Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kontrolu logu

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Zamčeno
Zpráva
Autor
Trejsi91
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 09 bře 2019 07:54

Prosím o kontrolu logu

#1 Příspěvek od Trejsi91 »

Dobrý den,

prosím o kontrolu logu. Nikdy se žádná větší kontrola na tomto PC nedělala a je velice pravděpodobné, že je v něm něco co by být nemuselo. :)
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 16-02-2023
Ran by pfejt (administrator) on DESKTOP-VE8FI1A (HP 550-139nc) (18-02-2023 14:39:41)
Running from D:\Downloads\scoped_dir14072_623952249
Loaded Profiles: pfejt
Platform: Microsoft Windows 10 Home Version 22H2 19045.2604 (X64) Language: Čeština (Česko)
Default browser: Opera
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe ->) (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(C:\Program Files (x86)\Opera\opera.exe ->) (Opera Norway AS -> Opera Software) C:\Program Files (x86)\Opera\95.0.4635.37\opera_crashreporter.exe
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <8>
(C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
(C:\Program Files\Bitdefender Agent\ProductAgentService.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\26.0.1.233\DiscoverySrv.exe
(C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdagent.exe
(C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdntwrk.exe
(C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\odscanui.exe
(C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\seccenter.exe
(C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (S.C. BITDEFENDER S.R.L. -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\wsccommunicator.exe
(C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(D:\Games\Epic\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe ->) (Epic Games Inc. -> Epic Games, Inc.) D:\Games\Epic\Epic Games\Launcher\Engine\Binaries\Win64\EpicWebHelper.exe <2>
(explorer.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender VPN\bdvpnapp.exe
(explorer.exe ->) (Epic Games Inc. -> Epic Games, Inc.) D:\Games\Epic\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe
(explorer.exe ->) (Ivaylo Beltchev -> IvoSoft) [File not signed] C:\Program Files\Classic Shell\ClassicStartMenu.exe
(explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotifyIcon.exe
(Opera Norway AS -> Opera Software) C:\Program Files (x86)\Opera\opera.exe <16>
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Piriform Software Ltd -> Piriform Software Ltd) C:\Program Files\CCleaner\CCleaner64.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\redline\bdredline.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe <3>
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender VPN\bdvpnService.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe
(services.exe ->) (Electronic Arts, Inc. -> Electronic Arts) D:\Programy\Origin\OriginWebHelperService.exe
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvhdcig.inf_amd64_1133903e1e2055b7\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\SteamService.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\dllhost.exe
(Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [Classic Start Menu] => C:\Program Files\Classic Shell\ClassicStartMenu.exe [163640 2018-07-15] (Ivaylo Beltchev -> IvoSoft) [File not signed]
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8790264 2016-08-18] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [Bdagent] => C:\Program Files\Bitdefender\Bitdefender Security\bdagent.exe [989208 2023-02-16] (Bitdefender SRL -> Bitdefender)
HKLM\...\Run: [BdVpnApp] => C:\Program Files\Bitdefender\Bitdefender VPN\BdVpnApp.exe [495144 2022-11-09] (Bitdefender SRL -> Bitdefender)
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [710264 2020-06-18] (Oracle America, Inc. -> Oracle Corporation)
HKLM-x32\...\Run: [Opera Browser Assistant] => C:\Program Files (x86)\Opera\assistant\browser_assistant.exe [3916232 2022-12-20] (Opera Norway AS -> Opera Software)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-2427734946-3753328891-3516292563-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4360552 2023-02-18] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-2427734946-3753328891-3516292563-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [35062912 2021-07-16] (Piriform Software Ltd -> Piriform Software Ltd)
HKU\S-1-5-21-2427734946-3753328891-3516292563-1001\...\Run: [EpicGamesLauncher] => D:\Games\Epic\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32823760 2023-02-17] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-2427734946-3753328891-3516292563-1001\...\Run: [Discord] => C:\Users\pfejt\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub)
HKU\S-1-5-21-2427734946-3753328891-3516292563-1001\...\Run: [DriverFix] => C:\Program Files (x86)\DriverFix\DriverFix.exe [21159888 2020-10-24] (Blueroad Technologies Limited -> DriverFix)
HKU\S-1-5-21-2427734946-3753328891-3516292563-1001\...\Run: [Adobe Reader Synchronizer] => "C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe" (No File)
HKU\S-1-5-21-2427734946-3753328891-3516292563-1001\...\Run: [EADM] => D:\Programy\Origin\Origin.exe [3149608 2023-02-07] (Electronic Arts, Inc. -> Electronic Arts)
HKLM\...\Print\Monitors\HP E111 Status Monitor: C:\windows\system32\hpinkstsE111LM.dll [393352 2017-04-14] (Hewlett Packard -> HP Inc.)
HKLM\...\Print\Monitors\HP Universal Port Monitor: C:\windows\system32\hpbprtmon.dll [432648 2015-07-11] (Microsoft Windows Hardware Compatibility Publisher -> HP)
Startup: C:\Users\pfejt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Send to OneNote.lnk [2019-10-02]
ShortcutTarget: Send to OneNote.lnk -> C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0197D780-D597-4666-BD6E-E4520DFFE1A3} - System32\Tasks\CCleanerSkipUAC => C:\Program Files\CCleaner\CCleaner.exe [29136000 2021-07-16] (Piriform Software Ltd -> Piriform Software Ltd)
Task: {1250B10B-F7D9-4828-ADD8-2E65A954C10F} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater - Resources => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe /r /m (No File)
Task: {1A610144-3A7A-44A7-B1AA-8E020D2B6D75} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Quick Start => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe /taskrestart (No File)
Task: {252F217A-E54D-447D-B128-6B136B686449} - System32\Tasks\HPCeeScheduleForpfejt => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe [96568 2015-06-16] (Hewlett-Packard Company -> Hewlett-Packard)
Task: {2F789A33-F101-44E0-8A2C-B29AEA87DF39} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {4DF8CAE0-D39A-430D-B602-6807A29A0BC2} - System32\Tasks\AdobeAAMUpdater-1.0-MicrosoftAccount-p.fejt@seznam.cz => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-11] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
Task: {6AB7F692-2C55-4F93-8DA1-9BD51FCDECB9} - System32\Tasks\Opera scheduled assistant Autoupdate 1582728725 => C:\Program Files (x86)\Opera\launcher.exe [1977800 2023-02-08] (Opera Norway AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Program Files (x86)\Opera\assistant" $(Arg0)
Task: {6FF4CEC9-0AB7-4CC1-9876-750253FEED3C} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [1626328 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {7F52BF7B-17FD-4BCD-B7C9-2D6B8F13B29A} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2021-07-16] (Piriform Software Ltd -> Piriform)
Task: {9BED3627-6FE5-46AB-86D5-DB5E1650D732} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {ABA4577A-3027-43AE-A958-ED9061372102} - System32\Tasks\Opera scheduled Autoupdate 1471527707 => C:\Program Files (x86)\Opera\launcher.exe [1977800 2023-02-08] (Opera Norway AS -> Opera Software)
Task: {AC4569D1-6F98-4163-AE27-D42ED89DED81} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Task: {B945D1C8-5BE6-4F48-9273-23900C4E9DF7} - System32\Tasks\Hewlett-Packard\HP Support Assistant\PC Health Analysis => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\HPSF.exe /L Analysis (No File)
Task: {C08CCCBD-7F27-400B-8FAB-B728D2389906} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:\Program Files\Bitdefender Agent\26.0.1.233\WatchDog.exe [1053264 2022-07-25] (Bitdefender SRL -> Bitdefender)
Task: {D40BFFE7-A16D-421D-A3DE-2FB0CEEAD235} - System32\Tasks\Hewlett-Packard\HP Support Assistant\Product Configurator => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\ProductConfig.exe /noreport (No File)
Task: {E598D510-4471-4EA0-98C8-13917FA774E4} - System32\Tasks\Hewlett-Packard\HP Active Health\HP Active Health Scan (HPSA) => C:\Program Files (x86)\Hewlett-Packard\HP Support Framework\Resources\HPActiveHealth\ActiveHealth.exe -task -source HPSA (No File)
Task: {E9D388EF-8C06-4862-BB70-AD2506AA4D06} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSFReport.exe /send (No File)
Task: {FB39FEA1-9AB9-4D67-88EC-B9B964670F47} - System32\Tasks\avfree.migration => C:\Program Files\Bitdefender Antivirus Free\migration_tool\avfree.migration.exe /run (No File)
Task: {FF874550-A54D-4B52-B5ED-91FBFFF3C5B0} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe /u (No File)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\HPCeeScheduleForpfejt.job => C:\Program Files (x86)\Hewlett-Packard\HP Ceement\HPCEE.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

ProxyServer: [S-1-5-21-2427734946-3753328891-3516292563-1001] => 212.5.206.97:8080
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{439204d3-0165-4d14-837b-43a916e45f01}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{9e039783-fb8b-46c3-825a-8d3b43903cda}: [NameServer] 198.51.100.1
Tcpip\..\Interfaces\{9e039783-fb8b-46c3-825a-8d3b43903cda}: [DhcpNameServer] 8.8.8.8

Edge:
=======
DownloadDir: C:\Users\pfejt\Downloads
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
Edge DefaultProfile: Default
Edge Profile: C:\Users\pfejt\AppData\Local\Microsoft\Edge\User Data\Default [2023-02-05]
Edge DownloadDir: Default -> C:\Users\pfejt\Downloads

FireFox:
========
FF DefaultProfile: 9yhot4w9.default
FF ProfilePath: C:\Users\pfejt\AppData\Roaming\Mozilla\Firefox\Profiles\9yhot4w9.default [2023-02-18]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [2019-07-26] (Adobe Inc. -> Adobe Systems)
FF Plugin: adobe.com/AdobeExManDetect -> D:\Programy\Photoshop\Adobe Extension Manager CS6\Win64Plugin\npAdobeExManDetectX64.dll [2013-12-02] (Adobe Systems Incorporated -> Adobe Systems)
FF Plugin-x32: @java.com/DTPlugin,version=11.261.2 -> C:\Program Files (x86)\Java\jre1.8.0_261\bin\dtplugin\npDeployJava1.dll [2020-10-10] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.261.2 -> C:\Program Files (x86)\Java\jre1.8.0_261\bin\plugin2\npjp2.dll [2020-10-10] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2016-07-19] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.2.5.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.16 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-06-18] (VideoLAN -> VideoLAN)
FF Plugin-x32: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect32.dll [2019-07-26] (Adobe Inc. -> Adobe Systems)
FF Plugin-x32: adobe.com/AdobeExManDetect -> D:\Programy\Photoshop\Adobe Extension Manager CS6\npAdobeExManDetectX86.dll [2013-12-02] (Adobe Systems Incorporated -> Adobe Systems)

Opera:
=======
OPR Profile: C:\Users\pfejt\AppData\Roaming\Opera Software\Opera Stable [2023-02-18]
OPR DownloadDir: D:\Downloads
OPR Notifications: Opera Stable -> hxxps://novaplus.nova.cz; hxxps://www.akcniletaky.com; hxxps://www.bet365.com; hxxps://www.emimino.cz; hxxps://www.topzine.cz
OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=o ... utEncoding}
OPR Extension: (Rich Hints Agent) - C:\Users\pfejt\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2022-10-27]
OPR Extension: (Opera Wallet) - C:\Users\pfejt\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2023-02-13]
OPR Extension: (Amazon Assistant Promotion) - C:\Users\pfejt\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2021-08-13]
OPR Extension: (Adblock Plus - free ad blocker) - C:\Users\pfejt\AppData\Roaming\Opera Software\Opera Stable\Extensions\oidhhegpmlfpoeialbgcdocjalghfpkp [2023-02-07]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [816184 2019-07-26] (Adobe Inc. -> Adobe Inc.)
S3 AfVpnService; C:\Program Files\Bitdefender\Bitdefender VPN\hydra.sdk.windows.service.exe [432680 2022-11-01] (Bitdefender SRL -> AnchorFree Inc.)
R2 BDAuxSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [821784 2023-02-16] (Bitdefender SRL -> Bitdefender)
R2 BDProtSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [821784 2023-02-16] (Bitdefender SRL -> Bitdefender)
R2 bdredline; C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe [2993256 2022-01-28] (Bitdefender SRL -> Bitdefender)
R2 bdredline_agent; C:\Program Files\Bitdefender Agent\redline\bdredline.exe [2454632 2022-02-10] (Bitdefender SRL -> Bitdefender)
R2 BdVpnService; C:\Program Files\Bitdefender\Bitdefender VPN\bdvpnservice.exe [453672 2022-11-09] (Bitdefender SRL -> Bitdefender)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8361960 2019-01-25] (BattlEye Innovations e.K. -> )
S3 IDriverT; C:\Program Files (x86)\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe [69632 2005-04-03] (Macrovision Corporation) [File not signed]
S3 Origin Client Service; D:\Programy\Origin\OriginClientService.exe [2579264 2023-02-07] (Electronic Arts, Inc. -> Electronic Arts)
R2 Origin Web Helper Service; D:\Programy\Origin\OriginWebHelperService.exe [3497800 2023-02-07] (Electronic Arts, Inc. -> Electronic Arts)
R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [789072 2022-07-25] (Bitdefender SRL -> Bitdefender)
S3 Rockstar Service; D:\Programy\Launcher\RockstarService.exe [2020144 2021-09-17] (Rockstar Games, Inc. -> Rockstar Games) [File not signed]
S3 SwitchBoard; C:\Program Files (x86)\Common Files\Adobe\SwitchBoard\SwitchBoard.exe [517096 2010-02-19] (Test Signing Certificate -> Adobe Systems Incorporated) [File not signed]
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [15212856 2023-01-18] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe [280088 2022-12-06] (Bitdefender SRL -> Bitdefender)
R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [821784 2023-02-16] (Bitdefender SRL -> Bitdefender)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2103.7-0\NisSrv.exe [2624104 2021-04-18] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2103.7-0\MsMpEng.exe [128376 2021-04-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvhdcig.inf_amd64_1133903e1e2055b7\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvhdcig.inf_amd64_1133903e1e2055b7\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 atc; C:\WINDOWS\System32\DRIVERS\atc.sys [5118384 2022-10-04] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender S.R.L. Bucharest, ROMANIA)
R2 BdDci; C:\WINDOWS\system32\DRIVERS\bddci.sys [798128 2022-11-10] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
S0 bdelam; C:\WINDOWS\System32\drivers\bdelam.sys [22976 2020-12-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Bitdefender)
S3 bdprivmon; C:\WINDOWS\System32\DRIVERS\bdprivmon.sys [33208 2022-02-01] (Microsoft Windows Hardware Compatibility Publisher -> © Bitdefender SRL)
S3 bduefiscan; C:\WINDOWS\system32\DRIVERS\bduefiscan.sys [55864 2021-07-08] (Bitdefender SRL -> Bitdefender)
R1 bdvpn_netfilter; C:\WINDOWS\System32\drivers\bdvpn_netfilter.sys [94600 2021-09-16] (Pango Inc. -> Pango Inc)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [160376 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [30264 2017-04-25] (Disc Soft Ltd -> Disc Soft Ltd)
S3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [47672 2017-04-25] (Disc Soft Ltd -> Disc Soft Ltd)
R0 Gemma; C:\WINDOWS\System32\DRIVERS\gemma.sys [1274296 2022-09-23] (Microsoft Windows Hardware Compatibility Publisher -> BitDefender S.R.L. Bucharest, ROMANIA)
S3 Ignis; C:\WINDOWS\system32\DRIVERS\ignis.sys [185312 2020-10-07] (Bitdefender SRL -> Bitdefender)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167544 2021-10-08] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R3 SteamStreamingMicrophone; C:\WINDOWS\system32\drivers\SteamStreamingMicrophone.sys [40736 2017-07-28] (Valve Corp. -> )
R3 SteamStreamingSpeakers; C:\WINDOWS\system32\drivers\SteamStreamingSpeakers.sys [40736 2017-07-21] (Valve Corp. -> )
R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [47920 2021-09-16] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
R0 trufos; C:\WINDOWS\System32\DRIVERS\trufos.sys [633264 2022-04-16] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
S3 usbscan; C:\WINDOWS\System32\drivers\usbscan.sys [49152 2020-09-19] (Microsoft Corporation) [File not signed]
R3 vlflt; C:\WINDOWS\System32\DRIVERS\vlflt.sys [480184 2022-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [49560 2021-04-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [421088 2021-04-18] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [72928 2021-04-18] (Microsoft Windows -> Microsoft Corporation)
U3 aspnet_state; no ImagePath
S3 cpuz150; \??\C:\WINDOWS\temp\cpuz150\cpuz150_x64.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-02-18 14:39 - 2023-02-18 14:40 - 000000000 ____D C:\FRST
2023-02-15 16:36 - 2023-02-15 16:36 - 000000000 ___HD C:\$WinREAgent
2023-02-13 18:10 - 2023-02-13 18:10 - 000000222 ____C C:\Users\pfejt\Desktop\Kingdom Come Deliverance.url
2023-02-12 18:15 - 2023-02-12 18:18 - 000000000 ____D C:\Users\pfejt\AppData\Local\Deployment
2023-01-28 14:54 - 2022-06-01 10:30 - 120138523 _____ C:\Puck Designs Hockey Jersey Template V.3.psd
2023-01-21 08:53 - 2023-01-21 08:53 - 000800084 _____ C:\Users\pfejt\Downloads\návod.pdf
2023-01-20 20:25 - 2023-01-20 20:27 - 000000000 ____D C:\Users\pfejt\AppData\Local\CleverGet
2023-01-20 20:25 - 2023-01-20 20:25 - 000001014 _____ C:\Users\Public\Desktop\CleverGet.lnk
2023-01-20 20:25 - 2023-01-20 20:25 - 000000000 ____D C:\Users\pfejt\AppData\Roaming\CleverGet
2023-01-20 20:25 - 2023-01-20 20:25 - 000000000 ____D C:\Users\pfejt\AppData\Local\QtExamples
2023-01-20 20:25 - 2023-01-20 20:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CleverGet
2023-01-20 20:25 - 2023-01-20 20:25 - 000000000 ____D C:\ProgramData\Leawo
2023-01-20 20:25 - 2023-01-20 20:25 - 000000000 ____D C:\ProgramData\CleverGet
2023-01-20 20:24 - 2023-01-20 20:24 - 000000000 ____D C:\Program Files\CleverGet

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-02-18 14:42 - 2016-08-18 14:36 - 000000000 ____D C:\Program Files (x86)\Steam
2023-02-18 14:39 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2023-02-18 14:37 - 2018-05-22 19:15 - 000000000 ___DC C:\Users\pfejt\AppData\Local\D3DSCache
2023-02-18 14:30 - 2020-09-19 16:43 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2023-02-18 13:12 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-02-18 12:37 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2023-02-18 08:02 - 2016-10-02 14:05 - 000000000 ____D C:\ProgramData\Origin
2023-02-18 07:58 - 2020-08-22 07:57 - 000002443 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-02-18 07:58 - 2020-08-22 07:57 - 000002281 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2023-02-18 07:58 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-02-18 07:58 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2023-02-18 07:58 - 2016-08-27 21:56 - 000000000 ____D C:\Program Files\CCleaner
2023-02-18 07:56 - 2019-08-31 20:39 - 000000000 ____D C:\Users\pfejt\AppData\Local\Origin
2023-02-17 22:33 - 2020-01-13 20:26 - 000000000 ____D C:\Users\pfejt\AppData\Local\ClassicShell
2023-02-17 22:33 - 2016-09-22 10:08 - 000000000 ____D C:\ProgramData\NVIDIA
2023-02-17 18:40 - 2016-08-18 14:32 - 000000000 ___DC C:\Users\pfejt\AppData\Local\NVIDIA
2023-02-16 21:23 - 2020-09-28 16:47 - 000000000 ____D C:\Users\pfejt\AppData\Roaming\discord
2023-02-16 20:28 - 2020-10-27 16:27 - 000000000 ____D C:\Users\pfejt\AppData\Local\Discord
2023-02-16 20:09 - 2020-09-19 16:56 - 000003256 _____ C:\WINDOWS\system32\Tasks\HPCeeScheduleForpfejt
2023-02-16 20:09 - 2017-03-11 18:56 - 000000364 _____ C:\WINDOWS\Tasks\HPCeeScheduleForpfejt.job
2023-02-15 20:39 - 2016-08-29 09:07 - 000000000 ___DC C:\Users\pfejt\AppData\Local\CrashDumps
2023-02-15 20:39 - 2016-08-18 14:32 - 000000000 ___DC C:\Users\pfejt\AppData\Local\NVIDIA Corporation
2023-02-15 17:52 - 2020-09-19 16:46 - 000000000 ____D C:\Users\pfejt
2023-02-15 17:46 - 2020-09-19 16:53 - 001693750 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2023-02-15 17:46 - 2019-12-07 15:41 - 000716770 _____ C:\WINDOWS\system32\perfh005.dat
2023-02-15 17:46 - 2019-12-07 15:41 - 000144948 _____ C:\WINDOWS\system32\perfc005.dat
2023-02-15 17:39 - 2020-09-19 16:56 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2023-02-15 17:39 - 2020-09-19 16:43 - 005158072 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2023-02-15 17:39 - 2019-12-07 10:03 - 000065536 _____ C:\WINDOWS\system32\config\ELAM
2023-02-15 17:39 - 2017-08-19 16:49 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2023-02-15 17:38 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2023-02-15 17:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2023-02-15 17:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2023-02-15 17:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup
2023-02-15 17:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2023-02-15 17:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\DDFs
2023-02-15 17:38 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2023-02-15 17:38 - 2019-12-07 10:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2023-02-15 17:37 - 2016-08-18 14:41 - 000000000 ____D C:\Program Files (x86)\Opera
2023-02-15 16:51 - 2020-09-19 16:46 - 003015680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2023-02-15 16:11 - 2016-09-14 18:50 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2013
2023-02-15 15:54 - 2016-08-18 20:23 - 000000000 ____D C:\WINDOWS\system32\MRT
2023-02-15 15:50 - 2016-08-18 20:23 - 149955784 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2023-02-14 18:17 - 2020-10-27 16:27 - 000002284 ____C C:\Users\pfejt\Desktop\Discord.lnk
2023-02-13 18:10 - 2016-08-18 14:46 - 000000000 ___DC C:\Users\pfejt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2023-02-12 18:48 - 2020-08-06 21:28 - 000000000 ____D C:\Users\pfejt\AppData\Roaming\Pro Cycling Manager 2019
2023-02-12 18:16 - 2020-08-07 11:41 - 000000000 ___DC C:\Users\pfejt\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PCM Fast Editor
2023-02-10 17:50 - 2021-01-23 12:48 - 000000000 ____D C:\Users\pfejt\AppData\Roaming\paradox-launcher-v2
2023-02-10 17:25 - 2020-09-19 16:56 - 000003970 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1471527707
2023-02-10 17:25 - 2017-06-30 06:37 - 000001162 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2023-02-07 14:42 - 2020-09-19 16:56 - 000003640 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-02-07 14:42 - 2020-09-19 16:56 - 000003516 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2023-01-25 15:24 - 2020-08-21 15:32 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2023-01-21 08:31 - 2016-09-06 17:58 - 000000132 ____C C:\Users\pfejt\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2023-01-21 08:20 - 2021-06-12 11:05 - 000000000 ____D C:\Users\pfejt\AppData\Roaming\MediaMonkey5
2023-01-20 20:25 - 2020-10-16 09:47 - 000000000 ____D C:\Users\pfejt\AppData\Local\cache
2023-01-20 07:44 - 2021-09-07 17:00 - 000000000 ____D C:\Users\defaultuser1

==================== Files in the root of some directories ========

2017-09-13 19:48 - 2021-06-24 20:08 - 000000132 ____C () C:\Users\pfejt\AppData\Roaming\Adobe Formát BMP CS6 – předvolby
2016-09-06 17:58 - 2023-01-21 08:31 - 000000132 ____C () C:\Users\pfejt\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2020-05-29 14:40 - 2021-02-17 18:41 - 000000132 _____ () C:\Users\pfejt\AppData\Roaming\Adobe Formát Targa CS6 – předvolby
2019-05-13 14:57 - 2019-05-13 14:57 - 000000000 ____C () C:\Users\pfejt\AppData\Roaming\FC29FA0894FE.ini
2021-02-13 23:38 - 2021-02-13 23:38 - 000000132 _____ () C:\Users\pfejt\AppData\Roaming\Filtr IIIExport Adobe CS6 – předvolby
2021-09-12 06:43 - 2021-09-12 06:43 - 024390665 _____ () C:\Users\pfejt\AppData\Roaming\gta5_patch.bin
2021-09-12 06:43 - 2021-09-12 06:43 - 000332800 _____ () C:\Users\pfejt\AppData\Roaming\patcher.dll
2022-04-25 16:05 - 2022-04-25 16:07 - 000001480 _____ () C:\Users\pfejt\AppData\Local\Adobe Uložit pro web 13.0 Prefs
2018-10-01 14:39 - 2018-10-01 14:39 - 000000000 ____C () C:\Users\pfejt\AppData\Local\oobelibMkey.log
2021-02-18 18:17 - 2021-02-18 18:17 - 000004816 _____ () C:\Users\pfejt\AppData\Local\recently-used.xbel
2017-03-07 23:10 - 2017-03-06 13:27 - 000000091 ____C () C:\Users\pfejt\AppData\Local\userdata-redirect-map.txt

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================


Additional scan result of Farbar Recovery Scan Tool (x64) Version: 16-02-2023
Ran by pfejt (18-02-2023 14:43:23)
Running from D:\Downloads\scoped_dir14072_623952249
Microsoft Windows 10 Home Version 22H2 19045.2604 (X64) (2020-09-19 15:56:30)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-2427734946-3753328891-3516292563-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2427734946-3753328891-3516292563-503 - Limited - Disabled)
defaultuser1 (S-1-5-21-2427734946-3753328891-3516292563-1004 - Limited - Enabled) => C:\Users\defaultuser1
Guest (S-1-5-21-2427734946-3753328891-3516292563-501 - Limited - Disabled)
HomeGroupUser$ (S-1-5-21-2427734946-3753328891-3516292563-1003 - Limited - Enabled)
pfejt (S-1-5-21-2427734946-3753328891-3516292563-1001 - Administrator - Enabled) => C:\Users\pfejt
WDAGUtilityAccount (S-1-5-21-2427734946-3753328891-3516292563-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Bitdefender Antivirus (Enabled - Up to date) {840E1EB8-082E-3D95-EAAA-FD11CF357A26}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET Security (Enabled - Up to date) {885D845F-AF19-0124-FECE-FFF49D00F440}
AV: ESET Security (Enabled - Up to date) {EC1D6F37-E411-475A-DF50-12FF7FE4AC70}
AS: ESET Security (Enabled - Up to date) {577C8ED3-C22B-48D4-E5E0-298D0463E6CD}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 4.9.0.515 - Adobe Systems Incorporated)
Adobe Photoshop CS6 (HKLM-x32\...\{74EB3499-8B95-4B5C-96EB-7B342F3FD0C6}) (Version: 13.0 - Adobe Systems Incorporated)
Assassins Creed Odyssey Gold Edition MULTi15 - ElAmigos verze 1.5.3 (HKLM-x32\...\{8D7AD31E-3E80-4833-9EA1-1CC37413B45F}_is1) (Version: 1.5.3 - Ubisoft)
Bitdefender Agent (HKLM\...\Bitdefender Agent) (Version: 26.0.1.233 - Bitdefender)
Bitdefender Antivirus Free (HKLM\...\Bitdefender) (Version: 26.0.18.75 - Bitdefender)
Bitdefender VPN (HKLM\...\Bitdefender VPN) (Version: 25.5.7.54 - Bitdefender)
CCleaner (HKLM\...\CCleaner) (Version: 5.83 - Piriform)
Classic Shell (HKLM\...\{CABCE573-0A86-42FA-A52A-C7EA61D5BE08}) (Version: 4.3.1 - IvoSoft)
CleverGet version 10.0.0.0 (HKLM\...\{5E182E46-BBA0-4DAD-BB92-070D2267EF57}_is1) (Version: 10.0.0.0 - CleverGet Software)
CPUID CPU-Z 1.93 (HKLM\...\CPUID CPU-Z_is1) (Version: 1.93 - CPUID, Inc.)
Discord (HKU\S-1-5-21-2427734946-3753328891-3516292563-1001\...\Discord) (Version: 0.0.309 - Discord Inc.)
DriverFix 4.2020.8.18 (HKLM\...\DriverFix_is1) (Version: - DriverFix, Inc)
Energy Star (HKLM-x32\...\{FC0ADA4D-8FA5-4452-8AFF-F0A0BAC97EF7}) (Version: 1.0.9 - Hewlett-Packard Company)
Epic Games Launcher (HKLM-x32\...\{C69A2919-0662-4390-9418-67C931B44C18}) (Version: 1.1.236.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Google Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.21.169 - Google Inc.) Hidden
HP Customer Experience Enhancements (HKLM-x32\...\{C9EF1AAF-B542-41C8-A537-1142DA5D4AEC}) (Version: 6.0.3.1 - Hewlett-Packard) Hidden
HP Documentation (HKLM\...\HP_Documentation) (Version: - HP)
HP ePrint Windows Driver (HKLM\...\{3BC36736-66B5-4C48-AF0A-C41C335ABCB0}) (Version: 4.8.84.16397 - HP) Hidden
HP ESU for Microsoft Windows 10 (HKLM-x32\...\{2CDA0D13-ED4D-4E66-B920-9AE696F9992E}) (Version: 1.1.1 - HP)
HP Recovery Manager (HKLM-x32\...\{64BAA990-F1FC-4145-A7B1-E41FBBC9DA47}) (Version: 1.2.1510 - Hewlett-Packard) Hidden
HP Support Solutions Framework (HKLM-x32\...\{D7D5F438-26EF-45AB-AB89-C476FBCF8584}) (Version: 12.15.14.3 - Hewlett-Packard Company)
Cheat Engine 7.3 (HKLM\...\Cheat Engine_is1) (Version: - Cheat Engine)
Java 8 Update 261 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180261F0}) (Version: 8.0.2610.12 - Oracle Corporation)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
MediaMonkey 5 (HKLM-x32\...\MediaMonkey 5_is1) (Version: 5 - Ventis Media Inc.)
Microsoft .NET Core Host - 3.1.32 (x64) (HKLM\...\{8A8E3A04-83BC-4CDE-9259-893B666C1AB1}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Host FX Resolver - 3.1.25 (x64) (HKLM\...\{1F9E80D0-5C98-4470-8FBF-687EB7768FAA}) (Version: 24.100.31218 - Microsoft Corporation) Hidden
Microsoft .NET Core Host FX Resolver - 3.1.32 (x64) (HKLM\...\{ABC6B3C2-1A8D-4C5E-AC16-C2AE44F02743}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Runtime - 3.1.25 (x64) (HKLM\...\{59EFE7CE-0394-4DF0-B657-E07ED56245F5}) (Version: 24.100.31218 - Microsoft Corporation) Hidden
Microsoft .NET Core Runtime - 3.1.32 (x64) (HKLM\...\{A741B803-3F0E-4684-81EF-FC128D15A92C}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft Access MUI (English) 2013 (HKLM\...\{90150000-0015-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Access Setup Metadata MUI (English) 2013 (HKLM\...\{90150000-0117-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft ASP.NET MVC 4 Runtime (HKLM-x32\...\{3FE312D5-B862-40CE-8E4E-A6D8ABF62736}) (Version: 4.0.40804.0 - Microsoft Corporation)
Microsoft DCF MUI (English) 2013 (HKLM\...\{90150000-0090-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 110.0.1587.49 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 110.0.1587.46 - Microsoft Corporation)
Microsoft Excel MUI (English) 2013 (HKLM\...\{90150000-0016-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Groove MUI (English) 2013 (HKLM\...\{90150000-00BA-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft HEVC Media Extension Installation for Microsoft.HEVCVideoExtension_1.0.2512.0_x64__8wekyb3d8bbwe (x64) (HKLM\...\{B0169E83-757B-EF66-E2F0-391944D785BC}) (Version: 1.0.0.0 - Microsoft Corporation) Hidden
Microsoft InfoPath MUI (English) 2013 (HKLM\...\{90150000-0044-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Lync MUI (English) 2013 (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office 32-bit Components 2013 (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (English) 2013 (HKLM\...\{90150000-00E1-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM UX MUI (English) 2013 (HKLM\...\{90150000-00E2-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office Proofing (English) 2013 (HKLM\...\{90150000-002C-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - English (HKLM\...\{90150000-001F-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - Español (HKLM\...\{90150000-001F-0C0A-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared 32-bit MUI (English) 2013 (HKLM\...\{90150000-00C1-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (English) 2013 (HKLM\...\{90150000-006E-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared Setup Metadata MUI (English) 2013 (HKLM\...\{90150000-0115-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft OneNote MUI (English) 2013 (HKLM\...\{90150000-00A1-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Outlook MUI (English) 2013 (HKLM\...\{90150000-001A-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft PowerPoint MUI (English) 2013 (HKLM\...\{90150000-0018-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Publisher MUI (English) 2013 (HKLM\...\{90150000-0019-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Update Health Tools (HKLM\...\{89581302-705F-42C5-99B0-E368A845DAD5}) (Version: 3.70.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{837b34e3-7c30-493c-8f6a-2b0f04e2912c}) (Version: 8.0.59193 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.60610 (HKLM-x32\...\{95716cce-fc71-413f-8ad5-56c2892d4b3a}) (Version: 11.0.60610.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40660 (HKLM\...\{5740BD44-B58D-321A-AFC0-6D3D4556DD6C}) (Version: 12.0.40660 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40660 (HKLM\...\{CB0836EC-B072-368D-82B2-D3470BF95707}) (Version: 12.0.40660 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40660 (HKLM-x32\...\{7DAD0258-515C-3DD4-8964-BD714199E0F7}) (Version: 12.0.40660 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40660 (HKLM-x32\...\{E30D8B21-D82D-3211-82CC-0F0A5D1495E8}) (Version: 12.0.40660 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.29.30133 (HKLM-x32\...\{295d1583-fdb9-414b-a4c8-da539362a26b}) (Version: 14.29.30133.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.23.27820 (HKLM-x32\...\{45231ab4-69fd-486a-859d-7a59fcd11013}) (Version: 14.23.27820.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.28.29334 (HKLM-x32\...\{b2d0f752-adc5-496e-8f70-8669de01f746}) (Version: 14.28.29334.0 - Microsoft Corporation)
Microsoft Visual C++ 2019 X64 Additional Runtime - 14.29.30133 (HKLM\...\{E699E009-1C3C-4E50-9B57-2B39F0954C7F}) (Version: 14.29.30133 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.29.30133 (HKLM\...\{6CD9E9ED-906D-4196-8DC3-F987D2F6615F}) (Version: 14.29.30133 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Additional Runtime - 14.28.29334 (HKLM-x32\...\{14C49FC8-3E9B-4F29-8526-26629B5CF30B}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.28.29334 (HKLM-x32\...\{0D01A812-82A1-481F-8546-8E28E976F8DF}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}) (Version: 10.0.50908 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 3.1.25 (x64) (HKLM\...\{F52B08A5-AA62-4FEE-8685-7836A7CBBF1F}) (Version: 24.100.31218 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 3.1.25 (x64) (HKLM-x32\...\{053e0203-316b-4ee1-b058-08507cad9198}) (Version: 3.1.25.31218 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 3.1.32 (x64) (HKLM\...\{5BEE5F3E-4D78-4DE8-A8F3-36D3E9D8868C}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 3.1.32 (x64) (HKLM-x32\...\{0eddeab6-01c1-4cf7-83ba-164ea8974c90}) (Version: 3.1.32.31915 - Microsoft Corporation)
Microsoft Word MUI (English) 2013 (HKLM\...\{90150000-001B-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft_VC80_CRT_x86 (HKLM-x32\...\{92D58719-BBC1-4CC3-A08B-56C9E884CC2C}) (Version: 8.0.50727.4053 - Adobe) Hidden
Microsoft_VC90_CRT_x86 (HKLM-x32\...\{08D2E121-7F6A-43EB-97FD-629B44903403}) (Version: 1.00.0000 - Adobe) Hidden
neroxml (HKLM-x32\...\{56C049BE-79E9-4502-BEA7-9754A3E60F9B}) (Version: 1.0.0 - Nero AG) Hidden
Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 8.2.1 - Notepad++ Team)
NVIDIA Ovladač HD audia 1.3.39.14 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.39.14 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 516.94 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 516.94 - NVIDIA Corporation)
NVIDIA Photoshop Plug-ins 64 bit (HKLM-x32\...\{5E386C5B-CDE7-435A-B5C9-EC73A1B0553A}) (Version: 8.50 - )
NVIDIA Systémový software PhysX 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation)
Opera Stable 95.0.4635.37 (HKLM-x32\...\Opera 95.0.4635.37) (Version: 95.0.4635.37 - Opera Software)
Origin (HKLM-x32\...\Origin) (Version: 10.5.119.52718 - Electronic Arts, Inc.)
Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Paradox Launcher v2 (HKLM\...\{A8D4AE16-519B-409D-B5B4-2647C06805AD}) (Version: 2.0.3.0 - Paradox Interactive)
PCM Fast Editor - 1 (HKU\S-1-5-21-2427734946-3753328891-3516292563-1001\...\b4e96ac10814a05a) (Version: 3.6.0.0 - PCM Fast Editor)
PDF Settings CS6 (HKLM-x32\...\{BFEAAE77-BD7F-4534-B286-9C5CB4697EB1}) (Version: 11.0 - Adobe Systems Incorporated) Hidden
Python 3.6.0 (64-bit) (HKU\S-1-5-21-2427734946-3753328891-3516292563-1001\...\{37a4e38b-baf7-4500-97f1-0f7c51d9a395}) (Version: 3.6.150.0 - Python Software Foundation)
Python 3.6.0 Add to Path (64-bit) (HKLM\...\{5A3CA177-8304-4D59-A44D-6A60032725E4}) (Version: 3.6.150.0 - Python Software Foundation) Hidden
Python 3.6.0 Core Interpreter (64-bit) (HKLM\...\{1944B5D6-0FFB-47C0-BFEC-5C7A2F013FA7}) (Version: 3.6.150.0 - Python Software Foundation) Hidden
Python 3.6.0 Development Libraries (64-bit) (HKLM\...\{A6A3184B-748E-46F4-9E28-6B5889506170}) (Version: 3.6.150.0 - Python Software Foundation) Hidden
Python 3.6.0 Documentation (64-bit) (HKLM\...\{5D83032F-36B5-42E4-A114-D310119C6F51}) (Version: 3.6.150.0 - Python Software Foundation) Hidden
Python 3.6.0 Executables (64-bit) (HKLM\...\{C0016766-8F63-4992-9E6F-ECFB2CB12BA6}) (Version: 3.6.150.0 - Python Software Foundation) Hidden
Python 3.6.0 pip Bootstrap (64-bit) (HKLM\...\{F9C1C892-4908-41F4-900C-7B0DAAF2387B}) (Version: 3.6.150.0 - Python Software Foundation) Hidden
Python 3.6.0 Standard Library (64-bit) (HKLM\...\{F3CB2257-C4C7-4C84-AF63-BADCED1E3273}) (Version: 3.6.150.0 - Python Software Foundation) Hidden
Python 3.6.0 Tcl/Tk Support (64-bit) (HKLM\...\{E24AA157-AD52-42ED-B484-CA5979D4A728}) (Version: 3.6.150.0 - Python Software Foundation) Hidden
Python 3.6.0 Test Suite (64-bit) (HKLM\...\{631C7E77-5832-40D1-9D6D-7B3766D79BDF}) (Version: 3.6.150.0 - Python Software Foundation) Hidden
Python 3.6.0 Utility Scripts (64-bit) (HKLM\...\{FE905DA4-0F23-4F99-9284-50BB4913CEB4}) (Version: 3.6.150.0 - Python Software Foundation) Hidden
Python Launcher (HKLM-x32\...\{A674B2CB-13CA-437B-A215-9DD257959A49}) (Version: 3.6.5835.0 - Python Software Foundation)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.10125.31214 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.1.505.2015 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7673 - Realtek Semiconductor Corp.)
Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.47.484 - Rockstar Games)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.0.9.0 - Rockstar Games)
RogueKiller verze 12.8.5.0 (HKLM\...\8B3D7924-ED89-486B-8322-E8594065D5CB_is1) (Version: 12.8.5.0 - Adlice Software)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0015-0409-1000-0000000FF1CE}_Office15.PROPLUS_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0016-0409-1000-0000000FF1CE}_Office15.PROPLUS_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0018-0409-1000-0000000FF1CE}_Office15.PROPLUS_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0019-0409-1000-0000000FF1CE}_Office15.PROPLUS_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001A-0409-1000-0000000FF1CE}_Office15.PROPLUS_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0409-1000-0000000FF1CE}_Office15.PROPLUS_{835E4BED-E265-4103-AE14-0B4C70CF3FE8}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}_Office15.PROPLUS_{1F7000D3-A917-4AD2-BA55-59E6FDAF062A}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0C0A-1000-0000000FF1CE}_Office15.PROPLUS_{4BF13B26-3A95-4E42-900A-DEB16FDA75A0}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-002C-0409-1000-0000000FF1CE}_Office15.PROPLUS_{C5D14A1B-6E3E-491A-96C6-ABDEEEC4E97D}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0044-0409-1000-0000000FF1CE}_Office15.PROPLUS_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-006E-0409-1000-0000000FF1CE}_Office15.PROPLUS_{D7E879E6-B505-4DA2-BFEE-53A55E7C8E38}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0090-0409-1000-0000000FF1CE}_Office15.PROPLUS_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00A1-0409-1000-0000000FF1CE}_Office15.PROPLUS_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00BA-0409-1000-0000000FF1CE}_Office15.PROPLUS_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{1931508C-C004-4983-81E3-70BE6252904B}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00C1-0409-1000-0000000FF1CE}_Office15.PROPLUS_{E4F470B2-3601-4E1C-B291-D6B580F53136}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E1-0409-1000-0000000FF1CE}_Office15.PROPLUS_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E2-0409-1000-0000000FF1CE}_Office15.PROPLUS_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0115-0409-1000-0000000FF1CE}_Office15.PROPLUS_{D7E879E6-B505-4DA2-BFEE-53A55E7C8E38}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0117-0409-1000-0000000FF1CE}_Office15.PROPLUS_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Sid Meiers Civilization VI New Frontier Pass Portugal (HKLM-x32\...\Sid Meiers Civilization VI New Frontier Pass Portugal_is1) (Version: - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.0.19 - TeamSpeak Systems GmbH)
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.38.3 - TeamViewer)
The Witcher 3 Wild Hunt Blood and Wine (HKLM-x32\...\The Witcher 3 Wild Hunt Blood and Wine_is1) (Version: - )
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 8.52a - Ghisler Software GmbH)
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{90150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUS_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUS_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUS_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{C22F49B1-0F67-47DC-A490-E8B4B6558EA9}) (Version: 8.91.0.0 - Microsoft Corporation)
UpdateAssistant (HKLM-x32\...\{B7AFAF92-D1C8-49A0-B34A-B5DAF9C9D5C6}) (Version: 1.9.0.0 - Microsoft Corporation) Hidden
upjers Home 2.1.102 (HKU\S-1-5-21-2427734946-3753328891-3516292563-1001\...\e2446448-09eb-5b1b-84b1-6746557362e3) (Version: 2.1.102 - upjers GmbH)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.16 - VideoLAN)
WinRAR 5.40 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.40.0 - win.rar GmbH)
XnView 2.46 (HKLM-x32\...\XnView_is1) (Version: 2.46 - Gougelet Pierre-e)

Packages:
=========
Amazon -> C:\Program Files\WindowsApps\Amazon.com.Amazon_2018.519.2815.0_x64__343d40qqvtj1t [2020-02-22] (Amazon.com)
Candy Crush Soda Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSodaSaga_1.236.300.0_x64__kgqvnymyfvs32 [2023-02-13] (king.com)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-02-18] (Microsoft Corporation)
Facebook -> C:\Program Files\WindowsApps\FACEBOOK.FACEBOOK_2022.1209.5.0_neutral__8xx8rvfyw5nnt [2022-12-13] (Meta)
Hearts Deluxe -> C:\Program Files\WindowsApps\26720RandomSaladGamesLLC.HeartsDeluxe_6.13.101.0_x64__kx24dqmazqk8j [2022-10-06] (Random Salad Games LLC)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_142.3.139.0_x64__v10z8vjag6ke6 [2023-01-26] (HP Inc.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-01-17] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-01-17] (Microsoft Corporation) [MS Ad]
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.963.0_x64__56jybvy8sckqj [2022-10-16] (NVIDIA Corp.)
Simple Solitaire -> C:\Program Files\WindowsApps\26720RandomSaladGamesLLC.SimpleSolitaire_7.4.14.0_x64__kx24dqmazqk8j [2022-10-18] (Random Salad Games LLC)
Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.15.12020.0_x64__8wekyb3d8bbwe [2022-12-08] (Microsoft Studios) [MS Ad]
The Weather Channel for HP -> C:\Program Files\WindowsApps\Weather.TheWeatherChannelforHP_2015.1108.1.0_x64__t3yemqpq4kp7p [2016-08-18] (The Weather Channel.)
TripAdvisor Hotels Flights Restaurants -> C:\Program Files\WindowsApps\TripAdvisorLLC.TripAdvisorHotelsFlightsRestaurants_1.5.10.0_x64__qj0v5chwq8f2g [2016-11-18] (TripAdvisor LLC)
Twitter -> C:\Program Files\WindowsApps\9E2F88E3.TWITTER_7.0.1.0_neutral__wgeqdkkx372wm [2021-06-10] (Twitter Inc.)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2427734946-3753328891-3516292563-1001_Classes\CLSID\{2829D9FE-4CF9-4129-A7CA-0FD390AB7C16}\InprocServer32 -> C:\Program Files\ConceptDraw Office\ConceptDraw DIAGRAM\CDPROThumbnailProvider.dll => No File
CustomCLSID: HKU\S-1-5-21-2427734946-3753328891-3516292563-1001_Classes\CLSID\{b5f57109-d48d-471f-9bfb-89db2fef0ade}\InprocServer32 -> C:\windows\system32\dfshim.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2427734946-3753328891-3516292563-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Inc. -> Adobe Systems)
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2018-07-15] (Ivaylo Beltchev -> IvoSoft) [File not signed]
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Program Files\Classic Shell\ClassicExplorer64.dll [2018-07-15] (Ivaylo Beltchev -> IvoSoft) [File not signed]
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files\Notepad++\NppShell_06.dll [2021-12-08] (Notepad++ -> )
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers1: [MagicISO] -> {DB85C504-C730-49DD-BEC1-7B39C6103B7A} => -> No File
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => D:\Programy\Winrar\rarext.dll [2016-08-14] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => D:\Programy\Winrar\rarext32.dll [2016-08-14] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers4: [MagicISO] -> {DB85C504-C730-49DD-BEC1-7B39C6103B7A} => -> No File
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvhdcig.inf_amd64_1133903e1e2055b7\nvshext.dll [2022-07-28] (Nvidia Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers6: [MagicISO] -> {DB85C504-C730-49DD-BEC1-7B39C6103B7A} => -> No File
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
ContextMenuHandlers6: [StartMenuExt] -> {E595F05F-903F-4318-8B0A-7F633B520D2B} => C:\WINDOWS\System32\StartMenuHelper64.dll [2018-07-15] (Ivaylo Beltchev -> IvoSoft) [File not signed]
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => D:\Programy\Winrar\rarext.dll [2016-08-14] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => D:\Programy\Winrar\rarext32.dll [2016-08-14] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\pfejt\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\AmazonShopping.lnk -> C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe () -> hxxp://www.amazon.co.uk/gp/bit/amazonbookmark. ... partner=HP
ShortcutWithArgument: C:\Users\pfejt\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\TripAdvisor.lnk -> C:\Program Files (x86)\Hewlett-Packard\Shared\WizLink.exe () -> hxxp://js.redirect.hp.com/jumpstation?bd=all&c=none&locale=all&pf=cndt&s=TripAdvisor_iefav&tp=iefavs

==================== Loaded Modules (Whitelisted) =============

2018-08-30 13:46 - 2022-11-07 11:17 - 000387072 _____ () [File not signed] C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\libegl.dll
2018-08-30 13:46 - 2022-11-07 11:17 - 008052736 _____ () [File not signed] C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\libglesv2.dll
2018-07-15 12:15 - 2018-07-15 12:15 - 003664696 _____ (Ivaylo Beltchev -> IvoSoft) [File not signed] C:\Program Files\Classic Shell\ClassicStartMenuDLL.dll
2018-07-15 12:15 - 2018-07-15 12:15 - 000291128 _____ (Ivaylo Beltchev -> IvoSoft) [File not signed] C:\WINDOWS\System32\StartMenuHelper64.dll
2023-02-10 17:22 - 2023-02-03 16:58 - 001282048 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] D:\Programy\Origin\LIBEAY32.dll
2023-02-10 17:22 - 2023-02-03 16:58 - 000279040 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] D:\Programy\Origin\ssleay32.dll
2023-02-10 17:22 - 2023-02-03 16:58 - 001611264 _____ (The Qt Company Ltd) [File not signed] D:\Programy\Origin\platforms\qwindows.dll
2023-02-10 17:22 - 2023-02-03 16:58 - 005487104 _____ (The Qt Company Ltd) [File not signed] D:\Programy\Origin\Qt5Core.dll
2023-02-10 17:22 - 2023-02-03 16:58 - 005841920 _____ (The Qt Company Ltd) [File not signed] D:\Programy\Origin\Qt5Gui.dll
2023-02-10 17:22 - 2023-02-03 16:58 - 001179136 _____ (The Qt Company Ltd) [File not signed] D:\Programy\Origin\Qt5Network.dll
2023-02-10 17:22 - 2023-02-03 16:58 - 000146432 _____ (The Qt Company Ltd) [File not signed] D:\Programy\Origin\Qt5WebSockets.dll
2023-02-10 17:22 - 2023-02-03 16:58 - 005089792 _____ (The Qt Company Ltd) [File not signed] D:\Programy\Origin\Qt5Widgets.dll
2023-02-10 17:22 - 2023-02-03 16:58 - 000184832 _____ (The Qt Company Ltd) [File not signed] D:\Programy\Origin\Qt5Xml.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\.DEFAULT\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
SearchScopes: HKLM -> {D0A1529C-E0F0-4767-AF80-1B4C9FCD86D7} URL = hxxp://www.amazon.co.uk/s/ref=azs_osd_ieauk?ie ... earchTerms}
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2020-04-14] (Microsoft Corporation -> Microsoft Corporation)
BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer64.dll [2018-07-15] (Ivaylo Beltchev -> IvoSoft) [File not signed]
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2018-05-15] (Microsoft Corporation -> Microsoft Corporation)
BHO: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_64.dll [2018-07-15] (Ivaylo Beltchev -> IvoSoft) [File not signed]
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2020-04-14] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Program Files\Classic Shell\ClassicExplorer32.dll [2018-07-15] (Ivaylo Beltchev -> IvoSoft) [File not signed]
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_261\bin\ssv.dll [2020-10-10] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2018-05-15] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_261\bin\jp2ssv.dll [2020-10-10] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: ClassicIEBHO Class -> {EA801577-E6AD-4BD5-8F71-4BE0154331A4} -> C:\Program Files\Classic Shell\ClassicIEDLL_32.dll [2018-07-15] (Ivaylo Beltchev -> IvoSoft) [File not signed]
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer64.dll [2018-07-15] (Ivaylo Beltchev -> IvoSoft) [File not signed]
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Program Files\Classic Shell\ClassicExplorer32.dll [2018-07-15] (Ivaylo Beltchev -> IvoSoft) [File not signed]
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2017-08-15] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2015-07-10 12:04 - 2020-08-23 16:31 - 000001904 _____ C:\WINDOWS\system32\drivers\etc\hosts
109.94.209.70 fitgirlrepacks.co # Fake FitGirl site
109.94.209.70 fitgirl-repacks.cc # Fake FitGirl site
109.94.209.70 fitgirl-repack.com # Fake FitGirl site
109.94.209.70 fitgirl-repacks.website # Fake FitGirl site
109.94.209.70 www.fitgirlrepacks.co # Fake FitGirl site
109.94.209.70 www.fitgirl-repacks.cc # Fake FitGirl site
109.94.209.70 www.fitgirl-repack.com # Fake FitGirl site
109.94.209.70 www.fitgirl-repacks.website # Fake FitGirl site
109.94.209.70 ww9.fitgirl-repacks.xyz # Fake FitGirl site
109.94.209.70 *.fitgirl-repacks.xyz # Fake FitGirl site
109.94.209.70 fitgirl-repacks.xyz # Fake FitGirl site
109.94.209.70 fitgirl-repack.net # Fake FitGirl site
109.94.209.70 www.fitgirl-repack.net # Fake FitGirl site
109.94.209.70 fitgirlpack.site # Fake FitGirl site
109.94.209.70 www.fitgirlpack.site # Fake FitGirl site

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\ProgramData\Oracle\Java\javapath;C:\windows\system32;C:\windows;C:\windows\System32\Wbem;C:\windows\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\WINDOWS\System32\OpenSSH\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\dotnet\
HKU\S-1-5-21-2427734946-3753328891-3516292563-1001\Control Panel\Desktop\\Wallpaper -> D:\Downloads\face-snow-ice-predator-wallpaper-preview.jpg
HKU\S-1-5-21-2427734946-3753328891-3516292563-1004\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 2) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: RequireAdmin)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run: => "AdobeGCInvoker-1.0"
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKU\S-1-5-21-2427734946-3753328891-3516292563-1001\...\StartupApproved\StartupFolder: => "Send to OneNote.lnk"
HKU\S-1-5-21-2427734946-3753328891-3516292563-1001\...\StartupApproved\Run: => "World of Tanks"
HKU\S-1-5-21-2427734946-3753328891-3516292563-1001\...\StartupApproved\Run: => "Discord"
HKU\S-1-5-21-2427734946-3753328891-3516292563-1001\...\StartupApproved\Run: => "DriverFix"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [UDP Query User{84EF433B-CC2C-419D-A972-F3093465A8D1}D:\games\microsoft flight simulator\flightsimulator.exe] => (Allow) D:\games\microsoft flight simulator\flightsimulator.exe => No File
FirewallRules: [TCP Query User{A01C3C75-5659-4C44-9C1F-80A30B3DE8A9}D:\games\microsoft flight simulator\flightsimulator.exe] => (Allow) D:\games\microsoft flight simulator\flightsimulator.exe => No File
FirewallRules: [UDP Query User{1BB0D9AB-7D4B-47D7-BCDC-73905B2C9AB0}D:\games\epic\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe] => (Allow) D:\games\epic\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe => No File
FirewallRules: [TCP Query User{DB458E5D-902A-47D0-B510-B79B0477632B}D:\games\epic\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe] => (Allow) D:\games\epic\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe => No File
FirewallRules: [{D8558864-5079-4D0B-9C2E-2FB9F3E33C85}] => (Allow) D:\Games\steamapps\common\Pro Cycling Manager 2019\PCM64.exe (Cyanide S.A.S -> Cyanide)
FirewallRules: [{5E4DE57E-E93E-4E8A-B2DF-949B84F1AE74}] => (Allow) D:\Games\steamapps\common\Pro Cycling Manager 2019\PCM64.exe (Cyanide S.A.S -> Cyanide)
FirewallRules: [{EE70D2E5-3CC3-4A51-92E2-626EDE31B136}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{C8302EE0-56CE-4053-AE18-13B4A5AF2B40}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{124E69FF-71A1-4A4F-BEBF-D98AA4FF10F9}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{CB243105-2DFA-4F4C-B27B-A5873BAD347C}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.61.100.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{441BC771-96E5-4FE8-A21D-C2D03ED56CAE}] => (Allow) C:\Users\pfejt\AppData\Local\Temp\7zS404D\HP.EasyStart.exe => No File
FirewallRules: [UDP Query User{68BF1DA7-187A-43B2-97CE-51A8C78BE4D9}D:\programy\torrent\utorrent.exe] => (Allow) D:\programy\torrent\utorrent.exe (uTorrent.CZ -> BitTorrent, Inc.) [File not signed]
FirewallRules: [TCP Query User{45BAD29B-C596-406C-BDAB-7B04256166AF}D:\programy\torrent\utorrent.exe] => (Allow) D:\programy\torrent\utorrent.exe (uTorrent.CZ -> BitTorrent, Inc.) [File not signed]
FirewallRules: [UDP Query User{E351B0BF-DF2C-4B6D-AB50-59444769D523}D:\games\wargaming.net\gamecenter\wgc.exe] => (Allow) D:\games\wargaming.net\gamecenter\wgc.exe => No File
FirewallRules: [TCP Query User{64900758-14B8-4C29-8C80-29B5F564F736}D:\games\wargaming.net\gamecenter\wgc.exe] => (Allow) D:\games\wargaming.net\gamecenter\wgc.exe => No File
FirewallRules: [UDP Query User{CBD2AE5C-09EE-4CC2-BAE8-D7C872CA0D2D}D:\games\wot\win64\worldoftanks.exe] => (Allow) D:\games\wot\win64\worldoftanks.exe => No File
FirewallRules: [TCP Query User{29FF0E61-E6A2-4678-AC73-E54E04469280}D:\games\wot\win64\worldoftanks.exe] => (Allow) D:\games\wot\win64\worldoftanks.exe => No File
FirewallRules: [{A53DCBF0-84F5-4C5D-A058-DE6462093EDE}] => (Allow) D:\Games\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{5469C54C-4FA0-4CB6-B998-9A9F51A181CF}] => (Allow) D:\Games\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{76CA99F0-1C95-4399-A6D7-3B8D5A988647}] => (Allow) D:\Games\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{6BA5AA8C-EEEF-4397-9539-2D31E7A8E2D2}] => (Allow) D:\Games\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{6CB763D3-1F97-4AF1-8BA6-17C05605C209}] => (Allow) D:\Games\steamapps\common\American Truck Simulator\bin\win_x64\amtrucks.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{B8018D12-A46C-483E-9B96-59CAFFA66065}] => (Allow) D:\Games\steamapps\common\American Truck Simulator\bin\win_x64\amtrucks.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{49537357-578F-45D0-8273-63653D9F653E}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{BC033939-B014-48B9-9BF4-54636472D414}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{0BD6F71C-E2B7-4943-9090-162AEC8938F7}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{C0248959-6054-4F6B-80FC-2A7C04490CFA}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [UDP Query User{DBD6A8DB-9209-4DBA-8F0A-2C33224C2912}D:\games\the settlers 6\extra1\bin\settlers6.exe] => (Allow) D:\games\the settlers 6\extra1\bin\settlers6.exe => No File
FirewallRules: [TCP Query User{20B68BB2-58C7-40F8-BAF2-909FD59D4CEB}D:\games\the settlers 6\extra1\bin\settlers6.exe] => (Allow) D:\games\the settlers 6\extra1\bin\settlers6.exe => No File
FirewallRules: [UDP Query User{B18451E7-F52B-4713-B97D-4A07E27387BC}D:\games\the settlers 6\base\bin\settlers6.exe] => (Allow) D:\games\the settlers 6\base\bin\settlers6.exe => No File
FirewallRules: [TCP Query User{FCDA67A8-C9DC-4089-9CB9-A0965339AE4B}D:\games\the settlers 6\base\bin\settlers6.exe] => (Allow) D:\games\the settlers 6\base\bin\settlers6.exe => No File
FirewallRules: [{30942813-CBED-4B83-A438-74FB69976141}] => (Allow) D:\Games\steamapps\common\Total War SHOGUN 2\Shogun2.exe (The Creative Assembly Limited -> The Creative Assembly Ltd)
FirewallRules: [{77FB0D87-3D96-4FC2-980B-CC62F4449515}] => (Allow) D:\Games\steamapps\common\Total War SHOGUN 2\Shogun2.exe (The Creative Assembly Limited -> The Creative Assembly Ltd)
FirewallRules: [UDP Query User{110A8180-D4CF-4A3B-BD4A-B275AFA7199A}D:\games\wot\win64\worldoftanks.exe] => (Allow) D:\games\wot\win64\worldoftanks.exe => No File
FirewallRules: [TCP Query User{54A5CFC8-D503-47E9-AAA2-BDD835379B25}D:\games\wot\win64\worldoftanks.exe] => (Allow) D:\games\wot\win64\worldoftanks.exe => No File
FirewallRules: [UDP Query User{DC69D38E-6450-4618-9172-4E8B0BA90422}D:\games\epic\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe] => (Allow) D:\games\epic\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe => No File
FirewallRules: [TCP Query User{E922FB14-A147-40CC-A968-FFD0657D66AA}D:\games\epic\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe] => (Allow) D:\games\epic\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe => No File
FirewallRules: [{021F732C-75D2-41B5-84CE-8AE90CF182D8}] => (Allow) D:\Games\steamapps\common\Transport Fever 2\TransportFever2.exe () [File not signed]
FirewallRules: [{19EB9AF7-C0B7-447C-88F3-509D207C6379}] => (Allow) D:\Games\steamapps\common\Transport Fever 2\TransportFever2.exe () [File not signed]
FirewallRules: [UDP Query User{01AC6336-979D-4328-B735-918D300F4747}D:\games\wargaming.net\gamecenter\dlls\wgc_renderer.exe] => (Allow) D:\games\wargaming.net\gamecenter\dlls\wgc_renderer.exe => No File
FirewallRules: [TCP Query User{1A9D2B90-3371-4AFA-8A85-A789DB8D5C65}D:\games\wargaming.net\gamecenter\dlls\wgc_renderer.exe] => (Allow) D:\games\wargaming.net\gamecenter\dlls\wgc_renderer.exe => No File
FirewallRules: [{A7C76B63-F91D-4D78-8A47-87E8B0A7B754}] => (Allow) D:\Games\steamapps\common\Planet Zoo\PlanetZoo.exe (Frontier Developments) [File not signed]
FirewallRules: [{0D7E7B11-1A79-47D1-904E-FD9666686276}] => (Allow) D:\Games\steamapps\common\Planet Zoo\PlanetZoo.exe (Frontier Developments) [File not signed]
FirewallRules: [UDP Query User{A6EAE573-A9D5-4B8A-833A-04F55171BB12}D:\games\wot\win32\worldoftanks.exe] => (Allow) D:\games\wot\win32\worldoftanks.exe => No File
FirewallRules: [TCP Query User{A2FEC7A3-643C-4B0F-ABDC-B0478901B0ED}D:\games\wot\win32\worldoftanks.exe] => (Allow) D:\games\wot\win32\worldoftanks.exe => No File
FirewallRules: [UDP Query User{1117A4EE-E27C-4C1E-BD27-16CAB754777E}D:\games\origin\fifa19.exe] => (Allow) D:\games\origin\fifa19.exe => No File
FirewallRules: [TCP Query User{042BEF7B-2205-4CC3-BEA9-07C1E8A2A7E9}D:\games\origin\fifa19.exe] => (Allow) D:\games\origin\fifa19.exe => No File
FirewallRules: [{DCCC99EC-E388-4A3E-9109-9F9BE58D9E68}] => (Allow) D:\Games\Origin\FIFASetup\fifaconfig.exe => No File
FirewallRules: [{CF09A820-45A2-46F3-9FA4-D9F9C1DF4293}] => (Allow) D:\Games\Origin\FIFASetup\fifaconfig.exe => No File
FirewallRules: [{D6264FEA-75A8-4A44-B9A4-BA01C19794FE}] => (Allow) D:\Games\Zoo tycoon 2\zt.exe => No File
FirewallRules: [{2E3DA0B4-F322-4754-82B0-4AB55E045BF2}] => (Allow) D:\Games\Zoo tycoon 2\zt.exe => No File
FirewallRules: [{B84F69C6-3303-472F-B351-7AF248DD5C31}] => (Allow) D:\Games\WOT\WoTLauncher.exe => No File
FirewallRules: [{E2B3E4AF-ACCA-467A-9D00-E2038D70CF25}] => (Allow) D:\Games\WOT\WoTLauncher.exe => No File
FirewallRules: [{961E2EB5-2038-4FAE-9EB1-FBFDF445E86C}] => (Allow) D:\Games\WOT\worldoftanks.exe => No File
FirewallRules: [{B1D1EBFF-45EA-46CC-8B47-9004B781DC4B}] => (Allow) D:\Games\WOT\worldoftanks.exe => No File
FirewallRules: [{3B250F3F-00F7-4B3D-9D8A-C1AB2A67B6B9}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{5701BE36-FA87-495A-9CB8-7AAF4857DA96}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [TCP Query User{9F9A3F79-3052-4760-ADA0-0D9827E80FF8}D:\programy\torrent\utorrent.exe] => (Allow) D:\programy\torrent\utorrent.exe (uTorrent.CZ -> BitTorrent, Inc.) [File not signed]
FirewallRules: [UDP Query User{30BA92F2-2CBF-4F84-AC77-07EC9EE0A2CB}D:\programy\torrent\utorrent.exe] => (Allow) D:\programy\torrent\utorrent.exe (uTorrent.CZ -> BitTorrent, Inc.) [File not signed]
FirewallRules: [{FBDA8A94-F23C-45F7-BDF9-D48EA60B01B7}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{34C98D14-7F38-4118-A643-1F9CA1008DE9}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{2A4C6238-B76E-4E77-A46D-A71D5803BA0C}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{CF105681-F25F-4969-94EF-DAE08F78A6DC}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{82624332-FB39-4924-B00C-EEEDCA150980}D:\games\total war - shogun 2\shogun2.exe] => (Allow) D:\games\total war - shogun 2\shogun2.exe => No File
FirewallRules: [UDP Query User{50BE7998-CB5B-41F9-8107-E49948A09990}D:\games\total war - shogun 2\shogun2.exe] => (Allow) D:\games\total war - shogun 2\shogun2.exe => No File
FirewallRules: [TCP Query User{C8BF8997-008F-48A7-B720-67289CEE1697}D:\games\sid meiers civilization vi\base\binaries\win64steam\civilizationvi.exe] => (Allow) D:\games\sid meiers civilization vi\base\binaries\win64steam\civilizationvi.exe => No File
FirewallRules: [UDP Query User{588401DD-0E87-4DF7-827D-8C69901A1A14}D:\games\sid meiers civilization vi\base\binaries\win64steam\civilizationvi.exe] => (Allow) D:\games\sid meiers civilization vi\base\binaries\win64steam\civilizationvi.exe => No File
FirewallRules: [{1223E575-B9A1-4611-8D9B-45AB19EEDEE3}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{FF02E10C-E830-46A9-860A-36E0B84034BB}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{2EEC530A-C71A-4A3C-A939-C1384879779F}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{1B7B913B-C1A9-4506-B64C-AD7550016F60}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{B2C03B54-36A1-4255-A1B5-5530DDA26F76}D:\games\civilization v - brave new world\civilizationv_dx11.exe] => (Allow) D:\games\civilization v - brave new world\civilizationv_dx11.exe => No File
FirewallRules: [UDP Query User{78DF2F69-D8B9-4951-A358-7D752729CAF5}D:\games\civilization v - brave new world\civilizationv_dx11.exe] => (Allow) D:\games\civilization v - brave new world\civilizationv_dx11.exe => No File
FirewallRules: [TCP Query User{D32F477E-6955-4FE7-9FAF-7A43EC22A52F}D:\games\wargaming.net\gamecenter\wgc.exe] => (Allow) D:\games\wargaming.net\gamecenter\wgc.exe => No File
FirewallRules: [UDP Query User{197A5CDC-6DA7-4BE1-A979-49EA3BC96EF1}D:\games\wargaming.net\gamecenter\wgc.exe] => (Allow) D:\games\wargaming.net\gamecenter\wgc.exe => No File
FirewallRules: [{683333D7-017C-4302-BBA4-14A34A4469B4}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{17167B00-6FF8-4BDC-99D0-BCEEDDF9F1A4}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{CED422C7-CF2B-4F0F-AFC4-C00F9976F069}] => (Allow) D:\Games\steamapps\common\ARK Survival Evolved Dedicated Server\ShooterGame\Binaries\Win64\ShooterGameServer.exe (Wildcard Properties LLC -> Epic Games, Inc.)
FirewallRules: [{09724FAE-E620-4E3C-B2C7-DD9A98F79973}] => (Allow) D:\Games\steamapps\common\ARK Survival Evolved Dedicated Server\ShooterGame\Binaries\Win64\ShooterGameServer.exe (Wildcard Properties LLC -> Epic Games, Inc.)
FirewallRules: [TCP Query User{09403236-55D9-43D4-A0F6-C2FEF82CF56D}D:\games\kingdom come - deliverance\bin\win64\kingdomcome.exe] => (Allow) D:\games\kingdom come - deliverance\bin\win64\kingdomcome.exe => No File
FirewallRules: [UDP Query User{122520A5-CC5B-4615-A96C-792D1F7B4126}D:\games\kingdom come - deliverance\bin\win64\kingdomcome.exe] => (Allow) D:\games\kingdom come - deliverance\bin\win64\kingdomcome.exe => No File
FirewallRules: [TCP Query User{3F0F1999-6027-414F-8F1D-016E34E1B269}D:\games\farming simulator 19\x64\farmingsimulator2019game.exe] => (Allow) D:\games\farming simulator 19\x64\farmingsimulator2019game.exe => No File
FirewallRules: [UDP Query User{D25A080B-08B2-441C-9CC6-69AB1D5CF732}D:\games\farming simulator 19\x64\farmingsimulator2019game.exe] => (Allow) D:\games\farming simulator 19\x64\farmingsimulator2019game.exe => No File
FirewallRules: [{CCFEB4F3-693D-4360-B473-62C41EF94649}] => (Allow) D:\Games\steamapps\common\SovietRepublic\SETUPAPPLICATION SOVIET.exe (3DIVISION) [File not signed]
FirewallRules: [{380F48B9-B1F5-4D45-89A8-2EA7253C47AD}] => (Allow) D:\Games\steamapps\common\SovietRepublic\SETUPAPPLICATION SOVIET.exe (3DIVISION) [File not signed]
FirewallRules: [TCP Query User{52C73731-373B-4DFD-ADFF-43CFC2BD02CA}D:\games\sid meiers civilization vi\base\binaries\win64steam\civilizationvi_dx12.exe] => (Block) D:\games\sid meiers civilization vi\base\binaries\win64steam\civilizationvi_dx12.exe => No File
FirewallRules: [UDP Query User{B931850C-7B75-4AA1-9B67-8E45DE33E545}D:\games\sid meiers civilization vi\base\binaries\win64steam\civilizationvi_dx12.exe] => (Block) D:\games\sid meiers civilization vi\base\binaries\win64steam\civilizationvi_dx12.exe => No File
FirewallRules: [{767C98E0-4B9B-44D1-AA70-F546415DDA69}] => (Allow) D:\Games\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{8B2517F1-BF34-416D-984D-249BB4DD5AB5}] => (Allow) D:\Games\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{FD63EBF0-0488-4A5F-8A7C-E04FC8F066D6}] => (Allow) D:\Games\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{7AF0E82D-619D-4E58-9682-C42AE0FF03A7}] => (Allow) D:\Games\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [TCP Query User{6480837A-F8ED-4FEE-BDBB-135440844868}D:\downloads\ancestors - the humankind odyssey\ancestors\binaries\win64\ancestors-win64-shipping.exe] => (Allow) D:\downloads\ancestors - the humankind odyssey\ancestors\binaries\win64\ancestors-win64-shipping.exe => No File
FirewallRules: [UDP Query User{28EBB0BA-E19E-40E0-8842-040568AB032B}D:\downloads\ancestors - the humankind odyssey\ancestors\binaries\win64\ancestors-win64-shipping.exe] => (Allow) D:\downloads\ancestors - the humankind odyssey\ancestors\binaries\win64\ancestors-win64-shipping.exe => No File
FirewallRules: [TCP Query User{98FC56B4-4FF0-4552-9284-CD133AB96ABE}D:\games\hearts of iron iv allied armor\hoi4.exe] => (Allow) D:\games\hearts of iron iv allied armor\hoi4.exe => No File
FirewallRules: [UDP Query User{B0BA315D-43FB-4717-9423-70E4D72D16F0}D:\games\hearts of iron iv allied armor\hoi4.exe] => (Allow) D:\games\hearts of iron iv allied armor\hoi4.exe => No File
FirewallRules: [TCP Query User{B901AA0A-DB3F-4CEF-8A89-6E93FA945086}D:\games\sid meiers civilization vi new frontier pass part 2\base\binaries\win64steam\civilizationvi.exe] => (Allow) D:\games\sid meiers civilization vi new frontier pass part 2\base\binaries\win64steam\civilizationvi.exe => No File
FirewallRules: [UDP Query User{863CA03B-4C26-4CD2-8755-C5C5B9618D55}D:\games\sid meiers civilization vi new frontier pass part 2\base\binaries\win64steam\civilizationvi.exe] => (Allow) D:\games\sid meiers civilization vi new frontier pass part 2\base\binaries\win64steam\civilizationvi.exe => No File
FirewallRules: [TCP Query User{602A2AE0-0E43-4B20-9D1E-B6DB8D22359A}D:\games\stellaris\stellaris.exe] => (Allow) D:\games\stellaris\stellaris.exe => No File
FirewallRules: [UDP Query User{EC586AE1-4C73-4F6F-A244-D5822E4A6820}D:\games\stellaris\stellaris.exe] => (Allow) D:\games\stellaris\stellaris.exe => No File
FirewallRules: [{26E62496-394D-4897-96C5-E03170E98569}] => (Allow) D:\Games\steamapps\common\Eastside Hockey Manager\ehm.exe (Sports Interactive) [File not signed]
FirewallRules: [{8066B221-D4E7-42B0-8268-4093FB834E66}] => (Allow) D:\Games\steamapps\common\Eastside Hockey Manager\ehm.exe (Sports Interactive) [File not signed]
FirewallRules: [TCP Query User{99EB12E9-6B5B-4E6E-8EE5-C63A14BFAF20}D:\downloads\medieval dynasty\medieval_dynasty\binaries\win64\medieval_dynasty-win64-shipping.exe] => (Allow) D:\downloads\medieval dynasty\medieval_dynasty\binaries\win64\medieval_dynasty-win64-shipping.exe => No File
FirewallRules: [UDP Query User{2A329827-2608-4E63-8E06-034640731B7F}D:\downloads\medieval dynasty\medieval_dynasty\binaries\win64\medieval_dynasty-win64-shipping.exe] => (Allow) D:\downloads\medieval dynasty\medieval_dynasty\binaries\win64\medieval_dynasty-win64-shipping.exe => No File
FirewallRules: [TCP Query User{CBACFC7B-1630-47A3-991F-C9AFF9BD897A}D:\games\medieval dynasty\medieval_dynasty\binaries\win64\medieval_dynasty-win64-shipping.exe] => (Allow) D:\games\medieval dynasty\medieval_dynasty\binaries\win64\medieval_dynasty-win64-shipping.exe => No File
FirewallRules: [UDP Query User{C3A8FD1F-3EE0-4859-82E6-FEE7FBDBE1E7}D:\games\medieval dynasty\medieval_dynasty\binaries\win64\medieval_dynasty-win64-shipping.exe] => (Allow) D:\games\medieval dynasty\medieval_dynasty\binaries\win64\medieval_dynasty-win64-shipping.exe => No File
FirewallRules: [{46516E86-1649-4A19-8800-78630AF5FBB9}] => (Allow) D:\Games\steamapps\common\Medieval Dynasty\Medieval_Dynasty.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{C4D2E22A-EEC2-4F73-B158-5640187D36B8}] => (Allow) D:\Games\steamapps\common\Medieval Dynasty\Medieval_Dynasty.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{DA8A1AB4-BAB1-45A4-AE16-744DDC3793EC}] => (Allow) C:\Program Files (x86)\MediaMonkey 5\MediaMonkeyEngine.exe (Ventis Media, Inc. -> Ventis Media Inc.)
FirewallRules: [{C3D65FDA-8AE0-4AA9-B570-51FD04777067}] => (Allow) C:\Program Files (x86)\MediaMonkey 5\MediaMonkeyEngine.exe (Ventis Media, Inc. -> Ventis Media Inc.)
FirewallRules: [{743F3A33-971D-4B50-BFC9-66F283BA76F8}] => (Allow) C:\Program Files (x86)\MediaMonkey 5\MediaMonkeyEngine.exe (Ventis Media, Inc. -> Ventis Media Inc.)
FirewallRules: [TCP Query User{C7EF4907-3EA3-4922-A6BA-119DE9522267}D:\games\epic\epic games\gtav\gta5.exe] => (Allow) D:\games\epic\epic games\gtav\gta5.exe => No File
FirewallRules: [UDP Query User{89755349-0F62-450C-8198-3BE7925AE9B0}D:\games\epic\epic games\gtav\gta5.exe] => (Allow) D:\games\epic\epic games\gtav\gta5.exe => No File
FirewallRules: [TCP Query User{5A2F162C-54A8-4324-AB3A-57D833E0B6C9}C:\program files (x86)\opera\opera.exe] => (Allow) C:\program files (x86)\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [UDP Query User{6D5A7A64-6825-4B3B-A401-7936A278CAC6}C:\program files (x86)\opera\opera.exe] => (Allow) C:\program files (x86)\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [TCP Query User{38526BB6-6FA2-4D21-9D31-ACFF6D4BC6DB}D:\games\farming simulator 22\x64\farmingsimulator2022game.exe] => (Allow) D:\games\farming simulator 22\x64\farmingsimulator2022game.exe => No File
FirewallRules: [UDP Query User{A1EE1A44-367A-4CC4-8745-FB5C947967D5}D:\games\farming simulator 22\x64\farmingsimulator2022game.exe] => (Allow) D:\games\farming simulator 22\x64\farmingsimulator2022game.exe => No File
FirewallRules: [TCP Query User{5BD68CE2-2623-4AEA-B06C-F4F161FEE945}D:\games\farming simulator 22\dedicatedserver.exe] => (Allow) D:\games\farming simulator 22\dedicatedserver.exe => No File
FirewallRules: [UDP Query User{C88F41CC-6569-4F9A-B041-787FDF7D4CC3}D:\games\farming simulator 22\dedicatedserver.exe] => (Allow) D:\games\farming simulator 22\dedicatedserver.exe => No File
FirewallRules: [TCP Query User{A08A27A6-EFF8-4E74-9A68-0B5952D6AEA4}D:\games\sid meiers civilization vi new frontier pass portugal\base\binaries\win64steam\civilizationvi.exe] => (Allow) D:\games\sid meiers civilization vi new frontier pass portugal\base\binaries\win64steam\civilizationvi.exe (Firaxis Games) [File not signed]
FirewallRules: [UDP Query User{8913951E-A005-4814-8BC1-EBF535BCE844}D:\games\sid meiers civilization vi new frontier pass portugal\base\binaries\win64steam\civilizationvi.exe] => (Allow) D:\games\sid meiers civilization vi new frontier pass portugal\base\binaries\win64steam\civilizationvi.exe (Firaxis Games) [File not signed]
FirewallRules: [TCP Query User{26C2060E-B6B3-4AEE-AE3C-B419CC107151}D:\games\epic\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) D:\games\epic\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{45885ABB-7E79-4089-9BD7-E1AB11D00C9E}D:\games\epic\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) D:\games\epic\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{AE904E9C-C402-4ACF-926C-F91B042CFCEB}] => (Allow) D:\Games\steamapps\common\Train Life - A Railway Simulator\TrainLife.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{6982435F-FE08-41B4-B621-949906105F85}] => (Allow) D:\Games\steamapps\common\Train Life - A Railway Simulator\TrainLife.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{F1CB3AEB-62C0-426D-B95C-4F5C63DB74D1}] => (Allow) D:\Games\steamapps\common\Cities_Skylines\dowser.exe (Paradox Interactive AB (publ) -> )
FirewallRules: [{B980822F-A940-428B-8E6C-DACF88705667}] => (Allow) D:\Games\steamapps\common\Cities_Skylines\dowser.exe (Paradox Interactive AB (publ) -> )
FirewallRules: [{C50ECE4A-2B32-41B1-8689-339B3FB1BBE3}] => (Allow) C:\Program Files\Bitdefender\Bitdefender Security\bdntwrk.exe (Bitdefender SRL -> Bitdefender)
FirewallRules: [TCP Query User{0438EF38-F216-4C00-B87A-61FE99D2CDE8}D:\games\steamapps\common\fifa 22\fifa22.exe] => (Allow) D:\games\steamapps\common\fifa 22\fifa22.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [UDP Query User{56DEC8A0-9C57-4277-B0B7-62B33B501644}D:\games\steamapps\common\fifa 22\fifa22.exe] => (Allow) D:\games\steamapps\common\fifa 22\fifa22.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [TCP Query User{25C4BD48-8665-4DF0-B832-83655918CD81}D:\downloads\hearts.of.iron.iv.v1.11.5.5b4f-0xdeadc0de\hoi4.exe] => (Allow) D:\downloads\hearts.of.iron.iv.v1.11.5.5b4f-0xdeadc0de\hoi4.exe => No File
FirewallRules: [UDP Query User{4E74905E-AA1D-4F77-9FBB-F20A903EE36B}D:\downloads\hearts.of.iron.iv.v1.11.5.5b4f-0xdeadc0de\hoi4.exe] => (Allow) D:\downloads\hearts.of.iron.iv.v1.11.5.5b4f-0xdeadc0de\hoi4.exe => No File
FirewallRules: [{234E5310-7850-4722-BC93-D9CFC17A76E5}] => (Allow) D:\Games\steamapps\common\Hearts of Iron IV\dowser.exe (Paradox Interactive AB (publ) -> )
FirewallRules: [{9C513CC6-57F8-4AD5-A471-14D0EC95A07C}] => (Allow) D:\Games\steamapps\common\Hearts of Iron IV\dowser.exe (Paradox Interactive AB (publ) -> )
FirewallRules: [{4A720658-C53A-46DC-A03D-6265DDC6687B}] => (Allow) D:\Games\steamapps\common\Hearts of Iron IV\hoi4.exe (Paradox Interactive AB (publ) -> Paradox Interactive)
FirewallRules: [{B0D46430-8657-4330-9199-B82B6567030F}] => (Allow) D:\Games\steamapps\common\Hearts of Iron IV\hoi4.exe (Paradox Interactive AB (publ) -> Paradox Interactive)
FirewallRules: [{56D6FB56-798E-4F43-9CA5-832327D549AA}] => (Allow) D:\Games\steamapps\common\Stellaris\dowser.exe (Paradox Interactive AB (publ) -> )
FirewallRules: [{6C494BBE-17A4-4003-AFB1-F934659601C9}] => (Allow) D:\Games\steamapps\common\Stellaris\dowser.exe (Paradox Interactive AB (publ) -> )
FirewallRules: [{E954046E-2373-4719-8E1C-E4238D31D48D}] => (Allow) D:\Games\steamapps\common\Farming Simulator 22\x64\FarmingSimulator2022Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{07D1E536-C9A9-4D5E-90D1-DDF852705363}] => (Allow) D:\Games\steamapps\common\Farming Simulator 22\x64\FarmingSimulator2022Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{6542E456-1FF2-432A-A3E4-EA1F9CEFF434}] => (Allow) D:\Games\steamapps\common\Valheim\valheim.exe () [File not signed]
FirewallRules: [{FF498F70-722D-47AE-ACDD-C777EA23FB35}] => (Allow) D:\Games\steamapps\common\Valheim\valheim.exe () [File not signed]
FirewallRules: [{2A112BA0-0124-47A8-9F3F-76681BBE00E1}] => (Allow) C:\Program Files (x86)\Opera\94.0.4606.76\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [{22F20B14-2173-469F-A3F7-BA430EC6A9BA}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{59D99EEB-C2AA-45F5-AB73-D18BE43DF156}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{DB2D90F8-448A-4037-B140-5D8E2C73E916}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{FBD5E3B7-A4EE-41FB-AAF7-0C4899364599}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{DA39A8F1-C5EB-4888-BD8C-7F5E770D3057}] => (Allow) C:\Program Files (x86)\Opera\95.0.4635.37\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [{FA569AC9-179F-46A2-967D-C12CBAE4188B}] => (Allow) D:\Games\steamapps\common\KingdomComeDeliverance\Bin\Win64\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [{8E6926E2-B2AF-4D84-8835-40C09263360B}] => (Allow) D:\Games\steamapps\common\KingdomComeDeliverance\Bin\Win64\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [{44C73DBC-9FCD-4B8A-AD87-9DC577B24C0D}] => (Allow) D:\Games\steamapps\common\Crusader Kings III\launcher\dowser.exe (Paradox Interactive AB (publ) -> )
FirewallRules: [{A6507854-1D2B-4187-A5A3-CE7E277B7165}] => (Allow) D:\Games\steamapps\common\Crusader Kings III\launcher\dowser.exe (Paradox Interactive AB (publ) -> )
FirewallRules: [{77A7D77A-618D-4CB7-A9C9-01BF132C3BD4}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\110.0.1587.46\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{DB33305B-2AC8-475A-AAD8-59793F2F23BF}] => (Allow) D:\Games\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{7D89F5DB-D2C6-4162-A2CB-7F9F90B8AA32}] => (Allow) D:\Games\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{5BD7EBFF-7C76-4480-8680-DD4E93446AFB}] => (Allow) D:\Games\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{C2251946-7141-4558-B42E-BEEDBB1517D4}] => (Allow) D:\Games\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{E7514408-312C-4264-A022-A17DAFD74EDE}] => (Allow) D:\Games\steamapps\common\American Truck Simulator\bin\win_x64\amtrucks.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{0BF5C2DA-4AF3-49DB-A6BC-B1D2549EFE2E}] => (Allow) D:\Games\steamapps\common\American Truck Simulator\bin\win_x64\amtrucks.exe (SCS Software s.r.o. -> SCS Software)

==================== Restore Points =========================

ATTENTION: System Restore is disabled (Total:117.94 GB) (Free:0.71 GB) (1%)

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (02/18/2023 07:58:50 AM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0

Error: (02/17/2023 06:20:45 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0

Error: (02/16/2023 03:30:20 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0

Error: (02/15/2023 08:39:32 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: SystemSettings.exe, verze: 10.0.19041.2546, časové razítko: 0x4aa1ce82
Název chybujícího modulu: msvcrt.dll, verze: 7.0.19041.546, časové razítko: 0x564f9f39
Kód výjimky: 0x40000015
Posun chyby: 0x000000000000ae22
ID chybujícího procesu: 0x1f68
Čas spuštění chybující aplikace: 0x01d9417523d4101d
Cesta k chybující aplikaci: C:\Windows\ImmersiveControlPanel\SystemSettings.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\msvcrt.dll
ID zprávy: 06e20287-32b5-497c-84b8-02cd3fd469ec
Úplný název chybujícího balíčku: windows.immersivecontrolpanel_10.0.2.1000_neutral_neutral_cw5n1h2txyewy
ID aplikace související s chybujícím balíčkem: microsoft.windows.immersivecontrolpanel

Error: (02/15/2023 03:09:32 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0

Error: (02/14/2023 04:56:36 PM) (Source: Office 2013 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0

Error: (02/13/2023 07:47:00 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: SOVIET64.exe, verze: 0.0.0.0, časové razítko: 0x63e3e0fe
Název chybujícího modulu: SOVIET64.exe, verze: 0.0.0.0, časové razítko: 0x63e3e0fe
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000010e848
ID chybujícího procesu: 0x43e8
Čas spuštění chybující aplikace: 0x01d93fd7bc37c55e
Cesta k chybující aplikaci: D:\Games\steamapps\common\SovietRepublic\SOVIET64.exe
Cesta k chybujícímu modulu: D:\Games\steamapps\common\SovietRepublic\SOVIET64.exe
ID zprávy: 810c0049-e161-409a-bbc5-55f01eaa954b
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (02/13/2023 03:41:58 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na DATADRIVE1 (D:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)


System errors:
=============
Error: (02/18/2023 07:58:14 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Steam Client Service neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (02/18/2023 07:58:14 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Steam Client Service bylo dosaženo časového limitu (30000 ms).

Error: (02/17/2023 10:33:43 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-VE8FI1A)
Description: Server Microsoft.Windows.ContentDeliveryManager_10.0.19041.1023_neutral_neutral_cw5n1h2txyewy!App.AppXw3qcpc7p849541dp39vvqd01bn7z9ybh.mca se v daném časovém limitu neregistroval u služby DCOM.

Error: (02/15/2023 05:38:49 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Audiosrv neuspěla při spuštění v důsledku následující chyby:
Služba nebyla zahájena, protože se nepodařilo přihlásit.

Error: (02/15/2023 05:38:49 PM) (Source: Service Control Manager) (EventID: 7038) (User: )
Description: Služba Audiosrv se nemohla přihlásit jako NT AUTHORITY\LocalService s aktuálně konfigurovaným heslem z důvodu následující chyby:
Požadavek není podporován.


Chcete-li zajistit správnou konfiguraci služby, použijte modul snap-in Služby konzoly Microsoft Management Console (MMC).

Error: (02/15/2023 05:38:46 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (17:21:12, ‎15.‎02.‎2023) bylo neočekávané.

Error: (02/10/2023 05:22:40 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Steam Client Service neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (02/10/2023 05:22:40 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Steam Client Service bylo dosaženo časového limitu (30000 ms).


Windows Defender:
================
Date: 2021-04-29 15:03:28
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {84A5F96A-3CF3-45D7-A2AE-0CA51331D861}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2021-04-28 18:49:26
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {DA50CE5C-A986-4A26-BA2E-852FA672C755}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2021-04-27 18:41:49
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {FA65548E-CAAE-437C-94E9-8AE2BE2E8266}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2021-04-26 16:16:22
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {3CFDC10B-43D2-4B17-9DD8-2696EA52E592}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2021-04-25 09:53:38
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {7F6FC990-881C-4171-8E7C-461F48AB4431}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM
Event[0]:

Date: 2021-09-28 08:14:14
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.339.1670.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.18100.6
Kód chyby: 0x8024001e
Popis chyby: Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.

Date: 2021-05-30 09:40:11
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.337.321.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.18100.5
Kód chyby: 0x80070643
Popis chyby: Při instalaci došlo k závažné chybě.

Date: 2021-05-30 09:40:09
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 1.339.1675.0
Předchozí verze bezpečnostních informací: 1.337.321.0
Zdroj aktualizace: Uživatel
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Delta
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.18100.6
Předchozí verze modulu: 1.1.18100.5
Kód chyby: 0x80070666
Popis chyby: Již je nainstalována jiná verze tohoto produktu. Instalaci této verze nelze dokončit. Chcete-li znovu nakonfigurovat nebo odebrat existující verzi produktu, použijte ovládací panel Přidat nebo odebrat programy.

Date: 2021-05-30 09:40:09
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 1.339.1675.0
Předchozí verze bezpečnostních informací: 1.337.321.0
Zdroj aktualizace: Uživatel
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Delta
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.18100.6
Předchozí verze modulu: 1.1.18100.5
Kód chyby: 0x80070666
Popis chyby: Již je nainstalována jiná verze tohoto produktu. Instalaci této verze nelze dokončit. Chcete-li znovu nakonfigurovat nebo odebrat existující verzi produktu, použijte ovládací panel Přidat nebo odebrat programy.

Date: 2021-05-30 09:40:09
Description:
Program Antivirová ochrana v programu Microsoft Defender zjistil chybu při pokusu o aktualizaci modulu
Nová verze modulu: 1.1.18100.6
Předchozí verze modulu: 1.1.18100.5
Uživatel: NT AUTHORITY\SYSTEM
Kód chyby: 0x80070666
Popis chyby: Již je nainstalována jiná verze tohoto produktu. Instalaci této verze nelze dokončit. Chcete-li znovu nakonfigurovat nebo odebrat existující verzi produktu, použijte ovládací panel Přidat nebo odebrat programy.

CodeIntegrity:
===============
Date: 2022-08-15 14:57:10
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bitdefender\Bitdefender Security\bdamsi\265850382833590000\antimalware_provider64.dll that did not meet the Windows signing level requirements.

Date: 2022-08-11 19:06:12
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Windows Defender\MpCmdRun.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bitdefender\Bitdefender Security\bdamsi\265850382833590000\antimalware_provider64.dll that did not meet the Microsoft signing level requirements.


==================== Memory info ===========================

BIOS: AMI A0.06 08/05/2015
Motherboard: HP 2B52
Processor: AMD A10-8750 Radeon R7, 12 Compute Cores 4C+8G
Percentage of memory in use: 40%
Total physical RAM: 16329.53 MB
Available physical RAM: 9796.33 MB
Total Virtual: 18889.53 MB
Available Virtual: 10920.43 MB

==================== Drives ================================

Drive c: (Windows) (Fixed) (Total:117.94 GB) (Free:0.71 GB) (Model: SAMSUNG MZ7LN128HCHP-000H1) NTFS
Drive d: (DATADRIVE1) (Fixed) (Total:931.39 GB) (Free:211.5 GB) (Model: WDC WD10EZEX-60M2NA0) NTFS

\\?\Volume{f8550ac9-d582-44ea-bf78-d23742d85711}\ (WINRE) (Fixed) (Total:0.83 GB) (Free:0.39 GB) NTFS
\\?\Volume{3686f8ff-e641-4311-8612-df56a5395e23}\ (SYSTEM) (Fixed) (Total:0.35 GB) (Free:0.27 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 119.2 GB) (Disk ID: BFD04544)

Partition: GPT.

==========================================================
Disk: 1 (Size: 931.5 GB) (Disk ID: 026D901C)

Partition: GPT.

==================== End of Addition.txt =======================

Děkuji

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118244
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#2 Příspěvek od Rudy »

Zdravím!
Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [710264 2020-06-18] (Oracle America, Inc. -> Oracle Corporation)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {AC4569D1-6F98-4163-AE27-D42ED89DED81} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
U3 aspnet_state; no ImagePath
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers1: [MagicISO] -> {DB85C504-C730-49DD-BEC1-7B39C6103B7A} => -> No File
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers4: [MagicISO] -> {DB85C504-C730-49DD-BEC1-7B39C6103B7A} => -> No File
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers6: [MagicISO] -> {DB85C504-C730-49DD-BEC1-7B39C6103B7A} => -> No File
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
FirewallRules: [UDP Query User{84EF433B-CC2C-419D-A972-F3093465A8D1}D:\games\microsoft flight simulator\flightsimulator.exe] => (Allow) D:\games\microsoft flight simulator\flightsimulator.exe => No File
FirewallRules: [TCP Query User{A01C3C75-5659-4C44-9C1F-80A30B3DE8A9}D:\games\microsoft flight simulator\flightsimulator.exe] => (Allow) D:\games\microsoft flight simulator\flightsimulator.exe => No File
FirewallRules: [UDP Query User{1BB0D9AB-7D4B-47D7-BCDC-73905B2C9AB0}D:\games\epic\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe] => (Allow) D:\games\epic\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe => No File
FirewallRules: [TCP Query User{DB458E5D-902A-47D0-B510-B79B0477632B}D:\games\epic\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe] => (Allow) D:\games\epic\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe => No File
FirewallRules: [{441BC771-96E5-4FE8-A21D-C2D03ED56CAE}] => (Allow) C:\Users\pfejt\AppData\Local\Temp\7zS404D\HP.EasyStart.exe => No File
FirewallRules: [UDP Query User{E351B0BF-DF2C-4B6D-AB50-59444769D523}D:\games\wargaming.net\gamecenter\wgc.exe] => (Allow) D:\games\wargaming.net\gamecenter\wgc.exe => No File
FirewallRules: [TCP Query User{64900758-14B8-4C29-8C80-29B5F564F736}D:\games\wargaming.net\gamecenter\wgc.exe] => (Allow) D:\games\wargaming.net\gamecenter\wgc.exe => No File
FirewallRules: [UDP Query User{CBD2AE5C-09EE-4CC2-BAE8-D7C872CA0D2D}D:\games\wot\win64\worldoftanks.exe] => (Allow) D:\games\wot\win64\worldoftanks.exe => No File
FirewallRules: [TCP Query User{29FF0E61-E6A2-4678-AC73-E54E04469280}D:\games\wot\win64\worldoftanks.exe] => (Allow) D:\games\wot\win64\worldoftanks.exe => No File
FirewallRules: [UDP Query User{DBD6A8DB-9209-4DBA-8F0A-2C33224C2912}D:\games\the settlers 6\extra1\bin\settlers6.exe] => (Allow) D:\games\the settlers 6\extra1\bin\settlers6.exe => No File
FirewallRules: [TCP Query User{20B68BB2-58C7-40F8-BAF2-909FD59D4CEB}D:\games\the settlers 6\extra1\bin\settlers6.exe] => (Allow) D:\games\the settlers 6\extra1\bin\settlers6.exe => No File
FirewallRules: [UDP Query User{B18451E7-F52B-4713-B97D-4A07E27387BC}D:\games\the settlers 6\base\bin\settlers6.exe] => (Allow) D:\games\the settlers 6\base\bin\settlers6.exe => No File
FirewallRules: [TCP Query User{FCDA67A8-C9DC-4089-9CB9-A0965339AE4B}D:\games\the settlers 6\base\bin\settlers6.exe] => (Allow) D:\games\the settlers 6\base\bin\settlers6.exe => No File
FirewallRules: [UDP Query User{110A8180-D4CF-4A3B-BD4A-B275AFA7199A}D:\games\wot\win64\worldoftanks.exe] => (Allow) D:\games\wot\win64\worldoftanks.exe => No File
FirewallRules: [TCP Query User{54A5CFC8-D503-47E9-AAA2-BDD835379B25}D:\games\wot\win64\worldoftanks.exe] => (Allow) D:\games\wot\win64\worldoftanks.exe => No File
FirewallRules: [UDP Query User{01AC6336-979D-4328-B735-918D300F4747}D:\games\wargaming.net\gamecenter\dlls\wgc_renderer.exe] => (Allow) D:\games\wargaming.net\gamecenter\dlls\wgc_renderer.exe => No File
FirewallRules: [TCP Query User{1A9D2B90-3371-4AFA-8A85-A789DB8D5C65}D:\games\wargaming.net\gamecenter\dlls\wgc_renderer.exe] => (Allow) D:\games\wargaming.net\gamecenter\dlls\wgc_renderer.exe => No File
FirewallRules: [UDP Query User{A6EAE573-A9D5-4B8A-833A-04F55171BB12}D:\games\wot\win32\worldoftanks.exe] => (Allow) D:\games\wot\win32\worldoftanks.exe => No File
FirewallRules: [TCP Query User{A2FEC7A3-643C-4B0F-ABDC-B0478901B0ED}D:\games\wot\win32\worldoftanks.exe] => (Allow) D:\games\wot\win32\worldoftanks.exe => No File
FirewallRules: [UDP Query User{1117A4EE-E27C-4C1E-BD27-16CAB754777E}D:\games\origin\fifa19.exe] => (Allow) D:\games\origin\fifa19.exe => No File
FirewallRules: [TCP Query User{042BEF7B-2205-4CC3-BEA9-07C1E8A2A7E9}D:\games\origin\fifa19.exe] => (Allow) D:\games\origin\fifa19.exe => No File
FirewallRules: [{DCCC99EC-E388-4A3E-9109-9F9BE58D9E68}] => (Allow) D:\Games\Origin\FIFASetup\fifaconfig.exe => No File
FirewallRules: [{CF09A820-45A2-46F3-9FA4-D9F9C1DF4293}] => (Allow) D:\Games\Origin\FIFASetup\fifaconfig.exe => No File
FirewallRules: [{D6264FEA-75A8-4A44-B9A4-BA01C19794FE}] => (Allow) D:\Games\Zoo tycoon 2\zt.exe => No File
FirewallRules: [{2E3DA0B4-F322-4754-82B0-4AB55E045BF2}] => (Allow) D:\Games\Zoo tycoon 2\zt.exe => No File
FirewallRules: [{B84F69C6-3303-472F-B351-7AF248DD5C31}] => (Allow) D:\Games\WOT\WoTLauncher.exe => No File
FirewallRules: [{E2B3E4AF-ACCA-467A-9D00-E2038D70CF25}] => (Allow) D:\Games\WOT\WoTLauncher.exe => No File
FirewallRules: [{961E2EB5-2038-4FAE-9EB1-FBFDF445E86C}] => (Allow) D:\Games\WOT\worldoftanks.exe => No File
FirewallRules: [{B1D1EBFF-45EA-46CC-8B47-9004B781DC4B}] => (Allow) D:\Games\WOT\worldoftanks.exe => No File
FirewallRules: [TCP Query User{82624332-FB39-4924-B00C-EEEDCA150980}D:\games\total war - shogun 2\shogun2.exe] => (Allow) D:\games\total war - shogun 2\shogun2.exe => No File
FirewallRules: [UDP Query User{50BE7998-CB5B-41F9-8107-E49948A09990}D:\games\total war - shogun 2\shogun2.exe] => (Allow) D:\games\total war - shogun 2\shogun2.exe => No File
FirewallRules: [TCP Query User{C8BF8997-008F-48A7-B720-67289CEE1697}D:\games\sid meiers civilization vi\base\binaries\win64steam\civilizationvi.exe] => (Allow) D:\games\sid meiers civilization vi\base\binaries\win64steam\civilizationvi.exe => No File
FirewallRules: [UDP Query User{588401DD-0E87-4DF7-827D-8C69901A1A14}D:\games\sid meiers civilization vi\base\binaries\win64steam\civilizationvi.exe] => (Allow) D:\games\sid meiers civilization vi\base\binaries\win64steam\civilizationvi.exe => No File
FirewallRules: [TCP Query User{B2C03B54-36A1-4255-A1B5-5530DDA26F76}D:\games\civilization v - brave new world\civilizationv_dx11.exe] => (Allow) D:\games\civilization v - brave new world\civilizationv_dx11.exe => No File
FirewallRules: [UDP Query User{78DF2F69-D8B9-4951-A358-7D752729CAF5}D:\games\civilization v - brave new world\civilizationv_dx11.exe] => (Allow) D:\games\civilization v - brave new world\civilizationv_dx11.exe => No File
FirewallRules: [TCP Query User{D32F477E-6955-4FE7-9FAF-7A43EC22A52F}D:\games\wargaming.net\gamecenter\wgc.exe] => (Allow) D:\games\wargaming.net\gamecenter\wgc.exe => No File
FirewallRules: [UDP Query User{197A5CDC-6DA7-4BE1-A979-49EA3BC96EF1}D:\games\wargaming.net\gamecenter\wgc.exe] => (Allow) D:\games\wargaming.net\gamecenter\wgc.exe => No File
FirewallRules: [TCP Query User{09403236-55D9-43D4-A0F6-C2FEF82CF56D}D:\games\kingdom come - deliverance\bin\win64\kingdomcome.exe] => (Allow) D:\games\kingdom come - deliverance\bin\win64\kingdomcome.exe => No File
FirewallRules: [UDP Query User{122520A5-CC5B-4615-A96C-792D1F7B4126}D:\games\kingdom come - deliverance\bin\win64\kingdomcome.exe] => (Allow) D:\games\kingdom come - deliverance\bin\win64\kingdomcome.exe => No File
FirewallRules: [TCP Query User{3F0F1999-6027-414F-8F1D-016E34E1B269}D:\games\farming simulator 19\x64\farmingsimulator2019game.exe] => (Allow) D:\games\farming simulator 19\x64\farmingsimulator2019game.exe => No File
FirewallRules: [UDP Query User{D25A080B-08B2-441C-9CC6-69AB1D5CF732}D:\games\farming simulator 19\x64\farmingsimulator2019game.exe] => (Allow) D:\games\farming simulator 19\x64\farmingsimulator2019game.exe => No File
FirewallRules: [TCP Query User{52C73731-373B-4DFD-ADFF-43CFC2BD02CA}D:\games\sid meiers civilization vi\base\binaries\win64steam\civilizationvi_dx12.exe] => (Block) D:\games\sid meiers civilization vi\base\binaries\win64steam\civilizationvi_dx12.exe => No File
FirewallRules: [UDP Query User{B931850C-7B75-4AA1-9B67-8E45DE33E545}D:\games\sid meiers civilization vi\base\binaries\win64steam\civilizationvi_dx12.exe] => (Block) D:\games\sid meiers civilization vi\base\binaries\win64steam\civilizationvi_dx12.exe => No File
FirewallRules: [TCP Query User{6480837A-F8ED-4FEE-BDBB-135440844868}D:\downloads\ancestors - the humankind odyssey\ancestors\binaries\win64\ancestors-win64-shipping.exe] => (Allow) D:\downloads\ancestors - the humankind odyssey\ancestors\binaries\win64\ancestors-win64-shipping.exe => No File
FirewallRules: [UDP Query User{28EBB0BA-E19E-40E0-8842-040568AB032B}D:\downloads\ancestors - the humankind odyssey\ancestors\binaries\win64\ancestors-win64-shipping.exe] => (Allow) D:\downloads\ancestors - the humankind odyssey\ancestors\binaries\win64\ancestors-win64-shipping.exe => No File
FirewallRules: [TCP Query User{98FC56B4-4FF0-4552-9284-CD133AB96ABE}D:\games\hearts of iron iv allied armor\hoi4.exe] => (Allow) D:\games\hearts of iron iv allied armor\hoi4.exe => No File
FirewallRules: [UDP Query User{B0BA315D-43FB-4717-9423-70E4D72D16F0}D:\games\hearts of iron iv allied armor\hoi4.exe] => (Allow) D:\games\hearts of iron iv allied armor\hoi4.exe => No File
FirewallRules: [TCP Query User{B901AA0A-DB3F-4CEF-8A89-6E93FA945086}D:\games\sid meiers civilization vi new frontier pass part 2\base\binaries\win64steam\civilizationvi.exe] => (Allow) D:\games\sid meiers civilization vi new frontier pass part 2\base\binaries\win64steam\civilizationvi.exe => No File
FirewallRules: [UDP Query User{863CA03B-4C26-4CD2-8755-C5C5B9618D55}D:\games\sid meiers civilization vi new frontier pass part 2\base\binaries\win64steam\civilizationvi.exe] => (Allow) D:\games\sid meiers civilization vi new frontier pass part 2\base\binaries\win64steam\civilizationvi.exe => No File
FirewallRules: [TCP Query User{602A2AE0-0E43-4B20-9D1E-B6DB8D22359A}D:\games\stellaris\stellaris.exe] => (Allow) D:\games\stellaris\stellaris.exe => No File
FirewallRules: [UDP Query User{EC586AE1-4C73-4F6F-A244-D5822E4A6820}D:\games\stellaris\stellaris.exe] => (Allow) D:\games\stellaris\stellaris.exe => No File
FirewallRules: [TCP Query User{99EB12E9-6B5B-4E6E-8EE5-C63A14BFAF20}D:\downloads\medieval dynasty\medieval_dynasty\binaries\win64\medieval_dynasty-win64-shipping.exe] => (Allow) D:\downloads\medieval dynasty\medieval_dynasty\binaries\win64\medieval_dynasty-win64-shipping.exe => No File
FirewallRules: [UDP Query User{2A329827-2608-4E63-8E06-034640731B7F}D:\downloads\medieval dynasty\medieval_dynasty\binaries\win64\medieval_dynasty-win64-shipping.exe] => (Allow) D:\downloads\medieval dynasty\medieval_dynasty\binaries\win64\medieval_dynasty-win64-shipping.exe => No File
FirewallRules: [TCP Query User{CBACFC7B-1630-47A3-991F-C9AFF9BD897A}D:\games\medieval dynasty\medieval_dynasty\binaries\win64\medieval_dynasty-win64-shipping.exe] => (Allow) D:\games\medieval dynasty\medieval_dynasty\binaries\win64\medieval_dynasty-win64-shipping.exe => No File
FirewallRules: [UDP Query User{C3A8FD1F-3EE0-4859-82E6-FEE7FBDBE1E7}D:\games\medieval dynasty\medieval_dynasty\binaries\win64\medieval_dynasty-win64-shipping.exe] => (Allow) D:\games\medieval dynasty\medieval_dynasty\binaries\win64\medieval_dynasty-win64-shipping.exe => No File
FirewallRules: [TCP Query User{C7EF4907-3EA3-4922-A6BA-119DE9522267}D:\games\epic\epic games\gtav\gta5.exe] => (Allow) D:\games\epic\epic games\gtav\gta5.exe => No File
FirewallRules: [UDP Query User{89755349-0F62-450C-8198-3BE7925AE9B0}D:\games\epic\epic games\gtav\gta5.exe] => (Allow) D:\games\epic\epic games\gtav\gta5.exe => No File
FirewallRules: [TCP Query User{38526BB6-6FA2-4D21-9D31-ACFF6D4BC6DB}D:\games\farming simulator 22\x64\farmingsimulator2022game.exe] => (Allow) D:\games\farming simulator 22\x64\farmingsimulator2022game.exe => No File
FirewallRules: [UDP Query User{A1EE1A44-367A-4CC4-8745-FB5C947967D5}D:\games\farming simulator 22\x64\farmingsimulator2022game.exe] => (Allow) D:\games\farming simulator 22\x64\farmingsimulator2022game.exe => No File
FirewallRules: [TCP Query User{5BD68CE2-2623-4AEA-B06C-F4F161FEE945}D:\games\farming simulator 22\dedicatedserver.exe] => (Allow) D:\games\farming simulator 22\dedicatedserver.exe => No File
FirewallRules: [UDP Query User{C88F41CC-6569-4F9A-B041-787FDF7D4CC3}D:\games\farming simulator 22\dedicatedserver.exe] => (Allow) D:\games\farming simulator 22\dedicatedserver.exe => No File
FirewallRules: [TCP Query User{25C4BD48-8665-4DF0-B832-83655918CD81}D:\downloads\hearts.of.iron.iv.v1.11.5.5b4f-0xdeadc0de\hoi4.exe] => (Allow) D:\downloads\hearts.of.iron.iv.v1.11.5.5b4f-0xdeadc0de\hoi4.exe => No File
FirewallRules: [UDP Query User{4E74905E-AA1D-4F77-9FBB-F20A903EE36B}D:\downloads\hearts.of.iron.iv.v1.11.5.5b4f-0xdeadc0de\hoi4.exe] => (Allow) D:\downloads\hearts.of.iron.iv.v1.11.5.5b4f-0xdeadc0de\hoi4.exe => No File

Hosts:
EmptyTemp:
End
Uložte do D:\Downloads\scoped_dir14072_623952249 jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte. V systému jsou 2 amtiviry se zapnutým residentním štítem (Bitdefemder a Eset security) . Jeden z nich vypněte, nebo odinstalujte. Dochází k sw kolizi.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Trejsi91
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 09 bře 2019 07:54

Re: Prosím o kontrolu logu

#3 Příspěvek od Trejsi91 »

Fix result of Farbar Recovery Scan Tool (x64) Version: 20-02-2023
Ran by pfejt (20-02-2023 15:45:21) Run:1
Running from D:\Downloads\scoped_dir14072_623952249
Loaded Profiles: pfejt & defaultuser1
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [710264 2020-06-18] (Oracle America, Inc. -> Oracle Corporation)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {AC4569D1-6F98-4163-AE27-D42ED89DED81} - \Microsoft\Windows\UNP\RunCampaignManager -> No File <==== ATTENTION
Edge Extension: (No Name) -> AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\AutoFormFill [not found]
Edge Extension: (No Name) -> BookReader_B171F20233094AC88D05A8EF7B9763E8 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\BookViewer [not found]
Edge Extension: (No Name) -> LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\LearningTools [not found]
Edge Extension: (No Name) -> PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => C:\Windows\SystemApps\Microsoft.MicrosoftEdge_8wekyb3d8bbwe\Assets\HostExtensions\PinJSAPI [not found]
U3 aspnet_state; no ImagePath
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers1: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers1: [MagicISO] -> {DB85C504-C730-49DD-BEC1-7B39C6103B7A} => -> No File
ContextMenuHandlers3: [{4A7C4306-57E0-4C0C-83A9-78C1528F618C}] -> {4A7C4306-57E0-4C0C-83A9-78C1528F618C} => -> No File
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => -> No File
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => -> No File
ContextMenuHandlers4: [MagicISO] -> {DB85C504-C730-49DD-BEC1-7B39C6103B7A} => -> No File
ContextMenuHandlers4: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
ContextMenuHandlers6: [BriefcaseMenu] -> {85BBD920-42A0-1069-A2E4-08002B30309D} => -> No File
ContextMenuHandlers6: [MagicISO] -> {DB85C504-C730-49DD-BEC1-7B39C6103B7A} => -> No File
ContextMenuHandlers6: [Offline Files] -> {474C98EE-CF3D-41f5-80E3-4AAB0AB04301} => -> No File
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
FirewallRules: [UDP Query User{84EF433B-CC2C-419D-A972-F3093465A8D1}D:\games\microsoft flight simulator\flightsimulator.exe] => (Allow) D:\games\microsoft flight simulator\flightsimulator.exe => No File
FirewallRules: [TCP Query User{A01C3C75-5659-4C44-9C1F-80A30B3DE8A9}D:\games\microsoft flight simulator\flightsimulator.exe] => (Allow) D:\games\microsoft flight simulator\flightsimulator.exe => No File
FirewallRules: [UDP Query User{1BB0D9AB-7D4B-47D7-BCDC-73905B2C9AB0}D:\games\epic\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe] => (Allow) D:\games\epic\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe => No File
FirewallRules: [TCP Query User{DB458E5D-902A-47D0-B510-B79B0477632B}D:\games\epic\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe] => (Allow) D:\games\epic\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe => No File
FirewallRules: [{441BC771-96E5-4FE8-A21D-C2D03ED56CAE}] => (Allow) C:\Users\pfejt\AppData\Local\Temp\7zS404D\HP.EasyStart.exe => No File
FirewallRules: [UDP Query User{E351B0BF-DF2C-4B6D-AB50-59444769D523}D:\games\wargaming.net\gamecenter\wgc.exe] => (Allow) D:\games\wargaming.net\gamecenter\wgc.exe => No File
FirewallRules: [TCP Query User{64900758-14B8-4C29-8C80-29B5F564F736}D:\games\wargaming.net\gamecenter\wgc.exe] => (Allow) D:\games\wargaming.net\gamecenter\wgc.exe => No File
FirewallRules: [UDP Query User{CBD2AE5C-09EE-4CC2-BAE8-D7C872CA0D2D}D:\games\wot\win64\worldoftanks.exe] => (Allow) D:\games\wot\win64\worldoftanks.exe => No File
FirewallRules: [TCP Query User{29FF0E61-E6A2-4678-AC73-E54E04469280}D:\games\wot\win64\worldoftanks.exe] => (Allow) D:\games\wot\win64\worldoftanks.exe => No File
FirewallRules: [UDP Query User{DBD6A8DB-9209-4DBA-8F0A-2C33224C2912}D:\games\the settlers 6\extra1\bin\settlers6.exe] => (Allow) D:\games\the settlers 6\extra1\bin\settlers6.exe => No File
FirewallRules: [TCP Query User{20B68BB2-58C7-40F8-BAF2-909FD59D4CEB}D:\games\the settlers 6\extra1\bin\settlers6.exe] => (Allow) D:\games\the settlers 6\extra1\bin\settlers6.exe => No File
FirewallRules: [UDP Query User{B18451E7-F52B-4713-B97D-4A07E27387BC}D:\games\the settlers 6\base\bin\settlers6.exe] => (Allow) D:\games\the settlers 6\base\bin\settlers6.exe => No File
FirewallRules: [TCP Query User{FCDA67A8-C9DC-4089-9CB9-A0965339AE4B}D:\games\the settlers 6\base\bin\settlers6.exe] => (Allow) D:\games\the settlers 6\base\bin\settlers6.exe => No File
FirewallRules: [UDP Query User{110A8180-D4CF-4A3B-BD4A-B275AFA7199A}D:\games\wot\win64\worldoftanks.exe] => (Allow) D:\games\wot\win64\worldoftanks.exe => No File
FirewallRules: [TCP Query User{54A5CFC8-D503-47E9-AAA2-BDD835379B25}D:\games\wot\win64\worldoftanks.exe] => (Allow) D:\games\wot\win64\worldoftanks.exe => No File
FirewallRules: [UDP Query User{01AC6336-979D-4328-B735-918D300F4747}D:\games\wargaming.net\gamecenter\dlls\wgc_renderer.exe] => (Allow) D:\games\wargaming.net\gamecenter\dlls\wgc_renderer.exe => No File
FirewallRules: [TCP Query User{1A9D2B90-3371-4AFA-8A85-A789DB8D5C65}D:\games\wargaming.net\gamecenter\dlls\wgc_renderer.exe] => (Allow) D:\games\wargaming.net\gamecenter\dlls\wgc_renderer.exe => No File
FirewallRules: [UDP Query User{A6EAE573-A9D5-4B8A-833A-04F55171BB12}D:\games\wot\win32\worldoftanks.exe] => (Allow) D:\games\wot\win32\worldoftanks.exe => No File
FirewallRules: [TCP Query User{A2FEC7A3-643C-4B0F-ABDC-B0478901B0ED}D:\games\wot\win32\worldoftanks.exe] => (Allow) D:\games\wot\win32\worldoftanks.exe => No File
FirewallRules: [UDP Query User{1117A4EE-E27C-4C1E-BD27-16CAB754777E}D:\games\origin\fifa19.exe] => (Allow) D:\games\origin\fifa19.exe => No File
FirewallRules: [TCP Query User{042BEF7B-2205-4CC3-BEA9-07C1E8A2A7E9}D:\games\origin\fifa19.exe] => (Allow) D:\games\origin\fifa19.exe => No File
FirewallRules: [{DCCC99EC-E388-4A3E-9109-9F9BE58D9E68}] => (Allow) D:\Games\Origin\FIFASetup\fifaconfig.exe => No File
FirewallRules: [{CF09A820-45A2-46F3-9FA4-D9F9C1DF4293}] => (Allow) D:\Games\Origin\FIFASetup\fifaconfig.exe => No File
FirewallRules: [{D6264FEA-75A8-4A44-B9A4-BA01C19794FE}] => (Allow) D:\Games\Zoo tycoon 2\zt.exe => No File
FirewallRules: [{2E3DA0B4-F322-4754-82B0-4AB55E045BF2}] => (Allow) D:\Games\Zoo tycoon 2\zt.exe => No File
FirewallRules: [{B84F69C6-3303-472F-B351-7AF248DD5C31}] => (Allow) D:\Games\WOT\WoTLauncher.exe => No File
FirewallRules: [{E2B3E4AF-ACCA-467A-9D00-E2038D70CF25}] => (Allow) D:\Games\WOT\WoTLauncher.exe => No File
FirewallRules: [{961E2EB5-2038-4FAE-9EB1-FBFDF445E86C}] => (Allow) D:\Games\WOT\worldoftanks.exe => No File
FirewallRules: [{B1D1EBFF-45EA-46CC-8B47-9004B781DC4B}] => (Allow) D:\Games\WOT\worldoftanks.exe => No File
FirewallRules: [TCP Query User{82624332-FB39-4924-B00C-EEEDCA150980}D:\games\total war - shogun 2\shogun2.exe] => (Allow) D:\games\total war - shogun 2\shogun2.exe => No File
FirewallRules: [UDP Query User{50BE7998-CB5B-41F9-8107-E49948A09990}D:\games\total war - shogun 2\shogun2.exe] => (Allow) D:\games\total war - shogun 2\shogun2.exe => No File
FirewallRules: [TCP Query User{C8BF8997-008F-48A7-B720-67289CEE1697}D:\games\sid meiers civilization vi\base\binaries\win64steam\civilizationvi.exe] => (Allow) D:\games\sid meiers civilization vi\base\binaries\win64steam\civilizationvi.exe => No File
FirewallRules: [UDP Query User{588401DD-0E87-4DF7-827D-8C69901A1A14}D:\games\sid meiers civilization vi\base\binaries\win64steam\civilizationvi.exe] => (Allow) D:\games\sid meiers civilization vi\base\binaries\win64steam\civilizationvi.exe => No File
FirewallRules: [TCP Query User{B2C03B54-36A1-4255-A1B5-5530DDA26F76}D:\games\civilization v - brave new world\civilizationv_dx11.exe] => (Allow) D:\games\civilization v - brave new world\civilizationv_dx11.exe => No File
FirewallRules: [UDP Query User{78DF2F69-D8B9-4951-A358-7D752729CAF5}D:\games\civilization v - brave new world\civilizationv_dx11.exe] => (Allow) D:\games\civilization v - brave new world\civilizationv_dx11.exe => No File
FirewallRules: [TCP Query User{D32F477E-6955-4FE7-9FAF-7A43EC22A52F}D:\games\wargaming.net\gamecenter\wgc.exe] => (Allow) D:\games\wargaming.net\gamecenter\wgc.exe => No File
FirewallRules: [UDP Query User{197A5CDC-6DA7-4BE1-A979-49EA3BC96EF1}D:\games\wargaming.net\gamecenter\wgc.exe] => (Allow) D:\games\wargaming.net\gamecenter\wgc.exe => No File
FirewallRules: [TCP Query User{09403236-55D9-43D4-A0F6-C2FEF82CF56D}D:\games\kingdom come - deliverance\bin\win64\kingdomcome.exe] => (Allow) D:\games\kingdom come - deliverance\bin\win64\kingdomcome.exe => No File
FirewallRules: [UDP Query User{122520A5-CC5B-4615-A96C-792D1F7B4126}D:\games\kingdom come - deliverance\bin\win64\kingdomcome.exe] => (Allow) D:\games\kingdom come - deliverance\bin\win64\kingdomcome.exe => No File
FirewallRules: [TCP Query User{3F0F1999-6027-414F-8F1D-016E34E1B269}D:\games\farming simulator 19\x64\farmingsimulator2019game.exe] => (Allow) D:\games\farming simulator 19\x64\farmingsimulator2019game.exe => No File
FirewallRules: [UDP Query User{D25A080B-08B2-441C-9CC6-69AB1D5CF732}D:\games\farming simulator 19\x64\farmingsimulator2019game.exe] => (Allow) D:\games\farming simulator 19\x64\farmingsimulator2019game.exe => No File
FirewallRules: [TCP Query User{52C73731-373B-4DFD-ADFF-43CFC2BD02CA}D:\games\sid meiers civilization vi\base\binaries\win64steam\civilizationvi_dx12.exe] => (Block) D:\games\sid meiers civilization vi\base\binaries\win64steam\civilizationvi_dx12.exe => No File
FirewallRules: [UDP Query User{B931850C-7B75-4AA1-9B67-8E45DE33E545}D:\games\sid meiers civilization vi\base\binaries\win64steam\civilizationvi_dx12.exe] => (Block) D:\games\sid meiers civilization vi\base\binaries\win64steam\civilizationvi_dx12.exe => No File
FirewallRules: [TCP Query User{6480837A-F8ED-4FEE-BDBB-135440844868}D:\downloads\ancestors - the humankind odyssey\ancestors\binaries\win64\ancestors-win64-shipping.exe] => (Allow) D:\downloads\ancestors - the humankind odyssey\ancestors\binaries\win64\ancestors-win64-shipping.exe => No File
FirewallRules: [UDP Query User{28EBB0BA-E19E-40E0-8842-040568AB032B}D:\downloads\ancestors - the humankind odyssey\ancestors\binaries\win64\ancestors-win64-shipping.exe] => (Allow) D:\downloads\ancestors - the humankind odyssey\ancestors\binaries\win64\ancestors-win64-shipping.exe => No File
FirewallRules: [TCP Query User{98FC56B4-4FF0-4552-9284-CD133AB96ABE}D:\games\hearts of iron iv allied armor\hoi4.exe] => (Allow) D:\games\hearts of iron iv allied armor\hoi4.exe => No File
FirewallRules: [UDP Query User{B0BA315D-43FB-4717-9423-70E4D72D16F0}D:\games\hearts of iron iv allied armor\hoi4.exe] => (Allow) D:\games\hearts of iron iv allied armor\hoi4.exe => No File
FirewallRules: [TCP Query User{B901AA0A-DB3F-4CEF-8A89-6E93FA945086}D:\games\sid meiers civilization vi new frontier pass part 2\base\binaries\win64steam\civilizationvi.exe] => (Allow) D:\games\sid meiers civilization vi new frontier pass part 2\base\binaries\win64steam\civilizationvi.exe => No File
FirewallRules: [UDP Query User{863CA03B-4C26-4CD2-8755-C5C5B9618D55}D:\games\sid meiers civilization vi new frontier pass part 2\base\binaries\win64steam\civilizationvi.exe] => (Allow) D:\games\sid meiers civilization vi new frontier pass part 2\base\binaries\win64steam\civilizationvi.exe => No File
FirewallRules: [TCP Query User{602A2AE0-0E43-4B20-9D1E-B6DB8D22359A}D:\games\stellaris\stellaris.exe] => (Allow) D:\games\stellaris\stellaris.exe => No File
FirewallRules: [UDP Query User{EC586AE1-4C73-4F6F-A244-D5822E4A6820}D:\games\stellaris\stellaris.exe] => (Allow) D:\games\stellaris\stellaris.exe => No File
FirewallRules: [TCP Query User{99EB12E9-6B5B-4E6E-8EE5-C63A14BFAF20}D:\downloads\medieval dynasty\medieval_dynasty\binaries\win64\medieval_dynasty-win64-shipping.exe] => (Allow) D:\downloads\medieval dynasty\medieval_dynasty\binaries\win64\medieval_dynasty-win64-shipping.exe => No File
FirewallRules: [UDP Query User{2A329827-2608-4E63-8E06-034640731B7F}D:\downloads\medieval dynasty\medieval_dynasty\binaries\win64\medieval_dynasty-win64-shipping.exe] => (Allow) D:\downloads\medieval dynasty\medieval_dynasty\binaries\win64\medieval_dynasty-win64-shipping.exe => No File
FirewallRules: [TCP Query User{CBACFC7B-1630-47A3-991F-C9AFF9BD897A}D:\games\medieval dynasty\medieval_dynasty\binaries\win64\medieval_dynasty-win64-shipping.exe] => (Allow) D:\games\medieval dynasty\medieval_dynasty\binaries\win64\medieval_dynasty-win64-shipping.exe => No File
FirewallRules: [UDP Query User{C3A8FD1F-3EE0-4859-82E6-FEE7FBDBE1E7}D:\games\medieval dynasty\medieval_dynasty\binaries\win64\medieval_dynasty-win64-shipping.exe] => (Allow) D:\games\medieval dynasty\medieval_dynasty\binaries\win64\medieval_dynasty-win64-shipping.exe => No File
FirewallRules: [TCP Query User{C7EF4907-3EA3-4922-A6BA-119DE9522267}D:\games\epic\epic games\gtav\gta5.exe] => (Allow) D:\games\epic\epic games\gtav\gta5.exe => No File
FirewallRules: [UDP Query User{89755349-0F62-450C-8198-3BE7925AE9B0}D:\games\epic\epic games\gtav\gta5.exe] => (Allow) D:\games\epic\epic games\gtav\gta5.exe => No File
FirewallRules: [TCP Query User{38526BB6-6FA2-4D21-9D31-ACFF6D4BC6DB}D:\games\farming simulator 22\x64\farmingsimulator2022game.exe] => (Allow) D:\games\farming simulator 22\x64\farmingsimulator2022game.exe => No File
FirewallRules: [UDP Query User{A1EE1A44-367A-4CC4-8745-FB5C947967D5}D:\games\farming simulator 22\x64\farmingsimulator2022game.exe] => (Allow) D:\games\farming simulator 22\x64\farmingsimulator2022game.exe => No File
FirewallRules: [TCP Query User{5BD68CE2-2623-4AEA-B06C-F4F161FEE945}D:\games\farming simulator 22\dedicatedserver.exe] => (Allow) D:\games\farming simulator 22\dedicatedserver.exe => No File
FirewallRules: [UDP Query User{C88F41CC-6569-4F9A-B041-787FDF7D4CC3}D:\games\farming simulator 22\dedicatedserver.exe] => (Allow) D:\games\farming simulator 22\dedicatedserver.exe => No File
FirewallRules: [TCP Query User{25C4BD48-8665-4DF0-B832-83655918CD81}D:\downloads\hearts.of.iron.iv.v1.11.5.5b4f-0xdeadc0de\hoi4.exe] => (Allow) D:\downloads\hearts.of.iron.iv.v1.11.5.5b4f-0xdeadc0de\hoi4.exe => No File
FirewallRules: [UDP Query User{4E74905E-AA1D-4F77-9FBB-F20A903EE36B}D:\downloads\hearts.of.iron.iv.v1.11.5.5b4f-0xdeadc0de\hoi4.exe] => (Allow) D:\downloads\hearts.of.iron.iv.v1.11.5.5b4f-0xdeadc0de\hoi4.exe => No File

Hosts:
EmptyTemp:
End
*****************

Processes closed successfully.
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched" => removed successfully
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiSpyware"="0" => value restored successfully
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiVirus"="0" => value restored successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{AC4569D1-6F98-4163-AE27-D42ED89DED81}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{AC4569D1-6F98-4163-AE27-D42ED89DED81}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunCampaignManager" => not found
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\AutoFormFill_5ED10D46BD7E47DEB1F3685D2C0FCE08 => removed successfully
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\BookReader_B171F20233094AC88D05A8EF7B9763E8 => removed successfully
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\LearningTools_7706F933-971C-41D1-9899-8A026EB5D824 => removed successfully
HKCU\Software\Classes\Local Settings\Software\Microsoft\Windows\CurrentVersion\AppContainer\Storage\microsoft.microsoftedge_8wekyb3d8bbwe\MicrosoftEdge\ExtensionsStore\datastore\Config\PinJSAPI_EC01B57063BE468FAB6DB7EBFC3BF368 => removed successfully
HKLM\System\CurrentControlSet\Services\aspnet_state => removed successfully
aspnet_state => service removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\ FileSyncEx => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\7-Zip => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\BriefcaseMenu => removed successfully
"HKLM\Software\Classes\CLSID\{85BBD920-42A0-1069-A2E4-08002B30309D}" => removed successfully
HKLM\Software\Classes\*\ShellEx\ContextMenuHandlers\MagicISO => removed successfully
HKLM\Software\Classes\AllFileSystemObjects\ShellEx\ContextMenuHandlers\{4A7C4306-57E0-4C0C-83A9-78C1528F618C} => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\ FileSyncEx => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\7-Zip => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\MagicISO => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\Offline Files => removed successfully
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\BriefcaseMenu => removed successfully
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\MagicISO => removed successfully
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\Offline Files => removed successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" => value restored successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{84EF433B-CC2C-419D-A972-F3093465A8D1}D:\games\microsoft flight simulator\flightsimulator.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{A01C3C75-5659-4C44-9C1F-80A30B3DE8A9}D:\games\microsoft flight simulator\flightsimulator.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{1BB0D9AB-7D4B-47D7-BCDC-73905B2C9AB0}D:\games\epic\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{DB458E5D-902A-47D0-B510-B79B0477632B}D:\games\epic\epic games\farmingsimulator19\x64\farmingsimulator2019game.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{441BC771-96E5-4FE8-A21D-C2D03ED56CAE}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{E351B0BF-DF2C-4B6D-AB50-59444769D523}D:\games\wargaming.net\gamecenter\wgc.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{64900758-14B8-4C29-8C80-29B5F564F736}D:\games\wargaming.net\gamecenter\wgc.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{CBD2AE5C-09EE-4CC2-BAE8-D7C872CA0D2D}D:\games\wot\win64\worldoftanks.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{29FF0E61-E6A2-4678-AC73-E54E04469280}D:\games\wot\win64\worldoftanks.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{DBD6A8DB-9209-4DBA-8F0A-2C33224C2912}D:\games\the settlers 6\extra1\bin\settlers6.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{20B68BB2-58C7-40F8-BAF2-909FD59D4CEB}D:\games\the settlers 6\extra1\bin\settlers6.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{B18451E7-F52B-4713-B97D-4A07E27387BC}D:\games\the settlers 6\base\bin\settlers6.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{FCDA67A8-C9DC-4089-9CB9-A0965339AE4B}D:\games\the settlers 6\base\bin\settlers6.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{110A8180-D4CF-4A3B-BD4A-B275AFA7199A}D:\games\wot\win64\worldoftanks.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{54A5CFC8-D503-47E9-AAA2-BDD835379B25}D:\games\wot\win64\worldoftanks.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{01AC6336-979D-4328-B735-918D300F4747}D:\games\wargaming.net\gamecenter\dlls\wgc_renderer.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{1A9D2B90-3371-4AFA-8A85-A789DB8D5C65}D:\games\wargaming.net\gamecenter\dlls\wgc_renderer.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{A6EAE573-A9D5-4B8A-833A-04F55171BB12}D:\games\wot\win32\worldoftanks.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{A2FEC7A3-643C-4B0F-ABDC-B0478901B0ED}D:\games\wot\win32\worldoftanks.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{1117A4EE-E27C-4C1E-BD27-16CAB754777E}D:\games\origin\fifa19.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{042BEF7B-2205-4CC3-BEA9-07C1E8A2A7E9}D:\games\origin\fifa19.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{DCCC99EC-E388-4A3E-9109-9F9BE58D9E68}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{CF09A820-45A2-46F3-9FA4-D9F9C1DF4293}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D6264FEA-75A8-4A44-B9A4-BA01C19794FE}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2E3DA0B4-F322-4754-82B0-4AB55E045BF2}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B84F69C6-3303-472F-B351-7AF248DD5C31}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E2B3E4AF-ACCA-467A-9D00-E2038D70CF25}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{961E2EB5-2038-4FAE-9EB1-FBFDF445E86C}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B1D1EBFF-45EA-46CC-8B47-9004B781DC4B}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{82624332-FB39-4924-B00C-EEEDCA150980}D:\games\total war - shogun 2\shogun2.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{50BE7998-CB5B-41F9-8107-E49948A09990}D:\games\total war - shogun 2\shogun2.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{C8BF8997-008F-48A7-B720-67289CEE1697}D:\games\sid meiers civilization vi\base\binaries\win64steam\civilizationvi.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{588401DD-0E87-4DF7-827D-8C69901A1A14}D:\games\sid meiers civilization vi\base\binaries\win64steam\civilizationvi.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{B2C03B54-36A1-4255-A1B5-5530DDA26F76}D:\games\civilization v - brave new world\civilizationv_dx11.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{78DF2F69-D8B9-4951-A358-7D752729CAF5}D:\games\civilization v - brave new world\civilizationv_dx11.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{D32F477E-6955-4FE7-9FAF-7A43EC22A52F}D:\games\wargaming.net\gamecenter\wgc.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{197A5CDC-6DA7-4BE1-A979-49EA3BC96EF1}D:\games\wargaming.net\gamecenter\wgc.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{09403236-55D9-43D4-A0F6-C2FEF82CF56D}D:\games\kingdom come - deliverance\bin\win64\kingdomcome.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{122520A5-CC5B-4615-A96C-792D1F7B4126}D:\games\kingdom come - deliverance\bin\win64\kingdomcome.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{3F0F1999-6027-414F-8F1D-016E34E1B269}D:\games\farming simulator 19\x64\farmingsimulator2019game.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{D25A080B-08B2-441C-9CC6-69AB1D5CF732}D:\games\farming simulator 19\x64\farmingsimulator2019game.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{52C73731-373B-4DFD-ADFF-43CFC2BD02CA}D:\games\sid meiers civilization vi\base\binaries\win64steam\civilizationvi_dx12.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{B931850C-7B75-4AA1-9B67-8E45DE33E545}D:\games\sid meiers civilization vi\base\binaries\win64steam\civilizationvi_dx12.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{6480837A-F8ED-4FEE-BDBB-135440844868}D:\downloads\ancestors - the humankind odyssey\ancestors\binaries\win64\ancestors-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{28EBB0BA-E19E-40E0-8842-040568AB032B}D:\downloads\ancestors - the humankind odyssey\ancestors\binaries\win64\ancestors-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{98FC56B4-4FF0-4552-9284-CD133AB96ABE}D:\games\hearts of iron iv allied armor\hoi4.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{B0BA315D-43FB-4717-9423-70E4D72D16F0}D:\games\hearts of iron iv allied armor\hoi4.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{B901AA0A-DB3F-4CEF-8A89-6E93FA945086}D:\games\sid meiers civilization vi new frontier pass part 2\base\binaries\win64steam\civilizationvi.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{863CA03B-4C26-4CD2-8755-C5C5B9618D55}D:\games\sid meiers civilization vi new frontier pass part 2\base\binaries\win64steam\civilizationvi.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{602A2AE0-0E43-4B20-9D1E-B6DB8D22359A}D:\games\stellaris\stellaris.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{EC586AE1-4C73-4F6F-A244-D5822E4A6820}D:\games\stellaris\stellaris.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{99EB12E9-6B5B-4E6E-8EE5-C63A14BFAF20}D:\downloads\medieval dynasty\medieval_dynasty\binaries\win64\medieval_dynasty-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{2A329827-2608-4E63-8E06-034640731B7F}D:\downloads\medieval dynasty\medieval_dynasty\binaries\win64\medieval_dynasty-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{CBACFC7B-1630-47A3-991F-C9AFF9BD897A}D:\games\medieval dynasty\medieval_dynasty\binaries\win64\medieval_dynasty-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{C3A8FD1F-3EE0-4859-82E6-FEE7FBDBE1E7}D:\games\medieval dynasty\medieval_dynasty\binaries\win64\medieval_dynasty-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{C7EF4907-3EA3-4922-A6BA-119DE9522267}D:\games\epic\epic games\gtav\gta5.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{89755349-0F62-450C-8198-3BE7925AE9B0}D:\games\epic\epic games\gtav\gta5.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{38526BB6-6FA2-4D21-9D31-ACFF6D4BC6DB}D:\games\farming simulator 22\x64\farmingsimulator2022game.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{A1EE1A44-367A-4CC4-8745-FB5C947967D5}D:\games\farming simulator 22\x64\farmingsimulator2022game.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{5BD68CE2-2623-4AEA-B06C-F4F161FEE945}D:\games\farming simulator 22\dedicatedserver.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{C88F41CC-6569-4F9A-B041-787FDF7D4CC3}D:\games\farming simulator 22\dedicatedserver.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{25C4BD48-8665-4DF0-B832-83655918CD81}D:\downloads\hearts.of.iron.iv.v1.11.5.5b4f-0xdeadc0de\hoi4.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{4E74905E-AA1D-4F77-9FBB-F20A903EE36B}D:\downloads\hearts.of.iron.iv.v1.11.5.5b4f-0xdeadc0de\hoi4.exe" => removed successfully
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 1048576 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 22255123 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 758414427 B
Windows/system/drivers => 246408824 B
Edge => 137308 B
Yandex => 0 B
Firefox => 3172633 B
Opera => 287995179 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 510118 B
NetworkService => 520578 B
pfejt => 86814072 B
defaultuser1 => 87339123 B

RecycleBin => 0 B
EmptyTemp: => 1.4 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 15:46:06 ====

Eset jsem v nainstalovaných programech nenašel. Ani na žádném disku.

Děkuji.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118244
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#4 Příspěvek od Rudy »

Smazáno, log je již OK.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Trejsi91
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 09 bře 2019 07:54

Re: Prosím o kontrolu logu

#5 Příspěvek od Trejsi91 »

Děkuji.
Mohu do tohoto vlákna poslat log z druhého PC, který máme doma?

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118244
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#6 Příspěvek od Rudy »

Jistě, můžete.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Trejsi91
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 09 bře 2019 07:54

Re: Prosím o kontrolu logu

#7 Příspěvek od Trejsi91 »

Druhý pc:

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-02-2023
Ran by i7 6700 es (administrator) on DESKTOP-62BVS3B (21-02-2023 21:35:30)
Running from C:\Users\i7 6700 es\Downloads
Loaded Profiles: i7 6700 es
Platform: Microsoft Windows 10 Pro Version 22H2 19045.2604 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(C:\Program Files\Bitdefender Agent\ProductAgentService.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\26.0.1.233_0\DiscoverySrv.exe
(C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdagent.exe
(C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdntwrk.exe
(C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe ->) (S.C. BITDEFENDER S.R.L. -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\wsccommunicator.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.152\GoogleCrashHandler64.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\ProductAgentService.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender Agent\redline\bdredline.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe <3>
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe
(services.exe ->) (Bitdefender SRL -> Bitdefender) C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe
(services.exe ->) (Electronic Arts, Inc. -> Electronic Arts) C:\Program Files (x86)\Origin\OriginWebHelperService.exe
(services.exe ->) (Flexera Software LLC -> Flexera) C:\Program Files\Common Files\Macrovision Shared\FlexNet Publisher\FNPLicensingService64.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
(services.exe ->) (HP Inc.) [File not signed] C:\nazev\Intel_i7_speed.exe
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_ee20464bb4ac57f4\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (TeamViewer GmbH -> TeamViewer GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.WindowsCalculator_11.2210.0.0_x64__8wekyb3d8bbwe\CalculatorApp.exe
(svchost.exe ->) (Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.YourPhone_1.22122.94.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.2300_none_7e14edbc7c88b7d5\TiWorker.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8838400 2016-06-07] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [Bdagent] => C:\Program Files\Bitdefender\Bitdefender Security\bdagent.exe [989208 2023-02-18] (Bitdefender SRL -> Bitdefender)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-2238547156-67230461-3934341949-1001\...\Run: [EADM] => C:\Program Files (x86)\Origin\Origin.exe [3143456 2020-09-28] (Electronic Arts, Inc. -> Electronic Arts)
HKU\S-1-5-21-2238547156-67230461-3934341949-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [32754128 2022-12-17] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-2238547156-67230461-3934341949-1001\...\Run: [Discord] => C:\Users\i7 6700 es\AppData\Local\Discord\Update.exe [1512760 2020-12-03] (Discord Inc. -> GitHub)
HKU\S-1-5-21-2238547156-67230461-3934341949-1001\...\Run: [Lync] => C:\Program Files\Microsoft Office\Office16\lync.exe [26814632 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2238547156-67230461-3934341949-1001\...\Run: [Wargaming.net Game Center] => D:\Games\Wargaming.net\GameCenter\wgc.exe [2148016 2022-11-24] (Wargaming.net Limited -> Wargaming.net)
HKU\S-1-5-21-2238547156-67230461-3934341949-1001\...\Run: [GarminExpress] => C:\Program Files (x86)\Garmin\Express\express.exe [31314832 2022-05-19] (Garmin International, Inc. -> Garmin Ltd. or its subsidiaries)
HKU\S-1-5-21-2238547156-67230461-3934341949-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [38966072 2023-02-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
HKLM\...\Print\Monitors\HP E111 Status Monitor: C:\Windows\system32\hpinkstsE111LM.dll [393352 2017-04-14] (Hewlett Packard -> HP Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\110.0.5481.104\Installer\chrmstp.exe [2023-02-18] (Google LLC -> Google LLC)

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {028E61B1-B2BA-4834-8359-2D43023D7B4E} - System32\Tasks\GoogleUpdateTaskMachineCore{CAC0CFE8-0C8B-4481-9ED4-655EC39C8FCA} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-05-28] (Google Inc -> Google LLC)
Task: {0457149E-0F72-4AA9-8F57-7DF38583574C} - System32\Tasks\GarminUpdaterTask => C:\Program Files (x86)\Garmin\Express SelfUpdater\ExpressSelfUpdater.exe [28048 2022-05-19] (Garmin International, Inc. -> )
Task: {20EEBC23-1C59-4074-9132-A19D57DE3180} - System32\Tasks\GoogleUpdateTaskMachineUA{C07B223F-DCB9-494A-8A6D-2196F1859A3C} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-05-28] (Google Inc -> Google LLC)
Task: {380F6D75-D3B0-415E-BBB5-C7E90923A295} - System32\Tasks\ArcGIS Pro Indexing (DESKTOP-62BVS3B_i7 6700 es) => C:\Program Files\ArcGIS\Pro\bin\ArcGISIndexingServer.exe [1095048 2020-07-09] (Environmental Systems Research Institute Inc. -> Esri)
Task: {43BEBF23-1580-40A7-A619-5DDAD3B64FDB} - System32\Tasks\Bitdefender Agent WatchDog_65D6944A0EF74FDAB96E31112AD39864 => C:\Program Files\Bitdefender Agent\26.0.1.233_0\WatchDog.exe [1053264 2022-07-25] (Bitdefender SRL -> Bitdefender)
Task: {507C1247-DFCC-4AAD-8F58-F8ACC5A640E5} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor Logon => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe [59376 2023-01-25] (HP Inc. -> HP Inc.)
Task: {5AFE97F5-EAF3-42BE-BDC0-98D168711C79} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1552376 2022-09-26] (Adobe Inc. -> Adobe Inc.)
Task: {5EDBFB5E-0460-4689-94FF-D69DBF5FC7F9} - System32\Tasks\Microsoft\Windows\RemovalTools\MRT_ERROR_HB => C:\WINDOWS\system32\mrt.exe [149955784 2023-02-14] (Microsoft Windows -> Microsoft Corporation)
Task: {66C44933-56A2-45B3-BBA4-6049FC77F45F} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4703544 2023-02-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "8948e105-a93a-46ea-8d5f-8a715c480fc7" --version "6.09.10300" --silent
Task: {6A56AEE1-56BC-4C4E-A0FD-6F976138969B} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office16\OLicenseHeartbeat.exe [316632 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {6CBF1C97-B69D-42DE-8A8F-A62077F056CE} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [904904 2021-12-08] (Nvidia Corporation -> NVIDIA Corporation)
Task: {722F4B6B-859F-4D8C-A6C3-2B0A374CD50E} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {77C0C887-478F-4E5A-9665-F5FBD1198869} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [904904 2021-12-08] (Nvidia Corporation -> NVIDIA Corporation)
Task: {84EF4CFD-6220-4655-8DD3-6D9665900E36} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe [59376 2023-01-25] (HP Inc. -> HP Inc.)
Task: {88AC8BD8-95C4-4DCD-868C-C52BA8089422} - System32\Tasks\CCleanerSkipUAC - i7 6700 es => C:\Program Files\CCleaner\CCleaner.exe [32631096 2023-02-08] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {ACBE172E-E2BA-43B7-8857-3D986BDFEDD7} - System32\Tasks\AMD ThankingURL => C:\Program Files\AMD\CIM\Bin64\Setup.exe -LAUNCHTHQURL (No File)
Task: {BF849562-B429-4707-BA8A-60F5AB36E103} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [684976 2023-02-08] (Piriform Software Ltd -> Piriform)
Task: {C06B46FA-BEB2-4E44-BD2C-B006968BEA30} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\Office16\msoia.exe [416432 2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Task: {D37C1D87-6A3E-425B-865A-403AC0929CD4} - System32\Tasks\avfree.migration => C:\Program Files\Bitdefender Antivirus Free\migration_tool\avfree.migration.exe /run (No File)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{5b040860-0ec2-4306-bbe3-a18fdb0ff94b}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{6ae8cab2-d547-4564-b4ed-41f00695f75d}: [DhcpNameServer] 192.168.0.1

Edge:
=======
DownloadDir: C:\Users\i7 6700 es\Downloads
Edge DefaultProfile: Default
Edge Profile: C:\Users\i7 6700 es\AppData\Local\Microsoft\Edge\User Data\Default [2023-01-20]
Edge DownloadDir: Default -> C:\Users\i7 6700 es\Downloads

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2023-02-14] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office16\NPSPWRAP.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\i7 6700 es\AppData\Local\Google\Chrome\User Data\Default [2023-02-21]
CHR Notifications: Default -> hxxps://calendar.google.com; hxxps://captcharesolver.com; hxxps://cs.gov-civil-setubal.pt; hxxps://fastshare.cz; hxxps://fera24.cz; hxxps://keepvid.digital; hxxps://mp3download.to; hxxps://recepty.tvojekucharka.cz; hxxps://web.skype.com; hxxps://worldwide-incoming-news.com; hxxps://www.ador.com; hxxps://www.aliexpress.com; hxxps://www.astratex.cz; hxxps://www.beler.cz; hxxps://www.eurosport.com; hxxps://www.facebook.com; hxxps://www.gfinityesports.com; hxxps://www.idnes.cz; hxxps://www.izlato24.cz; hxxps://www.letour.fr; hxxps://www.megaknihy.cz; hxxps://www.netflix.com; hxxps://www.pinterest.co.uk; hxxps://www.proficyklodresy.cz; hxxps://www.reddit.com; hxxps://www.slevomat.cz; hxxps://www.superzoo.cz; hxxps://www.whats-on-netflix.com; hxxps://www.wish.com; hxxps://www.youtube.com; hxxps://www22.davisonbarker.pro; hxxps://yt1s.com
CHR Extension: (Dokumenty Google offline) - C:\Users\i7 6700 es\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-01-27]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\i7 6700 es\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2023-02-03]
CHR Extension: (TinEye Reverse Image Search) - C:\Users\i7 6700 es\AppData\Local\Google\Chrome\User Data\Default\Extensions\haebnnbpedcbhciplfhjjkbafijpncjl [2023-02-20]
CHR Extension: (AVG Online Security) - C:\Users\i7 6700 es\AppData\Local\Google\Chrome\User Data\Default\Extensions\nbmoafcmbajniiapeidgficgifbfmjfo [2021-05-30]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\i7 6700 es\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2022-09-26] (Adobe Inc. -> Adobe Inc.)
R2 BDAuxSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [821784 2023-02-18] (Bitdefender SRL -> Bitdefender)
R2 BDProtSrv; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [821784 2023-02-18] (Bitdefender SRL -> Bitdefender)
R2 bdredline; C:\Program Files\Common Files\Bitdefender\SetupInformation\Bitdefender RedLine\bdredline.exe [2993256 2022-01-28] (Bitdefender SRL -> Bitdefender)
R2 bdredline_agent; C:\Program Files\Bitdefender Agent\redline\bdredline.exe [2454632 2022-02-10] (Bitdefender SRL -> Bitdefender)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8469592 2020-03-18] (BattlEye Innovations e.K. -> )
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [803440 2020-02-29] (EasyAntiCheat Oy -> EasyAntiCheat Ltd)
R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [229360 2023-01-25] (HP Inc. -> HP Inc.)
R2 Intel_rules; C:\nazev\Intel_i7_speed.exe [12288 2019-05-28] (HP Inc.) [File not signed]
S4 Intel_speed_steps; C:\nazev\Intel_i7_speed.exe [12288 2019-05-28] (HP Inc.) [File not signed]
S3 Origin Client Service; C:\Program Files (x86)\Origin\OriginClientService.exe [2519864 2020-09-28] (Electronic Arts, Inc. -> Electronic Arts)
R2 Origin Web Helper Service; C:\Program Files (x86)\Origin\OriginWebHelperService.exe [3473216 2020-09-28] (Electronic Arts, Inc. -> Electronic Arts)
R2 ProductAgentService; C:\Program Files\Bitdefender Agent\ProductAgentService.exe [789072 2022-07-25] (Bitdefender SRL -> Bitdefender)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [224184 2023-02-14] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [12001112 2019-08-29] (TeamViewer GmbH -> TeamViewer GmbH)
R2 UPDATESRV; C:\Program Files\Bitdefender\Bitdefender Security\updatesrv.exe [280088 2023-02-18] (Bitdefender SRL -> Bitdefender)
R2 VSSERV; C:\Program Files\Bitdefender\Bitdefender Security\bdservicehost.exe [821784 2023-02-18] (Bitdefender SRL -> Bitdefender)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2103.7-0\NisSrv.exe [2624104 2021-04-17] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2103.7-0\MsMpEng.exe [128376 2021-04-17] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_ee20464bb4ac57f4\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_ee20464bb4ac57f4\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AIDA64Driver; C:\Program Files (x86)\AIDA64\kerneld.x64 [68592 2019-05-20] (FinalWire Kft. -> )
R1 atc; C:\WINDOWS\System32\DRIVERS\atc.sys [5118384 2022-10-04] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender S.R.L. Bucharest, ROMANIA)
R2 BdDci; C:\WINDOWS\System32\DRIVERS\bddci.sys [798128 2022-11-11] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
S0 bdelam; C:\WINDOWS\System32\drivers\bdelam.sys [22976 2020-12-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Bitdefender)
S3 bdprivmon; C:\WINDOWS\System32\DRIVERS\bdprivmon.sys [33208 2022-02-01] (Microsoft Windows Hardware Compatibility Publisher -> © Bitdefender SRL)
S3 bduefiscan; C:\WINDOWS\system32\DRIVERS\bduefiscan.sys [55864 2021-07-08] (Bitdefender SRL -> Bitdefender)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [159864 2021-06-29] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R0 Gemma; C:\WINDOWS\System32\DRIVERS\gemma.sys [1274296 2022-09-23] (Microsoft Windows Hardware Compatibility Publisher -> BitDefender S.R.L. Bucharest, ROMANIA)
S3 Ignis; C:\WINDOWS\system32\DRIVERS\ignis.sys [185312 2020-10-07] (Bitdefender SRL -> Bitdefender)
S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [14024 2017-08-27] (MICRO-STAR INTERNATIONAL CO., LTD. -> )
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [167280 2020-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R0 trufos; C:\WINDOWS\System32\DRIVERS\trufos.sys [633264 2022-06-07] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
R3 vlflt; C:\WINDOWS\System32\DRIVERS\vlflt.sys [480184 2022-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Bitdefender)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [49560 2021-04-17] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [421088 2021-04-17] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [72928 2021-04-17] (Microsoft Windows -> Microsoft Corporation)
U1 avgbdisk; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-02-21 21:35 - 2023-02-21 21:35 - 000020464 _____ C:\Users\i7 6700 es\Downloads\FRST.txt
2023-02-21 21:33 - 2023-02-21 21:33 - 002378240 _____ (Farbar) C:\Users\i7 6700 es\Downloads\FRST64.exe
2023-02-19 20:17 - 2023-02-19 20:17 - 001950210 _____ C:\Users\i7 6700 es\Downloads\Hogwarts_Legacy_Hra_CZ_V05.zip
2023-02-19 16:51 - 2023-02-19 16:51 - 001490982 _____ C:\Users\i7 6700 es\Downloads\HP Background Music in RoR-227-1-0-1676447372.zip
2023-02-19 16:51 - 2023-02-19 16:51 - 000000000 ____D C:\Users\i7 6700 es\Downloads\HP Background Music in RoR-227-1-0-1676447372
2023-02-19 16:46 - 2023-02-19 16:46 - 000367184 _____ C:\Users\i7 6700 es\Downloads\V_Mini_Skirt-177-1-01-1676428186.zip
2023-02-19 16:46 - 2023-02-19 16:46 - 000000000 ____D C:\Users\i7 6700 es\Downloads\V_Mini_Skirt-177-1-01-1676428186
2023-02-18 21:13 - 2023-02-18 21:13 - 000004747 _____ C:\Users\i7 6700 es\Downloads\Soulful Hogwarts V1.0-41-1-0-1676008831.zip
2023-02-18 21:13 - 2023-02-18 21:13 - 000000000 ____D C:\Users\i7 6700 es\Downloads\Soulful Hogwarts V1.0-41-1-0-1676008831
2023-02-18 21:07 - 2023-02-18 21:07 - 003262368 _____ (crosire) C:\Users\i7 6700 es\Downloads\ReShade_Setup_5.6.0.exe
2023-02-18 21:04 - 2023-02-18 21:04 - 000000000 ____D C:\Users\i7 6700 es\Downloads\HL Cinematic reshade V2 1.10-5-1-10-1676632216
2023-02-18 21:03 - 2023-02-18 21:03 - 000007718 _____ C:\Users\i7 6700 es\Downloads\HL Cinematic reshade V2 1.10-5-1-10-1676632216.zip
2023-02-18 18:06 - 2023-02-18 21:19 - 000000000 ____D C:\ProgramData\Hogwarts Legacy
2023-02-18 18:06 - 2023-02-18 18:06 - 000000000 ____D C:\Users\i7 6700 es\AppData\Local\Hogwarts Legacy
2023-02-18 10:49 - 2023-02-18 10:49 - 000000208 _____ C:\Users\i7 6700 es\Desktop\Hogwarts Legacy.url
2023-02-14 20:59 - 2023-02-14 20:59 - 000000000 ____D C:\Users\i7 6700 es\Downloads\Hogwarts_Legacy_CZ_V04
2023-02-14 19:52 - 2023-02-14 19:52 - 000000000 ___HD C:\$WinREAgent

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-02-21 21:35 - 2021-10-11 11:05 - 000000000 ____D C:\FRST
2023-02-21 21:23 - 2023-01-20 21:07 - 000000000 ____D C:\Program Files\CCleaner
2023-02-21 21:23 - 2019-05-28 13:25 - 000000000 ____D C:\Program Files (x86)\Google
2023-02-20 21:22 - 2020-10-31 21:19 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2023-02-20 21:22 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-02-20 21:22 - 2019-07-26 11:39 - 000000000 ____D C:\ProgramData\NVIDIA
2023-02-20 19:43 - 2022-06-07 15:57 - 000000000 ____D C:\Users\i7 6700 es\Desktop\SKEN
2023-02-19 20:54 - 2021-07-25 12:56 - 000000000 ____D C:\Users\i7 6700 es\AppData\Roaming\upjers-playground2
2023-02-19 20:54 - 2020-09-30 16:43 - 000000000 ____D C:\Users\i7 6700 es\AppData\Roaming\discord
2023-02-19 19:58 - 2020-09-30 16:43 - 000000000 ____D C:\Users\i7 6700 es\AppData\Local\Discord
2023-02-19 07:24 - 2023-01-21 08:35 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2023-02-19 07:24 - 2020-09-28 11:36 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-02-19 07:24 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-02-19 07:24 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2023-02-18 18:06 - 2019-05-28 08:14 - 000000000 ____D C:\Users\i7 6700 es\AppData\Local\D3DSCache
2023-02-18 09:50 - 2023-01-20 21:07 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2023-02-18 09:50 - 2023-01-20 21:07 - 000003472 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting
2023-02-18 09:50 - 2023-01-20 21:07 - 000000760 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job
2023-02-18 09:00 - 2022-10-13 19:16 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2023-02-18 09:00 - 2022-10-13 19:16 - 000002061 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk
2023-02-18 09:00 - 2020-10-31 21:24 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2023-02-18 08:59 - 2019-05-28 13:29 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-02-18 08:59 - 2019-05-28 13:29 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2023-02-15 17:38 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2023-02-15 17:35 - 2020-10-31 21:29 - 001693140 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2023-02-15 17:35 - 2019-12-07 15:43 - 000716770 _____ C:\WINDOWS\system32\perfh005.dat
2023-02-15 17:35 - 2019-12-07 15:43 - 000144948 _____ C:\WINDOWS\system32\perfc005.dat
2023-02-15 17:33 - 2019-12-07 10:03 - 000065536 _____ C:\WINDOWS\system32\config\ELAM
2023-02-15 17:30 - 2020-09-30 16:43 - 000002252 _____ C:\Users\i7 6700 es\Desktop\Discord.lnk
2023-02-15 17:29 - 2019-09-06 10:54 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2023-02-15 17:28 - 2020-10-31 21:24 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2023-02-15 17:28 - 2020-10-31 21:19 - 000008192 ___SH C:\DumpStack.log.tmp
2023-02-14 21:07 - 2020-10-31 21:19 - 000470752 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2023-02-14 21:07 - 2019-12-07 10:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2023-02-14 21:06 - 2019-12-07 15:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2023-02-14 21:06 - 2019-12-07 10:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2023-02-14 21:06 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2023-02-14 21:06 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2023-02-14 21:06 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\setup
2023-02-14 21:06 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2023-02-14 21:06 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\DDFs
2023-02-14 21:06 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2023-02-14 21:06 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2023-02-14 19:59 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2023-02-14 19:57 - 2020-10-31 21:21 - 003015680 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2023-02-14 19:52 - 2019-05-28 16:05 - 000000000 ____D C:\WINDOWS\system32\MRT
2023-02-14 19:50 - 2019-05-28 16:04 - 149955784 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2023-02-10 17:49 - 2021-01-23 13:44 - 000000000 ____D C:\Users\i7 6700 es\AppData\Roaming\paradox-launcher-v2
2023-02-08 17:49 - 2020-10-31 21:24 - 000003640 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-02-08 17:49 - 2020-10-31 21:24 - 000003516 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2023-02-01 18:07 - 2022-01-15 08:24 - 000003584 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2238547156-67230461-3934341949-1001
2023-02-01 18:07 - 2020-10-31 21:24 - 000003386 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2238547156-67230461-3934341949-1001
2023-02-01 18:07 - 2020-10-31 11:04 - 000002392 _____ C:\Users\i7 6700 es\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2023-01-31 17:12 - 2019-07-26 11:42 - 000000000 ____D C:\Users\i7 6700 es\AppData\Local\CrashDumps
2023-01-25 19:01 - 2021-05-11 15:28 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP
2023-01-25 19:01 - 2021-05-11 15:28 - 000000000 ____D C:\Program Files\HPPrintScanDoctor

==================== Files in the root of some directories ========

2017-01-14 12:37 - 2017-01-14 12:37 - 002174976 _____ (Advanced Micro Devices Inc.) C:\Program Files (x86)\Common Files\atimpenc.dll
2021-07-29 16:24 - 2021-09-28 07:06 - 000000615 _____ () C:\Users\i7 6700 es\AppData\Local\oobelibMkey.log

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================


Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20-02-2023
Ran by i7 6700 es (21-02-2023 21:36:36)
Running from C:\Users\i7 6700 es\Downloads
Microsoft Windows 10 Pro Version 22H2 19045.2604 (X64) (2020-10-31 20:24:32)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-2238547156-67230461-3934341949-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2238547156-67230461-3934341949-503 - Limited - Disabled)
Guest (S-1-5-21-2238547156-67230461-3934341949-501 - Limited - Disabled)
i7 6700 es (S-1-5-21-2238547156-67230461-3934341949-1001 - Administrator - Enabled) => C:\Users\i7 6700 es
WDAGUtilityAccount (S-1-5-21-2238547156-67230461-3934341949-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Bitdefender Antivirus (Enabled - Up to date) {840E1EB8-082E-3D95-EAAA-FD11CF357A26}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET Security (Enabled - Up to date) {885D845F-AF19-0124-FECE-FFF49D00F440}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: ESET Firewall (Enabled) {B066057A-E576-007C-D591-56C163D3B33B}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-2238547156-67230461-3934341949-1001\...\uTorrent) (Version: 3.5.5.45798 - BitTorrent Inc.)
Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1029-1033-7760-BC15014EA700}) (Version: 22.003.20322 - Adobe)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601032}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
AIDA64 (HKLM-x32\...\AIDA64) (Version: 6.00.5100 - FinalWire Ltd.)
ANT Drivers Installer x64 (HKLM\...\{209ECC4B-2A73-48FD-80C9-CDFFA9CA528D}) (Version: 2.3.4 - Garmin Ltd or its subsidiaries) Hidden
ArcGIS Pro - jazyková sada pro češtinu (HKLM\...\{B9A2CA2E-601B-43C0-B322-85927268CC29}) (Version: 2.6.24783 - Environmental Systems Research Institute, Inc.) Hidden
ArcGIS Pro - jazyková sada pro češtinu (HKLM\...\ArcGIS Pro - jazyková sada pro češtinu) (Version: 2.6.24783 - Environmental Systems Research Institute, Inc.)
ArcGIS Pro (HKLM\...\{612674FE-4B64-4254-A9AD-C31568C89EA4}) (Version: 2.6.24783 - Environmental Systems Research Institute, Inc.) Hidden
ArcGIS Pro (HKLM\...\ArcGISPro) (Version: 2.6.24783 - Environmental Systems Research Institute, Inc.)
ArcGIS Pro 2.6 Patch 2 (2.6.2) (HKLM\...\ArcGISPro Update262) (Version: ArcGIS Pro 2.6 Patch 2 (2.6.2) - Environmental Systems Research Institute, Inc.)
Aslain's WoT Modpack verze 1.19.0.1.04 (HKLM-x32\...\Aslains_WoT_Modpack_Installer_is1) (Version: 1.19.0.1.04 - Aslain)
Balíček ovladače systému Windows - Dynastream Innovations, Inc. ANT LibUSB Drivers (04/11/2012 1.2.40.201) (HKLM\...\F9D2A789F9CFF8CEC36B544F53877C80F1F73C46) (Version: 04/11/2012 1.2.40.201 - Dynastream Innovations, Inc.)
Balíček ovladače systému Windows - Silicon Labs Software (DSI_SiUSBXp_3_1) USB (02/06/2007 3.1) (HKLM\...\D1506E0025B5A3F9EB8270FE81C1EEDD9388B8A2) (Version: 02/06/2007 3.1 - Silicon Labs Software)
Bitdefender Agent (HKLM\...\Bitdefender Agent) (Version: 26.0.1.233 - Bitdefender)
Bitdefender Antivirus Free (HKLM\...\Bitdefender) (Version: 26.0.14.62 - Bitdefender)
CCleaner (HKLM\...\CCleaner) (Version: 6.09 - Piriform)
CPUID CPU-Z 1.89 (HKLM\...\CPUID CPU-Z_is1) (Version: 1.89 - CPUID, Inc.)
Discord (HKU\S-1-5-21-2238547156-67230461-3934341949-1001\...\Discord) (Version: 0.0.309 - Discord Inc.)
Elden Ring čeština (HKLM-x32\...\Elden Ring čeština) (Version: 1.00 - FARFLAMOVY ČEŠTINY)
Elden Ring: Deluxe Edition (HKLM-x32\...\Elden Ring: Deluxe Edition_is1) (Version: 1.08.1 - Chovka)
Elevated Installer (HKLM-x32\...\{3213DBEF-7413-4CC2-A3EA-2FB78177482B}) (Version: 7.13.1.0 - Garmin Ltd or its subsidiaries) Hidden
Epic Games Launcher (HKLM-x32\...\{DCE27B29-200D-491A-BBC5-98ECEFEC0843}) (Version: 1.1.257.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Garmin Express (HKLM-x32\...\{dfe973c2-d1c7-4563-8c84-595f13f8792d}) (Version: 7.13.1.0 - Garmin Ltd or its subsidiaries)
Garmin Express (HKLM-x32\...\{FDE5F9F5-0C9B-4A7A-811B-C7E32195CC2B}) (Version: 7.13.1.0 - Garmin Ltd or its subsidiaries) Hidden
God of War (HKLM-x32\...\God of War_is1) (Version: - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 110.0.5481.104 - Google LLC)
Horizon Zero Dawn™ Complete Edition (HKLM-x32\...\1209025141_is1) (Version: 6260111 - GOG.com)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Microsoft Access MUI (Czech) 2016 (HKLM\...\{90160000-0015-0405-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Microsoft DCF MUI (Czech) 2016 (HKLM\...\{90160000-0090-0405-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 110.0.1587.50 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 110.0.1587.50 - Microsoft Corporation)
Microsoft Excel MUI (Czech) 2016 (HKLM\...\{90160000-0016-0405-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Microsoft Groove MUI (Czech) 2016 (HKLM\...\{90160000-00BA-0405-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Microsoft InfoPath MUI (Czech) 2016 (HKLM\...\{90160000-0044-0405-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Microsoft Office 32-bit Components 2016 (HKLM\...\{90160000-00C1-0000-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Microsoft Office Korrekturhilfen 2016 – Deutsch (HKLM\...\{90160000-001F-0407-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (Czech) 2016 (HKLM\...\{90160000-00E1-0405-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Microsoft Office OSM UX MUI (Czech) 2016 (HKLM\...\{90160000-00E2-0405-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2016 (HKLM\...\{90160000-0011-0000-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2016 (HKLM\...\Office16.PROPLUS) (Version: 16.0.4266.1001 - Microsoft Corporation)
Microsoft Office Proofing (Czech) 2016 (HKLM\...\{90160000-002C-0405-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2016 - English (HKLM\...\{90160000-001F-0409-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Microsoft Office Shared 32-bit MUI (Czech) 2016 (HKLM\...\{90160000-00C1-0405-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Czech) 2016 (HKLM\...\{90160000-006E-0405-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKU\S-1-5-21-2238547156-67230461-3934341949-1001\...\OneDriveSetup.exe) (Version: 23.007.0109.0004 - Microsoft Corporation)
Microsoft OneNote MUI (Czech) 2016 (HKLM\...\{90160000-00A1-0405-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Microsoft Outlook MUI (Czech) 2016 (HKLM\...\{90160000-001A-0405-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Microsoft PowerPoint MUI (Czech) 2016 (HKLM\...\{90160000-0018-0405-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Microsoft Publisher MUI (Czech) 2016 (HKLM\...\{90160000-0019-0405-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Microsoft Skype for Business MUI (Czech) 2016 (HKLM\...\{90160000-012B-0405-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Microsoft Update Health Tools (HKLM\...\{89581302-705F-42C5-99B0-E368A845DAD5}) (Version: 3.70.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022 (HKLM-x32\...\{FF66E9F6-83E7-3A3E-AF14-8DE9A809A6A4}) (Version: 9.0.21022 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.29.30037 (HKLM-x32\...\{4b2f3795-f407-415e-88d5-8c8ab322909d}) (Version: 14.29.30037.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.28.29334 (HKLM-x32\...\{b2d0f752-adc5-496e-8f70-8669de01f746}) (Version: 14.28.29334.0 - Microsoft Corporation)
Microsoft Visual C++ 2019 X64 Additional Runtime - 14.29.30037 (HKLM\...\{529D20E8-132A-4F1A-A25F-9211B8C943AC}) (Version: 14.29.30037 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.29.30037 (HKLM\...\{C874FB5A-1C85-460A-A4A9-CBCC3FAE7880}) (Version: 14.29.30037 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Additional Runtime - 14.28.29334 (HKLM-x32\...\{14C49FC8-3E9B-4F29-8526-26629B5CF30B}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.28.29334 (HKLM-x32\...\{0D01A812-82A1-481F-8546-8E28E976F8DF}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Word MUI (Czech) 2016 (HKLM\...\{90160000-001B-0405-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
MSI Afterburner 4.6.1 (HKLM-x32\...\Afterburner) (Version: 4.6.1 - MSI Co., LTD)
MSI Kombustor 4.1.1.0 (64-bit) (64-bit) (HKLM\...\{F3D3CC6B-9AD7-4F43-8C69-40D5902FDC5C}}_is1) (Version: - MSI / Geeks3D)
MSI Kombustor v4 0.6.3.3 (64-bit) (HKLM-x32\...\{F3D3CC6B-9AD7-4F43-8C69-40D5902FDC5C}}_is1) (Version: - MSI / Geeks3D)
Nástroje kontroly pravopisu pro Microsoft Office 2016 – čeština (HKLM\...\{90160000-001F-0405-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
Nástroje korektúry balíka Microsoft Office 2016 - slovenčina (HKLM\...\{90160000-001F-041B-1000-0000000FF1CE}) (Version: 16.0.4266.1001 - Microsoft Corporation) Hidden
NVIDIA Ovladače grafiky 516.94 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 516.94 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation)
Origin (HKLM-x32\...\Origin) (Version: 10.5.84.43868 - Electronic Arts, Inc.)
Paradox Launcher v2 (HKLM\...\{A92DB5D9-A24D-4678-9F91-B4FA6D895718}) (Version: 2.0.4.0 - Paradox Interactive)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7841 - Realtek Semiconductor Corp.)
Sid Meiers Civilization VI New Frontier Pass Portugal (HKLM-x32\...\Sid Meiers Civilization VI New Frontier Pass Portugal_is1) (Version: - )
TeamViewer 14 (HKLM-x32\...\TeamViewer) (Version: 14.5.5819 - TeamViewer)
upjers Home 2.1.106 (HKU\S-1-5-21-2238547156-67230461-3934341949-1001\...\e2446448-09eb-5b1b-84b1-6746557362e3) (Version: 2.1.106 - upjers GmbH)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.18 - VideoLAN)
Wargaming.net Game Center (HKU\S-1-5-21-2238547156-67230461-3934341949-1001\...\Wargaming.net Game Center) (Version: 22.5.0.733 - Wargaming.net)
WeMod (HKU\S-1-5-21-2238547156-67230461-3934341949-1001\...\WeMod) (Version: 8.3.14 - WeMod)
WinRAR 5.91 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.91.0 - win.rar GmbH)
World of Tanks EU (HKU\S-1-5-21-2238547156-67230461-3934341949-1001\...\WOT.EU.PRODUCTION) (Version: - Wargaming.net)
Xilisoft Video Converter Ultimate (HKLM-x32\...\Xilisoft Video Converter Ultimate) (Version: 7.8.23.20180925 - Xilisoft)

Packages:
=========
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_142.3.139.0_x64__v10z8vjag6ke6 [2023-01-27] (HP Inc.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-05-28] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-05-28] (Microsoft Corporation) [MS Ad]
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.963.0_x64__56jybvy8sckqj [2022-10-18] (NVIDIA Corp.)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.5.190.0_x64__dt26b99r8h8gj [2019-10-07] (Realtek Semiconductor Corp)
Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.15.12020.0_x64__8wekyb3d8bbwe [2022-12-08] (Microsoft Studios) [MS Ad]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-08-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-08-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_ee20464bb4ac57f4\nvshext.dll [2022-08-23] (Nvidia Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-08-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-08-26] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2019-12-09 21:46 - 2020-09-28 10:57 - 001282048 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Origin\LIBEAY32.dll
2019-12-09 21:46 - 2020-09-28 10:57 - 000279040 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Origin\ssleay32.dll
2019-12-09 21:46 - 2020-09-28 10:57 - 001611264 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\platforms\qwindows.dll
2020-09-28 10:58 - 2020-09-28 10:57 - 005487104 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Core.dll
2020-09-28 10:58 - 2020-09-28 10:57 - 005841920 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Gui.dll
2020-09-28 10:58 - 2020-09-28 10:57 - 001179136 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Network.dll
2020-09-28 10:58 - 2020-09-28 10:57 - 000146432 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5WebSockets.dll
2020-09-28 10:58 - 2020-09-28 10:57 - 005089792 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Widgets.dll
2020-09-28 10:58 - 2020-09-28 10:57 - 000184832 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Xml.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKU\S-1-5-21-2238547156-67230461-3934341949-1001\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office16\OCHelper.dll [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office16\GROOVEEX.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office16\OCHelper.dll [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office16\GROOVEEX.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {3459B272-CC19-4448-86C9-DDC3B4B2FAD3} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\Office16\MSOSB.DLL [2015-07-31] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\.DEFAULT\...\localhost -> localhost
IE trusted site: HKU\S-1-5-21-2238547156-67230461-3934341949-1001\...\localhost -> localhost

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2018-09-15 08:31 - 2022-11-06 08:42 - 000001656 _____ C:\WINDOWS\system32\drivers\etc\hosts
109.94.209.70 fitgirlrepacks.in # Fake FitGirl site
109.94.209.70 www.fitgirlrepacks.in # Fake FitGirl site
109.94.209.70 fitgirlrepacks.co # Fake FitGirl site
109.94.209.70 fitgirl-repacks.cc # Fake FitGirl site
109.94.209.70 fitgirl-repacks.to # Fake FitGirl site
109.94.209.70 fitgirl-repack.com # Fake FitGirl site
109.94.209.70 fitgirl-repacks.website # Fake FitGirl site
109.94.209.70 fitgirlrepack.games # Fake FitGirl site
109.94.209.70 www.fitgirlrepacks.co # Fake FitGirl site
109.94.209.70 www.fitgirl-repacks.cc # Fake FitGirl site
109.94.209.70 www.fitgirl-repacks.to # Fake FitGirl site
109.94.209.70 www.fitgirl-repack.com # Fake FitGirl site
109.94.209.70 www.fitgirl-repacks.website # Fake FitGirl site
109.94.209.70 ww9.fitgirl-repacks.xyz # Fake FitGirl site
109.94.209.70 www.fitgirlrepack.games # Fake FitGirl site
109.94.209.70 *.fitgirl-repacks.xyz # Fake FitGirl site
109.94.209.70 fitgirl-repacks.xyz # Fake FitGirl site
109.94.209.70 fitgirl-repack.net # Fake FitGirl site
109.94.209.70 www.fitgirl-repack.net # Fake FitGirl site
109.94.209.70 fitgirlpack.site # Fake FitGirl site
109.94.209.70 www.fitgirlpack.site # Fake FitGirl site
109.94.209.70 fitgirl-repack.org # Fake FitGirl site
109.94.209.70 www.fitgirl-repack.org # Fake FitGirl site

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2238547156-67230461-3934341949-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\i7 6700 es\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run: => "SecurityHealth"
HKLM\...\StartupApproved\Run: => "RTHDVCPL"
HKLM\...\StartupApproved\Run: => "RtkAudUService"
HKLM\...\StartupApproved\Run: => "AdobeGCInvoker-1.0"
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run32: => "Acrobat Assistant 8.0"
HKU\S-1-5-21-2238547156-67230461-3934341949-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-2238547156-67230461-3934341949-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-2238547156-67230461-3934341949-1001\...\StartupApproved\Run: => "EADM"
HKU\S-1-5-21-2238547156-67230461-3934341949-1001\...\StartupApproved\Run: => "Discord"
HKU\S-1-5-21-2238547156-67230461-3934341949-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-2238547156-67230461-3934341949-1001\...\StartupApproved\Run: => "Lync"
HKU\S-1-5-21-2238547156-67230461-3934341949-1001\...\StartupApproved\Run: => "Wargaming.net Game Center"
HKU\S-1-5-21-2238547156-67230461-3934341949-1001\...\StartupApproved\Run: => "GarminExpress"
HKU\S-1-5-21-2238547156-67230461-3934341949-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{3711D41A-4DCE-4A47-87A0-96C6355C92E9}] => (Allow) D:\Games\steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{E65FDC1E-1BE7-46D3-A849-33AAEEE32E66}] => (Allow) D:\Games\steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{B521B6BF-676E-48CA-B572-BCADB8265516}] => (Allow) D:\Games\steam\steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{0CC31262-AB36-44FD-B512-BEB4F02A250D}] => (Allow) D:\Games\steam\steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{E9E828EB-D648-4F17-AF24-8039B922C47D}] => (Allow) C:\Users\i7 6700 es\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{52DEDD4C-2F09-449E-8BDC-1384E7C2A1FC}] => (Allow) C:\Users\i7 6700 es\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{9472A929-F15C-4163-8CE6-0BFD29AC2257}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{148A818E-B022-453A-9C3B-A512E9D0D203}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{0358A10E-D786-4585-A86D-0F055A126660}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [{377D22CE-835B-4A72-A9DA-E756C9C7E1A8}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer GmbH -> TeamViewer GmbH)
FirewallRules: [TCP Query User{519E8056-5B50-4633-B66A-5A88C15FE056}C:\users\i7 6700 es\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\i7 6700 es\appdata\roaming\utorrent\utorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [UDP Query User{CEC3A5F1-D1CA-46E2-9F92-CF414F9316BE}C:\users\i7 6700 es\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\i7 6700 es\appdata\roaming\utorrent\utorrent.exe (BitTorrent Inc -> BitTorrent Inc.)
FirewallRules: [{1087318D-3933-4420-B876-DDF820B478CF}] => (Allow) C:\Program Files\Microsoft Office\Office16\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{506AD946-071A-4D49-A915-42F1FAF9422D}] => (Allow) C:\Program Files\Microsoft Office\Office16\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{E2056642-5E13-4B46-B302-F85828504EC0}] => (Allow) C:\Program Files\Microsoft Office\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{4131871A-406D-4FD2-9DE3-89245329B8F4}] => (Allow) C:\Program Files\Microsoft Office\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{F526EE4C-DF74-4387-9241-416DBD05E90F}] => (Allow) D:\Games\steam\steamapps\common\Medieval Dynasty\Medieval_Dynasty.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{1AF24FBA-4433-489D-A152-639C469A94E9}] => (Allow) D:\Games\steam\steamapps\common\Medieval Dynasty\Medieval_Dynasty.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{E90072CA-986E-412C-8A5A-3AE55BAB294F}] => (Allow) D:\Games\steam\steamapps\common\Planet Zoo\PlanetZoo.exe (Frontier Developments) [File not signed]
FirewallRules: [{BDB7FC5C-0038-4FBA-927F-944E4D8DB80E}] => (Allow) D:\Games\steam\steamapps\common\Planet Zoo\PlanetZoo.exe (Frontier Developments) [File not signed]
FirewallRules: [TCP Query User{7A013283-66AD-497C-B1F4-46AECD78A620}D:\games\wargaming.net\gamecenter\wgc.exe] => (Allow) D:\games\wargaming.net\gamecenter\wgc.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [UDP Query User{B49111DF-B281-4E68-A5CF-9A859144CFB1}D:\games\wargaming.net\gamecenter\wgc.exe] => (Allow) D:\games\wargaming.net\gamecenter\wgc.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [TCP Query User{86098444-92E2-49DA-9DB4-5DA59DDBD951}D:\games\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) D:\games\world_of_tanks_eu\win64\worldoftanks.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [UDP Query User{74F5809A-59A5-453F-9C10-7972BF20C77E}D:\games\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) D:\games\world_of_tanks_eu\win64\worldoftanks.exe (Wargaming.net Limited -> Wargaming.net)
FirewallRules: [TCP Query User{CBCB5F84-F92A-41D5-A2D7-3F3A15FED57E}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{EB68E251-DA91-4D3E-96B2-7183C79C0775}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{2747F46F-39E6-4281-AAAF-BA184E94BF11}D:\games\sid meiers civilization vi new frontier pass portugal\base\binaries\win64steam\civilizationvi.exe] => (Allow) D:\games\sid meiers civilization vi new frontier pass portugal\base\binaries\win64steam\civilizationvi.exe (Firaxis Games) [File not signed]
FirewallRules: [UDP Query User{55733FFF-12F0-4C4D-BA58-BFE2F309E183}D:\games\sid meiers civilization vi new frontier pass portugal\base\binaries\win64steam\civilizationvi.exe] => (Allow) D:\games\sid meiers civilization vi new frontier pass portugal\base\binaries\win64steam\civilizationvi.exe (Firaxis Games) [File not signed]
FirewallRules: [{36A34DCA-99B3-445E-881A-A640F97C6686}] => (Allow) D:\Games\steam\steamapps\common\Jurassic World Evolution 2\JWE2.exe (Frontier Developments) [File not signed]
FirewallRules: [{862B7D3C-330A-485F-A2F4-4B20D67DB862}] => (Allow) D:\Games\steam\steamapps\common\Jurassic World Evolution 2\JWE2.exe (Frontier Developments) [File not signed]
FirewallRules: [{1D3C4BBA-B5F2-4342-A27D-D8B0512959BE}] => (Allow) D:\Games\steam\steamapps\common\Prehistoric Kingdom\Prehistoric Kingdom.exe () [File not signed]
FirewallRules: [{BB8D2B50-EF62-4C37-A82E-57DD335E11D4}] => (Allow) D:\Games\steam\steamapps\common\Prehistoric Kingdom\Prehistoric Kingdom.exe () [File not signed]
FirewallRules: [{9C1762D7-0999-49DC-B2EC-6D026236C9C9}] => (Allow) C:\Program Files\Bitdefender\Bitdefender Security\bdntwrk.exe (Bitdefender SRL -> Bitdefender)
FirewallRules: [{A0919963-5B31-408C-82F2-3BFF2FDF3EEE}] => (Allow) D:\Games\steam\steamapps\common\Transport Fever 2\TransportFever2.exe () [File not signed]
FirewallRules: [{0E054DC2-BC94-4569-BF00-F138D4C095E1}] => (Allow) D:\Games\steam\steamapps\common\Transport Fever 2\TransportFever2.exe () [File not signed]
FirewallRules: [{6A7AC2C5-A74E-4FD2-BAC8-69344C7CF140}] => (Allow) D:\Games\steam\steamapps\common\Valheim\valheim.exe () [File not signed]
FirewallRules: [{D75B4768-1C51-4356-9B75-69E319C8844C}] => (Allow) D:\Games\steam\steamapps\common\Valheim\valheim.exe () [File not signed]
FirewallRules: [{D6419187-1328-431F-8263-66CC9E472BA8}] => (Allow) D:\Games\steam\steamapps\common\Crusader Kings III\launcher\dowser.exe (Paradox Interactive AB (publ) -> )
FirewallRules: [{5A0A20A3-32DC-4771-90D2-ACFFBA4C97FA}] => (Allow) D:\Games\steam\steamapps\common\Crusader Kings III\launcher\dowser.exe (Paradox Interactive AB (publ) -> )
FirewallRules: [{1EB84E1A-BED4-44CF-ABBE-99E9F62EEFC1}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{A156A2A2-650E-407A-A26E-16C408928FAB}] => (Allow) D:\Games\steam\steamapps\common\Farming Simulator 22\x64\FarmingSimulator2022Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{751995FC-4BCC-4BCE-8DB5-6CE76E65631D}] => (Allow) D:\Games\steam\steamapps\common\Farming Simulator 22\x64\FarmingSimulator2022Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{316BBC4A-B256-4DF3-9FA8-D40FFE596A27}] => (Allow) D:\Games\steam\steamapps\common\Hogwarts Legacy\HogwartsLegacy.exe (Warner Bros. Interactive) [File not signed]
FirewallRules: [{E8518F18-2C41-41CA-8A19-42B3447EAA1D}] => (Allow) D:\Games\steam\steamapps\common\Hogwarts Legacy\HogwartsLegacy.exe (Warner Bros. Interactive) [File not signed]
FirewallRules: [{DF84C4A8-CAD5-4314-BD94-AD7B92F6E9C2}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\110.0.1587.50\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)

==================== Restore Points =========================

29-01-2023 08:39:48 Naplánovaný kontrolní bod
07-02-2023 18:07:07 Naplánovaný kontrolní bod
14-02-2023 19:50:40 Naplánovaný kontrolní bod
14-02-2023 19:52:29 Instalační služba modulů systému Windows
14-02-2023 19:52:58 Instalační služba modulů systému Windows

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (02/21/2023 09:23:19 PM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0

Error: (02/20/2023 07:40:35 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Nový svazek (D:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (02/20/2023 07:21:43 PM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0

Error: (02/19/2023 07:26:27 AM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0

Error: (02/18/2023 08:58:22 AM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0

Error: (02/15/2023 05:37:53 PM) (Source: Office 2016 Licensing Service) (EventID: 0) (User: )
Description: Event-ID 0

Error: (02/14/2023 09:07:52 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému.
.

Error: (02/14/2023 09:07:52 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.
]


System errors:
=============
Error: (02/21/2023 09:23:25 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-62BVS3B)
Description: Nelze spustit server DCOM: Microsoft.AAD.BrokerPlugin_1000.19041.1023.0_neutral_neutral_cw5n1h2txyewy!Windows.Security.Authentication.Web.Core.BackgroundGetTokenTask.ClassId.WebAccountProvider jako Není k dispozici/Není k dispozici. Došlo k chybě:
2147942402
při provádění příkazu:
"C:\WINDOWS\system32\BackgroundTaskHost.exe" -ServerName:BackgroundTaskHost.WebAccountProvider

Error: (02/21/2023 09:21:14 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-62BVS3B)
Description: Nelze spustit server DCOM: Microsoft.Windows.ContentDeliveryManager_10.0.19041.1023_neutral_neutral_cw5n1h2txyewy!App.AppXadns4p0eqjaenk2bd16aj0cypbrs3e5w.mca jako Není k dispozici/Není k dispozici. Došlo k chybě:
2147942402
při provádění příkazu:
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXmtcan0h2tfbfy7k9kn8hbxb6dmzz1zh0.mca

Error: (02/21/2023 09:20:28 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-62BVS3B)
Description: Nelze spustit server DCOM: Microsoft.Windows.ContentDeliveryManager_10.0.19041.1023_neutral_neutral_cw5n1h2txyewy!App.AppXadns4p0eqjaenk2bd16aj0cypbrs3e5w.mca jako Není k dispozici/Není k dispozici. Došlo k chybě:
2147942402
při provádění příkazu:
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXmtcan0h2tfbfy7k9kn8hbxb6dmzz1zh0.mca

Error: (02/21/2023 09:20:24 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-62BVS3B)
Description: Nelze spustit server DCOM: Microsoft.AAD.BrokerPlugin_1000.19041.1023.0_neutral_neutral_cw5n1h2txyewy!Windows.Security.Authentication.Web.Core.BackgroundGetTokenTask.ClassId.WebAccountProvider jako Není k dispozici/Není k dispozici. Došlo k chybě:
2147942402
při provádění příkazu:
"C:\WINDOWS\system32\BackgroundTaskHost.exe" -ServerName:BackgroundTaskHost.WebAccountProvider

Error: (02/21/2023 09:20:22 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-62BVS3B)
Description: Nelze spustit server DCOM: Microsoft.Windows.ContentDeliveryManager_10.0.19041.1023_neutral_neutral_cw5n1h2txyewy!App.AppXea6epmb5w19sjwy9ckw8md46dm93nhkq.mca jako Není k dispozici/Není k dispozici. Došlo k chybě:
2147942402
při provádění příkazu:
"C:\WINDOWS\system32\backgroundTaskHost.exe" -ServerName:App.AppXmtcan0h2tfbfy7k9kn8hbxb6dmzz1zh0.mca

Error: (02/20/2023 09:22:31 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-62BVS3B)
Description: Nelze spustit server DCOM: Microsoft.AAD.BrokerPlugin_1000.19041.1023.0_neutral_neutral_cw5n1h2txyewy!Windows.Security.Authentication.Web.Core.BackgroundGetTokenTask.ClassId.WebAccountProvider jako Není k dispozici/Není k dispozici. Došlo k chybě:
2147942402
při provádění příkazu:
"C:\WINDOWS\system32\BackgroundTaskHost.exe" -ServerName:BackgroundTaskHost.WebAccountProvider

Error: (02/20/2023 07:30:56 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-62BVS3B)
Description: Nelze spustit server DCOM: Microsoft.AAD.BrokerPlugin_1000.19041.1023.0_neutral_neutral_cw5n1h2txyewy!Windows.Security.Authentication.Web.Core.BackgroundGetTokenTask.ClassId.WebAccountProvider jako Není k dispozici/Není k dispozici. Došlo k chybě:
2147942402
při provádění příkazu:
"C:\WINDOWS\system32\BackgroundTaskHost.exe" -ServerName:BackgroundTaskHost.WebAccountProvider

Error: (02/20/2023 07:21:49 PM) (Source: DCOM) (EventID: 10001) (User: DESKTOP-62BVS3B)
Description: Nelze spustit server DCOM: Microsoft.AAD.BrokerPlugin_1000.19041.1023.0_neutral_neutral_cw5n1h2txyewy!Windows.Security.Authentication.Web.Core.BackgroundGetTokenTask.ClassId.WebAccountProvider jako Není k dispozici/Není k dispozici. Došlo k chybě:
2147942402
při provádění příkazu:
"C:\WINDOWS\system32\BackgroundTaskHost.exe" -ServerName:BackgroundTaskHost.WebAccountProvider


Windows Defender:
================
Date: 2021-04-29 18:59:10
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {12F67109-7620-43D0-9E75-B1399128300E}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2021-04-28 19:04:18
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {F99EBCF0-56D6-432B-B3FB-98DEAED8A08B}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2021-04-27 18:50:11
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {E91CC22F-B27A-4274-9409-3B462D0CE085}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2021-04-26 18:39:16
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {4F38B05E-4778-40DA-A1F1-4B957A709C71}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2021-04-23 18:28:33
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {9BFA07DD-A70E-4761-9D0A-40CEB0A45BC6}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM
Event[0]:

Date: 2021-09-28 07:42:04
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.339.1670.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.18100.6
Kód chyby: 0x80240022
Popis chyby: V daném programu nelze zkontrolovat aktualizace definic.

Date: 2021-09-28 07:42:04
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.339.1670.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.18100.6
Kód chyby: 0x80240022
Popis chyby: V daném programu nelze zkontrolovat aktualizace definic.

Date: 2021-05-30 09:24:13
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.337.276.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.18100.5
Kód chyby: 0x80070643
Popis chyby: Při instalaci došlo k závažné chybě.

Date: 2021-05-30 09:24:12
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 1.339.1675.0
Předchozí verze bezpečnostních informací: 1.337.276.0
Zdroj aktualizace: Uživatel
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Delta
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.18100.6
Předchozí verze modulu: 1.1.18100.5
Kód chyby: 0x80070666
Popis chyby: Již je nainstalována jiná verze tohoto produktu. Instalaci této verze nelze dokončit. Chcete-li znovu nakonfigurovat nebo odebrat existující verzi produktu, použijte ovládací panel Přidat nebo odebrat programy.

Date: 2021-05-30 09:24:12
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 1.339.1675.0
Předchozí verze bezpečnostních informací: 1.337.276.0
Zdroj aktualizace: Uživatel
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Delta
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.18100.6
Předchozí verze modulu: 1.1.18100.5
Kód chyby: 0x80070666
Popis chyby: Již je nainstalována jiná verze tohoto produktu. Instalaci této verze nelze dokončit. Chcete-li znovu nakonfigurovat nebo odebrat existující verzi produktu, použijte ovládací panel Přidat nebo odebrat programy.

CodeIntegrity:
===============
Date: 2023-01-20 21:12:00
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Microsoft signing level requirements.

Date: 2023-01-20 21:07:33
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Bonjour\mdnsNSP.dll that did not meet the Windows signing level requirements.


==================== Memory info ===========================

BIOS: American Megatrends Inc. 1820 09/12/2019
Motherboard: ASUSTeK COMPUTER INC. PRIME B450M-K
Processor: AMD Ryzen 5 2600X Six-Core Processor
Percentage of memory in use: 24%
Total physical RAM: 16315.39 MB
Available physical RAM: 12330.92 MB
Total Virtual: 26043.39 MB
Available Virtual: 20050.32 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:476.2 GB) (Free:339.95 GB) (Model: SAMSUNG MZVLW512HMJP-00000) NTFS
Drive d: (Nový svazek) (Fixed) (Total:1863 GB) (Free:1271.26 GB) (Model: WDC WD20EZRZ-00Z5HB0) NTFS

\\?\Volume{b6a06d5f-d84b-4007-a073-9cca83768114}\ () (Fixed) (Total:0.51 GB) (Free:0.08 GB) NTFS
\\?\Volume{1c1942a8-3eb8-416b-9975-23a7d27775f0}\ () (Fixed) (Total:0.1 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Protective MBR) (Size: 1863 GB) (Disk ID: 00000000)

Partition: GPT.

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 476.9 GB) (Disk ID: 98C3C70A)

Partition: GPT.

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118244
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#8 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
Task: {028E61B1-B2BA-4834-8359-2D43023D7B4E} - System32\Tasks\GoogleUpdateTaskMachineCore{CAC0CFE8-0C8B-4481-9ED4-655EC39C8FCA} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-05-28] (Google Inc -> Google LLC)
Task: {20EEBC23-1C59-4074-9132-A19D57DE3180} - System32\Tasks\GoogleUpdateTaskMachineUA{C07B223F-DCB9-494A-8A6D-2196F1859A3C} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-05-28] (Google Inc -> Google LLC)
Task: {ACBE172E-E2BA-43B7-8857-3D986BDFEDD7} - System32\Tasks\AMD ThankingURL => C:\Program Files\AMD\CIM\Bin64\Setup.exe -LAUNCHTHQURL (No File)
U1 avgbdisk; no ImagePath
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =

Hosts:
EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Trejsi91
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 09 bře 2019 07:54

Re: Prosím o kontrolu logu

#9 Příspěvek od Trejsi91 »

Fix result of Farbar Recovery Scan Tool (x64) Version: 22-02-2023
Ran by i7 6700 es (22-02-2023 18:17:15) Run:2
Running from C:\Users\i7 6700 es\Desktop
Loaded Profiles: i7 6700 es
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
Task: {028E61B1-B2BA-4834-8359-2D43023D7B4E} - System32\Tasks\GoogleUpdateTaskMachineCore{CAC0CFE8-0C8B-4481-9ED4-655EC39C8FCA} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-05-28] (Google Inc -> Google LLC)
Task: {20EEBC23-1C59-4074-9132-A19D57DE3180} - System32\Tasks\GoogleUpdateTaskMachineUA{C07B223F-DCB9-494A-8A6D-2196F1859A3C} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [154920 2019-05-28] (Google Inc -> Google LLC)
Task: {ACBE172E-E2BA-43B7-8857-3D986BDFEDD7} - System32\Tasks\AMD ThankingURL => C:\Program Files\AMD\CIM\Bin64\Setup.exe -LAUNCHTHQURL (No File)
U1 avgbdisk; no ImagePath
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Page_URL =
HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main,Default_Search_URL =

Hosts:
EmptyTemp:
End
*****************

Processes closed successfully.
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiSpyware"="0" => value restored successfully
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiVirus"="0" => value restored successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{028E61B1-B2BA-4834-8359-2D43023D7B4E}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{028E61B1-B2BA-4834-8359-2D43023D7B4E}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore{CAC0CFE8-0C8B-4481-9ED4-655EC39C8FCA} => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore{CAC0CFE8-0C8B-4481-9ED4-655EC39C8FCA}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{20EEBC23-1C59-4074-9132-A19D57DE3180}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{20EEBC23-1C59-4074-9132-A19D57DE3180}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineUA{C07B223F-DCB9-494A-8A6D-2196F1859A3C} => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA{C07B223F-DCB9-494A-8A6D-2196F1859A3C}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{ACBE172E-E2BA-43B7-8857-3D986BDFEDD7}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{ACBE172E-E2BA-43B7-8857-3D986BDFEDD7}" => removed successfully
C:\WINDOWS\System32\Tasks\AMD ThankingURL => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AMD ThankingURL" => removed successfully
HKLM\System\CurrentControlSet\Services\avgbdisk => removed successfully
avgbdisk => service removed successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\"Default_Page_URL"="http://go.microsoft.com/fwlink/?LinkId=69157" => value restored successfully
HKLM\Software\\Microsoft\Internet Explorer\Main\\"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" => value restored successfully
HKLM\Software\Wow6432Node\Microsoft\Internet Explorer\Main\\"Default_Search_URL"="http://go.microsoft.com/fwlink/?LinkId=54896" => value restored successfully
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 1048576 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 94724155 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 1379892070 B
Windows/system/drivers => 21162218 B
Edge => 0 B
Chrome => 190974643 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 4498 B
NetworkService => 4498 B
i7 6700 es => 232003676 B

RecycleBin => 195715048 B
EmptyTemp: => 2 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 18:17:38 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118244
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#10 Příspěvek od Rudy »

Smazáno, log je již OK.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Trejsi91
Návštěvník
Návštěvník
Příspěvky: 30
Registrován: 09 bře 2019 07:54

Re: Prosím o kontrolu logu

#11 Příspěvek od Trejsi91 »

ok díky moc :)

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118244
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kontrolu logu

#12 Příspěvek od Rudy »

Rádo se stalo! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Zamčeno