zdravím,
na keylogger a špehovací program v pc, dakujem
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 09-09-2026
Ran by igorv (administrator) on SAUL (HP HP ProBook 455 15.6 inch G10 Notebook PC) (14-09-2026 21:02:10)
Running from C:\Users\igorv\Downloads\FRST64.exe
Loaded Profiles: igorv
Platform: Microsoft Windows 11 Home Version 25H2 26200.9445 (X64) Language: Slovenčina (Slovensko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe
(Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe
(C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe ->) (HP Inc. -> Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\HPTouchpointManagerTray.exe
(C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Providers\Hewlett-Packard\CoreProvider\CoreProvider.exe
(C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Providers\Hewlett-Packard\Software Package Manager\SoftwarePackageManager.exe
(C:\Program Files\Google\Drive File Stream\131.0.2.0\GoogleDriveFS.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive File Stream\131.0.2.0\crashpad_handler.exe
(C:\Program Files\Google\Drive File Stream\131.0.2.0\GoogleDriveFS.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\152.0.4191.66\msedgewebview2.exe
(C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSSrcExt.exe
(C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\cncmd.exe
(DriverStore\FileRepository\snapo64.inf_amd64_33d62b688b005396\SNAPOSS64.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Sonitude Corporation) C:\Windows\System32\DriverStore\FileRepository\snapo64.inf_amd64_33d62b688b005396\SNAPOS64.exe
(DriverStore\FileRepository\u0202308.inf_amd64_76ac7eae7a1a50fa\B025980\atiesrxx.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0202308.inf_amd64_76ac7eae7a1a50fa\B025980\atieclxx.exe
(explorer.exe ->) (Google LLC -> Google LLC.) C:\Program Files\Google\Drive File Stream\131.0.2.0\GoogleDriveFS.exe
(explorer.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.WindowsNotepad_11.2607.14.0_x64__8wekyb3d8bbwe\Notepad\Notepad.exe
(explorer.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMToastNotification.exe
(explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_e80b0ba89d6747cf\RtkAudUService64.exe
(Google LLC -> Google LLC.) C:\Program Files\Google\Drive File Stream\131.0.2.0\GoogleDriveFS.exe
(HP Inc. -> ) C:\Program Files\WindowsApps\AD2F1837.myHP_60.52634.13225.0_x64__v10z8vjag6ke6\win32\DesktopExtension.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\152.0.4191.66\msedgewebview2.exe <11>
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\GameInputSvc.exe
(Microsoft Corporation -> Windows (R) Win 7 DDK provider) C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_e80b0ba89d6747cf\RtkAudUService64.exe
(services.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Windows\System32\DriverStore\FileRepository\amdfendr.inf_amd64_47725f5567f931ee\amdfendrsr.exe
(services.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0202308.inf_amd64_76ac7eae7a1a50fa\B025980\atiesrxx.exe
(services.exe ->) (Bromium UK Limited -> HP) C:\Program Files\HP\Security Update Service\4.4.33.1019\SecurityUpdateService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Tools\WatchDogService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\Poly\Lens Control Service\LensService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_b532962506597d3d\x64\TouchpointAnalyticsClientService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\AppHelperCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\DiagsCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\NetworkCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\SysInfoCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_0d182501a33019e2\HotKeyServiceUWP.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_0d182501a33019e2\HPAudioAnalytics.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_0d182501a33019e2\LanWlanWwanSwitchingServiceUWP.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpsvcsscancomp.inf_amd64_df5bc9f22dc3c742\x64\hpsvcsscan.exe
(services.exe ->) (HP Inc. -> HP) C:\Program Files (x86)\HP\Shared\hpqwmiex.exe
(services.exe ->) (MEDIATEK INC. -> MediaTek Inc.) C:\Windows\System32\mtkbtsvc.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\GameInputSvc.exe
(services.exe ->) (Microsoft Corporation -> Windows (R) Win 7 DDK provider) C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Sonitude Corporation) C:\Windows\System32\DriverStore\FileRepository\snapo64.inf_amd64_33d62b688b005396\SNAPOSS64.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26080.3-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26080.3-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26080.3-0\NisSrv.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_e80b0ba89d6747cf\RtkAudUService64.exe
(sihost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2602.23002.0_x64__8wekyb3d8bbwe\MicrosoftSecurityApp\MicrosoftSecurityApp.exe
(svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Client Security Manager\HP.ClientSecurityManager.exe
(svchost.exe ->) (HP Inc. -> HP) C:\Program Files (x86)\HP\HP ICS\ICS.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\SDXHelper.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\AppActions.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_e80b0ba89d6747cf\RtkAudUService64.exe [3495976 2026-07-16] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\131.0.2.0\GoogleDriveFS.exe [105726104 2026-09-10] (Google LLC -> Google LLC.)
HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\131.0.2.0\GoogleDriveFS.exe [105726104 2026-09-10] (Google LLC -> Google LLC.)
HKU\S-1-5-21-2384847340-952867437-1279697988-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\131.0.2.0\GoogleDriveFS.exe [105726104 2026-09-10] (Google LLC -> Google LLC.)
HKU\S-1-5-21-2384847340-952867437-1279697988-1001\...\Run: [MicrosoftEdgeAutoLaunch_12DCDEA817FD98234F2AB1F8B100D4B7] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [5417288 2026-09-10] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\131.0.2.0\GoogleDriveFS.exe [105726104 2026-09-10] (Google LLC -> Google LLC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4924568 2026-08-11] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\153.0.8010.37\Installer\chrmstp.exe [8019608 2026-09-09] (Google LLC -> Google LLC)
Startup: C:\Users\igorv\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Odoslanie do aplikácie OneNote.lnk [2026-02-22]
ShortcutTarget: Odoslanie do aplikácie OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\LensDesktop1xUninstaller.lnk [2025-10-28]
ShortcutTarget: LensDesktop1xUninstaller.lnk -> C:\Program Files\Poly\Poly Lens Desktop\LensDesktop1xUninstaller\LensDesktop1xUninstaller.exe (HP Inc. -> HP Inc.)
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {2662C635-38EE-4472-959F-847ED9C4C666} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem152.0.7933.0{49FCBC61-F9D4-4C27-ABB8-14300C38488D} => C:\Program Files (x86)\Google\GoogleUpdater\152.0.7933.0\updater.exe [9512088 2026-07-05] (Google LLC -> Google LLC)
Task: {70C6C139-06FE-4D97-8EAD-C723706443CE} - System32\Tasks\GoogleUserPEH\RunPlatformExperienceHelper_Daily => C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4924568 2026-08-11] (Google LLC -> Google LLC)
Task: {9DFDDD76-0D77-4947-BD4F-1B699ACCEE85} - System32\Tasks\GoogleUserPEH\RunPlatformExperienceHelper_Metrics => C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4924568 2026-08-11] (Google LLC -> Google LLC)
Task: {6ACA97AB-2916-4516-96FC-F66A9642D77F} - System32\Tasks\GoogleUserPEH\RunPlatformExperienceHelperOnUnlock => C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4924568 2026-08-11] (Google LLC -> Google LLC)
Task: {63F9F686-0E6F-47E0-8341-5D149B3E46F5} - System32\Tasks\Hewlett-Packard\HP Diagnostics\ABO => C:\windows\system32\cmd.exe [344064 2026-08-27] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://ABO
Task: {AC70CF3B-3AC0-475D-B90F-22DC329AD2BB} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BatteryStatusError => C:\windows\system32\cmd.exe [344064 2026-08-27] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BatteryStatusError
Task: {E0BE6772-64CD-4EAC-A32F-3650AC09FEA9} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BatteryStatusTest => C:\windows\system32\cmd.exe [344064 2026-08-27] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BatteryStatusTest
Task: {2B064F5A-B560-440C-9C66-C1C4B53287EE} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BCF => C:\windows\system32\cmd.exe [344064 2026-08-27] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BCF
Task: {55FAE072-517B-4643-BA26-1D1999823548} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BHM1 => C:\windows\system32\cmd.exe [344064 2026-08-27] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BHM1
Task: {67ECA950-491C-4B84-9953-2BA7326C4102} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BHM2 => C:\windows\system32\cmd.exe [344064 2026-08-27] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BHM2
Task: {6A03296A-2E0F-494B-BE39-9F2938217981} - System32\Tasks\Hewlett-Packard\HP Diagnostics\LaunchUI => C:\windows\system32\cmd.exe [344064 2026-08-27] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://LaunchUI
Task: {834780AF-6E13-41CF-B49D-5F8ECF7D6563} - System32\Tasks\Hewlett-Packard\HP Diagnostics\ShowUI => C:\windows\system32\cmd.exe [344064 2026-08-27] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags:
Task: {A4AA8AD6-B839-439E-B20B-0AA689337C9D} - System32\Tasks\Hewlett-Packard\HP Diagnostics\SmartCheckError => C:\windows\system32\cmd.exe [344064 2026-08-27] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://SmartCheckError
Task: {59A3FDEA-F9F2-4E14-9182-597D9A9B920D} - System32\Tasks\Hewlett-Packard\HP Diagnostics\SmartCheckTest => C:\windows\system32\cmd.exe [344064 2026-08-27] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://SmartCheckTest
Task: {4B815F81-D760-4C6F-975D-FFCC98D9CA98} - System32\Tasks\Hewlett-Packard\HP Diagnostics\Uninstall-BatteryStatusTest => c:\Windows\System32\schtasks.exe [253952 2025-10-01] (Microsoft Windows -> Microsoft Corporation) -> /Change /Disable /tn "\Hewlett-Packard\HP Diagnostics\BatteryStatusTest"
Task: {2485C39A-E871-4B62-87F9-F7E02C2A2B7B} - System32\Tasks\Hewlett-Packard\HP Diagnostics\Uninstall-SmartCheckTest => c:\Windows\System32\schtasks.exe [253952 2025-10-01] (Microsoft Windows -> Microsoft Corporation) -> /Change /Disable /tn "\Hewlett-Packard\HP Diagnostics\SmartCheckTest"
Task: {D6FF20DD-8234-4544-B55A-ECF4878D363A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [480264 2026-06-16] (HP Inc. -> HP Inc.)
Task: {BFC52B0A-81AF-4D96-8F05-E912F68A0227} - System32\Tasks\HP\Consent Manager Launcher => C:\windows\system32\sc.exe [102400 2025-07-10] (Microsoft Windows -> Microsoft Corporation) -> start hptouchpointanalyticsservice
Task: {DA847129-1FBC-49A8-95F1-9AB56F0DADCB} - System32\Tasks\HP\HP ICS\ICS => C:\Program Files (x86)\HP\HP ICS\ICS.exe [78979088 2024-07-31] (HP Inc. -> HP)
Task: {EF646171-92E5-4817-95EA-0F878D45E045} - System32\Tasks\HP\HP Wolf Security\Launch Console => C:\Program Files\HP\HP Client Security Manager\HP.ClientSecurityManager.exe [263752 2026-07-13] (HP Inc. -> HP Inc.)
Task: {1AC9AC68-A9ED-474A-9EE3-DB35AD5C4615} - System32\Tasks\HPOneAgentRepairTask => C:\ProgramData\Package Cache\{D3913CAA-0A30-494D-AE06-F79A68997FAB}\HPOneAgent.exe [1169760 2025-10-29] (HP Inc. -> HP Inc; HP Development Company, L.P.)
Task: {F6593CAA-7C46-45D4-B30B-E8A6EB850A10} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16470320 2026-09-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {02BDBCEE-C7C2-49BE-B635-613564F1DE01} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28440896 2026-09-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {DD5E29E1-3C64-4750-BB2A-E6C71E675B0F} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe [70064 2026-09-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {38B2DBDB-E9A9-4213-807C-242E906A0215} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28440896 2026-09-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {5ABC3212-1AF9-49F5-847C-E2E48483E556} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [426264 2026-09-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {681C337C-DBDC-401C-99A3-FEEC10403456} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [426264 2026-09-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {58479B79-16B5-4566-8682-CBC6A96CAD0C} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [1328920 2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {329B373E-B8A0-4020-9D38-02502DC9DE08} - System32\Tasks\Microsoft\Office\Office Startup Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16470320 2026-09-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {57B966C3-F4E6-4842-AF05-0AF2678FB132} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26080.3-0\MpCmdRun.exe [1902840 2026-09-03] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {D7025FCC-90CD-4A5D-B830-10EBB213EC06} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26080.3-0\MpCmdRun.exe [1902840 2026-09-03] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {E28B7643-5DAA-45DC-BFC5-3D5BAC28F036} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26080.3-0\MpCmdRun.exe [1902840 2026-09-03] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C3AE49EE-3FFC-4EA2-83B7-F2E463E4FA50} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26080.3-0\MpCmdRun.exe [1902840 2026-09-03] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {E04758FD-0037-4887-BDAB-907525C82902} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1030928 2025-12-12] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
Task: {6E93A63C-5D59-4156-87EE-D04780A580AB} - System32\Tasks\WXPInsightsUpdater => C:\Program Files (x86)\HP\HP Touchpoint Analytics Client Installer\TAInstaller.exe [4061448 2026-08-25] (HP Inc. -> )
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.31.248 1.1.1.1
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}: [DhcpNameServer] 192.168.31.248 1.1.1.1
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}: [DhcpDomain] localdomain
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}\4505D2C496E6B6F554874756E6465627: [DhcpNameServer] 192.168.0.254
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}\859616F6D696F553638383F55374: [DhcpNameServer] 192.168.31.248 1.1.1.1
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}\859616F6D696F553638383F55374: [DhcpDomain] localdomain
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}\859616F6D696F553638383F5548545: [DhcpNameServer] 192.168.31.234
Tcpip\..\Interfaces\{fd5113a5-1b8e-46a9-95ec-2869bb75496f}: [NameServer] 1.1.1.1,8.8.8.8
Tcpip\..\Interfaces\{fd5113a5-1b8e-46a9-95ec-2869bb75496f}: [DhcpNameServer] 192.168.31.248 1.1.1.1
Tcpip\..\Interfaces\{fd5113a5-1b8e-46a9-95ec-2869bb75496f}: [DhcpDomain] localdomain
FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
Edge:
=======
Edge DefaultProfile: Profile 1
Edge Profile: C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Profile 1 [2026-09-14]
Edge HomePage: Profile 1 -> hxxp://www.google.sk/
Edge Extension: (Dokumenty Google v režime offline) - C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-08-24]
Edge Extension: (Edge relevant text changes) - C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2026-05-30]
Edge Profile: C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Profile 2 [2026-05-23]
Edge Extension: (Dokumenty Google v režime offline) - C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-05-08]
Edge Extension: (Edge relevant text changes) - C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Profile 2\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2026-05-08]
Chrome:
=======
CHR Profile: C:\Users\igorv\AppData\Local\Google\Chrome\User Data\Default [2026-09-14]
CHR HomePage: Default -> hxxp://www.google.sk/
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\igorv\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-09-11]
CHR Extension: (Spúšťač aplikácie pre Disk (od Googlu)) - C:\Users\igorv\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2026-05-05]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\igorv\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2026-05-05]
CHR HKU\S-1-5-21-2384847340-952867437-1279697988-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13365136 2026-09-07] (Microsoft Corporation -> Microsoft Corporation)
R2 FMAPOService; C:\WINDOWS\System32\FMService64.exe [1164368 2026-03-06] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia)
R2 GameInputRedistService; C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe [401792 2026-05-14] (Microsoft Corporation -> Windows (R) Win 7 DDK provider)
R2 HotKeyServiceUWP; C:\WINDOWS\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_0d182501a33019e2\HotKeyServiceUWP.exe [1487016 2026-03-13] (HP Inc. -> HP Inc.)
R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [475680 2023-04-14] (HP Inc. -> HP Inc.)
S2 hp-one-agent-service; C:\Program Files\HP\HP One Agent\hp-one-agent-service.exe [2445408 2025-09-11] (HP Inc. -> HP Inc; HP Development Company, L.P.)
R2 HPAppHelperCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\AppHelperCap.exe [909464 2025-09-30] (HP Inc. -> HP Inc.)
R2 HPAudioAnalytics; C:\WINDOWS\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_0d182501a33019e2\HPAudioAnalytics.exe [496808 2026-03-13] (HP Inc. -> HP Inc.)
R2 HPDiagsCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\DiagsCap.exe [907936 2025-09-30] (HP Inc. -> HP Inc.)
R2 hpLHAgent; C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe [8022216 2026-08-03] (HP Inc. -> HP Inc.)
R2 hpLHWatchdog; C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Tools\WatchDogService.exe [1547976 2026-08-03] (HP Inc. -> HP Inc.)
R2 HPNetworkCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\NetworkCap.exe [903840 2025-09-30] (HP Inc. -> HP Inc.)
R3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1149480 2018-06-07] (HP Inc. -> HP)
R2 hpsvcsscan; C:\WINDOWS\System32\DriverStore\FileRepository\hpsvcsscancomp.inf_amd64_df5bc9f22dc3c742\x64\hpsvcsscan.exe [7142248 2026-02-18] (HP Inc. -> HP Inc.)
R2 HPSysInfoCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\SysInfoCap.exe [909464 2025-09-30] (HP Inc. -> HP Inc.)
R2 HpTouchpointAnalyticsService; C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_b532962506597d3d\x64\TouchpointAnalyticsClientService.exe [639776 2025-10-01] (HP Inc. -> HP Inc.)
R2 LanWlanWwanSwitchingServiceUWP; C:\WINDOWS\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_0d182501a33019e2\LanWlanWwanSwitchingServiceUWP.exe [594600 2026-03-13] (HP Inc. -> HP Inc.)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26080.3-0\MpDefenderCoreService.exe [2307816 2026-09-03] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 MTKBTSVC; C:\WINDOWS\System32\mtkbtsvc.exe [545208 2025-10-02] (MEDIATEK INC. -> MediaTek Inc.)
R2 Poly Lens Control Service; C:\Program Files\Poly\Lens Control Service\LensService.exe [150024 2025-06-09] (HP Inc. -> HP Inc.)
S3 ProtonVPN Service; C:\Program Files\Proton\VPN\v4.4.1\ProtonVPNService.exe [477424 2026-06-03] (Proton AG -> ProtonVPN)
S3 ProtonVPN WireGuard; C:\Program Files\Proton\VPN\v4.4.1\ProtonVPN.WireGuardService.exe [476912 2026-06-03] (Proton AG -> ProtonVPN)
R2 SecurityUpdateService; C:\Program Files\HP\Security Update Service\4.4.33.1019\SecurityUpdateService.exe [5179720 2026-07-27] (Bromium UK Limited -> HP)
R2 SNAPOService; C:\WINDOWS\System32\DriverStore\FileRepository\snapo64.inf_amd64_33d62b688b005396\SNAPOSS64.exe [830232 2025-12-18] (Microsoft Windows Hardware Compatibility Publisher -> Sonitude Corporation)
S2 WbfPolicyService110; C:\WINDOWS\System32\DriverStore\FileRepository\synawudfbiousbuwpsvc.inf_amd64_b12a1111c8064a8a\WbfPolicyService110.exe [715784 2025-05-22] (Synaptics Incorporated -> Synaptics Incorporated.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26080.3-0\NisSrv.exe [5311736 2026-09-03] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26080.3-0\MsMpEng.exe [291360 2026-09-03] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AIDA64Driver; \??\C:\Program Files\FinalWire\AIDA64 Extreme\kerneld-x64.sys [81296 2026-04-28] (FinalWire Kft. -> )
R3 amdfendrmgr; C:\WINDOWS\System32\DriverStore\FileRepository\amdfendr.inf_amd64_47725f5567f931ee\amdfendrmgr.sys [37232 2026-03-31] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
R3 amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0202308.inf_amd64_76ac7eae7a1a50fa\B025980\amdkmdag.sys [106666512 2026-07-08] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
R3 amdwirelessbutton; C:\WINDOWS\System32\drivers\amdwirelessbutton.sys [49448 2025-09-10] (Advanced Micro Devices -> Advanced Micro Devices, Inc)
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [110592 2024-12-12] (Microsoft Corporation) [File not signed]
R0 fse; C:\WINDOWS\System32\drivers\fse.sys [230888 2026-08-27] (Microsoft Windows -> Microsoft Corporation)
R2 googledrivefs31931; \??\C:\Program Files\Google\Drive File Stream\Drivers\31931\googledrivefs31931.sys [386256 2026-06-04] (Microsoft Windows Hardware Compatibility Publisher -> )
R3 HPCustomCapDriver; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_1421dec2010cc057\x64\hpcustomcapdriver.sys [18984 2024-05-07] (Microsoft Windows Hardware Compatibility Publisher -> HP Inc.)
R0 HpPair; C:\WINDOWS\System32\drivers\HpPair.sys [69912 2025-06-09] (HP Inc. -> HP Inc.)
R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [83008 2026-09-03] (Microsoft Windows -> Microsoft Corporation)
S2 l1vhlwf; C:\WINDOWS\System32\drivers\l1vhlwf.sys [144864 2026-08-27] (Microsoft Windows -> Microsoft Corporation)
R3 mtkbtacx; C:\WINDOWS\System32\DriverStore\FileRepository\mtkbtacx.inf_amd64_83b672d8fe91251d\mtkbtacx.sys [289184 2025-10-02] (MEDIATEK INC. -> MediaTek Inc.)
R3 MTKBTFilterx64; C:\WINDOWS\System32\DriverStore\FileRepository\mtkbtfilter.inf_amd64_04e48cf0e2222a28\mtkbtfilterx.sys [611264 2025-10-02] (MEDIATEK INC. -> MediaTek Inc.)
R3 mtkwlex; C:\WINDOWS\System32\DriverStore\FileRepository\mtkwl6ex.inf_amd64_d9268befd11ebf7f\mtkwl6ex.sys [2127384 2026-06-23] (MEDIATEK INC. -> MediaTek Inc.)
S3 ProtonVPNCallout; \??\C:\Program Files\Proton\VPN\v4.4.1\Resources\ProtonVPN.CalloutDriver.sys [41416 2026-04-30] (Proton AG -> )
R3 rt68cx21; C:\WINDOWS\System32\DriverStore\FileRepository\rt68cx21x64.inf_amd64_9aa8fb2bbee4c5e5\rt68cx21x64.sys [921128 2026-01-15] (Realtek Semiconductor Corp. -> Realtek)
S3 vmbusproxy; C:\WINDOWS\system32\drivers\vmbusproxy.sys [98304 2025-06-14] (Microsoft Windows -> Microsoft Corporation)
S4 WdAiNisDrv; C:\WINDOWS\System32\drivers\wd\WdAiNisDrv.sys [51224 2026-09-03] (Microsoft Windows -> Microsoft Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [21672 2026-09-03] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [660504 2026-09-03] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [137240 2026-09-03] (Microsoft Windows -> Microsoft Corporation)
S3 wintun; C:\WINDOWS\System32\drivers\wintun.sys [29592 2026-02-15] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
S3 WireGuard; C:\WINDOWS\System32\drivers\wireguard.sys [489368 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
==================== SvcHost (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-09-14 21:02 - 2026-09-14 21:02 - 000032832 _____ C:\Users\igorv\Downloads\FRST.txt
2026-09-14 21:02 - 2026-09-14 21:02 - 000000000 ____D C:\FRST
2026-09-14 21:01 - 2026-09-14 21:01 - 002455552 _____ (Farbar) C:\Users\igorv\Downloads\FRST64.exe
2026-09-14 14:27 - 2026-09-14 14:27 - 000000000 _____ C:\Users\igorv\Desktop\Nová položka Textový dokument.txt
2026-09-13 18:14 - 2026-09-14 18:13 - 000000000 ____D C:\WINDOWS\CbsTemp
2026-08-31 10:42 - 2026-07-08 11:18 - 011757440 _____ C:\WINDOWS\system32\amdsmi.exe
2026-08-31 10:42 - 2026-07-08 11:18 - 004374544 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdadlx64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 004179984 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdadlx32.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 002245648 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdsasrv64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 002100240 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 001717792 _____ (AMD) C:\WINDOWS\system32\amf-mft-mjpeg-decoder64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 001617936 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 001617936 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 001395256 _____ (AMD) C:\WINDOWS\SysWOW64\amf-mft-mjpeg-decoder32.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 001059856 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdsacli32.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000978448 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2026-08-31 10:42 - 2026-07-08 11:18 - 000944144 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000857104 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2026-08-31 10:42 - 2026-07-08 11:18 - 000857104 _____ C:\WINDOWS\system32\vulkaninfo.exe
2026-08-31 10:42 - 2026-07-08 11:18 - 000801808 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Rapidfire64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000771600 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000737808 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2026-08-31 10:42 - 2026-07-08 11:18 - 000737808 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2026-08-31 10:42 - 2026-07-08 11:18 - 000678928 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\Rapidfire.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000610832 _____ C:\WINDOWS\system32\GameManager64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000570384 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000549392 _____ C:\WINDOWS\system32\libsmi_guest.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000537616 _____ C:\WINDOWS\system32\atieah64.exe
2026-08-31 10:42 - 2026-07-08 11:18 - 000524816 _____ C:\WINDOWS\system32\libsmi_host.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000504336 _____ C:\WINDOWS\system32\EEURestart.exe
2026-08-31 10:42 - 2026-07-08 11:18 - 000473616 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000464400 _____ C:\WINDOWS\SysWOW64\GameManager32.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000434184 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000406544 _____ C:\WINDOWS\SysWOW64\atieah32.exe
2026-08-31 10:42 - 2026-07-08 11:18 - 000267280 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000229392 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000207888 _____ C:\WINDOWS\system32\mantle64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000201232 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000196624 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000186896 _____ C:\WINDOWS\system32\mantleaxl64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000184848 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000178192 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdihk32.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000165904 _____ C:\WINDOWS\SysWOW64\mantle32.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000165392 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000157864 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000149520 _____ C:\WINDOWS\SysWOW64\mantleaxl32.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000149008 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000142864 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amfrt64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000141632 _____ C:\WINDOWS\system32\amdxc64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000129128 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000118800 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amfrt32.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000117136 _____ C:\WINDOWS\SysWOW64\amdxc32.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000075280 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ati2erec.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000051728 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\RapidFireServer64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000048656 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\RapidFireServer.dll
2026-08-31 10:42 - 2026-07-08 11:17 - 105410576 _____ C:\WINDOWS\system32\amd_comgr.dll
2026-08-31 10:42 - 2026-07-08 11:17 - 088606736 _____ C:\WINDOWS\SysWOW64\amd_comgr32.dll
2026-08-31 10:42 - 2026-07-08 11:17 - 019435536 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdhip64.dll
2026-08-31 10:42 - 2026-07-08 11:17 - 001362416 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdsacli64.dll
2026-08-31 10:42 - 2026-07-08 11:17 - 000560480 _____ C:\WINDOWS\system32\amdmiracast.dll
2026-08-31 10:42 - 2026-07-08 11:17 - 000545800 _____ C:\WINDOWS\system32\dgtrayicon.exe
2026-08-31 10:42 - 2026-07-08 11:17 - 000471568 _____ C:\WINDOWS\system32\amdlogum.exe
2026-08-31 10:42 - 2026-07-08 11:17 - 000226600 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdihk64.dll
2026-08-31 10:42 - 2026-07-08 11:17 - 000177168 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll
2026-08-31 10:42 - 2026-07-08 11:17 - 000168248 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2026-08-31 10:42 - 2026-07-08 11:17 - 000157864 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2026-08-31 10:42 - 2026-07-08 11:17 - 000145936 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl.dll
2026-08-31 10:42 - 2026-07-08 11:17 - 000143104 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2026-08-31 10:42 - 2026-07-08 11:17 - 000129128 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2026-08-31 10:42 - 2026-07-08 11:17 - 000103440 _____ C:\WINDOWS\system32\clinfo.exe
2026-08-31 10:42 - 2026-07-08 10:46 - 109628208 _____ C:\WINDOWS\system32\amdxc64.so
2026-08-27 23:16 - 2026-08-27 23:16 - 000039215 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2026-08-27 23:16 - 2026-08-27 23:16 - 000039215 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2026-08-27 23:16 - 2026-08-27 23:16 - 000014689 _____ C:\WINDOWS\system32\ecoscore_config.json
2026-08-27 23:16 - 2026-08-27 23:16 - 000004646 _____ C:\WINDOWS\system32\ResPriUHMImageList
2026-08-27 23:16 - 2026-08-27 23:16 - 000004646 _____ C:\WINDOWS\system32\ResPriLMImageList
2026-08-27 23:16 - 2026-08-27 23:16 - 000004646 _____ C:\WINDOWS\system32\ResPriImageList
2026-08-27 23:16 - 2026-08-27 23:16 - 000004646 _____ C:\WINDOWS\system32\ResPriHMImageList
2026-08-27 23:16 - 2026-08-27 23:16 - 000004555 _____ C:\WINDOWS\system32\ResPriImageListLowCost
2026-08-27 23:16 - 2026-08-27 23:16 - 000004555 _____ C:\WINDOWS\system32\ResPriHMImageListLowCost
2026-08-26 17:05 - 2026-07-16 15:34 - 000022512 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtEventLog.dll
2026-08-26 17:02 - 2026-03-21 04:10 - 000526224 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdtee_api.dll
2026-08-26 17:02 - 2026-03-21 04:10 - 000397720 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdtee_api.dll
2026-08-26 17:02 - 2026-03-21 04:10 - 000061840 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\Drivers\amdpsp.sys
2026-08-22 12:21 - 2026-08-22 23:27 - 000000000 ____D C:\Users\igorv\.codex
2026-08-22 12:21 - 2026-08-22 12:21 - 000000000 ____D C:\Users\igorv\AppData\Local\OpenAI
2026-08-22 12:21 - 2026-08-22 12:21 - 000000000 ____D C:\Users\igorv\.cache
2026-08-20 22:13 - 2026-08-20 22:13 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-09-14 20:54 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-09-14 20:52 - 2024-05-18 10:19 - 000000000 ___SD C:\Users\igorv\AppData\Roaming\Microsoft\Credentials
2026-09-14 20:32 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-09-14 18:14 - 2024-04-01 09:24 - 000000000 ____D C:\WINDOWS\INF
2026-09-14 16:54 - 2024-05-23 22:48 - 000000000 ____D C:\ProgramData\Package Cache
2026-09-14 13:07 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-09-14 09:40 - 2024-12-12 17:56 - 000003630 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2026-09-14 09:40 - 2024-12-12 17:56 - 000003558 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2026-09-13 21:57 - 2024-04-01 09:26 - 000000000 ___HD C:\Program Files\WindowsApps
2026-09-13 21:56 - 2024-01-26 15:41 - 000000000 ____D C:\Program Files\Microsoft Office
2026-09-12 10:30 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\USOPrivate
2026-09-12 10:17 - 2024-12-12 17:55 - 000791266 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-09-12 10:13 - 2026-04-02 10:56 - 000011826 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2026-09-12 10:13 - 2024-12-12 17:56 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-09-12 10:13 - 2024-12-12 17:54 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK
2026-09-12 10:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ServiceState
2026-09-12 10:13 - 2023-09-05 13:19 - 000012288 ___SH C:\DumpStack.log.tmp
2026-09-12 10:12 - 2024-04-01 09:21 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2026-09-12 10:11 - 2024-12-12 17:54 - 000630816 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2026-09-12 10:11 - 2024-04-01 18:34 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
2026-09-12 10:11 - 2024-04-01 18:34 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2026-09-12 10:11 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2026-09-12 10:11 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2026-09-12 10:11 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2026-09-12 10:11 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2026-09-12 10:11 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemResources
2026-09-12 10:11 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2026-09-12 10:11 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\setup
2026-09-12 10:11 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2026-09-12 10:11 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2026-09-12 10:11 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2026-09-12 10:11 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2026-09-12 10:11 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2026-09-12 10:11 - 2024-04-01 09:21 - 000000000 ____D C:\WINDOWS\servicing
2026-09-12 09:51 - 2024-12-12 17:55 - 003381760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2026-09-12 09:50 - 2023-09-05 13:19 - 000002452 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-09-10 19:56 - 2026-06-04 10:26 - 000002181 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk
2026-09-09 21:39 - 2026-05-05 22:26 - 000002267 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2026-09-08 22:00 - 2024-05-19 10:31 - 000000000 ____D C:\WINDOWS\system32\MRT
2026-09-08 21:58 - 2026-08-11 20:12 - 000000807 _____ C:\WINDOWS\system32\InstallMonitorLog.csv
2026-09-08 21:58 - 2025-04-19 16:23 - 000000000 ____D C:\Program Files\dotnet
2026-09-08 21:58 - 2024-05-19 10:31 - 230964456 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2026-09-07 20:46 - 2026-05-12 21:11 - 000000000 ____D C:\5
2026-09-07 18:06 - 2024-05-18 10:41 - 000000000 ____D C:\Users\igorv\AppData\Local\D3DSCache
2026-09-06 11:04 - 2024-05-23 15:14 - 000000000 ____D C:\Users\igorv\AppData\Local\CrashDumps
2026-09-06 11:03 - 2026-01-27 13:38 - 000000000 ____D C:\Users\igorv\AppData\Local\Programs\Opera
2026-09-06 11:03 - 2024-05-18 10:19 - 000000000 ____D C:\Users\igorv\AppData\Local\Packages
2026-09-06 11:03 - 2023-09-05 13:28 - 000000000 ____D C:\ProgramData\Packages
2026-09-05 14:09 - 2024-05-21 08:56 - 000000000 ____D C:\3
2026-09-03 21:24 - 2023-09-05 13:19 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2026-08-28 09:06 - 2025-12-04 11:28 - 000000000 ____D C:\WINDOWS\system32\NarratorMCAT
2026-08-28 09:06 - 2025-07-10 12:47 - 000000000 ____D C:\WINDOWS\system32\ruxim
2026-08-28 09:06 - 2024-12-12 17:00 - 000000000 ____D C:\WINDOWS\InboxApps
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\UUS
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\Provisioning
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\L2Schemas
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\Program Files\Common Files\System
2026-08-28 08:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\appcompat
2026-08-26 17:17 - 2024-08-29 15:17 - 000000000 ____D C:\Users\igorv\AppData\Roaming\Microsoft\Excel
2026-08-26 17:04 - 2024-05-21 13:22 - 000000000 ____D C:\SWSetup
2026-08-22 12:21 - 2024-12-12 17:39 - 000000000 ____D C:\Users\igorv
2026-08-22 12:21 - 2024-05-18 10:43 - 000000000 ____D C:\Users\igorv\AppData\Local\PlaceholderTileLogoFolder
==================== Files in the root of some directories ========
2024-06-22 21:39 - 2024-06-22 21:39 - 000000017 _____ () C:\Users\igorv\AppData\Local\resmon.resmoncfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
kontrola frst so zameranim
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: kontrola frst so zameranim
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 09-09-2026
Ran by igorv (14-09-2026 21:03:54)
Running from C:\Users\igorv\Downloads
Microsoft Windows 11 Home Version 25H2 26200.9445 (X64) (2024-12-12 15:56:28)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-2384847340-952867437-1279697988-500 - Administrators - Disabled)
DefaultAccount (S-1-5-21-2384847340-952867437-1279697988-503 - Limited - Disabled)
Guest (S-1-5-21-2384847340-952867437-1279697988-501 - Limited - Disabled)
igorv (DisplayName: I*** *****o) (S-1-5-21-2384847340-952867437-1279697988-1001 - Administrators - Enabled) [MS Account] => C:\Users\igorv
WDAGUtilityAccount (S-1-5-21-2384847340-952867437-1279697988-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
AIDA64 Extreme v7.70 (HKLM-x32\...\AIDA64 Extreme_is1) (Version: 7.70 - FinalWire Ltd.)
AIDA64 Extreme v8.30 (HKLM\...\AIDA64 Extreme_is1) (Version: 8.30 - FinalWire Ltd.)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 23.19.24 - Advanced Micro Devices, Inc.)
Android Studio (HKLM\...\Android Studio) (Version: 2026.1 - Google LLC)
Google Drive (HKLM\...\{6BBAE539-2232-434A-A4E5-9A33560C6283}) (Version: 131.0.2.0 - Google LLC)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 153.0.8010.37 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.36.51 - Google LLC) Hidden
HP Client Management Script Library (HKLM-x32\...\{5A1AECCB-E0CE-4D2C-833C-29CCEA959448}_is1) (Version: 1.7.1 - HP Development Company, L.P.)
HP Connection Optimizer (HKLM-x32\...\{6468C4A5-E47E-405F-B675-A70A70983EA6}) (Version: 2.0.20.0 - HP Inc)
HP Documentation (HKLM\...\HP_Documentation) (Version: 1.0.0.1 - HP Inc.)
HP Notifications (HKLM-x32\...\{19F557DE-662A-4FEA-B635-1CACD56CC483}) (Version: 1.1.29.12 - HP)
HP One Agent (HKLM\...\{7CCB7DE7-C121-478D-B4EB-F5C186DEF5D7}) (Version: 1.2.7.1708 - HP Inc.) Hidden
HP One Agent (HKLM\...\{D3913CAA-0A30-494D-AE06-F79A68997FAB}) (Version: 1.2.007.1708 - HP Inc.)
HP Security Update Service (HKLM\...\{90029D55-E154-41CF-96A2-D6120811643C}) (Version: 4.4.33.1019 - HP Inc.)
HP Software Framework (HKLM-x32\...\{71E18A14-1BDB-4B58-A67F-1BCDA12462FD}) (Version: 7.1.15.1 - HP)
HP Sure Recover (HKLM\...\{EE6377DD-C166-40D9-ACFF-AEB827623329}) (Version: 10.1.34.334 - HP Inc.)
HP Sure Run Module (HKLM\...\{EB7671C4-861D-4C1F-BA26-C8ED6B8EF933}) (Version: 5.0.5.118 - HP Inc.)
HP System Default Settings (HKLM-x32\...\{4BF87EE4-8F1E-442A-8B57-B94E6E42951A}) (Version: 1.5.15.1 - HP Inc.) Hidden
HP Wolf Security - Console (HKLM\...\{8666396B-3DC3-4EC4-8328-6F1654BBB880}) (Version: 11.1.8.1209 - HP Inc.)
ICS (HKLM-x32\...\{5CD25FCD-D218-46D0-B405-E5A488969BDF}) (Version: 3.1.18.25 - HP Inc.)
Microsoft .NET Host - 10.0.12 (x64) (HKLM\...\{17D94539-A423-48D9-BD4A-69A9186C5B66}) (Version: 80.48.58476 - Microsoft Corporation) Hidden
Microsoft .NET Host - 8.0.31 (x64) (HKLM\...\{56A842AA-B5B3-419B-A80E-36623D12F168}) (Version: 64.124.58447 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 10.0.12 (x64) (HKLM\...\{E358F0F7-0226-419D-85E6-D45A08BF195F}) (Version: 80.48.58476 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.31 (x64) (HKLM\...\{147B0E5B-D916-44F6-A66B-163CF0F723E9}) (Version: 64.124.58447 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 10.0.12 (x64) (HKLM\...\{902710DF-F5E0-42EB-8959-ECC10CC368DF}) (Version: 80.48.58476 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 10.0.12 (x64) (HKLM-x32\...\{4CBA08D2-07D1-4B4F-B8E1-8C5424CCA5A0}) (Version: 10.0.12.36422 - Microsoft Corporation)
Microsoft .NET Runtime - 8.0.31 (x64) (HKLM\...\{D5EFD516-E715-456F-9D3F-4CA6653C353E}) (Version: 64.124.58447 - Microsoft Corporation) Hidden
Microsoft 365 - sk-sk (HKLM\...\O365HomePremRetail - sk-sk) (Version: 16.0.20326.20144 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 153.0.4234.32 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 152.0.4191.66 - Microsoft Corporation) Hidden
Microsoft GameInput (HKLM\...\{14EDF950-06B9-415F-862C-1D5DEC321AE6}) (Version: 3.3.221.0 - Microsoft Corporation)
Microsoft OneNote - sk-sk (HKLM\...\OneNoteFreeRetail - sk-sk) (Version: 16.0.20326.20144 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.50.35719 (HKLM\...\{AECD4ED0-8A3B-41E9-92D1-6BEE0374CCAF}) (Version: 14.50.35719 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.50.35719 (HKLM\...\{61B44572-8722-4DAF-8ACF-8E742D30BCC5}) (Version: 14.50.35719 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.50.35719 (HKLM-x32\...\{773AD50D-AAE6-4BA1-AD01-B5A38874C840}) (Version: 14.50.35719 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.50.35719 (HKLM-x32\...\{5A0DFA55-3851-45BC-8B20-95EA4BF5812D}) (Version: 14.50.35719 - Microsoft Corporation) Hidden
Microsoft Visual C++ v14 Redistributable (x64) - 14.50.35719 (HKLM-x32\...\{91ee571b-0e8a-4c65-9eaf-2e2f5fc60c00}) (Version: 14.50.35719.0 - Microsoft Corporation)
Microsoft Visual C++ v14 Redistributable (x86) - 14.50.35719 (HKLM-x32\...\{0e4ccf1b-d073-4cfe-8a24-e86185719b56}) (Version: 14.50.35719.0 - Microsoft Corporation)
Microsoft Windows Application Compatibility Fix Database (HKLM\...\{22221111-1111-1111-1111-111111111111}.sdb) (Version: - )
Microsoft Windows Desktop Runtime - 8.0.31 (x64) (HKLM\...\{F2D93D43-8A6C-492C-8E37-070DB499C074}) (Version: 64.124.58455 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.31 (x64) (HKLM-x32\...\{208fff39-3440-44c6-b473-38136ba594bf}) (Version: 8.0.31.36421 - Microsoft Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.20326.20072 - Microsoft Corporation) Hidden
Poly Lens Control Service (HKLM\...\{92FB562B-E9B2-405B-A1CB-E33FD758A9A4}) (Version: 1.11.793 - HP Inc.)
Poly Lens Desktop (HKLM\...\{5625A841-9FDE-4149-8243-C08FAB2B5639}) (Version: 2.2.0.3547 - HP Inc.)
Proton VPN (HKLM\...\Proton VPN_is1) (Version: 4.4.1 - Proton AG)
WXP Insights Agent (HKLM-x32\...\{2760A0B6-B74F-4E42-BC4A-7B4F3DE0522C}) (Version: 5.26.114 - HP Inc.)
Packages:
=========
@{MicrosoftWindows.55182690.Taskbar_1000.26100.3775.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-06-14] ()
@{MicrosoftWindows.55182690.Taskbar_1000.26100.3912.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-06-14] ()
AMD Radeon Software -> C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m [2026-07-16] (Advanced Micro Devices Inc.) [Startup Task]
HP -> C:\Program Files\WindowsApps\AD2F1837.myHP_60.52634.13225.0_x64__v10z8vjag6ke6 [2026-08-28] (HP Inc.) [Startup Task]
HP Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.HPAudioControl_2.54.396.0_x64__dt26b99r8h8gj [2026-08-26] (Realtek Semiconductor Corp)
HP PC Hardware Diagnostics Windows -> C:\Program Files\WindowsApps\AD2F1837.HPPCHardwareDiagnosticsWindows_3.2.0.0_x64__v10z8vjag6ke6 [2026-08-05] (HP Inc.)
HP PC Privacy Settings -> C:\Program Files\WindowsApps\AD2F1837.HPPrivacySettings_1.6.2.0_x64__v10z8vjag6ke6 [2026-08-19] (HP Inc.)
HP Power Manager -> C:\Program Files\WindowsApps\AD2F1837.HPPowerManager_3.1.18.0_x64__v10z8vjag6ke6 [2024-10-31] (HP Inc.)
HP Support Assistant -> C:\Program Files\WindowsApps\AD2F1837.HPSupportAssistant_9.55.10.0_x64__v10z8vjag6ke6 [2026-08-19] (HP Inc.)
HP System Information -> C:\Program Files\WindowsApps\AD2F1837.HPSystemInformation_8.10.53.0_x64__v10z8vjag6ke6 [2026-09-04] (HP Inc.)
Local AI Manager for Microsoft 365 -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\AI [2026-09-13] ()
Microsoft Defender -> C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2602.23002.0_x64__8wekyb3d8bbwe [2026-04-02] (Microsoft Corporation) [Startup Task]
Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2024-05-19] (Microsoft Corp.)
Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_56.20201.588.0_x64__8wekyb3d8bbwe [2026-02-16] (Microsoft Corporation)
Microsoft.HEVCVideoExtensions -> C:\Program Files\WindowsApps\Microsoft.HEVCVideoExtensions_2.4.110.0_x64__8wekyb3d8bbwe [2026-08-14] (Microsoft Corporation)
Microsoft.Office.ActionsServer -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\ActionsServer [2026-09-13] ()
OfficePushNotificationsUtility -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16 [2026-09-13] ()
OneNote Virtual Printer -> C:\Program Files\WindowsApps\Microsoft.Office.OneNoteVirtualPrinter_1.0.0.0_x64__8wekyb3d8bbwe [2026-02-18] (Microsoft Corporation)
WinAppRuntime.Singleton -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Singleton_8002.4.0.0_x64__8wekyb3d8bbwe [2026-08-25] (Microsoft Corp.)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-2384847340-952867437-1279697988-1001_Classes\CLSID\{11487812-8821-0862-6182-000000000000}\localserver32 -> C:\WINDOWS\system32\FMToastNotification.exe (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia)
CustomCLSID: HKU\S-1-5-21-2384847340-952867437-1279697988-1001_Classes\CLSID\{50726f74-6f6e-2e56-504e-000000000000}\localserver32 -> C:\Program Files\Proton\VPN\v4.4.1\ProtonVPN.Client.exe (Proton AG -> ProtonVPN)
CustomCLSID: HKU\S-1-5-21-2384847340-952867437-1279697988-1001_Classes\CLSID\{65574321-d3fb-e7db-e83e-38fe55a80c4a}\localserver32 -> C:\Program Files\HP\HP Client Security Manager\HP.ClientSecurityManager.exe (HP Inc. -> HP Inc.)
CustomCLSID: HKU\S-1-5-21-2384847340-952867437-1279697988-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC)
ShellIconOverlayIdentifiers: [ GoogleDriveCloudOverlayIconHandler] -> {A8E52322-8734-481D-A7E2-27B309EF8D56} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers: [ GoogleDriveMirrorBlacklistedOverlayIconHandler] -> {51EF1569-67EE-4AD6-9646-E726C3FFC8A2} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers: [ GoogleDrivePinnedOverlayIconHandler] -> {CFE8B367-77A7-41D7-9C90-75D16D7DC6B6} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers: [ GoogleDriveProgressOverlayIconHandler] -> {C973DA94-CBDF-4E77-81D1-E5B794FBD146} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers-x32: [ GoogleDriveCloudOverlayIconHandler] -> {A8E52322-8734-481D-A7E2-27B309EF8D56} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers-x32: [ GoogleDriveMirrorBlacklistedOverlayIconHandler] -> {51EF1569-67EE-4AD6-9646-E726C3FFC8A2} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers-x32: [ GoogleDrivePinnedOverlayIconHandler] -> {CFE8B367-77A7-41D7-9C90-75D16D7DC6B6} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers-x32: [ GoogleDriveProgressOverlayIconHandler] -> {C973DA94-CBDF-4E77-81D1-E5B794FBD146} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ContextMenuHandlers1: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ContextMenuHandlers4: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ContextMenuHandlers5: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
==================== Loaded Modules (Whitelisted) =============
2024-01-26 15:41 - 2024-01-26 15:41 - 000000000 ____L () [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems64.dll] C:\Program Files\Microsoft Office\Root\Office16\AppVIsvSubsystems64.dll
2024-01-26 15:41 - 2024-01-26 15:41 - 000000000 ____L () [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R64.dll] C:\Program Files\Microsoft Office\Root\Office16\c2r64.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2022-05-07 07:24 - 2022-05-07 07:22 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
==================== Network ===========================
(Currently there is no automatic fix for this section.)
DNS Servers: 1.1.1.1 - 8.8.8.8
Windows Firewall is enabled.
Network Binding:
=============
Wi-Fi: MediaTek Wi-Fi 6E MT7922 (RZ616) 160MHz PCIe Adapter -> mtkwl6ex.sys
Ethernet: Realtek PCIe GbE Family Controller -> rt68cx21x64.sys
vms_vsf: Hyper-V Virtual Switch Extension Filter
ms_l1vhlwf: Nested Network Virtualization
vms_vsp: Hyper-V Virtual Switch Extension Protocol
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-2384847340-952867437-1279697988-1001\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKU\S-1-5-21-2384847340-952867437-1279697988-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{207FF0BA-4D00-447D-8427-9CBDA098563E}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_24137.2402.2884.4157_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{47893453-764F-4172-B4F4-3449E65B050C}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_24137.2402.2884.4157_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{EFF40D77-84A2-419C-88FE-F8F8A6B867A7}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [EdgeWebView2-MDNS-In-UDP] => (Allow) C:\WINDOWS\system32\Microsoft-Edge-WebView\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{8EC1DEF3-B630-4E4C-BD60-0BDFA9229C55}C:\users\igorv\appdata\local\android\sdk\platform-tools\adb.exe] => (Allow) C:\users\igorv\appdata\local\android\sdk\platform-tools\adb.exe (Google LLC -> )
FirewallRules: [UDP Query User{08460E52-25BF-4415-9BAB-6F131000EBEE}C:\users\igorv\appdata\local\android\sdk\platform-tools\adb.exe] => (Allow) C:\users\igorv\appdata\local\android\sdk\platform-tools\adb.exe (Google LLC -> )
FirewallRules: [{6C35E221-FDF7-434D-AA6A-60CC1A339AFF}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
==================== Restore Points =========================
11-09-2026 23:06:40 Windows Update
13-09-2026 21:57:04 Microsoft Visual C++ v14 Redistributable (x64) - 14.50.35719
13-09-2026 21:57:15 Microsoft Visual C++ v14 Redistributable (x86) - 14.50.35719
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (09/07/2026 01:56:54 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - There was a failure initializing profiling API attach infrastructure. This process will not allow a profiler to attach. HRESULT: 0x80004005. Process ID (decimal): 4188. Message ID: [0x2509].
Error: (09/07/2026 01:49:44 PM) (Source: Application Error) (EventID: 1000) (User: NT AUTHORITY)
Description: Názov chybnej aplikácie: HotKeyServiceUWP.exe, verzia: 8.10.52.464, časová značka: 0x69b00484
Názov modulu s poruchou: ntdll.dll, verzia: 10.0.26100.9278, časová značka: 0x7e1f2ca9
Kód výnimky: 0xc0000005
Odchýlka poruchy: 0x000000000001283d
Id poruchového procesu: 0x14b4
Čas spustenia poruchovej aplikácie: 0x1dd393fb89d77e8
Cesta k poruchovej aplikácii: C:\WINDOWS\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_0d182501a33019e2\HotKeyServiceUWP.exe
Cesta k poruchovému modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
Id správy: 8942f3eb-7cd8-4ce1-b188-0cd8a7f84211
Plný názov chybného balíka:
Identifikátor poruchovej aplikácie vzťahujúci sa na balík:
Error: (09/07/2026 01:49:44 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Application: HotKeyServiceUWP.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: exception code c0000005, exception address 00007FF80E5F283D
Error: (09/06/2026 11:04:27 AM) (Source: Application Error) (EventID: 1000) (User: SAUL)
Description: Názov chybnej aplikácie: Un_A.exe, verzia: 1.55.0.133, časová značka: 0x614f9d02
Názov modulu s poruchou: ntdll.dll, verzia: 10.0.26100.9278, časová značka: 0xfd201f55
Kód výnimky: 0xc0000005
Odchýlka poruchy: 0x000510c9
Id poruchového procesu: 0x1658
Čas spustenia poruchovej aplikácie: 0x1dd3ddeb5d9ed24
Cesta k poruchovej aplikácii: C:\Users\igorv\AppData\Local\Temp\~nsuA.tmp\Un_A.exe
Cesta k poruchovému modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
Id správy: 48c33b54-604b-4963-9d12-4e5f7161ebee
Plný názov chybného balíka:
Identifikátor poruchovej aplikácie vzťahujúci sa na balík:
Error: (09/05/2026 05:50:58 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - There was a failure initializing profiling API attach infrastructure. This process will not allow a profiler to attach. HRESULT: 0x80004005. Process ID (decimal): 4564. Message ID: [0x2509].
Error: (09/05/2026 05:07:20 PM) (Source: Application Error) (EventID: 1000) (User: SAUL)
Description: Názov chybnej aplikácie: MicrosoftSecurityApp.exe, verzia: 1.2.2602.23002, časová značka: 0xe9d00a7c
Názov modulu s poruchou: unknown, verzia: 0.0.0.0, časová značka: 0x00000000
Kód výnimky: 0x80131623
Odchýlka poruchy: 0x00007fff9b97f91d
Id poruchového procesu: 0x4328
Čas spustenia poruchovej aplikácie: 0x1dd3d09522ba615
Cesta k poruchovej aplikácii: C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2602.23002.0_x64__8wekyb3d8bbwe\MicrosoftSecurityApp\MicrosoftSecurityApp.exe
Cesta k poruchovému modulu: unknown
Id správy: 1af612d8-ee25-4363-aaf0-cd11543beb77
Plný názov chybného balíka: Microsoft.6365217CE6EB4_102.2602.23002.0_x64__8wekyb3d8bbwe
Identifikátor poruchovej aplikácie vzťahujúci sa na balík: App
Error: (09/05/2026 05:07:20 PM) (Source: .NET Runtime) (EventID: 1025) (User: )
Description: Application: MicrosoftSecurityApp.exe
Framework Version: v4.0.30319
Description: The application requested process termination through System.Environment.FailFast(string message).
Message: Forced termination due to crash
Stack:
at System.Environment.FailFast(System.String, System.Exception)
at MicrosoftSecurityApp.App.UnhandledExceptionHelper(System.String, System.Exception)
at System.Windows.Threading.Dispatcher.CatchException(System.Exception)
at System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
at System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32)
at MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr)
at MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef)
at MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef)
at System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame)
at System.Windows.Application.RunDispatcher(System.Object)
at System.Windows.Application.RunInternal(System.Windows.Window)
at MicrosoftSecurityApp.App.Main()
Error: (09/04/2026 07:03:33 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiska nemohol dokončiť defragmentáciu v KINGSTON (E:), pretože: Zväzky nie je možné optimalizovať, pretože nie je podporovaný typ systému súborov. (0x8900002F)
System errors:
=============
Error: (09/14/2026 10:18:25 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT AUTHORITY)
Description: The Secure Boot update failed to update SBAT with error -1878589247. For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931
Error: (09/13/2026 10:18:25 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT AUTHORITY)
Description: The Secure Boot update failed to update SBAT with error -1878589247. For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931
Error: (09/13/2026 10:18:25 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT AUTHORITY)
Description: The Secure Boot update failed to update SBAT with error -1878589247. For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931
Error: (09/12/2026 10:18:24 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT AUTHORITY)
Description: The Secure Boot update failed to update SBAT with error -1878589247. For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931
Error: (09/12/2026 10:18:25 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT AUTHORITY)
Description: The Secure Boot update failed to update SBAT with error -1878589247. For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931
Error: (09/12/2026 10:15:27 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby Služba Google Update (gupdate) zlyhalo kvôli nasledujúcej chybe:
The service did not respond to the start or control request in a timely fashion.
Error: (09/12/2026 10:15:27 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Počas čakania na pripojenie služby Služba Google Update (gupdate) bol dosiahnutý časový limit (30000 ms).
Error: (09/12/2026 10:10:27 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: The server {00000000-0000-0000-0000-000000000000} did not register with DCOM within the required timeout.
Windows Defender:
================
TimeCreated : 14. 9. 2026 20:31:16
Message : Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {0CCCE42E-0D65-4A95-880B-B3212C340EDE}
Scan Type: Antimalware
Scan Parameters: Quick Scan
User: NT AUTHORITY\SYSTEM
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days
TimeCreated : 13. 9. 2026 21:55:02
Message : Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {AF76BF3D-4C01-45F4-ACB9-84E2E9643857}
Scan Type: Antimalware
Scan Parameters: Quick Scan
User: NT AUTHORITY\SYSTEM
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days
TimeCreated : 10. 9. 2026 20:21:48
Message : Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {B500EC12-FD50-4C96-AAE7-A47070E0692C}
Scan Type: Antimalware
Scan Parameters: Quick Scan
User: NT AUTHORITY\SYSTEM
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days
TimeCreated : 9. 9. 2026 20:31:50
Message : Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {211F44DF-87B7-4CC1-9C6B-377081934EAC}
Scan Type: Antimalware
Scan Parameters: Quick Scan
User: NT AUTHORITY\SYSTEM
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days
TimeCreated : 8. 9. 2026 20:24:08
Message : Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {E264BE5F-EA1D-43A5-B951-859F0C29074F}
Scan Type: Antimalware
Scan Parameters: Quick Scan
User: NT AUTHORITY\SYSTEM
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days
TimeCreated : 7. 9. 2026 20:40:23
Message : Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {0EB631A5-9696-4CEB-B85B-ADB0F61A1C65}
Scan Type: Antimalware
Scan Parameters: Quick Scan
User: NT AUTHORITY\SYSTEM
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days
TimeCreated : 6. 9. 2026 20:22:59
Message : Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {A6D08298-F4D4-4842-8E7A-3CD125564CCB}
Scan Type: Antimalware
Scan Parameters: Quick Scan
User: NT AUTHORITY\SYSTEM
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days
TimeCreated : 5. 9. 2026 20:49:02
Message : Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {ACB43703-342D-46AA-9C89-7A66C6458EAE}
Scan Type: Antimalware
Scan Parameters: Quick Scan
User: NT AUTHORITY\SYSTEM
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days
CodeIntegrity:
===============
Date: 2026-09-14 15:30:22
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\Google\Chrome\Application\153.0.8010.37\vulkan-1.dll that did not meet the Microsoft signing level requirements.
Date: 2026-09-14 15:30:22
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\Google\Chrome\Application\153.0.8010.37\vk_swiftshader.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================
BIOS: HP V78 Ver. 01.14.01 07/06/2026
Motherboard: HP 8B5C
Processor: AMD Ryzen 3 7330U with Radeon Graphics
Percentage of memory in use: 40%
Total physical RAM: 15681.06 MB
Available physical RAM: 9278.11 MB
Total Virtual: 16705.06 MB
Available Virtual: 7779.23 MB
==================== Drives ================================
Disk 0 - Drive c: (Windows ) (Fixed) (Total:475.75 GB GB) (Free:345.55 GB GB) (Model: KBG50ZNV512G KIOXIA) NTFS
Disk 0 - Drive g: (Google Drive) (Fixed) (Total:404 GB GB) (Free:328.27 GB GB) (Model: KBG50ZNV512G KIOXIA) FAT32
Disk 0 - \\?\Volume{9f58263c-8408-461c-9546-0e121a29e77f}\ () (Fixed) (Total:0.91 GB) (Free:0.08 GB) NTFS
Disk 0 - \\?\Volume{0ab8e5a7-bce4-4bbf-9a28-5943b9189e90}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.16 GB) FAT32
==================== MBR & Partition Table ====================
============================================================
Disk: 0 (Size: 476.94 GB) (Disk ID: 04C4C758)
Partitions:
===========
Partition Style : GPT
Partition Count : 4
Disk ID : {A263CDF8-BF42-4C52-9424-72152ECFCA5C}
Usable Offset : 0.02 MB
Usable Length : 476.94 GB
Max Partitions : 128
Partition 1
Type : EFI System Partition
Size : 260 MB
Offset : 1 MB
Type GUID : {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}
Partition GUID : {0AB8E5A7-BCE4-4BBF-9A28-5943B9189E90}
GPT Name : EFI system partition
Attributes : 0x0000000000000000
Attribute Flags : None
Hidden : Yes
Platform Required: No
------------------------------------------------------------
Partition 2
Type : Microsoft Reserved (MSR)
Size : 16 MB
Offset : 261 MB
Type GUID : {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}
Partition GUID : {7438485B-0044-470E-A29D-E03CD2FC737D}
GPT Name : Microsoft reserved partition
Attributes : 0x0000000000000000
Attribute Flags : None
Hidden : Yes
Platform Required: No
------------------------------------------------------------
Partition 3
Type : Basic Data Partition
Size : 475.75 GB
Offset : 277 MB
Type GUID : {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}
Partition GUID : {02C71772-108A-4EE6-A2F9-4C679180F1D9}
GPT Name : Basic data partition
Attributes : 0x0000000000000000
Attribute Flags : None
Hidden : No
Platform Required: No
------------------------------------------------------------
Partition 4
Type : Windows Recovery
Size : 935 MB
Offset : 487446 MB
Type GUID : {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}
Partition GUID : {9F58263C-8408-461C-9546-0E121A29E77F}
Attributes : 0x8000000000000001
Attribute Flags : Platform Required, No Default Drive Letter
Hidden : Yes
Platform Required: Yes
------------------------------------------------------------
============================================================
==================== End of Addition.txt =======================
Ran by igorv (14-09-2026 21:03:54)
Running from C:\Users\igorv\Downloads
Microsoft Windows 11 Home Version 25H2 26200.9445 (X64) (2024-12-12 15:56:28)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-2384847340-952867437-1279697988-500 - Administrators - Disabled)
DefaultAccount (S-1-5-21-2384847340-952867437-1279697988-503 - Limited - Disabled)
Guest (S-1-5-21-2384847340-952867437-1279697988-501 - Limited - Disabled)
igorv (DisplayName: I*** *****o) (S-1-5-21-2384847340-952867437-1279697988-1001 - Administrators - Enabled) [MS Account] => C:\Users\igorv
WDAGUtilityAccount (S-1-5-21-2384847340-952867437-1279697988-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
AIDA64 Extreme v7.70 (HKLM-x32\...\AIDA64 Extreme_is1) (Version: 7.70 - FinalWire Ltd.)
AIDA64 Extreme v8.30 (HKLM\...\AIDA64 Extreme_is1) (Version: 8.30 - FinalWire Ltd.)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 23.19.24 - Advanced Micro Devices, Inc.)
Android Studio (HKLM\...\Android Studio) (Version: 2026.1 - Google LLC)
Google Drive (HKLM\...\{6BBAE539-2232-434A-A4E5-9A33560C6283}) (Version: 131.0.2.0 - Google LLC)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 153.0.8010.37 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.36.51 - Google LLC) Hidden
HP Client Management Script Library (HKLM-x32\...\{5A1AECCB-E0CE-4D2C-833C-29CCEA959448}_is1) (Version: 1.7.1 - HP Development Company, L.P.)
HP Connection Optimizer (HKLM-x32\...\{6468C4A5-E47E-405F-B675-A70A70983EA6}) (Version: 2.0.20.0 - HP Inc)
HP Documentation (HKLM\...\HP_Documentation) (Version: 1.0.0.1 - HP Inc.)
HP Notifications (HKLM-x32\...\{19F557DE-662A-4FEA-B635-1CACD56CC483}) (Version: 1.1.29.12 - HP)
HP One Agent (HKLM\...\{7CCB7DE7-C121-478D-B4EB-F5C186DEF5D7}) (Version: 1.2.7.1708 - HP Inc.) Hidden
HP One Agent (HKLM\...\{D3913CAA-0A30-494D-AE06-F79A68997FAB}) (Version: 1.2.007.1708 - HP Inc.)
HP Security Update Service (HKLM\...\{90029D55-E154-41CF-96A2-D6120811643C}) (Version: 4.4.33.1019 - HP Inc.)
HP Software Framework (HKLM-x32\...\{71E18A14-1BDB-4B58-A67F-1BCDA12462FD}) (Version: 7.1.15.1 - HP)
HP Sure Recover (HKLM\...\{EE6377DD-C166-40D9-ACFF-AEB827623329}) (Version: 10.1.34.334 - HP Inc.)
HP Sure Run Module (HKLM\...\{EB7671C4-861D-4C1F-BA26-C8ED6B8EF933}) (Version: 5.0.5.118 - HP Inc.)
HP System Default Settings (HKLM-x32\...\{4BF87EE4-8F1E-442A-8B57-B94E6E42951A}) (Version: 1.5.15.1 - HP Inc.) Hidden
HP Wolf Security - Console (HKLM\...\{8666396B-3DC3-4EC4-8328-6F1654BBB880}) (Version: 11.1.8.1209 - HP Inc.)
ICS (HKLM-x32\...\{5CD25FCD-D218-46D0-B405-E5A488969BDF}) (Version: 3.1.18.25 - HP Inc.)
Microsoft .NET Host - 10.0.12 (x64) (HKLM\...\{17D94539-A423-48D9-BD4A-69A9186C5B66}) (Version: 80.48.58476 - Microsoft Corporation) Hidden
Microsoft .NET Host - 8.0.31 (x64) (HKLM\...\{56A842AA-B5B3-419B-A80E-36623D12F168}) (Version: 64.124.58447 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 10.0.12 (x64) (HKLM\...\{E358F0F7-0226-419D-85E6-D45A08BF195F}) (Version: 80.48.58476 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.31 (x64) (HKLM\...\{147B0E5B-D916-44F6-A66B-163CF0F723E9}) (Version: 64.124.58447 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 10.0.12 (x64) (HKLM\...\{902710DF-F5E0-42EB-8959-ECC10CC368DF}) (Version: 80.48.58476 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 10.0.12 (x64) (HKLM-x32\...\{4CBA08D2-07D1-4B4F-B8E1-8C5424CCA5A0}) (Version: 10.0.12.36422 - Microsoft Corporation)
Microsoft .NET Runtime - 8.0.31 (x64) (HKLM\...\{D5EFD516-E715-456F-9D3F-4CA6653C353E}) (Version: 64.124.58447 - Microsoft Corporation) Hidden
Microsoft 365 - sk-sk (HKLM\...\O365HomePremRetail - sk-sk) (Version: 16.0.20326.20144 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 153.0.4234.32 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 152.0.4191.66 - Microsoft Corporation) Hidden
Microsoft GameInput (HKLM\...\{14EDF950-06B9-415F-862C-1D5DEC321AE6}) (Version: 3.3.221.0 - Microsoft Corporation)
Microsoft OneNote - sk-sk (HKLM\...\OneNoteFreeRetail - sk-sk) (Version: 16.0.20326.20144 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.50.35719 (HKLM\...\{AECD4ED0-8A3B-41E9-92D1-6BEE0374CCAF}) (Version: 14.50.35719 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.50.35719 (HKLM\...\{61B44572-8722-4DAF-8ACF-8E742D30BCC5}) (Version: 14.50.35719 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.50.35719 (HKLM-x32\...\{773AD50D-AAE6-4BA1-AD01-B5A38874C840}) (Version: 14.50.35719 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.50.35719 (HKLM-x32\...\{5A0DFA55-3851-45BC-8B20-95EA4BF5812D}) (Version: 14.50.35719 - Microsoft Corporation) Hidden
Microsoft Visual C++ v14 Redistributable (x64) - 14.50.35719 (HKLM-x32\...\{91ee571b-0e8a-4c65-9eaf-2e2f5fc60c00}) (Version: 14.50.35719.0 - Microsoft Corporation)
Microsoft Visual C++ v14 Redistributable (x86) - 14.50.35719 (HKLM-x32\...\{0e4ccf1b-d073-4cfe-8a24-e86185719b56}) (Version: 14.50.35719.0 - Microsoft Corporation)
Microsoft Windows Application Compatibility Fix Database (HKLM\...\{22221111-1111-1111-1111-111111111111}.sdb) (Version: - )
Microsoft Windows Desktop Runtime - 8.0.31 (x64) (HKLM\...\{F2D93D43-8A6C-492C-8E37-070DB499C074}) (Version: 64.124.58455 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.31 (x64) (HKLM-x32\...\{208fff39-3440-44c6-b473-38136ba594bf}) (Version: 8.0.31.36421 - Microsoft Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.20326.20072 - Microsoft Corporation) Hidden
Poly Lens Control Service (HKLM\...\{92FB562B-E9B2-405B-A1CB-E33FD758A9A4}) (Version: 1.11.793 - HP Inc.)
Poly Lens Desktop (HKLM\...\{5625A841-9FDE-4149-8243-C08FAB2B5639}) (Version: 2.2.0.3547 - HP Inc.)
Proton VPN (HKLM\...\Proton VPN_is1) (Version: 4.4.1 - Proton AG)
WXP Insights Agent (HKLM-x32\...\{2760A0B6-B74F-4E42-BC4A-7B4F3DE0522C}) (Version: 5.26.114 - HP Inc.)
Packages:
=========
@{MicrosoftWindows.55182690.Taskbar_1000.26100.3775.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-06-14] ()
@{MicrosoftWindows.55182690.Taskbar_1000.26100.3912.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-06-14] ()
AMD Radeon Software -> C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m [2026-07-16] (Advanced Micro Devices Inc.) [Startup Task]
HP -> C:\Program Files\WindowsApps\AD2F1837.myHP_60.52634.13225.0_x64__v10z8vjag6ke6 [2026-08-28] (HP Inc.) [Startup Task]
HP Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.HPAudioControl_2.54.396.0_x64__dt26b99r8h8gj [2026-08-26] (Realtek Semiconductor Corp)
HP PC Hardware Diagnostics Windows -> C:\Program Files\WindowsApps\AD2F1837.HPPCHardwareDiagnosticsWindows_3.2.0.0_x64__v10z8vjag6ke6 [2026-08-05] (HP Inc.)
HP PC Privacy Settings -> C:\Program Files\WindowsApps\AD2F1837.HPPrivacySettings_1.6.2.0_x64__v10z8vjag6ke6 [2026-08-19] (HP Inc.)
HP Power Manager -> C:\Program Files\WindowsApps\AD2F1837.HPPowerManager_3.1.18.0_x64__v10z8vjag6ke6 [2024-10-31] (HP Inc.)
HP Support Assistant -> C:\Program Files\WindowsApps\AD2F1837.HPSupportAssistant_9.55.10.0_x64__v10z8vjag6ke6 [2026-08-19] (HP Inc.)
HP System Information -> C:\Program Files\WindowsApps\AD2F1837.HPSystemInformation_8.10.53.0_x64__v10z8vjag6ke6 [2026-09-04] (HP Inc.)
Local AI Manager for Microsoft 365 -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\AI [2026-09-13] ()
Microsoft Defender -> C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2602.23002.0_x64__8wekyb3d8bbwe [2026-04-02] (Microsoft Corporation) [Startup Task]
Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2024-05-19] (Microsoft Corp.)
Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_56.20201.588.0_x64__8wekyb3d8bbwe [2026-02-16] (Microsoft Corporation)
Microsoft.HEVCVideoExtensions -> C:\Program Files\WindowsApps\Microsoft.HEVCVideoExtensions_2.4.110.0_x64__8wekyb3d8bbwe [2026-08-14] (Microsoft Corporation)
Microsoft.Office.ActionsServer -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\ActionsServer [2026-09-13] ()
OfficePushNotificationsUtility -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16 [2026-09-13] ()
OneNote Virtual Printer -> C:\Program Files\WindowsApps\Microsoft.Office.OneNoteVirtualPrinter_1.0.0.0_x64__8wekyb3d8bbwe [2026-02-18] (Microsoft Corporation)
WinAppRuntime.Singleton -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Singleton_8002.4.0.0_x64__8wekyb3d8bbwe [2026-08-25] (Microsoft Corp.)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-2384847340-952867437-1279697988-1001_Classes\CLSID\{11487812-8821-0862-6182-000000000000}\localserver32 -> C:\WINDOWS\system32\FMToastNotification.exe (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia)
CustomCLSID: HKU\S-1-5-21-2384847340-952867437-1279697988-1001_Classes\CLSID\{50726f74-6f6e-2e56-504e-000000000000}\localserver32 -> C:\Program Files\Proton\VPN\v4.4.1\ProtonVPN.Client.exe (Proton AG -> ProtonVPN)
CustomCLSID: HKU\S-1-5-21-2384847340-952867437-1279697988-1001_Classes\CLSID\{65574321-d3fb-e7db-e83e-38fe55a80c4a}\localserver32 -> C:\Program Files\HP\HP Client Security Manager\HP.ClientSecurityManager.exe (HP Inc. -> HP Inc.)
CustomCLSID: HKU\S-1-5-21-2384847340-952867437-1279697988-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC)
ShellIconOverlayIdentifiers: [ GoogleDriveCloudOverlayIconHandler] -> {A8E52322-8734-481D-A7E2-27B309EF8D56} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers: [ GoogleDriveMirrorBlacklistedOverlayIconHandler] -> {51EF1569-67EE-4AD6-9646-E726C3FFC8A2} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers: [ GoogleDrivePinnedOverlayIconHandler] -> {CFE8B367-77A7-41D7-9C90-75D16D7DC6B6} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers: [ GoogleDriveProgressOverlayIconHandler] -> {C973DA94-CBDF-4E77-81D1-E5B794FBD146} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers-x32: [ GoogleDriveCloudOverlayIconHandler] -> {A8E52322-8734-481D-A7E2-27B309EF8D56} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers-x32: [ GoogleDriveMirrorBlacklistedOverlayIconHandler] -> {51EF1569-67EE-4AD6-9646-E726C3FFC8A2} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers-x32: [ GoogleDrivePinnedOverlayIconHandler] -> {CFE8B367-77A7-41D7-9C90-75D16D7DC6B6} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers-x32: [ GoogleDriveProgressOverlayIconHandler] -> {C973DA94-CBDF-4E77-81D1-E5B794FBD146} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ContextMenuHandlers1: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ContextMenuHandlers4: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ContextMenuHandlers5: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
==================== Loaded Modules (Whitelisted) =============
2024-01-26 15:41 - 2024-01-26 15:41 - 000000000 ____L () [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems64.dll] C:\Program Files\Microsoft Office\Root\Office16\AppVIsvSubsystems64.dll
2024-01-26 15:41 - 2024-01-26 15:41 - 000000000 ____L () [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R64.dll] C:\Program Files\Microsoft Office\Root\Office16\c2r64.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2022-05-07 07:24 - 2022-05-07 07:22 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
==================== Network ===========================
(Currently there is no automatic fix for this section.)
DNS Servers: 1.1.1.1 - 8.8.8.8
Windows Firewall is enabled.
Network Binding:
=============
Wi-Fi: MediaTek Wi-Fi 6E MT7922 (RZ616) 160MHz PCIe Adapter -> mtkwl6ex.sys
Ethernet: Realtek PCIe GbE Family Controller -> rt68cx21x64.sys
vms_vsf: Hyper-V Virtual Switch Extension Filter
ms_l1vhlwf: Nested Network Virtualization
vms_vsp: Hyper-V Virtual Switch Extension Protocol
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-2384847340-952867437-1279697988-1001\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKU\S-1-5-21-2384847340-952867437-1279697988-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{207FF0BA-4D00-447D-8427-9CBDA098563E}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_24137.2402.2884.4157_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{47893453-764F-4172-B4F4-3449E65B050C}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_24137.2402.2884.4157_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{EFF40D77-84A2-419C-88FE-F8F8A6B867A7}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [EdgeWebView2-MDNS-In-UDP] => (Allow) C:\WINDOWS\system32\Microsoft-Edge-WebView\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{8EC1DEF3-B630-4E4C-BD60-0BDFA9229C55}C:\users\igorv\appdata\local\android\sdk\platform-tools\adb.exe] => (Allow) C:\users\igorv\appdata\local\android\sdk\platform-tools\adb.exe (Google LLC -> )
FirewallRules: [UDP Query User{08460E52-25BF-4415-9BAB-6F131000EBEE}C:\users\igorv\appdata\local\android\sdk\platform-tools\adb.exe] => (Allow) C:\users\igorv\appdata\local\android\sdk\platform-tools\adb.exe (Google LLC -> )
FirewallRules: [{6C35E221-FDF7-434D-AA6A-60CC1A339AFF}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
==================== Restore Points =========================
11-09-2026 23:06:40 Windows Update
13-09-2026 21:57:04 Microsoft Visual C++ v14 Redistributable (x64) - 14.50.35719
13-09-2026 21:57:15 Microsoft Visual C++ v14 Redistributable (x86) - 14.50.35719
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (09/07/2026 01:56:54 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - There was a failure initializing profiling API attach infrastructure. This process will not allow a profiler to attach. HRESULT: 0x80004005. Process ID (decimal): 4188. Message ID: [0x2509].
Error: (09/07/2026 01:49:44 PM) (Source: Application Error) (EventID: 1000) (User: NT AUTHORITY)
Description: Názov chybnej aplikácie: HotKeyServiceUWP.exe, verzia: 8.10.52.464, časová značka: 0x69b00484
Názov modulu s poruchou: ntdll.dll, verzia: 10.0.26100.9278, časová značka: 0x7e1f2ca9
Kód výnimky: 0xc0000005
Odchýlka poruchy: 0x000000000001283d
Id poruchového procesu: 0x14b4
Čas spustenia poruchovej aplikácie: 0x1dd393fb89d77e8
Cesta k poruchovej aplikácii: C:\WINDOWS\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_0d182501a33019e2\HotKeyServiceUWP.exe
Cesta k poruchovému modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
Id správy: 8942f3eb-7cd8-4ce1-b188-0cd8a7f84211
Plný názov chybného balíka:
Identifikátor poruchovej aplikácie vzťahujúci sa na balík:
Error: (09/07/2026 01:49:44 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Application: HotKeyServiceUWP.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: exception code c0000005, exception address 00007FF80E5F283D
Error: (09/06/2026 11:04:27 AM) (Source: Application Error) (EventID: 1000) (User: SAUL)
Description: Názov chybnej aplikácie: Un_A.exe, verzia: 1.55.0.133, časová značka: 0x614f9d02
Názov modulu s poruchou: ntdll.dll, verzia: 10.0.26100.9278, časová značka: 0xfd201f55
Kód výnimky: 0xc0000005
Odchýlka poruchy: 0x000510c9
Id poruchového procesu: 0x1658
Čas spustenia poruchovej aplikácie: 0x1dd3ddeb5d9ed24
Cesta k poruchovej aplikácii: C:\Users\igorv\AppData\Local\Temp\~nsuA.tmp\Un_A.exe
Cesta k poruchovému modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
Id správy: 48c33b54-604b-4963-9d12-4e5f7161ebee
Plný názov chybného balíka:
Identifikátor poruchovej aplikácie vzťahujúci sa na balík:
Error: (09/05/2026 05:50:58 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - There was a failure initializing profiling API attach infrastructure. This process will not allow a profiler to attach. HRESULT: 0x80004005. Process ID (decimal): 4564. Message ID: [0x2509].
Error: (09/05/2026 05:07:20 PM) (Source: Application Error) (EventID: 1000) (User: SAUL)
Description: Názov chybnej aplikácie: MicrosoftSecurityApp.exe, verzia: 1.2.2602.23002, časová značka: 0xe9d00a7c
Názov modulu s poruchou: unknown, verzia: 0.0.0.0, časová značka: 0x00000000
Kód výnimky: 0x80131623
Odchýlka poruchy: 0x00007fff9b97f91d
Id poruchového procesu: 0x4328
Čas spustenia poruchovej aplikácie: 0x1dd3d09522ba615
Cesta k poruchovej aplikácii: C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2602.23002.0_x64__8wekyb3d8bbwe\MicrosoftSecurityApp\MicrosoftSecurityApp.exe
Cesta k poruchovému modulu: unknown
Id správy: 1af612d8-ee25-4363-aaf0-cd11543beb77
Plný názov chybného balíka: Microsoft.6365217CE6EB4_102.2602.23002.0_x64__8wekyb3d8bbwe
Identifikátor poruchovej aplikácie vzťahujúci sa na balík: App
Error: (09/05/2026 05:07:20 PM) (Source: .NET Runtime) (EventID: 1025) (User: )
Description: Application: MicrosoftSecurityApp.exe
Framework Version: v4.0.30319
Description: The application requested process termination through System.Environment.FailFast(string message).
Message: Forced termination due to crash
Stack:
at System.Environment.FailFast(System.String, System.Exception)
at MicrosoftSecurityApp.App.UnhandledExceptionHelper(System.String, System.Exception)
at System.Windows.Threading.Dispatcher.CatchException(System.Exception)
at System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
at System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32)
at MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr)
at MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef)
at MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef)
at System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame)
at System.Windows.Application.RunDispatcher(System.Object)
at System.Windows.Application.RunInternal(System.Windows.Window)
at MicrosoftSecurityApp.App.Main()
Error: (09/04/2026 07:03:33 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiska nemohol dokončiť defragmentáciu v KINGSTON (E:), pretože: Zväzky nie je možné optimalizovať, pretože nie je podporovaný typ systému súborov. (0x8900002F)
System errors:
=============
Error: (09/14/2026 10:18:25 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT AUTHORITY)
Description: The Secure Boot update failed to update SBAT with error -1878589247. For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931
Error: (09/13/2026 10:18:25 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT AUTHORITY)
Description: The Secure Boot update failed to update SBAT with error -1878589247. For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931
Error: (09/13/2026 10:18:25 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT AUTHORITY)
Description: The Secure Boot update failed to update SBAT with error -1878589247. For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931
Error: (09/12/2026 10:18:24 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT AUTHORITY)
Description: The Secure Boot update failed to update SBAT with error -1878589247. For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931
Error: (09/12/2026 10:18:25 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT AUTHORITY)
Description: The Secure Boot update failed to update SBAT with error -1878589247. For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931
Error: (09/12/2026 10:15:27 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby Služba Google Update (gupdate) zlyhalo kvôli nasledujúcej chybe:
The service did not respond to the start or control request in a timely fashion.
Error: (09/12/2026 10:15:27 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Počas čakania na pripojenie služby Služba Google Update (gupdate) bol dosiahnutý časový limit (30000 ms).
Error: (09/12/2026 10:10:27 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: The server {00000000-0000-0000-0000-000000000000} did not register with DCOM within the required timeout.
Windows Defender:
================
TimeCreated : 14. 9. 2026 20:31:16
Message : Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {0CCCE42E-0D65-4A95-880B-B3212C340EDE}
Scan Type: Antimalware
Scan Parameters: Quick Scan
User: NT AUTHORITY\SYSTEM
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days
TimeCreated : 13. 9. 2026 21:55:02
Message : Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {AF76BF3D-4C01-45F4-ACB9-84E2E9643857}
Scan Type: Antimalware
Scan Parameters: Quick Scan
User: NT AUTHORITY\SYSTEM
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days
TimeCreated : 10. 9. 2026 20:21:48
Message : Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {B500EC12-FD50-4C96-AAE7-A47070E0692C}
Scan Type: Antimalware
Scan Parameters: Quick Scan
User: NT AUTHORITY\SYSTEM
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days
TimeCreated : 9. 9. 2026 20:31:50
Message : Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {211F44DF-87B7-4CC1-9C6B-377081934EAC}
Scan Type: Antimalware
Scan Parameters: Quick Scan
User: NT AUTHORITY\SYSTEM
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days
TimeCreated : 8. 9. 2026 20:24:08
Message : Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {E264BE5F-EA1D-43A5-B951-859F0C29074F}
Scan Type: Antimalware
Scan Parameters: Quick Scan
User: NT AUTHORITY\SYSTEM
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days
TimeCreated : 7. 9. 2026 20:40:23
Message : Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {0EB631A5-9696-4CEB-B85B-ADB0F61A1C65}
Scan Type: Antimalware
Scan Parameters: Quick Scan
User: NT AUTHORITY\SYSTEM
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days
TimeCreated : 6. 9. 2026 20:22:59
Message : Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {A6D08298-F4D4-4842-8E7A-3CD125564CCB}
Scan Type: Antimalware
Scan Parameters: Quick Scan
User: NT AUTHORITY\SYSTEM
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days
TimeCreated : 5. 9. 2026 20:49:02
Message : Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {ACB43703-342D-46AA-9C89-7A66C6458EAE}
Scan Type: Antimalware
Scan Parameters: Quick Scan
User: NT AUTHORITY\SYSTEM
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days
CodeIntegrity:
===============
Date: 2026-09-14 15:30:22
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\Google\Chrome\Application\153.0.8010.37\vulkan-1.dll that did not meet the Microsoft signing level requirements.
Date: 2026-09-14 15:30:22
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\Google\Chrome\Application\153.0.8010.37\vk_swiftshader.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================
BIOS: HP V78 Ver. 01.14.01 07/06/2026
Motherboard: HP 8B5C
Processor: AMD Ryzen 3 7330U with Radeon Graphics
Percentage of memory in use: 40%
Total physical RAM: 15681.06 MB
Available physical RAM: 9278.11 MB
Total Virtual: 16705.06 MB
Available Virtual: 7779.23 MB
==================== Drives ================================
Disk 0 - Drive c: (Windows ) (Fixed) (Total:475.75 GB GB) (Free:345.55 GB GB) (Model: KBG50ZNV512G KIOXIA) NTFS
Disk 0 - Drive g: (Google Drive) (Fixed) (Total:404 GB GB) (Free:328.27 GB GB) (Model: KBG50ZNV512G KIOXIA) FAT32
Disk 0 - \\?\Volume{9f58263c-8408-461c-9546-0e121a29e77f}\ () (Fixed) (Total:0.91 GB) (Free:0.08 GB) NTFS
Disk 0 - \\?\Volume{0ab8e5a7-bce4-4bbf-9a28-5943b9189e90}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.16 GB) FAT32
==================== MBR & Partition Table ====================
============================================================
Disk: 0 (Size: 476.94 GB) (Disk ID: 04C4C758)
Partitions:
===========
Partition Style : GPT
Partition Count : 4
Disk ID : {A263CDF8-BF42-4C52-9424-72152ECFCA5C}
Usable Offset : 0.02 MB
Usable Length : 476.94 GB
Max Partitions : 128
Partition 1
Type : EFI System Partition
Size : 260 MB
Offset : 1 MB
Type GUID : {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}
Partition GUID : {0AB8E5A7-BCE4-4BBF-9A28-5943B9189E90}
GPT Name : EFI system partition
Attributes : 0x0000000000000000
Attribute Flags : None
Hidden : Yes
Platform Required: No
------------------------------------------------------------
Partition 2
Type : Microsoft Reserved (MSR)
Size : 16 MB
Offset : 261 MB
Type GUID : {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}
Partition GUID : {7438485B-0044-470E-A29D-E03CD2FC737D}
GPT Name : Microsoft reserved partition
Attributes : 0x0000000000000000
Attribute Flags : None
Hidden : Yes
Platform Required: No
------------------------------------------------------------
Partition 3
Type : Basic Data Partition
Size : 475.75 GB
Offset : 277 MB
Type GUID : {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}
Partition GUID : {02C71772-108A-4EE6-A2F9-4C679180F1D9}
GPT Name : Basic data partition
Attributes : 0x0000000000000000
Attribute Flags : None
Hidden : No
Platform Required: No
------------------------------------------------------------
Partition 4
Type : Windows Recovery
Size : 935 MB
Offset : 487446 MB
Type GUID : {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}
Partition GUID : {9F58263C-8408-461C-9546-0E121A29E77F}
Attributes : 0x8000000000000001
Attribute Flags : Platform Required, No Default Drive Letter
Hidden : Yes
Platform Required: Yes
------------------------------------------------------------
============================================================
==================== End of Addition.txt =======================
- Rudy
- Site Admin

- Příspěvky: 120109
- Registrován: 30 Říj 2003 13:42
- Místo/Bydliště: Plzeň
- Kontaktovat uživatele:
Re: kontrola frst so zameranim
Zdravím!
Nejprve spusťte tuto utilitu:
Nejprve spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/
ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: kontrola frst so zameranim
našlo mi len HP veci, ale tie nevadia
# -------------------------------
# Malwarebytes AdwCleaner 8.8.1.639
# -------------------------------
# Build: 05-13-2026
# Database: 2026-05-07.3 (Cloud)
# Support: https://help.malwarebytes.com/
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 09-14-2026
# Duration: 00:00:04
# OS: Windows 11 (Build 26200.9445)
# Scanned: 32085
# Detected: 7
***** [ Services ] *****
No malicious services found.
***** [ Folders ] *****
No malicious folders found.
***** [ Files ] *****
No malicious files found.
***** [ DLL ] *****
No malicious DLLs found.
***** [ WMI ] *****
No malicious WMI found.
***** [ Shortcuts ] *****
No malicious shortcuts found.
***** [ Tasks ] *****
No malicious tasks found.
***** [ Registry ] *****
No malicious registry entries found.
***** [ Chromium (and derivatives) ] *****
No malicious Chromium entries found.
***** [ Chromium URLs ] *****
No malicious Chromium URLs found.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries found.
***** [ Firefox URLs ] *****
No malicious Firefox URLs found.
***** [ Hosts File Entries ] *****
No malicious hosts file entries found.
***** [ Preinstalled Software ] *****
Preinstalled.HPSupportAssistant Folder C:\ProgramData\HEWLETT-PACKARD\HP SUPPORT FRAMEWORK
Preinstalled.HPSureConnect Folder C:\Program Files\HPCOMMRECOVERY
Preinstalled.HPSureConnect Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{6468C4A5-E47E-405F-B675-A70A70983EA6}
Preinstalled.HPTouchpointAnalyticsClient Folder C:\Program Files (x86)\HP\HP TOUCHPOINT ANALYTICS CLIENT
Preinstalled.HPTouchpointAnalyticsClient Folder C:\Program Files\HP\HP TOUCHPOINT ANALYTICS CLIENT
Preinstalled.HPTouchpointAnalyticsClient Folder C:\ProgramData\HP\HP TOUCHPOINT ANALYTICS CLIENT
Preinstalled.HPTouchpointAnalyticsClient Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{E5FB98E0-0784-44F0-8CEC-95CD4690C43F}
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S00].txt ##########
# -------------------------------
# Malwarebytes AdwCleaner 8.8.1.639
# -------------------------------
# Build: 05-13-2026
# Database: 2026-05-07.3 (Cloud)
# Support: https://help.malwarebytes.com/
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 09-14-2026
# Duration: 00:00:04
# OS: Windows 11 (Build 26200.9445)
# Scanned: 32085
# Detected: 7
***** [ Services ] *****
No malicious services found.
***** [ Folders ] *****
No malicious folders found.
***** [ Files ] *****
No malicious files found.
***** [ DLL ] *****
No malicious DLLs found.
***** [ WMI ] *****
No malicious WMI found.
***** [ Shortcuts ] *****
No malicious shortcuts found.
***** [ Tasks ] *****
No malicious tasks found.
***** [ Registry ] *****
No malicious registry entries found.
***** [ Chromium (and derivatives) ] *****
No malicious Chromium entries found.
***** [ Chromium URLs ] *****
No malicious Chromium URLs found.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries found.
***** [ Firefox URLs ] *****
No malicious Firefox URLs found.
***** [ Hosts File Entries ] *****
No malicious hosts file entries found.
***** [ Preinstalled Software ] *****
Preinstalled.HPSupportAssistant Folder C:\ProgramData\HEWLETT-PACKARD\HP SUPPORT FRAMEWORK
Preinstalled.HPSureConnect Folder C:\Program Files\HPCOMMRECOVERY
Preinstalled.HPSureConnect Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{6468C4A5-E47E-405F-B675-A70A70983EA6}
Preinstalled.HPTouchpointAnalyticsClient Folder C:\Program Files (x86)\HP\HP TOUCHPOINT ANALYTICS CLIENT
Preinstalled.HPTouchpointAnalyticsClient Folder C:\Program Files\HP\HP TOUCHPOINT ANALYTICS CLIENT
Preinstalled.HPTouchpointAnalyticsClient Folder C:\ProgramData\HP\HP TOUCHPOINT ANALYTICS CLIENT
Preinstalled.HPTouchpointAnalyticsClient Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{E5FB98E0-0784-44F0-8CEC-95CD4690C43F}
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S00].txt ##########
- Rudy
- Site Admin

- Příspěvky: 120109
- Registrován: 30 Říj 2003 13:42
- Místo/Bydliště: Plzeň
- Kontaktovat uživatele:
Re: kontrola frst so zameranim
Toto je OK. Otevřte poznámkový blok a zkopírujte do něj:
Uložte do C:\Users\igorv\Downloads jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.Start
CloseProcesses:
C:\DumpStack.log.tmp
EmptyTemp:
End
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: kontrola frst so zameranim
je teda všetko určite v poriadku?
Fix result of Farbar Recovery Scan Tool (x64) Version: 09-09-2026
Ran by igorv (15-09-2026 09:41:38) Run:1
Running from C:\Users\igorv\Downloads
Loaded Profiles: igorv
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
C:\DumpStack.log.tmp
EmptyTemp:
End
*****************
Processes closed successfully.
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.
=========== EmptyTemp: ==========
FlushDNS => completed
BITS transfer queue => 1572864 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 102292819 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 1 B
Windows/system/drivers => 44125431 B
Edge => 52909149 B
Chrome => 1056271188 B
Firefox => 0 B
Opera => 0 B
Local\Temp, Local\*.tmp, LocalLow\Temp, Roaming\Temp, Roaming\*.tmp , Caches, history, cookies, recent:
Default => 4 B
ProgramData => 989729 B
Public => 0 B
systemprofile => 477194 B
systemprofile32 => 0 B
LocalService => 1474232 B
NetworkService => 122410 B
igorv => 9736413 B
RecycleBin => 20655350 B
EmptyTemp: => 1.2 GB temporary data Removed.
================================
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 15-09-2026 09:46:56)
C:\DumpStack.log.tmp => Could not move
==== End of Fixlog 09:46:57 ====
Fix result of Farbar Recovery Scan Tool (x64) Version: 09-09-2026
Ran by igorv (15-09-2026 09:41:38) Run:1
Running from C:\Users\igorv\Downloads
Loaded Profiles: igorv
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
C:\DumpStack.log.tmp
EmptyTemp:
End
*****************
Processes closed successfully.
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.
=========== EmptyTemp: ==========
FlushDNS => completed
BITS transfer queue => 1572864 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 102292819 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 1 B
Windows/system/drivers => 44125431 B
Edge => 52909149 B
Chrome => 1056271188 B
Firefox => 0 B
Opera => 0 B
Local\Temp, Local\*.tmp, LocalLow\Temp, Roaming\Temp, Roaming\*.tmp , Caches, history, cookies, recent:
Default => 4 B
ProgramData => 989729 B
Public => 0 B
systemprofile => 477194 B
systemprofile32 => 0 B
LocalService => 1474232 B
NetworkService => 122410 B
igorv => 9736413 B
RecycleBin => 20655350 B
EmptyTemp: => 1.2 GB temporary data Removed.
================================
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 15-09-2026 09:46:56)
C:\DumpStack.log.tmp => Could not move
==== End of Fixlog 09:46:57 ====
- Rudy
- Site Admin

- Příspěvky: 120109
- Registrován: 30 Říj 2003 13:42
- Místo/Bydliště: Plzeň
- Kontaktovat uživatele:
Re: kontrola frst so zameranim
Log je OK. Mělo by být vše v pořádku.Na žádný keylogger, špehovací program, ani jinou havěť jsem nenarazil. 
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Přispějete na provoz fóra?