Zdravím,
chci Vás poprosit o preventivní kontrolu mého osobního notebooku.
S notebookem není žádný problém. Addition.txt jsem musel zabalit, protože byl moc dlouhý.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 24-06-2026
Ran by Dusan (administrator) on DUSAN-PC (LENOVO 20WE) (25-06-2026 11:34:03)
Running from C:\Users\Dusan\Desktop\FRST64.exe
Loaded Profiles: Dusan
Platform: Microsoft Windows 11 Home Version 25H2 26200.8737 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(C:\Program Files (x86)\Common Files\Rockwell\FactoryTalk Linx\FT.Service.Supervisor.exe ->) (Rockwell Automation Inc -> Rockwell Automation Inc.) C:\Program Files (x86)\Common Files\Rockwell\FactoryTalk Linx\FTLShortcutEditorUISvc.exe
(C:\Program Files (x86)\Common Files\Rockwell\FactoryTalk Linx\FT.Service.Supervisor.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\FactoryTalk Linx\FTMessageBroker.exe
(C:\Program Files (x86)\Common Files\Rockwell\ftsvchost.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\FTWebSupportService.exe
(C:\Program Files (x86)\Lenovo\Smart Note\SmartNote.Service.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\Smart Note\LenovoSmartNote.exe
(C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\LenovoVantage-(DeviceSettingsSystemAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\LenovoVantage-(GenericMessagingAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\LenovoVantage-(LenovoMachineFixSystemAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\LenovoVantage-(LenovoServiceBridgeAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\LenovoVantage-(SmartDisplayAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\LenovoVantage-(SmartPanelAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\LenovoVantage-(VantageCoreAddin).exe
(C:\Program Files (x86)\Rockwell Software\FactoryTalk Activation\lmgrd.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Rockwell Software\FactoryTalk Activation\flexsvr.exe
(C:\Program Files (x86)\Rockwell Software\FactoryTalk Resource and Status\FTResourceStatusSupervisor.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Rockwell Software\FactoryTalk Resource and Status\FTCounterProxy.exe
(C:\Program Files (x86)\Rockwell Software\FactoryTalk Resource and Status\FTResourceStatusSupervisor.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Rockwell Software\FactoryTalk Resource and Status\FTDataBroker.exe
(C:\Program Files (x86)\Rockwell Software\FactoryTalk Resource and Status\FTResourceStatusSupervisor.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Rockwell Software\FactoryTalk Resource and Status\FTWorkstationCounterProxy.exe
(C:\Program Files (x86)\Rockwell Software\RSLinx Enterprise\FTLinxServices.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Rockwell Software\RSLinx Enterprise\NetBrowserManager.exe
(C:\Program Files (x86)\Rockwell Software\RSLinx Enterprise\ftsm.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Rockwell Software\RSLinx Enterprise\FTLinxServices.exe
(C:\Program Files (x86)\Rockwell Software\TeamONE Alarm Connector\raServiceManager.exe ->) (Node.js) [File not signed] [File is in use] C:\Program Files (x86)\Rockwell Software\TeamONE Alarm Connector\alarm-connector.exe
(C:\Program Files\BeyondTrust\sra-nts\sra-nts.exe ->) (BeyondTrust Corporation -> BeyondTrust) C:\Program Files\BeyondTrust\sra-nts\sra-consent.exe
(C:\Program Files\Common Files\Rockwell\FTLD\FT.Service.Supervisor.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\FTLD\FTLiveDataProxy.exe <2>
(C:\Program Files\Common Files\Rockwell\FTLD\FT.Service.Supervisor.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files\Common Files\Rockwell\FTLD\FTDataBroker.exe
(C:\Program Files\Common Files\Rockwell\FTLD\FT.Service.Supervisor.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files\Common Files\Rockwell\FTLD\FTLDTagBrowserUISvc.exe
(C:\Program Files\Intel\Intel Graphics Software\IntelGraphicsSoftware.Service.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Program Files\Intel\Intel Graphics Software\PresentMonService.exe
(C:\Program Files\WindowsApps\MSTeams_26149.1205.4798.6437_x64__8wekyb3d8bbwe\ms-teams.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\149.0.4022.80\msedgewebview2.exe
(C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\SpotifyWidgetProvider.exe ->) (Spotify AB -> ) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\crashpad_handler.exe
(DriverStore\FileRepository\cui_dch.inf_amd64_9ec5150dcd7d4291\igfxCUIServiceN.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_9ec5150dcd7d4291\igfxEMN.exe
(DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_9fa9996d6cfe458b\DAX3API.exe ->) (Dolby Laboratories, Inc. -> Dolby Laboratories) C:\Windows\System32\DriverStore\FileRepository\DAX3_S~1.INF\DAX3API.exe
(DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_5e21bf389d23855a\LenovoUtilityService.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_5e21bf389d23855a\FnHotkeyCapsLKNumLK.exe
(DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_5e21bf389d23855a\LenovoUtilityService.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_5e21bf389d23855a\FnHotkeyUtility.exe
(explorer.exe ->) (Ghisler Software GmbH -> Ghisler Software GmbH) C:\Program Files\totalcmd\TOTALCMD64.EXE
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe
(explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_3d19142d5a057a7c\RtkAudUService64.exe
(Flexera Software LLC -> Flexera) C:\Program Files (x86)\Rockwell Software\FactoryTalk Activation\lmgrd.exe
(Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <25>
(LNBITSSvc.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\AutoModeDetect.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\149.0.4022.80\msedgewebview2.exe <11>
(Pulse Secure, LLC -> Pulse Secure, LLC) C:\Program Files (x86)\Common Files\Pulse Secure\JUNS\PulseSecureService.exe
(Rockwell Automation Inc -> Rockwell Automation) C:\Program Files (x86)\Common Files\Rockwell\CFP_Telemetry\cfp_app_service.exe <2>
(Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\FTLoginLogout.exe
(Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Rockwell Software\RSLinx Enterprise\FTLinxServices.exe <3>
(Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Rockwell Software\RSLinx\RSLINX.EXE
(services.exe ->) (BeyondTrust Corporation -> BeyondTrust) C:\Program Files\BeyondTrust\sra-nts\sra-nts.exe
(services.exe ->) (Dolby Laboratories, Inc. -> Dolby Laboratories) C:\Windows\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_9fa9996d6cfe458b\DAX3API.exe
(services.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ELANFPService.exe
(services.exe ->) (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.) C:\Windows\System32\ElanIapService.exe
(services.exe ->) (Flexera Software LLC -> Flexera) C:\Program Files (x86)\Rockwell Software\FactoryTalk Activation\lmgrd.exe
(services.exe ->) (FOXIT SOFTWARE INC. -> Foxit Software Inc.) C:\Program Files (x86)\Common Files\Foxit\Foxit PDF Reader\FoxitPDFReaderUpdateService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files\Intel\Intel Graphics Software\IntelGraphicsSoftware.Service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_9ec5150dcd7d4291\igfxCUIServiceN.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_8a3f88e34f6b8385\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_c2c5b0e17a28a48f\esif_uf.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_046f5bd4083e9122\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_2c17521ca0d3f79c\WMIRegistrationService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\TbtP2pShortcutService.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\x86\DSAService.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Program Files (x86)\Intel\Driver and Support Assistant\x86\DSAUpdateService.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Windows\System32\DriverStore\FileRepository\intcoed.inf_amd64_8e18542b6d21633d\AS\IAS\IntelAudioService.exe
(services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\Smart Note\SmartNote.Service.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\LenovoVantageService.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_5e21bf389d23855a\LenovoUtilityService.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\LNBITSSvc.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\YMC.exe
(services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Locator.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\NisSrv.exe
(services.exe ->) (NetSetMan GmbH -> NetSetMan GmbH) C:\Program Files (x86)\NetSetMan\nsmservice.exe
(services.exe ->) (Pulse Secure, LLC -> Pulse Secure, LLC) C:\Program Files (x86)\Common Files\Pulse Secure\JUNS\PulseSecureService.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_3d19142d5a057a7c\RtkAudUService64.exe
(services.exe ->) (Rockwell Automation -> ) C:\Program Files (x86)\Rockwell Software\TeamONE Alarm Connector\raServiceManager.exe
(services.exe ->) (Rockwell Automation Inc -> ) C:\Program Files (x86)\Common Files\Rockwell\ftsvchost.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation Inc.) C:\Program Files (x86)\Common Files\Rockwell\RNADiagnosticsSrv.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation) C:\Program Files (x86)\Common Files\Rockwell\CFP_Telemetry\cfp_app_service.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc) C:\Program Files (x86)\Rockwell Software\RSLinx\RSLinxLocalServer.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\DataAccessServiceHost.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\EventClientMultiplexer.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\EventServer.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\FactoryTalk Linx\FT.Service.Supervisor.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\FTAE.Web.DataProvider.Historian.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\FTAE.Web.DataProvider.RunTime.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\FTAE.Web.DataProvider.Service.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\FTAE_HistServ.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\FTAEArchiver.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\FTAECommandServer.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\FTAEExpressionServer.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\FTAEHistorianDataProvider.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\FTSysDiagSvcHost.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\FTWebServices\RnaAlarmMailRuleConfig\RnaAlarmMailRuleConfig.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\LocalOPCServer.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\NmspHost.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\RdcyHost.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\RnaAeServer.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\RnaAlarmMailServer.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\RnaAlarmMux.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\RNADirMultiplexor.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\RnaDirServer.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\RsvcHost.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Common Files\Rockwell\Updater\Agent\UpdaterAgent.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Rockwell Software\FactoryTalk Activation\Tools\FTActivationBoost.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Rockwell Software\FactoryTalk Resource and Status\FTResourceStatusService.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Rockwell Software\FactoryTalk Resource and Status\FTResourceStatusSupervisor.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Rockwell Software\RSCommon\RSOBSERV.EXE
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Rockwell Software\RSLinx Enterprise\FTLinxSecurityServer.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Rockwell Software\RSLinx Enterprise\ftsm.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Rockwell Software\RSLinx Enterprise\RSLinxNG.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Rockwell Software\RSLinx Enterprise\RSLinxNG02.EXE
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Rockwell Software\RSView Enterprise\FTViewServiceHost.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Rockwell Software\RSView Enterprise\HMIDIAGNOSTICSLSTADAPT.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Rockwell Software\RSView Enterprise\TagSrv.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Rockwell Software\RSView Enterprise\ViewSharedService.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files (x86)\Rockwell Software\Studio 5000\Logix Designer SDK\LdSdkServer.exe
(services.exe ->) (Rockwell Automation Inc -> Rockwell Automation, Inc.) C:\Program Files\Common Files\Rockwell\FTLD\FT.Service.Supervisor.exe
(services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(services.exe ->) (VMware, Inc. -> VMware, Inc.) C:\Program Files (x86)\Common Files\VMware\USB\vmware-usbarbitrator64.exe
(services.exe ->) (VMware, Inc. -> VMware, Inc.) C:\Program Files (x86)\VMware\VMware Player\vmware-authd.exe
(services.exe ->) (VMware, Inc. -> VMware, Inc.) C:\Windows\SysWOW64\vmnat.exe
(services.exe ->) (VMware, Inc. -> VMware, Inc.) C:\Windows\SysWOW64\vmnetdhcp.exe
(services.exe ->) (Wacom Co., Ltd. -> Wacom Technology, Corp.) C:\Windows\System32\DriverStore\FileRepository\wtabletserviceisd.inf_amd64_6faf2410492026fa\WTabletServiceISD.exe
(services.exe ->) (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG) C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeter.exe
(services.exe ->) (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG) C:\Program Files\CodeMeter\Runtime\bin\CmWebAdmin.exe
(svchost.exe ->) (Intel Corporation -> Intel Corporation) C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\SDXHelper.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MicrosoftStickyNotes_6.1.4.0_x64__8wekyb3d8bbwe\Microsoft.Notes.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.302.5.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\AppActions.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\wbem\WmiPrvSE.exe
(svchost.exe ->) (Spotify AB -> ) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\SpotifyWidgetProvider.exe
(Wacom Co., Ltd. -> Wacom Technology, Corp.) C:\Windows\System32\DriverStore\FileRepository\wtabletserviceisd.inf_amd64_6faf2410492026fa\WTabletServiceISD.exe
==================== Registry (Whitelisted) ===================
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_3d19142d5a057a7c\RtkAudUService64.exe [3403400 2021-12-08] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [UsbCipHelper] => C:\Program Files\Rockwell Automation\UsbCipDriver\USBCIPHelper\UsbCipHelper.exe [4810752 2023-09-06] (Rockwell Automation) [File not signed]
HKLM-x32\...\Run: [ODMV3Tray] => C:\Program Files (x86)\Common Files\Hilscher\ODMV3\ODMTray.exe [73728 2020-11-13] (Hilscher GmbH) [File not signed]
HKLM-x32\...\Run: [PulseSecure] => C:\Program Files (x86)\Common Files\Pulse Secure\JamUI\Pulse.exe [4813240 2021-07-27] (Pulse Secure, LLC -> )
HKLM-x32\...\Run: [NetSetMan] => C:\Program Files (x86)\NetSetMan\netsetman.exe [13731672 2024-06-03] (NetSetMan GmbH -> NetSetMan GmbH)
HKLM-x32\...\Run: [FactoryTalk Directory Information] => C:\Program Files (x86)\Common Files\Rockwell\FTLoginLogout.exe [524592 2024-09-05] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
HKLM-x32\...\Run: [ActivationNotifier] => C:\Program Files (x86)\Rockwell Software\FactoryTalk Activation\Tools\ActivationNotifier.exe [372016 2024-02-13] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
HKLM-x32\...\Run: [Reader_Sl] => C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT PDF READER\reader_sl.exe [4312128 2024-11-25] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [752208 2025-06-27] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [Intel® Graphics Software] => C:\Program Files\Intel\Intel Graphics Software\IntelGraphicsSoftware.exe [450736 2026-06-09] (Intel Corporation -> Intel Corporation)
HKU\S-1-5-19\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4966712 2025-06-02] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4966712 2025-06-02] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1860569605-2048426860-1487767080-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4966712 2025-06-02] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1860569605-2048426860-1487767080-1001\...\Run: [LenovoVantage] => C:\ProgramData\Lenovo\Vantage\Addins\LenovoCompanionAppAddin\1.0.0.58\LenovoVantage.exe [41440 2026-06-06] (Lenovo -> Lenovo)
HKU\S-1-5-21-1860569605-2048426860-1487767080-1001\...\Run: [MicrosoftEdgeAutoLaunch_14E57C54C11BDF8154A560BBDF30F8A1] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [5304648 2026-06-17] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1860569605-2048426860-1487767080-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe [22841736 2025-05-21] (Logitech Inc -> Logitech, Inc.)
HKU\S-1-5-21-1860569605-2048426860-1487767080-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Dusan\AppData\Local\Microsoft\Teams\Update.exe --processStart "Teams.exe" --process-start-args "--system-initiated" (No File)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4464792 2026-06-19] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\149.0.7827.196\Installer\chrmstp.exe [7665304 2026-06-24] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{4B9CAC01-6732-40d0-8B8F-B5B340F9D44F}] -> C:\Program Files (x86)\Common Files\Pulse Secure\JamUI\jamSSOCredProv64.dll [2021-07-27] (Pulse Secure, LLC -> )
HKLM\Software\...\Authentication\Credential Providers: [{4EFD0F35-BFBA-44eb-8F25-2B3530203C1D}] -> C:\Program Files (x86)\Common Files\Pulse Secure\JamUI\jamSSOCredProv64.dll [2021-07-27] (Pulse Secure, LLC -> )
HKLM\Software\...\Authentication\Credential Providers: [{C1258FBC-F04F-4862-B78A-DDAAEF4A9707}] -> C:\Program Files (x86)\Common Files\Pulse Secure\JamUI\jamSSOCredProv64.dll [2021-07-27] (Pulse Secure, LLC -> )
HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] ->
HKLM\Software\...\Authentication\Credential Providers: [{EAB1A79F-DFAA-4faf-A7B9-A6652E97EE16}] -> C:\Program Files (x86)\Common Files\Pulse Secure\JamUI\jamSSOCredProv64.dll [2021-07-27] (Pulse Secure, LLC -> )
HKLM\Software\...\Authentication\Credential Provider Filters: [{3884BCAA-C611-4e2d-9105-E11B1203294E}] -> C:\Program Files (x86)\Common Files\Pulse Secure\JamUI\jamSSOCredProv64.dll [2021-07-27] (Pulse Secure, LLC -> )
Startup: C:\Users\Dusan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Access Console [remoteaccess.mysug.de].lnk [2026-06-23]
ShortcutTarget: Access Console [remoteaccess.mysug.de].lnk -> C:\Users\Dusan\AppData\Local\BeyondTrust\sra-con\remoteaccess.mysug.de\Software\sra-con.exe (BeyondTrust Corporation -> BeyondTrust)
Startup: C:\Users\Dusan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Poslat do aplikace OneNote.lnk [2025-06-04]
ShortcutTarget: Poslat do aplikace OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\CodeMeter Control Center.lnk [2025-06-03]
ShortcutTarget: CodeMeter Control Center.lnk -> C:\Program Files (x86)\CodeMeter\Runtime\bin\CodeMeterCC.exe (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {43F03EFB-DAEB-4031-A565-FB50314713B0} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem150.0.7863.0{5A62D5B4-E2A3-4E93-9FC1-4A6240AEF2FA} => C:\Program Files (x86)\Google\GoogleUpdater\150.0.7863.0\updater.exe [8728216 2026-05-28] (Google LLC -> Google LLC)
Task: {428A24C5-9672-4692-B1DB-C143AFFD14A7} - System32\Tasks\GoogleUserPEH\RunPlatformExperienceHelper_Daily => C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4464792 2026-06-19] (Google LLC -> Google LLC)
Task: {216883A1-B109-4C19-A424-3EE88D57B4F1} - System32\Tasks\GoogleUserPEH\RunPlatformExperienceHelper_Metrics => C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4464792 2026-06-19] (Google LLC -> Google LLC)
Task: {DB106A6B-6F85-4224-A401-0A0B23669212} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe [95240 2026-06-24] (HP Inc. -> HP Inc.)
Task: {965C5557-0185-4CAB-846A-9617F13E8FEF} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor Logon => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe [95240 2026-06-24] (HP Inc. -> HP Inc.)
Task: {465110FB-2277-44CD-AB0C-DF87B9C116DC} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132 => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [4850904 2023-05-24] (Intel Corporation -> Intel Corporation)
Task: {8A3038CA-5717-48B8-BC78-70F36F17C8E8} - System32\Tasks\IntelSURQC-Upgrade-86621605-2a0b-4128-8ffc-15514c247132-Logon => C:\Program Files\Intel\SUR\QUEENCREEK\Updater\bin\IntelSoftwareAssetManagerService.exe [4850904 2023-05-24] (Intel Corporation -> Intel Corporation)
Task: {1E0D131A-7886-46EF-81A8-3E34CF6EA051} - System32\Tasks\IUM-F1E24CA0-B63E-4F13-A9E3-4ADE3BFF3473 => C:\Program Files (x86)\Intel\Intel(R) Update Manager\bin\iumsvc.exe --automatic (No File)
Task: {23E21E5B-3091-4ACB-A8BD-AC49A7496213} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\WINDOWS\system32\ImController.InfInstaller.exe [94496 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {540D48A4-0816-48E1-8BF5-29E69D803AFF} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => C:\WINDOWS\system32\sc.exe [102400 2025-09-01] (Microsoft Windows -> Microsoft Corporation) -> START ImControllerService
Task: {7CE19BED-164D-4F80-A11D-BD5524BD131B} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => C:\WINDOWS\System32\reg.exe [110592 2025-09-01] (Microsoft Windows -> Microsoft Corporation) -> add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32
Task: {B648FAE4-9AAC-4095-891C-A27014F67469} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\215a48a5-4653-400d-9085-9a1772d23705 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {6C48A008-94EB-43BC-8D21-E265CAD44E61} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\42317b85-978f-4d18-b9cf-443ad4d12161 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {81029F96-76E4-43FA-859A-CD5877C03C51} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\c99629f0-f6fa-4f97-bce0-c05ef1564a3f => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {F28680C9-83E4-4B9A-860B-B7DDEA3D4465} - System32\Tasks\Lenovo\LenovoNowLauncher => C:\Program Files (x86)\Lenovo\LenovoNow\x86\LenovoNow.exe [468448 2026-05-22] (Lenovo -> Lenovo) -> C:\Program Files (x86)\Lenovo\LenovoNow\x86\/task
Task: {880CF45A-21C7-490C-8E91-C1B658221BD5} - System32\Tasks\Lenovo\LenovoNowQuarterlyLaunch => C:\Program Files (x86)\Lenovo\LenovoNow\x86\LenovoNow.Task.exe [471520 2026-05-22] (Lenovo -> Lenovo)
Task: {77C82601-EC95-4015-8B55-5129FD4BA2F5} - System32\Tasks\Lenovo\LenovoNowTask => C:\Program Files (x86)\Lenovo\LenovoNow\x86\LenovoNow.Task.exe [471520 2026-05-22] (Lenovo -> Lenovo) -> C:\Program Files (x86)\Lenovo\LenovoNow\x86\$(EventData)
Task: {6EABAB07-421C-48AF-A777-4C0128A0444A} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServiceMaintainance => C:\WINDOWS\system32\sc.exe [102400 2025-09-01] (Microsoft Windows -> Microsoft Corporation) -> start LenovoVantageService
Task: {64CB947E-192A-49C4-9177-F1B0F351BAB9} - System32\Tasks\Lenovo\Vantage\Schedule\BatteryGaugeAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\ScheduleEventAction.exe [276032 2026-06-06] (Lenovo -> Lenovo)
Task: {0159ED02-CE93-45D6-8BB2-D3F4E29681C9} - System32\Tasks\Lenovo\Vantage\Schedule\ConsumerAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\ScheduleEventAction.exe [276032 2026-06-06] (Lenovo -> Lenovo)
Task: {C41D7A1F-41D1-46D3-AAD0-8556EB37EF5B} - System32\Tasks\Lenovo\Vantage\Schedule\DailyTelemetryTransmission => C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\ScheduleEventAction.exe [276032 2026-06-06] (Lenovo -> Lenovo)
Task: {A8ED686D-B5DC-4017-8741-CC4AF39FDE04} - System32\Tasks\Lenovo\Vantage\Schedule\GenericMessagingAddin => C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\ScheduleEventAction.exe [276032 2026-06-06] (Lenovo -> Lenovo)
Task: {DE45EE43-6475-42C2-AB6C-D9120FC62B04} - System32\Tasks\Lenovo\Vantage\Schedule\GenericMessagingAddin_Pulsation => C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\ScheduleEventAction.exe [276032 2026-06-06] (Lenovo -> Lenovo)
Task: {C364E615-9DAA-414F-B179-137C6D7D0878} - System32\Tasks\Lenovo\Vantage\Schedule\HeartbeatAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\ScheduleEventAction.exe [276032 2026-06-06] (Lenovo -> Lenovo)
Task: {BA3476FE-7427-45A6-821D-66C76E9108C0} - System32\Tasks\Lenovo\Vantage\Schedule\IdeaNotebookAddinDailyEvent => C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\ScheduleEventAction.exe [276032 2026-06-06] (Lenovo -> Lenovo)
Task: {6EC06BC7-CF73-4561-A976-D58AC99EFBBA} - System32\Tasks\Lenovo\Vantage\Schedule\Lenovo.Vantage.SmartPerformance.MonthlyReport => C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\ScheduleEventAction.exe [276032 2026-06-06] (Lenovo -> Lenovo)
Task: {D0C1A921-2F43-463E-A033-5B55BA9A63E4} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoBatteryPartSalesMonthlyToast => C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\ScheduleEventAction.exe [276032 2026-06-06] (Lenovo -> Lenovo)
Task: {B14DD9D1-9737-4C0B-90D4-FED1388B6A8C} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoCompanionAppAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\ScheduleEventAction.exe [276032 2026-06-06] (Lenovo -> Lenovo)
Task: {5D19C65E-AB71-4BA0-9817-47D8A531A97D} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoSupportHealthReportSchedule => C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\ScheduleEventAction.exe [276032 2026-06-06] (Lenovo -> Lenovo)
Task: {DA7D7C4F-7537-4649-B398-840617DDD9A1} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoSystemUpdateAddin_WeeklyTask => C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\ScheduleEventAction.exe [276032 2026-06-06] (Lenovo -> Lenovo)
Task: {BAEB2AEA-E2E7-4ECF-975B-08865261069B} - System32\Tasks\Lenovo\Vantage\Schedule\NotificationCenter => C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe NotificationCenter (No File)
Task: {CD4ADD0C-920A-41D9-9351-D1E003EC4E2B} - System32\Tasks\Lenovo\Vantage\Schedule\SettingsWidgetAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\ScheduleEventAction.exe [276032 2026-06-06] (Lenovo -> Lenovo)
Task: {8F79767B-980E-457C-A7F8-D7F7C4263B0C} - System32\Tasks\Lenovo\Vantage\Schedule\SmartPerformance.ExpireReminder => C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\ScheduleEventAction.exe [276032 2026-06-06] (Lenovo -> Lenovo)
Task: {1EC81E72-E1FE-4E44-BD69-5DECD38F7B91} - System32\Tasks\Lenovo\Vantage\Schedule\VantageCoreAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\ScheduleEventAction.exe [276032 2026-06-06] (Lenovo -> Lenovo)
Task: {51C19D9A-6DA4-479C-A53D-EC5090634729} - System32\Tasks\Lenovo\Vantage\Schedule\VantageCoreAddinIdleScheduleTask => C:\ProgramData\Lenovo\Vantage\Addins\VantageCoreAddin\1.1.0.43\x86\IdleScheduleEventAction.exe [173536 2026-06-24] (Lenovo -> )
Task: {0BDE300C-A6F3-4FCD-B805-67D43ACF34AF} - System32\Tasks\Lenovo\Vantage\Schedule\VantageCoreAddinWeekScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\ScheduleEventAction.exe [276032 2026-06-06] (Lenovo -> Lenovo)
Task: {5B673FF0-28BA-44B0-B940-7F6A5523B582} - System32\Tasks\Lenovo\Vantage\StartupFixPlan => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\\uninstall.exe /repair (No File)
Task: {2E5202FC-F808-4320-8211-666FDEBDB890} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\ActionsServer\ActionsServer.exe [16431408 2026-06-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {69ADFE39-73E1-4522-B53C-C6607A207EE8} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28431248 2026-06-12] (Microsoft Corporation -> Microsoft Corporation)
Task: {D0057D53-33FE-43A1-9D44-E6B869CF9546} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\OFFICE16\opushutil.exe [73568 2026-06-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {4BF164E6-D510-4AB8-A8E0-5388B6D9DE1C} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28431248 2026-06-12] (Microsoft Corporation -> Microsoft Corporation)
Task: {DAC41EDA-3BEC-4AD6-B4D1-03552A84928F} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [427296 2026-06-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {4F11AA15-AE2A-4724-A750-D6CA0D6ABB29} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [427296 2026-06-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {F62388A4-B213-48AB-9893-82944F09F243} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\operfmon.exe [1354600 2026-06-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {18D41A05-F496-4796-AC61-45F216875F2E} - System32\Tasks\Microsoft\Office\Office Startup Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\ActionsServer\ActionsServer.exe [16431408 2026-06-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {E57C91A0-6263-4DCF-88BE-2C3E7404D881} - System32\Tasks\Microsoft\Windows\Clip\ClipESU => %SystemRoot%\system32\clipesu.exe (No File)
Task: {3C3DD7C5-D856-4D53-98AF-4918684BB6F8} - System32\Tasks\Microsoft\Windows\Clip\ClipESUConsumer => %SystemRoot%\system32\ClipESUConsumer.exe -evaluateEligibility (No File)
Task: {079205A5-3D9F-4739-B2A0-317B99C0C7CB} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessPreOrder => %SystemRoot%\system32\ClipESUConsumer.exe -postProcessPreOrder (No File)
Task: {A4DF6BEF-122B-403E-B407-01A3243CDC81} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessRefund => %SystemRoot%\system32\ClipESUConsumer.exe -processRefund (No File)
Task: {0DFF4185-6822-4BA0-934F-9B0A328F1EC5} - System32\Tasks\Microsoft\Windows\Clip\EnableClipESU => %SystemRoot%\system32\clipesu.exe -e (No File)
Task: {E88D9B2C-DDEA-47B2-9582-085153004DB5} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (No File)
Task: {CAB76809-EDC0-40D2-A888-AD9BEDF4E88A} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe (No File)
Task: {4B09CE5E-A03C-4BC8-BEA1-A3F011EC40FC} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog (No File)
Task: {FA5F0C89-B47F-457A-A0C1-55134A7C2259} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {94EB8FA7-5CEE-49C5-B5A4-E9981AA1A90D} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpCmdRun.exe [1906320 2026-06-17] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {95D0724E-D41E-45AA-8D6B-22C423AE93F9} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpCmdRun.exe [1906320 2026-06-17] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {20B50DB6-1251-4281-816E-2361706658DC} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpCmdRun.exe [1906320 2026-06-17] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {D62EB938-D7E9-40FD-9575-B50582677F2E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpCmdRun.exe [1906320 2026-06-17] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {121CC4BA-3365-4E8A-8513-761B8CC30F18} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4223792 2025-06-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {A28ED53D-F0FB-4A35-B3C6-6DC3BC1D326C} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-1860569605-2048426860-1487767080-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4223792 2025-06-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {9504EFCE-7FA6-4A32-AA4D-8BD8DA34B16B} - System32\Tasks\OneDrive Startup Task-S-1-5-21-1860569605-2048426860-1487767080-1001 => C:\Program Files\Microsoft OneDrive\25.085.0504.0002\OneDriveLauncher.exe [684856 2025-06-02] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\..\Interfaces\{741a4034-e468-4ba7-ba99-fecb3f354571}: [DhcpNameServer] 1.1.1.1 9.9.9.9
Tcpip\..\Interfaces\{741a4034-e468-4ba7-ba99-fecb3f354571}: [DhcpDomain] local
Tcpip\..\Interfaces\{741a4034-e468-4ba7-ba99-fecb3f354571}\35841475D254334423: [DhcpNameServer] 64.59.144.18 64.59.150.134
Tcpip\..\Interfaces\{741a4034-e468-4ba7-ba99-fecb3f354571}\960586F6E6560244573716E602A5: [DhcpNameServer] 172.20.10.1
Tcpip\..\Interfaces\{741a4034-e468-4ba7-ba99-fecb3f354571}\B425F4E45435F57425F45505F57457563747: [DhcpNameServer] 1.1.1.1 8.8.8.8
FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.461.0 -> C:\Program Files\Java\jre1.8.0_461\bin\dtplugin\npDeployJava1.dll [2025-06-27] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.461.0 -> C:\Program Files\Java\jre1.8.0_461\bin\plugin2\npjp2.dll [2025-06-27] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2026-02-10] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.19 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT PDF READER\plugins\npFoxitPDFReaderPlugin.dll [2025-08-09] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.cpdf -> C:\Program Files (x86)\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2025-08-09] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT PDF READER\plugins\npFoxitPDFReaderPlugin.dll [2025-08-09] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT PDF READER\plugins\npFoxitPDFReaderPlugin.dll [2025-08-09] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\PROGRAM FILES (X86)\FOXIT SOFTWARE\FOXIT PDF READER\plugins\npFoxitPDFReaderPlugin.dll [2025-08-09] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-12-26] (Microsoft Corporation -> Microsoft Corporation)
Edge:
=======
Edge Profile: C:\Users\Dusan\AppData\Local\Microsoft\Edge\User Data\Default [2025-08-20]
Edge Extension: (Dokumenty Google offline) - C:\Users\Dusan\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-07-25]
Edge Extension: (Edge relevant text changes) - C:\Users\Dusan\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-06-14]
Edge HKLM-x32\...\Edge\Extension: [caiblelclndcckfafdaggpephhgfpoip]
Edge HKLM-x32\...\Edge\Extension: [emgfgdclgfeldebanedpihppahgngnle]
Chrome:
=======
CHR Profile: C:\Users\Dusan\AppData\Local\Google\Chrome\User Data\Default [2026-06-25]
CHR DownloadDir: D:\TEMP
CHR Notifications: Default -> hxxps://mdfx9dc8n.net; hxxps://remoteaccess.mysug.de
CHR Session Restore: Default -> is enabled.
CHR Extension: (Avira Browser Safety) - C:\Users\Dusan\AppData\Local\Google\Chrome\User Data\Default\Extensions\flliilndjeohchalpbbcdekjklbdgfkk [2026-01-04]
CHR Extension: (Dokumenty Google offline) - C:\Users\Dusan\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-06-22]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\Dusan\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2026-06-24]
CHR Extension: (Coupert - Automatic Coupon Finder & Cashback) - C:\Users\Dusan\AppData\Local\Google\Chrome\User Data\Default\Extensions\mfidniedemcgceagapgdekdbmanojomk [2026-06-22]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Dusan\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-04-23]
CHR HKLM-x32\...\Chrome\Extension: [caljgklbbfbcjjanaijlacgncafpegll]
CHR HKLM-x32\...\Chrome\Extension: [ccbpbkebodcjkknkfkpmfeciinhidaeh]
CHR HKLM-x32\...\Chrome\Extension: [flliilndjeohchalpbbcdekjklbdgfkk]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 CFPTelemetryService; C:\Program Files (x86)\Common Files\Rockwell\CFP_Telemetry\cfp_app_service.exe [36446920 2022-11-29] (Rockwell Automation Inc -> Rockwell Automation)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13381008 2026-06-12] (Microsoft Corporation -> Microsoft Corporation)
R2 CmWebAdmin.exe; C:\Program Files\CodeMeter\Runtime\bin\CmWebAdmin.exe [11032944 2023-10-13] (WIBU-SYSTEMS AG -> WIBU-SYSTEMS AG)
R2 DolbyDAXAPI; C:\WINDOWS\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_9fa9996d6cfe458b\DAX3API.exe [2770008 2025-08-11] (Dolby Laboratories, Inc. -> Dolby Laboratories)
R2 DSAService; C:\Program Files (x86)\Intel\Driver and Support Assistant\x86\DSAService.exe [133736 2026-03-23] (Intel Corporation -> Intel)
R2 DSAUpdateService; C:\Program Files (x86)\Intel\Driver and Support Assistant\x86\DSAUpdateService.exe [133224 2026-03-23] (Intel Corporation -> Intel)
R2 ElanIapService; C:\WINDOWS\System32\ElanIapService.exe [501368 2025-06-08] (ELAN MICROELECTRONICS CORPORATION -> ELAN Microelectronics Corp.)
R2 FactoryTalk Activation Service; C:\Program Files (x86)\Rockwell Software\FactoryTalk Activation\lmgrd.exe [976720 2024-02-13] (Flexera Software LLC -> Flexera)
R2 FactoryTalk Linx Browser UI; C:\Program Files (x86)\Rockwell Software\RSLinx Enterprise\ftsm.exe [164144 2022-09-16] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R2 FactoryTalk Linx CIP Security Service; C:\Program Files (x86)\Rockwell Software\RSLinx Enterprise\FTLinxSecurityServer.exe [475440 2024-09-06] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R2 FactoryTalk Linx Service Supervisor; C:\Program Files (x86)\Common Files\Rockwell\FactoryTalk Linx\FT.Service.Supervisor.exe [72496 2023-06-01] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R2 FactoryTalk LiveData Supervisor; C:\Program Files\Common Files\Rockwell\FTLD\FT.Service.Supervisor.exe [59184 2023-06-01] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R2 FactoryTalk Resource and Status Server; C:\Program Files (x86)\Rockwell Software\FactoryTalk Resource and Status\FTResourceStatusService.exe [584496 2024-08-26] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R2 FactoryTalk Resource and Status Supervisor; C:\Program Files (x86)\Rockwell Software\FactoryTalk Resource and Status\FTResourceStatusSupervisor.exe [31024 2024-08-26] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\25.085.0504.0002\FileSyncHelper.exe [3610416 2025-06-02] (Microsoft Corporation -> Microsoft Corporation)
R2 FoxitReaderUpdateService; C:\Program Files (x86)\Common Files\Foxit\Foxit PDF Reader\FoxitPDFReaderUpdateService.exe [2514016 2025-07-28] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
R2 FTActivationBoost; C:\Program Files (x86)\Rockwell Software\FactoryTalk Activation\Tools\FTActivationBoost.exe [395568 2024-02-13] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R2 FTAE.Web.DataProvider.Historian; C:\Program Files (x86)\Common Files\Rockwell\FTAE.Web.DataProvider.Historian.exe [464688 2024-09-05] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R2 FTAE.Web.DataProvider.RunTime; C:\Program Files (x86)\Common Files\Rockwell\FTAE.Web.DataProvider.RunTime.exe [409904 2024-09-05] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R2 FTAECommandServer; C:\Program Files (x86)\Common Files\Rockwell\FTAECommandServer.exe [275248 2024-09-05] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R2 FTAEExpressionServer; C:\Program Files (x86)\Common Files\Rockwell\FTAEExpressionServer.exe [377136 2024-09-05] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R2 FTAEHistorianDataProvider; C:\Program Files (x86)\Common Files\Rockwell\FTAEHistorianDataProvider.exe [765744 2024-09-05] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R2 FTAEWebDPService; C:\Program Files (x86)\Common Files\Rockwell\FTAE.Web.DataProvider.Service.exe [88880 2024-09-05] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R2 FTAE_Archiver; C:\Program Files (x86)\Common Files\Rockwell\FTAEArchiver.exe [224560 2024-09-05] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R2 FTAE_HistServ; C:\Program Files (x86)\Common Files\Rockwell\FTAE_HistServ.exe [323376 2024-09-05] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R2 FTSvcHost; C:\Program Files (x86)\Common Files\Rockwell\ftsvchost.exe [525616 2024-09-05] (Rockwell Automation Inc -> )
R2 FTSysDiagSvcHost; C:\Program Files (x86)\Common Files\Rockwell\FTSysDiagSvcHost.exe [76080 2024-09-05] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R2 FTView Shared Service; C:\Program Files (x86)\Rockwell Software\RSView Enterprise\ViewSharedService.exe [154992 2022-03-20] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R2 FTViewServiceHost; C:\Program Files (x86)\Rockwell Software\RSView Enterprise\FTViewServiceHost.exe [83312 2022-03-20] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [244232 2026-06-24] (HP Inc. -> HP Inc.)
R2 ImControllerService; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
R2 IntelAudioService; C:\WINDOWS\System32\DriverStore\FileRepository\intcoed.inf_amd64_8e18542b6d21633d\AS\IAS\IntelAudioService.exe [532920 2025-08-11] (Intel Corporation -> Intel)
R2 IntelGraphicsSoftwareService; C:\Program Files\Intel\Intel Graphics Software\IntelGraphicsSoftware.Service.exe [323760 2026-06-09] (Intel Corporation -> Intel Corporation)
S3 IsoEnvBroker; C:\WINDOWS\System32\IsoEnvBroker.dll [774144 2026-06-23] (Microsoft Windows -> Microsoft Corporation)
R2 LdSdkService; C:\Program Files (x86)\Rockwell Software\Studio 5000\Logix Designer SDK\LdSdkServer.exe [120112 2024-09-19] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R2 LenovoFnAndFunctionKeys; C:\WINDOWS\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_5e21bf389d23855a\LenovoUtilityService.exe [199744 2026-03-09] (Lenovo -> Lenovo)
R2 LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\4.2601.31.0\LenovoVantageService.exe [34368 2026-06-06] (Lenovo -> Lenovo)
R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [16548744 2025-05-21] (Logitech Inc -> Logitech, Inc.)
R2 LITSSVC; C:\WINDOWS\System32\LNBITSSvc.exe [1704912 2025-06-08] (Lenovo -> Lenovo)
R2 LocalOPCServer; C:\Program Files (x86)\Common Files\Rockwell\LocalOPCServer.exe [358192 2024-09-05] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpDefenderCoreService.exe [2150144 2026-06-17] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 nsmService; C:\Program Files (x86)\NetSetMan\nsmservice.exe [2333528 2024-06-04] (NetSetMan GmbH -> NetSetMan GmbH)
S3 ODMV3; C:\Program Files (x86)\Common Files\Hilscher\ODMV3\ODMV3.exe [364544 2020-11-13] (Hilscher GmbH) [File not signed]
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\25.085.0504.0002\OneDriveUpdaterService.exe [3862840 2025-06-02] (Microsoft Corporation -> Microsoft Corporation)
S3 OpcEnum; C:\Windows\SysWOW64\OpcEnum.exe [146432 2016-03-09] (OPC Foundation) [File not signed]
R2 PulseSecureService; C:\Program Files (x86)\Common Files\Pulse Secure\JUNS\PulseSecureService.exe [419768 2021-07-27] (Pulse Secure, LLC -> Pulse Secure, LLC)
S3 Razer Elevation Service; C:\Program Files\Razer\razer_elevation_service\razer_elevation_service.exe [37620720 2024-11-12] (Razer USA Ltd. -> Razer Inc)
R2 RnaAeServer; C:\Program Files (x86)\Common Files\Rockwell\RnaAeServer.exe [274224 2024-09-05] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R2 RnaAlarmMailServer; C:\Program Files (x86)\Common Files\Rockwell\RnaAlarmMailServer.exe [316208 2024-09-05] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R2 RnaAlarmMux; C:\Program Files (x86)\Common Files\Rockwell\RnaAlarmMux.exe [1012528 2024-09-05] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
S3 RnaUaClientDataProviderService; C:\Program Files (x86)\Common Files\Rockwell\OpcUaConnector\RnaUaClientDataProvider.exe [9503536 2024-08-19] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R2 Rockwell Data Access Service; C:\Program Files (x86)\Common Files\Rockwell\DataAccessServiceHost.exe [40240 2024-09-05] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R2 Rockwell HMI Diagnostics; C:\Program Files (x86)\Rockwell Software\RSView Enterprise\HMIDIAGNOSTICSLSTADAPT.exe [282992 2022-03-20] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R2 Rockwell Tag Server; C:\Program Files (x86)\Rockwell Software\RSView Enterprise\TagSrv.exe [293744 2022-03-20] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R2 RockwellAlarmMailRuleConfigServer; C:\Program Files (x86)\Common Files\Rockwell\FTWebServices\RnaAlarmMailRuleConfig\RnaAlarmMailRuleConfig.exe [90461672 2024-09-05] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
S3 RSLinx; C:\Program Files (x86)\Rockwell Software\RSLinx\RSLINX.EXE [4527408 2024-09-06] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R2 RSLinx Classic Local OPC Server; C:\Program Files (x86)\Rockwell Software\RSLinx\RSLinxLocalServer.exe [28016 2021-11-30] (Rockwell Automation Inc -> Rockwell Automation, Inc)
R2 RSLinxNG; C:\Program Files (x86)\Rockwell Software\RSLinx Enterprise\RSLinxNG.exe [592688 2024-09-06] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R2 RSLinxNG02; C:\Program Files (x86)\Rockwell Software\RSLinx Enterprise\RSLinxNG02.EXE [565040 2024-09-06] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R2 SmartNoteService; C:\Program Files (x86)\Lenovo\Smart Note\SmartNote.Service.exe [75672 2020-11-13] (Lenovo -> Lenovo)
R2 sra-nts; C:\Program Files\BeyondTrust\sra-nts\sra-nts.exe [5304584 2026-04-16] (BeyondTrust Corporation -> BeyondTrust)
R2 TbtP2pShortcutService; C:\WINDOWS\TbtP2pShortcutService.exe [258272 2025-08-11] (Intel Corporation -> Intel Corporation)
R2 TeamONE Alarm Connector; C:\Program Files (x86)\Rockwell Software\TeamONE Alarm Connector\raServiceManager.exe [157216 2019-05-29] (Rockwell Automation -> )
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [21047096 2024-01-05] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R2 UpdaterAgent; C:\Program Files (x86)\Common Files\Rockwell\Updater\Agent\UpdaterAgent.exe [116016 2024-08-04] (Rockwell Automation Inc -> Rockwell Automation, Inc.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\NisSrv.exe [4608640 2026-06-17] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MsMpEng.exe [290744 2026-06-17] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 YMC; C:\WINDOWS\System32\YMC.exe [927784 2025-09-07] (Lenovo -> Lenovo)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 AX88179A; C:\WINDOWS\System32\DriverStore\FileRepository\axusbeth.inf_amd64_7737caa225c4a27f\AxUsbEth.sys [163784 2024-06-12] (WDKTestCert AndyChen,132652806163117881 -> ASIX Electronics Corp.)
S3 BHTPCRDR; C:\WINDOWS\system32\DRIVERS\bhtpcrdr.sys [184416 2020-08-31] (BayHub Technology Inc. -> BayHubTech/O2Micro)
R0 bhtsddr; C:\WINDOWS\System32\drivers\bhtsddr.sys [176848 2025-08-11] (BayHub Technology Inc. -> BayHubTech)
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [110592 2025-09-01] (Microsoft Corporation) [File not signed]
S3 HPMoA407; C:\WINDOWS\System32\drivers\HPMoA407.sys [25088 2023-04-23] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard.)
S3 HPubA407; C:\WINDOWS\System32\Drivers\HPubA407.sys [18944 2023-04-23] (Microsoft Windows Hardware Compatibility Publisher -> Hewlett-Packard.)
R3 iaLPSS2_GPIO2_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_gpio2_tgl.inf_amd64_4fcff055ed32f652\iaLPSS2_GPIO2_TGL.sys [132072 2025-06-08] (Intel Corporation -> Intel Corporation)
R3 iaLPSS2_I2C_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_i2c_tgl.inf_amd64_bd1c0a60b9594248\iaLPSS2_I2C_TGL.sys [205400 2025-06-08] (Intel Corporation -> Intel Corporation)
R1 jnprns; C:\WINDOWS\system32\DRIVERS\jnprns.sys [507192 2021-07-27] (Juniper Networks, Inc. -> Juniper Networks)
S4 jnprTdi_9112_10247; C:\Windows\system32\Drivers\jnprTdi_9112_10247.sys [98280 2021-07-27] (Pulse Secure, LLC -> Pulse Secure, LLC)
S3 jnprva; C:\WINDOWS\System32\drivers\jnprva.sys [75200 2021-07-27] (Pulse Secure, LLC. -> Pulse Secure)
R3 JnprVaMgr; C:\WINDOWS\System32\drivers\jnprvamgr.sys [73152 2021-07-27] (Pulse Secure, LLC. -> Pulse Secure)
R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [82312 2026-06-08] (Microsoft Windows -> Microsoft Corporation)
R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [44880 2024-10-06] (Logitech Inc -> Logitech)
S3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [32080 2023-10-19] (Logitech Inc -> Logitech)
R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [73040 2024-10-06] (Logitech Inc -> Logitech)
R2 NPF; C:\Windows\SysWow64\drivers\npf.sys [35344 2014-06-06] (CACE Technologies, Inc. -> CACE Technologies, Inc.)
S3 PulseSAM; C:\Windows\system32\Drivers\PulseSAM.sys [149904 2021-07-27] (Pulse Secure, LLC. -> Pulse Secure, LLC)
S3 rtump64x64; C:\WINDOWS\System32\drivers\rtump64x64.sys [1418184 2024-04-22] (Realtek Semiconductor Corp. -> Realtek Corporation)
R3 SensorsSimulatorDriver; C:\WINDOWS\System32\drivers\WUDFRd.sys [411112 2026-06-23] (Microsoft Windows -> Microsoft Corporation)
S3 tap-tb-0901; C:\WINDOWS\System32\drivers\tap-tb-0901.sys [38656 2023-07-10] (TunnelBear, Inc. -> The OpenVPN Project)
S3 tapnordvpn; C:\WINDOWS\System32\drivers\tapnordvpn.sys [49744 2023-08-28] (nordvpn s.a. -> The OpenVPN Project)
R1 VirtualBackplane; C:\WINDOWS\System32\drivers\VirtualBackplane.sys [70048 2023-09-08] (Rockwell Automation Inc -> Rockwell Automation)
R0 vmci; C:\WINDOWS\System32\drivers\vmci.sys [104888 2022-07-03] (Microsoft Windows Hardware Compatibility Publisher -> VMware, Inc.)
R3 VMnetAdapter; C:\WINDOWS\system32\DRIVERS\vmnetadapter.sys [31128 2023-04-09] (Microsoft Windows Hardware Compatibility Publisher -> VMware, Inc.)
R2 VMnetBridge; C:\WINDOWS\system32\DRIVERS\vmnetbridge.sys [53656 2023-04-09] (Microsoft Windows Hardware Compatibility Publisher -> VMware, Inc.)
R2 VMnetuserif; C:\WINDOWS\system32\DRIVERS\vmnetuserif.sys [30664 2023-04-09] (Microsoft Windows Hardware Compatibility Publisher -> VMware, Inc.)
R2 vmx86; C:\WINDOWS\system32\DRIVERS\vmx86.sys [100776 2023-04-09] (Microsoft Windows Hardware Compatibility Publisher -> VMware, Inc.)
R0 vsock; C:\WINDOWS\System32\DRIVERS\vsock.sys [88976 2022-07-03] (Microsoft Windows Hardware Compatibility Publisher -> VMware, Inc.)
S3 WacHIDFilterISD; C:\WINDOWS\System32\drivers\WacHIDRouterISDU.sys [181872 2020-09-17] (Wacom Co., Ltd. -> Wacom Technology, Corp.)
R3 WacHIDRouterISDF; C:\WINDOWS\System32\drivers\WacHIDRouterISDF.sys [148120 2025-08-11] (Wacom Co., Ltd. -> Wacom Technology, Corp.)
S3 WacHIDRouterISDFV; C:\WINDOWS\System32\drivers\WacHIDRouterISDF.sys [148120 2025-08-11] (Wacom Co., Ltd. -> Wacom Technology, Corp.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [21888 2026-06-17] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [646536 2026-06-17] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [115120 2026-06-17] (Microsoft Windows -> Microsoft Corporation)
S3 wintun; C:\WINDOWS\system32\DRIVERS\wintun.sys [29680 2023-09-27] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
S3 WSDPrintDevice; C:\WINDOWS\System32\DriverStore\FileRepository\wsdprint.inf_amd64_1f9e32519098c0b6\WSDPrint.sys [57344 2025-09-01] (Microsoft Windows -> Microsoft Corporation)
S3 WSDScan; C:\WINDOWS\System32\DriverStore\FileRepository\sti.inf_amd64_a6dc64e436f22951\WSDScan.sys [61440 2025-09-01] (Microsoft Windows -> Microsoft Corporation)
==================== SvcHost (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-06-25 11:34 - 2026-06-25 11:34 - 000064775 _____ C:\Users\Dusan\Desktop\FRST.txt
2026-06-25 11:33 - 2026-06-25 11:34 - 000000000 ____D C:\FRST
2026-06-25 11:26 - 2026-06-25 11:26 - 002449920 _____ (Farbar) C:\Users\Dusan\Desktop\FRST64.exe
2026-06-24 10:23 - 2026-06-24 10:23 - 000000000 ____D C:\WINDOWS\Minidump
2026-06-24 09:21 - 2026-06-24 09:21 - 000813420 _____ C:\WINDOWS\system32\perfh005.dat
2026-06-24 09:21 - 2026-06-24 09:21 - 000198754 _____ C:\WINDOWS\system32\perfc005.dat
2026-06-24 09:14 - 2026-06-24 09:15 - 000000004 ____H C:\ProgramData\cm-lock
2026-06-24 07:40 - 2026-06-25 09:43 - 000000000 ____D C:\WINDOWS\CbsTemp
2026-06-23 21:36 - 2026-06-23 21:36 - 000087226 _____ C:\WINDOWS\SysWOW64\ctac.json
2026-06-23 21:36 - 2026-06-23 21:36 - 000087226 _____ C:\WINDOWS\system32\ctac.json
2026-06-23 21:36 - 2026-06-23 21:36 - 000037624 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2026-06-23 21:36 - 2026-06-23 21:36 - 000037624 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2026-06-23 21:36 - 2026-06-23 21:36 - 000004977 _____ C:\WINDOWS\system32\DeviceFeatureDDF.json
2026-06-23 21:36 - 2026-06-23 21:36 - 000004647 _____ C:\WINDOWS\system32\ResPriUHMImageList
2026-06-23 21:36 - 2026-06-23 21:36 - 000004647 _____ C:\WINDOWS\system32\ResPriLMImageList
2026-06-23 21:36 - 2026-06-23 21:36 - 000004647 _____ C:\WINDOWS\system32\ResPriImageList
2026-06-23 21:36 - 2026-06-23 21:36 - 000004647 _____ C:\WINDOWS\system32\ResPriHMImageList
2026-06-23 21:36 - 2026-06-23 21:36 - 000004558 _____ C:\WINDOWS\system32\ResPriImageListLowCost
2026-06-23 21:36 - 2026-06-23 21:36 - 000004558 _____ C:\WINDOWS\system32\ResPriHMImageListLowCost
2026-06-23 12:24 - 2026-06-23 12:24 - 000014066 _____ C:\Users\Dusan\AppData\LocalLow\508b34850b959a778fe9b240ad345b8dec7d4a2c6a669632c5cb5f404559fd7b
2026-06-23 12:24 - 2026-06-23 12:24 - 000000026 _____ C:\Users\Dusan\AppData\LocalLow\b623ef2f95d84730adfd0d7fdefb4e3be50bf414b05229a8acc7c2bd1b011044
2026-06-23 12:14 - 2026-06-23 12:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2026-06-23 12:11 - 2026-06-22 11:19 - 002042672 _____ C:\WINDOWS\system32\ze_intel_gpu_raytracing.dll
2026-06-23 12:11 - 2026-06-22 11:19 - 001088112 _____ C:\WINDOWS\system32\ze_validation_layer.dll
2026-06-23 12:11 - 2026-06-22 11:19 - 000940928 _____ C:\WINDOWS\system32\ze_loader.dll
2026-06-23 12:11 - 2026-06-22 11:19 - 000786512 _____ (Intel) C:\WINDOWS\system32\libvpl.dll
2026-06-23 12:11 - 2026-06-22 11:19 - 000667672 _____ C:\WINDOWS\system32\ze_tracing_layer.dll
2026-06-23 12:11 - 2026-06-22 11:19 - 000666680 _____ (Intel) C:\WINDOWS\SysWOW64\libvpl.dll
2026-06-23 12:11 - 2026-06-22 11:17 - 000946088 _____ (Intel Corporation) C:\WINDOWS\system32\libmfxhw64.dll
2026-06-23 12:11 - 2026-06-22 11:17 - 000708992 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\libmfxhw32.dll
2026-06-23 12:11 - 2026-06-22 11:15 - 000656848 _____ C:\WINDOWS\SysWOW64\IntelControlLib32.dll
2026-06-23 12:11 - 2026-06-22 11:15 - 000594872 _____ (Intel Corporation) C:\WINDOWS\system32\intel_gfx_api-x64.dll
2026-06-23 12:11 - 2026-06-22 11:15 - 000456392 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\intel_gfx_api-x86.dll
2026-06-23 12:11 - 2026-06-22 11:13 - 002379648 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2026-06-23 12:11 - 2026-06-22 11:13 - 002379648 _____ C:\WINDOWS\system32\vulkaninfo.exe
2026-06-23 12:11 - 2026-06-22 11:13 - 001888128 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2026-06-23 12:11 - 2026-06-22 11:13 - 001888128 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2026-06-23 12:11 - 2026-06-22 11:13 - 001619840 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2026-06-23 12:11 - 2026-06-22 11:13 - 001619840 _____ C:\WINDOWS\system32\vulkan-1.dll
2026-06-23 12:11 - 2026-06-22 11:13 - 001426304 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2026-06-23 12:11 - 2026-06-22 11:13 - 001426304 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2026-06-23 12:11 - 2026-06-22 11:12 - 027967360 _____ (Intel Corporation) C:\WINDOWS\system32\mfxplugin64_hw.dll
2026-06-23 12:11 - 2026-06-22 11:12 - 020691320 _____ (Intel Corporation) C:\WINDOWS\SysWOW64\mfxplugin32_hw.dll
2026-06-23 12:11 - 2026-06-22 11:11 - 000306728 _____ C:\WINDOWS\system32\ControlLib.dll
2026-06-23 12:11 - 2026-06-22 11:11 - 000259624 _____ C:\WINDOWS\SysWOW64\ControlLib32.dll
2026-06-23 10:25 - 2026-06-23 10:25 - 000000000 ____D C:\Users\Dusan\.ssh
2026-06-23 10:23 - 2026-06-23 10:23 - 000000000 ____D C:\Users\Dusan\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\BeyondTrust
2026-06-23 10:23 - 2026-06-23 10:23 - 000000000 ____D C:\Users\Dusan\AppData\Local\BeyondTrust
2026-06-23 10:23 - 2026-06-23 10:23 - 000000000 ____D C:\Program Files\BeyondTrust
2026-06-17 13:56 - 2026-06-24 07:47 - 000000000 ____D C:\WINDOWS\SecureBoot
2026-06-06 18:49 - 2026-06-06 18:49 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-06-25 11:18 - 2023-07-06 14:06 - 000011917 _____ C:\Users\Dusan\Documents\UserPreferences.xml
2026-06-25 11:18 - 2023-04-24 08:58 - 000000068 ___SH C:\WINDOWS\system32\Drivers\wmiacpi.winsecurity
2026-06-25 11:17 - 2023-04-24 08:58 - 000000068 ___SH C:\WINDOWS\system32\Drivers\WpdUpFltr.winsecurity
2026-06-25 11:14 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-06-25 10:46 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-06-25 10:18 - 2023-09-26 16:15 - 000000000 ____D C:\Users\Dusan\Documents\Soubory aplikace Outlook
2026-06-25 10:08 - 2023-04-23 20:11 - 000000000 ____D C:\Users\Dusan\AppData\Roaming\Microsoft\Word
2026-06-25 10:02 - 2025-09-01 12:27 - 000000130 _____ C:\Users\Dusan\AppData\LocalLow\0677328635269b88b308e66a4520b0079f35702e6d26ad2ed9b93a50c19530ca
2026-06-25 07:46 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinBioDatabase
2026-06-25 07:45 - 2025-10-31 20:40 - 000000000 ____D C:\WINDOWS\system32\Tasks\GoogleUserPEH
2026-06-25 07:43 - 2024-04-01 09:26 - 000000000 ___HD C:\Program Files\WindowsApps
2026-06-25 07:43 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-06-25 07:43 - 2023-04-23 15:18 - 000000000 __SHD C:\Users\Dusan\IntelGraphicsProfiles
2026-06-24 22:04 - 2023-04-23 19:30 - 000000000 ____D C:\Users\Dusan\AppData\Roaming\vlc
2026-06-24 19:54 - 2025-09-01 12:23 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP
2026-06-24 19:54 - 2023-06-27 14:47 - 000000000 ____D C:\Program Files\HPPrintScanDoctor
2026-06-24 19:23 - 2023-04-24 10:15 - 000000000 ____D C:\Users\Dusan\AppData\Roaming\Microsoft\Excel
2026-06-24 19:11 - 2023-04-23 12:39 - 000000000 ____D C:\Users\Dusan\AppData\Local\Packages
2026-06-24 18:45 - 2023-04-23 19:29 - 000002207 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2026-06-24 17:35 - 2023-05-31 14:40 - 000000000 ____D C:\Users\Dusan\AppData\Local\VMware
2026-06-24 17:31 - 2023-05-31 14:40 - 000000000 ____D C:\Users\Dusan\AppData\Roaming\VMware
2026-06-24 17:29 - 2023-05-31 14:39 - 000000000 ____D C:\ProgramData\VMware
2026-06-24 17:28 - 2023-04-23 16:43 - 000000000 ____D C:\Users\Dusan\AppData\Local\D3DSCache
2026-06-24 17:15 - 2025-03-15 11:30 - 000000130 _____ C:\Users\Dusan\AppData\LocalLow\96a184e61659f20674f4cb075617391aff5ecc27a80e92f12383dc339cf94f5d
2026-06-24 13:24 - 2025-09-01 12:17 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2026-06-24 10:40 - 2025-09-01 12:27 - 000129461 _____ C:\Users\Dusan\AppData\LocalLow\fde5bdb8d55f635db55f32a5a88191d30ccf8cac51a01ed4c787bfc684a83656
2026-06-24 10:15 - 2023-04-23 21:29 - 000000000 ____D C:\WINDOWS\TempInst
2026-06-24 10:14 - 2025-09-26 20:10 - 000002264 _____ C:\Users\Dusan\AppData\LocalLow\179949a13016e16fbe514d54d5ab9c69f06cbe830e072da3b771e76609cf773b
2026-06-24 10:14 - 2025-09-26 20:08 - 000242070 _____ C:\Users\Dusan\AppData\LocalLow\8176207b6eb640df2b19f16a97050286075808a5e5be16d6dd234d9337e94d86
2026-06-24 10:14 - 2025-09-26 20:08 - 000000130 _____ C:\Users\Dusan\AppData\LocalLow\bfdf4cde24a66a604b1ecb786dde454ffa1c7e42b3426eed01891ca0aaa5116b
2026-06-24 10:13 - 2024-04-01 09:24 - 000000000 ____D C:\WINDOWS\INF
2026-06-24 09:21 - 2025-09-01 12:23 - 001978476 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-06-24 09:15 - 2025-09-01 12:21 - 000007154 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2026-06-24 09:15 - 2025-06-03 16:43 - 000065536 _____ C:\WINDOWS\system32\Drivers\BuHt.winsecurity
2026-06-24 09:15 - 2024-01-17 14:37 - 000000000 ____D C:\Program Files\TeamViewer
2026-06-24 09:14 - 2025-09-01 12:23 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-06-24 09:14 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ServiceState
2026-06-24 09:14 - 2024-04-01 09:21 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2026-06-24 09:14 - 2023-04-23 15:18 - 000000000 ____D C:\Intel
2026-06-24 09:14 - 2023-04-23 11:44 - 000012288 ___SH C:\DumpStack.log.tmp
2026-06-24 07:51 - 2023-04-23 12:40 - 000000000 ____D C:\ProgramData\Packages
2026-06-24 07:48 - 2025-09-01 12:17 - 000533696 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\UUS
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ur-PK
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ug-CN
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\tt-RU
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\te-IN
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ta-IN
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\sq-AL
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\quz-PE
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\qps-plocm
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\qps-ploc
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-IN
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\or-IN
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\nn-NO
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ne-NP
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mt-MT
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mr-IN
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ml-IN
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mk-MK
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mi-NZ
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lo-LA
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lb-LU
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kok-IN
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kn-IN
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\km-KH
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kk-KZ
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ka-GE
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\is-IS
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\hy-AM
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\hi-IN
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gu-IN
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gl-ES
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gd-GB
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ga-IE
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\fil-PH
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\fa-IR
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\eu-ES
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\cy-GB
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-IN
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\be-BY
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\as-IN
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\am-ET
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\af-ZA
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemResources
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\vi-VN
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ur-PK
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ug-CN
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\tt-RU
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\te-IN
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ta-IN
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\sq-AL
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\setup
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\quz-PE
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\qps-plocm
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\qps-ploc
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\pa-IN
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\or-IN
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\nn-NO
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ne-NP
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mt-MT
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mr-IN
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ml-IN
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mk-MK
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mi-NZ
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lo-LA
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lb-LU
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kok-IN
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kn-IN
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\km-KH
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kk-KZ
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ka-GE
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\is-IS
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\id-ID
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\hy-AM
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\hi-IN
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\gu-IN
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\gl-ES
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\gd-GB
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ga-IE
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\fil-PH
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\fa-IR
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\eu-ES
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\et-EE
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\es-MX
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\cy-GB
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ca-ES
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\bn-IN
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\be-BY
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\as-IN
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\am-ET
2026-06-24 07:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\af-ZA
2026-06-24 07:47 - 2024-04-01 09:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2026-06-24 07:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemApps
2026-06-24 07:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2026-06-24 07:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2026-06-24 07:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\Provisioning
2026-06-24 07:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2026-06-24 07:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2026-06-24 07:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2026-06-24 07:47 - 2024-04-01 09:26 - 000000000 ____D C:\Program Files\Common Files\System
2026-06-24 07:47 - 2024-04-01 09:21 - 000000000 ____D C:\WINDOWS\servicing
2026-06-23 21:36 - 2025-09-01 12:19 - 003367424 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2026-06-23 17:59 - 2025-09-05 10:59 - 000002264 _____ C:\Users\Dusan\AppData\LocalLow\d4006d4871ea502c1ec21b78643c9b9a6e6739367bf35ff1c2a2f92a02a9cfef
2026-06-23 17:47 - 2025-11-22 14:10 - 000000026 _____ C:\Users\Dusan\AppData\LocalLow\583fa92c0fa9100f390cee5e2614a7e936e0f7bc57cf9fe3ab310e57a4ca8cb5
2026-06-23 16:11 - 2023-04-23 19:58 - 000000000 ____D C:\Program Files\Microsoft Office
2026-06-23 12:46 - 2025-09-01 13:34 - 000086141 _____ C:\Users\Dusan\AppData\LocalLow\7ee252bfcba851ca067611bda7b255d9d0854ad51306dc1aac554351d3baabc3
2026-06-23 12:19 - 2025-03-15 11:23 - 000008128 _____ C:\Users\Dusan\AppData\LocalLow\2f20d2aebae05e3ad64cc03ef7d39e44bd0db8d5f4d21a7290b31af20f796e2a
2026-06-23 12:19 - 2025-03-15 11:23 - 000000026 _____ C:\Users\Dusan\AppData\LocalLow\5ae15f60a694c0950e9e9263d177a80534070b8370ab46037b5e27248af2b235
2026-06-23 12:17 - 2026-02-25 06:38 - 000005886 _____ C:\Users\Dusan\AppData\LocalLow\fde71c37b8d2a99071aeea76ed8b0e02883f431535465902a0adcb6b2cbed6bd
2026-06-23 12:17 - 2026-02-25 06:38 - 000000026 _____ C:\Users\Dusan\AppData\LocalLow\c718977e6bb1af4b42563344cc7e28697f10a22d9047902e2c05787d32087b28
2026-06-23 12:17 - 2025-03-15 11:30 - 000005873 _____ C:\Users\Dusan\AppData\LocalLow\7f1a17f70ddb8b776bfaaf7e39082ebd13968a45362a64efdb321f44953eaf44
2026-06-23 12:16 - 2025-09-01 13:34 - 000000026 _____ C:\Users\Dusan\AppData\LocalLow\9c31eed4470ad0b0f9e11406789adeb4c258cc1f75c65da0c1a389af835a64a1
2026-06-23 12:14 - 2025-09-01 13:32 - 000000000 ____D C:\WINDOWS\system32\Tasks\Intel
2026-06-23 12:14 - 2023-06-10 17:38 - 000000000 ____D C:\Program Files\Intel
2026-06-23 12:14 - 2023-04-23 15:19 - 000000000 ____D C:\ProgramData\Package Cache
2026-06-23 12:13 - 2025-09-01 12:40 - 000005893 _____ C:\Users\Dusan\AppData\LocalLow\a45aae8291c51b5247aa75b760d7c328f301a3ad102c7c168faddefae28c8dd8
2026-06-23 12:13 - 2025-09-01 12:40 - 000000130 _____ C:\Users\Dusan\AppData\LocalLow\88ff34a4a84874aaba022db1b35890c1e50ec6eb2a1db9ba5eaeefea8bee01ba
2026-06-23 12:13 - 2025-03-15 11:18 - 000005893 _____ C:\Users\Dusan\AppData\LocalLow\f6b5e8e93ac184a5b5d42c15ffc4b7861baed8460677b88e9cb13e44770238cd
2026-06-23 12:13 - 2025-03-15 11:18 - 000000130 _____ C:\Users\Dusan\AppData\LocalLow\70e5c43fd01613681078927f785287c3b5f05a5b441041231bfe955b06cd7fe6
2026-06-23 10:54 - 2025-09-26 19:37 - 000000130 _____ C:\Users\Dusan\AppData\LocalLow\ed99b9ea65d65278617c06607d325f22e902284715051b9e0666e07ea4b942cf
2026-06-23 10:25 - 2025-09-01 11:50 - 000000000 ____D C:\Users\Dusan
2026-06-23 10:20 - 2023-04-24 08:54 - 000000000 ____D C:\Users\Dusan\AppData\Roaming\Microsoft\UProof
2026-06-23 10:00 - 2023-04-23 20:05 - 000000000 ____D C:\Users\Dusan\AppData\Local\SquirrelTemp
2026-06-23 09:55 - 2023-04-23 20:05 - 000000000 ____D C:\Users\Dusan\AppData\Roaming\Microsoft\Teams
2026-06-23 09:05 - 2023-05-08 10:53 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-06-23 08:59 - 2025-09-01 12:23 - 000003716 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{DD344A29-6777-4B66-9843-E154707A24C8}
2026-06-23 08:59 - 2025-09-01 12:23 - 000003590 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{ED3D8D53-DD29-4755-B665-FA2E8D4F2DB4}
2026-06-23 07:44 - 2025-09-26 19:37 - 000012863 _____ C:\Users\Dusan\AppData\LocalLow\e1c7f91d26430b6f654d2ec7afdcd207e6087435f951ad932e7672cacc0f2dbf
2026-06-22 21:28 - 2023-04-23 15:48 - 000000000 ____D C:\WINDOWS\system32\MRT
2026-06-22 21:26 - 2023-04-23 15:48 - 222431176 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2026-06-22 21:25 - 2023-08-27 22:52 - 000000000 ____D C:\Program Files\dotnet
2026-06-22 21:16 - 2025-04-14 16:41 - 000000000 ____D C:\Program Files (x86)\dotnet
2026-06-22 19:29 - 2024-04-01 18:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2026-06-17 14:12 - 2023-06-10 17:19 - 000000000 ____D C:\Program Files (x86)\Intel
2026-06-17 14:01 - 2023-04-23 11:44 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2026-06-17 13:56 - 2025-09-01 11:45 - 000000000 ____D C:\WINDOWS\system32\ruxim
2026-06-17 13:56 - 2024-04-01 18:31 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2026-06-17 13:56 - 2024-04-01 18:28 - 000000000 ____D C:\WINDOWS\SysWOW64\cs
2026-06-17 13:56 - 2024-04-01 18:28 - 000000000 ____D C:\WINDOWS\system32\cs
2026-06-17 13:56 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2026-06-17 13:56 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2026-06-17 13:56 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2026-06-17 13:56 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\inetsrv
2026-06-17 13:56 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\inetsrv
2026-06-17 13:56 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2026-06-08 20:56 - 2024-10-06 15:30 - 000001317 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Lenovo Now.lnk
2026-06-06 18:50 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth
==================== Files in the root of some directories ========
2024-03-22 11:30 - 2024-03-22 11:30 - 000007602 _____ () C:\Users\Dusan\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Prosím o preventivní kontrolu mého osobního notebooku
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Prosím o preventivní kontrolu mého osobního notebooku
- Přílohy
-
- Addition.zip
- (38.17 KiB) Staženo 2 x
Re: Prosím o preventivní kontrolu mého osobního notebooku
Ahoj,
s prikazoveho riadku spusteneho ako spravca, daj skontrolovat oba disky prikazom
chkdsk x:
Kde x: nahradis skutocnym pismenom pridelenym disku napr. c:
Disk, ktory bude mat chyby nechaj opravit s parametrom /f
s prikazoveho riadku spusteneho ako spravca, daj skontrolovat oba disky prikazom
chkdsk x:
Kde x: nahradis skutocnym pismenom pridelenym disku napr. c:
Disk, ktory bude mat chyby nechaj opravit s parametrom /f
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Prosím o preventivní kontrolu mého osobního notebooku
Uděláno na disku C i D a nenalezen žádný problém.
Re: Prosím o preventivní kontrolu mého osobního notebooku
Pouzi fixlist.txt s obsahom:
Start
CloseProcesses:
HKU\S-1-5-21-1860569605-2048426860-1487767080-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Dusan\AppData\Local\Microsoft\Teams\Update.exe --processStart "Teams.exe" --process-start-args "--system-initiated" (No File)
Task: {BAEB2AEA-E2E7-4ECF-975B-08865261069B} - System32\Tasks\Lenovo\Vantage\Schedule\NotificationCenter => C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe NotificationCenter (No File)
Task: {5B673FF0-28BA-44B0-B940-7F6A5523B582} - System32\Tasks\Lenovo\Vantage\StartupFixPlan => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\\uninstall.exe /repair (No File)
Task: {3C3DD7C5-D856-4D53-98AF-4918684BB6F8} - System32\Tasks\Microsoft\Windows\Clip\ClipESUConsumer => %SystemRoot%\system32\ClipESUConsumer.exe -evaluateEligibility (No File)
Task: {079205A5-3D9F-4739-B2A0-317B99C0C7CB} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessPreOrder => %SystemRoot%\system32\ClipESUConsumer.exe -postProcessPreOrder (No File)
Task: {A4DF6BEF-122B-403E-B407-01A3243CDC81} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessRefund => %SystemRoot%\system32\ClipESUConsumer.exe -processRefund (No File)
Task: {0DFF4185-6822-4BA0-934F-9B0A328F1EC5} - System32\Tasks\Microsoft\Windows\Clip\EnableClipESU => %SystemRoot%\system32\clipesu.exe -e (No File)
Task: {E88D9B2C-DDEA-47B2-9582-085153004DB5} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (No File)
Task: {CAB76809-EDC0-40D2-A888-AD9BEDF4E88A} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe (No File)
Task: {4B09CE5E-A03C-4BC8-BEA1-A3F011EC40FC} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog (No File)
Task: {FA5F0C89-B47F-457A-A0C1-55134A7C2259} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
EmptyTemp:
End
Start
CloseProcesses:
HKU\S-1-5-21-1860569605-2048426860-1487767080-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Dusan\AppData\Local\Microsoft\Teams\Update.exe --processStart "Teams.exe" --process-start-args "--system-initiated" (No File)
Task: {BAEB2AEA-E2E7-4ECF-975B-08865261069B} - System32\Tasks\Lenovo\Vantage\Schedule\NotificationCenter => C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe NotificationCenter (No File)
Task: {5B673FF0-28BA-44B0-B940-7F6A5523B582} - System32\Tasks\Lenovo\Vantage\StartupFixPlan => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\\uninstall.exe /repair (No File)
Task: {3C3DD7C5-D856-4D53-98AF-4918684BB6F8} - System32\Tasks\Microsoft\Windows\Clip\ClipESUConsumer => %SystemRoot%\system32\ClipESUConsumer.exe -evaluateEligibility (No File)
Task: {079205A5-3D9F-4739-B2A0-317B99C0C7CB} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessPreOrder => %SystemRoot%\system32\ClipESUConsumer.exe -postProcessPreOrder (No File)
Task: {A4DF6BEF-122B-403E-B407-01A3243CDC81} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessRefund => %SystemRoot%\system32\ClipESUConsumer.exe -processRefund (No File)
Task: {0DFF4185-6822-4BA0-934F-9B0A328F1EC5} - System32\Tasks\Microsoft\Windows\Clip\EnableClipESU => %SystemRoot%\system32\clipesu.exe -e (No File)
Task: {E88D9B2C-DDEA-47B2-9582-085153004DB5} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (No File)
Task: {CAB76809-EDC0-40D2-A888-AD9BEDF4E88A} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe (No File)
Task: {4B09CE5E-A03C-4BC8-BEA1-A3F011EC40FC} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog (No File)
Task: {FA5F0C89-B47F-457A-A0C1-55134A7C2259} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
EmptyTemp:
End
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Prosím o preventivní kontrolu mého osobního notebooku
Zdravím, tady je fixlog.
Fix result of Farbar Recovery Scan Tool (x64) Version: 24-06-2026
Ran by Dusan (26-06-2026 08:36:23) Run:1
Running from C:\Users\Dusan\Desktop
Loaded Profiles: Dusan
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
HKU\S-1-5-21-1860569605-2048426860-1487767080-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Dusan\AppData\Local\Microsoft\Teams\Update.exe --processStart "Teams.exe" --process-start-args "--system-initiated" (No File)
Task: {BAEB2AEA-E2E7-4ECF-975B-08865261069B} - System32\Tasks\Lenovo\Vantage\Schedule\NotificationCenter => C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe NotificationCenter (No File)
Task: {5B673FF0-28BA-44B0-B940-7F6A5523B582} - System32\Tasks\Lenovo\Vantage\StartupFixPlan => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\\uninstall.exe /repair (No File)
Task: {3C3DD7C5-D856-4D53-98AF-4918684BB6F8} - System32\Tasks\Microsoft\Windows\Clip\ClipESUConsumer => %SystemRoot%\system32\ClipESUConsumer.exe -evaluateEligibility (No File)
Task: {079205A5-3D9F-4739-B2A0-317B99C0C7CB} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessPreOrder => %SystemRoot%\system32\ClipESUConsumer.exe -postProcessPreOrder (No File)
Task: {A4DF6BEF-122B-403E-B407-01A3243CDC81} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessRefund => %SystemRoot%\system32\ClipESUConsumer.exe -processRefund (No File)
Task: {0DFF4185-6822-4BA0-934F-9B0A328F1EC5} - System32\Tasks\Microsoft\Windows\Clip\EnableClipESU => %SystemRoot%\system32\clipesu.exe -e (No File)
Task: {E88D9B2C-DDEA-47B2-9582-085153004DB5} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (No File)
Task: {CAB76809-EDC0-40D2-A888-AD9BEDF4E88A} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe (No File)
Task: {4B09CE5E-A03C-4BC8-BEA1-A3F011EC40FC} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog (No File)
Task: {FA5F0C89-B47F-457A-A0C1-55134A7C2259} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
EmptyTemp:
End
*****************
Processes closed successfully.
"HKU\S-1-5-21-1860569605-2048426860-1487767080-1001\Software\Microsoft\Windows\CurrentVersion\Run\\com.squirrel.Teams.Teams" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BAEB2AEA-E2E7-4ECF-975B-08865261069B}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BAEB2AEA-E2E7-4ECF-975B-08865261069B}" => removed successfully
C:\WINDOWS\System32\Tasks\Lenovo\Vantage\Schedule\NotificationCenter => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\Vantage\Schedule\NotificationCenter" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5B673FF0-28BA-44B0-B940-7F6A5523B582}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5B673FF0-28BA-44B0-B940-7F6A5523B582}" => removed successfully
C:\WINDOWS\System32\Tasks\Lenovo\Vantage\StartupFixPlan => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\Vantage\StartupFixPlan" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{3C3DD7C5-D856-4D53-98AF-4918684BB6F8}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3C3DD7C5-D856-4D53-98AF-4918684BB6F8}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Clip\ClipESUConsumer => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Clip\ClipESUConsumer" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{079205A5-3D9F-4739-B2A0-317B99C0C7CB}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{079205A5-3D9F-4739-B2A0-317B99C0C7CB}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessPreOrder => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Clip\ClipEsuConsumerProcessPreOrder" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A4DF6BEF-122B-403E-B407-01A3243CDC81}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A4DF6BEF-122B-403E-B407-01A3243CDC81}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessRefund => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Clip\ClipEsuConsumerProcessRefund" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0DFF4185-6822-4BA0-934F-9B0A328F1EC5}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0DFF4185-6822-4BA0-934F-9B0A328F1EC5}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Clip\EnableClipESU => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Clip\EnableClipESU" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E88D9B2C-DDEA-47B2-9582-085153004DB5}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E88D9B2C-DDEA-47B2-9582-085153004DB5}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Location\Notifications => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Location\Notifications" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CCDFC0B8-01A3-4E74-A820-4F13F51D269E}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CCDFC0B8-01A3-4E74-A820-4F13F51D269E}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CAB76809-EDC0-40D2-A888-AD9BEDF4E88A}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CAB76809-EDC0-40D2-A888-AD9BEDF4E88A}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunUpdateNotificationMgr" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4B09CE5E-A03C-4BC8-BEA1-A3F011EC40FC}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4B09CE5E-A03C-4BC8-BEA1-A3F011EC40FC}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\Reboot_AC" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FA5F0C89-B47F-457A-A0C1-55134A7C2259}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FA5F0C89-B47F-457A-A0C1-55134A7C2259}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker" => removed successfully
=========== EmptyTemp: ==========
FlushDNS => completed
BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 79713367 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 256066907 B
Windows/system/drivers => 3234093098 B
Edge => 399338395 B
Chrome => 2748749738 B
Firefox => 0 B
Opera => 0 B
Local\Temp, Local\*.tmp, LocalLow\Temp, Roaming\Temp, Roaming\*.tmp , IE cache, history, cookies, recent:
Default => 2560 B
ProgramData => 0 B
Public => 0 B
systemprofile => 726 B
systemprofile32 => 0 B
LocalService => 1513656 B
NetworkService => 79458 B
Dusan => 45894685 B
DefaultAppPool => 0 B
RecycleBin => 0 B
EmptyTemp: => 6.3 GB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 08:39:18 ====
Fix result of Farbar Recovery Scan Tool (x64) Version: 24-06-2026
Ran by Dusan (26-06-2026 08:36:23) Run:1
Running from C:\Users\Dusan\Desktop
Loaded Profiles: Dusan
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
HKU\S-1-5-21-1860569605-2048426860-1487767080-1001\...\Run: [com.squirrel.Teams.Teams] => C:\Users\Dusan\AppData\Local\Microsoft\Teams\Update.exe --processStart "Teams.exe" --process-start-args "--system-initiated" (No File)
Task: {BAEB2AEA-E2E7-4ECF-975B-08865261069B} - System32\Tasks\Lenovo\Vantage\Schedule\NotificationCenter => C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe NotificationCenter (No File)
Task: {5B673FF0-28BA-44B0-B940-7F6A5523B582} - System32\Tasks\Lenovo\Vantage\StartupFixPlan => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\\uninstall.exe /repair (No File)
Task: {3C3DD7C5-D856-4D53-98AF-4918684BB6F8} - System32\Tasks\Microsoft\Windows\Clip\ClipESUConsumer => %SystemRoot%\system32\ClipESUConsumer.exe -evaluateEligibility (No File)
Task: {079205A5-3D9F-4739-B2A0-317B99C0C7CB} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessPreOrder => %SystemRoot%\system32\ClipESUConsumer.exe -postProcessPreOrder (No File)
Task: {A4DF6BEF-122B-403E-B407-01A3243CDC81} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessRefund => %SystemRoot%\system32\ClipESUConsumer.exe -processRefund (No File)
Task: {0DFF4185-6822-4BA0-934F-9B0A328F1EC5} - System32\Tasks\Microsoft\Windows\Clip\EnableClipESU => %SystemRoot%\system32\clipesu.exe -e (No File)
Task: {E88D9B2C-DDEA-47B2-9582-085153004DB5} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (No File)
Task: {CAB76809-EDC0-40D2-A888-AD9BEDF4E88A} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe (No File)
Task: {4B09CE5E-A03C-4BC8-BEA1-A3F011EC40FC} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe /RunOnAC RebootDialog (No File)
Task: {FA5F0C89-B47F-457A-A0C1-55134A7C2259} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe /RunOnBattery RebootDialog (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
EmptyTemp:
End
*****************
Processes closed successfully.
"HKU\S-1-5-21-1860569605-2048426860-1487767080-1001\Software\Microsoft\Windows\CurrentVersion\Run\\com.squirrel.Teams.Teams" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{BAEB2AEA-E2E7-4ECF-975B-08865261069B}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{BAEB2AEA-E2E7-4ECF-975B-08865261069B}" => removed successfully
C:\WINDOWS\System32\Tasks\Lenovo\Vantage\Schedule\NotificationCenter => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\Vantage\Schedule\NotificationCenter" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{5B673FF0-28BA-44B0-B940-7F6A5523B582}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5B673FF0-28BA-44B0-B940-7F6A5523B582}" => removed successfully
C:\WINDOWS\System32\Tasks\Lenovo\Vantage\StartupFixPlan => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\Vantage\StartupFixPlan" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{3C3DD7C5-D856-4D53-98AF-4918684BB6F8}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3C3DD7C5-D856-4D53-98AF-4918684BB6F8}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Clip\ClipESUConsumer => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Clip\ClipESUConsumer" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{079205A5-3D9F-4739-B2A0-317B99C0C7CB}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{079205A5-3D9F-4739-B2A0-317B99C0C7CB}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessPreOrder => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Clip\ClipEsuConsumerProcessPreOrder" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{A4DF6BEF-122B-403E-B407-01A3243CDC81}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A4DF6BEF-122B-403E-B407-01A3243CDC81}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessRefund => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Clip\ClipEsuConsumerProcessRefund" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0DFF4185-6822-4BA0-934F-9B0A328F1EC5}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0DFF4185-6822-4BA0-934F-9B0A328F1EC5}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Clip\EnableClipESU => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Clip\EnableClipESU" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{E88D9B2C-DDEA-47B2-9582-085153004DB5}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E88D9B2C-DDEA-47B2-9582-085153004DB5}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Location\Notifications => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Location\Notifications" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CCDFC0B8-01A3-4E74-A820-4F13F51D269E}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CCDFC0B8-01A3-4E74-A820-4F13F51D269E}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CAB76809-EDC0-40D2-A888-AD9BEDF4E88A}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CAB76809-EDC0-40D2-A888-AD9BEDF4E88A}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunUpdateNotificationMgr" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{4B09CE5E-A03C-4BC8-BEA1-A3F011EC40FC}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4B09CE5E-A03C-4BC8-BEA1-A3F011EC40FC}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\Reboot_AC" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{FA5F0C89-B47F-457A-A0C1-55134A7C2259}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FA5F0C89-B47F-457A-A0C1-55134A7C2259}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker" => removed successfully
=========== EmptyTemp: ==========
FlushDNS => completed
BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 79713367 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 256066907 B
Windows/system/drivers => 3234093098 B
Edge => 399338395 B
Chrome => 2748749738 B
Firefox => 0 B
Opera => 0 B
Local\Temp, Local\*.tmp, LocalLow\Temp, Roaming\Temp, Roaming\*.tmp , IE cache, history, cookies, recent:
Default => 2560 B
ProgramData => 0 B
Public => 0 B
systemprofile => 726 B
systemprofile32 => 0 B
LocalService => 1513656 B
NetworkService => 79458 B
Dusan => 45894685 B
DefaultAppPool => 0 B
RecycleBin => 0 B
EmptyTemp: => 6.3 GB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 08:39:18 ====
Re: Prosím o preventivní kontrolu mého osobního notebooku
OK, vycistene
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Prosím o preventivní kontrolu mého osobního notebooku
Díky moc za pomoc 


Přispějete na provoz fóra?