Dle Defenderu vir v PC
Napsal: 09 úno 2022 20:34
Ahoj/Dobrý den,
dle Microsoft Defender byl nějaký vir v PC, který Defender smazal, prosím tímto o kontrolu logu.
Děkuji
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 05-02-2022
Ran by Hladk (administrator) on DESKTOP-1T75NO9 (09-02-2022 20:27:24)
Running from C:\Users\Hladk\AppData\Local\Temp\scoped_dir8220_678203837
Loaded Profiles: Hladk
Platform: Microsoft Windows 10 Home Version 21H1 19043.1466 (X64) Language: Čeština (Česko)
Default browser: Opera
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0373652.inf_amd64_97d024528a122d1a\B372726\atieclxx.exe
(Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0373652.inf_amd64_97d024528a122d1a\B372726\atiesrxx.exe
(Bagelcode) C:\Program Files\WindowsApps\BagelcodeInc.47921C88A920C_120.0.21.0_x64__5dvc9f3b38e20\Club Vegas.exe
(Ivaylo Beltchev -> IvoSoft) [File not signed] C:\Program Files\Classic Shell\ClassicStartMenu.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\GameBarPresenceWriter.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCopyAccelerator.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\NisSrv.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmd.inf_amd64_1408eaf9a25ed64f\Display.NvContainer\NVDisplay.Container.exe <2>
(Opera Software AS -> Opera Software) C:\Users\Hladk\AppData\Local\Programs\Opera\83.0.4254.27\opera_crashreporter.exe
(Opera Software AS -> Opera Software) C:\Users\Hladk\AppData\Local\Programs\Opera\opera.exe <32>
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [LogiOptions] => C:\Program Files\Logitech\LogiOptions\LogiOptions.exe [2177160 2019-03-03] (Logitech Inc -> Logitech, Inc.)
HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [163640 2017-08-13] (Ivaylo Beltchev -> IvoSoft) [File not signed]
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\Run: [Opera Browser Assistant] => C:\Users\Hladk\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [4105424 2021-10-14] (Opera Software AS -> Opera Software)
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\Run: [Adobe Reader Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe [5407968 2021-12-24] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\MountPoints2: {0be8b383-756a-11ea-9e0c-7085c262d76e} - "D:\HiSuiteDownLoader.exe"
HKLM\...\Print\Monitors\Bullzip PDF Print Monitor: C:\Program Files\Common Files\Bullzip\PDF Printer\Ports\BULLZIP\bzpdf.dll [221696 2019-02-15] (Bullzip) [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\98.0.4758.82\Installer\chrmstp.exe [2022-02-08] (Google LLC -> Google LLC)
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {012AF9A8-C10B-4759-9017-F7384F27E0BB} - System32\Tasks\Opera scheduled Autoupdate 1555151344 => C:\Users\Hladk\AppData\Local\Programs\Opera\launcher.exe [2333904 2022-01-26] (Opera Software AS -> Opera Software)
Task: {10A3784B-E3D4-4867-997B-1B6FD31C4F26} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe [901048 2021-12-16] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {35A50CFD-66BB-470C-BDE4-7F2F2AD50979} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe [901048 2021-12-16] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {4D8A2B39-A76D-42CC-82B9-986D86B87B98} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-05-29] (Google Inc -> Google LLC)
Task: {4E814242-EC28-47EA-A742-87A5C257FD57} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {59700CA8-F849-4731-B8B6-515D6805F876} - System32\Tasks\EOSv3 Scheduler onLogOn => C:\Users\Hladk\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe [21737944 2022-02-09] (ESET, spol. s r.o. -> ESET)
Task: {6C0E15A0-5D86-4BC0-9909-C90DA6F6A00F} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1790184 2021-04-29] (Avast Software s.r.o. -> Avast Software)
Task: {93154DC5-99BE-416F-8C1D-84BC5325D23C} - System32\Tasks\ProtonVPN Update => C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPN.UpdateService.exe [61760 2020-10-23] (ProtonVPN AG -> )
Task: {A0F93F01-0E78-4645-B972-8EB7E3D8CCDD} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe [901048 2021-12-16] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {A2E7804E-1B6E-4F97-BD23-A65514BD6090} - System32\Tasks\EOSv3 Scheduler onTime => C:\Users\Hladk\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe [21737944 2022-02-09] (ESET, spol. s r.o. -> ESET)
Task: {B270A711-E269-48B0-B7D9-6AA86A5CC466} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-05-29] (Google Inc -> Google LLC)
Task: {B28B71C1-1718-4E11-9AC4-2ED506D1E0C9} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-17] (Adobe Inc. -> Adobe Inc.)
Task: {C635DB5F-695A-47CA-A255-14BC58AFC748} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe [901048 2021-12-16] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C96C4C39-16BE-407E-BC18-7BF77669CD38} - System32\Tasks\Opera scheduled assistant Autoupdate 1582748983 => C:\Users\Hladk\AppData\Local\Programs\Opera\launcher.exe [2333904 2022-01-26] (Opera Software AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\Hladk\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {CDDA4ADD-A396-4673-AD06-0302F1F1DA74} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB"
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 86.49.5.221 86.49.5.222
Tcpip\..\Interfaces\{31f344b7-4480-4955-86df-c15fb8461db6}: [DhcpNameServer] 86.49.5.221 86.49.5.222
Edge:
=======
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge Profile: C:\Users\Hladk\AppData\Local\Microsoft\Edge\User Data\Default [2022-02-09]
FireFox:
========
FF DefaultProfile: 5i7y9o4g.default
FF ProfilePath: C:\Users\Hladk\AppData\Roaming\Mozilla\Firefox\Profiles\5i7y9o4g.default [2020-03-16]
FF ProfilePath: C:\Users\Hladk\AppData\Roaming\Mozilla\Firefox\Profiles\uzwrieov.default-release [2022-02-09]
FF Session Restore: Mozilla\Firefox\Profiles\uzwrieov.default-release -> is enabled.
FF Extension: (Linkificator) - C:\Users\Hladk\AppData\Roaming\Mozilla\Firefox\Profiles\uzwrieov.default-release\Extensions\linkificator@markapola.xpi [2020-04-18]
FF Extension: (Lightshot (Nástroje snímků)) - C:\Users\Hladk\AppData\Roaming\Mozilla\Firefox\Profiles\uzwrieov.default-release\Extensions\{394DCBA4-1F92-4f8e-8EC9-8D2CB90CB69B}.xpi [2021-08-12]
FF Extension: (Hlídač Shopů) - C:\Users\Hladk\AppData\Roaming\Mozilla\Firefox\Profiles\uzwrieov.default-release\Extensions\{d6f0f975-91a3-4d78-96f7-5f1859ad18b6}.xpi [2021-11-10]
FF Plugin: @videolan.org/vlc,version=3.0.10 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.14 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-12-24] (Adobe Inc. -> Adobe Systems Inc.)
Chrome:
=======
CHR Profile: C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default [2022-01-07]
CHR Extension: (Prezentace) - C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-05-29]
CHR Extension: (Dokumenty) - C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-05-29]
CHR Extension: (Disk Google) - C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-11-10]
CHR Extension: (YouTube) - C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-05-29]
CHR Extension: (Aliexpress SuperStar česky, Historie cen a koruny) - C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default\Extensions\ciclollkolafellcaolgccmfjldgpolo [2021-06-20]
CHR Extension: (Tabulky) - C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-05-29]
CHR Extension: (Dokumenty Google offline) - C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-01-01]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-06-20]
CHR Extension: (Gmail) - C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-11-10]
Opera:
=======
OPR Profile: C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable [2022-02-09]
OPR Notifications: Opera Stable -> hxxps://messages.google.com; hxxps://prekladyher.eu; hxxps://zdopravy.cz
OPR StartupUrls: Opera Stable -> "hxxp://www.idnes.cz/","hxxps://www.mujrozhlas. ... adiozurnal"
OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=o ... utEncoding}
OPR Extension: (Real-Debrid extension) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\cbhlgmcclhchabkenpacjhlcjpcceljf [2020-09-08]
OPR Extension: (Bitwarden – Bezplatný správce hesel) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\ccnckbpmaceehanjmeomladnmlffdjgn [2021-12-09]
OPR Extension: (Rich Hints Agent) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2022-01-27]
OPR Extension: (ČD Body - zitranavylet.cz) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\fedjfkcpbabccidicbfocikcpmohkpca [2019-06-09]
OPR Extension: (Notifier for Gmail™) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\flkijckbigolpahbkklilflpmkalfohc [2021-07-10]
OPR Extension: (I don't care about cookies) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\iambaeepkgdclnmbfdnnohkjjpdglbeo [2022-01-24]
OPR Extension: (Porovnání cen) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\jmhkgcmmgjblnkjkbgjggkaeifacakgi [2020-06-28]
OPR Extension: (Amazon Assistant Promotion) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2021-08-11]
OPR Extension: (Install Chrome Extensions) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\kipjbhgniklcnglfaldilecjomjaddfi [2019-12-13]
OPR Extension: (Clickable Links) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\mgamelhnfokapndfdodnmfiningckjia [2019-04-13]
OPR Extension: (Hlídač Shopů) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\plmlonggbfebcjelncogcnclagkmkikk [2021-12-08]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-17] (Adobe Inc. -> Adobe Inc.)
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4452456 2019-10-03] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S4 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784 2019-08-19] (Huawei Technologies Co., Ltd. -> ) [File not signed]
S3 ProtonVPN Service; C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPNService.exe [99136 2020-10-23] (ProtonVPN AG -> )
S3 ProtonVPN Update Service; C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPN.UpdateService.exe [61760 2020-10-23] (ProtonVPN AG -> )
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12912936 2021-11-16] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\NisSrv.exe [2876152 2021-12-16] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MsMpEng.exe [128360 2021-12-16] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvmd.inf_amd64_1408eaf9a25ed64f\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvmd.inf_amd64_1408eaf9a25ed64f\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0373652.inf_amd64_97d024528a122d1a\B372726\amdkmdag.sys [80538504 2021-11-12] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2019-10-03] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [59360 2019-10-03] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2019-08-19] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 ProtonVPNSplitTunnel; C:\Program Files (x86)\Proton Technologies\ProtonVPN\x64\Win10\ProtonVPN.SplitTunnelDriver.sys [31584 2020-08-19] (Microsoft Windows Hardware Compatibility Publisher -> Proton Technologies AG)
R3 tapprotonvpn; C:\WINDOWS\System32\drivers\tapprotonvpn.sys [49008 2020-08-19] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48536 2021-12-16] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [435432 2021-12-16] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [86248 2021-12-16] (Microsoft Windows -> Microsoft Corporation)
S3 HWiNFO_161; \??\C:\Users\Hladk\AppData\Local\Temp\HWiNFO64A_161.SYS [X] <==== ATTENTION
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-02-09 20:27 - 2022-02-09 20:27 - 001222144 _____ C:\Users\Hladk\Downloads\RSITx64.exe.opdownload
2022-02-09 20:27 - 2022-02-09 20:27 - 000000000 ____D C:\FRST
2022-02-09 20:26 - 2022-02-09 20:26 - 002311680 _____ (Farbar) C:\Users\Hladk\Downloads\FRST64.exe
2022-02-09 10:59 - 2022-02-09 11:34 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2022-02-09 09:21 - 2022-02-09 09:21 - 000003858 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onLogOn
2022-02-09 09:21 - 2022-02-09 09:21 - 000003416 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onTime
2022-02-09 09:13 - 2022-02-09 09:21 - 000001382 _____ C:\Users\Hladk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk
2022-02-09 09:13 - 2022-02-09 09:21 - 000001276 _____ C:\Users\Hladk\Desktop\ESET Online Scanner.lnk
2022-02-09 09:13 - 2022-02-09 09:13 - 015274968 _____ (ESET) C:\Users\Hladk\Downloads\esetonlinescanner.exe
2022-02-09 07:13 - 2022-02-09 07:13 - 000000000 ___HD C:\$WinREAgent
2022-02-07 22:08 - 2022-02-07 22:08 - 001785765 _____ C:\Users\Hladk\Downloads\nz - projekt fuze_klikpojisteni - stejnopis.pdf
2022-02-07 22:07 - 2022-02-07 22:07 - 000286641 _____ C:\Users\Hladk\Downloads\sc_konec (1).pdf
2022-02-07 22:06 - 2022-02-07 22:06 - 000286641 _____ C:\Users\Hladk\Downloads\sc_konec.pdf
2022-02-06 20:49 - 2022-02-06 20:49 - 000023298 _____ C:\Users\Hladk\Downloads\Prehled_navaznych_spoju_v_autobusove_doprave_platn.xlsx
2022-02-06 20:47 - 2022-02-06 20:47 - 000119582 _____ C:\Users\Hladk\Downloads\Garantovane_cekaci_doby_v_Pardubickem_kraji_s_plat.xlsx
2022-02-05 21:37 - 2022-02-05 22:35 - 1071988714 _____ C:\Users\Hladk\Downloads\The Little Drummer Girl s01e05 CZ.avi
2022-02-05 21:37 - 2022-02-05 22:27 - 930889416 _____ C:\Users\Hladk\Downloads\The Little Drummer Girl s01e04 CZ.avi
2022-02-05 21:16 - 2022-02-06 00:26 - 2096696388 _____ C:\Users\Hladk\Downloads\Vlkochodci [Wolfwalkers] (2020) CZ titulky HD 1080p.mkv
2022-02-03 18:48 - 2022-02-03 18:48 - 000474320 _____ C:\Users\Hladk\Downloads\cestovní.smlouva.pdf
2022-02-03 18:42 - 2022-02-03 18:42 - 000476214 _____ C:\Users\Hladk\Downloads\Hladky_Kooperativa_KOL_5045217782_smlouva_220203_171719.pdf
2022-02-03 17:36 - 2022-02-03 17:36 - 000207548 _____ C:\Users\Hladk\Downloads\Smlouva_DPS.pdf
2022-02-03 17:35 - 2022-02-03 17:35 - 000125177 _____ C:\Users\Hladk\Downloads\Smlouva (2).pdf
2022-02-03 17:31 - 2022-02-03 17:31 - 000198083 _____ C:\Users\Hladk\Downloads\Navrh_smlouvy.pdf
2022-02-03 17:30 - 2022-02-03 17:30 - 000055549 _____ C:\Users\Hladk\Desktop\Smlouva (1).pdf
2022-02-03 17:29 - 2022-02-03 17:29 - 000055549 _____ C:\Users\Hladk\Downloads\Smlouva (1).pdf
2022-02-03 17:26 - 2022-02-03 17:26 - 000549410 _____ C:\Users\Hladk\Downloads\Darovací smlouva - 2022000012 31.12.2022.pdf
2022-02-03 17:26 - 2022-02-03 17:26 - 000094674 _____ C:\Users\Hladk\Downloads\Navrh_na_vklad_ID_2022000012.pdf
2022-02-03 17:17 - 2022-02-03 17:17 - 001229514 _____ C:\Users\Hladk\Desktop\contract.jsf.pdf
2022-02-03 17:09 - 2022-02-03 17:09 - 000262675 _____ C:\Users\Hladk\Desktop\My bookings.pdf
2022-01-28 09:07 - 2022-01-28 09:07 - 000120508 _____ C:\Users\Hladk\Downloads\Čestné-prohlášení-o-nulových-příjmech-pdf-ke-stažení-online.pdf
2022-01-27 21:21 - 2022-01-27 21:21 - 000217553 _____ C:\Users\Hladk\Downloads\Detail_faktura_VS_7924000040_vystaveno_06012022_EIC_27ZG500Z0310599U (1).xlsx
2022-01-27 21:15 - 2022-01-27 21:15 - 000218966 _____ C:\Users\Hladk\Downloads\Vyuctovaci_faktura_bD_VS_7924000040_vystaveno_06012022.pdf
2022-01-27 21:15 - 2022-01-27 21:15 - 000217553 _____ C:\Users\Hladk\Downloads\Detail_faktura_VS_7924000040_vystaveno_06012022_EIC_27ZG500Z0310599U.xlsx
2022-01-26 11:31 - 2022-01-26 11:31 - 000000000 ____D C:\Users\Hladk\AppData\Local\FreeGrabApp
2022-01-26 11:11 - 2022-01-26 11:11 - 000000000 ____D C:\Users\Hladk\AppData\Roaming\FreeGrabApp
2022-01-26 11:11 - 2022-01-26 11:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeGrabApp
2022-01-26 11:11 - 2022-01-26 11:11 - 000000000 ____D C:\ProgramData\FreeGrabApp
2022-01-26 11:11 - 2022-01-26 11:11 - 000000000 ____D C:\Program Files (x86)\FreeGrabApp
2022-01-24 13:11 - 2022-01-24 13:11 - 000222185 _____ C:\Users\Hladk\Downloads\Výpověď k področní platbě.pdf
2022-01-24 10:58 - 2022-01-24 10:58 - 000107284 _____ C:\Users\Hladk\Downloads\hb_potvrzeni_uroky_267294-1_20220101_934 (1).pdf
2022-01-23 09:05 - 2022-01-23 12:13 - 3447458292 _____ C:\Users\Hladk\Downloads\The.Little.Drummer.Girl.01x03.1080i.HDTV.CZ.mkv
2022-01-22 20:16 - 2022-01-22 23:34 - 3621678942 _____ C:\Users\Hladk\Downloads\The.Little.Drummer.Girl.01x02.1080i.HDTV.CZ.mkv
2022-01-22 20:16 - 2022-01-22 23:26 - 3468664360 _____ C:\Users\Hladk\Downloads\The.Little.Drummer.Girl.01x01.1080i.HDTV.CZ.mkv
2022-01-21 08:42 - 2022-01-21 08:42 - 000050900 _____ C:\Users\Hladk\Desktop\potvrzeni-2021-nadace-via-o1icdnbcgl.pdf
2022-01-18 20:34 - 2022-01-18 20:34 - 000097438 _____ C:\Users\Hladk\Downloads\DS Hladký (1).pdf
2022-01-18 19:38 - 2022-01-18 19:38 - 000006029 _____ C:\Users\Hladk\Downloads\DNEDP4-7610253519-20220118-193751-1625384214-potvrzeni.p7s
2022-01-18 19:33 - 2022-01-18 19:33 - 000127069 _____ C:\Users\Hladk\Desktop\DPN CB.pdf
2022-01-18 19:28 - 2022-01-18 19:28 - 000109499 _____ C:\Users\Hladk\Desktop\DPN.pdf
2022-01-17 10:25 - 2022-01-17 10:25 - 000001323 _____ C:\Users\Hladk\Downloads\DNEDP4-7610253519-20220117-102516-pracovni.xml
2022-01-14 16:11 - 2022-01-14 16:11 - 000000000 ____D C:\Users\Hladk\AppData\Local\PCHealthCheck
2022-01-14 10:57 - 2022-01-14 10:57 - 000523776 _____ (curl, hxxps://curl.se/) C:\WINDOWS\system32\curl.exe
2022-01-14 10:57 - 2022-01-14 10:57 - 000464384 _____ (curl, hxxps://curl.se/) C:\WINDOWS\SysWOW64\curl.exe
2022-01-14 10:57 - 2022-01-14 10:57 - 000011797 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2022-01-13 14:18 - 2022-01-13 14:18 - 000155536 _____ C:\Users\Hladk\Downloads\document.pdf
2022-01-11 09:10 - 2022-01-11 09:10 - 003311528 _____ C:\Users\Hladk\Downloads\GdYNUNFPe9MB.pdf.pdf
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-02-09 20:18 - 2020-03-16 07:22 - 000000000 ____D C:\Users\Hladk\AppData\LocalLow\Mozilla
2022-02-09 20:13 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-02-09 19:56 - 2019-05-29 18:23 - 000000000 ____D C:\Program Files (x86)\Google
2022-02-09 15:46 - 2019-10-10 06:43 - 000000000 ____D C:\Users\Hladk\AppData\Local\ClassicShell
2022-02-09 14:52 - 2020-08-12 20:03 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-02-09 11:39 - 2020-08-12 20:11 - 001693136 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2022-02-09 11:39 - 2019-12-07 15:41 - 000716764 _____ C:\WINDOWS\system32\perfh005.dat
2022-02-09 11:39 - 2019-12-07 15:41 - 000144942 _____ C:\WINDOWS\system32\perfc005.dat
2022-02-09 11:39 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2022-02-09 11:32 - 2020-08-12 20:09 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-02-09 11:32 - 2020-08-12 20:03 - 000008192 ___SH C:\DumpStack.log.tmp
2022-02-09 11:32 - 2020-08-12 11:48 - 000000000 ____D C:\Users\Hladk
2022-02-09 11:32 - 2020-03-16 07:22 - 000000000 ____D C:\Program Files\Mozilla Firefox
2022-02-09 11:32 - 2020-03-16 07:22 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2022-02-09 11:32 - 2019-04-23 21:36 - 000000000 ____D C:\ProgramData\NVIDIA
2022-02-09 11:32 - 2019-04-22 18:58 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2022-02-09 10:59 - 2021-09-10 18:19 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2022-02-09 10:59 - 2020-03-16 07:22 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2022-02-09 10:59 - 2020-03-16 07:22 - 000000000 ____D C:\ProgramData\Mozilla
2022-02-08 18:58 - 2019-05-29 18:23 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-02-08 07:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-02-08 07:10 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-02-06 00:27 - 2019-12-07 10:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2022-02-04 17:14 - 2020-06-25 09:50 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-02-01 16:34 - 2020-08-12 20:09 - 000004206 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1555151344
2022-02-01 16:34 - 2019-04-13 11:29 - 000001409 _____ C:\Users\Hladk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2022-01-28 07:08 - 2020-08-12 20:09 - 000003584 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-01-28 07:08 - 2020-08-12 20:09 - 000003460 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-01-25 08:16 - 2020-12-16 11:14 - 000000000 ____D C:\Users\Hladk\Desktop\Dokumenty Táta
2022-01-22 12:54 - 2020-08-12 20:03 - 000258176 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2022-01-22 06:56 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2022-01-22 06:56 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2022-01-22 06:56 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2022-01-22 06:56 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup
2022-01-22 06:56 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2022-01-22 06:56 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2022-01-22 06:56 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2022-01-22 06:00 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-01-21 21:51 - 2020-08-12 20:09 - 000003474 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2022-01-21 21:51 - 2020-08-12 20:09 - 000003350 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2022-01-17 10:43 - 2021-01-07 08:50 - 000000000 ____D C:\Users\Hladk\AppData\Roaming\.dsgui
2022-01-17 09:45 - 2019-12-28 19:21 - 000000000 ____D C:\Users\Hladk\AppData\Local\cache
2022-01-15 06:14 - 2019-05-13 19:57 - 000000000 ____D C:\Users\Hladk\AppData\Local\Adobe
2022-01-14 16:11 - 2021-06-24 19:51 - 000001349 _____ C:\Users\Hladk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk
2022-01-14 10:59 - 2020-08-12 20:09 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2022-01-14 10:58 - 2019-05-13 19:59 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2022-01-14 10:57 - 2019-04-13 10:54 - 000413786 __RSH C:\bootmgr
2022-01-14 10:46 - 2019-04-13 13:28 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-01-14 10:45 - 2019-04-13 13:28 - 145765912 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2022-01-11 11:58 - 2019-04-28 06:01 - 000000000 ____D C:\Users\Hladk\AppData\Roaming\vlc
==================== Files in the root of some directories ========
2019-04-30 18:32 - 2018-10-25 21:00 - 000006026 _____ () C:\Program Files (x86)\current.btskin
2019-04-30 18:37 - 2019-04-30 18:43 - 000003754 _____ () C:\Program Files (x86)\dht.dat
2019-04-30 18:37 - 2019-04-30 18:37 - 000003676 _____ () C:\Program Files (x86)\dht.dat.old
2019-04-30 18:43 - 2019-04-30 18:37 - 000000058 _____ () C:\Program Files (x86)\resume.20190430.194316.dat
2019-04-30 18:37 - 2019-04-30 18:43 - 000000058 _____ () C:\Program Files (x86)\resume.dat
2019-04-30 18:37 - 2019-04-30 18:37 - 000000058 _____ () C:\Program Files (x86)\resume.dat.old
2019-04-30 18:37 - 2019-04-30 18:43 - 000000099 _____ () C:\Program Files (x86)\rss.dat
2019-04-30 18:37 - 2019-04-30 18:37 - 000000099 _____ () C:\Program Files (x86)\rss.dat.old
2019-04-30 18:32 - 2019-04-30 18:43 - 000005623 _____ () C:\Program Files (x86)\settings.dat.old
2019-04-30 18:32 - 2018-10-25 21:00 - 000027702 _____ () C:\Program Files (x86)\toolbar.bmp
2019-04-30 18:31 - 2018-08-28 18:30 - 000294384 _____ (emc) C:\Program Files (x86)\uninstall.exe
2019-04-30 18:32 - 2018-10-25 21:00 - 000189334 _____ () C:\Program Files (x86)\utorrent-221-25534.chm
2019-04-30 18:32 - 2018-10-25 21:00 - 000039237 _____ () C:\Program Files (x86)\utorrent.lng
2019-04-30 18:32 - 2018-10-25 21:00 - 000000049 _____ () C:\Program Files (x86)\utorrent.url
2019-04-30 18:32 - 2018-10-25 21:00 - 000184498 _____ () C:\Program Files (x86)\webui.zip
2021-12-25 21:03 - 2021-12-25 21:03 - 000003584 _____ () C:\Users\Hladk\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 05-02-2022
Ran by Hladk (09-02-2022 20:30:37)
Running from C:\Users\Hladk\AppData\Local\Temp\scoped_dir8220_678203837
Microsoft Windows 10 Home Version 21H1 19043.1466 (X64) (2020-08-12 19:09:37)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-1001266131-2733610755-3133150411-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1001266131-2733610755-3133150411-503 - Limited - Disabled)
Guest (S-1-5-21-1001266131-2733610755-3133150411-501 - Limited - Disabled)
Hladk (S-1-5-21-1001266131-2733610755-3133150411-1001 - Administrator - Enabled) => C:\Users\Hladk
WDAGUtilityAccount (S-1-5-21-1001266131-2733610755-3133150411-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Disabled - Out of date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 19.00 (x64) (HKLM\...\7-Zip) (Version: 19.00 - Igor Pavlov)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 21.011.20039 - Adobe Systems Incorporated)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Bullzip PDF Printer 11.9.0.2735 (HKLM\...\Bullzip PDF Printer_is1) (Version: 11.9.0.2735 - Bullzip)
Classic Shell (HKLM\...\{CABCE573-0A86-42FA-A52A-C7EA61D5BE08}) (Version: 4.3.1 - IvoSoft)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.11.0.0948 - Disc Soft Ltd)
Datovka (HKLM-x32\...\Datovka) (Version: 4.15.6 - CZ.NIC, z. s. p. o.)
Divinity Original Sin 2 MULTi5 (HKLM-x32\...\Divinity Original Sin 2 MULTi5_is1) (Version: - )
Divinity: Original Sin 2 (HKLM-x32\...\1584823040_is1) (Version: 3.6.37.7694_kr3 - GOG.com)
EasePaint Watermark Remover 1.03 (HKLM-x32\...\EasePaint Watermark Remover) (Version: 1.03 - hxxp://www.easepaint.com/)
EMCO Ping Monitor Free 6.3 (HKLM\...\{71897DBE-7D98-47FC-88E7-73246EDB829E}) (Version: 6.3.0.5014 - EMCO Software)
Free Netflix Download (HKLM-x32\...\Free Netflix Download_is1) (Version: 5.0.35.1202 - FreeGrabApp LLC)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 98.0.4758.82 - Google LLC)
Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment)
Hearthstone Deck Tracker (HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\HearthstoneDeckTracker) (Version: 1.14.16 - HearthSim)
HiSuite (HKLM-x32\...\Hi Suite) (Version: 9.1.0.309 - )
IrfanView 4.54 (64-bit) (HKLM\...\IrfanView64) (Version: 4.54 - Irfan Skiljan)
JDownloader 2 (HKLM-x32\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
Kontrola stavu osobního počítače s Windows (HKLM\...\{E496AFB7-CB04-46CF-8FBB-5D665BC8811B}) (Version: 3.3.2110.22002 - Microsoft Corporation)
Logitech Options (HKLM\...\LogiOptions) (Version: 7.12.43 - Logitech)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 98.0.1108.43 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{29B15818-E79F-4AB0-8938-9410C807AD76}) (Version: 2.84.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Mozilla Firefox (x64 cs) (HKLM\...\Mozilla Firefox 97.0 (x64 cs)) (Version: 97.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 74.0 - Mozilla)
NVIDIA Ovladače grafiky 457.51 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 457.51 - NVIDIA Corporation)
Opera Stable 83.0.4254.27 (HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\Opera 83.0.4254.27) (Version: 83.0.4254.27 - Opera Software)
ProtonVPN (HKLM-x32\...\{D19979C9-8B5B-4500-AA6A-EF331F658074}) (Version: 1.17.5 - Proton Technologies AG) Hidden
ProtonVPN (HKLM-x32\...\ProtonVPN 1.17.5) (Version: 1.17.5 - Proton Technologies AG)
ProtonVPNTap (HKLM-x32\...\{BCB82CD9-F514-4F93-A6D9-F898494DC927}) (Version: 1.1.0 - Proton Technologies AG)
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.24.5 - TeamViewer)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.22a - Ghisler Software GmbH)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.16 - VideoLAN)
Packages:
=========
Club Vegas -> C:\Program Files\WindowsApps\BagelcodeInc.47921C88A920C_120.0.21.0_x64__5dvc9f3b38e20 [2022-01-29] (Bagelcode)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2021-10-24] (Microsoft Corporation)
IrfanView64 -> C:\Program Files\WindowsApps\30067IrfanSkiljanIrfanVie.IrfanView64_4.5.9.0_x64__psgec73n2n7ne [2021-12-18] (Irfan Skiljan (IrfanView))
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-04-13] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-04-13] (Microsoft Corporation) [MS Ad]
Microsoft Midi gm.dls -> C:\Program Files\WindowsApps\Microsoft.Midi.GmDls_1.0.1.0_neutral__8wekyb3d8bbwe [2019-04-27] (Microsoft Platform Extensions)
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.12.1050.0_x64__8wekyb3d8bbwe [2022-01-13] (Microsoft Studios) [MS Ad]
Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.97.752.0_x64__mcm4njqhnhss8 [2022-01-07] (Netflix, Inc.)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.962.0_x64__56jybvy8sckqj [2022-01-20] (NVIDIA Corp.)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.178.765.0_x86__zpdnekdrzrea0 [2022-02-05] (Spotify AB) [Startup Task]
WPS Office for Free -> C:\Program Files\WindowsApps\ZhuhaiKingsoftOfficeSoftw.WPSOfficeforFree_10.2.7636.0_x86__924xes6e8q1tw [2019-04-27] (Zhuhai Kingsoft Office Software Co.,Ltd)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2017-08-13] (Ivaylo Beltchev -> IvoSoft) [File not signed]
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2017-08-13] (Ivaylo Beltchev -> IvoSoft) [File not signed]
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2019-10-03] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2019-10-03] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\WINDOWS\System32\atiacm64.dll [2021-11-12] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvmd.inf_amd64_1408eaf9a25ed64f\nvshext.dll [2020-12-02] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [StartMenuExt] -> {E595F05F-903F-4318-8B0A-7F633B520D2B} => C:\WINDOWS\system32\StartMenuHelper64.dll [2017-08-13] (Ivaylo Beltchev -> IvoSoft) [File not signed]
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
==================== Loaded Modules (Whitelisted) =============
2022-01-29 18:00 - 2022-01-29 18:00 - 005851136 _____ () [File not signed] C:\Program Files\WindowsApps\BagelcodeInc.47921C88A920C_120.0.21.0_x64__5dvc9f3b38e20\BagelcodeInc.47921C88A920C.dll
2022-01-29 18:00 - 2022-01-29 18:00 - 051404288 _____ () [File not signed] C:\Program Files\WindowsApps\BagelcodeInc.47921C88A920C_120.0.21.0_x64__5dvc9f3b38e20\GameAssembly.dll
2019-04-25 18:29 - 2019-02-15 16:13 - 000221696 _____ (Bullzip) [File not signed] C:\Program Files\Common Files\Bullzip\PDF Printer\Ports\BULLZIP\bzpdf.dll
2017-08-13 07:49 - 2017-08-13 07:49 - 003664184 _____ (Ivaylo Beltchev -> IvoSoft) [File not signed] C:\Program Files\Classic Shell\ClassicStartMenuDLL.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) ==========
BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2017-08-13] (Ivaylo Beltchev -> IvoSoft) [File not signed]
BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2017-08-13] (Ivaylo Beltchev -> IvoSoft) [File not signed]
BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2017-08-13] (Ivaylo Beltchev -> IvoSoft) [File not signed]
BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2017-08-13] (Ivaylo Beltchev -> IvoSoft) [File not signed]
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2017-08-13] (Ivaylo Beltchev -> IvoSoft) [File not signed]
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2017-08-13] (Ivaylo Beltchev -> IvoSoft) [File not signed]
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\localhost -> localhost
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2018-09-15 08:31 - 2019-12-15 09:24 - 000000027 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1 localhost
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 86.49.5.221 - 86.49.5.222
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
MSCONFIG\Services: AdobeARMservice => 2
MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3
MSCONFIG\Services: AMD External Events Utility => 2
MSCONFIG\Services: Disc Soft Lite Bus Service => 3
MSCONFIG\Services: GoogleChromeElevationService => 3
MSCONFIG\Services: gupdate => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: HuaweiHiSuiteService64.exe => 2
MSCONFIG\Services: NVDisplay.ContainerLocalSystem => 2
MSCONFIG\Services: NvTelemetryContainer => 2
MSCONFIG\Services: TeamViewer => 2
HKLM\...\StartupApproved\Run: => "SecurityHealth"
HKLM\...\StartupApproved\Run: => "LogiOptions"
HKLM\...\StartupApproved\Run: => "Logitech Download Assistant"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\StartupApproved\Run: => "Zoner Photo Studio Autoupdate"
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\StartupApproved\Run: => "utweb"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [UDP Query User{AEC13BEE-7FCE-4619-8C27-63ADE0F1C9B9}C:\users\hladk\appdata\local\programs\opera\70.0.3728.95\opera.exe] => (Block) C:\users\hladk\appdata\local\programs\opera\70.0.3728.95\opera.exe => No File
FirewallRules: [TCP Query User{3FB1CB04-AB40-4BCF-9E10-7A0B95FF2AE0}C:\users\hladk\appdata\local\programs\opera\70.0.3728.95\opera.exe] => (Block) C:\users\hladk\appdata\local\programs\opera\70.0.3728.95\opera.exe => No File
FirewallRules: [UDP Query User{2BD3D3B0-AF4A-4AB1-A736-6C279A1B97C9}C:\users\hladk\appdata\local\programs\opera\70.0.3728.71\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\70.0.3728.71\opera.exe => No File
FirewallRules: [TCP Query User{A6221505-6CF3-402E-A921-B701F5E4E82E}C:\users\hladk\appdata\local\programs\opera\70.0.3728.71\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\70.0.3728.71\opera.exe => No File
FirewallRules: [UDP Query User{36AAD69A-19FF-4610-87A5-24C373B8D06C}C:\users\hladk\appdata\local\programs\opera\69.0.3686.77\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\69.0.3686.77\opera.exe => No File
FirewallRules: [TCP Query User{6EA2B64B-5C54-447B-ACDA-3C716255F518}C:\users\hladk\appdata\local\programs\opera\69.0.3686.77\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\69.0.3686.77\opera.exe => No File
FirewallRules: [UDP Query User{FC90B73D-B5ED-444F-8AC2-39D0D7C4E383}C:\users\hladk\appdata\local\programs\opera\68.0.3618.173\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\68.0.3618.173\opera.exe => No File
FirewallRules: [TCP Query User{7F387485-89C1-4742-A0BE-2278198C43D8}C:\users\hladk\appdata\local\programs\opera\68.0.3618.173\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\68.0.3618.173\opera.exe => No File
FirewallRules: [UDP Query User{80ADBB38-C3A9-4F4B-A64D-20A7F1CB9549}C:\users\hladk\appdata\local\programs\opera\68.0.3618.125\opera.exe] => (Block) C:\users\hladk\appdata\local\programs\opera\68.0.3618.125\opera.exe => No File
FirewallRules: [TCP Query User{72E9A4F1-0F1E-4157-9810-B6A90D105C90}C:\users\hladk\appdata\local\programs\opera\68.0.3618.125\opera.exe] => (Block) C:\users\hladk\appdata\local\programs\opera\68.0.3618.125\opera.exe => No File
FirewallRules: [UDP Query User{F3189B20-1311-43E4-A00A-8B90E16FFDF8}C:\users\hladk\appdata\local\programs\opera\68.0.3618.125\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\68.0.3618.125\opera.exe => No File
FirewallRules: [TCP Query User{C0CEC372-FABE-4965-AB99-659649FCA6D3}C:\users\hladk\appdata\local\programs\opera\68.0.3618.125\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\68.0.3618.125\opera.exe => No File
FirewallRules: [UDP Query User{B5C534CA-DD90-4F00-A9DC-7AA1D67F503D}C:\users\hladk\appdata\local\programs\opera\68.0.3618.104\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\68.0.3618.104\opera.exe => No File
FirewallRules: [TCP Query User{21DF427C-07AB-4687-B000-215151C9D8D6}C:\users\hladk\appdata\local\programs\opera\68.0.3618.104\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\68.0.3618.104\opera.exe => No File
FirewallRules: [UDP Query User{908618FE-CC52-4A9A-8CFD-B0D4FD1BFFD9}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{4B00823D-32CE-46E5-B498-E26DE4638092}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{4442A42E-65E3-4716-952B-475688E868FF}C:\users\hladk\appdata\local\programs\opera\68.0.3618.63\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\68.0.3618.63\opera.exe => No File
FirewallRules: [TCP Query User{92BFC1D3-BA0B-41E8-A911-90F9EC26A79E}C:\users\hladk\appdata\local\programs\opera\68.0.3618.63\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\68.0.3618.63\opera.exe => No File
FirewallRules: [UDP Query User{9253AB2C-7D13-4D93-BCF9-3415F7B3B48F}C:\program files\nová složka\bin\javaw.exe] => (Allow) C:\program files\nová složka\bin\javaw.exe
FirewallRules: [TCP Query User{48E0F537-E9AC-43DC-8170-0C64992FAFA8}C:\program files\nová složka\bin\javaw.exe] => (Allow) C:\program files\nová složka\bin\javaw.exe
FirewallRules: [UDP Query User{D6FAED8E-7A2C-4E93-9FEB-70FA3FC41A0E}C:\users\hladk\appdata\local\programs\opera\67.0.3575.137\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\67.0.3575.137\opera.exe => No File
FirewallRules: [TCP Query User{A3D7CEDF-5096-422A-9F28-995975DE50C1}C:\users\hladk\appdata\local\programs\opera\67.0.3575.137\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\67.0.3575.137\opera.exe => No File
FirewallRules: [UDP Query User{6BF4A7B2-BC35-4450-A564-9AB82F22B2A0}C:\users\hladk\appdata\local\programs\opera\67.0.3575.115\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\67.0.3575.115\opera.exe => No File
FirewallRules: [TCP Query User{13E0D06C-162C-4AAA-9C43-0E0C08E7B523}C:\users\hladk\appdata\local\programs\opera\67.0.3575.115\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\67.0.3575.115\opera.exe => No File
FirewallRules: [UDP Query User{235AE8F5-02D1-4521-921A-892F1E1B71CB}C:\users\hladk\appdata\local\programs\opera\67.0.3575.97\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\67.0.3575.97\opera.exe => No File
FirewallRules: [TCP Query User{DF7B7697-6433-4D50-85C2-827A1636BF1D}C:\users\hladk\appdata\local\programs\opera\67.0.3575.97\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\67.0.3575.97\opera.exe => No File
FirewallRules: [UDP Query User{F7C94FFB-E06D-43EB-90E2-4F863D0F45C5}C:\users\hladk\appdata\local\programs\opera\67.0.3575.79\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\67.0.3575.79\opera.exe => No File
FirewallRules: [TCP Query User{915C8622-F87F-49F1-BE74-3C4E5A70741D}C:\users\hladk\appdata\local\programs\opera\67.0.3575.79\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\67.0.3575.79\opera.exe => No File
FirewallRules: [{5C43BB95-AC66-4BC4-8CE4-83D7A4E57F08}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{1C1D8ACE-A4EB-43AC-9609-37A25BA1EC20}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{0D61D0BF-830C-485C-9EFA-ACFBD65BF807}C:\users\hladk\appdata\local\programs\opera\67.0.3575.53\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\67.0.3575.53\opera.exe => No File
FirewallRules: [TCP Query User{CFC8FE14-DD0E-45DB-9177-89804D9845CA}C:\users\hladk\appdata\local\programs\opera\67.0.3575.53\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\67.0.3575.53\opera.exe => No File
FirewallRules: [UDP Query User{154925E9-895E-4064-8E02-F855198144FF}C:\users\hladk\appdata\local\programs\opera\66.0.3515.115\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\66.0.3515.115\opera.exe => No File
FirewallRules: [TCP Query User{71B9F9AD-9D16-4D2C-9D78-A0C614D4042E}C:\users\hladk\appdata\local\programs\opera\66.0.3515.115\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\66.0.3515.115\opera.exe => No File
FirewallRules: [UDP Query User{6097984C-D97B-492C-9A07-F4B8A52A21BF}C:\users\hladk\appdata\local\programs\opera\66.0.3515.103\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\66.0.3515.103\opera.exe => No File
FirewallRules: [TCP Query User{C4CC4BE6-CA68-4AEE-BF64-61F0710225F5}C:\users\hladk\appdata\local\programs\opera\66.0.3515.103\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\66.0.3515.103\opera.exe => No File
FirewallRules: [UDP Query User{CD9399B9-240E-4624-84FF-A76C4BF50A94}C:\users\hladk\appdata\local\programs\opera\66.0.3515.72\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\66.0.3515.72\opera.exe => No File
FirewallRules: [TCP Query User{58534CAB-DBC9-4018-B5EA-AE3AEDB8B716}C:\users\hladk\appdata\local\programs\opera\66.0.3515.72\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\66.0.3515.72\opera.exe => No File
FirewallRules: [UDP Query User{A03B30D3-8138-4755-A246-04124C3CECA7}C:\users\hladk\appdata\local\programs\opera\66.0.3515.44\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\66.0.3515.44\opera.exe => No File
FirewallRules: [TCP Query User{7E18BFFB-ED71-482C-BF31-09899779D2F4}C:\users\hladk\appdata\local\programs\opera\66.0.3515.44\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\66.0.3515.44\opera.exe => No File
FirewallRules: [UDP Query User{7C1683A2-CBE1-435E-A8F0-2B410EC56B1A}C:\gog games\divinity - original sin 2\defed\bin\eocapp.exe] => (Allow) C:\gog games\divinity - original sin 2\defed\bin\eocapp.exe (Larian Studios -> )
FirewallRules: [TCP Query User{555844A4-C5B2-4F24-A023-7E8CB235EBE3}C:\gog games\divinity - original sin 2\defed\bin\eocapp.exe] => (Allow) C:\gog games\divinity - original sin 2\defed\bin\eocapp.exe (Larian Studios -> )
FirewallRules: [UDP Query User{8DD0C2F1-88B3-46E6-A253-45A1061A6497}C:\program files\nová složka\bin\javaw.exe] => (Allow) C:\program files\nová složka\bin\javaw.exe
FirewallRules: [TCP Query User{651A057B-734B-4FCF-AC7E-79516B6A06AC}C:\program files\nová složka\bin\javaw.exe] => (Allow) C:\program files\nová složka\bin\javaw.exe
FirewallRules: [UDP Query User{A2A60AB5-8E13-443B-A46D-3C33AD6FB706}C:\users\hladk\appdata\local\programs\opera\65.0.3467.78\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\65.0.3467.78\opera.exe => No File
FirewallRules: [TCP Query User{CD907C87-0A34-4854-A3D2-A7CBB4F1D180}C:\users\hladk\appdata\local\programs\opera\65.0.3467.78\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\65.0.3467.78\opera.exe => No File
FirewallRules: [UDP Query User{01FE5073-FD07-4C54-ABB4-9A2800D99785}C:\users\hladk\appdata\local\programs\opera\65.0.3467.72\opera.exe] => (Block) C:\users\hladk\appdata\local\programs\opera\65.0.3467.72\opera.exe => No File
FirewallRules: [TCP Query User{0CE15A22-6C01-425A-8D7D-572C42ABF0BC}C:\users\hladk\appdata\local\programs\opera\65.0.3467.72\opera.exe] => (Block) C:\users\hladk\appdata\local\programs\opera\65.0.3467.72\opera.exe => No File
FirewallRules: [UDP Query User{E7EF39A2-3D9F-43E8-B981-99566F76651B}C:\gog games\divinity - original sin 2\classic\eocapp.exe] => (Allow) C:\gog games\divinity - original sin 2\classic\eocapp.exe (Larian Studios -> )
FirewallRules: [TCP Query User{56F37981-C9BC-4AA1-AE8B-F9CAF543E069}C:\gog games\divinity - original sin 2\classic\eocapp.exe] => (Allow) C:\gog games\divinity - original sin 2\classic\eocapp.exe (Larian Studios -> )
FirewallRules: [UDP Query User{17521C2F-AD1B-461C-9C1B-F8D501E52505}C:\users\hladk\appdata\local\programs\opera\65.0.3467.62\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\65.0.3467.62\opera.exe => No File
FirewallRules: [TCP Query User{C598D783-777A-4EBF-85C7-646BF25CAE1E}C:\users\hladk\appdata\local\programs\opera\65.0.3467.62\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\65.0.3467.62\opera.exe => No File
FirewallRules: [UDP Query User{83FFB050-CD4F-4511-9E9C-7C7189F928CC}C:\users\hladk\appdata\local\programs\opera\65.0.3467.48\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\65.0.3467.48\opera.exe => No File
FirewallRules: [TCP Query User{648ABAE2-65AE-467C-9F48-81304EB5A9F7}C:\users\hladk\appdata\local\programs\opera\65.0.3467.48\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\65.0.3467.48\opera.exe => No File
FirewallRules: [UDP Query User{797FE114-DC6F-449F-8BA2-305AE3CE12A5}C:\program files\java\jre1.8.0_231\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_231\bin\javaw.exe => No File
FirewallRules: [TCP Query User{AEF95643-E1DD-4F0E-8E71-2FFFBC253EA0}C:\program files\java\jre1.8.0_231\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_231\bin\javaw.exe => No File
FirewallRules: [UDP Query User{EDC27545-5BF3-4D0E-BF64-7A2E88E38ADD}C:\users\hladk\downloads\divinity original sin 2 multi5\bin\eocapp.exe] => (Allow) C:\users\hladk\downloads\divinity original sin 2 multi5\bin\eocapp.exe (Larian Studios -> )
FirewallRules: [TCP Query User{A279A69B-E698-4EC3-B9E4-9BBE1EAF73D9}C:\users\hladk\downloads\divinity original sin 2 multi5\bin\eocapp.exe] => (Allow) C:\users\hladk\downloads\divinity original sin 2 multi5\bin\eocapp.exe (Larian Studios -> )
FirewallRules: [{2BC1F1A8-B422-456C-9F41-F2341EE9EA85}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [{77F15D8E-B478-4C82-AA6F-8C4CCBF1ABB1}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [TCP Query User{42FFCE23-8ABF-42CB-8EED-BFE8B47302A3}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe (Blizzard Entertainment, Inc. -> )
FirewallRules: [UDP Query User{8870A970-7BB9-49CC-BA25-BC47DCB5C2C1}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe (Blizzard Entertainment, Inc. -> )
FirewallRules: [TCP Query User{5EF78676-80DB-487C-9757-1562BF45A950}C:\program files\java\jre1.8.0_201\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_201\bin\javaw.exe => No File
FirewallRules: [UDP Query User{407893BF-943B-4F17-B04F-00F258680FB1}C:\program files\java\jre1.8.0_201\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_201\bin\javaw.exe => No File
FirewallRules: [{D2247CA7-CF3D-4B68-A6DF-B895CA833728}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{A5DC32B9-D0EB-4CCD-88F0-C7668B67E69A}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{537ECD41-1A17-4530-A8B9-8BC143CC2445}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{33AD07A3-9CDD-4FE2-9547-1380D9B44B1E}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [TCP Query User{35B12E08-13D8-4621-901C-A47EE7E42F6B}C:\program files\java\jre1.8.0_211\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_211\bin\javaw.exe => No File
FirewallRules: [UDP Query User{A7E9158F-D429-4B37-97C8-8BDAF0E08F8C}C:\program files\java\jre1.8.0_211\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_211\bin\javaw.exe => No File
FirewallRules: [{5B68CDC7-3BFF-40ED-8502-E91BB11F713B}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe => No File
FirewallRules: [{5233E68C-3582-46D9-A6E1-40B09C49F909}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe => No File
FirewallRules: [TCP Query User{F42F9F03-7347-4E1A-AEC6-FFCD080CCFD4}C:\program files (x86)\utorrent.exe] => (Allow) C:\program files (x86)\utorrent.exe => No File
FirewallRules: [UDP Query User{D9197196-9980-453A-AFB2-67F94269D10D}C:\program files (x86)\utorrent.exe] => (Allow) C:\program files (x86)\utorrent.exe => No File
FirewallRules: [{2DE037A7-01D4-45E5-A1A4-DF76F111F791}] => (Allow) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.EXE (Logitech Inc -> Logitech, Inc.)
FirewallRules: [TCP Query User{2D79C30D-BB7F-4D34-BF86-D9682FD6E80F}C:\program files\java\jre1.8.0_221\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_221\bin\javaw.exe => No File
FirewallRules: [UDP Query User{849A800C-FADA-4368-B463-4CA0AF49AC97}C:\program files\java\jre1.8.0_221\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_221\bin\javaw.exe => No File
FirewallRules: [TCP Query User{7C138555-9143-4D6A-9DC7-90E1DB5940D9}C:\users\hladk\appdata\local\programs\opera\70.0.3728.106\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\70.0.3728.106\opera.exe => No File
FirewallRules: [UDP Query User{EF545FAE-C620-4053-A16C-7277E7506F0D}C:\users\hladk\appdata\local\programs\opera\70.0.3728.106\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\70.0.3728.106\opera.exe => No File
FirewallRules: [TCP Query User{5562B3B0-3416-46BE-A488-08E2362044AE}C:\users\hladk\appdata\local\programs\opera\70.0.3728.154\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\70.0.3728.154\opera.exe => No File
FirewallRules: [UDP Query User{5ED12D5F-3182-4775-B489-FEE713D9E0F6}C:\users\hladk\appdata\local\programs\opera\70.0.3728.154\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\70.0.3728.154\opera.exe => No File
FirewallRules: [TCP Query User{DCB0923E-31E8-4BFA-9418-7AF1BCF76186}C:\users\hladk\appdata\local\programs\opera\70.0.3728.178\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\70.0.3728.178\opera.exe => No File
FirewallRules: [UDP Query User{909145B2-3AA4-4D3E-A4D2-77C102322219}C:\users\hladk\appdata\local\programs\opera\70.0.3728.178\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\70.0.3728.178\opera.exe => No File
FirewallRules: [TCP Query User{7E00704A-A48F-4DB4-841B-26DE584CBD2E}C:\users\hladk\appdata\local\programs\opera\70.0.3728.189\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\70.0.3728.189\opera.exe => No File
FirewallRules: [UDP Query User{C05BA804-3886-4637-A912-0240FA199996}C:\users\hladk\appdata\local\programs\opera\70.0.3728.189\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\70.0.3728.189\opera.exe => No File
FirewallRules: [TCP Query User{558FF623-ED78-460F-B7A4-BDE2D4B843C4}C:\users\hladk\appdata\local\programs\opera\71.0.3770.198\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\71.0.3770.198\opera.exe => No File
FirewallRules: [UDP Query User{D88D9356-1CE5-43B8-AFA6-A7D568A51AE9}C:\users\hladk\appdata\local\programs\opera\71.0.3770.198\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\71.0.3770.198\opera.exe => No File
FirewallRules: [TCP Query User{B9361DCB-5714-45DB-BA31-9F18B970B4B7}C:\users\hladk\appdata\local\programs\opera\71.0.3770.228\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\71.0.3770.228\opera.exe => No File
FirewallRules: [UDP Query User{78994A18-CCA1-4C2B-8DD1-6005D5AF8DBC}C:\users\hladk\appdata\local\programs\opera\71.0.3770.228\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\71.0.3770.228\opera.exe => No File
FirewallRules: [TCP Query User{E1928307-104F-43E5-BB36-E6FB6947A5F8}C:\users\hladk\appdata\local\programs\opera\71.0.3770.271\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\71.0.3770.271\opera.exe => No File
FirewallRules: [UDP Query User{EFE5D62E-DD74-4B99-9DEC-C16ED4E1F38B}C:\users\hladk\appdata\local\programs\opera\71.0.3770.271\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\71.0.3770.271\opera.exe => No File
FirewallRules: [TCP Query User{838ABB31-B739-4952-91AE-A938FF0F6B38}C:\users\hladk\appdata\local\programs\opera\71.0.3770.284\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\71.0.3770.284\opera.exe => No File
FirewallRules: [UDP Query User{A31A733E-60D2-403C-83E8-96BC19EB3E43}C:\users\hladk\appdata\local\programs\opera\71.0.3770.284\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\71.0.3770.284\opera.exe => No File
FirewallRules: [TCP Query User{74293A31-40F4-4010-B82E-DB28630FC1F7}C:\users\hladk\appdata\local\programs\opera\72.0.3815.186\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\72.0.3815.186\opera.exe => No File
FirewallRules: [UDP Query User{6DCD16B6-DA09-43A4-9CB0-EEBC155AC81E}C:\users\hladk\appdata\local\programs\opera\72.0.3815.186\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\72.0.3815.186\opera.exe => No File
FirewallRules: [TCP Query User{41BC202C-3896-4D89-9832-35AF68DBEFE1}C:\users\hladk\appdata\local\programs\opera\72.0.3815.320\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\72.0.3815.320\opera.exe => No File
FirewallRules: [UDP Query User{E20A8878-3EFA-4245-B149-5BA50A4D4CF1}C:\users\hladk\appdata\local\programs\opera\72.0.3815.320\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\72.0.3815.320\opera.exe => No File
FirewallRules: [TCP Query User{747B9B7E-BABD-48E6-B310-BF3AD6ABAA72}C:\users\hladk\appdata\local\programs\opera\72.0.3815.400\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\72.0.3815.400\opera.exe => No File
FirewallRules: [UDP Query User{6B5F7A21-AD66-4E4A-8FD7-C0F808642F7E}C:\users\hladk\appdata\local\programs\opera\72.0.3815.400\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\72.0.3815.400\opera.exe => No File
FirewallRules: [TCP Query User{70183EC0-9735-40A4-83BA-B65D9A44FECB}C:\users\hladk\appdata\local\programs\opera\73.0.3856.284\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\73.0.3856.284\opera.exe => No File
FirewallRules: [UDP Query User{80B2B39A-41A2-4DB4-B2CE-3494DF3337E4}C:\users\hladk\appdata\local\programs\opera\73.0.3856.284\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\73.0.3856.284\opera.exe => No File
FirewallRules: [TCP Query User{8E40A96E-88A5-4260-84C7-6194532CC0BF}C:\users\hladk\appdata\local\programs\opera\73.0.3856.329\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\73.0.3856.329\opera.exe => No File
FirewallRules: [UDP Query User{1D200F28-6EF9-4DFF-9CA2-C405E2846E04}C:\users\hladk\appdata\local\programs\opera\73.0.3856.329\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\73.0.3856.329\opera.exe => No File
FirewallRules: [TCP Query User{5F770C7C-7222-4E45-A754-D0E4C74E8552}C:\users\hladk\appdata\local\programs\opera\73.0.3856.344\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\73.0.3856.344\opera.exe => No File
FirewallRules: [UDP Query User{02E9DE4D-2227-4777-A894-B9ECC55E71ED}C:\users\hladk\appdata\local\programs\opera\73.0.3856.344\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\73.0.3856.344\opera.exe => No File
FirewallRules: [TCP Query User{A63A85B0-EE53-45AE-A505-6097DDA77A34}C:\users\hladk\appdata\local\programs\opera\74.0.3911.107\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\74.0.3911.107\opera.exe => No File
FirewallRules: [UDP Query User{6F631C14-2AFD-4718-A64B-46E0AFB24FC9}C:\users\hladk\appdata\local\programs\opera\74.0.3911.107\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\74.0.3911.107\opera.exe => No File
FirewallRules: [TCP Query User{9183235A-BC47-4373-86E5-81535948CCBB}C:\users\hladk\appdata\local\programs\opera\74.0.3911.160\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\74.0.3911.160\opera.exe => No File
FirewallRules: [UDP Query User{ABF56DDE-D0D8-48E5-9950-CF0823DA22D5}C:\users\hladk\appdata\local\programs\opera\74.0.3911.160\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\74.0.3911.160\opera.exe => No File
FirewallRules: [TCP Query User{7924D7F9-35B5-4323-8CD6-BF7FB02C27D1}C:\users\hladk\appdata\local\programs\opera\74.0.3911.203\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\74.0.3911.203\opera.exe => No File
FirewallRules: [UDP Query User{CE9F2AB9-F350-4173-99FE-8C9EA59BABEA}C:\users\hladk\appdata\local\programs\opera\74.0.3911.203\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\74.0.3911.203\opera.exe => No File
FirewallRules: [TCP Query User{627D6D88-BCD9-4B11-8752-7033CE67A43E}C:\users\hladk\appdata\local\programs\opera\74.0.3911.218\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\74.0.3911.218\opera.exe => No File
FirewallRules: [UDP Query User{BF44925E-976B-4681-A7BC-ADD952905D4A}C:\users\hladk\appdata\local\programs\opera\74.0.3911.218\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\74.0.3911.218\opera.exe => No File
FirewallRules: [TCP Query User{2B7C2FCC-8FE5-4DA7-BD8B-D927A75B3B71}C:\users\hladk\appdata\local\programs\opera\75.0.3969.149\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\75.0.3969.149\opera.exe => No File
FirewallRules: [UDP Query User{5F64FDD9-1BB6-480D-9924-05DBE3BCEFFD}C:\users\hladk\appdata\local\programs\opera\75.0.3969.149\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\75.0.3969.149\opera.exe => No File
FirewallRules: [TCP Query User{1986AD46-BD8E-4F25-B06C-EDAABD15F373}C:\users\hladk\appdata\local\programs\opera\75.0.3969.171\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\75.0.3969.171\opera.exe => No File
FirewallRules: [UDP Query User{E73F905E-2295-4172-B8AF-F6CAADEC2864}C:\users\hladk\appdata\local\programs\opera\75.0.3969.171\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\75.0.3969.171\opera.exe => No File
FirewallRules: [TCP Query User{84A9739B-671F-4E4A-BE63-6EE1BD489B64}C:\users\hladk\appdata\local\programs\opera\75.0.3969.218\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\75.0.3969.218\opera.exe => No File
FirewallRules: [UDP Query User{E21BB260-186E-4361-A69F-BA7AB9DF0FD8}C:\users\hladk\appdata\local\programs\opera\75.0.3969.218\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\75.0.3969.218\opera.exe => No File
FirewallRules: [{6AD2C198-35E1-41D5-93C8-BEF3AF17B699}] => (Allow) C:\Users\Hladk\AppData\Roaming\Zoom\bin\Zoom.exe => No File
FirewallRules: [{5727A7C0-41CE-441B-9285-61A040416076}] => (Allow) C:\Users\Hladk\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [{2CB56624-7D8F-45E3-93D6-FF7D65E68D9A}] => (Allow) C:\Users\Hladk\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [TCP Query User{0B8B5CD6-3EF7-4242-A04C-FDBB1A94F158}C:\users\hladk\appdata\local\programs\opera\75.0.3969.243\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\75.0.3969.243\opera.exe => No File
FirewallRules: [UDP Query User{DDC5EE6F-2E52-4F48-A8B5-F521E1552474}C:\users\hladk\appdata\local\programs\opera\75.0.3969.243\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\75.0.3969.243\opera.exe => No File
FirewallRules: [TCP Query User{2A9894EC-FF19-4E3B-B092-0F1FDEB04C97}C:\users\hladk\appdata\local\programs\opera\76.0.4017.107\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\76.0.4017.107\opera.exe => No File
FirewallRules: [UDP Query User{B21566DA-243C-47F3-BA01-30BE370CA6B1}C:\users\hladk\appdata\local\programs\opera\76.0.4017.107\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\76.0.4017.107\opera.exe => No File
FirewallRules: [TCP Query User{D81E2147-F2A2-4105-A36B-8EF7FEA04452}C:\users\hladk\appdata\local\programs\opera\76.0.4017.123\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\76.0.4017.123\opera.exe => No File
FirewallRules: [UDP Query User{36D19403-1991-4E8E-8145-7E804CC73AD6}C:\users\hladk\appdata\local\programs\opera\76.0.4017.123\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\76.0.4017.123\opera.exe => No File
FirewallRules: [{5F3EA87A-90F3-4626-AACA-7916A3BFD2EA}] => (Allow) C:\Program Files\BlueStacks_bgp64\HD-Player.exe => No File
FirewallRules: [TCP Query User{E18E0E38-4030-45E9-BC07-B643BC3C4B39}C:\users\hladk\appdata\local\programs\opera\76.0.4017.154\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\76.0.4017.154\opera.exe => No File
FirewallRules: [UDP Query User{F626C883-92B2-44B3-9E54-9A2F8C1CE7DE}C:\users\hladk\appdata\local\programs\opera\76.0.4017.154\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\76.0.4017.154\opera.exe => No File
FirewallRules: [TCP Query User{A719F233-9069-481B-8DB5-6F601CAAC967}C:\users\hladk\appdata\local\programs\opera\76.0.4017.177\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\76.0.4017.177\opera.exe => No File
FirewallRules: [UDP Query User{233055A1-F9BA-432C-8A80-5B4EE0D15D71}C:\users\hladk\appdata\local\programs\opera\76.0.4017.177\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\76.0.4017.177\opera.exe => No File
FirewallRules: [TCP Query User{2E264129-0F0B-45CD-B679-095140BBDFF1}C:\users\hladk\appdata\local\programs\opera\77.0.4054.90\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\77.0.4054.90\opera.exe => No File
FirewallRules: [UDP Query User{F1F29FE8-D9E0-40E7-AB99-CEEA1A86F4A7}C:\users\hladk\appdata\local\programs\opera\77.0.4054.90\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\77.0.4054.90\opera.exe => No File
FirewallRules: [TCP Query User{7E44BE17-DFE1-4760-8240-B35BBF487BCE}C:\users\hladk\appdata\local\programs\opera\77.0.4054.203\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\77.0.4054.203\opera.exe => No File
FirewallRules: [UDP Query User{D07DE422-719C-41B7-8B09-27862BEAFE7B}C:\users\hladk\appdata\local\programs\opera\77.0.4054.203\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\77.0.4054.203\opera.exe => No File
FirewallRules: [TCP Query User{7F6993DF-F557-4498-967B-3704A1682B76}C:\users\hladk\appdata\local\programs\opera\77.0.4054.277\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\77.0.4054.277\opera.exe => No File
FirewallRules: [UDP Query User{47B5B3C4-AD76-4198-B173-3303DA734D9E}C:\users\hladk\appdata\local\programs\opera\77.0.4054.277\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\77.0.4054.277\opera.exe => No File
FirewallRules: [TCP Query User{A456D408-B363-4D5D-82F2-6FE057DB27F4}C:\users\hladk\appdata\local\programs\opera\78.0.4093.112\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\78.0.4093.112\opera.exe => No File
FirewallRules: [UDP Query User{AA101A67-B4FA-46B8-85C8-7F36645BDDB5}C:\users\hladk\appdata\local\programs\opera\78.0.4093.112\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\78.0.4093.112\opera.exe => No File
FirewallRules: [TCP Query User{E51C7860-7EBA-4373-B473-B93210B56DBC}C:\users\hladk\appdata\local\programs\opera\78.0.4093.147\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\78.0.4093.147\opera.exe => No File
FirewallRules: [UDP Query User{90595795-29E6-41AA-89FC-9352F12EEDA0}C:\users\hladk\appdata\local\programs\opera\78.0.4093.147\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\78.0.4093.147\opera.exe => No File
FirewallRules: [TCP Query User{C01512D0-38D4-4C20-95A2-E585C4B03216}C:\users\hladk\appdata\local\programs\opera\78.0.4093.184\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\78.0.4093.184\opera.exe => No File
FirewallRules: [UDP Query User{58EF3087-3590-4AFF-B2CC-C249EAB2FC28}C:\users\hladk\appdata\local\programs\opera\78.0.4093.184\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\78.0.4093.184\opera.exe => No File
FirewallRules: [TCP Query User{F23A8FDD-D625-420E-A53D-69641E93598A}C:\users\hladk\appdata\local\programs\opera\78.0.4093.231\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\78.0.4093.231\opera.exe => No File
FirewallRules: [UDP Query User{0AC75736-2CD5-4885-B77F-992CF97D2E78}C:\users\hladk\appdata\local\programs\opera\78.0.4093.231\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\78.0.4093.231\opera.exe => No File
FirewallRules: [TCP Query User{760BDFEB-F33E-4689-995B-8F4F61C78C5A}C:\users\hladk\appdata\local\programs\opera\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [UDP Query User{AADA818B-AD5A-4D84-B0A5-143CE63FB9B8}C:\users\hladk\appdata\local\programs\opera\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [TCP Query User{FD50663E-8A65-4975-9C1B-3C10D164B9A7}C:\users\hladk\appdata\local\programs\opera\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [UDP Query User{806C1030-C04C-4C00-AA79-B4BA3E7C9A13}C:\users\hladk\appdata\local\programs\opera\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{ACC24E13-5D18-4503-8CE7-4993EA376E8D}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{D3D0F170-3737-4016-AE79-6AD35FE41FB9}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{B07B4BFB-A714-4F05-A364-6A7137AECAD6}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{E2C7161C-4B74-44D4-9C09-60948711F109}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{D289E749-8986-475A-8F7D-1651CA56DAB5}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.178.765.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{916C6619-BA54-40CD-B82F-44A0E15156F0}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.178.765.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{89452BB3-BD71-452B-AE1B-F307B427A9D8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.178.765.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{E5239BDA-39BB-4DFF-9AE6-03EDA85D6DE1}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.178.765.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{77212C9C-1635-43A5-AD94-607DD5AAEB5B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.178.765.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{512FF42D-D80D-4FCE-97D6-59980ED20D64}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.178.765.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{03C8581D-69F0-4A6B-969A-E90CEA7EAA68}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.178.765.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{2C45E231-1AF5-4B0A-9065-D916F3050F32}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.178.765.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{323B7796-02E4-4D6F-B742-515804475D13}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
==================== Restore Points =========================
02-02-2022 18:03:38 Naplánovaný kontrolní bod
==================== Faulty Device Manager Devices ============
Name: AMD Radeon(TM) Vega 8 Graphics
Description: AMD Radeon(TM) Vega 8 Graphics
Class Guid: {4d36e968-e325-11ce-bfc1-08002be10318}
Manufacturer: Advanced Micro Devices, Inc.
Service: amdwddmg
Problem: : Windows has stopped this device because it has reported problems. (Code 43)
Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation.
==================== Event log errors: ========================
Application errors:
==================
Error: (01/04/2022 03:55:00 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program Club Vegas.exe verze 0.0.0.0 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.
ID procesu: 5340
Čas spuštění: 01d8012e72bcaa63
Čas ukončení: 4294967295
Cesta k aplikaci: C:\Program Files\WindowsApps\BagelcodeInc.47921C88A920C_116.0.13.0_x64__5dvc9f3b38e20\Club Vegas.exe
ID hlášení: 9518ac9a-a91b-4fa4-8377-dad470520854
Úplný název balíčku s chybou: BagelcodeInc.47921C88A920C_116.0.13.0_x64__5dvc9f3b38e20
ID aplikace relativní podle balíčku s chybou: App
Typ zablokování: Quiesce
Error: (11/26/2021 12:26:28 PM) (Source: Firefox Default Browser Agent) (EventID: 12029) (User: )
Description: Event-ID 12029
Error: (11/26/2021 12:26:28 PM) (Source: Firefox Default Browser Agent) (EventID: 0) (User: )
Description: Event-ID 0
Error: (11/10/2021 05:40:08 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 11) (User: DESKTOP-1T75NO9)
Description: Microsoft.YourPhone_8wekyb3d8bbwe-2147023878
Error: (10/24/2021 04:57:51 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny QueryFullProcessImageNameW došlo k neočekávané chybě. hr= 0x8007001f, Zařízení připojené k systému nefunguje.
.
Operace:
Spouštění asynchronní operace
Kontext:
Aktuální stav: DoSnapshotSet
Error: (10/12/2021 05:33:06 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: datovka.exe, verze: 4.15.6.0, časové razítko: 0x5fbbbbb5
Název chybujícího modulu: qsqlite.dll, verze: 5.15.1.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x0000000000054d3e
ID chybujícího procesu: 0x1db0
Čas spuštění chybující aplikace: 0x01d7bf2236f3ac68
Cesta k chybující aplikaci: C:\Program Files\CZ.NIC\Datovka\datovka.exe
Cesta k chybujícímu modulu: C:\Program Files\CZ.NIC\Datovka\plugins\sqldrivers\qsqlite.dll
ID zprávy: 217f8799-1a47-4436-a636-6ab6dc2abbae
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (07/02/2021 02:09:53 PM) (Source: Firefox Default Browser Agent) (EventID: 12029) (User: )
Description: Event-ID 12029
Error: (07/02/2021 02:09:53 PM) (Source: Firefox Default Browser Agent) (EventID: 0) (User: )
Description: Event-ID 0
System errors:
=============
Error: (02/09/2022 11:32:41 AM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (11:17:40, 09.02.2022) bylo neočekávané.
Error: (02/09/2022 09:22:25 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba eapihdrv neuspěla při spuštění v důsledku následující chyby:
Načtení tohoto ovladače je blokováno.
Error: (02/09/2022 09:22:25 AM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\Hladk\AppData\Local\Temp\ehdrv.sys
Error: (02/09/2022 09:22:24 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba eapihdrv neuspěla při spuštění v důsledku následující chyby:
Načtení tohoto ovladače je blokováno.
Error: (02/09/2022 09:22:24 AM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\Hladk\AppData\Local\Temp\ehdrv.sys
Error: (02/09/2022 09:22:24 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba eapihdrv neuspěla při spuštění v důsledku následující chyby:
Načtení tohoto ovladače je blokováno.
Error: (02/09/2022 09:22:24 AM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\Hladk\AppData\Local\Temp\ehdrv.sys
Error: (02/09/2022 09:22:24 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba eapihdrv neuspěla při spuštění v důsledku následující chyby:
Načtení tohoto ovladače je blokováno.
Windows Defender:
================
Date: 2022-02-09 20:18:35
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Trojan:PowerShell/Obfuse.SM!MTB
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\Hladk\AppData\Local\Temp\d127fe0b-873a-40cb-960f-1ebf18f61cbb.tmp
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Ochrana v reálném čase
Uživatel: DESKTOP-1T75NO9\Hladk
Název procesu: C:\Users\Hladk\AppData\Local\Programs\Opera\opera.exe
Verze bezpečnostních informací: AV: 1.357.347.0, AS: 1.357.347.0, NIS: 1.357.347.0
Verze modulu: AM: 1.1.18900.2, NIS: 1.1.18900.2
Date: 2022-02-09 11:33:42
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Trojan:PowerShell/Obfuse.SM!MTB
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\Hladk\AppData\Local\Temp\22a5be45-6ec2-43cb-a7c6-1ce30a881e4f.tmp; file:_C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\adblocker_data\fe59aa748b9000bb96afc12e6b7f71e5.easylist
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Ochrana v reálném čase
Uživatel: DESKTOP-1T75NO9\Hladk
Název procesu: C:\Users\Hladk\AppData\Local\Programs\Opera\opera.exe
Verze bezpečnostních informací: AV: 1.357.335.0, AS: 1.357.335.0, NIS: 1.357.335.0
Verze modulu: AM: 1.1.18900.2, NIS: 1.1.18900.2
Date: 2022-02-09 11:33:24
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Trojan:PowerShell/Obfuse.SM!MTB
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\Hladk\AppData\Local\Temp\22a5be45-6ec2-43cb-a7c6-1ce30a881e4f.tmp; file:_C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\adblocker_data\fe59aa748b9000bb96afc12e6b7f71e5.easylist
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Ochrana v reálném čase
Uživatel: DESKTOP-1T75NO9\Hladk
Název procesu: C:\Users\Hladk\AppData\Local\Programs\Opera\opera.exe
Verze bezpečnostních informací: AV: 1.357.335.0, AS: 1.357.335.0, NIS: 1.357.335.0
Verze modulu: AM: 1.1.18900.2, NIS: 1.1.18900.2
Date: 2022-02-09 11:33:21
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Trojan:PowerShell/Obfuse.SM!MTB
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\adblocker_data\fe59aa748b9000bb96afc12e6b7f71e5.easylist
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Ochrana v reálném čase
Uživatel: DESKTOP-1T75NO9\Hladk
Název procesu: C:\Users\Hladk\AppData\Local\Programs\Opera\opera.exe
Verze bezpečnostních informací: AV: 1.357.335.0, AS: 1.357.335.0, NIS: 1.357.335.0
Verze modulu: AM: 1.1.18900.2, NIS: 1.1.18900.2
Date: 2022-02-09 11:33:08
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Trojan:PowerShell/Obfuse.SM!MTB
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\adblocker_data\fe59aa748b9000bb96afc12e6b7f71e5.easylist
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Ochrana v reálném čase
Uživatel: DESKTOP-1T75NO9\Hladk
Název procesu: C:\Users\Hladk\AppData\Local\Programs\Opera\opera.exe
Verze bezpečnostních informací: AV: 1.357.335.0, AS: 1.357.335.0, NIS: 1.357.335.0
Verze modulu: AM: 1.1.18900.2, NIS: 1.1.18900.2
CodeIntegrity:
===============
Date: 2022-01-07 21:30:02
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\DriverStore\FileRepository\nvmd.inf_amd64_1408eaf9a25ed64f\NvCamera\NvCameraAllowlisting64.dll because the set of per-page image hashes could not be found on the system.
Date: 2020-09-16 21:52:34
Description:
Code Integrity determined that a process (\Device\HarddiskVolume1\Users\Hladk\AppData\Local\Programs\Opera\70.0.3728.189\opera.exe) attempted to load \Device\HarddiskVolume1\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
Date: 2020-09-05 20:50:32
Description:
Code Integrity determined that a process (\Device\HarddiskVolume1\Users\Hladk\AppData\Local\Programs\Opera\70.0.3728.106\opera.exe) attempted to load \Device\HarddiskVolume1\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends Inc. P4.70 02/09/2018
Motherboard: ASRock AB350M Pro4
Processor: AMD Ryzen 3 2200G with Radeon Vega Graphics
Percentage of memory in use: 35%
Total physical RAM: 15289.96 MB
Available physical RAM: 9870.55 MB
Total Virtual: 17593.96 MB
Available Virtual: 10568.17 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:222.53 GB) (Free:47.11 GB) NTFS ==>[drive with boot components (obtained from BCD)]
\\?\Volume{03d1bb58-0000-0000-0000-30c437000000}\ () (Fixed) (Total:0.5 GB) (Free:0.08 GB) NTFS
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 223.6 GB) (Disk ID: 03D1BB58)
Partition 1: (Active) - (Size=222.5 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=515 MB) - (Type=27)
==================== End of Addition.txt =======================
dle Microsoft Defender byl nějaký vir v PC, který Defender smazal, prosím tímto o kontrolu logu.
Děkuji
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 05-02-2022
Ran by Hladk (administrator) on DESKTOP-1T75NO9 (09-02-2022 20:27:24)
Running from C:\Users\Hladk\AppData\Local\Temp\scoped_dir8220_678203837
Loaded Profiles: Hladk
Platform: Microsoft Windows 10 Home Version 21H1 19043.1466 (X64) Language: Čeština (Česko)
Default browser: Opera
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0373652.inf_amd64_97d024528a122d1a\B372726\atieclxx.exe
(Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0373652.inf_amd64_97d024528a122d1a\B372726\atiesrxx.exe
(Bagelcode) C:\Program Files\WindowsApps\BagelcodeInc.47921C88A920C_120.0.21.0_x64__5dvc9f3b38e20\Club Vegas.exe
(Ivaylo Beltchev -> IvoSoft) [File not signed] C:\Program Files\Classic Shell\ClassicStartMenu.exe
(Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_10.2103.8.0_x64__8wekyb3d8bbwe\Calculator.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\GameBarPresenceWriter.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCopyAccelerator.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\NisSrv.exe
(NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmd.inf_amd64_1408eaf9a25ed64f\Display.NvContainer\NVDisplay.Container.exe <2>
(Opera Software AS -> Opera Software) C:\Users\Hladk\AppData\Local\Programs\Opera\83.0.4254.27\opera_crashreporter.exe
(Opera Software AS -> Opera Software) C:\Users\Hladk\AppData\Local\Programs\Opera\opera.exe <32>
(TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [LogiOptions] => C:\Program Files\Logitech\LogiOptions\LogiOptions.exe [2177160 2019-03-03] (Logitech Inc -> Logitech, Inc.)
HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [163640 2017-08-13] (Ivaylo Beltchev -> IvoSoft) [File not signed]
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\Run: [Opera Browser Assistant] => C:\Users\Hladk\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [4105424 2021-10-14] (Opera Software AS -> Opera Software)
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\Run: [Adobe Reader Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe [5407968 2021-12-24] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\MountPoints2: {0be8b383-756a-11ea-9e0c-7085c262d76e} - "D:\HiSuiteDownLoader.exe"
HKLM\...\Print\Monitors\Bullzip PDF Print Monitor: C:\Program Files\Common Files\Bullzip\PDF Printer\Ports\BULLZIP\bzpdf.dll [221696 2019-02-15] (Bullzip) [File not signed]
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\98.0.4758.82\Installer\chrmstp.exe [2022-02-08] (Google LLC -> Google LLC)
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) ============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {012AF9A8-C10B-4759-9017-F7384F27E0BB} - System32\Tasks\Opera scheduled Autoupdate 1555151344 => C:\Users\Hladk\AppData\Local\Programs\Opera\launcher.exe [2333904 2022-01-26] (Opera Software AS -> Opera Software)
Task: {10A3784B-E3D4-4867-997B-1B6FD31C4F26} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe [901048 2021-12-16] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {35A50CFD-66BB-470C-BDE4-7F2F2AD50979} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe [901048 2021-12-16] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {4D8A2B39-A76D-42CC-82B9-986D86B87B98} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-05-29] (Google Inc -> Google LLC)
Task: {4E814242-EC28-47EA-A742-87A5C257FD57} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe --MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask backgroundupdate
Task: {59700CA8-F849-4731-B8B6-515D6805F876} - System32\Tasks\EOSv3 Scheduler onLogOn => C:\Users\Hladk\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe [21737944 2022-02-09] (ESET, spol. s r.o. -> ESET)
Task: {6C0E15A0-5D86-4BC0-9909-C90DA6F6A00F} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\AVAST Software\Overseer\overseer.exe [1790184 2021-04-29] (Avast Software s.r.o. -> Avast Software)
Task: {93154DC5-99BE-416F-8C1D-84BC5325D23C} - System32\Tasks\ProtonVPN Update => C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPN.UpdateService.exe [61760 2020-10-23] (ProtonVPN AG -> )
Task: {A0F93F01-0E78-4645-B972-8EB7E3D8CCDD} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe [901048 2021-12-16] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {A2E7804E-1B6E-4F97-BD23-A65514BD6090} - System32\Tasks\EOSv3 Scheduler onTime => C:\Users\Hladk\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe [21737944 2022-02-09] (ESET, spol. s r.o. -> ESET)
Task: {B270A711-E269-48B0-B7D9-6AA86A5CC466} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-05-29] (Google Inc -> Google LLC)
Task: {B28B71C1-1718-4E11-9AC4-2ED506D1E0C9} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564424 2021-11-17] (Adobe Inc. -> Adobe Inc.)
Task: {C635DB5F-695A-47CA-A255-14BC58AFC748} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MpCmdRun.exe [901048 2021-12-16] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C96C4C39-16BE-407E-BC18-7BF77669CD38} - System32\Tasks\Opera scheduled assistant Autoupdate 1582748983 => C:\Users\Hladk\AppData\Local\Programs\Opera\launcher.exe [2333904 2022-01-26] (Opera Software AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\Hladk\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {CDDA4ADD-A396-4673-AD06-0302F1F1DA74} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe do-task "308046B0AF4A39CB"
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 86.49.5.221 86.49.5.222
Tcpip\..\Interfaces\{31f344b7-4480-4955-86df-c15fb8461db6}: [DhcpNameServer] 86.49.5.221 86.49.5.222
Edge:
=======
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge Profile: C:\Users\Hladk\AppData\Local\Microsoft\Edge\User Data\Default [2022-02-09]
FireFox:
========
FF DefaultProfile: 5i7y9o4g.default
FF ProfilePath: C:\Users\Hladk\AppData\Roaming\Mozilla\Firefox\Profiles\5i7y9o4g.default [2020-03-16]
FF ProfilePath: C:\Users\Hladk\AppData\Roaming\Mozilla\Firefox\Profiles\uzwrieov.default-release [2022-02-09]
FF Session Restore: Mozilla\Firefox\Profiles\uzwrieov.default-release -> is enabled.
FF Extension: (Linkificator) - C:\Users\Hladk\AppData\Roaming\Mozilla\Firefox\Profiles\uzwrieov.default-release\Extensions\linkificator@markapola.xpi [2020-04-18]
FF Extension: (Lightshot (Nástroje snímků)) - C:\Users\Hladk\AppData\Roaming\Mozilla\Firefox\Profiles\uzwrieov.default-release\Extensions\{394DCBA4-1F92-4f8e-8EC9-8D2CB90CB69B}.xpi [2021-08-12]
FF Extension: (Hlídač Shopů) - C:\Users\Hladk\AppData\Roaming\Mozilla\Firefox\Profiles\uzwrieov.default-release\Extensions\{d6f0f975-91a3-4d78-96f7-5f1859ad18b6}.xpi [2021-11-10]
FF Plugin: @videolan.org/vlc,version=3.0.10 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.11 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.14 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.6 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.8 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2021-12-24] (Adobe Inc. -> Adobe Systems Inc.)
Chrome:
=======
CHR Profile: C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default [2022-01-07]
CHR Extension: (Prezentace) - C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-05-29]
CHR Extension: (Dokumenty) - C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2019-05-29]
CHR Extension: (Disk Google) - C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-11-10]
CHR Extension: (YouTube) - C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-05-29]
CHR Extension: (Aliexpress SuperStar česky, Historie cen a koruny) - C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default\Extensions\ciclollkolafellcaolgccmfjldgpolo [2021-06-20]
CHR Extension: (Tabulky) - C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-05-29]
CHR Extension: (Dokumenty Google offline) - C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2022-01-01]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-06-20]
CHR Extension: (Gmail) - C:\Users\Hladk\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-11-10]
Opera:
=======
OPR Profile: C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable [2022-02-09]
OPR Notifications: Opera Stable -> hxxps://messages.google.com; hxxps://prekladyher.eu; hxxps://zdopravy.cz
OPR StartupUrls: Opera Stable -> "hxxp://www.idnes.cz/","hxxps://www.mujrozhlas. ... adiozurnal"
OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=o ... utEncoding}
OPR Extension: (Real-Debrid extension) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\cbhlgmcclhchabkenpacjhlcjpcceljf [2020-09-08]
OPR Extension: (Bitwarden – Bezplatný správce hesel) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\ccnckbpmaceehanjmeomladnmlffdjgn [2021-12-09]
OPR Extension: (Rich Hints Agent) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2022-01-27]
OPR Extension: (ČD Body - zitranavylet.cz) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\fedjfkcpbabccidicbfocikcpmohkpca [2019-06-09]
OPR Extension: (Notifier for Gmail™) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\flkijckbigolpahbkklilflpmkalfohc [2021-07-10]
OPR Extension: (I don't care about cookies) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\iambaeepkgdclnmbfdnnohkjjpdglbeo [2022-01-24]
OPR Extension: (Porovnání cen) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\jmhkgcmmgjblnkjkbgjggkaeifacakgi [2020-06-28]
OPR Extension: (Amazon Assistant Promotion) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2021-08-11]
OPR Extension: (Install Chrome Extensions) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\kipjbhgniklcnglfaldilecjomjaddfi [2019-12-13]
OPR Extension: (Clickable Links) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\mgamelhnfokapndfdodnmfiningckjia [2019-04-13]
OPR Extension: (Hlídač Shopů) - C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\Extensions\plmlonggbfebcjelncogcnclagkmkikk [2021-12-08]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [169728 2021-11-17] (Adobe Inc. -> Adobe Inc.)
S3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4452456 2019-10-03] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S4 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [190784 2019-08-19] (Huawei Technologies Co., Ltd. -> ) [File not signed]
S3 ProtonVPN Service; C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPNService.exe [99136 2020-10-23] (ProtonVPN AG -> )
S3 ProtonVPN Update Service; C:\Program Files (x86)\Proton Technologies\ProtonVPN\ProtonVPN.UpdateService.exe [61760 2020-10-23] (ProtonVPN AG -> )
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12912936 2021-11-16] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\NisSrv.exe [2876152 2021-12-16] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2111.5-0\MsMpEng.exe [128360 2021-12-16] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvmd.inf_amd64_1408eaf9a25ed64f\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvmd.inf_amd64_1408eaf9a25ed64f\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0373652.inf_amd64_97d024528a122d1a\B372726\amdkmdag.sys [80538504 2021-11-12] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2019-10-03] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [59360 2019-10-03] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2019-08-19] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 ProtonVPNSplitTunnel; C:\Program Files (x86)\Proton Technologies\ProtonVPN\x64\Win10\ProtonVPN.SplitTunnelDriver.sys [31584 2020-08-19] (Microsoft Windows Hardware Compatibility Publisher -> Proton Technologies AG)
R3 tapprotonvpn; C:\WINDOWS\System32\drivers\tapprotonvpn.sys [49008 2020-08-19] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48536 2021-12-16] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [435432 2021-12-16] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [86248 2021-12-16] (Microsoft Windows -> Microsoft Corporation)
S3 HWiNFO_161; \??\C:\Users\Hladk\AppData\Local\Temp\HWiNFO64A_161.SYS [X] <==== ATTENTION
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-02-09 20:27 - 2022-02-09 20:27 - 001222144 _____ C:\Users\Hladk\Downloads\RSITx64.exe.opdownload
2022-02-09 20:27 - 2022-02-09 20:27 - 000000000 ____D C:\FRST
2022-02-09 20:26 - 2022-02-09 20:26 - 002311680 _____ (Farbar) C:\Users\Hladk\Downloads\FRST64.exe
2022-02-09 10:59 - 2022-02-09 11:34 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2022-02-09 09:21 - 2022-02-09 09:21 - 000003858 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onLogOn
2022-02-09 09:21 - 2022-02-09 09:21 - 000003416 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onTime
2022-02-09 09:13 - 2022-02-09 09:21 - 000001382 _____ C:\Users\Hladk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk
2022-02-09 09:13 - 2022-02-09 09:21 - 000001276 _____ C:\Users\Hladk\Desktop\ESET Online Scanner.lnk
2022-02-09 09:13 - 2022-02-09 09:13 - 015274968 _____ (ESET) C:\Users\Hladk\Downloads\esetonlinescanner.exe
2022-02-09 07:13 - 2022-02-09 07:13 - 000000000 ___HD C:\$WinREAgent
2022-02-07 22:08 - 2022-02-07 22:08 - 001785765 _____ C:\Users\Hladk\Downloads\nz - projekt fuze_klikpojisteni - stejnopis.pdf
2022-02-07 22:07 - 2022-02-07 22:07 - 000286641 _____ C:\Users\Hladk\Downloads\sc_konec (1).pdf
2022-02-07 22:06 - 2022-02-07 22:06 - 000286641 _____ C:\Users\Hladk\Downloads\sc_konec.pdf
2022-02-06 20:49 - 2022-02-06 20:49 - 000023298 _____ C:\Users\Hladk\Downloads\Prehled_navaznych_spoju_v_autobusove_doprave_platn.xlsx
2022-02-06 20:47 - 2022-02-06 20:47 - 000119582 _____ C:\Users\Hladk\Downloads\Garantovane_cekaci_doby_v_Pardubickem_kraji_s_plat.xlsx
2022-02-05 21:37 - 2022-02-05 22:35 - 1071988714 _____ C:\Users\Hladk\Downloads\The Little Drummer Girl s01e05 CZ.avi
2022-02-05 21:37 - 2022-02-05 22:27 - 930889416 _____ C:\Users\Hladk\Downloads\The Little Drummer Girl s01e04 CZ.avi
2022-02-05 21:16 - 2022-02-06 00:26 - 2096696388 _____ C:\Users\Hladk\Downloads\Vlkochodci [Wolfwalkers] (2020) CZ titulky HD 1080p.mkv
2022-02-03 18:48 - 2022-02-03 18:48 - 000474320 _____ C:\Users\Hladk\Downloads\cestovní.smlouva.pdf
2022-02-03 18:42 - 2022-02-03 18:42 - 000476214 _____ C:\Users\Hladk\Downloads\Hladky_Kooperativa_KOL_5045217782_smlouva_220203_171719.pdf
2022-02-03 17:36 - 2022-02-03 17:36 - 000207548 _____ C:\Users\Hladk\Downloads\Smlouva_DPS.pdf
2022-02-03 17:35 - 2022-02-03 17:35 - 000125177 _____ C:\Users\Hladk\Downloads\Smlouva (2).pdf
2022-02-03 17:31 - 2022-02-03 17:31 - 000198083 _____ C:\Users\Hladk\Downloads\Navrh_smlouvy.pdf
2022-02-03 17:30 - 2022-02-03 17:30 - 000055549 _____ C:\Users\Hladk\Desktop\Smlouva (1).pdf
2022-02-03 17:29 - 2022-02-03 17:29 - 000055549 _____ C:\Users\Hladk\Downloads\Smlouva (1).pdf
2022-02-03 17:26 - 2022-02-03 17:26 - 000549410 _____ C:\Users\Hladk\Downloads\Darovací smlouva - 2022000012 31.12.2022.pdf
2022-02-03 17:26 - 2022-02-03 17:26 - 000094674 _____ C:\Users\Hladk\Downloads\Navrh_na_vklad_ID_2022000012.pdf
2022-02-03 17:17 - 2022-02-03 17:17 - 001229514 _____ C:\Users\Hladk\Desktop\contract.jsf.pdf
2022-02-03 17:09 - 2022-02-03 17:09 - 000262675 _____ C:\Users\Hladk\Desktop\My bookings.pdf
2022-01-28 09:07 - 2022-01-28 09:07 - 000120508 _____ C:\Users\Hladk\Downloads\Čestné-prohlášení-o-nulových-příjmech-pdf-ke-stažení-online.pdf
2022-01-27 21:21 - 2022-01-27 21:21 - 000217553 _____ C:\Users\Hladk\Downloads\Detail_faktura_VS_7924000040_vystaveno_06012022_EIC_27ZG500Z0310599U (1).xlsx
2022-01-27 21:15 - 2022-01-27 21:15 - 000218966 _____ C:\Users\Hladk\Downloads\Vyuctovaci_faktura_bD_VS_7924000040_vystaveno_06012022.pdf
2022-01-27 21:15 - 2022-01-27 21:15 - 000217553 _____ C:\Users\Hladk\Downloads\Detail_faktura_VS_7924000040_vystaveno_06012022_EIC_27ZG500Z0310599U.xlsx
2022-01-26 11:31 - 2022-01-26 11:31 - 000000000 ____D C:\Users\Hladk\AppData\Local\FreeGrabApp
2022-01-26 11:11 - 2022-01-26 11:11 - 000000000 ____D C:\Users\Hladk\AppData\Roaming\FreeGrabApp
2022-01-26 11:11 - 2022-01-26 11:11 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FreeGrabApp
2022-01-26 11:11 - 2022-01-26 11:11 - 000000000 ____D C:\ProgramData\FreeGrabApp
2022-01-26 11:11 - 2022-01-26 11:11 - 000000000 ____D C:\Program Files (x86)\FreeGrabApp
2022-01-24 13:11 - 2022-01-24 13:11 - 000222185 _____ C:\Users\Hladk\Downloads\Výpověď k področní platbě.pdf
2022-01-24 10:58 - 2022-01-24 10:58 - 000107284 _____ C:\Users\Hladk\Downloads\hb_potvrzeni_uroky_267294-1_20220101_934 (1).pdf
2022-01-23 09:05 - 2022-01-23 12:13 - 3447458292 _____ C:\Users\Hladk\Downloads\The.Little.Drummer.Girl.01x03.1080i.HDTV.CZ.mkv
2022-01-22 20:16 - 2022-01-22 23:34 - 3621678942 _____ C:\Users\Hladk\Downloads\The.Little.Drummer.Girl.01x02.1080i.HDTV.CZ.mkv
2022-01-22 20:16 - 2022-01-22 23:26 - 3468664360 _____ C:\Users\Hladk\Downloads\The.Little.Drummer.Girl.01x01.1080i.HDTV.CZ.mkv
2022-01-21 08:42 - 2022-01-21 08:42 - 000050900 _____ C:\Users\Hladk\Desktop\potvrzeni-2021-nadace-via-o1icdnbcgl.pdf
2022-01-18 20:34 - 2022-01-18 20:34 - 000097438 _____ C:\Users\Hladk\Downloads\DS Hladký (1).pdf
2022-01-18 19:38 - 2022-01-18 19:38 - 000006029 _____ C:\Users\Hladk\Downloads\DNEDP4-7610253519-20220118-193751-1625384214-potvrzeni.p7s
2022-01-18 19:33 - 2022-01-18 19:33 - 000127069 _____ C:\Users\Hladk\Desktop\DPN CB.pdf
2022-01-18 19:28 - 2022-01-18 19:28 - 000109499 _____ C:\Users\Hladk\Desktop\DPN.pdf
2022-01-17 10:25 - 2022-01-17 10:25 - 000001323 _____ C:\Users\Hladk\Downloads\DNEDP4-7610253519-20220117-102516-pracovni.xml
2022-01-14 16:11 - 2022-01-14 16:11 - 000000000 ____D C:\Users\Hladk\AppData\Local\PCHealthCheck
2022-01-14 10:57 - 2022-01-14 10:57 - 000523776 _____ (curl, hxxps://curl.se/) C:\WINDOWS\system32\curl.exe
2022-01-14 10:57 - 2022-01-14 10:57 - 000464384 _____ (curl, hxxps://curl.se/) C:\WINDOWS\SysWOW64\curl.exe
2022-01-14 10:57 - 2022-01-14 10:57 - 000011797 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2022-01-13 14:18 - 2022-01-13 14:18 - 000155536 _____ C:\Users\Hladk\Downloads\document.pdf
2022-01-11 09:10 - 2022-01-11 09:10 - 003311528 _____ C:\Users\Hladk\Downloads\GdYNUNFPe9MB.pdf.pdf
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2022-02-09 20:18 - 2020-03-16 07:22 - 000000000 ____D C:\Users\Hladk\AppData\LocalLow\Mozilla
2022-02-09 20:13 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2022-02-09 19:56 - 2019-05-29 18:23 - 000000000 ____D C:\Program Files (x86)\Google
2022-02-09 15:46 - 2019-10-10 06:43 - 000000000 ____D C:\Users\Hladk\AppData\Local\ClassicShell
2022-02-09 14:52 - 2020-08-12 20:03 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2022-02-09 11:39 - 2020-08-12 20:11 - 001693136 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2022-02-09 11:39 - 2019-12-07 15:41 - 000716764 _____ C:\WINDOWS\system32\perfh005.dat
2022-02-09 11:39 - 2019-12-07 15:41 - 000144942 _____ C:\WINDOWS\system32\perfc005.dat
2022-02-09 11:39 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2022-02-09 11:32 - 2020-08-12 20:09 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2022-02-09 11:32 - 2020-08-12 20:03 - 000008192 ___SH C:\DumpStack.log.tmp
2022-02-09 11:32 - 2020-08-12 11:48 - 000000000 ____D C:\Users\Hladk
2022-02-09 11:32 - 2020-03-16 07:22 - 000000000 ____D C:\Program Files\Mozilla Firefox
2022-02-09 11:32 - 2020-03-16 07:22 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2022-02-09 11:32 - 2019-04-23 21:36 - 000000000 ____D C:\ProgramData\NVIDIA
2022-02-09 11:32 - 2019-04-22 18:58 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2022-02-09 10:59 - 2021-09-10 18:19 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2022-02-09 10:59 - 2020-03-16 07:22 - 000001005 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2022-02-09 10:59 - 2020-03-16 07:22 - 000000000 ____D C:\ProgramData\Mozilla
2022-02-08 18:58 - 2019-05-29 18:23 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-02-08 07:13 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2022-02-08 07:10 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2022-02-06 00:27 - 2019-12-07 10:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2022-02-04 17:14 - 2020-06-25 09:50 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-02-01 16:34 - 2020-08-12 20:09 - 000004206 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1555151344
2022-02-01 16:34 - 2019-04-13 11:29 - 000001409 _____ C:\Users\Hladk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2022-01-28 07:08 - 2020-08-12 20:09 - 000003584 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2022-01-28 07:08 - 2020-08-12 20:09 - 000003460 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2022-01-25 08:16 - 2020-12-16 11:14 - 000000000 ____D C:\Users\Hladk\Desktop\Dokumenty Táta
2022-01-22 12:54 - 2020-08-12 20:03 - 000258176 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2022-01-22 06:56 - 2019-12-07 10:14 - 000000000 ___SD C:\WINDOWS\system32\DiagSvcs
2022-01-22 06:56 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2022-01-22 06:56 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2022-01-22 06:56 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup
2022-01-22 06:56 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2022-01-22 06:56 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2022-01-22 06:56 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2022-01-22 06:00 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2022-01-21 21:51 - 2020-08-12 20:09 - 000003474 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2022-01-21 21:51 - 2020-08-12 20:09 - 000003350 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2022-01-17 10:43 - 2021-01-07 08:50 - 000000000 ____D C:\Users\Hladk\AppData\Roaming\.dsgui
2022-01-17 09:45 - 2019-12-28 19:21 - 000000000 ____D C:\Users\Hladk\AppData\Local\cache
2022-01-15 06:14 - 2019-05-13 19:57 - 000000000 ____D C:\Users\Hladk\AppData\Local\Adobe
2022-01-14 16:11 - 2021-06-24 19:51 - 000001349 _____ C:\Users\Hladk\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk
2022-01-14 10:59 - 2020-08-12 20:09 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2022-01-14 10:58 - 2019-05-13 19:59 - 000002136 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2022-01-14 10:57 - 2019-04-13 10:54 - 000413786 __RSH C:\bootmgr
2022-01-14 10:46 - 2019-04-13 13:28 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-01-14 10:45 - 2019-04-13 13:28 - 145765912 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2022-01-11 11:58 - 2019-04-28 06:01 - 000000000 ____D C:\Users\Hladk\AppData\Roaming\vlc
==================== Files in the root of some directories ========
2019-04-30 18:32 - 2018-10-25 21:00 - 000006026 _____ () C:\Program Files (x86)\current.btskin
2019-04-30 18:37 - 2019-04-30 18:43 - 000003754 _____ () C:\Program Files (x86)\dht.dat
2019-04-30 18:37 - 2019-04-30 18:37 - 000003676 _____ () C:\Program Files (x86)\dht.dat.old
2019-04-30 18:43 - 2019-04-30 18:37 - 000000058 _____ () C:\Program Files (x86)\resume.20190430.194316.dat
2019-04-30 18:37 - 2019-04-30 18:43 - 000000058 _____ () C:\Program Files (x86)\resume.dat
2019-04-30 18:37 - 2019-04-30 18:37 - 000000058 _____ () C:\Program Files (x86)\resume.dat.old
2019-04-30 18:37 - 2019-04-30 18:43 - 000000099 _____ () C:\Program Files (x86)\rss.dat
2019-04-30 18:37 - 2019-04-30 18:37 - 000000099 _____ () C:\Program Files (x86)\rss.dat.old
2019-04-30 18:32 - 2019-04-30 18:43 - 000005623 _____ () C:\Program Files (x86)\settings.dat.old
2019-04-30 18:32 - 2018-10-25 21:00 - 000027702 _____ () C:\Program Files (x86)\toolbar.bmp
2019-04-30 18:31 - 2018-08-28 18:30 - 000294384 _____ (emc) C:\Program Files (x86)\uninstall.exe
2019-04-30 18:32 - 2018-10-25 21:00 - 000189334 _____ () C:\Program Files (x86)\utorrent-221-25534.chm
2019-04-30 18:32 - 2018-10-25 21:00 - 000039237 _____ () C:\Program Files (x86)\utorrent.lng
2019-04-30 18:32 - 2018-10-25 21:00 - 000000049 _____ () C:\Program Files (x86)\utorrent.url
2019-04-30 18:32 - 2018-10-25 21:00 - 000184498 _____ () C:\Program Files (x86)\webui.zip
2021-12-25 21:03 - 2021-12-25 21:03 - 000003584 _____ () C:\Users\Hladk\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 05-02-2022
Ran by Hladk (09-02-2022 20:30:37)
Running from C:\Users\Hladk\AppData\Local\Temp\scoped_dir8220_678203837
Microsoft Windows 10 Home Version 21H1 19043.1466 (X64) (2020-08-12 19:09:37)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-1001266131-2733610755-3133150411-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1001266131-2733610755-3133150411-503 - Limited - Disabled)
Guest (S-1-5-21-1001266131-2733610755-3133150411-501 - Limited - Disabled)
Hladk (S-1-5-21-1001266131-2733610755-3133150411-1001 - Administrator - Enabled) => C:\Users\Hladk
WDAGUtilityAccount (S-1-5-21-1001266131-2733610755-3133150411-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Malwarebytes (Disabled - Out of date) {23007AD3-69FE-687C-2629-D584AFFAF72B}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 19.00 (x64) (HKLM\...\7-Zip) (Version: 19.00 - Igor Pavlov)
Adobe Acrobat Reader DC - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 21.011.20039 - Adobe Systems Incorporated)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Bullzip PDF Printer 11.9.0.2735 (HKLM\...\Bullzip PDF Printer_is1) (Version: 11.9.0.2735 - Bullzip)
Classic Shell (HKLM\...\{CABCE573-0A86-42FA-A52A-C7EA61D5BE08}) (Version: 4.3.1 - IvoSoft)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.11.0.0948 - Disc Soft Ltd)
Datovka (HKLM-x32\...\Datovka) (Version: 4.15.6 - CZ.NIC, z. s. p. o.)
Divinity Original Sin 2 MULTi5 (HKLM-x32\...\Divinity Original Sin 2 MULTi5_is1) (Version: - )
Divinity: Original Sin 2 (HKLM-x32\...\1584823040_is1) (Version: 3.6.37.7694_kr3 - GOG.com)
EasePaint Watermark Remover 1.03 (HKLM-x32\...\EasePaint Watermark Remover) (Version: 1.03 - hxxp://www.easepaint.com/)
EMCO Ping Monitor Free 6.3 (HKLM\...\{71897DBE-7D98-47FC-88E7-73246EDB829E}) (Version: 6.3.0.5014 - EMCO Software)
Free Netflix Download (HKLM-x32\...\Free Netflix Download_is1) (Version: 5.0.35.1202 - FreeGrabApp LLC)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 98.0.4758.82 - Google LLC)
Hearthstone (HKLM-x32\...\Hearthstone) (Version: - Blizzard Entertainment)
Hearthstone Deck Tracker (HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\HearthstoneDeckTracker) (Version: 1.14.16 - HearthSim)
HiSuite (HKLM-x32\...\Hi Suite) (Version: 9.1.0.309 - )
IrfanView 4.54 (64-bit) (HKLM\...\IrfanView64) (Version: 4.54 - Irfan Skiljan)
JDownloader 2 (HKLM-x32\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
Kontrola stavu osobního počítače s Windows (HKLM\...\{E496AFB7-CB04-46CF-8FBB-5D665BC8811B}) (Version: 3.3.2110.22002 - Microsoft Corporation)
Logitech Options (HKLM\...\LogiOptions) (Version: 7.12.43 - Logitech)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 98.0.1108.43 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{29B15818-E79F-4AB0-8938-9410C807AD76}) (Version: 2.84.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24215 (HKLM-x32\...\{d992c12e-cab2-426f-bde3-fb8c53950b0d}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Mozilla Firefox (x64 cs) (HKLM\...\Mozilla Firefox 97.0 (x64 cs)) (Version: 97.0 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 74.0 - Mozilla)
NVIDIA Ovladače grafiky 457.51 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 457.51 - NVIDIA Corporation)
Opera Stable 83.0.4254.27 (HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\Opera 83.0.4254.27) (Version: 83.0.4254.27 - Opera Software)
ProtonVPN (HKLM-x32\...\{D19979C9-8B5B-4500-AA6A-EF331F658074}) (Version: 1.17.5 - Proton Technologies AG) Hidden
ProtonVPN (HKLM-x32\...\ProtonVPN 1.17.5) (Version: 1.17.5 - Proton Technologies AG)
ProtonVPNTap (HKLM-x32\...\{BCB82CD9-F514-4F93-A6D9-F898494DC927}) (Version: 1.1.0 - Proton Technologies AG)
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.24.5 - TeamViewer)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.22a - Ghisler Software GmbH)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.16 - VideoLAN)
Packages:
=========
Club Vegas -> C:\Program Files\WindowsApps\BagelcodeInc.47921C88A920C_120.0.21.0_x64__5dvc9f3b38e20 [2022-01-29] (Bagelcode)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2021-10-24] (Microsoft Corporation)
IrfanView64 -> C:\Program Files\WindowsApps\30067IrfanSkiljanIrfanVie.IrfanView64_4.5.9.0_x64__psgec73n2n7ne [2021-12-18] (Irfan Skiljan (IrfanView))
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-04-13] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-04-13] (Microsoft Corporation) [MS Ad]
Microsoft Midi gm.dls -> C:\Program Files\WindowsApps\Microsoft.Midi.GmDls_1.0.1.0_neutral__8wekyb3d8bbwe [2019-04-27] (Microsoft Platform Extensions)
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.12.1050.0_x64__8wekyb3d8bbwe [2022-01-13] (Microsoft Studios) [MS Ad]
Netflix -> C:\Program Files\WindowsApps\4DF9E0F8.Netflix_6.97.752.0_x64__mcm4njqhnhss8 [2022-01-07] (Netflix, Inc.)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.962.0_x64__56jybvy8sckqj [2022-01-20] (NVIDIA Corp.)
Spotify Music -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.178.765.0_x86__zpdnekdrzrea0 [2022-02-05] (Spotify AB) [Startup Task]
WPS Office for Free -> C:\Program Files\WindowsApps\ZhuhaiKingsoftOfficeSoftw.WPSOfficeforFree_10.2.7636.0_x86__924xes6e8q1tw [2019-04-27] (Zhuhai Kingsoft Office Software Co.,Ltd)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2017-08-13] (Ivaylo Beltchev -> IvoSoft) [File not signed]
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2017-08-13] (Ivaylo Beltchev -> IvoSoft) [File not signed]
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2019-10-03] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2019-10-03] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\WINDOWS\System32\atiacm64.dll [2021-11-12] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvmd.inf_amd64_1408eaf9a25ed64f\nvshext.dll [2020-12-02] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2019-02-21] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [StartMenuExt] -> {E595F05F-903F-4318-8B0A-7F633B520D2B} => C:\WINDOWS\system32\StartMenuHelper64.dll [2017-08-13] (Ivaylo Beltchev -> IvoSoft) [File not signed]
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
==================== Loaded Modules (Whitelisted) =============
2022-01-29 18:00 - 2022-01-29 18:00 - 005851136 _____ () [File not signed] C:\Program Files\WindowsApps\BagelcodeInc.47921C88A920C_120.0.21.0_x64__5dvc9f3b38e20\BagelcodeInc.47921C88A920C.dll
2022-01-29 18:00 - 2022-01-29 18:00 - 051404288 _____ () [File not signed] C:\Program Files\WindowsApps\BagelcodeInc.47921C88A920C_120.0.21.0_x64__5dvc9f3b38e20\GameAssembly.dll
2019-04-25 18:29 - 2019-02-15 16:13 - 000221696 _____ (Bullzip) [File not signed] C:\Program Files\Common Files\Bullzip\PDF Printer\Ports\BULLZIP\bzpdf.dll
2017-08-13 07:49 - 2017-08-13 07:49 - 003664184 _____ (Ivaylo Beltchev -> IvoSoft) [File not signed] C:\Program Files\Classic Shell\ClassicStartMenuDLL.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) ==========
BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2017-08-13] (Ivaylo Beltchev -> IvoSoft) [File not signed]
BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2017-08-13] (Ivaylo Beltchev -> IvoSoft) [File not signed]
BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2017-08-13] (Ivaylo Beltchev -> IvoSoft) [File not signed]
BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2017-08-13] (Ivaylo Beltchev -> IvoSoft) [File not signed]
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2017-08-13] (Ivaylo Beltchev -> IvoSoft) [File not signed]
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2017-08-13] (Ivaylo Beltchev -> IvoSoft) [File not signed]
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\localhost -> localhost
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2018-09-15 08:31 - 2019-12-15 09:24 - 000000027 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1 localhost
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\Control Panel\Desktop\\Wallpaper -> C:\Windows\web\wallpaper\Windows\img0.jpg
DNS Servers: 86.49.5.221 - 86.49.5.222
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
MSCONFIG\Services: AdobeARMservice => 2
MSCONFIG\Services: AdobeFlashPlayerUpdateSvc => 3
MSCONFIG\Services: AMD External Events Utility => 2
MSCONFIG\Services: Disc Soft Lite Bus Service => 3
MSCONFIG\Services: GoogleChromeElevationService => 3
MSCONFIG\Services: gupdate => 2
MSCONFIG\Services: gupdatem => 3
MSCONFIG\Services: HuaweiHiSuiteService64.exe => 2
MSCONFIG\Services: NVDisplay.ContainerLocalSystem => 2
MSCONFIG\Services: NvTelemetryContainer => 2
MSCONFIG\Services: TeamViewer => 2
HKLM\...\StartupApproved\Run: => "SecurityHealth"
HKLM\...\StartupApproved\Run: => "LogiOptions"
HKLM\...\StartupApproved\Run: => "Logitech Download Assistant"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\StartupApproved\Run: => "Zoner Photo Studio Autoupdate"
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"
HKU\S-1-5-21-1001266131-2733610755-3133150411-1001\...\StartupApproved\Run: => "utweb"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [UDP Query User{AEC13BEE-7FCE-4619-8C27-63ADE0F1C9B9}C:\users\hladk\appdata\local\programs\opera\70.0.3728.95\opera.exe] => (Block) C:\users\hladk\appdata\local\programs\opera\70.0.3728.95\opera.exe => No File
FirewallRules: [TCP Query User{3FB1CB04-AB40-4BCF-9E10-7A0B95FF2AE0}C:\users\hladk\appdata\local\programs\opera\70.0.3728.95\opera.exe] => (Block) C:\users\hladk\appdata\local\programs\opera\70.0.3728.95\opera.exe => No File
FirewallRules: [UDP Query User{2BD3D3B0-AF4A-4AB1-A736-6C279A1B97C9}C:\users\hladk\appdata\local\programs\opera\70.0.3728.71\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\70.0.3728.71\opera.exe => No File
FirewallRules: [TCP Query User{A6221505-6CF3-402E-A921-B701F5E4E82E}C:\users\hladk\appdata\local\programs\opera\70.0.3728.71\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\70.0.3728.71\opera.exe => No File
FirewallRules: [UDP Query User{36AAD69A-19FF-4610-87A5-24C373B8D06C}C:\users\hladk\appdata\local\programs\opera\69.0.3686.77\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\69.0.3686.77\opera.exe => No File
FirewallRules: [TCP Query User{6EA2B64B-5C54-447B-ACDA-3C716255F518}C:\users\hladk\appdata\local\programs\opera\69.0.3686.77\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\69.0.3686.77\opera.exe => No File
FirewallRules: [UDP Query User{FC90B73D-B5ED-444F-8AC2-39D0D7C4E383}C:\users\hladk\appdata\local\programs\opera\68.0.3618.173\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\68.0.3618.173\opera.exe => No File
FirewallRules: [TCP Query User{7F387485-89C1-4742-A0BE-2278198C43D8}C:\users\hladk\appdata\local\programs\opera\68.0.3618.173\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\68.0.3618.173\opera.exe => No File
FirewallRules: [UDP Query User{80ADBB38-C3A9-4F4B-A64D-20A7F1CB9549}C:\users\hladk\appdata\local\programs\opera\68.0.3618.125\opera.exe] => (Block) C:\users\hladk\appdata\local\programs\opera\68.0.3618.125\opera.exe => No File
FirewallRules: [TCP Query User{72E9A4F1-0F1E-4157-9810-B6A90D105C90}C:\users\hladk\appdata\local\programs\opera\68.0.3618.125\opera.exe] => (Block) C:\users\hladk\appdata\local\programs\opera\68.0.3618.125\opera.exe => No File
FirewallRules: [UDP Query User{F3189B20-1311-43E4-A00A-8B90E16FFDF8}C:\users\hladk\appdata\local\programs\opera\68.0.3618.125\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\68.0.3618.125\opera.exe => No File
FirewallRules: [TCP Query User{C0CEC372-FABE-4965-AB99-659649FCA6D3}C:\users\hladk\appdata\local\programs\opera\68.0.3618.125\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\68.0.3618.125\opera.exe => No File
FirewallRules: [UDP Query User{B5C534CA-DD90-4F00-A9DC-7AA1D67F503D}C:\users\hladk\appdata\local\programs\opera\68.0.3618.104\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\68.0.3618.104\opera.exe => No File
FirewallRules: [TCP Query User{21DF427C-07AB-4687-B000-215151C9D8D6}C:\users\hladk\appdata\local\programs\opera\68.0.3618.104\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\68.0.3618.104\opera.exe => No File
FirewallRules: [UDP Query User{908618FE-CC52-4A9A-8CFD-B0D4FD1BFFD9}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{4B00823D-32CE-46E5-B498-E26DE4638092}C:\program files\mozilla firefox\firefox.exe] => (Allow) C:\program files\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{4442A42E-65E3-4716-952B-475688E868FF}C:\users\hladk\appdata\local\programs\opera\68.0.3618.63\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\68.0.3618.63\opera.exe => No File
FirewallRules: [TCP Query User{92BFC1D3-BA0B-41E8-A911-90F9EC26A79E}C:\users\hladk\appdata\local\programs\opera\68.0.3618.63\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\68.0.3618.63\opera.exe => No File
FirewallRules: [UDP Query User{9253AB2C-7D13-4D93-BCF9-3415F7B3B48F}C:\program files\nová složka\bin\javaw.exe] => (Allow) C:\program files\nová složka\bin\javaw.exe
FirewallRules: [TCP Query User{48E0F537-E9AC-43DC-8170-0C64992FAFA8}C:\program files\nová složka\bin\javaw.exe] => (Allow) C:\program files\nová složka\bin\javaw.exe
FirewallRules: [UDP Query User{D6FAED8E-7A2C-4E93-9FEB-70FA3FC41A0E}C:\users\hladk\appdata\local\programs\opera\67.0.3575.137\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\67.0.3575.137\opera.exe => No File
FirewallRules: [TCP Query User{A3D7CEDF-5096-422A-9F28-995975DE50C1}C:\users\hladk\appdata\local\programs\opera\67.0.3575.137\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\67.0.3575.137\opera.exe => No File
FirewallRules: [UDP Query User{6BF4A7B2-BC35-4450-A564-9AB82F22B2A0}C:\users\hladk\appdata\local\programs\opera\67.0.3575.115\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\67.0.3575.115\opera.exe => No File
FirewallRules: [TCP Query User{13E0D06C-162C-4AAA-9C43-0E0C08E7B523}C:\users\hladk\appdata\local\programs\opera\67.0.3575.115\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\67.0.3575.115\opera.exe => No File
FirewallRules: [UDP Query User{235AE8F5-02D1-4521-921A-892F1E1B71CB}C:\users\hladk\appdata\local\programs\opera\67.0.3575.97\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\67.0.3575.97\opera.exe => No File
FirewallRules: [TCP Query User{DF7B7697-6433-4D50-85C2-827A1636BF1D}C:\users\hladk\appdata\local\programs\opera\67.0.3575.97\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\67.0.3575.97\opera.exe => No File
FirewallRules: [UDP Query User{F7C94FFB-E06D-43EB-90E2-4F863D0F45C5}C:\users\hladk\appdata\local\programs\opera\67.0.3575.79\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\67.0.3575.79\opera.exe => No File
FirewallRules: [TCP Query User{915C8622-F87F-49F1-BE74-3C4E5A70741D}C:\users\hladk\appdata\local\programs\opera\67.0.3575.79\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\67.0.3575.79\opera.exe => No File
FirewallRules: [{5C43BB95-AC66-4BC4-8CE4-83D7A4E57F08}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{1C1D8ACE-A4EB-43AC-9609-37A25BA1EC20}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{0D61D0BF-830C-485C-9EFA-ACFBD65BF807}C:\users\hladk\appdata\local\programs\opera\67.0.3575.53\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\67.0.3575.53\opera.exe => No File
FirewallRules: [TCP Query User{CFC8FE14-DD0E-45DB-9177-89804D9845CA}C:\users\hladk\appdata\local\programs\opera\67.0.3575.53\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\67.0.3575.53\opera.exe => No File
FirewallRules: [UDP Query User{154925E9-895E-4064-8E02-F855198144FF}C:\users\hladk\appdata\local\programs\opera\66.0.3515.115\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\66.0.3515.115\opera.exe => No File
FirewallRules: [TCP Query User{71B9F9AD-9D16-4D2C-9D78-A0C614D4042E}C:\users\hladk\appdata\local\programs\opera\66.0.3515.115\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\66.0.3515.115\opera.exe => No File
FirewallRules: [UDP Query User{6097984C-D97B-492C-9A07-F4B8A52A21BF}C:\users\hladk\appdata\local\programs\opera\66.0.3515.103\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\66.0.3515.103\opera.exe => No File
FirewallRules: [TCP Query User{C4CC4BE6-CA68-4AEE-BF64-61F0710225F5}C:\users\hladk\appdata\local\programs\opera\66.0.3515.103\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\66.0.3515.103\opera.exe => No File
FirewallRules: [UDP Query User{CD9399B9-240E-4624-84FF-A76C4BF50A94}C:\users\hladk\appdata\local\programs\opera\66.0.3515.72\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\66.0.3515.72\opera.exe => No File
FirewallRules: [TCP Query User{58534CAB-DBC9-4018-B5EA-AE3AEDB8B716}C:\users\hladk\appdata\local\programs\opera\66.0.3515.72\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\66.0.3515.72\opera.exe => No File
FirewallRules: [UDP Query User{A03B30D3-8138-4755-A246-04124C3CECA7}C:\users\hladk\appdata\local\programs\opera\66.0.3515.44\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\66.0.3515.44\opera.exe => No File
FirewallRules: [TCP Query User{7E18BFFB-ED71-482C-BF31-09899779D2F4}C:\users\hladk\appdata\local\programs\opera\66.0.3515.44\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\66.0.3515.44\opera.exe => No File
FirewallRules: [UDP Query User{7C1683A2-CBE1-435E-A8F0-2B410EC56B1A}C:\gog games\divinity - original sin 2\defed\bin\eocapp.exe] => (Allow) C:\gog games\divinity - original sin 2\defed\bin\eocapp.exe (Larian Studios -> )
FirewallRules: [TCP Query User{555844A4-C5B2-4F24-A023-7E8CB235EBE3}C:\gog games\divinity - original sin 2\defed\bin\eocapp.exe] => (Allow) C:\gog games\divinity - original sin 2\defed\bin\eocapp.exe (Larian Studios -> )
FirewallRules: [UDP Query User{8DD0C2F1-88B3-46E6-A253-45A1061A6497}C:\program files\nová složka\bin\javaw.exe] => (Allow) C:\program files\nová složka\bin\javaw.exe
FirewallRules: [TCP Query User{651A057B-734B-4FCF-AC7E-79516B6A06AC}C:\program files\nová složka\bin\javaw.exe] => (Allow) C:\program files\nová složka\bin\javaw.exe
FirewallRules: [UDP Query User{A2A60AB5-8E13-443B-A46D-3C33AD6FB706}C:\users\hladk\appdata\local\programs\opera\65.0.3467.78\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\65.0.3467.78\opera.exe => No File
FirewallRules: [TCP Query User{CD907C87-0A34-4854-A3D2-A7CBB4F1D180}C:\users\hladk\appdata\local\programs\opera\65.0.3467.78\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\65.0.3467.78\opera.exe => No File
FirewallRules: [UDP Query User{01FE5073-FD07-4C54-ABB4-9A2800D99785}C:\users\hladk\appdata\local\programs\opera\65.0.3467.72\opera.exe] => (Block) C:\users\hladk\appdata\local\programs\opera\65.0.3467.72\opera.exe => No File
FirewallRules: [TCP Query User{0CE15A22-6C01-425A-8D7D-572C42ABF0BC}C:\users\hladk\appdata\local\programs\opera\65.0.3467.72\opera.exe] => (Block) C:\users\hladk\appdata\local\programs\opera\65.0.3467.72\opera.exe => No File
FirewallRules: [UDP Query User{E7EF39A2-3D9F-43E8-B981-99566F76651B}C:\gog games\divinity - original sin 2\classic\eocapp.exe] => (Allow) C:\gog games\divinity - original sin 2\classic\eocapp.exe (Larian Studios -> )
FirewallRules: [TCP Query User{56F37981-C9BC-4AA1-AE8B-F9CAF543E069}C:\gog games\divinity - original sin 2\classic\eocapp.exe] => (Allow) C:\gog games\divinity - original sin 2\classic\eocapp.exe (Larian Studios -> )
FirewallRules: [UDP Query User{17521C2F-AD1B-461C-9C1B-F8D501E52505}C:\users\hladk\appdata\local\programs\opera\65.0.3467.62\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\65.0.3467.62\opera.exe => No File
FirewallRules: [TCP Query User{C598D783-777A-4EBF-85C7-646BF25CAE1E}C:\users\hladk\appdata\local\programs\opera\65.0.3467.62\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\65.0.3467.62\opera.exe => No File
FirewallRules: [UDP Query User{83FFB050-CD4F-4511-9E9C-7C7189F928CC}C:\users\hladk\appdata\local\programs\opera\65.0.3467.48\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\65.0.3467.48\opera.exe => No File
FirewallRules: [TCP Query User{648ABAE2-65AE-467C-9F48-81304EB5A9F7}C:\users\hladk\appdata\local\programs\opera\65.0.3467.48\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\65.0.3467.48\opera.exe => No File
FirewallRules: [UDP Query User{797FE114-DC6F-449F-8BA2-305AE3CE12A5}C:\program files\java\jre1.8.0_231\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_231\bin\javaw.exe => No File
FirewallRules: [TCP Query User{AEF95643-E1DD-4F0E-8E71-2FFFBC253EA0}C:\program files\java\jre1.8.0_231\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_231\bin\javaw.exe => No File
FirewallRules: [UDP Query User{EDC27545-5BF3-4D0E-BF64-7A2E88E38ADD}C:\users\hladk\downloads\divinity original sin 2 multi5\bin\eocapp.exe] => (Allow) C:\users\hladk\downloads\divinity original sin 2 multi5\bin\eocapp.exe (Larian Studios -> )
FirewallRules: [TCP Query User{A279A69B-E698-4EC3-B9E4-9BBE1EAF73D9}C:\users\hladk\downloads\divinity original sin 2 multi5\bin\eocapp.exe] => (Allow) C:\users\hladk\downloads\divinity original sin 2 multi5\bin\eocapp.exe (Larian Studios -> )
FirewallRules: [{2BC1F1A8-B422-456C-9F41-F2341EE9EA85}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [{77F15D8E-B478-4C82-AA6F-8C4CCBF1ABB1}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [TCP Query User{42FFCE23-8ABF-42CB-8EED-BFE8B47302A3}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe (Blizzard Entertainment, Inc. -> )
FirewallRules: [UDP Query User{8870A970-7BB9-49CC-BA25-BC47DCB5C2C1}C:\program files (x86)\hearthstone\hearthstone.exe] => (Allow) C:\program files (x86)\hearthstone\hearthstone.exe (Blizzard Entertainment, Inc. -> )
FirewallRules: [TCP Query User{5EF78676-80DB-487C-9757-1562BF45A950}C:\program files\java\jre1.8.0_201\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_201\bin\javaw.exe => No File
FirewallRules: [UDP Query User{407893BF-943B-4F17-B04F-00F258680FB1}C:\program files\java\jre1.8.0_201\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_201\bin\javaw.exe => No File
FirewallRules: [{D2247CA7-CF3D-4B68-A6DF-B895CA833728}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{A5DC32B9-D0EB-4CCD-88F0-C7668B67E69A}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{537ECD41-1A17-4530-A8B9-8BC143CC2445}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{33AD07A3-9CDD-4FE2-9547-1380D9B44B1E}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [TCP Query User{35B12E08-13D8-4621-901C-A47EE7E42F6B}C:\program files\java\jre1.8.0_211\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_211\bin\javaw.exe => No File
FirewallRules: [UDP Query User{A7E9158F-D429-4B37-97C8-8BDAF0E08F8C}C:\program files\java\jre1.8.0_211\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_211\bin\javaw.exe => No File
FirewallRules: [{5B68CDC7-3BFF-40ED-8502-E91BB11F713B}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe => No File
FirewallRules: [{5233E68C-3582-46D9-A6E1-40B09C49F909}] => (Allow) C:\Program Files (x86)\uTorrent\uTorrent.exe => No File
FirewallRules: [TCP Query User{F42F9F03-7347-4E1A-AEC6-FFCD080CCFD4}C:\program files (x86)\utorrent.exe] => (Allow) C:\program files (x86)\utorrent.exe => No File
FirewallRules: [UDP Query User{D9197196-9980-453A-AFB2-67F94269D10D}C:\program files (x86)\utorrent.exe] => (Allow) C:\program files (x86)\utorrent.exe => No File
FirewallRules: [{2DE037A7-01D4-45E5-A1A4-DF76F111F791}] => (Allow) C:\ProgramData\Logishrd\LogiOptions\Software\Current\LogiOptionsMgr.EXE (Logitech Inc -> Logitech, Inc.)
FirewallRules: [TCP Query User{2D79C30D-BB7F-4D34-BF86-D9682FD6E80F}C:\program files\java\jre1.8.0_221\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_221\bin\javaw.exe => No File
FirewallRules: [UDP Query User{849A800C-FADA-4368-B463-4CA0AF49AC97}C:\program files\java\jre1.8.0_221\bin\javaw.exe] => (Allow) C:\program files\java\jre1.8.0_221\bin\javaw.exe => No File
FirewallRules: [TCP Query User{7C138555-9143-4D6A-9DC7-90E1DB5940D9}C:\users\hladk\appdata\local\programs\opera\70.0.3728.106\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\70.0.3728.106\opera.exe => No File
FirewallRules: [UDP Query User{EF545FAE-C620-4053-A16C-7277E7506F0D}C:\users\hladk\appdata\local\programs\opera\70.0.3728.106\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\70.0.3728.106\opera.exe => No File
FirewallRules: [TCP Query User{5562B3B0-3416-46BE-A488-08E2362044AE}C:\users\hladk\appdata\local\programs\opera\70.0.3728.154\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\70.0.3728.154\opera.exe => No File
FirewallRules: [UDP Query User{5ED12D5F-3182-4775-B489-FEE713D9E0F6}C:\users\hladk\appdata\local\programs\opera\70.0.3728.154\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\70.0.3728.154\opera.exe => No File
FirewallRules: [TCP Query User{DCB0923E-31E8-4BFA-9418-7AF1BCF76186}C:\users\hladk\appdata\local\programs\opera\70.0.3728.178\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\70.0.3728.178\opera.exe => No File
FirewallRules: [UDP Query User{909145B2-3AA4-4D3E-A4D2-77C102322219}C:\users\hladk\appdata\local\programs\opera\70.0.3728.178\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\70.0.3728.178\opera.exe => No File
FirewallRules: [TCP Query User{7E00704A-A48F-4DB4-841B-26DE584CBD2E}C:\users\hladk\appdata\local\programs\opera\70.0.3728.189\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\70.0.3728.189\opera.exe => No File
FirewallRules: [UDP Query User{C05BA804-3886-4637-A912-0240FA199996}C:\users\hladk\appdata\local\programs\opera\70.0.3728.189\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\70.0.3728.189\opera.exe => No File
FirewallRules: [TCP Query User{558FF623-ED78-460F-B7A4-BDE2D4B843C4}C:\users\hladk\appdata\local\programs\opera\71.0.3770.198\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\71.0.3770.198\opera.exe => No File
FirewallRules: [UDP Query User{D88D9356-1CE5-43B8-AFA6-A7D568A51AE9}C:\users\hladk\appdata\local\programs\opera\71.0.3770.198\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\71.0.3770.198\opera.exe => No File
FirewallRules: [TCP Query User{B9361DCB-5714-45DB-BA31-9F18B970B4B7}C:\users\hladk\appdata\local\programs\opera\71.0.3770.228\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\71.0.3770.228\opera.exe => No File
FirewallRules: [UDP Query User{78994A18-CCA1-4C2B-8DD1-6005D5AF8DBC}C:\users\hladk\appdata\local\programs\opera\71.0.3770.228\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\71.0.3770.228\opera.exe => No File
FirewallRules: [TCP Query User{E1928307-104F-43E5-BB36-E6FB6947A5F8}C:\users\hladk\appdata\local\programs\opera\71.0.3770.271\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\71.0.3770.271\opera.exe => No File
FirewallRules: [UDP Query User{EFE5D62E-DD74-4B99-9DEC-C16ED4E1F38B}C:\users\hladk\appdata\local\programs\opera\71.0.3770.271\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\71.0.3770.271\opera.exe => No File
FirewallRules: [TCP Query User{838ABB31-B739-4952-91AE-A938FF0F6B38}C:\users\hladk\appdata\local\programs\opera\71.0.3770.284\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\71.0.3770.284\opera.exe => No File
FirewallRules: [UDP Query User{A31A733E-60D2-403C-83E8-96BC19EB3E43}C:\users\hladk\appdata\local\programs\opera\71.0.3770.284\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\71.0.3770.284\opera.exe => No File
FirewallRules: [TCP Query User{74293A31-40F4-4010-B82E-DB28630FC1F7}C:\users\hladk\appdata\local\programs\opera\72.0.3815.186\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\72.0.3815.186\opera.exe => No File
FirewallRules: [UDP Query User{6DCD16B6-DA09-43A4-9CB0-EEBC155AC81E}C:\users\hladk\appdata\local\programs\opera\72.0.3815.186\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\72.0.3815.186\opera.exe => No File
FirewallRules: [TCP Query User{41BC202C-3896-4D89-9832-35AF68DBEFE1}C:\users\hladk\appdata\local\programs\opera\72.0.3815.320\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\72.0.3815.320\opera.exe => No File
FirewallRules: [UDP Query User{E20A8878-3EFA-4245-B149-5BA50A4D4CF1}C:\users\hladk\appdata\local\programs\opera\72.0.3815.320\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\72.0.3815.320\opera.exe => No File
FirewallRules: [TCP Query User{747B9B7E-BABD-48E6-B310-BF3AD6ABAA72}C:\users\hladk\appdata\local\programs\opera\72.0.3815.400\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\72.0.3815.400\opera.exe => No File
FirewallRules: [UDP Query User{6B5F7A21-AD66-4E4A-8FD7-C0F808642F7E}C:\users\hladk\appdata\local\programs\opera\72.0.3815.400\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\72.0.3815.400\opera.exe => No File
FirewallRules: [TCP Query User{70183EC0-9735-40A4-83BA-B65D9A44FECB}C:\users\hladk\appdata\local\programs\opera\73.0.3856.284\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\73.0.3856.284\opera.exe => No File
FirewallRules: [UDP Query User{80B2B39A-41A2-4DB4-B2CE-3494DF3337E4}C:\users\hladk\appdata\local\programs\opera\73.0.3856.284\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\73.0.3856.284\opera.exe => No File
FirewallRules: [TCP Query User{8E40A96E-88A5-4260-84C7-6194532CC0BF}C:\users\hladk\appdata\local\programs\opera\73.0.3856.329\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\73.0.3856.329\opera.exe => No File
FirewallRules: [UDP Query User{1D200F28-6EF9-4DFF-9CA2-C405E2846E04}C:\users\hladk\appdata\local\programs\opera\73.0.3856.329\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\73.0.3856.329\opera.exe => No File
FirewallRules: [TCP Query User{5F770C7C-7222-4E45-A754-D0E4C74E8552}C:\users\hladk\appdata\local\programs\opera\73.0.3856.344\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\73.0.3856.344\opera.exe => No File
FirewallRules: [UDP Query User{02E9DE4D-2227-4777-A894-B9ECC55E71ED}C:\users\hladk\appdata\local\programs\opera\73.0.3856.344\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\73.0.3856.344\opera.exe => No File
FirewallRules: [TCP Query User{A63A85B0-EE53-45AE-A505-6097DDA77A34}C:\users\hladk\appdata\local\programs\opera\74.0.3911.107\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\74.0.3911.107\opera.exe => No File
FirewallRules: [UDP Query User{6F631C14-2AFD-4718-A64B-46E0AFB24FC9}C:\users\hladk\appdata\local\programs\opera\74.0.3911.107\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\74.0.3911.107\opera.exe => No File
FirewallRules: [TCP Query User{9183235A-BC47-4373-86E5-81535948CCBB}C:\users\hladk\appdata\local\programs\opera\74.0.3911.160\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\74.0.3911.160\opera.exe => No File
FirewallRules: [UDP Query User{ABF56DDE-D0D8-48E5-9950-CF0823DA22D5}C:\users\hladk\appdata\local\programs\opera\74.0.3911.160\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\74.0.3911.160\opera.exe => No File
FirewallRules: [TCP Query User{7924D7F9-35B5-4323-8CD6-BF7FB02C27D1}C:\users\hladk\appdata\local\programs\opera\74.0.3911.203\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\74.0.3911.203\opera.exe => No File
FirewallRules: [UDP Query User{CE9F2AB9-F350-4173-99FE-8C9EA59BABEA}C:\users\hladk\appdata\local\programs\opera\74.0.3911.203\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\74.0.3911.203\opera.exe => No File
FirewallRules: [TCP Query User{627D6D88-BCD9-4B11-8752-7033CE67A43E}C:\users\hladk\appdata\local\programs\opera\74.0.3911.218\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\74.0.3911.218\opera.exe => No File
FirewallRules: [UDP Query User{BF44925E-976B-4681-A7BC-ADD952905D4A}C:\users\hladk\appdata\local\programs\opera\74.0.3911.218\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\74.0.3911.218\opera.exe => No File
FirewallRules: [TCP Query User{2B7C2FCC-8FE5-4DA7-BD8B-D927A75B3B71}C:\users\hladk\appdata\local\programs\opera\75.0.3969.149\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\75.0.3969.149\opera.exe => No File
FirewallRules: [UDP Query User{5F64FDD9-1BB6-480D-9924-05DBE3BCEFFD}C:\users\hladk\appdata\local\programs\opera\75.0.3969.149\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\75.0.3969.149\opera.exe => No File
FirewallRules: [TCP Query User{1986AD46-BD8E-4F25-B06C-EDAABD15F373}C:\users\hladk\appdata\local\programs\opera\75.0.3969.171\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\75.0.3969.171\opera.exe => No File
FirewallRules: [UDP Query User{E73F905E-2295-4172-B8AF-F6CAADEC2864}C:\users\hladk\appdata\local\programs\opera\75.0.3969.171\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\75.0.3969.171\opera.exe => No File
FirewallRules: [TCP Query User{84A9739B-671F-4E4A-BE63-6EE1BD489B64}C:\users\hladk\appdata\local\programs\opera\75.0.3969.218\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\75.0.3969.218\opera.exe => No File
FirewallRules: [UDP Query User{E21BB260-186E-4361-A69F-BA7AB9DF0FD8}C:\users\hladk\appdata\local\programs\opera\75.0.3969.218\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\75.0.3969.218\opera.exe => No File
FirewallRules: [{6AD2C198-35E1-41D5-93C8-BEF3AF17B699}] => (Allow) C:\Users\Hladk\AppData\Roaming\Zoom\bin\Zoom.exe => No File
FirewallRules: [{5727A7C0-41CE-441B-9285-61A040416076}] => (Allow) C:\Users\Hladk\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [{2CB56624-7D8F-45E3-93D6-FF7D65E68D9A}] => (Allow) C:\Users\Hladk\AppData\Roaming\Zoom\bin\airhost.exe => No File
FirewallRules: [TCP Query User{0B8B5CD6-3EF7-4242-A04C-FDBB1A94F158}C:\users\hladk\appdata\local\programs\opera\75.0.3969.243\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\75.0.3969.243\opera.exe => No File
FirewallRules: [UDP Query User{DDC5EE6F-2E52-4F48-A8B5-F521E1552474}C:\users\hladk\appdata\local\programs\opera\75.0.3969.243\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\75.0.3969.243\opera.exe => No File
FirewallRules: [TCP Query User{2A9894EC-FF19-4E3B-B092-0F1FDEB04C97}C:\users\hladk\appdata\local\programs\opera\76.0.4017.107\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\76.0.4017.107\opera.exe => No File
FirewallRules: [UDP Query User{B21566DA-243C-47F3-BA01-30BE370CA6B1}C:\users\hladk\appdata\local\programs\opera\76.0.4017.107\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\76.0.4017.107\opera.exe => No File
FirewallRules: [TCP Query User{D81E2147-F2A2-4105-A36B-8EF7FEA04452}C:\users\hladk\appdata\local\programs\opera\76.0.4017.123\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\76.0.4017.123\opera.exe => No File
FirewallRules: [UDP Query User{36D19403-1991-4E8E-8145-7E804CC73AD6}C:\users\hladk\appdata\local\programs\opera\76.0.4017.123\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\76.0.4017.123\opera.exe => No File
FirewallRules: [{5F3EA87A-90F3-4626-AACA-7916A3BFD2EA}] => (Allow) C:\Program Files\BlueStacks_bgp64\HD-Player.exe => No File
FirewallRules: [TCP Query User{E18E0E38-4030-45E9-BC07-B643BC3C4B39}C:\users\hladk\appdata\local\programs\opera\76.0.4017.154\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\76.0.4017.154\opera.exe => No File
FirewallRules: [UDP Query User{F626C883-92B2-44B3-9E54-9A2F8C1CE7DE}C:\users\hladk\appdata\local\programs\opera\76.0.4017.154\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\76.0.4017.154\opera.exe => No File
FirewallRules: [TCP Query User{A719F233-9069-481B-8DB5-6F601CAAC967}C:\users\hladk\appdata\local\programs\opera\76.0.4017.177\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\76.0.4017.177\opera.exe => No File
FirewallRules: [UDP Query User{233055A1-F9BA-432C-8A80-5B4EE0D15D71}C:\users\hladk\appdata\local\programs\opera\76.0.4017.177\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\76.0.4017.177\opera.exe => No File
FirewallRules: [TCP Query User{2E264129-0F0B-45CD-B679-095140BBDFF1}C:\users\hladk\appdata\local\programs\opera\77.0.4054.90\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\77.0.4054.90\opera.exe => No File
FirewallRules: [UDP Query User{F1F29FE8-D9E0-40E7-AB99-CEEA1A86F4A7}C:\users\hladk\appdata\local\programs\opera\77.0.4054.90\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\77.0.4054.90\opera.exe => No File
FirewallRules: [TCP Query User{7E44BE17-DFE1-4760-8240-B35BBF487BCE}C:\users\hladk\appdata\local\programs\opera\77.0.4054.203\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\77.0.4054.203\opera.exe => No File
FirewallRules: [UDP Query User{D07DE422-719C-41B7-8B09-27862BEAFE7B}C:\users\hladk\appdata\local\programs\opera\77.0.4054.203\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\77.0.4054.203\opera.exe => No File
FirewallRules: [TCP Query User{7F6993DF-F557-4498-967B-3704A1682B76}C:\users\hladk\appdata\local\programs\opera\77.0.4054.277\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\77.0.4054.277\opera.exe => No File
FirewallRules: [UDP Query User{47B5B3C4-AD76-4198-B173-3303DA734D9E}C:\users\hladk\appdata\local\programs\opera\77.0.4054.277\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\77.0.4054.277\opera.exe => No File
FirewallRules: [TCP Query User{A456D408-B363-4D5D-82F2-6FE057DB27F4}C:\users\hladk\appdata\local\programs\opera\78.0.4093.112\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\78.0.4093.112\opera.exe => No File
FirewallRules: [UDP Query User{AA101A67-B4FA-46B8-85C8-7F36645BDDB5}C:\users\hladk\appdata\local\programs\opera\78.0.4093.112\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\78.0.4093.112\opera.exe => No File
FirewallRules: [TCP Query User{E51C7860-7EBA-4373-B473-B93210B56DBC}C:\users\hladk\appdata\local\programs\opera\78.0.4093.147\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\78.0.4093.147\opera.exe => No File
FirewallRules: [UDP Query User{90595795-29E6-41AA-89FC-9352F12EEDA0}C:\users\hladk\appdata\local\programs\opera\78.0.4093.147\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\78.0.4093.147\opera.exe => No File
FirewallRules: [TCP Query User{C01512D0-38D4-4C20-95A2-E585C4B03216}C:\users\hladk\appdata\local\programs\opera\78.0.4093.184\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\78.0.4093.184\opera.exe => No File
FirewallRules: [UDP Query User{58EF3087-3590-4AFF-B2CC-C249EAB2FC28}C:\users\hladk\appdata\local\programs\opera\78.0.4093.184\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\78.0.4093.184\opera.exe => No File
FirewallRules: [TCP Query User{F23A8FDD-D625-420E-A53D-69641E93598A}C:\users\hladk\appdata\local\programs\opera\78.0.4093.231\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\78.0.4093.231\opera.exe => No File
FirewallRules: [UDP Query User{0AC75736-2CD5-4885-B77F-992CF97D2E78}C:\users\hladk\appdata\local\programs\opera\78.0.4093.231\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\78.0.4093.231\opera.exe => No File
FirewallRules: [TCP Query User{760BDFEB-F33E-4689-995B-8F4F61C78C5A}C:\users\hladk\appdata\local\programs\opera\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [UDP Query User{AADA818B-AD5A-4D84-B0A5-143CE63FB9B8}C:\users\hladk\appdata\local\programs\opera\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [TCP Query User{FD50663E-8A65-4975-9C1B-3C10D164B9A7}C:\users\hladk\appdata\local\programs\opera\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [UDP Query User{806C1030-C04C-4C00-AA79-B4BA3E7C9A13}C:\users\hladk\appdata\local\programs\opera\opera.exe] => (Allow) C:\users\hladk\appdata\local\programs\opera\opera.exe (Opera Software AS -> Opera Software)
FirewallRules: [{ACC24E13-5D18-4503-8CE7-4993EA376E8D}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{D3D0F170-3737-4016-AE79-6AD35FE41FB9}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{B07B4BFB-A714-4F05-A364-6A7137AECAD6}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{E2C7161C-4B74-44D4-9C09-60948711F109}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{D289E749-8986-475A-8F7D-1651CA56DAB5}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.178.765.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{916C6619-BA54-40CD-B82F-44A0E15156F0}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.178.765.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{89452BB3-BD71-452B-AE1B-F307B427A9D8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.178.765.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{E5239BDA-39BB-4DFF-9AE6-03EDA85D6DE1}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.178.765.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{77212C9C-1635-43A5-AD94-607DD5AAEB5B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.178.765.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{512FF42D-D80D-4FCE-97D6-59980ED20D64}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.178.765.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{03C8581D-69F0-4A6B-969A-E90CEA7EAA68}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.178.765.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{2C45E231-1AF5-4B0A-9065-D916F3050F32}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.178.765.0_x86__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{323B7796-02E4-4D6F-B742-515804475D13}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
==================== Restore Points =========================
02-02-2022 18:03:38 Naplánovaný kontrolní bod
==================== Faulty Device Manager Devices ============
Name: AMD Radeon(TM) Vega 8 Graphics
Description: AMD Radeon(TM) Vega 8 Graphics
Class Guid: {4d36e968-e325-11ce-bfc1-08002be10318}
Manufacturer: Advanced Micro Devices, Inc.
Service: amdwddmg
Problem: : Windows has stopped this device because it has reported problems. (Code 43)
Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation.
==================== Event log errors: ========================
Application errors:
==================
Error: (01/04/2022 03:55:00 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program Club Vegas.exe verze 0.0.0.0 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.
ID procesu: 5340
Čas spuštění: 01d8012e72bcaa63
Čas ukončení: 4294967295
Cesta k aplikaci: C:\Program Files\WindowsApps\BagelcodeInc.47921C88A920C_116.0.13.0_x64__5dvc9f3b38e20\Club Vegas.exe
ID hlášení: 9518ac9a-a91b-4fa4-8377-dad470520854
Úplný název balíčku s chybou: BagelcodeInc.47921C88A920C_116.0.13.0_x64__5dvc9f3b38e20
ID aplikace relativní podle balíčku s chybou: App
Typ zablokování: Quiesce
Error: (11/26/2021 12:26:28 PM) (Source: Firefox Default Browser Agent) (EventID: 12029) (User: )
Description: Event-ID 12029
Error: (11/26/2021 12:26:28 PM) (Source: Firefox Default Browser Agent) (EventID: 0) (User: )
Description: Event-ID 0
Error: (11/10/2021 05:40:08 PM) (Source: Microsoft-Windows-AppModel-State) (EventID: 11) (User: DESKTOP-1T75NO9)
Description: Microsoft.YourPhone_8wekyb3d8bbwe-2147023878
Error: (10/24/2021 04:57:51 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny QueryFullProcessImageNameW došlo k neočekávané chybě. hr= 0x8007001f, Zařízení připojené k systému nefunguje.
.
Operace:
Spouštění asynchronní operace
Kontext:
Aktuální stav: DoSnapshotSet
Error: (10/12/2021 05:33:06 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: datovka.exe, verze: 4.15.6.0, časové razítko: 0x5fbbbbb5
Název chybujícího modulu: qsqlite.dll, verze: 5.15.1.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x0000000000054d3e
ID chybujícího procesu: 0x1db0
Čas spuštění chybující aplikace: 0x01d7bf2236f3ac68
Cesta k chybující aplikaci: C:\Program Files\CZ.NIC\Datovka\datovka.exe
Cesta k chybujícímu modulu: C:\Program Files\CZ.NIC\Datovka\plugins\sqldrivers\qsqlite.dll
ID zprávy: 217f8799-1a47-4436-a636-6ab6dc2abbae
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (07/02/2021 02:09:53 PM) (Source: Firefox Default Browser Agent) (EventID: 12029) (User: )
Description: Event-ID 12029
Error: (07/02/2021 02:09:53 PM) (Source: Firefox Default Browser Agent) (EventID: 0) (User: )
Description: Event-ID 0
System errors:
=============
Error: (02/09/2022 11:32:41 AM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (11:17:40, 09.02.2022) bylo neočekávané.
Error: (02/09/2022 09:22:25 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba eapihdrv neuspěla při spuštění v důsledku následující chyby:
Načtení tohoto ovladače je blokováno.
Error: (02/09/2022 09:22:25 AM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\Hladk\AppData\Local\Temp\ehdrv.sys
Error: (02/09/2022 09:22:24 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba eapihdrv neuspěla při spuštění v důsledku následující chyby:
Načtení tohoto ovladače je blokováno.
Error: (02/09/2022 09:22:24 AM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\Hladk\AppData\Local\Temp\ehdrv.sys
Error: (02/09/2022 09:22:24 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba eapihdrv neuspěla při spuštění v důsledku následující chyby:
Načtení tohoto ovladače je blokováno.
Error: (02/09/2022 09:22:24 AM) (Source: Application Popup) (EventID: 1060) (User: )
Description: \??\C:\Users\Hladk\AppData\Local\Temp\ehdrv.sys
Error: (02/09/2022 09:22:24 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba eapihdrv neuspěla při spuštění v důsledku následující chyby:
Načtení tohoto ovladače je blokováno.
Windows Defender:
================
Date: 2022-02-09 20:18:35
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Trojan:PowerShell/Obfuse.SM!MTB
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\Hladk\AppData\Local\Temp\d127fe0b-873a-40cb-960f-1ebf18f61cbb.tmp
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Ochrana v reálném čase
Uživatel: DESKTOP-1T75NO9\Hladk
Název procesu: C:\Users\Hladk\AppData\Local\Programs\Opera\opera.exe
Verze bezpečnostních informací: AV: 1.357.347.0, AS: 1.357.347.0, NIS: 1.357.347.0
Verze modulu: AM: 1.1.18900.2, NIS: 1.1.18900.2
Date: 2022-02-09 11:33:42
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Trojan:PowerShell/Obfuse.SM!MTB
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\Hladk\AppData\Local\Temp\22a5be45-6ec2-43cb-a7c6-1ce30a881e4f.tmp; file:_C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\adblocker_data\fe59aa748b9000bb96afc12e6b7f71e5.easylist
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Ochrana v reálném čase
Uživatel: DESKTOP-1T75NO9\Hladk
Název procesu: C:\Users\Hladk\AppData\Local\Programs\Opera\opera.exe
Verze bezpečnostních informací: AV: 1.357.335.0, AS: 1.357.335.0, NIS: 1.357.335.0
Verze modulu: AM: 1.1.18900.2, NIS: 1.1.18900.2
Date: 2022-02-09 11:33:24
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Trojan:PowerShell/Obfuse.SM!MTB
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\Hladk\AppData\Local\Temp\22a5be45-6ec2-43cb-a7c6-1ce30a881e4f.tmp; file:_C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\adblocker_data\fe59aa748b9000bb96afc12e6b7f71e5.easylist
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Ochrana v reálném čase
Uživatel: DESKTOP-1T75NO9\Hladk
Název procesu: C:\Users\Hladk\AppData\Local\Programs\Opera\opera.exe
Verze bezpečnostních informací: AV: 1.357.335.0, AS: 1.357.335.0, NIS: 1.357.335.0
Verze modulu: AM: 1.1.18900.2, NIS: 1.1.18900.2
Date: 2022-02-09 11:33:21
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Trojan:PowerShell/Obfuse.SM!MTB
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\adblocker_data\fe59aa748b9000bb96afc12e6b7f71e5.easylist
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Ochrana v reálném čase
Uživatel: DESKTOP-1T75NO9\Hladk
Název procesu: C:\Users\Hladk\AppData\Local\Programs\Opera\opera.exe
Verze bezpečnostních informací: AV: 1.357.335.0, AS: 1.357.335.0, NIS: 1.357.335.0
Verze modulu: AM: 1.1.18900.2, NIS: 1.1.18900.2
Date: 2022-02-09 11:33:08
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Trojan:PowerShell/Obfuse.SM!MTB
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\Hladk\AppData\Roaming\Opera Software\Opera Stable\adblocker_data\fe59aa748b9000bb96afc12e6b7f71e5.easylist
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Ochrana v reálném čase
Uživatel: DESKTOP-1T75NO9\Hladk
Název procesu: C:\Users\Hladk\AppData\Local\Programs\Opera\opera.exe
Verze bezpečnostních informací: AV: 1.357.335.0, AS: 1.357.335.0, NIS: 1.357.335.0
Verze modulu: AM: 1.1.18900.2, NIS: 1.1.18900.2
CodeIntegrity:
===============
Date: 2022-01-07 21:30:02
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume1\Windows\System32\DriverStore\FileRepository\nvmd.inf_amd64_1408eaf9a25ed64f\NvCamera\NvCameraAllowlisting64.dll because the set of per-page image hashes could not be found on the system.
Date: 2020-09-16 21:52:34
Description:
Code Integrity determined that a process (\Device\HarddiskVolume1\Users\Hladk\AppData\Local\Programs\Opera\70.0.3728.189\opera.exe) attempted to load \Device\HarddiskVolume1\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
Date: 2020-09-05 20:50:32
Description:
Code Integrity determined that a process (\Device\HarddiskVolume1\Users\Hladk\AppData\Local\Programs\Opera\70.0.3728.106\opera.exe) attempted to load \Device\HarddiskVolume1\Program Files\Malwarebytes\Anti-Malware\mbae64.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends Inc. P4.70 02/09/2018
Motherboard: ASRock AB350M Pro4
Processor: AMD Ryzen 3 2200G with Radeon Vega Graphics
Percentage of memory in use: 35%
Total physical RAM: 15289.96 MB
Available physical RAM: 9870.55 MB
Total Virtual: 17593.96 MB
Available Virtual: 10568.17 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:222.53 GB) (Free:47.11 GB) NTFS ==>[drive with boot components (obtained from BCD)]
\\?\Volume{03d1bb58-0000-0000-0000-30c437000000}\ () (Fixed) (Total:0.5 GB) (Free:0.08 GB) NTFS
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 223.6 GB) (Disk ID: 03D1BB58)
Partition 1: (Active) - (Size=222.5 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=515 MB) - (Type=27)
==================== End of Addition.txt =======================