Prosím o kontrolu :)

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
vendaciki
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 09 Lis 2018 15:58

Prosím o kontrolu :)

#1 Příspěvek od vendaciki »

Potřebuji kontrolu. Jsem na pokraji koupi nového NB :?:
Resetnu NB a mám 50 Gb, večer už mám 47 Gb. Věčně se mě sekají aplikace i prohlížeč a skáče mi UEFI bios Asus. Už se mě to děje asi měsíc a nevím co s tím. Smazala jsem nepotřebné aplikace a tím jsem vyřešila pouze volné místo.

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 15-08-2026
Ran by Venda (administrator) on LAPTOP-AT8SKM70 (ASUSTeK COMPUTER INC. VivoBook_ASUSLaptop X513EAN_K513EA) (16-08-2026 11:18:47)
Running from C:\Users\Venda\Downloads\FRST64.exe
Loaded Profiles: Venda
Platform: Microsoft Windows 11 Home Version 25H2 26200.9168 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.73.0_x64__qmba6cd70vzyy\ModuleDll\HWSettings\AsusOLEDShifter.exe
(C:\Program Files\Avast Software\AntiTrack\x86\ATServiceHost.exe ->) (Gen Digital Inc. -> AVAST Software) C:\Program Files\Avast Software\AntiTrack\x86\ATTray.exe
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\Google\Chrome\Application\chrome.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2631.102.0_x64__cv1g1gvanyjgm\WhatsApp.Root.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\151.0.4129.86\msedgewebview2.exe
(C:\Program Files\WindowsApps\Microsoft.WindowsStore_22606.1401.13.0_x64__8wekyb3d8bbwe\StoreDesktopExtension.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_40d9f1ecf566b220\ASUSOptimization\AsusOSD.exe
(C:\Users\Venda\AppData\Local\Programs\Microsoft VS Code\Code.exe ->) (OpenAI OpCo, LLC -> ) C:\Users\Venda\.vscode\extensions\openai.chatgpt-26.810.52044-win32-x64\bin\windows-x86_64\codex.exe
(cmd.exe ->) (Gen Digital Inc. -> AVAST Software) C:\Program Files\Avast Software\AntiTrack\x86\ATNMHost.exe
(DriverStore\FileRepository\asussci2.inf_amd64_40d9f1ecf566b220\ASUSOptimization\AsusOptimization.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_40d9f1ecf566b220\ASUSOptimization\AsusOptimizationStartupTask.exe
(DriverStore\FileRepository\asussci2.inf_amd64_40d9f1ecf566b220\ASUSSoftwareManager\AsusSoftwareManager.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.​) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_40d9f1ecf566b220\ASUSSoftwareManager\AsusSoftwareManagerAgent.exe
(DriverStore\FileRepository\cui_dch.inf_amd64_617efc0299240684\igfxCUIServiceN.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_617efc0299240684\igfxEMN.exe
(explorer.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.ScreenSketch_11.2602.49.0_x64__8wekyb3d8bbwe\SnippingTool\SnippingTool.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\Venda\AppData\Local\Programs\Microsoft VS Code\Code.exe
(Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastUI.exe <4>
(Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <19>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\151.0.4129.86\msedgewebview2.exe <11>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\26.139.0720.0007\OneDrive.Sync.Service.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\Venda\AppData\Local\Programs\Microsoft VS Code\Code.exe <15>
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.) C:\Windows\System32\DriverStore\FileRepository\asusptpfilter.inf_amd64_34d437dd6153b8a7\AsusPTPService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_40d9f1ecf566b220\AsusAppService\AsusAppService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_40d9f1ecf566b220\ASUSOptimization\AsusOptimization.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_40d9f1ecf566b220\ASUSSoftwareManager\AsusSoftwareManager.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_40d9f1ecf566b220\ASUSSwitch\AsusSwitch.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_40d9f1ecf566b220\ASUSSystemAnalysis\AsusSystemAnalysis.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) C:\Windows\System32\DriverStore\FileRepository\asussci2.inf_amd64_40d9f1ecf566b220\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (DTS, Inc. -> DTS Inc.) C:\Windows\System32\DTS\PC\APO4x\DtsApo4Service.exe
(services.exe ->) (Gen Digital Inc. -> AVAST Software) C:\Program Files\Avast Software\AntiTrack\x86\ATServiceHost.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\afwServ.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_617efc0299240684\igfxCUIServiceN.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_897ea327b3fe52f7\esif_uf.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iastorvd.inf_amd64_a5ea1b1d8db1527e\RstMwService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_6bfff1da475a22be\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_e32ced29f236e322\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_21e0cf0737fd48af\WMIRegistrationService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\piecomponent.inf_amd64_7955510f793739e6\Intel_PIE_Service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\ibtsiva.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Windows\System32\DriverStore\FileRepository\intcoed.inf_amd64_a952167d9e98b004\AS\IAS\IntelAudioService.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\OfficeSoftwareProtectionPlatform\OSPPSVC.EXE
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\26.139.0720.0007\FileSyncHelper.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WSL\wslservice.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\Program Files\Windows Defender\MpDefenderCoreService.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_04ff63d068f8c626\RtkAudUService64.exe
(svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2631.102.0_x64__cv1g1gvanyjgm\WhatsApp.Root.exe
(svchost.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.WindowsStore_22606.1401.13.0_x64__8wekyb3d8bbwe\StoreDesktopExtension.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\26.139.0720.0007\FileCoAuth.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.380.2.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\DataExchangeHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <5>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(svchost.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_04ff63d068f8c626\RtkAudUService64.exe <2>

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [1072056 2026-07-27] (Gen Digital Inc. -> Gen Digital Inc.)
HKLM\...\Run: [AutoRearm] => C:\WINDOWS\AutoRearm\AutoRearm.exe [529408 2025-05-01] () [File not signed]
HKLM-x32\...\Run: [BCSSync] => C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe [89184 2012-11-05] (Microsoft Corporation -> Microsoft Corporation)
HKLM-x32\...\Run: [AvastAntiTrack] => C:\Program Files\Avast Software\AntiTrack\x86\ATTray.exe [237280 2026-07-12] (Gen Digital Inc. -> AVAST Software)
HKLM\...\RunOnce: [msedge_cleanup_{F3017226-FE2A-4295-8BDF-00C3A9A7E4C5}] => C:\Program Files (x86)\Microsoft\EdgeWebView\Application\151.0.4129.86\Installer\setup.exe [5443400 2026-08-15] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\RunOnce: [Delete Cached Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Program Files\Microsoft OneDrive\Update\OneDriveSetup.exe" [145038736 2026-08-16] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\RunOnce: [Delete Cached Standalone Update Binary] => C:\WINDOWS\system32\cmd.exe /q /c del /q "C:\Program Files\Microsoft OneDrive\StandaloneUpdater\OneDriveSetup.exe" (No File)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-1112624802-107007931-2133165951-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4753808 2026-08-16] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1112624802-107007931-2133165951-1001\...\Run: [QMxNetworkSync] => C:\Program Files\Common Files\MAGIX Services\Update Notifier\QMxNetworkSync.exe [1027600 2023-05-22] (MAGIX Software GmbH -> MAGIX)
HKU\S-1-5-21-1112624802-107007931-2133165951-1001\...\Run: [GoogleChromeAutoLaunch_4AE4F6751EAE7EBB173AA917AB3FB7F5] => "C:\Program Files\Google\Chrome\Application\chrome.exe" --startup-foreground-launch [4074648 2026-08-06] (Google LLC -> Google LLC)
HKU\S-1-5-21-1112624802-107007931-2133165951-1001\...\Policies\Explorer: [EnableShellExecuteHooks] 1
HKU\S-1-5-21-1112624802-107007931-2133165951-1001\...\MountPoints2: {0b535f63-6ea2-11f0-b0e8-d4f33e61396a} - "D:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-1112624802-107007931-2133165951-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Bubbles.scr [860160 2026-08-12] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-1112624802-107007931-2133165951-1004\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4753808 2026-08-16] (Microsoft Corporation -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4468376 2026-07-03] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\151.0.7922.138\Installer\chrmstp.exe [7602840 2026-08-14] (Google LLC -> Google LLC)
HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] ->
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {06CD112F-C33D-4992-BC8B-385162764E9D} - System32\Tasks\ASUS Optimization 36D18D69AFC3 => C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_40d9f1ecf566b220\ASUSOptimization\AsusHotkey.exe [365096 2026-08-04] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
Task: {FFC0C6DB-EB11-4B23-9766-4B8743FF1C52} - System32\Tasks\ASUS Update Checker 2.0 => C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_40d9f1ecf566b220\ASUSSoftwareManager\AsusUpdateChecker.exe [853040 2026-08-04] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
Task: {8CCF4DEB-FDC3-44F0-8361-CE39DEB6CCBC} - System32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474 => C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_40d9f1ecf566b220\ASUSSystemAnalysis\AsusSystemAnalysis.exe [6498352 2026-08-04] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
Task: {025A5B06-256D-4CE1-AE64-2A913CD48531} - System32\Tasks\AsusSystemDiagnosis_DriverQuality => C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_40d9f1ecf566b220\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe [1514544 2026-08-04] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
Task: {961E259D-B04E-4B58-8A88-785CD69346A9} - System32\Tasks\Avast Software\Avast Antivirus Patcher => C:\Program Files\Common Files\Avast Software\Icarus\avast-av\icarus.exe [9795576 2026-07-14] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {10F629FA-C6C1-43AF-A18A-5EFFE09FD534} - System32\Tasks\Avast Software\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5805496 2026-07-27] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {ED76CF6E-DAE6-4F94-ADEA-42939F511D0E} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2977504 2025-10-18] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {7FE32DF3-9A40-434C-9AB9-2EFA395EF06F} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\explorer.exe [3373256 2026-08-12] (Microsoft Windows -> Microsoft Corporation)
Task: {21FD88E4-4A6B-4A33-A6F2-A95719C8F620} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem152.0.7933.0{F849B1D7-7048-47CD-A804-8252384512C0} => C:\Program Files (x86)\Google\GoogleUpdater\152.0.7933.0\updater.exe [9512088 2026-07-05] (Google LLC -> Google LLC)
Task: {0C866D67-D53E-422F-9202-7FE887E97D32} - System32\Tasks\GoogleUserPEH\RunPlatformExperienceHelper_Daily => C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4468376 2026-07-03] (Google LLC -> Google LLC)
Task: {F02B455D-0E8D-4A79-AF0B-BCCAAFB06369} - System32\Tasks\GoogleUserPEH\RunPlatformExperienceHelper_Metrics => C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4468376 2026-07-03] (Google LLC -> Google LLC)
Task: {97045589-E921-4D9B-A0B1-5B2647313515} - System32\Tasks\GoogleUserPEH\RunPlatformExperienceHelperOnUnlock => C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4468376 2026-07-03] (Google LLC -> Google LLC)
Task: {FCDC9B79-B52F-49EB-8B3C-5B7C33108ECC} - System32\Tasks\Meta\Messenger-WSP-Helper-S-1-5-21-1112624802-107007931-2133165951-1001 => MessengerHelper.exe --lassie (No File)
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (No File)
Task: {4FF5AF1E-C5CF-4E84-960C-293337A6D52D} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults => %systemroot%\system32\MusNotification.exe LogonUpdateResults (No File)
Task: {09B3567E-7F06-4F24-B276-5362C01111E6} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe /RunOnAC Reboot (No File)
Task: {7948190A-3624-4D1F-AE12-F384A6DF9ED8} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {59A0AEA0-EF65-4D92-A911-201E0DF247E9} - System32\Tasks\Microsoft\Windows\WindowsUpdate\RUXIM\PLUGScheduler => "%ProgramFiles%\RUXIM\PLUGscheduler.exe" (No File)
Task: {783AAA4F-0B52-4F83-9D5E-7C4D7CDC3592} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4408208 2026-08-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {EB09D7E3-0796-4D01-9C5F-0EFC5D15A040} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-1112624802-107007931-2133165951-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4408208 2026-08-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {BA63BDD6-5D84-47AD-B35C-F8DA71EF0C92} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-1112624802-107007931-2133165951-1004 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4408208 2026-08-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {AA4097CB-75C7-47CA-8724-6F83BA19743A} - System32\Tasks\OneDrive Startup Task-S-1-5-21-1112624802-107007931-2133165951-1001 => C:\Program Files\Microsoft OneDrive\26.139.0720.0007\OneDriveLauncher.exe [852880 2026-08-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {7B6AB659-D1A1-4F04-962F-948D9049F103} - System32\Tasks\OneDrive Startup Task-S-1-5-21-1112624802-107007931-2133165951-1004 => C:\Program Files\Microsoft OneDrive\26.139.0720.0007\OneDriveLauncher.exe [852880 2026-08-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {1B026A9C-AECE-41CF-951B-0C5CDAE8E288} - System32\Tasks\Opera scheduled assistant Autoupdate 1648975725 => C:\Users\Venda\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [5625800 2026-07-23] (Opera Norway AS -> Opera Software) -> --scheduledtask --productiscomponent --installdir="C:\Users\Venda\AppData\Local\Programs\Opera\assistant" --producttype=assistant $(Arg0)
Task: {092640DF-9F46-4974-A3C8-DE758933A34C} - System32\Tasks\Opera scheduled Autoupdate 1648975724 => C:\Users\Venda\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [5625800 2026-07-23] (Opera Norway AS -> Opera Software)
Task: {18560E42-4011-48E2-B70B-4534FE959F8C} - System32\Tasks\Piriform\CCleaner 7 - S-1-5-21-1112624802-107007931-2133165951-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [7866256 2026-08-03] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {C5C911BA-6159-45B3-A469-68B50CE8F948} - System32\Tasks\Piriform\CCleaner 7 - S-1-5-21-1112624802-107007931-2133165951-1004 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [7866256 2026-08-03] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {B9B57B3F-5C10-4EC9-A31E-83B46801EBE4} - System32\Tasks\Piriform\CCleaner 7 - Scheduled Cleaning - default - S-1-5-21-1112624802-107007931-2133165951-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [7866256 2026-08-03] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {3888C354-7A97-469B-BD67-245B2D32CE21} - System32\Tasks\Piriform\CCleaner 7 BugReport => C:\Program Files\Piriform\CCleaner 7\CCleanerBugReport.exe [6558608 2026-08-03] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --product 234 --programpath "C:\Program Files\Piriform\CCleaner 7" --configpath "C:\Program Files\Piriform\CCleaner 7\data" --path "C:\Program Files\Piriform\CCleaner 7\log" --path "C:\Program Files\Piriform\CCleaner 7\data\dumps" --logpath "C:\Program Files\Piriform\CCleaner 7 (the data entry has 58 more characters).
Task: {80CB0C1E-ACB5-466C-8658-63E3B5A95CAC} - System32\Tasks\Piriform\CCleaner 7 Update => C:\Program Files\Common Files\Piriform\Icarus\piriform-ccl\icarus.exe [9274080 2026-01-19] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {43EFF5A5-7D2D-421D-972F-66D889901091} - System32\Tasks\RtkAudUService64_BG => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_04ff63d068f8c626\RtkAudUService64.exe [1961360 2023-11-01] (Realtek Semiconductor Corp. -> Realtek Semiconductor)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 31.30.90.11 31.30.90.12
Tcpip\..\Interfaces\{3cd39e49-ef28-48e2-8829-c9d0ee034321}: [DhcpNameServer] 10.66.144.1
Tcpip\..\Interfaces\{8a4641d2-e5a7-4741-9f6c-dd08cf82499e}: [DhcpNameServer] 31.30.90.11 31.30.90.12
Tcpip\..\Interfaces\{8a4641d2-e5a7-4741-9f6c-dd08cf82499e}: [DhcpDomain] docsis.vodafone.cz
Tcpip\..\Interfaces\{8a4641d2-e5a7-4741-9f6c-dd08cf82499e}\D416277556E6: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{8a4641d2-e5a7-4741-9f6c-dd08cf82499e}\D416277556E6: [DhcpDomain] nej.cz

FireFox:
========
FF Plugin: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~1\MICROS~1\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin: @videolan.org/vlc,version=3.0.17 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin-x32: @microsoft.com/OfficeAuthz,version=14.0 -> C:\PROGRA~2\MICROS~3\Office14\NPAUTHZ.DLL [2010-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~3\Office14\NPSPWRAP.DLL [2010-03-24] (Microsoft Corporation -> Microsoft Corporation)

Edge:
=======
Edge Profile: C:\Users\Venda\AppData\Local\Microsoft\Edge\User Data\Default [2026-08-13]
Edge Extension: (Dokumenty Google offline) - C:\Users\Venda\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-07-25]
Edge Extension: (Edge relevant text changes) - C:\Users\Venda\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]

Chrome:
=======
CHR DefaultProfile: Profile 1
CHR Profile: C:\Users\Venda\AppData\Local\Google\Chrome\User Data\Guest Profile [2026-03-08]
CHR Profile: C:\Users\Venda\AppData\Local\Google\Chrome\User Data\Profile 1 [2026-08-16]
CHR Notifications: Profile 1 -> hxxps://meet.google.com; hxxps://ustecky.denik.cz; hxxps://www.facebook.com; hxxps://www.tiktok.com
CHR HomePage: Profile 1 -> hxxps://www.bing.com?pc=COS2&ptag=D060224-N0330 ... =CT3332034
CHR Session Restore: Profile 1 -> is enabled.
CHR Extension: (Lighthouse) - C:\Users\Venda\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blipmdconlkpinefehnmjammfjpmpbjk [2026-07-06]
CHR Extension: (Image Downloader) - C:\Users\Venda\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\cnpniohnfphhjihaiiggeabnkjhpaldj [2026-07-06]
CHR Extension: (Tampermonkey) - C:\Users\Venda\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2026-07-06]
CHR Extension: (Dokumenty Google offline) - C:\Users\Venda\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-07-24]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\Venda\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2026-08-14]
CHR Extension: (The West) - C:\Users\Venda\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ilkgeioneoemibpddeiamfgiofnpjifm [2023-01-22]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Venda\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-01-22]
CHR Extension: (vidIQ Vision for YouTube) - C:\Users\Venda\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pachckjkecffpdphbpmfolblodfkgbhl [2026-08-14]
CHR Extension: (Avast AntiTrack) - C:\Users\Venda\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ppdidpcihajhihmghhhkfnpklgdehold [2026-07-12]
CHR Profile: C:\Users\Venda\AppData\Local\Google\Chrome\User Data\Profile 3 [2026-07-13]
CHR HomePage: Profile 3 -> hxxps://www.bing.com?pc=COS2&ptag=D060224-N0330 ... =CT3332034
CHR StartupUrls: Profile 3 -> "hxxps://www.bing.com?pc=COS2&ptag=D060224-N0330 ... =CT3332034"
CHR Extension: (Dokumenty Google offline) - C:\Users\Venda\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-05-01]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Venda\AppData\Local\Google\Chrome\User Data\Profile 3\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-02-29]
CHR Profile: C:\Users\Venda\AppData\Local\Google\Chrome\User Data\Profile 4 [2026-07-13]
CHR HomePage: Profile 4 -> hxxps://www.bing.com?pc=COS2&ptag=D060224-N0330 ... =CT3332034
CHR StartupUrls: Profile 4 -> "hxxps://www.bing.com?pc=COS2&ptag=D060224-N0330 ... =CT3332034"
CHR DefaultSearchURL: Profile 4 -> hxxps://www.bing.com/search?q={searchTerms}&pc= ... =CT3332034
CHR DefaultSearchKeyword: Profile 4 -> bing®
CHR DefaultSuggestURL: Profile 4 -> hxxp://api.bing.com/osjson.aspx?query={searchTerms}
CHR Extension: (Dokumenty Google offline) - C:\Users\Venda\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-07-12]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Venda\AppData\Local\Google\Chrome\User Data\Profile 4\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-11-19]
CHR Profile: C:\Users\Venda\AppData\Local\Google\Chrome\User Data\Profile 5 [2026-07-13]
CHR HomePage: Profile 5 -> hxxps://www.bing.com?pc=COS2&ptag=D060224-N0330 ... =CT3332034
CHR StartupUrls: Profile 5 -> "hxxps://www.bing.com?pc=COS2&ptag=D060224-N0330 ... =CT3332034"
CHR Session Restore: Profile 5 -> is enabled.
CHR Extension: (Dokumenty Google offline) - C:\Users\Venda\AppData\Local\Google\Chrome\User Data\Profile 5\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-06-07]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Venda\AppData\Local\Google\Chrome\User Data\Profile 5\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-01-30]
CHR Profile: C:\Users\Venda\AppData\Local\Google\Chrome\User Data\Profile 7 [2026-08-15]
CHR Session Restore: Profile 7 -> is enabled.
CHR Extension: (Dokumenty Google offline) - C:\Users\Venda\AppData\Local\Google\Chrome\User Data\Profile 7\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-07-25]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Venda\AppData\Local\Google\Chrome\User Data\Profile 7\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-09-09]
CHR Profile: C:\Users\Venda\AppData\Local\Google\Chrome\User Data\Profile 8 [2026-07-13]
CHR Extension: (Dokumenty Google offline) - C:\Users\Venda\AppData\Local\Google\Chrome\User Data\Profile 8\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-05-01]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Venda\AppData\Local\Google\Chrome\User Data\Profile 8\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2026-03-14]
CHR Profile: C:\Users\Venda\AppData\Local\Google\Chrome\User Data\System Profile [2026-08-14]

Opera:
=======
OPR DefaultProfile: Default

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AsusAppService; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_40d9f1ecf566b220\AsusAppService\AsusAppService.exe [1167408 2026-08-04] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 ASUSOptimization; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_40d9f1ecf566b220\ASUSOptimization\AsusOptimization.exe [661552 2026-08-04] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 AsusPTPService; C:\WINDOWS\System32\DriverStore\FileRepository\asusptpfilter.inf_amd64_34d437dd6153b8a7\AsusPTPService.exe [1702448 2025-12-23] (ASUSTeK COMPUTER INC. -> ASUSTek Computer Inc.)
R2 ASUSSoftwareManager; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_40d9f1ecf566b220\ASUSSoftwareManager\AsusSoftwareManager.exe [1444912 2026-08-04] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 ASUSSwitch; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_40d9f1ecf566b220\ASUSSwitch\AsusSwitch.exe [653872 2026-08-04] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 ASUSSystemAnalysis; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_40d9f1ecf566b220\ASUSSystemAnalysis\AsusSystemAnalysis.exe [6498352 2026-08-04] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 ASUSSystemDiagnosis; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_40d9f1ecf566b220\ASUSSystemDiagnosis\AsusSystemDiagnosis.exe [1514544 2026-08-04] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [8039352 2026-07-27] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [1044920 2026-07-27] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [2755512 2026-07-27] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [1097656 2026-07-27] (Gen Digital Inc. -> Gen Digital Inc.)
R2 AvastATServiceHost; C:\Program Files\Avast Software\AntiTrack\x86\ATServiceHost.exe [237280 2026-07-12] (Gen Digital Inc. -> AVAST Software)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2025-04-08] (Avast Software s.r.o. -> AVAST Software)
R2 CCleaner7; C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe [31251856 2026-08-03] (Gen Digital Inc. -> Gen Digital Inc.)
R2 DtsApo4Service; C:\WINDOWS\System32\DTS\PC\APO4x\DtsApo4Service.exe [442368 2023-12-18] (DTS, Inc. -> DTS Inc.)
R3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\26.139.0720.0007\FileSyncHelper.exe [3761512 2026-08-16] (Microsoft Corporation -> Microsoft Corporation)
R2 IntelAudioService; C:\WINDOWS\System32\DriverStore\FileRepository\intcoed.inf_amd64_a952167d9e98b004\AS\IAS\IntelAudioService.exe [532960 2025-12-30] (Intel Corporation -> Intel)
R2 MDCoreSvc; C:\Program Files\Windows Defender\MpDefenderCoreService.exe [2009656 2025-12-10] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\26.139.0720.0007\OneDriveUpdaterService.exe [4055400 2026-08-16] (Microsoft Corporation -> Microsoft Corporation)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25020.1009-0\NisSrv.exe [4464024 2025-04-01] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25020.1009-0\MsMpEng.exe [270040 2025-04-01] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S1 aehd; C:\WINDOWS\system32\DRIVERS\aehd.sys [403080 2025-10-22] (Google LLC -> Google LLC)
R3 AsusPTPDrv; C:\WINDOWS\System32\DriverStore\FileRepository\asusptpfilter.inf_amd64_34d437dd6153b8a7\AsusPTPFilter.sys [221744 2025-12-23] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
R3 AsusSAIO; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_40d9f1ecf566b220\ASUSSystemAnalysis\AsusSAIO.sys [51288 2026-08-04] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [21088 2026-05-07] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [245856 2026-07-27] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [393824 2026-07-27] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [317024 2026-07-27] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [80992 2026-07-27] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswDrvBrg; C:\WINDOWS\System32\drivers\aswDrvBrg.sys [86112 2026-07-27] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [29144 2025-07-29] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [34912 2026-07-27] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [299616 2026-07-27] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [637024 2026-07-27] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [100960 2026-07-27] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [71776 2026-07-27] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [857184 2026-07-27] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [1299040 2026-07-27] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [250976 2026-07-27] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [473184 2026-07-27] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 ATKWMIACPIIO; C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_40d9f1ecf566b220\ASUSOptimization\AsusWmiAcpi.sys [50952 2026-08-04] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [614400 2026-05-13] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [212992 2026-05-13] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [110592 2025-06-06] (Microsoft Corporation) [File not signed]
R0 fse; C:\WINDOWS\System32\drivers\fse.sys [230888 2026-08-12] (Microsoft Windows -> Microsoft Corporation)
R3 iaLPSS2_GPIO2_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_gpio2_tgl.inf_amd64_4fcff055ed32f652\iaLPSS2_GPIO2_TGL.sys [132072 2024-04-18] (Intel Corporation -> Intel Corporation)
R3 iaLPSS2_I2C_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_i2c_tgl.inf_amd64_bd1c0a60b9594248\iaLPSS2_I2C_TGL.sys [205400 2024-04-18] (Intel Corporation -> Intel Corporation)
R3 iaLPSS2_SPI_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_spi_tgl.inf_amd64_b635eb8a44a8089d\iaLPSS2_SPI_TGL.sys [159320 2024-04-18] (Intel Corporation -> Intel Corporation)
R3 iaLPSS2_UART2_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_uart2_tgl.inf_amd64_37bebcd2017f6992\iaLPSS2_UART2_TGL.sys [314456 2024-04-18] (Intel Corporation -> Intel Corporation)
R0 iaStorVD; C:\WINDOWS\System32\drivers\iaStorVD.sys [1544912 2021-08-26] (Intel Corporation -> Intel Corporation)
R3 IntcUSB; C:\WINDOWS\System32\DriverStore\FileRepository\intcusb.inf_amd64_7e96b5cfecffcac7\IntcUSB.sys [949216 2025-12-30] (Intel Corporation -> Intel(R) Corporation)
R3 IntelGNA; C:\WINDOWS\System32\DriverStore\FileRepository\gna.inf_amd64_19ceb7ce67a7cf8b\gna.sys [87200 2022-01-11] (Intel Corporation -> Intel Corporation)
S3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [278960 2025-04-01] (Microsoft Windows -> Microsoft Corporation)
S2 l1vhlwf; C:\WINDOWS\System32\drivers\l1vhlwf.sys [144880 2026-08-12] (Microsoft Windows -> Microsoft Corporation)
S3 vmbusproxy; C:\WINDOWS\system32\drivers\vmbusproxy.sys [98304 2025-10-24] (Microsoft Windows -> Microsoft Corporation)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [20016 2025-04-01] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [601520 2025-04-01] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [100744 2025-04-01] (Microsoft Windows -> Microsoft Corporation)
U3 aswBcc; no ImagePath
U3 Avast Business Console Client Antivirus Service; no ImagePath

==================== SvcHost (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-08-16 11:18 - 2026-08-16 11:19 - 000039706 _____ C:\Users\Venda\Downloads\FRST.txt
2026-08-16 11:17 - 2026-08-16 11:19 - 000000000 ____D C:\FRST
2026-08-16 11:17 - 2026-08-16 11:17 - 002448384 _____ (Farbar) C:\Users\Venda\Downloads\FRST64.exe
2026-08-16 09:12 - 2026-08-16 09:12 - 000000000 ____D C:\WINDOWS\CbsTemp
2026-08-14 15:02 - 2026-08-14 15:02 - 000714490 _____ C:\WINDOWS\system32\perfh005.dat
2026-08-14 15:02 - 2026-08-14 15:02 - 000153652 _____ C:\WINDOWS\system32\perfc005.dat
2026-08-12 15:18 - 2026-08-12 15:18 - 000038723 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2026-08-12 15:18 - 2026-08-12 15:18 - 000038723 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2026-08-10 16:05 - 2026-08-10 16:08 - 000000000 ____D C:\Users\Venda\.gradle
2026-08-10 15:50 - 2026-08-10 15:50 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Android Studio
2026-08-10 15:48 - 2026-08-16 10:16 - 000000000 ____D C:\Program Files\Android
2026-08-07 17:12 - 2026-08-07 17:12 - 000237857 _____ C:\Users\Venda\Downloads\Ivan-Roubal-1.jpeg
2026-08-07 15:12 - 2026-08-07 15:12 - 000000000 ____D C:\Users\Venda\AppData\Local\matplotlib
2026-08-02 17:20 - 2026-08-02 17:20 - 000000000 ____D C:\ProgramData\Microsoft DevDiv
2026-07-29 19:53 - 2026-07-29 20:52 - 000000000 ____D C:\Users\Venda\Downloads\jáma a kyvadlo
2026-07-27 11:49 - 2026-07-27 11:49 - 000325560 _____ (Gen Digital Inc.) C:\WINDOWS\system32\aswBoot.exe
2026-07-26 12:01 - 2026-08-06 15:06 - 000000000 ___HD C:\avast! sandbox
2026-07-25 17:39 - 2026-07-25 20:04 - 1334595062 _____ C:\Users\Venda\Downloads\TOMB.RAIDER-TOMB.RAIDER.(2018).cz.dabing.avi
2026-07-19 07:11 - 2026-07-19 07:11 - 000000000 ____D C:\Users\Venda\.aitk
2026-07-19 07:11 - 2026-07-19 07:11 - 000000000 ____D C:\Users\Venda\.agents
2026-07-18 07:50 - 2026-08-03 18:42 - 000018077 _____ C:\Users\Venda\Downloads\seznam vrahů.txt
2026-07-17 15:42 - 2026-07-17 15:42 - 000004977 _____ C:\WINDOWS\system32\DeviceFeatureDDF.json
2026-07-17 15:42 - 2026-07-17 15:42 - 000004647 _____ C:\WINDOWS\system32\ResPriUHMImageList
2026-07-17 15:42 - 2026-07-17 15:42 - 000004647 _____ C:\WINDOWS\system32\ResPriLMImageList
2026-07-17 15:42 - 2026-07-17 15:42 - 000004647 _____ C:\WINDOWS\system32\ResPriImageList
2026-07-17 15:42 - 2026-07-17 15:42 - 000004647 _____ C:\WINDOWS\system32\ResPriHMImageList
2026-07-17 15:42 - 2026-07-17 15:42 - 000004558 _____ C:\WINDOWS\system32\ResPriImageListLowCost
2026-07-17 15:42 - 2026-07-17 15:42 - 000004558 _____ C:\WINDOWS\system32\ResPriHMImageListLowCost
2026-07-17 15:39 - 2026-07-17 15:39 - 000087226 _____ C:\WINDOWS\SysWOW64\ctac.json
2026-07-17 15:39 - 2026-07-17 15:39 - 000087226 _____ C:\WINDOWS\system32\ctac.json

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-08-16 11:21 - 2026-07-12 13:45 - 000000000 ____D C:\Users\Venda\AppData\Local\Avast AntiTrack
2026-08-16 11:11 - 2026-03-20 16:55 - 000000000 ____D C:\Users\Venda\.codex
2026-08-16 11:11 - 2022-09-20 16:54 - 000000000 ____D C:\Users\Venda\AppData\Roaming\Code
2026-08-16 11:11 - 2022-04-03 10:30 - 000000000 ____D C:\Users\Venda\AppData\Local\D3DSCache
2026-08-16 10:57 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-08-16 10:29 - 2022-04-03 12:44 - 000000000 ____D C:\Users\Venda\AppData\Roaming\Microsoft\Excel
2026-08-16 10:16 - 2025-06-06 15:31 - 000000000 ____D C:\Users\Venda
2026-08-16 09:58 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-08-16 09:50 - 2026-06-27 08:43 - 000002904 _____ C:\WINDOWS\system32\Tasks\AsusSystemDiagnosis_DriverQuality
2026-08-16 09:50 - 2026-03-28 10:13 - 000003108 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-1112624802-107007931-2133165951-1004
2026-08-16 09:50 - 2026-03-28 10:13 - 000003066 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1112624802-107007931-2133165951-1004
2026-08-16 09:50 - 2026-02-10 17:32 - 000003034 _____ C:\WINDOWS\system32\Tasks\ASUS Optimization 36D18D69AFC3
2026-08-16 09:50 - 2025-06-06 15:36 - 000003910 _____ C:\WINDOWS\system32\Tasks\Opera scheduled assistant Autoupdate 1648975725
2026-08-16 09:50 - 2025-06-06 15:36 - 000003628 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1648975724
2026-08-16 09:50 - 2025-06-06 15:36 - 000003568 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2026-08-16 09:50 - 2025-06-06 15:36 - 000003342 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2026-08-16 09:50 - 2025-06-06 15:36 - 000003104 _____ C:\WINDOWS\system32\Tasks\ASUS Update Checker 2.0
2026-08-16 09:50 - 2025-06-06 15:36 - 000003080 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-1112624802-107007931-2133165951-1001
2026-08-16 09:50 - 2025-06-06 15:36 - 000003066 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1112624802-107007931-2133165951-1001
2026-08-16 09:50 - 2025-06-06 15:36 - 000002820 _____ C:\WINDOWS\system32\Tasks\AsusSystemAnalysis_754F3273-0563-4F20-B12F-826510B07474
2026-08-16 09:50 - 2025-06-06 15:36 - 000002716 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2026-08-16 09:50 - 2025-06-06 15:36 - 000002588 _____ C:\WINDOWS\system32\Tasks\CreateExplorerShellUnelevatedTask
2026-08-16 09:50 - 2025-06-06 15:36 - 000002452 _____ C:\WINDOWS\system32\Tasks\RtkAudUService64_BG
2026-08-16 09:50 - 2025-06-06 15:36 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2026-08-16 09:32 - 2025-06-06 15:27 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2026-08-16 08:19 - 2022-06-01 14:49 - 000000000 ____D C:\Users\Venda\AppData\Local\CrashDumps
2026-08-16 07:09 - 2022-04-03 12:44 - 000000000 ____D C:\Users\Venda\AppData\Roaming\Microsoft\Word
2026-08-16 06:53 - 2025-05-11 07:59 - 000000000 ____D C:\Users\Venda\.dbus-keyrings
2026-08-16 06:42 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-08-16 06:41 - 2024-04-01 09:26 - 000000000 ___HD C:\Program Files\WindowsApps
2026-08-16 06:41 - 2022-10-20 15:16 - 000002025 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2026-08-16 06:41 - 2022-10-20 15:16 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2026-08-16 06:41 - 2022-04-03 10:31 - 000000000 ___RD C:\Users\Venda\OneDrive
2026-08-15 16:22 - 2023-02-04 00:57 - 000002438 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-08-14 16:00 - 2024-04-01 09:24 - 000000000 ____D C:\WINDOWS\INF
2026-08-14 15:02 - 2025-06-06 15:40 - 001692324 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-08-14 15:02 - 2023-01-02 18:30 - 000002249 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2026-08-14 15:01 - 2022-04-03 10:31 - 000000000 ____D C:\ProgramData\Packages
2026-08-14 15:01 - 2022-04-03 10:30 - 000000000 ____D C:\Users\Venda\AppData\Local\Packages
2026-08-14 14:55 - 2022-04-03 10:30 - 000000000 __SHD C:\Users\Venda\IntelGraphicsProfiles
2026-08-14 05:20 - 2025-06-06 15:36 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-08-14 05:20 - 2025-06-06 15:33 - 000013724 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2026-08-14 05:20 - 2025-06-06 15:27 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK
2026-08-14 05:20 - 2025-04-08 14:51 - 000000000 ____D C:\ProgramData\Avast Software
2026-08-14 05:20 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ServiceState
2026-08-14 05:20 - 2021-10-23 23:25 - 000000000 ___HD C:\Intel
2026-08-14 05:20 - 2020-11-21 03:18 - 000012288 ___SH C:\DumpStack.log.tmp
2026-08-13 22:36 - 2024-04-01 09:21 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2026-08-13 22:34 - 2025-06-06 15:27 - 000589312 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2026-08-13 22:33 - 2025-12-11 00:53 - 000000000 ____D C:\WINDOWS\system32\NarratorMCAT
2026-08-13 22:33 - 2025-07-12 23:51 - 000000000 ____D C:\WINDOWS\system32\ruxim
2026-08-13 22:33 - 2024-04-01 18:30 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
2026-08-13 22:33 - 2024-04-01 18:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\UUS
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ur-PK
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ug-CN
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\tt-RU
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\te-IN
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ta-IN
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\sq-AL
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\quz-PE
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\qps-plocm
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\qps-ploc
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-IN
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\or-IN
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\nn-NO
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ne-NP
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mt-MT
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mr-IN
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ml-IN
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mk-MK
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mi-NZ
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lo-LA
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lb-LU
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kok-IN
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kn-IN
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\km-KH
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kk-KZ
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ka-GE
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\is-IS
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\hy-AM
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\hi-IN
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gu-IN
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gl-ES
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gd-GB
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ga-IE
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\fil-PH
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\fa-IR
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\eu-ES
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\DDFs
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\cy-GB
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-IN
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\be-BY
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\as-IN
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\am-ET
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\af-ZA
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemResources
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\vi-VN
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ur-PK
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ug-CN
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\tt-RU
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\te-IN
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ta-IN
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\sq-AL
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\setup
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\quz-PE
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\qps-plocm
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\qps-ploc
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\pa-IN
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\or-IN
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\nn-NO
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ne-NP
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mt-MT
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mr-IN
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ml-IN
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mk-MK
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mi-NZ
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lo-LA
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lb-LU
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kok-IN
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kn-IN
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\km-KH
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kk-KZ
2026-08-13 22:33 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ka-GE
2026-08-13 22:32 - 2026-05-13 23:45 - 000000000 ____D C:\WINDOWS\SecureBoot
2026-08-13 22:32 - 2024-04-01 18:31 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ___RD C:\Program Files\Windows Defender
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ___RD C:\Program Files (x86)\Windows Defender
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\is-IS
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\id-ID
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\hy-AM
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\hi-IN
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\gu-IN
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\gl-ES
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\gd-GB
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ga-IE
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\fil-PH
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\fa-IR
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\eu-ES
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\et-EE
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\es-MX
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\DDFs
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\cy-GB
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ca-ES
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\bn-IN
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\be-BY
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\as-IN
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\am-ET
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\af-ZA
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\Provisioning
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\DiagTrack
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2026-08-13 22:32 - 2024-04-01 09:26 - 000000000 ____D C:\Program Files\Common Files\System
2026-08-13 22:32 - 2024-04-01 09:21 - 000000000 ____D C:\WINDOWS\servicing
2026-08-13 19:18 - 2022-04-03 15:50 - 000000000 ____D C:\WINDOWS\system32\MRT
2026-08-13 19:14 - 2022-04-03 15:50 - 228836432 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2026-08-13 18:32 - 2026-07-09 15:38 - 000000442 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics
2026-08-13 18:32 - 2026-07-09 15:29 - 000000000 ____D C:\Users\Venda\AppData\Roaming\Docker
2026-08-13 18:32 - 2026-07-09 15:29 - 000000000 ____D C:\ProgramData\DockerDesktop
2026-08-13 16:46 - 2023-11-08 19:33 - 000000000 ____D C:\Users\Venda\AppData\Roaming\calibre
2026-08-13 16:34 - 2023-11-08 19:53 - 000000000 ____D C:\Users\Venda\AppData\Local\calibre-cache
2026-08-13 14:44 - 2022-07-09 08:08 - 000000000 ____D C:\ProgramData\Package Cache
2026-08-13 14:43 - 2023-11-09 16:48 - 000000000 ____D C:\Program Files\dotnet
2026-08-12 15:17 - 2025-06-06 15:30 - 003375104 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2026-08-10 16:35 - 2026-07-09 16:50 - 000001636 _____ C:\Users\Venda\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Visual Studio Code.lnk
2026-08-10 16:35 - 2022-04-03 10:48 - 000001543 _____ C:\Users\Venda\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2026-08-10 15:51 - 2025-10-22 18:09 - 000000000 ____D C:\Users\Venda\AppData\Roaming\Google
2026-08-10 15:51 - 2023-01-02 18:29 - 000000000 ____D C:\Users\Venda\AppData\Local\Google
2026-08-09 13:55 - 2023-03-03 16:01 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OBS Studio
2026-08-07 15:56 - 2026-07-11 13:17 - 000000000 ____D C:\Users\CodexSandboxOffline\AppData\LocalLow\Temp
2026-08-06 15:18 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth
2026-08-06 15:14 - 2026-03-20 17:01 - 000000000 __SHD C:\Users\CodexSandboxOffline
2026-08-06 15:06 - 2024-04-01 09:26 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2026-08-05 17:00 - 2022-04-03 11:52 - 000000000 ____D C:\Users\Venda\.cache
2026-08-02 17:09 - 2026-03-22 09:15 - 000000000 ____D C:\Users\Venda\.copilot
2026-07-27 11:49 - 2025-04-08 14:53 - 001299040 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswSP.sys
2026-07-27 11:49 - 2025-04-08 14:53 - 000857184 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswSnx.sys
2026-07-27 11:49 - 2025-04-08 14:53 - 000637024 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2026-07-27 11:49 - 2025-04-08 14:53 - 000473184 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswVmm.sys
2026-07-27 11:49 - 2025-04-08 14:53 - 000393824 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2026-07-27 11:49 - 2025-04-08 14:53 - 000317024 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2026-07-27 11:49 - 2025-04-08 14:53 - 000299616 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2026-07-27 11:49 - 2025-04-08 14:53 - 000245856 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswArPot.sys
2026-07-27 11:49 - 2025-04-08 14:53 - 000100960 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2026-07-27 11:49 - 2025-04-08 14:53 - 000080992 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2026-07-27 11:49 - 2025-04-08 14:53 - 000071776 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2026-07-27 11:49 - 2025-04-08 14:53 - 000034912 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswKbd.sys
2026-07-26 14:44 - 2023-02-10 12:15 - 089367901 _____ C:\Users\Venda\Downloads\Oseman, Alice - Srdcervaci 3.pdf
2026-07-20 15:39 - 2026-07-09 15:31 - 000000000 ____D C:\Users\Venda\AppData\Local\docker-secrets-engine
2026-07-19 00:03 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2026-07-19 00:03 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemApps
2026-07-19 00:03 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\PolicyDefinitions

==================== Files in the root of some directories ========

2025-05-11 10:23 - 2025-05-11 10:23 - 000050242 _____ () C:\Users\Venda\AppData\Local\recently-used.xbel
2024-12-06 19:10 - 2024-12-06 19:10 - 000007598 _____ () C:\Users\Venda\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================





Additional scan result of Farbar Recovery Scan Tool (x64) Version: 15-08-2026
Ran by Venda (16-08-2026 11:21:36)
Running from C:\Users\Venda\Downloads
Microsoft Windows 11 Home Version 25H2 26200.9168 (X64) (2025-06-06 13:36:42)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-1112624802-107007931-2133165951-500 - Administrators - Disabled)
CodexSandboxOffline (S-1-5-21-1112624802-107007931-2133165951-1004 - Limited - Enabled) => C:\Users\CodexSandboxOffline
CodexSandboxOnline (S-1-5-21-1112624802-107007931-2133165951-1005 - Limited - Enabled)
DefaultAccount (S-1-5-21-1112624802-107007931-2133165951-503 - Limited - Disabled)
Guest (S-1-5-21-1112624802-107007931-2133165951-501 - Limited - Disabled)
Venda (DisplayName: W**** ***i) (S-1-5-21-1112624802-107007931-2133165951-1001 - Administrators - Enabled) [MS Account] => C:\Users\Venda
WDAGUtilityAccount (S-1-5-21-1112624802-107007931-2133165951-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: McAfee VirusScan (Enabled - Out of date) {9D4501E6-72F6-2877-C789-89AF6F535B2C}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
FW: McAfee Firewall (Enabled) {A57E80C3-3899-292F-ECD6-209A91801C57}
FW: Avast Antivirus (Enabled) {D322394B-73F7-C65E-BBB0-3B81E063D6D4}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Avast AntiTrack (HKLM-x32\...\AvastAntiTrackPremium) (Version: 4.5.7058.14116 - Avast Software)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 26.7.11086.3745 - Gen Digital Inc.)
calibre 64bit (HKLM\...\{92FBC5AA-50A3-48E7-A458-2B78563B3993}) (Version: 9.5.0 - Kovid Goyal)
CCleaner 7 (HKLM\...\CCleaner 7) (Version: 7.10.1464.1889 - Piriform)
Git (HKLM\...\Git_is1) (Version: 2.53.0.2 - The Git Development Community)
Google Chrome (HKLM\...\{66793499-0B07-380D-8FDE-467BB6263225}) (Version: 151.0.7922.138 - Google LLC)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Microsoft .NET Host - 10.0.11 (x64) (HKLM\...\{E1510730-5A34-4EF3-B865-84351D8BF1BA}) (Version: 80.44.56884 - Microsoft Corporation) Hidden
Microsoft .NET Host - 6.0.36 (x64) (HKLM\...\{D6932D97-36F1-40B8-9CDC-CA8365B21000}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Host - 8.0.30 (x64) (HKLM\...\{01FD5326-81BD-4DEA-9F01-3D69BBDDA75E}) (Version: 64.120.56788 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 10.0.11 (x64) (HKLM\...\{208D3FC0-B592-4221-8E53-6B21621E9951}) (Version: 80.44.56884 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.36 (x64) (HKLM\...\{A9E32B25-994B-4856-A12B-0EBED3050410}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.30 (x64) (HKLM\...\{563AD235-9445-4075-8F11-C4D08A8E639B}) (Version: 64.120.56788 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 10.0.11 (x64) (HKLM\...\{0B4F3EF1-06F1-46E4-B662-A33DECC02141}) (Version: 80.44.56884 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.36 (x64) (HKLM\...\{C912E33F-956A-4921-9F55-CC11AE8F09AF}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.30 (x64) (HKLM\...\{D629906C-1E1C-4728-AB21-81690B4F435C}) (Version: 64.120.56788 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 151.0.4129.86 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 151.0.4129.86 - Microsoft Corporation) Hidden
Microsoft Office Access MUI (Czech) 2010 (HKLM-x32\...\{90140000-0015-0405-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Excel MUI (Czech) 2010 (HKLM-x32\...\{90140000-0016-0405-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Groove MUI (Czech) 2010 (HKLM-x32\...\{90140000-00BA-0405-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office InfoPath MUI (Czech) 2010 (HKLM-x32\...\{90140000-0044-0405-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Office 64-bit Components 2010 (HKLM\...\{90140000-002A-0000-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (Czech) 2010 (HKLM-x32\...\{90140000-00A1-0405-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (Czech) 2010 (HKLM-x32\...\{90140000-001A-0405-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (Czech) 2010 (HKLM-x32\...\{90140000-0018-0405-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2010 (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2010 (HKLM-x32\...\Office14.PROPLUSR) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Office Proof (Czech) 2010 (HKLM-x32\...\{90140000-001F-0405-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2010 (HKLM-x32\...\{90140000-001F-0409-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2010 (HKLM-x32\...\{90140000-001F-0407-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Slovak) 2010 (HKLM-x32\...\{90140000-001F-041B-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (Czech) 2010 (HKLM-x32\...\{90140000-002C-0405-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (Czech) 2010 (HKLM-x32\...\{90140000-0019-0405-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (Czech) 2010 (HKLM\...\{90140000-002A-0405-1000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Czech) 2010 (HKLM-x32\...\{90140000-006E-0405-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (Czech) 2010 (HKLM-x32\...\{90140000-001B-0405-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 26.139.0720.0007 - Microsoft Corporation)
Microsoft Teams Meeting Add-in for Microsoft Office (HKLM\...\{A7AB73A3-CB10-4AA5-9D38-6AEFFBDE4C91}) (Version: 1.24.14501 - Microsoft)
Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{90ffcee5-8608-4e94-8c18-a4feb4f83fb8}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.44.35211 (HKLM-x32\...\{d8bbe9f9-7c5b-42c6-b715-9ee898a2e515}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.44.35211 (HKLM\...\{86AB2CC9-08BD-4643-B0F9-F82D006D72FF}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.44.35211 (HKLM\...\{43B0D101-A022-48F4-9D04-BA404CEB1D53}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.51.36247 (HKLM-x32\...\{582BA719-E6F1-4651-A873-049E6A0DDDAF}) (Version: 14.51.36247 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.51.36247 (HKLM-x32\...\{4BF7CE18-E151-449F-9190-6CDBED0BB4A2}) (Version: 14.51.36247 - Microsoft Corporation) Hidden
Microsoft Visual C++ v14 Redistributable (x86) - 14.51.36247 (HKLM-x32\...\{9a6ce18d-11c0-4452-aa35-9f2b8437c686}) (Version: 14.51.36247.0 - Microsoft Corporation)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}) (Version: 10.0.50908 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Visual Studio Code (User) (HKU\S-1-5-21-1112624802-107007931-2133165951-1001\...\{771FD6B0-FA20-440A-A002-3B3BAC16DC50}_is1) (Version: 1.133.0 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2017 (HKLM-x32\...\{f895a2f1-ae3f-4212-8af1-7fa1f8c212ea}) (Version: 15.0.27520 - Microsoft Corporation)
Microsoft Visual Studio Tools for Applications 2017 x64 Hosting Support (HKLM\...\{AFFB9D8D-6E58-38A0-A7DD-F6F1F4247B36}) (Version: 15.0.27520 - Microsoft Corporation) Hidden
Microsoft Visual Studio Tools for Applications 2017 x86 Hosting Support (HKLM-x32\...\{9594C97E-6A20-38B3-81BB-2778C4780BE1}) (Version: 15.0.27520 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 10.0.11 (x64) (HKLM\...\{042FE0BF-0E19-47E0-8864-22F483C784E6}) (Version: 80.44.56884 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.36 (x64) (HKLM\...\{61D4736B-3325-4D4A-BD41-8BD206C6A86E}) (Version: 48.144.23186 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.36 (x64) (HKLM-x32\...\{0532b8f2-12d7-43de-95fc-7b87006758a8}) (Version: 6.0.36.34217 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.30 (x64) (HKLM\...\{6784D4C7-0D5A-468F-A27D-4B687DC16EFF}) (Version: 64.120.56881 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.30 (x64) (HKLM-x32\...\{d374321a-d08b-4207-8ef4-6953f782a26c}) (Version: 8.0.30.36323 - Microsoft Corporation)
Microsoft Windows Desktop Runtime 10.0.11 (x64) (HKLM-x32\...\{96749152-C361-49E0-BAC6-818F491B9276}) (Version: 10.0.11.50000 - Microsoft Corporation)
Opera Stable 133.0.5932.85 (HKU\S-1-5-21-1112624802-107007931-2133165951-1001\...\Opera 133.0.5932.85) (Version: 133.0.5932.85 - Opera Software)
Python 3.11.1 (64-bit) (HKU\S-1-5-21-1112624802-107007931-2133165951-1001\...\{fca95908-8c70-405d-9e72-cd746e2f7786}) (Version: 3.11.1150.0 - Python Software Foundation)
Python 3.11.1 Add to Path (64-bit) (HKLM\...\{592A8BDA-2DD1-4C98-86D1-72B14B0464FD}) (Version: 3.11.1150.0 - Python Software Foundation) Hidden
Python 3.11.1 Core Interpreter (64-bit) (HKLM\...\{5D1EFF51-4740-4E62-8E49-11C13DEC34C3}) (Version: 3.11.1150.0 - Python Software Foundation) Hidden
Python 3.11.1 Development Libraries (64-bit) (HKLM\...\{988799D6-A7CE-4F51-89AF-1E4A64FA7ECA}) (Version: 3.11.1150.0 - Python Software Foundation) Hidden
Python 3.11.1 Documentation (64-bit) (HKLM\...\{5EB7FFE8-5B05-4DD3-9DE0-D0F20D93FA6C}) (Version: 3.11.1150.0 - Python Software Foundation) Hidden
Python 3.11.1 Executables (64-bit) (HKLM\...\{A7DE96A8-2F75-44B2-B46E-5D50DE5B1B80}) (Version: 3.11.1150.0 - Python Software Foundation) Hidden
Python 3.11.1 pip Bootstrap (64-bit) (HKLM\...\{C5FAF3D9-A03D-4F6A-AAC9-87735DDA5DCF}) (Version: 3.11.1150.0 - Python Software Foundation) Hidden
Python 3.11.1 Standard Library (64-bit) (HKLM\...\{21EEFB31-6A96-4CAE-9A3B-B7FD6374C155}) (Version: 3.11.1150.0 - Python Software Foundation) Hidden
Python 3.11.1 Tcl/Tk Support (64-bit) (HKLM\...\{66CA643F-68B2-4063-8F87-34D48A2C49ED}) (Version: 3.11.1150.0 - Python Software Foundation) Hidden
Python 3.11.1 Test Suite (64-bit) (HKLM\...\{EFFC2C23-AEE2-4867-998C-5F5A902496C0}) (Version: 3.11.1150.0 - Python Software Foundation) Hidden
Python 3.11.1 Utility Scripts (64-bit) (HKLM\...\{E63D4F21-1B1F-43DC-9347-4FB51A71704C}) (Version: 3.11.1150.0 - Python Software Foundation) Hidden
Python Launcher (HKLM-x32\...\{8A19B72D-62A8-4198-BEBD-CAEF117194C8}) (Version: 3.11.8009.0 - Python Software Foundation)
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0015-0405-0000-0000000FF1CE}_Office14.PROPLUSR_{DAB3EE22-FB0E-401F-9418-E9F0B08AEB39}) (Version: - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0016-0405-0000-0000000FF1CE}_Office14.PROPLUSR_{DAB3EE22-FB0E-401F-9418-E9F0B08AEB39}) (Version: - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0018-0405-0000-0000000FF1CE}_Office14.PROPLUSR_{DAB3EE22-FB0E-401F-9418-E9F0B08AEB39}) (Version: - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0019-0405-0000-0000000FF1CE}_Office14.PROPLUSR_{DAB3EE22-FB0E-401F-9418-E9F0B08AEB39}) (Version: - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001A-0405-0000-0000000FF1CE}_Office14.PROPLUSR_{DAB3EE22-FB0E-401F-9418-E9F0B08AEB39}) (Version: - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001B-0405-0000-0000000FF1CE}_Office14.PROPLUSR_{DAB3EE22-FB0E-401F-9418-E9F0B08AEB39}) (Version: - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0405-0000-0000000FF1CE}_Office14.PROPLUSR_{A71E3AD4-5545-4D59-9F11-75F363563C6A}) (Version: - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0407-0000-0000000FF1CE}_Office14.PROPLUSR_{8925227F-C7B5-4C95-AB58-4FCF2433DAEE}) (Version: - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001F-0409-0000-0000000FF1CE}_Office14.PROPLUSR_{09A9DF49-DA06-4093-A2FD-F339211E39EA}) (Version: - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-001F-041B-0000-0000000FF1CE}_Office14.PROPLUSR_{0C337AF5-E6A7-4B6B-8F8E-08F9C6F956B4}) (Version: - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0000-1000-0000000FF1CE}_Office14.PROPLUSR_{E4D76E88-C65F-4003-9C71-EC4306679D17}) (Version: - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-002A-0405-1000-0000000FF1CE}_Office14.PROPLUSR_{7F5CE17A-23B9-4EED-B017-A7EF4547476C}) (Version: - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-002C-0405-0000-0000000FF1CE}_Office14.PROPLUSR_{EA82267F-4AAB-46BA-AD6A-9EBB544D0EF7}) (Version: - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-0044-0405-0000-0000000FF1CE}_Office14.PROPLUSR_{DAB3EE22-FB0E-401F-9418-E9F0B08AEB39}) (Version: - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-006E-0405-0000-0000000FF1CE}_Office14.PROPLUSR_{2C911571-C8B6-400B-B323-417C1806E866}) (Version: - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-00A1-0405-0000-0000000FF1CE}_Office14.PROPLUSR_{DAB3EE22-FB0E-401F-9418-E9F0B08AEB39}) (Version: - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{90140000-00BA-0405-0000-0000000FF1CE}_Office14.PROPLUSR_{DAB3EE22-FB0E-401F-9418-E9F0B08AEB39}) (Version: - Microsoft) Hidden
Service Pack 2 for Microsoft Office 2010 (KB2687455) 32-Bit Edition (HKLM-x32\...\{91140000-0011-0000-0000-0000000FF1CE}_Office14.PROPLUSR_{DE28B448-32E8-4E8F-84F0-A52B21A49B5B}) (Version: - Microsoft)
Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{82BD0A1C-815F-487F-9AE7-CE73DA413CFF}) (Version: 4.91.0.0 - Microsoft Corporation)
Update Notifier (HKLM\...\{A0CA66DA-49B3-4D6F-92EA-B4CBC60365E0}) (Version: 3.0.0.73 - MAGIX Software GmbH) Hidden
Update Notifier (HKLM\...\MX.{A0CA66DA-49B3-4D6F-92EA-B4CBC60365E0}) (Version: 3.0.0.73 - MAGIX Software GmbH)
Windows Subsystem for Linux (HKLM\...\{FC60318A-104F-41CF-A030-1AA3E98DBEFC}) (Version: 2.7.10.0 - Microsoft Corporation) Hidden
WinRAR 6.11 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.11.0 - win.rar GmbH)

Packages:
=========
Adobe Express -> C:\Program Files\WindowsApps\AdobeSystemsIncorporated.AdobeCreativeCloudExpress_2.1.1.0_neutral__ynb6jyjzte8ga [2024-07-31] (Adobe Inc.)
Adobe Express -> C:\Program Files\WindowsApps\express.adobe.com-BC6A7AA0_2.1.1.1_neutral__zafspke0a7bwa [2026-08-15] (express.adobe.com)
AppUp.IntelGraphicsExperience -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt [2024-11-09] (INTEL CORP) [Startup Task]
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2022-04-07] (Microsoft Corporation)
GIMP -> C:\Program Files\WindowsApps\GIMP.43237F745459_3.2.44.0_x64__nq49gba4h4mx8 [2026-05-19] (GIMP)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2022-04-27] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2022-04-27] (Microsoft Corporation) [MS Ad]
MyASUS -> C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.73.0_x64__qmba6cd70vzyy [2026-08-13] (ASUSTeK COMPUTER INC.) [Startup Task]
Power BI Desktop -> C:\Program Files\WindowsApps\Microsoft.MicrosoftPowerBIDesktop_2.156.951.0_x64__8wekyb3d8bbwe [2026-07-22] (Microsoft Corporation)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.48.312.0_x64__dt26b99r8h8gj [2024-02-15] (Realtek Semiconductor Corp)
Visual Studio Code -> C:\Users\Venda\AppData\Local\Programs\Microsoft VS Code\a5b5009513\appx [2026-08-14] ()
WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2631.102.0_x64__cv1g1gvanyjgm [2026-08-13] (WhatsApp Inc.) [Startup Task]
WinAppRuntime.Singleton -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Singleton_8002.3.1.0_x64__8wekyb3d8bbwe [2026-08-09] (Microsoft Corp.)
Windows ML Runtime Intel OpenVINO Execution Provider 1.8 -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinML.Intel.OpenVINO.EP.1.8_1.8.80.0_x64__8wekyb3d8bbwe [2026-07-19] (Microsoft Corp.)
WinRAR -> C:\Program Files\WinRAR [2023-02-13] (win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1112624802-107007931-2133165951-1001_Classes\CLSID\{28A80003-18FD-411D-B0A3-3C81F618E22B}\InprocServer32 -> C:\Users\Venda\AppData\Local\Kingsoft\WPS Office\12.2.0.23196\office6\kwpsmenushellext64.dll => No File
CustomCLSID: HKU\S-1-5-21-1112624802-107007931-2133165951-1001_Classes\CLSID\{7C360CF9-D475-44FC-8163-AD6C95CF5F5D}\InprocServer32 -> C:\Users\Venda\AppData\Roaming\Kingsoft\office6\msoaddins\x64\kmso2pdfplugins64_1.dll (Zhuhai Kingsoft Office Software Co., Ltd. -> Zhuhai Kingsoft Office Software Co.,Ltd)
CustomCLSID: HKU\S-1-5-21-1112624802-107007931-2133165951-1001_Classes\CLSID\{CE59C0E8-17C9-4040-9410-5F209D37E8AB}\localserver32 -> C:\Users\Venda\AppData\Local\Programs\Microsoft VS Code\Code.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1112624802-107007931-2133165951-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC)
ShellExecuteHooks: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [6671064 2013-12-18] (Microsoft Corporation -> Microsoft Corporation)
ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [4171480 2013-12-18] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\26.139.0720.0007\FileSyncShell64.dll [2026-08-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\26.139.0720.0007\FileSyncShell64.dll [2026-08-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\26.139.0720.0007\FileSyncShell64.dll [2026-08-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\26.139.0720.0007\FileSyncShell64.dll [2026-08-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\26.139.0720.0007\FileSyncShell64.dll [2026-08-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\26.139.0720.0007\FileSyncShell64.dll [2026-08-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\26.139.0720.0007\FileSyncShell64.dll [2026-08-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-07-27] (Gen Digital Inc. -> Gen Digital Inc.)
ShellIconOverlayIdentifiers: [F-Secure DataGuard Icon Overlay] -> {CA789262-D278-40F7-AC12-19C0395F9DD9} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\26.139.0720.0007\FileSyncShell64.dll [2026-08-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\26.139.0720.0007\FileSyncShell64.dll [2026-08-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\26.139.0720.0007\FileSyncShell64.dll [2026-08-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\26.139.0720.0007\FileSyncShell64.dll [2026-08-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\26.139.0720.0007\FileSyncShell64.dll [2026-08-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\26.139.0720.0007\FileSyncShell64.dll [2026-08-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\26.139.0720.0007\FileSyncShell64.dll [2026-08-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-07-27] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\26.139.0720.0007\FileSyncShell64.dll [2026-08-16] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-07-27] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-07-27] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\26.139.0720.0007\FileSyncShell64.dll [2026-08-16] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\26.139.0720.0007\FileSyncShell64.dll [2026-08-16] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-07-27] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2022-03-03] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1_S-1-5-21-1112624802-107007931-2133165951-1001: [ kwpsshellext] -> {28A80003-18FD-411D-B0A3-3C81F618E22B} => C:\Users\Venda\AppData\Local\Kingsoft\WPS Office\12.2.0.23196\office6\kwpsmenushellext64.dll -> No File
ContextMenuHandlers4_S-1-5-21-1112624802-107007931-2133165951-1001: [ kwpsshellext] -> {28A80003-18FD-411D-B0A3-3C81F618E22B} => C:\Users\Venda\AppData\Local\Kingsoft\WPS Office\12.2.0.23196\office6\kwpsmenushellext64.dll -> No File

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\Venda\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\ff13ca23fee04978\Vendula - Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 5"
ShortcutWithArgument: C:\Users\Venda\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\Wendy - Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 1"

==================== Loaded Modules (Whitelisted) =============

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) =============

SearchScopes: HKU\S-1-5-21-1112624802-107007931-2133165951-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-1112624802-107007931-2133165951-1001 -> {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-18] (Microsoft Corporation -> Microsoft Corporation)
BHO: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office14\GROOVEEX.DLL [2013-12-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Office Document Cache Handler -> {B4F3A835-0E21-4959-BA22-42B3008E02FF} -> C:\Program Files (x86)\Microsoft Office\Office14\URLREDIR.DLL [2013-03-06] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-1112624802-107007931-2133165951-1001\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-1112624802-107007931-2133165951-1001\...\sharepoint.com -> hxxps://ekultura-files.sharepoint.com
IE trusted site: HKU\S-1-5-21-1112624802-107007931-2133165951-1001\...\webcompanion.com -> hxxp://webcompanion.com

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-12-07 11:14 - 2026-08-16 06:39 - 000001015 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1 gen-webserver.local www.gen-webserver.local # gen digital helper server
127.0.0.1 revocation.gen-webserver.local www.revocation.gen-webserver.local # gen digital helper server

2026-07-09 15:38 - 2026-08-13 18:32 - 000000442 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics
172.19.176.1 LAPTOP-AT8SKM70.mshome.net # 2031 8 2 12 16 32 25 338

==================== Network ===========================

(Currently there is no automatic fix for this section.)

DNS Servers: 31.30.90.11 - 31.30.90.12
Windows Firewall is enabled.

Network Binding:
=============
Wi-Fi: Intel(R) Wireless-AC 9462 -> Netwtw10.sys

vms_vsf: Hyper-V Virtual Switch Extension Filter
ms_l1vhlwf: Nested Network Virtualization
vms_vsp: Hyper-V Virtual Switch Extension Protocol

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1112624802-107007931-2133165951-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Venda\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
HKU\S-1-5-21-1112624802-107007931-2133165951-1004\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 5) (TamperProtectionSource: 2)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)


==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run: => "SecurityHealth"
HKLM\...\StartupApproved\Run32: => "BCSSync"
HKU\S-1-5-21-1112624802-107007931-2133165951-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-1112624802-107007931-2133165951-1001\...\StartupApproved\Run: => "QMxNetworkSync"
HKU\S-1-5-21-1112624802-107007931-2133165951-1001\...\StartupApproved\Run: => "Web Companion"
HKU\S-1-5-21-1112624802-107007931-2133165951-1001\...\StartupApproved\Run: => "Docker Desktop"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{CC7D00A0-DFFF-4C37-A2C4-604035E10BD1}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{0BDB8DE6-4C4C-4336-AF5F-A8C3991B618D}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{9B9EF1E6-935D-419E-BCBB-C1391565E584}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_24193.1904.3031.6050_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{54D7B702-8E67-4420-8813-7618B84DD78D}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_24193.1904.3031.6050_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{22581F4E-0D0F-4425-A50B-7CA1DA1778C2}] => (Allow) C:\Program Files\Common Files\MAGIX Services\Update Notifier\QMxNetworkSync.exe (MAGIX Software GmbH -> MAGIX)
FirewallRules: [TCP Query User{C3B40505-F514-4B4A-99B2-CAF90C5A6FB2}C:\users\venda\appdata\local\programs\microsoft vs code\code.exe] => (Allow) C:\users\venda\appdata\local\programs\microsoft vs code\code.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{9032B915-C42E-4CF3-BFC6-27BA2536A2B0}C:\users\venda\appdata\local\programs\microsoft vs code\code.exe] => (Allow) C:\users\venda\appdata\local\programs\microsoft vs code\code.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{AD802C48-6B1E-4CDD-BB89-47E237E22136}] => (Allow) LPort=57209
FirewallRules: [{BC1991ED-E097-46C4-BBBB-BC460D168916}] => (Allow) LPort=57210
FirewallRules: [{769A6113-0EB0-454D-AF9F-445A7FE6B76D}] => (Allow) LPort=57211
FirewallRules: [{93ED85BE-4E8C-4FDF-81C1-4CEAA4E01D1E}] => (Allow) LPort=57212
FirewallRules: [{9C9568EB-46E5-43DA-9E12-15CF4C9C962E}] => (Allow) LPort=57213
FirewallRules: [{7024289F-46C1-4FB4-BEFE-C7332B5AA985}] => (Allow) LPort=57214
FirewallRules: [{F9436C37-24DE-44B8-B23B-A24782C48EEF}] => (Allow) LPort=57215
FirewallRules: [{7FE5BC02-E35F-48A5-978A-255DFCF23CFE}] => (Allow) LPort=57216
FirewallRules: [{F7B39498-3422-499B-9089-6E5A2BDE5617}] => (Allow) LPort=57217
FirewallRules: [{D88EBED9-BBA2-4102-B80B-0987B8E25327}] => (Allow) LPort=57218
FirewallRules: [{D136407C-508B-4FBF-AD40-61F236DC92C5}] => (Allow) LPort=57209
FirewallRules: [{56A49A9B-96BD-44AD-A7F5-234A9CAC892F}] => (Allow) LPort=57210
FirewallRules: [{689D50BC-DC7C-47F9-B50D-FE69963E363B}] => (Allow) LPort=57211
FirewallRules: [{75BFB25F-8732-46A1-9631-E65CC2825CCE}] => (Allow) LPort=57212
FirewallRules: [{30CBCEC2-2598-40E9-8B1A-8B874BBF31DB}] => (Allow) LPort=57213
FirewallRules: [{809AE5B4-E3D9-414C-9CA8-4EE50CB9CBCD}] => (Allow) LPort=57214
FirewallRules: [{4EB49521-BDF7-4A35-836C-5BB92D69237F}] => (Allow) LPort=57215
FirewallRules: [{A38D1213-680C-49C3-A18C-1E53A561CC06}] => (Allow) LPort=57216
FirewallRules: [{1A15CE15-3A54-4FF3-9851-A2203BEAC8A1}] => (Allow) LPort=57217
FirewallRules: [{F2EA57B0-573E-40DD-BE14-2EF1F7FB680A}] => (Allow) LPort=57218
FirewallRules: [{FA49D0FC-5CA2-455F-9A35-7461D2BDACEF}] => (Allow) LPort=23007
FirewallRules: [{224931B0-B6A4-41B7-AC83-3B0C5527C8BB}] => (Allow) LPort=23008
FirewallRules: [{A2FE5D13-7B4C-4134-95EC-38603E83B55D}] => (Allow) LPort=33009
FirewallRules: [{E8594988-04E9-414C-B23E-9F47BED066BC}] => (Allow) LPort=33010
FirewallRules: [{A12663CE-880F-41C2-B4EA-927FDB682C56}] => (Allow) LPort=33011
FirewallRules: [{F8810F74-8886-4026-8992-CC9C1C3168D9}] => (Allow) LPort=43012
FirewallRules: [{76023D30-4CD7-411C-94E6-1C58401BFD1A}] => (Allow) LPort=43013
FirewallRules: [{1716FC78-2AEC-43C5-8AE4-1C45886E3AE3}] => (Allow) LPort=53014
FirewallRules: [{89B1800F-1624-47AE-8922-193D9B00C54C}] => (Allow) LPort=53015
FirewallRules: [{6BBCC72C-2B8A-46B4-9AE3-C661745C55FF}] => (Allow) LPort=53016
FirewallRules: [{40982E7E-80E3-4509-8AA9-CC5A96C723E5}] => (Allow) LPort=23007
FirewallRules: [{B91F5438-86D3-410C-AD45-B35006161A55}] => (Allow) LPort=23008
FirewallRules: [{84D67C87-D4F3-45BD-97FA-6C2A4A8EA2AD}] => (Allow) LPort=33009
FirewallRules: [{C47686E0-B2A1-48E7-B9CE-93F34847789C}] => (Allow) LPort=33010
FirewallRules: [{8B684CB1-33F0-42F5-B595-12CC43D03541}] => (Allow) LPort=33011
FirewallRules: [{9C50D875-F97F-46D9-8D00-E36FBCD0127F}] => (Allow) LPort=43012
FirewallRules: [{C2223A64-3774-4DB9-82CE-63D12FA75A9C}] => (Allow) LPort=43013
FirewallRules: [{5EBA271F-C2F1-4B8B-919D-3D66838CE4F1}] => (Allow) LPort=53014
FirewallRules: [{32D159FB-44D1-4484-AB35-FCE6DF1269D1}] => (Allow) LPort=53015
FirewallRules: [{A560E044-3383-4A1E-ABCF-1869471B60F9}] => (Allow) LPort=53016
FirewallRules: [{0EBD1D2B-D76E-446D-9BBC-70FD1C813C1E}] => (Allow) LPort=50053
FirewallRules: [{528E0D1F-5608-4C2C-BEFD-59B8C35196E1}] => (Allow) LPort=50053
FirewallRules: [EdgeWebView2-MDNS-In-UDP] => (Allow) C:\WINDOWS\system32\Microsoft-Edge-WebView\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{B9DFEA88-D51F-404F-ADDF-3D33A79E0636}] => (Allow) C:\Users\Venda\AppData\Local\Programs\Opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [{925FF0F5-71E0-4401-A8E5-9EE083526BF7}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.73.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.)
FirewallRules: [{E7605508-5F9F-4DEA-80F8-16F48D0FEF30}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.73.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.)
FirewallRules: [{FC478FAB-4339-4CCD-9207-B46BE1C5E623}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.73.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.)
FirewallRules: [{E744235A-3F67-4220-82BC-C2EBF4A0FEA0}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.73.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.)
FirewallRules: [{88234515-56D2-4DF8-8D51-130AF78FCF5B}] => (Allow) C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_40d9f1ecf566b220\ASUSSwitch\AsusSwitchNet.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
FirewallRules: [{E779063F-8001-49E3-908F-B4D1916F6149}] => (Allow) C:\WINDOWS\System32\DriverStore\FileRepository\asussci2.inf_amd64_40d9f1ecf566b220\ASUSSwitch\AsusSwitchNetMDNS.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
FirewallRules: [{79DF853A-3D31-4B80-8635-266E5BFABF6C}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================


==================== Faulty Device Manager Devices ============

==================== Event log errors: ========================

Application errors:
==================
Error: (08/16/2026 11:11:39 AM) (Source: Application Hang) (EventID: 1002) (User: NT AUTHORITY)
Description: Verze 1.132.0.0 programu Code.exe ukončila interakci se systémem Windows a byla ukončena. Pokud chcete zjistit, zda jsou k dispozici další informace o problému, zkontrolujte historii problémů v ovládacím panelu Zabezpečení a údržba.

Error: (08/16/2026 08:19:11 AM) (Source: Application Error) (EventID: 1000) (User: LAPTOP-AT8SKM70)
Description: Název chybující aplikace: Explorer.EXE, verze: 10.0.26100.9168, časové razítko: 0x77cb28fb
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.26100.9168, časové razítko: 0xef4c9cab
Kód výjimky: 0xe0434e49
Posun chyby: 0x00000000000c187a
ID chybujícího procesu: 0x2ce8
Čas spuštění chybující aplikace: 0x1dd2bec26c3d6c8
Cesta k chybující aplikaci: C:\WINDOWS\Explorer.EXE
Cesta k chybujícímu modulu: C:\WINDOWS\System32\KERNELBASE.dll
ID sestavy: bb91675f-c5b4-4630-989c-8973916ebb1e
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:

Error: (08/11/2026 04:00:44 PM) (Source: DPTF) (EventID: 17) (User: NT AUTHORITY)
Description: Event-ID 17

Error: (08/10/2026 05:32:07 PM) (Source: Windows Search Service) (EventID: 3079) (User: )
Description: Oznámení pro svazek V:\ nejsou aktivní.

Kontext: aplikace Windows

Podrobnosti:
0x%08x (0x8007049b - Deník změn svazku není aktivní. (HRESULT : 0x8007049b))

Error: (08/10/2026 05:24:14 PM) (Source: CertEnroll) (EventID: 87) (User: NT AUTHORITY)
Description: Registrace certifikátu SCEP pro Místní systém přes https://INTC-KeyId-b066d9697f5d3a07b425 ... s/Aik/scep se nepovedla:

PkiStatus(11): SCEPDispositionPendingChallenge
EnrollStatus(32): EnrollUnknown
Operace byla dokončena úspěšně. 0x0 (WIN32: 0)
SubmitDone
SubmitV2Attestation: Bad Request
{"Message":"V2 Protocol AIK certificate requests with P-256 ECC public keys are not supported. Public key algorithm: 1.2.840.10045.2.1, Key length: 256."}
HTTP/1.1 400 Bad Request
Date: Mon, 10 Aug 2026 15:24:16 GMT
Content-Length: 154
Content-Type: application/json; charset=utf-8
X-Content-Type-Options: nosniff
Strict-Transport-Security: max-age=31536000;includeSubDomains
x-ms-request-id: b023ab7d-8be5-4e5a-8344-d0b2b6aa7dd1

Metoda: POST(4031ms)
Fáze: SubmitDone
Chybná žádost (400) 0x80190190 (-2145844848 HTTP_E_STATUS_BAD_REQUEST)

Error: (08/06/2026 03:08:05 PM) (Source: CertEnroll) (EventID: 87) (User: NT AUTHORITY)
Description: Registrace certifikátu SCEP pro Místní systém přes https://INTC-KeyId-b066d9697f5d3a07b425 ... s/Aik/scep se nepovedla:

PkiStatus(11): SCEPDispositionPendingChallenge
EnrollStatus(32): EnrollUnknown
Operace byla dokončena úspěšně. 0x0 (WIN32: 0)
SubmitDone
SubmitV2Attestation: Bad Request
{"Message":"V2 Protocol AIK certificate requests with P-256 ECC public keys are not supported. Public key algorithm: 1.2.840.10045.2.1, Key length: 256."}
HTTP/1.1 400 Bad Request
Date: Thu, 06 Aug 2026 13:08:11 GMT
Content-Length: 154
Content-Type: application/json; charset=utf-8
X-Content-Type-Options: nosniff
Strict-Transport-Security: max-age=31536000;includeSubDomains
x-ms-request-id: 74f2ecac-87a4-417f-a599-14fc07b4db98

Metoda: POST(3563ms)
Fáze: SubmitDone
Chybná žádost (400) 0x80190190 (-2145844848 HTTP_E_STATUS_BAD_REQUEST)

Error: (08/05/2026 08:12:57 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1512) (User: NT AUTHORITY)
Description: Systém Windows nemůže uvolnit soubor registru. Nebyla uvolněna paměť používaná registrem. Tento problém je často způsoben tím, že jsou služby spuštěny pomocí uživatelského účtu. Zkuste služby konfigurovat pro spuštění pomocí účtu místní nebo síťové služby.

PODROBNOSTI – Přístup byl odepřen.

Error: (08/05/2026 08:12:57 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1512) (User: NT AUTHORITY)
Description: Systém Windows nemůže uvolnit soubor registru. Nebyla uvolněna paměť používaná registrem. Tento problém je často způsoben tím, že jsou služby spuštěny pomocí uživatelského účtu. Zkuste služby konfigurovat pro spuštění pomocí účtu místní nebo síťové služby.

PODROBNOSTI – Přístup byl odepřen.


System errors:
=============
Error: (08/16/2026 06:39:17 AM) (Source: Microsoft-Windows-NDIS) (EventID: 10317) (User: NT AUTHORITY)
Description: Na miniportu Microsoft Wi-Fi Direct Virtual Adapter #2, {71e62ab2-be68-45d5-a34f-7394e0be7d22}, došlo k události 74.

Error: (08/15/2026 02:43:34 PM) (Source: Microsoft-Windows-NDIS) (EventID: 10317) (User: NT AUTHORITY)
Description: Na miniportu Microsoft Wi-Fi Direct Virtual Adapter #2, {71e62ab2-be68-45d5-a34f-7394e0be7d22}, došlo k události 74.

Error: (08/15/2026 06:16:49 AM) (Source: volsnap) (EventID: 36) (User: )
Description: Stínové kopie svazku C: byly přerušeny, protože z důvodu limitu stanoveného uživatelem se nepodařilo zvětšit úložiště stínové kopie.

Error: (08/15/2026 06:15:17 AM) (Source: Microsoft-Windows-NDIS) (EventID: 10317) (User: NT AUTHORITY)
Description: Na miniportu Microsoft Wi-Fi Direct Virtual Adapter #2, {71e62ab2-be68-45d5-a34f-7394e0be7d22}, došlo k události 74.

Error: (08/14/2026 02:57:06 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Aktualizace Google (gupdate) neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (08/14/2026 02:57:06 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Služba Aktualizace Google (gupdate) bylo dosaženo časového limitu (30000 ms).

Error: (08/14/2026 05:20:22 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Intel(R) TPM Provisioning Service bylo dosaženo časového limitu (45000 ms).

Error: (08/13/2026 10:35:19 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Intel(R) TPM Provisioning Service bylo dosaženo časového limitu (45000 ms).

Error: (07/29/2026 03:14:52 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (07/28/2026 04:55:02 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.

Error: (07/27/2026 05:25:48 PM) (Source: disk) (EventID: 7) (User: )
Description: Zařízení \Device\Harddisk0\DR0 má chybný blok.


Windows Defender:
================
CodeIntegrity:
===============
Date: 2026-08-10 19:02:39
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\Google\Chrome\Application\151.0.7922.76\vulkan-1.dll that did not meet the Microsoft signing level requirements.

Date: 2026-08-10 19:02:39
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\Google\Chrome\Application\151.0.7922.76\vk_swiftshader.dll that did not meet the Microsoft signing level requirements.

Date: 2026-08-10 15:13:48
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Avast Software\Avast\AvastSvc.exe) attempted to load \Device\HarddiskVolume3\Program Files\Common Files\microsoft shared\OFFICE14\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2026-08-07 17:12:42
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\Google\Chrome\Application\150.0.7871.188\vulkan-1.dll that did not meet the Microsoft signing level requirements.

Date: 2026-08-07 17:12:42
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\Google\Chrome\Application\150.0.7871.188\vk_swiftshader.dll that did not meet the Microsoft signing level requirements.

Date: 2026-08-03 15:19:15
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\Google\Chrome\Application\150.0.7871.184\vulkan-1.dll that did not meet the Microsoft signing level requirements.

Date: 2026-08-03 15:19:15
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\Google\Chrome\Application\150.0.7871.184\vk_swiftshader.dll that did not meet the Microsoft signing level requirements.


==================== Memory info ===========================

BIOS: American Megatrends International, LLC. X513EAN.307 04/10/2023
Motherboard: ASUSTeK COMPUTER INC. X513EAN
Processor: 11th Gen Intel(R) Core(TM) i5-1135G7 @ 2.40GHz
Percentage of memory in use: 93%
Total physical RAM: 7886.34 MB
Available physical RAM: 513.09 MB
Total Virtual: 24262.63 MB
Available Virtual: 8111.89 MB

==================== Drives ================================

Disk 0 - Drive c: (OS) (Fixed) (Total:147.18 GB) (Free:32.53 GB) (Model: NVMe KINGSTON OM8PDP3256B-AB1) (Protected) NTFS
Disk 0 - Drive v: (Wendy) (Fixed) (Total:89.8 GB) (Free:45.43 GB) (Model: NVMe KINGSTON OM8PDP3256B-AB1) (Protected) NTFS

\\?\Volume{0e2b57d6-d847-43c0-a47a-e8f3fda23317}\ (RECOVERY) (Fixed) (Total:1.03 GB) (Free:0.08 GB) NTFS
\\?\Volume{3b6e235d-cb6c-4585-8295-2b8b37611239}\ (MYASUS) (Fixed) (Total:0.19 GB) (Free:0.13 GB) FAT32
\\?\Volume{351d59f3-4933-4803-8031-2370be1c3579}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.2 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 238.5 GB) (Disk ID: CF5AF7A9)

Partition: GPT.

==================== End of Addition.txt =======================

Avatar uživatele
Rudy
Site Admin
Site Admin
Příspěvky: 120062
Registrován: 30 Říj 2003 13:42
Místo/Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu :)

#2 Příspěvek od Rudy »

Zdravím!
Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-1112624802-107007931-2133165951-1001\...\MountPoints2: {0b535f63-6ea2-11f0-b0e8-d4f33e61396a} - "D:\HiSuiteDownLoader.exe"
HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] ->
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {FCDC9B79-B52F-49EB-8B3C-5B7C33108ECC} - System32\Tasks\Meta\Messenger-WSP-Helper-S-1-5-21-1112624802-107007931-2133165951-1001 => MessengerHelper.exe --lassie (No File)
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (No File)
Task: {4FF5AF1E-C5CF-4E84-960C-293337A6D52D} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults => %systemroot%\system32\MusNotification.exe LogonUpdateResults (No File)
Task: {09B3567E-7F06-4F24-B276-5362C01111E6} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe /RunOnAC Reboot (No File)
Task: {7948190A-3624-4D1F-AE12-F384A6DF9ED8} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {59A0AEA0-EF65-4D92-A911-201E0DF247E9} - System32\Tasks\Microsoft\Windows\WindowsUpdate\RUXIM\PLUGScheduler => "%ProgramFiles%\RUXIM\PLUGscheduler.exe" (No File)
FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin: @videolan.org/vlc,version=3.0.17 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [No File]
CHR HomePage: Profile 1 -> hxxps://www.bing.com?pc=COS2&ptag=D060224-N0330 ... =CT3332034
CHR HomePage: Profile 3 -> hxxps://www.bing.com?pc=COS2&ptag=D060224-N0330 ... =CT3332034
CHR StartupUrls: Profile 3 -> "hxxps://www.bing.com?pc=COS2&ptag=D060224-N0330 ... =CT3332034"
CHR HomePage: Profile 4 -> hxxps://www.bing.com?pc=COS2&ptag=D060224-N0330 ... =CT3332034
CHR StartupUrls: Profile 4 -> "hxxps://www.bing.com?pc=COS2&ptag=D060224-N0330 ... =CT3332034"
CHR DefaultSearchURL: Profile 4 -> hxxps://www.bing.com/search?q={searchTerms}&pc= ... =CT3332034
CHR DefaultSearchKeyword: Profile 4 -> bing®
CHR HomePage: Profile 5 -> hxxps://www.bing.com?pc=COS2&ptag=D060224-N0330 ... =CT3332034
CHR StartupUrls: Profile 5 -> "hxxps://www.bing.com?pc=COS2&ptag=D060224-N0330 ... =CT3332034"
U3 aswBcc; no ImagePath
U3 Avast Business Console Client Antivirus Service; no ImagePath
C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
C:\DumpStack.log.tmp
CustomCLSID: HKU\S-1-5-21-1112624802-107007931-2133165951-1001_Classes\CLSID\{28A80003-18FD-411D-B0A3-3C81F618E22B}\InprocServer32 -> C:\Users\Venda\AppData\Local\Kingsoft\WPS Office\12.2.0.23196\office6\kwpsmenushellext64.dll => No File
ShellIconOverlayIdentifiers: [F-Secure DataGuard Icon Overlay] -> {CA789262-D278-40F7-AC12-19C0395F9DD9} => -> No File
ContextMenuHandlers1_S-1-5-21-1112624802-107007931-2133165951-1001: [ kwpsshellext] -> {28A80003-18FD-411D-B0A3-3C81F618E22B} => C:\Users\Venda\AppData\Local\Kingsoft\WPS Office\12.2.0.23196\office6\kwpsmenushellext64.dll -> No File
ContextMenuHandlers4_S-1-5-21-1112624802-107007931-2133165951-1001: [ kwpsshellext] -> {28A80003-18FD-411D-B0A3-3C81F618E22B} => C:\Users\Venda\AppData\Local\Kingsoft\WPS Office\12.2.0.23196\office6\kwpsmenushellext64.dll -> No File

EmptyTdemp:
End
Uložte do C:\Users\Venda\Downloads jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

vendaciki
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 09 Lis 2018 15:58

Re: Prosím o kontrolu :)

#3 Příspěvek od vendaciki »

Fix result of Farbar Recovery Scan Tool (x64) Version: 15-08-2026
Ran by Venda (16-08-2026 14:04:53) Run:1
Running from C:\Users\Venda\Downloads
Loaded Profiles: Venda & CodexSandboxOffline &
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-1112624802-107007931-2133165951-1001\...\MountPoints2: {0b535f63-6ea2-11f0-b0e8-d4f33e61396a} - "D:\HiSuiteDownLoader.exe"
HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] ->
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {FCDC9B79-B52F-49EB-8B3C-5B7C33108ECC} - System32\Tasks\Meta\Messenger-WSP-Helper-S-1-5-21-1112624802-107007931-2133165951-1001 => MessengerHelper.exe --lassie (No File)
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (No File)
Task: {4FF5AF1E-C5CF-4E84-960C-293337A6D52D} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults => %systemroot%\system32\MusNotification.exe LogonUpdateResults (No File)
Task: {09B3567E-7F06-4F24-B276-5362C01111E6} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe /RunOnAC Reboot (No File)
Task: {7948190A-3624-4D1F-AE12-F384A6DF9ED8} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe /RunOnBattery Reboot (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {59A0AEA0-EF65-4D92-A911-201E0DF247E9} - System32\Tasks\Microsoft\Windows\WindowsUpdate\RUXIM\PLUGScheduler => "%ProgramFiles%\RUXIM\PLUGscheduler.exe" (No File)
FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin: @videolan.org/vlc,version=3.0.17 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [No File]
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [No File]
CHR HomePage: Profile 1 -> hxxps://www.bing.com?pc=COS2&ptag=D060224-N0330 ... =CT3332034
CHR HomePage: Profile 3 -> hxxps://www.bing.com?pc=COS2&ptag=D060224-N0330 ... =CT3332034
CHR StartupUrls: Profile 3 -> "hxxps://www.bing.com?pc=COS2&ptag=D060224-N0330 ... =CT3332034"
CHR HomePage: Profile 4 -> hxxps://www.bing.com?pc=COS2&ptag=D060224-N0330 ... =CT3332034
CHR StartupUrls: Profile 4 -> "hxxps://www.bing.com?pc=COS2&ptag=D060224-N0330 ... =CT3332034"
CHR DefaultSearchURL: Profile 4 -> hxxps://www.bing.com/search?q={searchTerms}&pc= ... =CT3332034
CHR DefaultSearchKeyword: Profile 4 -> bing®
CHR HomePage: Profile 5 -> hxxps://www.bing.com?pc=COS2&ptag=D060224-N0330 ... =CT3332034
CHR StartupUrls: Profile 5 -> "hxxps://www.bing.com?pc=COS2&ptag=D060224-N0330 ... =CT3332034"
U3 aswBcc; no ImagePath
U3 Avast Business Console Client Antivirus Service; no ImagePath
C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
C:\DumpStack.log.tmp
CustomCLSID: HKU\S-1-5-21-1112624802-107007931-2133165951-1001_Classes\CLSID\{28A80003-18FD-411D-B0A3-3C81F618E22B}\InprocServer32 -> C:\Users\Venda\AppData\Local\Kingsoft\WPS Office\12.2.0.23196\office6\kwpsmenushellext64.dll => No File
ShellIconOverlayIdentifiers: [F-Secure DataGuard Icon Overlay] -> {CA789262-D278-40F7-AC12-19C0395F9DD9} => -> No File
ContextMenuHandlers1_S-1-5-21-1112624802-107007931-2133165951-1001: [ kwpsshellext] -> {28A80003-18FD-411D-B0A3-3C81F618E22B} => C:\Users\Venda\AppData\Local\Kingsoft\WPS Office\12.2.0.23196\office6\kwpsmenushellext64.dll -> No File
ContextMenuHandlers4_S-1-5-21-1112624802-107007931-2133165951-1001: [ kwpsshellext] -> {28A80003-18FD-411D-B0A3-3C81F618E22B} => C:\Users\Venda\AppData\Local\Kingsoft\WPS Office\12.2.0.23196\office6\kwpsmenushellext64.dll -> No File

EmptyTdemp:
End
*****************

Processes closed successfully.
HKLM\SOFTWARE\Microsoft\Windows Defender\\DisableAntiSpyware => Error setting value.
HKLM\SOFTWARE\Microsoft\Windows Defender\\DisableAntiVirus => Error setting value.
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => could not remove, key could be protected
HKU\S-1-5-21-1112624802-107007931-2133165951-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{0b535f63-6ea2-11f0-b0e8-d4f33e61396a} => removed successfully
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Authentication\Credential Providers\{C885AA15-1764-4293-B82A-0586ADD46B35} => removed successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{FCDC9B79-B52F-49EB-8B3C-5B7C33108ECC}" => not found
"C:\WINDOWS\System32\Tasks\Meta\Messenger-WSP-Helper-S-1-5-21-1112624802-107007931-2133165951-1001" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Meta\Messenger-WSP-Helper-S-1-5-21-1112624802-107007931-2133165951-1001" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{077BA067-7C15-40F0-B22E-C9DC2A54B4A2}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{077BA067-7C15-40F0-B22E-C9DC2A54B4A2}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Location\Notifications => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Location\Notifications" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CCDFC0B8-01A3-4E74-A820-4F13F51D269E}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CCDFC0B8-01A3-4E74-A820-4F13F51D269E}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{4FF5AF1E-C5CF-4E84-960C-293337A6D52D}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4FF5AF1E-C5CF-4E84-960C-293337A6D52D}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{09B3567E-7F06-4F24-B276-5362C01111E6}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{09B3567E-7F06-4F24-B276-5362C01111E6}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\Reboot_AC" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{7948190A-3624-4D1F-AE12-F384A6DF9ED8}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{7948190A-3624-4D1F-AE12-F384A6DF9ED8}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{59A0AEA0-EF65-4D92-A911-201E0DF247E9}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{59A0AEA0-EF65-4D92-A911-201E0DF247E9}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\WindowsUpdate\RUXIM\PLUGScheduler => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\WindowsUpdate\RUXIM\PLUGScheduler" => removed successfully
HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=3.0.16 => removed successfully
HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=3.0.17 => removed successfully
HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=3.0.18 => removed successfully
HKLM\Software\MozillaPlugins\@videolan.org/vlc,version=3.0.20 => removed successfully
"Chrome HomePage" => removed successfully
"Chrome HomePage" => removed successfully
"Chrome StartupUrls" => removed successfully
"Chrome HomePage" => removed successfully
"Chrome StartupUrls" => removed successfully
"Chrome DefaultSearchURL" => removed successfully
"Chrome DefaultSearchKeyword" => removed successfully
"Chrome HomePage" => removed successfully
"Chrome StartupUrls" => removed successfully
HKLM\System\CurrentControlSet\Services\aswBcc => removed successfully
aswBcc => service removed successfully
HKLM\System\CurrentControlSet\Services\Avast Business Console Client Antivirus Service => removed successfully
Avast Business Console Client Antivirus Service => service removed successfully
Could not move "C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2" => Scheduled to move on reboot.

Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.

HKU\S-1-5-21-1112624802-107007931-2133165951-1001_Classes\CLSID\{28A80003-18FD-411D-B0A3-3C81F618E22B} => not found
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\F-Secure DataGuard Icon Overlay => removed successfully
HKU\S-1-5-21-1112624802-107007931-2133165951-1001\Software\Classes\*\ShellEx\ContextMenuHandlers\ kwpsshellext => not found
HKU\S-1-5-21-1112624802-107007931-2133165951-1001\Software\Classes\Directory\ShellEx\ContextMenuHandlers\ kwpsshellext => not found
EmptyTdemp: => Error: No automatic fix found for this entry.

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 16-08-2026 14:06:22)

C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2 => Could not move
C:\DumpStack.log.tmp => Could not move

Result of scheduled keys to remove after reboot:

HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => could not remove, key could be protected

==== End of Fixlog 14:06:22 ====

Avatar uživatele
Rudy
Site Admin
Site Admin
Příspěvky: 120062
Registrován: 30 Říj 2003 13:42
Místo/Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu :)

#4 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

vendaciki
Návštěvník
Návštěvník
Příspěvky: 11
Registrován: 09 Lis 2018 15:58

Re: Prosím o kontrolu :)

#5 Příspěvek od vendaciki »

Myslím, že se mi udělalo víc místa na disku a zatím sleduju, jestli neklesá.
Zatím se ani neseká, uvidíme později :-D

Moc děkuji za pomoc :)

Avatar uživatele
Rudy
Site Admin
Site Admin
Příspěvky: 120062
Registrován: 30 Říj 2003 13:42
Místo/Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu :)

#6 Příspěvek od Rudy »

OK, nemáte zač. Nechám to tu zatím otevřené. :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět