943-93F1-2D8E081F9FC8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{0C527AD0-60DC-459B-AA95-D0FF117D8465}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{9CC825B3-1F12-4727-9278-97F94D62E3BA}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{3F6529FC-847A-4882-8580-7EF9FB57904B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{BC7326F4-57FA-42BB-8F6C-713C750D3DF5}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{4C4CD58B-85FE-4E9D-8518-F85C6039CBA1}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{7ED28EB1-88AC-4327-A468-FBEDA0DA2C2B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{2AEB9F72-9141-4948-9F4A-C01174204E2B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{601E84BF-9F26-4650-9600-C897288DDB54}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{2E06499D-ABC8-4531-92D4-D4F7E302821D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{5D13A91D-5432-4E2E-8B13-9D99DCD909C7}] => (Allow) C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [{E170FAF8-A3A9-46FC-8D1B-C8C6ACE89920}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2606.48051.0_x64__8wekyb3d8bbwe\M365Copilot.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{E24BE7EB-31F9-4AED-9D96-1EC6F0F1CFE3}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2606.48051.0_x64__8wekyb3d8bbwe\M365Copilot.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{AED4305C-00AC-4312-B1E8-81DE7EDD367B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2606.48051.0_x64__8wekyb3d8bbwe\M365Copilot.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{71E7097B-407E-4047-93DF-39853D944C65}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2606.48051.0_x64__8wekyb3d8bbwe\M365Copilot.exe (Microsoft Corporation -> Microsoft Corporation)
==================== Restore Points =========================
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (06/20/2026 11:39:14 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: Vytvoření bodu obnovení se nezdařilo (Proces = C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s wuauserv; Popis = Windows Update; Chyba = 0x8004231f).
Error: (06/19/2026 11:41:45 PM) (Source: Application Error) (EventID: 1005) (User: PETR)
Description: C:\Users\micha\AppData\Local\Microsoft\OneDrive\logs\Common\telemetryCache.otc-shmMicrosoft OneDriveFile Co-Authoring Executable0xc000007f0x3
Error: (06/19/2026 11:41:45 PM) (Source: Application Error) (EventID: 1000) (User: PETR)
Description: Název chybující aplikace: FileCoAuth.exe, verze: 26.95.519.3, časové razítko: 0x8dace483
Název chybujícího modulu: OneDriveTelemetryStable.dll, verze: 26.95.519.3, časové razítko: 0xe02a4d5f
Kód výjimky: 0xc0000006
Posun chyby: 0x000000000015df56
ID chybujícího procesu: 0x3a70
Čas spuštění chybující aplikace: 0x1dd00346ca4172e
Cesta k chybující aplikaci: C:\Users\micha\AppData\Local\Microsoft\OneDrive\26.095.0519.0003\FileCoAuth.exe
Cesta k chybujícímu modulu: C:\Users\micha\AppData\Local\Microsoft\OneDrive\26.095.0519.0003\OneDriveTelemetryStable.dll
ID sestavy: 60d5ffc0-9f68-428c-96bb-f56306f452b9
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:
Error: (06/19/2026 02:12:54 AM) (Source: Application Error) (EventID: 1000) (User: NT AUTHORITY)
Description: Název chybující aplikace: nordvpn-service.exe, verze: 1.1.0.34, časové razítko: 0x65112d57
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.26100.8655, časové razítko: 0x9e0ffa42
Kód výjimky: 0xe0434352
Posun chyby: 0x00000000000c1b6a
ID chybujícího procesu: 0x145c
Čas spuštění chybující aplikace: 0x1dcff13f490d600
Cesta k chybující aplikaci: C:\Program Files\NordVPN\nordvpn-service.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\KERNELBASE.dll
ID sestavy: ab358147-833f-40ac-98fc-257bfbadce68
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:
Error: (06/19/2026 02:12:50 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému..
Error: (06/19/2026 02:12:50 AM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.]
Error: (06/19/2026 02:12:50 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému..
Error: (06/19/2026 02:12:50 AM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.]
System errors:
=============
Error: (06/21/2026 11:02:04 AM) (Source: Netwtw10) (EventID: 5010) (User: )
Description: Intel(R) Wi-Fi 6 AX201 160MHz : Síťový adaptér vrátil ovladači neplatnou hodnotu.
5010 - Driver DBG_ASSERT - instead of BSOD
Error: (06/21/2026 11:02:04 AM) (Source: Netwtw10) (EventID: 5010) (User: )
Description: Intel(R) Wi-Fi 6 AX201 160MHz : Síťový adaptér vrátil ovladači neplatnou hodnotu.
5010 - Driver DBG_ASSERT - instead of BSOD
Error: (06/21/2026 10:37:14 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Aktualizace Google (gupdate) neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.
Error: (06/21/2026 10:37:14 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Služba Aktualizace Google (gupdate) bylo dosaženo časového limitu (90000 ms).
Error: (06/21/2026 10:35:21 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba AsusFanControlService neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.
Error: (06/21/2026 10:35:21 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby AsusFanControlService bylo dosaženo časového limitu (90000 ms).
Error: (06/21/2026 10:35:21 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba AsusFanControlService neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.
Error: (06/21/2026 10:35:21 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby AsusFanControlService bylo dosaženo časového limitu (90000 ms).
Windows Defender:
================
Date: 2026-06-16 12:42:13
Description:
Antivirová ochrana v programu Microsoft Defender šçαń ħãś ьёэй šţθρφεð ьĕƒõяė ¢οмφŀèтіõⁿ.%ń %ţŠĉдń ÍÐ:%ъ{2E25A665-9029-46F9-9F59-575E560C61AB}%й %ťŞçäη Τурè:%ъAntimalwarový program%ń %τЅĉăņ Рǻřǻмĕτзřş:%вRychlé prohledávání%л %ťЏŝèŗ:%вNT AUTHORITY\SYSTEM%л %ŧŞţор Ŕëάŝσŋ:%вЯРČ çőпήзćťíσп гŭⁿđŏщи
Date: 2026-06-14 11:18:25
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: PUADlManager:Win32/InstallCore
Závažnost: Nízké
Kategorie: Potenciálně nežádoucí software
Cesta: file:_E:\GTA SAN ANDREAS\HOODLUM\hlm-intro.exe; file:_E:\HOODLUM\hlm-intro.exe
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Ochrana v reálném čase
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: C:\Program Files\Malwarebytes\Anti-Malware\DDSHelper.exe
Verze bezpečnostních informací: AV: 1.453.86.0, AS: 1.453.86.0, NIS: 1.453.86.0
Verze modulu: AM: 1.1.26050.11, NIS: 1.1.26050.11
Date: 2026-06-14 11:17:17
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: PUADlManager:Win32/InstallCore
Závažnost: Nízké
Kategorie: Potenciálně nežádoucí software
Cesta: file:_E:\GTA SAN ANDREAS\HOODLUM\hlm-intro.exe
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Ochrana v reálném čase
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: C:\Program Files\Malwarebytes\Anti-Malware\DDSHelper.exe
Verze bezpečnostních informací: AV: 1.453.86.0, AS: 1.453.86.0, NIS: 1.453.86.0
Verze modulu: AM: 1.1.26050.11, NIS: 1.1.26050.11
Date: 2026-06-10 13:06:21
Description:
Antivirová ochrana v programu Microsoft Defender šçαń ħãś ьёэй šţθρφεð ьĕƒõяė ¢οмφŀèтіõⁿ.%ń %ţŠĉдń ÍÐ:%ъ{58D99B81-2179-4234-BC4E-8E54A9B95BC1}%й %ťŞçäη Τурè:%ъAntimalwarový program%ń %τЅĉăņ Рǻřǻмĕτзřş:%вRychlé prohledávání%л %ťЏŝèŗ:%вNT AUTHORITY\SYSTEM%л %ŧŞţор Ŕëάŝσŋ:%вЯРČ çőпήзćťíσп гŭⁿđŏщи
Date: 2026-06-07 13:32:57
Description:
Antivirová ochrana v programu Microsoft Defender šçαń ħãś ьёэй šţθρφεð ьĕƒõяė ¢οмφŀèтіõⁿ.%ń %ţŠĉдń ÍÐ:%ъ{AE61C05C-DD09-4863-8B9F-01157A764EDE}%й %ťŞçäη Τурè:%ъAntimalwarový program%ń %τЅĉăņ Рǻřǻмĕτзřş:%вRychlé prohledávání%л %ťЏŝèŗ:%вNT AUTHORITY\SYSTEM%л %ŧŞţор Ŕëάŝσŋ:%вŜčћêďŭľëđ ś¢ăп ŵâŝ śκΐφρèð вєćąűśë τћ℮ ļâѕт ŝűċčэşšƒµℓ ŝċаπ щàś ẃīτнĩñ тђë ľâşτ 7 ðαўş
Event[0]
Date: 2026-06-21 02:00:37
Description:
Služba Antivirová ochrana v programu Microsoft Defender zřejmě během vypnutí neodpovídá.
Timout (sekundy): 0
Součást: UninitializeServiceWppTracing
Ukončeno: 0
Date: 2026-04-15 10:10:35
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.449.106.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.26030.3008
Kód chyby: 0x8024402c
Popis chyby: Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.
Date: 2026-04-07 14:23:18
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.447.204.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.26020.3
Kód chyby: 0x8024402c
Popis chyby: Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.
Date: 2026-04-05 12:05:50
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.447.168.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.26020.3
Kód chyby: 0x8024402c
Popis chyby: Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.
Date: 2026-03-25 15:42:34
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.445.744.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.26010.1
Kód chyby: 0x8024402c
Popis chyby: Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.
CodeIntegrity:
===============
Date: 2026-04-09 21:33:58
Description:
Code Integrity determined that a process (\Device\HarddiskVolume8\Users\micha\AppData\Local\Discord\app-1.0.9228\Discord.exe) attempted to load \Device\HarddiskVolume8\Program Files (x86)\Overwolf\0.292.1.1\OWClient.dll that did not meet the Microsoft signing level requirements.
Date: 2026-04-09 21:33:58
Description:
Code Integrity determined that a process (\Device\HarddiskVolume8\Users\micha\AppData\Local\Discord\app-1.0.9228\Discord.exe) attempted to load \Device\HarddiskVolume8\Program Files (x86)\Overwolf\0.292.1.1\ow-graphics-vulkan.dll that did not meet the Microsoft signing level requirements.
Date: 2026-04-09 21:33:58
Description:
Code Integrity determined that a process (\Device\HarddiskVolume8\Users\micha\AppData\Local\Discord\app-1.0.9228\Discord.exe) attempted to load \Device\HarddiskVolume8\ProgramData\obs-studio-hook\graphics-hook64.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends Inc. 1203 10/28/2021
Motherboard: ASUSTeK COMPUTER INC. TUF GAMING B560M-PLUS WIFI
Processor: 11th Gen Intel(R) Core(TM) i5-11400F @ 2.60GHz
Percentage of memory in use: 72%
Total physical RAM: 16217.73 MB
Available physical RAM: 4397.11 MB
Total Virtual: 35673.73 MB
Available Virtual: 16655.8 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:464.22 GB) (Free:0.48 GB) (Model: WDS500G1X0E-00AFY0) NTFS
Drive d: () (Fixed) (Total:931.07 GB) (Free:64.94 GB) (Model: ST1000DM003-1CH162) NTFS
Drive e: () (Fixed) (Total:930.38 GB) (Free:196.33 GB) (Model: WDC WD10EZRZ-00HTKB0) NTFS
\\?\Volume{46029b4d-50e3-4957-bc8f-c0b2a31dc2bc}\ (Obnovení) (Fixed) (Total:0.52 GB) (Free:0.09 GB) NTFS
\\?\Volume{4b280e1e-daf8-44f3-842e-2a7f1ce8ec12}\ () (Fixed) (Total:0.51 GB) (Free:0.49 GB) NTFS
\\?\Volume{264207f5-8b5b-4217-b1e6-8dd2e0f04815}\ () (Fixed) (Total:0.85 GB) (Free:0.07 GB) NTFS
\\?\Volume{08ab3d1f-4e35-4487-85f6-dbaed34b5da3}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32
\\?\Volume{0cd24771-04e1-47f0-9f7a-3b9a182df020}\ () (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 1 (Size: 931.5 GB) (Disk ID: 7D324914)
Partition 1: (Not Active) - (Size=931.1 GB) - (Type=07 NTFS)
==========================================================
Disk: 2 (Protective MBR) (Size: 465.8 GB) (Disk ID: 00000000)
Partition: GPT.
==================== End of Addition.txt =======================
- Rudy
- Site Admin

- Příspěvky: 120011
- Registrován: 30 Říj 2003 13:42
- Místo/Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu z důvodu úbytku místa na SSD
Zdravím!
Otevřte poznámkový blok a zkopírujte do něj:
Otevřte poznámkový blok a zkopírujte do něj:
Uložte do C:\Users\micha\OneDrive\Plocha jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.Start
CloseProcesses:
(HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\{07F54E47-DE08-486E-921C-D09624774BB6}_is1)<==== ATTENTION
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{14100442-9664-1407-2647-000000000000}\localserver32 -> "C:\Users\micha\AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{73F8144D-FFD8-4496-B65E-4D756FF689FE}\localserver32 -> "c:\program files (x86)\bytedance\douyin\7.3.0\tray\douyin_tray.exe" ----AppNotificationActivated: => No File
ContextMenuHandlers4: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => -> No File
ContextMenuHandlers6: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => -> No File
AlternateDataStreams: C:\ProgramData\mntemp:8EAD8B3507 [3442]
AlternateDataStreams: C:\ProgramData\tyvfcquz.wxt:B63721167D [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk:BE32D07BC5 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FACEIT AC.lnk:550995E265 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Novabench 5.lnk:B68549C808 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Streamlabs Desktop.lnk:578370639A [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk:F208FC6732 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak.lnk:DBB58A0286 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\V380.lnk:942A4CABE6 [3442]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [5646]
FirewallRules: [UDP Query User{BA606EBB-ACA7-464E-89D4-A356F7D7E95F}E:\battlefield 6 event\bf6event.exe] => (Allow) E:\battlefield 6 event\bf6event.exe => No File
FirewallRules: [TCP Query User{FBD4AD8B-A72E-4FAE-9B92-BA605D0FB6D9}E:\battlefield 6 event\bf6event.exe] => (Allow) E:\battlefield 6 event\bf6event.exe => No File
FirewallRules: [TCP Query User{386E5117-D7C3-4CF5-9032-017E7B423828}C:\users\micha\appdata\roaming\bittorrent web\btweb.exe] => (Block) C:\users\micha\appdata\roaming\bittorrent web\btweb.exe => No File
FirewallRules: [UDP Query User{CAF064AD-F740-4F3A-BD93-254EBDBBA0A5}C:\users\micha\appdata\roaming\bittorrent web\btweb.exe] => (Block) C:\users\micha\appdata\roaming\bittorrent web\btweb.exe => No File
FirewallRules: [UDP Query User{E7D841BD-B7A2-414E-AA1D-BD6358E45FE0}C:\program files\bravesoftware\brave-browser\application\brave.exe] => (Allow) C:\program files\bravesoftware\brave-browser\application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [TCP Query User{15475545-4979-4595-B803-073922E0D13F}E:\sea of thieves\call of duty\content\cod.exe] => (Allow) E:\sea of thieves\call of duty\content\cod.exe => No File
FirewallRules: [UDP Query User{71031F81-EE69-4A14-8C9C-5AE66C0E3C42}E:\sea of thieves\call of duty\content\cod.exe] => (Allow) E:\sea of thieves\call of duty\content\cod.exe => No File
FirewallRules: [TCP Query User{8EDE6D18-C435-431A-8552-E7855E62A2C7}E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe] => (Allow) E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe => No File
FirewallRules: [UDP Query User{8D18AAD1-B496-4F5D-97BE-8DF5127BAF68}E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe] => (Allow) E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe => No File
FirewallRules: [{131E5D88-F4CC-4A8C-ADD0-88EAAF24FCB9}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{1E7BE9C4-0658-45E4-B65F-A85929E8B901}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [TCP Query User{1020EA32-7A2C-4C37-9D71-963B86C936F7}E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe] => (Block) E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe => No File
FirewallRules: [UDP Query User{C0D520F0-B762-490B-873D-D151DA181329}E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe] => (Block) E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe => No File
FirewallRules: [TCP Query User{974B5E9C-F3DC-49BB-955A-C2994803E1B1}C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe => No File
FirewallRules: [UDP Query User{3C8F5FBB-6F9F-464B-90C3-234A1ED944ED}C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe => No File
FirewallRules: [{E84C56EB-0377-4BF3-9DB9-785A2DAF4798}] => (Allow) C:\Users\micha\AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe => No File
FirewallRules: [TCP Query User{0670EDD1-9B02-4342-8360-761EB4B60763}D:\davinci\resolve.exe] => (Block) D:\davinci\resolve.exe => No File
FirewallRules: [UDP Query User{A9281C5A-67BA-44EE-91CD-3F30EF7C880B}D:\davinci\resolve.exe] => (Block) D:\davinci\resolve.exe => No File
FirewallRules: [{F873D22A-8197-497F-9730-3C660A093C3E}] => (Allow) D:\SteamLibrary\steamapps\common\Ready Or Not\Engine\Binaries\Win64\CrashReporter.exe => No File
FirewallRules: [{2E7AB9CD-A6C1-4429-86C0-62665E93CDE7}] => (Allow) D:\SteamLibrary\steamapps\common\Ready Or Not\Engine\Binaries\Win64\CrashReporter.exe => No File
FirewallRules: [UDP Query User{8BCC2B64-0E9C-4DF8-8046-3FFCDBF0DAE2}D:\world_of_tanks_eu\win64\worldoftanks.exe] => (Block) D:\world_of_tanks_eu\win64\worldoftanks.exe => No File
FirewallRules: [TCP Query User{020F479B-87E5-41C7-8447-D18C7F33A816}C:\program files\docker\docker\resources\com.docker.backend.exe] => (Allow) C:\program files\docker\docker\resources\com.docker.backend.exe => No File
FirewallRules: [UDP Query User{67B178AB-6448-49E0-BD89-D98101310F87}C:\program files\docker\docker\resources\com.docker.backend.exe] => (Allow) C:\program files\docker\docker\resources\com.docker.backend.exe => No File
FirewallRules: [TCP Query User{2EB13A60-1C78-40C4-9334-6298A013F7B0}C:\program files (x86)\gz systems\purevpn\purevpn.exe] => (Allow) C:\program files (x86)\gz systems\purevpn\purevpn.exe => No File
FirewallRules: [UDP Query User{6ED330CC-49FF-4524-B76C-E896E6D1B180}C:\program files (x86)\gz systems\purevpn\purevpn.exe] => (Allow) C:\program files (x86)\gz systems\purevpn\purevpn.exe => No File
FirewallRules: [{1378EC31-F890-4B50-A6F8-82A762159FC9}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{2E6B8883-7DC3-492F-B7FF-55CDD663DC27}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{EE3F9BB2-6DA4-4DD3-92A5-CFE207EA9607}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{90AE84E6-AF25-48FF-8E87-CD9E51CE0C4D}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{BC434F6A-2664-41EE-B1A2-2E203C9435F3}] => (Allow) %ProgramFiles%\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [TCP Query User{485C1239-0A7D-447F-89F0-5A6B7D077CAE}C:\users\micha\downloads\anydesk.exe] => (Allow) C:\users\micha\downloads\anydesk.exe => No File
FirewallRules: [UDP Query User{AD38CA56-2A23-4F12-96D6-A761894A58A3}C:\users\micha\downloads\anydesk.exe] => (Allow) C:\users\micha\downloads\anydesk.exe => No File
FirewallRules: [{6245B822-0F08-47AD-8269-E0B68C04BC14}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\ElementsPanelDaemon.exe => No File
FirewallRules: [TCP Query User{9366605A-B99A-4644-81D7-D1CE6FFFA14B}C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe] => (Allow) C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe => No File
FirewallRules: [UDP Query User{B1BD089E-C939-4484-9373-6473763A148B}C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe] => (Allow) C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe => No File
FirewallRules: [TCP Query User{6303E824-75A0-4962-981A-122A4D93EE1B}C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe] => (Block) C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe => No File
FirewallRules: [UDP Query User{9F7EB77E-BED0-493E-84C0-C44F9AC8D0E1}C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe] => (Block) C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe => No File
FirewallRules: [TCP Query User{D31EDD4E-6F1F-48F7-BF04-70624D5CD859}D:\football.life.simulator.early.access\football life simulator.exe] => (Block) D:\football.life.simulator.early.access\football life simulator.exe => No File
FirewallRules: [UDP Query User{415A3AFA-7F76-4442-B9A4-C3D630C920A9}D:\football.life.simulator.early.access\football life simulator.exe] => (Block) D:\football.life.simulator.early.access\football life simulator.exe => No File
FirewallRules: [TCP Query User{FC88C696-51DA-4C64-8193-66421996A2FE}D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe] => (Block) D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe => No File
FirewallRules: [UDP Query User{0C368F59-947E-43F0-8801-48D67EAEA95C}D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe] => (Block) D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe => No File
FirewallRules: [TCP Query User{1B413620-1991-4B9C-A665-08DE87CC761F}D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe] => (Block) D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe => No File
FirewallRules: [UDP Query User{78BE4651-1CCF-4BDB-B782-56D461028DA6}D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe] => (Block) D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe => No File
FirewallRules: [TCP Query User{9863FE5E-073C-4741-9835-2AF7609F2286}D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe] => (Block) D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe => No File
FirewallRules: [UDP Query User{3D1A32C3-C4B8-4BCB-918A-B1F55C7E3BA4}D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe] => (Block) D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe => No File
FirewallRules: [{E79F17D6-ED1E-4DE4-A3B2-4784365B01F1}] => (Allow) D:\SteamLibrary\steamapps\common\Delta Force\Launcher\df_launcher.exe => No File
FirewallRules: [{9EECD3EB-4F9B-46A7-975A-A6E28031CEA0}] => (Allow) D:\SteamLibrary\steamapps\common\Delta Force\Launcher\df_launcher.exe => No File
FirewallRules: [TCP Query User{27BA6085-CFC9-4437-9507-DA440ED57636}E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe] => (Allow) E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe => No File
FirewallRules: [UDP Query User{261BA844-0209-455B-8C8F-EDF6C567C0A0}E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe] => (Allow) E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe => No File
FirewallRules: [{619366B2-C57B-40E0-A55E-730090104413}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe => No File
FirewallRules: [TCP Query User{E66BF433-B841-40DD-B35F-2B0901D71BAE}C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe] => (Block) C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe => No File
FirewallRules: [UDP Query User{E26E2408-5876-4D03-941E-E996B41B9BFC}C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe] => (Block) C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe => No File
FirewallRules: [{17D4C8B3-53E8-4E4A-B51F-6221C67467A5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Phasmophobia\Phasmophobia.exe => No File
FirewallRules: [{BC8EFC50-5F78-4B9E-AEC7-F41F139F5A19}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Phasmophobia\Phasmophobia.exe => No File
FirewallRules: [TCP Query User{3AD948F4-1D6A-4220-9236-6B4A136B9F60}D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe] => (Block) D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe => No File
FirewallRules: [UDP Query User{78CA9D04-A3CD-4C1F-A96C-D66A66373624}D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe] => (Block) D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe => No File
FirewallRules: [{CDAD4C8E-D429-4F51-8219-15326AA59615}] => (Allow) E:\SteamLibrary\steamapps\common\Mafia The Old Country\MafiaTheOldCountry\Binaries\Win64\MafiaTheOldCountry.exe => No File
FirewallRules: [{5B2A4E1C-3EBA-4790-9E81-8F698209F775}] => (Allow) E:\SteamLibrary\steamapps\common\Mafia The Old Country\MafiaTheOldCountry\Binaries\Win64\MafiaTheOldCountry.exe => No File
FirewallRules: [TCP Query User{ED1B53EB-1F37-4865-9AF7-DC72E73392D9}E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe] => (Allow) E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe => No File
FirewallRules: [UDP Query User{0D02FAD8-020B-4609-A000-1DEC57347CF5}E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe] => (Allow) E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe => No File
FirewallRules: [TCP Query User{49223C06-B8A3-408F-9F6D-73A2C0C54603}D:\geo.political.simulator.5.build.21132820\_start.exe] => (Block) D:\geo.political.simulator.5.build.21132820\_start.exe => No File
FirewallRules: [UDP Query User{651650A5-6458-41C0-8FC7-6D16FE172277}D:\geo.political.simulator.5.build.21132820\_start.exe] => (Block) D:\geo.political.simulator.5.build.21132820\_start.exe => No File
FirewallRules: [TCP Query User{8768545B-4649-4DF0-925E-893EA772158D}D:\bank.simulator.build.20501759\bank simulator.exe] => (Block) D:\bank.simulator.build.20501759\bank simulator.exe => No File
FirewallRules: [UDP Query User{52D4F417-1589-49BA-9BC6-DFB9B5B36477}D:\bank.simulator.build.20501759\bank simulator.exe] => (Block) D:\bank.simulator.build.20501759\bank simulator.exe => No File
FirewallRules: [{63542FC3-E15E-4ED1-AF10-E862EF306301}] => (Allow) E:\SteamLibrary\steamapps\common\MarvelRivals\MarvelRivals_Launcher.exe => No File
FirewallRules: [{F8AC2413-BE69-4BD4-99C7-7BE6F6E47E99}] => (Allow) E:\SteamLibrary\steamapps\common\MarvelRivals\MarvelRivals_Launcher.exe => No File
FirewallRules: [TCP Query User{D7566707-6ACB-473F-8391-D06B97EDC2FE}D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe] => (Block) D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe => No File
FirewallRules: [UDP Query User{A21FAB12-608A-4C75-B6B7-F758ADAD27F2}D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe] => (Block) D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe => No File
FirewallRules: [TCP Query User{717727EE-545A-4CBC-B830-E15494BA6714}C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe] => (Block) C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe => No File
FirewallRules: [UDP Query User{67C34866-CEBB-45AA-9493-945586A2E767}C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe] => (Block) C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe => No File
FirewallRules: [TCP Query User{A302FDF6-D4FB-4BD2-93D3-D20A7581706D}D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe] => (Block) D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe => No File
FirewallRules: [UDP Query User{A24B9A21-36B4-4BE5-846C-0C355D0CD68A}D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe] => (Block) D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe => No File
FirewallRules: [{9FAA9656-B894-4090-9C6C-1E1744836F80}] => (Allow) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [{56E477B2-F75E-45A3-B06A-DC0A7E425435}] => (Allow) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [{F0A0F709-9870-4B3A-86CF-E8E51B01274F}] => (Block) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [{D7FACDDF-8015-4085-A0FE-A1AC3CD68917}] => (Block) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [TCP Query User{EE57F4D8-EDA0-4015-AEFE-D5A211453CA8}D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe] => (Block) D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe => No File
FirewallRules: [UDP Query User{666BAD15-61A2-4216-938C-19D73595FABD}D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe] => (Block) D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe => No File
FirewallRules: [{9B4A50DB-9C53-4049-A0F2-B8DD70E3FE08}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\REANIMAL Demo\Everholm\Binaries\Win64\REANIMAL.exe => No File
FirewallRules: [{44F12B77-E7D7-4713-AFF8-BC2DBEAB7CBC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\REANIMAL Demo\Everholm\Binaries\Win64\REANIMAL.exe => No File
FirewallRules: [{7BC07D96-D236-4452-92E6-0F1929373823}] => (Allow) E:\SteamLibrary\steamapps\common\RESIDENT EVIL requiem BIOHAZARD requiem\re9.exe => No File
FirewallRules: [{6040D1B2-7EF1-4EF1-822F-9BE469363A7F}] => (Allow) E:\SteamLibrary\steamapps\common\RESIDENT EVIL requiem BIOHAZARD requiem\re9.exe => No File
FirewallRules: [TCP Query User{F8EC5A97-19AA-43E3-BF64-7C02F1191CFA}C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe] => (Allow) C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe => No File
FirewallRules: [UDP Query User{9BCD94D3-2983-4669-B8F2-9151CD414C11}C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe] => (Allow) C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe => No File
FirewallRules: [TCP Query User{57487E1A-1D38-4C31-A43B-DBF09551A900}D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe] => (Allow) D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe => No File
FirewallRules: [UDP Query User{D2A7A198-93F4-4B0C-8F85-FBD7DA39AFEF}D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe] => (Allow) D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe => No File
FirewallRules: [{2BB9BD6C-1901-4EAB-8634-33EE71AC9580}] => (Allow) E:\FunPlus\Sea of Conquest\Launcher.exe => No File
FirewallRules: [{FE0DAA54-F25E-470E-83C5-26D33F9186FF}] => (Allow) E:\FunPlus\Sea of Conquest\Launcher.exe => No File
FirewallRules: [{949E6E87-2E32-4425-8171-D7017509969C}] => (Allow) E:\FunPlus\Sea of Conquest\ngame\1.1.680.396679\seaofconquest.exe => No File
FirewallRules: [{DE20E273-C14E-439A-9D8E-A9A832E100EC}] => (Allow) E:\FunPlus\Sea of Conquest\ngame\1.1.680.396679\seaofconquest.exe => No File
E:\GTA SAN ANDREAS\HOODLUM\hlm-intro.exe
E:\HOODLUM\hlm-intro.exe
E:\GTA SAN ANDREAS\HOODLUM\hlm-intro.exe
HKLM-x32\...\Run: [mo_pc_offical_soc] => E:\FunPlus\Sea of Conquest\Launcher.exe (No File)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
Task: {4A23D69E-5CF9-42ED-A89C-293693D2BCFB} - System32\Tasks\AVG\AVG Driver Updater Update => C:\Program Files\Common Files\AVG\Icarus\avg-du\icarus.exe /update:avg-du /silent (No File)
Task: {91EA2448-4E55-4FAD-BC70-DAB9590D29B9} - System32\Tasks\ASUS\P508PowerAgent_sdk => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ShareFromArmouryIII\Mouse\ROG STRIX CARRY\P508PowerAgent.exe (No File)
Task: {ABC7034D-3937-4B4A-82C7-95D2D3AE5D97} - System32\Tasks\Microsoft\Windows\Setup\SnapshotCleanupTask => C:\Windows\System32\OOBE\SetupPlatform\SetupPlatform.exe -removesnapshot (No File)
Task: {0BB36A32-0D9E-4297-AFD7-6BD7B5DB4C9B} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: C:\WINDOWS\Tasks\npcapwatchdog.job => C:\Program Files\Npcap\CheckStatus.bat <==== ATTENTION
CHR HKLM-x32\...\Chrome\Extension: [kadaohckdkghfaclhjmkmplebcdcnfnp] - <no Path/update_url>
R3 cpuz158; C:\WINDOWS\temp\cpuz158\cpuz158_x64.sys [44576 2026-06-21] (Microsoft Windows Hardware Compatibility Publisher -> CPUID) <==== ATTENTION
S3 cpuz159; \??\C:\WINDOWS\temp\cpuz159\cpuz159_x64.sys (No File) <==== ATTENTION
C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
C:\Users\micha\AppData\Local\0119AC2FC90D95AC063B177717B7B3B6
C:\Users\micha\AppData\Local\66302C3ABCF0203701B7744560199EA1
C:\Users\micha\AppData\Local\8B1D271A9281777F9A783A29EC6394D2
EmptyTemp:
Hosts:
End
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu z důvodu úbytku místa na SSD
Fix result of Farbar Recovery Scan Tool (x64) Version: 20-06-2026
Ran by micha (21-06-2026 13:39:19) Run:1
Running from C:\Users\micha\OneDrive\Plocha
Loaded Profiles: micha
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
(HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\{07F54E47-DE08-486E-921C-D09624774BB6}_is1)<==== ATTENTION
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{14100442-9664-1407-2647-000000000000}\localserver32 -> "C:\Users\micha\AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{73F8144D-FFD8-4496-B65E-4D756FF689FE}\localserver32 -> "c:\program files (x86)\bytedance\douyin\7.3.0\tray\douyin_tray.exe" ----AppNotificationActivated: => No File
ContextMenuHandlers4: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => -> No File
ContextMenuHandlers6: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => -> No File
AlternateDataStreams: C:\ProgramData\mntemp:8EAD8B3507 [3442]
AlternateDataStreams: C:\ProgramData\tyvfcquz.wxt:B63721167D [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk:BE32D07BC5 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FACEIT AC.lnk:550995E265 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Novabench 5.lnk:B68549C808 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Streamlabs Desktop.lnk:578370639A [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk:F208FC6732 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak.lnk:DBB58A0286 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\V380.lnk:942A4CABE6 [3442]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [5646]
FirewallRules: [UDP Query User{BA606EBB-ACA7-464E-89D4-A356F7D7E95F}E:\battlefield 6 event\bf6event.exe] => (Allow) E:\battlefield 6 event\bf6event.exe => No File
FirewallRules: [TCP Query User{FBD4AD8B-A72E-4FAE-9B92-BA605D0FB6D9}E:\battlefield 6 event\bf6event.exe] => (Allow) E:\battlefield 6 event\bf6event.exe => No File
FirewallRules: [TCP Query User{386E5117-D7C3-4CF5-9032-017E7B423828}C:\users\micha\appdata\roaming\bittorrent web\btweb.exe] => (Block) C:\users\micha\appdata\roaming\bittorrent web\btweb.exe => No File
FirewallRules: [UDP Query User{CAF064AD-F740-4F3A-BD93-254EBDBBA0A5}C:\users\micha\appdata\roaming\bittorrent web\btweb.exe] => (Block) C:\users\micha\appdata\roaming\bittorrent web\btweb.exe => No File
FirewallRules: [UDP Query User{E7D841BD-B7A2-414E-AA1D-BD6358E45FE0}C:\program files\bravesoftware\brave-browser\application\brave.exe] => (Allow) C:\program files\bravesoftware\brave-browser\application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [TCP Query User{15475545-4979-4595-B803-073922E0D13F}E:\sea of thieves\call of duty\content\cod.exe] => (Allow) E:\sea of thieves\call of duty\content\cod.exe => No File
FirewallRules: [UDP Query User{71031F81-EE69-4A14-8C9C-5AE66C0E3C42}E:\sea of thieves\call of duty\content\cod.exe] => (Allow) E:\sea of thieves\call of duty\content\cod.exe => No File
FirewallRules: [TCP Query User{8EDE6D18-C435-431A-8552-E7855E62A2C7}E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe] => (Allow) E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe => No File
FirewallRules: [UDP Query User{8D18AAD1-B496-4F5D-97BE-8DF5127BAF68}E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe] => (Allow) E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe => No File
FirewallRules: [{131E5D88-F4CC-4A8C-ADD0-88EAAF24FCB9}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{1E7BE9C4-0658-45E4-B65F-A85929E8B901}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [TCP Query User{1020EA32-7A2C-4C37-9D71-963B86C936F7}E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe] => (Block) E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe => No File
FirewallRules: [UDP Query User{C0D520F0-B762-490B-873D-D151DA181329}E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe] => (Block) E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe => No File
FirewallRules: [TCP Query User{974B5E9C-F3DC-49BB-955A-C2994803E1B1}C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe => No File
FirewallRules: [UDP Query User{3C8F5FBB-6F9F-464B-90C3-234A1ED944ED}C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe => No File
FirewallRules: [{E84C56EB-0377-4BF3-9DB9-785A2DAF4798}] => (Allow) C:\Users\micha\AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe => No File
FirewallRules: [TCP Query User{0670EDD1-9B02-4342-8360-761EB4B60763}D:\davinci\resolve.exe] => (Block) D:\davinci\resolve.exe => No File
FirewallRules: [UDP Query User{A9281C5A-67BA-44EE-91CD-3F30EF7C880B}D:\davinci\resolve.exe] => (Block) D:\davinci\resolve.exe => No File
FirewallRules: [{F873D22A-8197-497F-9730-3C660A093C3E}] => (Allow) D:\SteamLibrary\steamapps\common\Ready Or Not\Engine\Binaries\Win64\CrashReporter.exe => No File
FirewallRules: [{2E7AB9CD-A6C1-4429-86C0-62665E93CDE7}] => (Allow) D:\SteamLibrary\steamapps\common\Ready Or Not\Engine\Binaries\Win64\CrashReporter.exe => No File
FirewallRules: [UDP Query User{8BCC2B64-0E9C-4DF8-8046-3FFCDBF0DAE2}D:\world_of_tanks_eu\win64\worldoftanks.exe] => (Block) D:\world_of_tanks_eu\win64\worldoftanks.exe => No File
FirewallRules: [TCP Query User{020F479B-87E5-41C7-8447-D18C7F33A816}C:\program files\docker\docker\resources\com.docker.backend.exe] => (Allow) C:\program files\docker\docker\resources\com.docker.backend.exe => No File
FirewallRules: [UDP Query User{67B178AB-6448-49E0-BD89-D98101310F87}C:\program files\docker\docker\resources\com.docker.backend.exe] => (Allow) C:\program files\docker\docker\resources\com.docker.backend.exe => No File
FirewallRules: [TCP Query User{2EB13A60-1C78-40C4-9334-6298A013F7B0}C:\program files (x86)\gz systems\purevpn\purevpn.exe] => (Allow) C:\program files (x86)\gz systems\purevpn\purevpn.exe => No File
FirewallRules: [UDP Query User{6ED330CC-49FF-4524-B76C-E896E6D1B180}C:\program files (x86)\gz systems\purevpn\purevpn.exe] => (Allow) C:\program files (x86)\gz systems\purevpn\purevpn.exe => No File
FirewallRules: [{1378EC31-F890-4B50-A6F8-82A762159FC9}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{2E6B8883-7DC3-492F-B7FF-55CDD663DC27}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{EE3F9BB2-6DA4-4DD3-92A5-CFE207EA9607}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{90AE84E6-AF25-48FF-8E87-CD9E51CE0C4D}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{BC434F6A-2664-41EE-B1A2-2E203C9435F3}] => (Allow) %ProgramFiles%\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [TCP Query User{485C1239-0A7D-447F-89F0-5A6B7D077CAE}C:\users\micha\downloads\anydesk.exe] => (Allow) C:\users\micha\downloads\anydesk.exe => No File
FirewallRules: [UDP Query User{AD38CA56-2A23-4F12-96D6-A761894A58A3}C:\users\micha\downloads\anydesk.exe] => (Allow) C:\users\micha\downloads\anydesk.exe => No File
FirewallRules: [{6245B822-0F08-47AD-8269-E0B68C04BC14}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\ElementsPanelDaemon.exe => No File
FirewallRules: [TCP Query User{9366605A-B99A-4644-81D7-D1CE6FFFA14B}C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe] => (Allow) C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe => No File
FirewallRules: [UDP Query User{B1BD089E-C939-4484-9373-6473763A148B}C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe] => (Allow) C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe => No File
FirewallRules: [TCP Query User{6303E824-75A0-4962-981A-122A4D93EE1B}C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe] => (Block) C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe => No File
FirewallRules: [UDP Query User{9F7EB77E-BED0-493E-84C0-C44F9AC8D0E1}C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe] => (Block) C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe => No File
FirewallRules: [TCP Query User{D31EDD4E-6F1F-48F7-BF04-70624D5CD859}D:\football.life.simulator.early.access\football life simulator.exe] => (Block) D:\football.life.simulator.early.access\football life simulator.exe => No File
FirewallRules: [UDP Query User{415A3AFA-7F76-4442-B9A4-C3D630C920A9}D:\football.life.simulator.early.access\football life simulator.exe] => (Block) D:\football.life.simulator.early.access\football life simulator.exe => No File
FirewallRules: [TCP Query User{FC88C696-51DA-4C64-8193-66421996A2FE}D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe] => (Block) D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe => No File
FirewallRules: [UDP Query User{0C368F59-947E-43F0-8801-48D67EAEA95C}D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe] => (Block) D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe => No File
FirewallRules: [TCP Query User{1B413620-1991-4B9C-A665-08DE87CC761F}D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe] => (Block) D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe => No File
FirewallRules: [UDP Query User{78BE4651-1CCF-4BDB-B782-56D461028DA6}D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe] => (Block) D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe => No File
FirewallRules: [TCP Query User{9863FE5E-073C-4741-9835-2AF7609F2286}D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe] => (Block) D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe => No File
FirewallRules: [UDP Query User{3D1A32C3-C4B8-4BCB-918A-B1F55C7E3BA4}D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe] => (Block) D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe => No File
FirewallRules: [{E79F17D6-ED1E-4DE4-A3B2-4784365B01F1}] => (Allow) D:\SteamLibrary\steamapps\common\Delta Force\Launcher\df_launcher.exe => No File
FirewallRules: [{9EECD3EB-4F9B-46A7-975A-A6E28031CEA0}] => (Allow) D:\SteamLibrary\steamapps\common\Delta Force\Launcher\df_launcher.exe => No File
FirewallRules: [TCP Query User{27BA6085-CFC9-4437-9507-DA440ED57636}E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe] => (Allow) E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe => No File
FirewallRules: [UDP Query User{261BA844-0209-455B-8C8F-EDF6C567C0A0}E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe] => (Allow) E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe => No File
FirewallRules: [{619366B2-C57B-40E0-A55E-730090104413}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe => No File
FirewallRules: [TCP Query User{E66BF433-B841-40DD-B35F-2B0901D71BAE}C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe] => (Block) C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe => No File
FirewallRules: [UDP Query User{E26E2408-5876-4D03-941E-E996B41B9BFC}C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe] => (Block) C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe => No File
FirewallRules: [{17D4C8B3-53E8-4E4A-B51F-6221C67467A5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Phasmophobia\Phasmophobia.exe => No File
FirewallRules: [{BC8EFC50-5F78-4B9E-AEC7-F41F139F5A19}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Phasmophobia\Phasmophobia.exe => No File
FirewallRules: [TCP Query User{3AD948F4-1D6A-4220-9236-6B4A136B9F60}D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe] => (Block) D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe => No File
FirewallRules: [UDP Query User{78CA9D04-A3CD-4C1F-A96C-D66A66373624}D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe] => (Block) D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe => No File
FirewallRules: [{CDAD4C8E-D429-4F51-8219-15326AA59615}] => (Allow) E:\SteamLibrary\steamapps\common\Mafia The Old Country\MafiaTheOldCountry\Binaries\Win64\MafiaTheOldCountry.exe => No File
FirewallRules: [{5B2A4E1C-3EBA-4790-9E81-8F698209F775}] => (Allow) E:\SteamLibrary\steamapps\common\Mafia The Old Country\MafiaTheOldCountry\Binaries\Win64\MafiaTheOldCountry.exe => No File
FirewallRules: [TCP Query User{ED1B53EB-1F37-4865-9AF7-DC72E73392D9}E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe] => (Allow) E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe => No File
FirewallRules: [UDP Query User{0D02FAD8-020B-4609-A000-1DEC57347CF5}E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe] => (Allow) E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe => No File
FirewallRules: [TCP Query User{49223C06-B8A3-408F-9F6D-73A2C0C54603}D:\geo.political.simulator.5.build.21132820\_start.exe] => (Block) D:\geo.political.simulator.5.build.21132820\_start.exe => No File
FirewallRules: [UDP Query User{651650A5-6458-41C0-8FC7-6D16FE172277}D:\geo.political.simulator.5.build.21132820\_start.exe] => (Block) D:\geo.political.simulator.5.build.21132820\_start.exe => No File
FirewallRules: [TCP Query User{8768545B-4649-4DF0-925E-893EA772158D}D:\bank.simulator.build.20501759\bank simulator.exe] => (Block) D:\bank.simulator.build.20501759\bank simulator.exe => No File
FirewallRules: [UDP Query User{52D4F417-1589-49BA-9BC6-DFB9B5B36477}D:\bank.simulator.build.20501759\bank simulator.exe] => (Block) D:\bank.simulator.build.20501759\bank simulator.exe => No File
FirewallRules: [{63542FC3-E15E-4ED1-AF10-E862EF306301}] => (Allow) E:\SteamLibrary\steamapps\common\MarvelRivals\MarvelRivals_Launcher.exe => No File
FirewallRules: [{F8AC2413-BE69-4BD4-99C7-7BE6F6E47E99}] => (Allow) E:\SteamLibrary\steamapps\common\MarvelRivals\MarvelRivals_Launcher.exe => No File
FirewallRules: [TCP Query User{D7566707-6ACB-473F-8391-D06B97EDC2FE}D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe] => (Block) D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe => No File
FirewallRules: [UDP Query User{A21FAB12-608A-4C75-B6B7-F758ADAD27F2}D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe] => (Block) D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe => No File
FirewallRules: [TCP Query User{717727EE-545A-4CBC-B830-E15494BA6714}C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe] => (Block) C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe => No File
FirewallRules: [UDP Query User{67C34866-CEBB-45AA-9493-945586A2E767}C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe] => (Block) C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe => No File
FirewallRules: [TCP Query User{A302FDF6-D4FB-4BD2-93D3-D20A7581706D}D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe] => (Block) D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe => No File
FirewallRules: [UDP Query User{A24B9A21-36B4-4BE5-846C-0C355D0CD68A}D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe] => (Block) D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe => No File
FirewallRules: [{9FAA9656-B894-4090-9C6C-1E1744836F80}] => (Allow) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [{56E477B2-F75E-45A3-B06A-DC0A7E425435}] => (Allow) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [{F0A0F709-9870-4B3A-86CF-E8E51B01274F}] => (Block) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [{D7FACDDF-8015-4085-A0FE-A1AC3CD68917}] => (Block) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [TCP Query User{EE57F4D8-EDA0-4015-AEFE-D5A211453CA8}D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe] => (Block) D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe => No File
FirewallRules: [UDP Query User{666BAD15-61A2-4216-938C-19D73595FABD}D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe] => (Block) D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe => No File
FirewallRules: [{9B4A50DB-9C53-4049-A0F2-B8DD70E3FE08}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\REANIMAL Demo\Everholm\Binaries\Win64\REANIMAL.exe => No File
FirewallRules: [{44F12B77-E7D7-4713-AFF8-BC2DBEAB7CBC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\REANIMAL Demo\Everholm\Binaries\Win64\REANIMAL.exe => No File
FirewallRules: [{7BC07D96-D236-4452-92E6-0F1929373823}] => (Allow) E:\SteamLibrary\steamapps\common\RESIDENT EVIL requiem BIOHAZARD requiem\re9.exe => No File
FirewallRules: [{6040D1B2-7EF1-4EF1-822F-9BE469363A7F}] => (Allow) E:\SteamLibrary\steamapps\common\RESIDENT EVIL requiem BIOHAZARD requiem\re9.exe => No File
FirewallRules: [TCP Query User{F8EC5A97-19AA-43E3-BF64-7C02F1191CFA}C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe] => (Allow) C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe => No File
FirewallRules: [UDP Query User{9BCD94D3-2983-4669-B8F2-9151CD414C11}C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe] => (Allow) C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe => No File
FirewallRules: [TCP Query User{57487E1A-1D38-4C31-A43B-DBF09551A900}D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe] => (Allow) D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe => No File
FirewallRules: [UDP Query User{D2A7A198-93F4-4B0C-8F85-FBD7DA39AFEF}D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe] => (Allow) D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe => No File
FirewallRules: [{2BB9BD6C-1901-4EAB-8634-33EE71AC9580}] => (Allow) E:\FunPlus\Sea of Conquest\Launcher.exe => No File
FirewallRules: [{FE0DAA54-F25E-470E-83C5-26D33F9186FF}] => (Allow) E:\FunPlus\Sea of Conquest\Launcher.exe => No File
FirewallRules: [{949E6E87-2E32-4425-8171-D7017509969C}] => (Allow) E:\FunPlus\Sea of Conquest\ngame\1.1.680.396679\seaofconquest.exe => No File
FirewallRules: [{DE20E273-C14E-439A-9D8E-A9A832E100EC}] => (Allow) E:\FunPlus\Sea of Conquest\ngame\1.1.680.396679\seaofconquest.exe => No File
E:\GTA SAN ANDREAS\HOODLUM\hlm-intro.exe
E:\HOODLUM\hlm-intro.exe
E:\GTA SAN ANDREAS\HOODLUM\hlm-intro.exe
HKLM-x32\...\Run: [mo_pc_offical_soc] => E:\FunPlus\Sea of Conquest\Launcher.exe (No File)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
Task: {4A23D69E-5CF9-42ED-A89C-293693D2BCFB} - System32\Tasks\AVG\AVG Driver Updater Update => C:\Program Files\Common Files\AVG\Icarus\avg-du\icarus.exe /update:avg-du /silent (No File)
Task: {91EA2448-4E55-4FAD-BC70-DAB9590D29B9} - System32\Tasks\ASUS\P508PowerAgent_sdk => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ShareFromArmouryIII\Mouse\ROG STRIX CARRY\P508PowerAgent.exe (No File)
Task: {ABC7034D-3937-4B4A-82C7-95D2D3AE5D97} - System32\Tasks\Microsoft\Windows\Setup\SnapshotCleanupTask => C:\Windows\System32\OOBE\SetupPlatform\SetupPlatform.exe -removesnapshot (No File)
Task: {0BB36A32-0D9E-4297-AFD7-6BD7B5DB4C9B} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: C:\WINDOWS\Tasks\npcapwatchdog.job => C:\Program Files\Npcap\CheckStatus.bat <==== ATTENTION
CHR HKLM-x32\...\Chrome\Extension: [kadaohckdkghfaclhjmkmplebcdcnfnp] - <no Path/update_url>
R3 cpuz158; C:\WINDOWS\temp\cpuz158\cpuz158_x64.sys [44576 2026-06-21] (Microsoft Windows Hardware Compatibility Publisher -> CPUID) <==== ATTENTION
S3 cpuz159; \??\C:\WINDOWS\temp\cpuz159\cpuz159_x64.sys (No File) <==== ATTENTION
C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
C:\Users\micha\AppData\Local\0119AC2FC90D95AC063B177717B7B3B6
C:\Users\micha\AppData\Local\66302C3ABCF0203701B7744560199EA1
C:\Users\micha\AppData\Local\8B1D271A9281777F9A783A29EC6394D2
EmptyTemp:
Hosts:
End
*****************
Processes closed successfully.
(HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\{07F54E47-DE08-486E-921C-D09624774BB6}_is1)<==== ATTENTION => Error: No automatic fix found for this entry.
HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{14100442-9664-1407-2647-000000000000} => removed successfully
HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{73F8144D-FFD8-4496-B65E-4D756FF689FE} => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\PowerISO => removed successfully
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\PowerISO => removed successfully
C:\ProgramData\mntemp => ":8EAD8B3507" ADS removed successfully
C:\ProgramData\tyvfcquz.wxt => ":B63721167D" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk => ":BE32D07BC5" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FACEIT AC.lnk => ":550995E265" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Novabench 5.lnk => ":B68549C808" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Streamlabs Desktop.lnk => ":578370639A" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk => ":F208FC6732" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak.lnk => ":DBB58A0286" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\V380.lnk => ":942A4CABE6" ADS removed successfully
C:\Users\Public\Shared Files => ":VersionCache" ADS removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{BA606EBB-ACA7-464E-89D4-A356F7D7E95F}E:\battlefield 6 event\bf6event.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{FBD4AD8B-A72E-4FAE-9B92-BA605D0FB6D9}E:\battlefield 6 event\bf6event.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{386E5117-D7C3-4CF5-9032-017E7B423828}C:\users\micha\appdata\roaming\bittorrent web\btweb.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{CAF064AD-F740-4F3A-BD93-254EBDBBA0A5}C:\users\micha\appdata\roaming\bittorrent web\btweb.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{E7D841BD-B7A2-414E-AA1D-BD6358E45FE0}C:\program files\bravesoftware\brave-browser\application\brave.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{15475545-4979-4595-B803-073922E0D13F}E:\sea of thieves\call of duty\content\cod.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{71031F81-EE69-4A14-8C9C-5AE66C0E3C42}E:\sea of thieves\call of duty\content\cod.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{8EDE6D18-C435-431A-8552-E7855E62A2C7}E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{8D18AAD1-B496-4F5D-97BE-8DF5127BAF68}E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{131E5D88-F4CC-4A8C-ADD0-88EAAF24FCB9}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1E7BE9C4-0658-45E4-B65F-A85929E8B901}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{1020EA32-7A2C-4C37-9D71-963B86C936F7}E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{C0D520F0-B762-490B-873D-D151DA181329}E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{974B5E9C-F3DC-49BB-955A-C2994803E1B1}C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{3C8F5FBB-6F9F-464B-90C3-234A1ED944ED}C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E84C56EB-0377-4BF3-9DB9-785A2DAF4798}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{0670EDD1-9B02-4342-8360-761EB4B60763}D:\davinci\resolve.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{A9281C5A-67BA-44EE-91CD-3F30EF7C880B}D:\davinci\resolve.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F873D22A-8197-497F-9730-3C660A093C3E}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2E7AB9CD-A6C1-4429-86C0-62665E93CDE7}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{8BCC2B64-0E9C-4DF8-8046-3FFCDBF0DAE2}D:\world_of_tanks_eu\win64\worldoftanks.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{020F479B-87E5-41C7-8447-D18C7F33A816}C:\program files\docker\docker\resources\com.docker.backend.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{67B178AB-6448-49E0-BD89-D98101310F87}C:\program files\docker\docker\resources\com.docker.backend.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{2EB13A60-1C78-40C4-9334-6298A013F7B0}C:\program files (x86)\gz systems\purevpn\purevpn.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{6ED330CC-49FF-4524-B76C-E896E6D1B180}C:\program files (x86)\gz systems\purevpn\purevpn.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1378EC31-F890-4B50-A6F8-82A762159FC9}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2E6B8883-7DC3-492F-B7FF-55CDD663DC27}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{EE3F9BB2-6DA4-4DD3-92A5-CFE207EA9607}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{90AE84E6-AF25-48FF-8E87-CD9E51CE0C4D}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BC434F6A-2664-41EE-B1A2-2E203C9435F3}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{485C1239-0A7D-447F-89F0-5A6B7D077CAE}C:\users\micha\downloads\anydesk.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{AD38CA56-2A23-4F12-96D6-A761894A58A3}C:\users\micha\downloads\anydesk.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6245B822-0F08-47AD-8269-E0B68C04BC14}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{9366605A-B99A-4644-81D7-D1CE6FFFA14B}C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{B1BD089E-C939-4484-9373-6473763A148B}C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{6303E824-75A0-4962-981A-122A4D93EE1B}C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{9F7EB77E-BED0-493E-84C0-C44F9AC8D0E1}C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{D31EDD4E-6F1F-48F7-BF04-70624D5CD859}D:\football.life.simulator.early.access\football life simulator.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{415A3AFA-7F76-4442-B9A4-C3D630C920A9}D:\football.life.simulator.early.access\football life simulator.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{FC88C696-51DA-4C64-8193-66421996A2FE}D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{0C368F59-947E-43F0-8801-48D67EAEA95C}D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{1B413620-1991-4B9C-A665-08DE87CC761F}D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{78BE4651-1CCF-4BDB-B782-56D461028DA6}D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{9863FE5E-073C-4741-9835-2AF7609F2286}D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{3D1A32C3-C4B8-4BCB-918A-B1F55C7E3BA4}D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E79F17D6-ED1E-4DE4-A3B2-4784365B01F1}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9EECD3EB-4F9B-46A7-975A-A6E28031CEA0}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{27BA6085-CFC9-4437-9507-DA440ED57636}E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{261BA844-0209-455B-8C8F-EDF6C567C0A0}E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{619366B2-C57B-40E0-A55E-730090104413}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{E66BF433-B841-40DD-B35F-2B0901D71BAE}C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{E26E2408-5876-4D03-941E-E996B41B9BFC}C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{17D4C8B3-53E8-4E4A-B51F-6221C67467A5}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BC8EFC50-5F78-4B9E-AEC7-F41F139F5A19}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{3AD948F4-1D6A-4220-9236-6B4A136B9F60}D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{78CA9D04-A3CD-4C1F-A96C-D66A66373624}D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{CDAD4C8E-D429-4F51-8219-15326AA59615}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{5B2A4E1C-3EBA-4790-9E81-8F698209F775}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{ED1B53EB-1F37-4865-9AF7-DC72E73392D9}E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{0D02FAD8-020B-4609-A000-1DEC57347CF5}E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{49223C06-B8A3-408F-9F6D-73A2C0C54603}D:\geo.political.simulator.5.build.21132820\_start.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{651650A5-6458-41C0-8FC7-6D16FE172277}D:\geo.political.simulator.5.build.21132820\_start.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{8768545B-4649-4DF0-925E-893EA772158D}D:\bank.simulator.build.20501759\bank simulator.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{52D4F417-1589-49BA-9BC6-DFB9B5B36477}D:\bank.simulator.build.20501759\bank simulator.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{63542FC3-E15E-4ED1-AF10-E862EF306301}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F8AC2413-BE69-4BD4-99C7-7BE6F6E47E99}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{D7566707-6ACB-473F-8391-D06B97EDC2FE}D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{A21FAB12-608A-4C75-B6B7-F758ADAD27F2}D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{717727EE-545A-4CBC-B830-E15494BA6714}C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{67C34866-CEBB-45AA-9493-945586A2E767}C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{A302FDF6-D4FB-4BD2-93D3-D20A7581706D}D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{A24B9A21-36B4-4BE5-846C-0C355D0CD68A}D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9FAA9656-B894-4090-9C6C-1E1744836F80}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{56E477B2-F75E-45A3-B06A-DC0A7E425435}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F0A0F709-9870-4B3A-86CF-E8E51B01274F}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D7FACDDF-8015-4085-A0FE-A1AC3CD68917}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{EE57F4D8-EDA0-4015-AEFE-D5A211453CA8}D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{666BAD15-61A2-4216-938C-19D73595FABD}D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9B4A50DB-9C53-4049-A0F2-B8DD70E3FE08}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{44F12B77-E7D7-4713-AFF8-BC2DBEAB7CBC}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7BC07D96-D236-4452-92E6-0F1929373823}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6040D1B2-7EF1-4EF1-822F-9BE469363A7F}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{F8EC5A97-19AA-43E3-BF64-7C02F1191CFA}C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{9BCD94D3-2983-4669-B8F2-9151CD414C11}C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{57487E1A-1D38-4C31-A43B-DBF09551A900}D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{D2A7A198-93F4-4B0C-8F85-FBD7DA39AFEF}D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2BB9BD6C-1901-4EAB-8634-33EE71AC9580}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{FE0DAA54-F25E-470E-83C5-26D33F9186FF}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{949E6E87-2E32-4425-8171-D7017509969C}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{DE20E273-C14E-439A-9D8E-A9A832E100EC}" => removed successfully
E:\GTA SAN ANDREAS\HOODLUM\hlm-intro.exe => moved successfully
E:\HOODLUM\hlm-intro.exe => moved successfully
"E:\GTA SAN ANDREAS\HOODLUM\hlm-intro.exe" => not found
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\mo_pc_offical_soc" => removed successfully
"C:\WINDOWS\system32\GroupPolicy\Machine" Folder move:
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => moved successfully
C:\ProgramData\NTUSER.pol => moved successfully
HKLM\SOFTWARE\Policies\Google => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{4A23D69E-5CF9-42ED-A89C-293693D2BCFB}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4A23D69E-5CF9-42ED-A89C-293693D2BCFB}" => removed successfully
C:\WINDOWS\System32\Tasks\AVG\AVG Driver Updater Update => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AVG\AVG Driver Updater Update" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{91EA2448-4E55-4FAD-BC70-DAB9590D29B9}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{91EA2448-4E55-4FAD-BC70-DAB9590D29B9}" => removed successfully
C:\WINDOWS\System32\Tasks\ASUS\P508PowerAgent_sdk => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ASUS\P508PowerAgent_sdk" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{ABC7034D-3937-4B4A-82C7-95D2D3AE5D97}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{ABC7034D-3937-4B4A-82C7-95D2D3AE5D97}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Setup\SnapshotCleanupTask => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\SnapshotCleanupTask" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0BB36A32-0D9E-4297-AFD7-6BD7B5DB4C9B}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0BB36A32-0D9E-4297-AFD7-6BD7B5DB4C9B}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunUpdateNotificationMgr" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker" => removed successfully
C:\WINDOWS\Tasks\npcapwatchdog.job => moved successfully
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\kadaohckdkghfaclhjmkmplebcdcnfnp => removed successfully
cpuz158 => Service stopped successfully.
HKLM\System\CurrentControlSet\Services\cpuz158 => removed successfully
cpuz158 => service removed successfully
HKLM\System\CurrentControlSet\Services\cpuz159 => removed successfully
cpuz159 => service removed successfully
Could not move "C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2" => Scheduled to move on reboot.
C:\Users\micha\AppData\Local\0119AC2FC90D95AC063B177717B7B3B6 => moved successfully
C:\Users\micha\AppData\Local\66302C3ABCF0203701B7744560199EA1 => moved successfully
C:\Users\micha\AppData\Local\8B1D271A9281777F9A783A29EC6394D2 => moved successfully
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.
=========== EmptyTemp: ==========
FlushDNS => completed
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 189563174 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 471771544 B
Windows/system/drivers => 135007285 B
Edge => 117706374 B
Chrome => 235332767 B
Brave => 487844641 B
Firefox => 56820878 B
Opera => 0 B
Local\Temp, Local\*.tmp, LocalLow\Temp, Roaming\Temp, Roaming\*.tmp , IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 252 B
systemprofile32 => 698138 B
LocalService => 5754 B
NetworkService => 170856 B
micha => 24706178365 B
RecycleBin => 13560774059 B
EmptyTemp: => 37.2 GB temporary data Removed.
================================
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 21-06-2026 13:47:43)
C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2 => Could not move
==== End of Fixlog 13:47:43 ====
Ran by micha (21-06-2026 13:39:19) Run:1
Running from C:\Users\micha\OneDrive\Plocha
Loaded Profiles: micha
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
(HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\{07F54E47-DE08-486E-921C-D09624774BB6}_is1)<==== ATTENTION
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{14100442-9664-1407-2647-000000000000}\localserver32 -> "C:\Users\micha\AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{73F8144D-FFD8-4496-B65E-4D756FF689FE}\localserver32 -> "c:\program files (x86)\bytedance\douyin\7.3.0\tray\douyin_tray.exe" ----AppNotificationActivated: => No File
ContextMenuHandlers4: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => -> No File
ContextMenuHandlers6: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => -> No File
AlternateDataStreams: C:\ProgramData\mntemp:8EAD8B3507 [3442]
AlternateDataStreams: C:\ProgramData\tyvfcquz.wxt:B63721167D [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk:BE32D07BC5 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FACEIT AC.lnk:550995E265 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Novabench 5.lnk:B68549C808 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Streamlabs Desktop.lnk:578370639A [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk:F208FC6732 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak.lnk:DBB58A0286 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\V380.lnk:942A4CABE6 [3442]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [5646]
FirewallRules: [UDP Query User{BA606EBB-ACA7-464E-89D4-A356F7D7E95F}E:\battlefield 6 event\bf6event.exe] => (Allow) E:\battlefield 6 event\bf6event.exe => No File
FirewallRules: [TCP Query User{FBD4AD8B-A72E-4FAE-9B92-BA605D0FB6D9}E:\battlefield 6 event\bf6event.exe] => (Allow) E:\battlefield 6 event\bf6event.exe => No File
FirewallRules: [TCP Query User{386E5117-D7C3-4CF5-9032-017E7B423828}C:\users\micha\appdata\roaming\bittorrent web\btweb.exe] => (Block) C:\users\micha\appdata\roaming\bittorrent web\btweb.exe => No File
FirewallRules: [UDP Query User{CAF064AD-F740-4F3A-BD93-254EBDBBA0A5}C:\users\micha\appdata\roaming\bittorrent web\btweb.exe] => (Block) C:\users\micha\appdata\roaming\bittorrent web\btweb.exe => No File
FirewallRules: [UDP Query User{E7D841BD-B7A2-414E-AA1D-BD6358E45FE0}C:\program files\bravesoftware\brave-browser\application\brave.exe] => (Allow) C:\program files\bravesoftware\brave-browser\application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [TCP Query User{15475545-4979-4595-B803-073922E0D13F}E:\sea of thieves\call of duty\content\cod.exe] => (Allow) E:\sea of thieves\call of duty\content\cod.exe => No File
FirewallRules: [UDP Query User{71031F81-EE69-4A14-8C9C-5AE66C0E3C42}E:\sea of thieves\call of duty\content\cod.exe] => (Allow) E:\sea of thieves\call of duty\content\cod.exe => No File
FirewallRules: [TCP Query User{8EDE6D18-C435-431A-8552-E7855E62A2C7}E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe] => (Allow) E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe => No File
FirewallRules: [UDP Query User{8D18AAD1-B496-4F5D-97BE-8DF5127BAF68}E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe] => (Allow) E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe => No File
FirewallRules: [{131E5D88-F4CC-4A8C-ADD0-88EAAF24FCB9}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{1E7BE9C4-0658-45E4-B65F-A85929E8B901}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [TCP Query User{1020EA32-7A2C-4C37-9D71-963B86C936F7}E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe] => (Block) E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe => No File
FirewallRules: [UDP Query User{C0D520F0-B762-490B-873D-D151DA181329}E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe] => (Block) E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe => No File
FirewallRules: [TCP Query User{974B5E9C-F3DC-49BB-955A-C2994803E1B1}C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe => No File
FirewallRules: [UDP Query User{3C8F5FBB-6F9F-464B-90C3-234A1ED944ED}C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe => No File
FirewallRules: [{E84C56EB-0377-4BF3-9DB9-785A2DAF4798}] => (Allow) C:\Users\micha\AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe => No File
FirewallRules: [TCP Query User{0670EDD1-9B02-4342-8360-761EB4B60763}D:\davinci\resolve.exe] => (Block) D:\davinci\resolve.exe => No File
FirewallRules: [UDP Query User{A9281C5A-67BA-44EE-91CD-3F30EF7C880B}D:\davinci\resolve.exe] => (Block) D:\davinci\resolve.exe => No File
FirewallRules: [{F873D22A-8197-497F-9730-3C660A093C3E}] => (Allow) D:\SteamLibrary\steamapps\common\Ready Or Not\Engine\Binaries\Win64\CrashReporter.exe => No File
FirewallRules: [{2E7AB9CD-A6C1-4429-86C0-62665E93CDE7}] => (Allow) D:\SteamLibrary\steamapps\common\Ready Or Not\Engine\Binaries\Win64\CrashReporter.exe => No File
FirewallRules: [UDP Query User{8BCC2B64-0E9C-4DF8-8046-3FFCDBF0DAE2}D:\world_of_tanks_eu\win64\worldoftanks.exe] => (Block) D:\world_of_tanks_eu\win64\worldoftanks.exe => No File
FirewallRules: [TCP Query User{020F479B-87E5-41C7-8447-D18C7F33A816}C:\program files\docker\docker\resources\com.docker.backend.exe] => (Allow) C:\program files\docker\docker\resources\com.docker.backend.exe => No File
FirewallRules: [UDP Query User{67B178AB-6448-49E0-BD89-D98101310F87}C:\program files\docker\docker\resources\com.docker.backend.exe] => (Allow) C:\program files\docker\docker\resources\com.docker.backend.exe => No File
FirewallRules: [TCP Query User{2EB13A60-1C78-40C4-9334-6298A013F7B0}C:\program files (x86)\gz systems\purevpn\purevpn.exe] => (Allow) C:\program files (x86)\gz systems\purevpn\purevpn.exe => No File
FirewallRules: [UDP Query User{6ED330CC-49FF-4524-B76C-E896E6D1B180}C:\program files (x86)\gz systems\purevpn\purevpn.exe] => (Allow) C:\program files (x86)\gz systems\purevpn\purevpn.exe => No File
FirewallRules: [{1378EC31-F890-4B50-A6F8-82A762159FC9}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{2E6B8883-7DC3-492F-B7FF-55CDD663DC27}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{EE3F9BB2-6DA4-4DD3-92A5-CFE207EA9607}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{90AE84E6-AF25-48FF-8E87-CD9E51CE0C4D}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{BC434F6A-2664-41EE-B1A2-2E203C9435F3}] => (Allow) %ProgramFiles%\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [TCP Query User{485C1239-0A7D-447F-89F0-5A6B7D077CAE}C:\users\micha\downloads\anydesk.exe] => (Allow) C:\users\micha\downloads\anydesk.exe => No File
FirewallRules: [UDP Query User{AD38CA56-2A23-4F12-96D6-A761894A58A3}C:\users\micha\downloads\anydesk.exe] => (Allow) C:\users\micha\downloads\anydesk.exe => No File
FirewallRules: [{6245B822-0F08-47AD-8269-E0B68C04BC14}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\ElementsPanelDaemon.exe => No File
FirewallRules: [TCP Query User{9366605A-B99A-4644-81D7-D1CE6FFFA14B}C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe] => (Allow) C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe => No File
FirewallRules: [UDP Query User{B1BD089E-C939-4484-9373-6473763A148B}C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe] => (Allow) C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe => No File
FirewallRules: [TCP Query User{6303E824-75A0-4962-981A-122A4D93EE1B}C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe] => (Block) C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe => No File
FirewallRules: [UDP Query User{9F7EB77E-BED0-493E-84C0-C44F9AC8D0E1}C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe] => (Block) C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe => No File
FirewallRules: [TCP Query User{D31EDD4E-6F1F-48F7-BF04-70624D5CD859}D:\football.life.simulator.early.access\football life simulator.exe] => (Block) D:\football.life.simulator.early.access\football life simulator.exe => No File
FirewallRules: [UDP Query User{415A3AFA-7F76-4442-B9A4-C3D630C920A9}D:\football.life.simulator.early.access\football life simulator.exe] => (Block) D:\football.life.simulator.early.access\football life simulator.exe => No File
FirewallRules: [TCP Query User{FC88C696-51DA-4C64-8193-66421996A2FE}D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe] => (Block) D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe => No File
FirewallRules: [UDP Query User{0C368F59-947E-43F0-8801-48D67EAEA95C}D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe] => (Block) D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe => No File
FirewallRules: [TCP Query User{1B413620-1991-4B9C-A665-08DE87CC761F}D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe] => (Block) D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe => No File
FirewallRules: [UDP Query User{78BE4651-1CCF-4BDB-B782-56D461028DA6}D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe] => (Block) D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe => No File
FirewallRules: [TCP Query User{9863FE5E-073C-4741-9835-2AF7609F2286}D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe] => (Block) D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe => No File
FirewallRules: [UDP Query User{3D1A32C3-C4B8-4BCB-918A-B1F55C7E3BA4}D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe] => (Block) D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe => No File
FirewallRules: [{E79F17D6-ED1E-4DE4-A3B2-4784365B01F1}] => (Allow) D:\SteamLibrary\steamapps\common\Delta Force\Launcher\df_launcher.exe => No File
FirewallRules: [{9EECD3EB-4F9B-46A7-975A-A6E28031CEA0}] => (Allow) D:\SteamLibrary\steamapps\common\Delta Force\Launcher\df_launcher.exe => No File
FirewallRules: [TCP Query User{27BA6085-CFC9-4437-9507-DA440ED57636}E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe] => (Allow) E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe => No File
FirewallRules: [UDP Query User{261BA844-0209-455B-8C8F-EDF6C567C0A0}E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe] => (Allow) E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe => No File
FirewallRules: [{619366B2-C57B-40E0-A55E-730090104413}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe => No File
FirewallRules: [TCP Query User{E66BF433-B841-40DD-B35F-2B0901D71BAE}C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe] => (Block) C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe => No File
FirewallRules: [UDP Query User{E26E2408-5876-4D03-941E-E996B41B9BFC}C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe] => (Block) C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe => No File
FirewallRules: [{17D4C8B3-53E8-4E4A-B51F-6221C67467A5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Phasmophobia\Phasmophobia.exe => No File
FirewallRules: [{BC8EFC50-5F78-4B9E-AEC7-F41F139F5A19}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Phasmophobia\Phasmophobia.exe => No File
FirewallRules: [TCP Query User{3AD948F4-1D6A-4220-9236-6B4A136B9F60}D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe] => (Block) D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe => No File
FirewallRules: [UDP Query User{78CA9D04-A3CD-4C1F-A96C-D66A66373624}D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe] => (Block) D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe => No File
FirewallRules: [{CDAD4C8E-D429-4F51-8219-15326AA59615}] => (Allow) E:\SteamLibrary\steamapps\common\Mafia The Old Country\MafiaTheOldCountry\Binaries\Win64\MafiaTheOldCountry.exe => No File
FirewallRules: [{5B2A4E1C-3EBA-4790-9E81-8F698209F775}] => (Allow) E:\SteamLibrary\steamapps\common\Mafia The Old Country\MafiaTheOldCountry\Binaries\Win64\MafiaTheOldCountry.exe => No File
FirewallRules: [TCP Query User{ED1B53EB-1F37-4865-9AF7-DC72E73392D9}E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe] => (Allow) E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe => No File
FirewallRules: [UDP Query User{0D02FAD8-020B-4609-A000-1DEC57347CF5}E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe] => (Allow) E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe => No File
FirewallRules: [TCP Query User{49223C06-B8A3-408F-9F6D-73A2C0C54603}D:\geo.political.simulator.5.build.21132820\_start.exe] => (Block) D:\geo.political.simulator.5.build.21132820\_start.exe => No File
FirewallRules: [UDP Query User{651650A5-6458-41C0-8FC7-6D16FE172277}D:\geo.political.simulator.5.build.21132820\_start.exe] => (Block) D:\geo.political.simulator.5.build.21132820\_start.exe => No File
FirewallRules: [TCP Query User{8768545B-4649-4DF0-925E-893EA772158D}D:\bank.simulator.build.20501759\bank simulator.exe] => (Block) D:\bank.simulator.build.20501759\bank simulator.exe => No File
FirewallRules: [UDP Query User{52D4F417-1589-49BA-9BC6-DFB9B5B36477}D:\bank.simulator.build.20501759\bank simulator.exe] => (Block) D:\bank.simulator.build.20501759\bank simulator.exe => No File
FirewallRules: [{63542FC3-E15E-4ED1-AF10-E862EF306301}] => (Allow) E:\SteamLibrary\steamapps\common\MarvelRivals\MarvelRivals_Launcher.exe => No File
FirewallRules: [{F8AC2413-BE69-4BD4-99C7-7BE6F6E47E99}] => (Allow) E:\SteamLibrary\steamapps\common\MarvelRivals\MarvelRivals_Launcher.exe => No File
FirewallRules: [TCP Query User{D7566707-6ACB-473F-8391-D06B97EDC2FE}D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe] => (Block) D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe => No File
FirewallRules: [UDP Query User{A21FAB12-608A-4C75-B6B7-F758ADAD27F2}D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe] => (Block) D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe => No File
FirewallRules: [TCP Query User{717727EE-545A-4CBC-B830-E15494BA6714}C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe] => (Block) C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe => No File
FirewallRules: [UDP Query User{67C34866-CEBB-45AA-9493-945586A2E767}C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe] => (Block) C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe => No File
FirewallRules: [TCP Query User{A302FDF6-D4FB-4BD2-93D3-D20A7581706D}D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe] => (Block) D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe => No File
FirewallRules: [UDP Query User{A24B9A21-36B4-4BE5-846C-0C355D0CD68A}D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe] => (Block) D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe => No File
FirewallRules: [{9FAA9656-B894-4090-9C6C-1E1744836F80}] => (Allow) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [{56E477B2-F75E-45A3-B06A-DC0A7E425435}] => (Allow) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [{F0A0F709-9870-4B3A-86CF-E8E51B01274F}] => (Block) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [{D7FACDDF-8015-4085-A0FE-A1AC3CD68917}] => (Block) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [TCP Query User{EE57F4D8-EDA0-4015-AEFE-D5A211453CA8}D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe] => (Block) D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe => No File
FirewallRules: [UDP Query User{666BAD15-61A2-4216-938C-19D73595FABD}D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe] => (Block) D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe => No File
FirewallRules: [{9B4A50DB-9C53-4049-A0F2-B8DD70E3FE08}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\REANIMAL Demo\Everholm\Binaries\Win64\REANIMAL.exe => No File
FirewallRules: [{44F12B77-E7D7-4713-AFF8-BC2DBEAB7CBC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\REANIMAL Demo\Everholm\Binaries\Win64\REANIMAL.exe => No File
FirewallRules: [{7BC07D96-D236-4452-92E6-0F1929373823}] => (Allow) E:\SteamLibrary\steamapps\common\RESIDENT EVIL requiem BIOHAZARD requiem\re9.exe => No File
FirewallRules: [{6040D1B2-7EF1-4EF1-822F-9BE469363A7F}] => (Allow) E:\SteamLibrary\steamapps\common\RESIDENT EVIL requiem BIOHAZARD requiem\re9.exe => No File
FirewallRules: [TCP Query User{F8EC5A97-19AA-43E3-BF64-7C02F1191CFA}C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe] => (Allow) C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe => No File
FirewallRules: [UDP Query User{9BCD94D3-2983-4669-B8F2-9151CD414C11}C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe] => (Allow) C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe => No File
FirewallRules: [TCP Query User{57487E1A-1D38-4C31-A43B-DBF09551A900}D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe] => (Allow) D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe => No File
FirewallRules: [UDP Query User{D2A7A198-93F4-4B0C-8F85-FBD7DA39AFEF}D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe] => (Allow) D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe => No File
FirewallRules: [{2BB9BD6C-1901-4EAB-8634-33EE71AC9580}] => (Allow) E:\FunPlus\Sea of Conquest\Launcher.exe => No File
FirewallRules: [{FE0DAA54-F25E-470E-83C5-26D33F9186FF}] => (Allow) E:\FunPlus\Sea of Conquest\Launcher.exe => No File
FirewallRules: [{949E6E87-2E32-4425-8171-D7017509969C}] => (Allow) E:\FunPlus\Sea of Conquest\ngame\1.1.680.396679\seaofconquest.exe => No File
FirewallRules: [{DE20E273-C14E-439A-9D8E-A9A832E100EC}] => (Allow) E:\FunPlus\Sea of Conquest\ngame\1.1.680.396679\seaofconquest.exe => No File
E:\GTA SAN ANDREAS\HOODLUM\hlm-intro.exe
E:\HOODLUM\hlm-intro.exe
E:\GTA SAN ANDREAS\HOODLUM\hlm-intro.exe
HKLM-x32\...\Run: [mo_pc_offical_soc] => E:\FunPlus\Sea of Conquest\Launcher.exe (No File)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
Task: {4A23D69E-5CF9-42ED-A89C-293693D2BCFB} - System32\Tasks\AVG\AVG Driver Updater Update => C:\Program Files\Common Files\AVG\Icarus\avg-du\icarus.exe /update:avg-du /silent (No File)
Task: {91EA2448-4E55-4FAD-BC70-DAB9590D29B9} - System32\Tasks\ASUS\P508PowerAgent_sdk => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ShareFromArmouryIII\Mouse\ROG STRIX CARRY\P508PowerAgent.exe (No File)
Task: {ABC7034D-3937-4B4A-82C7-95D2D3AE5D97} - System32\Tasks\Microsoft\Windows\Setup\SnapshotCleanupTask => C:\Windows\System32\OOBE\SetupPlatform\SetupPlatform.exe -removesnapshot (No File)
Task: {0BB36A32-0D9E-4297-AFD7-6BD7B5DB4C9B} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: C:\WINDOWS\Tasks\npcapwatchdog.job => C:\Program Files\Npcap\CheckStatus.bat <==== ATTENTION
CHR HKLM-x32\...\Chrome\Extension: [kadaohckdkghfaclhjmkmplebcdcnfnp] - <no Path/update_url>
R3 cpuz158; C:\WINDOWS\temp\cpuz158\cpuz158_x64.sys [44576 2026-06-21] (Microsoft Windows Hardware Compatibility Publisher -> CPUID) <==== ATTENTION
S3 cpuz159; \??\C:\WINDOWS\temp\cpuz159\cpuz159_x64.sys (No File) <==== ATTENTION
C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
C:\Users\micha\AppData\Local\0119AC2FC90D95AC063B177717B7B3B6
C:\Users\micha\AppData\Local\66302C3ABCF0203701B7744560199EA1
C:\Users\micha\AppData\Local\8B1D271A9281777F9A783A29EC6394D2
EmptyTemp:
Hosts:
End
*****************
Processes closed successfully.
(HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\{07F54E47-DE08-486E-921C-D09624774BB6}_is1)<==== ATTENTION => Error: No automatic fix found for this entry.
HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{14100442-9664-1407-2647-000000000000} => removed successfully
HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{73F8144D-FFD8-4496-B65E-4D756FF689FE} => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\PowerISO => removed successfully
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\PowerISO => removed successfully
C:\ProgramData\mntemp => ":8EAD8B3507" ADS removed successfully
C:\ProgramData\tyvfcquz.wxt => ":B63721167D" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk => ":BE32D07BC5" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FACEIT AC.lnk => ":550995E265" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Novabench 5.lnk => ":B68549C808" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Streamlabs Desktop.lnk => ":578370639A" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk => ":F208FC6732" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak.lnk => ":DBB58A0286" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\V380.lnk => ":942A4CABE6" ADS removed successfully
C:\Users\Public\Shared Files => ":VersionCache" ADS removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{BA606EBB-ACA7-464E-89D4-A356F7D7E95F}E:\battlefield 6 event\bf6event.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{FBD4AD8B-A72E-4FAE-9B92-BA605D0FB6D9}E:\battlefield 6 event\bf6event.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{386E5117-D7C3-4CF5-9032-017E7B423828}C:\users\micha\appdata\roaming\bittorrent web\btweb.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{CAF064AD-F740-4F3A-BD93-254EBDBBA0A5}C:\users\micha\appdata\roaming\bittorrent web\btweb.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{E7D841BD-B7A2-414E-AA1D-BD6358E45FE0}C:\program files\bravesoftware\brave-browser\application\brave.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{15475545-4979-4595-B803-073922E0D13F}E:\sea of thieves\call of duty\content\cod.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{71031F81-EE69-4A14-8C9C-5AE66C0E3C42}E:\sea of thieves\call of duty\content\cod.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{8EDE6D18-C435-431A-8552-E7855E62A2C7}E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{8D18AAD1-B496-4F5D-97BE-8DF5127BAF68}E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{131E5D88-F4CC-4A8C-ADD0-88EAAF24FCB9}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1E7BE9C4-0658-45E4-B65F-A85929E8B901}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{1020EA32-7A2C-4C37-9D71-963B86C936F7}E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{C0D520F0-B762-490B-873D-D151DA181329}E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{974B5E9C-F3DC-49BB-955A-C2994803E1B1}C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{3C8F5FBB-6F9F-464B-90C3-234A1ED944ED}C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E84C56EB-0377-4BF3-9DB9-785A2DAF4798}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{0670EDD1-9B02-4342-8360-761EB4B60763}D:\davinci\resolve.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{A9281C5A-67BA-44EE-91CD-3F30EF7C880B}D:\davinci\resolve.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F873D22A-8197-497F-9730-3C660A093C3E}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2E7AB9CD-A6C1-4429-86C0-62665E93CDE7}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{8BCC2B64-0E9C-4DF8-8046-3FFCDBF0DAE2}D:\world_of_tanks_eu\win64\worldoftanks.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{020F479B-87E5-41C7-8447-D18C7F33A816}C:\program files\docker\docker\resources\com.docker.backend.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{67B178AB-6448-49E0-BD89-D98101310F87}C:\program files\docker\docker\resources\com.docker.backend.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{2EB13A60-1C78-40C4-9334-6298A013F7B0}C:\program files (x86)\gz systems\purevpn\purevpn.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{6ED330CC-49FF-4524-B76C-E896E6D1B180}C:\program files (x86)\gz systems\purevpn\purevpn.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1378EC31-F890-4B50-A6F8-82A762159FC9}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2E6B8883-7DC3-492F-B7FF-55CDD663DC27}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{EE3F9BB2-6DA4-4DD3-92A5-CFE207EA9607}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{90AE84E6-AF25-48FF-8E87-CD9E51CE0C4D}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BC434F6A-2664-41EE-B1A2-2E203C9435F3}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{485C1239-0A7D-447F-89F0-5A6B7D077CAE}C:\users\micha\downloads\anydesk.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{AD38CA56-2A23-4F12-96D6-A761894A58A3}C:\users\micha\downloads\anydesk.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6245B822-0F08-47AD-8269-E0B68C04BC14}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{9366605A-B99A-4644-81D7-D1CE6FFFA14B}C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{B1BD089E-C939-4484-9373-6473763A148B}C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{6303E824-75A0-4962-981A-122A4D93EE1B}C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{9F7EB77E-BED0-493E-84C0-C44F9AC8D0E1}C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{D31EDD4E-6F1F-48F7-BF04-70624D5CD859}D:\football.life.simulator.early.access\football life simulator.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{415A3AFA-7F76-4442-B9A4-C3D630C920A9}D:\football.life.simulator.early.access\football life simulator.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{FC88C696-51DA-4C64-8193-66421996A2FE}D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{0C368F59-947E-43F0-8801-48D67EAEA95C}D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{1B413620-1991-4B9C-A665-08DE87CC761F}D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{78BE4651-1CCF-4BDB-B782-56D461028DA6}D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{9863FE5E-073C-4741-9835-2AF7609F2286}D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{3D1A32C3-C4B8-4BCB-918A-B1F55C7E3BA4}D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E79F17D6-ED1E-4DE4-A3B2-4784365B01F1}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9EECD3EB-4F9B-46A7-975A-A6E28031CEA0}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{27BA6085-CFC9-4437-9507-DA440ED57636}E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{261BA844-0209-455B-8C8F-EDF6C567C0A0}E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{619366B2-C57B-40E0-A55E-730090104413}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{E66BF433-B841-40DD-B35F-2B0901D71BAE}C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{E26E2408-5876-4D03-941E-E996B41B9BFC}C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{17D4C8B3-53E8-4E4A-B51F-6221C67467A5}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BC8EFC50-5F78-4B9E-AEC7-F41F139F5A19}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{3AD948F4-1D6A-4220-9236-6B4A136B9F60}D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{78CA9D04-A3CD-4C1F-A96C-D66A66373624}D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{CDAD4C8E-D429-4F51-8219-15326AA59615}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{5B2A4E1C-3EBA-4790-9E81-8F698209F775}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{ED1B53EB-1F37-4865-9AF7-DC72E73392D9}E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{0D02FAD8-020B-4609-A000-1DEC57347CF5}E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{49223C06-B8A3-408F-9F6D-73A2C0C54603}D:\geo.political.simulator.5.build.21132820\_start.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{651650A5-6458-41C0-8FC7-6D16FE172277}D:\geo.political.simulator.5.build.21132820\_start.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{8768545B-4649-4DF0-925E-893EA772158D}D:\bank.simulator.build.20501759\bank simulator.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{52D4F417-1589-49BA-9BC6-DFB9B5B36477}D:\bank.simulator.build.20501759\bank simulator.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{63542FC3-E15E-4ED1-AF10-E862EF306301}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F8AC2413-BE69-4BD4-99C7-7BE6F6E47E99}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{D7566707-6ACB-473F-8391-D06B97EDC2FE}D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{A21FAB12-608A-4C75-B6B7-F758ADAD27F2}D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{717727EE-545A-4CBC-B830-E15494BA6714}C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{67C34866-CEBB-45AA-9493-945586A2E767}C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{A302FDF6-D4FB-4BD2-93D3-D20A7581706D}D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{A24B9A21-36B4-4BE5-846C-0C355D0CD68A}D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9FAA9656-B894-4090-9C6C-1E1744836F80}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{56E477B2-F75E-45A3-B06A-DC0A7E425435}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F0A0F709-9870-4B3A-86CF-E8E51B01274F}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D7FACDDF-8015-4085-A0FE-A1AC3CD68917}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{EE57F4D8-EDA0-4015-AEFE-D5A211453CA8}D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{666BAD15-61A2-4216-938C-19D73595FABD}D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9B4A50DB-9C53-4049-A0F2-B8DD70E3FE08}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{44F12B77-E7D7-4713-AFF8-BC2DBEAB7CBC}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7BC07D96-D236-4452-92E6-0F1929373823}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6040D1B2-7EF1-4EF1-822F-9BE469363A7F}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{F8EC5A97-19AA-43E3-BF64-7C02F1191CFA}C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{9BCD94D3-2983-4669-B8F2-9151CD414C11}C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{57487E1A-1D38-4C31-A43B-DBF09551A900}D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{D2A7A198-93F4-4B0C-8F85-FBD7DA39AFEF}D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2BB9BD6C-1901-4EAB-8634-33EE71AC9580}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{FE0DAA54-F25E-470E-83C5-26D33F9186FF}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{949E6E87-2E32-4425-8171-D7017509969C}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{DE20E273-C14E-439A-9D8E-A9A832E100EC}" => removed successfully
E:\GTA SAN ANDREAS\HOODLUM\hlm-intro.exe => moved successfully
E:\HOODLUM\hlm-intro.exe => moved successfully
"E:\GTA SAN ANDREAS\HOODLUM\hlm-intro.exe" => not found
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\mo_pc_offical_soc" => removed successfully
"C:\WINDOWS\system32\GroupPolicy\Machine" Folder move:
C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => moved successfully
C:\ProgramData\NTUSER.pol => moved successfully
HKLM\SOFTWARE\Policies\Google => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{4A23D69E-5CF9-42ED-A89C-293693D2BCFB}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4A23D69E-5CF9-42ED-A89C-293693D2BCFB}" => removed successfully
C:\WINDOWS\System32\Tasks\AVG\AVG Driver Updater Update => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AVG\AVG Driver Updater Update" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{91EA2448-4E55-4FAD-BC70-DAB9590D29B9}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{91EA2448-4E55-4FAD-BC70-DAB9590D29B9}" => removed successfully
C:\WINDOWS\System32\Tasks\ASUS\P508PowerAgent_sdk => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ASUS\P508PowerAgent_sdk" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{ABC7034D-3937-4B4A-82C7-95D2D3AE5D97}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{ABC7034D-3937-4B4A-82C7-95D2D3AE5D97}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Setup\SnapshotCleanupTask => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\SnapshotCleanupTask" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0BB36A32-0D9E-4297-AFD7-6BD7B5DB4C9B}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0BB36A32-0D9E-4297-AFD7-6BD7B5DB4C9B}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunUpdateNotificationMgr" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker" => removed successfully
C:\WINDOWS\Tasks\npcapwatchdog.job => moved successfully
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\kadaohckdkghfaclhjmkmplebcdcnfnp => removed successfully
cpuz158 => Service stopped successfully.
HKLM\System\CurrentControlSet\Services\cpuz158 => removed successfully
cpuz158 => service removed successfully
HKLM\System\CurrentControlSet\Services\cpuz159 => removed successfully
cpuz159 => service removed successfully
Could not move "C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2" => Scheduled to move on reboot.
C:\Users\micha\AppData\Local\0119AC2FC90D95AC063B177717B7B3B6 => moved successfully
C:\Users\micha\AppData\Local\66302C3ABCF0203701B7744560199EA1 => moved successfully
C:\Users\micha\AppData\Local\8B1D271A9281777F9A783A29EC6394D2 => moved successfully
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.
=========== EmptyTemp: ==========
FlushDNS => completed
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 189563174 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 471771544 B
Windows/system/drivers => 135007285 B
Edge => 117706374 B
Chrome => 235332767 B
Brave => 487844641 B
Firefox => 56820878 B
Opera => 0 B
Local\Temp, Local\*.tmp, LocalLow\Temp, Roaming\Temp, Roaming\*.tmp , IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 252 B
systemprofile32 => 698138 B
LocalService => 5754 B
NetworkService => 170856 B
micha => 24706178365 B
RecycleBin => 13560774059 B
EmptyTemp: => 37.2 GB temporary data Removed.
================================
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 21-06-2026 13:47:43)
C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2 => Could not move
==== End of Fixlog 13:47:43 ====
- Rudy
- Site Admin

- Příspěvky: 120011
- Registrován: 30 Říj 2003 13:42
- Místo/Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu z důvodu úbytku místa na SSD
Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu z důvodu úbytku místa na SSD
Uvolnilo se místo. Teď čekám jestli se to zase nezaplní. Zatím děkuji.
- Rudy
- Site Admin

- Příspěvky: 120011
- Registrován: 30 Říj 2003 13:42
- Místo/Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu z důvodu úbytku místa na SSD
OK. Zařtím není zač. 
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Přispějete na provoz fóra?