Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosim o kontrolu logu

Nemáte v tuto chvíli žádný problém s pc a chcete se jen ujistit, že je vše v pořádku?
Vložte log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Maroš
Návštěvník
Návštěvník
Příspěvky: 173
Registrován: 29 črc 2011 13:32

Prosim o kontrolu logu

#1 Příspěvek od Maroš »

PC zpomalené, delší náběh programů. Prosím o kotrolu. Děkuji.

Logfile of random's system information tool 1.10 (written by random/random)
Run by magic at 2023-07-13 07:27:24
Microsoft Windows 10 Home
System drive C: has 67 GB (18%) free of 380 GB
Total RAM: 12159 MB (65% free)

HijackThis download failed

======Listing Processes======








C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p
"fontdrvhost.exe"
"C:\Windows\System32\WUDFHost.exe" -HostGUID:{193a1820-d9ac-4997-8c55-be817523f6aa} -IoEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-b6478515-7b0c-47e6-ad3d-29d1c2aa194d -SystemEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-335f688d-b78e-4927-b9cb-92bfd41ac078 -IoCancelEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-56ac81de-50cd-4024-84a6-011c22361f00 -NonStateChangingEventPortName:\UMDFCommunicationPorts\WUDF\HostProcess-162690d1-66e6-46aa-a466-bc90e1465898 -LifetimeId:8b891c0a-0834-445e-8bfa-c7a3f083e3fc -DeviceGroupId: -HostArg:0
C:\WINDOWS\system32\svchost.exe -k RPCSS -p
C:\WINDOWS\system32\svchost.exe -k DcomLaunch -p -s LSM
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s NcbService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s TimeBrokerSvc
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DisplayEnhancementService
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s hidserv
C:\WINDOWS\system32\svchost.exe -k imgsvc
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s EventLog
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetwork -p
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s nsi
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s DeviceAssociationService
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s Dhcp
C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_700b78aaed9fe381\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f C:\ProgramData\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_700b78aaed9fe381\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
dashost.exe {828780b1-e354-4bfe-8b71cbb4904d334d}
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Schedule
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s ProfSvc
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s EventSystem
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s SysMain
C:\WINDOWS\system32\svchost.exe -k appmodel -p -s camsvc
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s Themes
C:\WINDOWS\system32\svchost.exe -k appmodel -p -s StateRepository
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s DispBrokerDesktopSvc
C:\WINDOWS\System32\svchost.exe -k NetworkService -p -s NlaSvc

C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s SENS
C:\WINDOWS\system32\igfxCUIService.exe
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UserManager
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s AudioEndpointBuilder
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s netprofm
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s FontCache
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Winmgmt
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p -s SSDPSRV
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p
C:\WINDOWS\system32\svchost.exe -k NetworkService -p -s Dnscache
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s ShellHWDetection
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe"
C:\WINDOWS\System32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe -k LocalServiceNoNetworkFirewall -p
C:\WINDOWS\System32\svchost.exe -k NetworkService -p -s LanmanWorkstation
dashost.exe {0309cf98-597e-400a-a15b99e23d33013d}
C:\WINDOWS\System32\svchost.exe -k utcsvc -p
C:\WINDOWS\system32\svchost.exe -k NetworkService -p -s CryptSvc
C:\WINDOWS\System32\drivers\AdminService.exe
"C:\WINDOWS\system32\ICEsoundService64.exe"
C:\WINDOWS\System32\svchost.exe -k NetSvcs -p -s iphlpsvc
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s fdPHost
C:\WINDOWS\System32\svchost.exe -k LocalServiceNoNetwork -p -s DPS
"C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe"
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -s NvContainerLocalSystem -f "C:\ProgramData\NVIDIA\NvContainerLocalSystem.log" -l 3 -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem" -r -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll"
"C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_82419944dda69b12\esif_uf.exe"
"C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe" /service
C:\WINDOWS\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s SstpSvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s WpnService
C:\Windows\runSW.exe
C:\WINDOWS\system32\svchost.exe -k LocalService -s W32Time
"C:\Program Files (x86)\netis\USB Wireless LAN Utility\RtlService.exe"
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s LanmanServer

C:\WINDOWS\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_cad1db73e8c782a6\WMIRegistrationService.exe
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TrkWks
"C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe"
C:\WINDOWS\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s WdiServiceHost
C:\WINDOWS\System32\svchost.exe -k NetworkService -p -s TapiSrv
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k NetworkServiceNetworkRestricted -p -s PolicyAgent
C:\WINDOWS\system32\svchost.exe -k LocalServiceAndNoImpersonation -p -s upnphost
C:\WINDOWS\System32\svchost.exe -k netsvcs -p -s Browser
C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s TokenBroker
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s Appinfo
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s TabletInputService
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s PcaSvc
C:\WINDOWS\system32\DllHost.exe /Processid:{3EB3C877-1F16-487C-9050-104DBCD66683}
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -s RmSvc

C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s NgcCtnrSvc
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s CDPSvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s lfsvc
C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s UsoSvc
C:\WINDOWS\System32\svchost.exe -k LocalService -p -s LicenseManager
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s BthAvctpSvc

C:\WINDOWS\system32\svchost.exe -k WbioSvcGroup -s WbioSrvc

C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s StorSvc
"C:\Program Files\CyberLink\Shared files\RichVideo64.exe"


C:\WINDOWS\System32\svchost.exe -k netsvcs -p
C:\WINDOWS\system32\svchost.exe -k LocalService -p -s bthserv
"C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s WinHttpAutoProxySvc
C:\WINDOWS\system32\SearchIndexer.exe /Embedding
"C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe"
C:\WINDOWS\System32\svchost.exe -k LocalSystemNetworkRestricted -p -s WdiSystemHost


C:\WINDOWS\System32\WinLogon.exe -SpecialSession
"fontdrvhost.exe"
"dwm.exe"
"C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_700b78aaed9fe381\Display.NvContainer\NVDisplay.Container.exe" -f %ProgramData%\NVIDIA\DisplaySessionContainer%d.log -d C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_700b78aaed9fe381\Display.NvContainer\plugins\Session -r -l 3 -p 30000 -cfg NVDisplay.ContainerLocalSystem\Session -c
C:\WINDOWS\System32\svchost.exe -k LocalServiceNetworkRestricted -p -s lmhosts
"C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe"
"C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe" -f "C:\ProgramData\NVIDIA\NvContainerUser%d.log" -d "C:\Program Files\NVIDIA Corporation\NvContainer\plugins\User" -r -l 3 -p 30000 -st "C:\Program Files\NVIDIA Corporation\NvContainer\NvContainerTelemetryApi.dll" -c
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s CDPUserSvc
sihost.exe
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup -s WpnUserService
taskhostw.exe USER
taskhostw.exe {222A245B-E637-4AE9-A93F-A59CA119A75E}
igfxEM.exe
igfxHK.exe
igfxTray.exe
C:\WINDOWS\Explorer.EXE
"ctfmon.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe"
"C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe"
"C:\Program Files (x86)\TeamViewer\TeamViewer.exe"
C:\WINDOWS\system32\svchost.exe -k LocalSystemNetworkRestricted -p -s NgcSvc
C:\WINDOWS\system32\svchost.exe -k ClipboardSvcGroup -p -s cbdhsvc
"C:\WINDOWS\SystemApps\Microsoft.Windows.StartMenuExperienceHost_cw5n1h2txyewy\StartMenuExperienceHost.exe" -ServerName:App.AppXywbrabmsek0gm3tkwpr5kwzbs55tkqay.mca
"C:\Program Files (x86)\TeamViewer\tv_w32.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\TeamViewer15_Logfile.log
"C:\Program Files (x86)\TeamViewer\tv_x64.exe" --action hooks --log C:\Program Files (x86)\TeamViewer\TeamViewer15_Logfile.log
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\WINDOWS\SystemApps\Microsoft.Windows.Search_cw5n1h2txyewy\SearchApp.exe" -ServerName:CortanaUI.AppX8z9r6jm96hw4bsbneegw0kyxx296wr9t.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe" index.js
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\TextInputHost.exe" -ServerName:InputApp.AppXjd5de1g66v206tj52m9d0dtpppx4cgpn.mca
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.YourPhone_1.23052.121.0_x64__8wekyb3d8bbwe\PhoneExperienceHost.exe" -ComServer:Background -Embedding
"C:\Windows\System32\SecurityHealthSystray.exe"
"C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe"
"C:\Users\magic\AppData\Local\Microsoft\OneDrive\OneDrive.exe" /background
"C:\Program Files (x86)\Sticky Password\stpass.exe"
"C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe" /AECBYLISTENTOSTATUS
"C:\Program Files\WindowsApps\Microsoft.549981C3F5F10_4.2204.13303.0_x64__8wekyb3d8bbwe\Cortana.exe" -ServerName:App.AppX2y379sjp88wjq1y80217mddj3fargf2y.mca
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.99.3403.0_x64__kzf8qxf38zg5c\Skype\Skype.exe"
C:\Windows\System32\RuntimeBroker.exe -Embedding
C:\WINDOWS\system32\svchost.exe -k AarSvcGroup -p -s AarSvc
C:\Windows\System32\RuntimeBroker.exe -Embedding
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.99.3403.0_x64__kzf8qxf38zg5c\Skype\Skype.exe" --type=crashpad-handler "--user-data-dir=C:\Users\magic\AppData\Roaming\Microsoft\Skype for Store" /prefetch:7 --no-rate-limit --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\magic\AppData\Roaming\Microsoft\Skype for Store\Crashpad" --url=appcenter://generic?aid=a8902fe7-ef45-455c-8513-5e56d48e36fd&iid=62d94b6a-e24b-4ce0-4baa-c6ea07ce193b&uid=62d94b6a-e24b-4ce0-4baa-c6ea07ce193b --annotation=IsOfficialBuild=1 --annotation=_companyName=Skype --annotation=_productName=skype-preview --annotation=_version=8.99.0.403 "--annotation=exe=C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.99.3403.0_x64__kzf8qxf38zg5c\Skype\Skype.exe" --annotation=plat=Win64 --annotation=prod=Electron --annotation=ver=19.1.8 --initial-client-data=0x5f0,0x604,0x654,0x5f4,0x5d8,0x7ff6254c1730,0x7ff6254c1740,0x7ff6254c1750
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.99.3403.0_x64__kzf8qxf38zg5c\Skype\Skype.exe" --type=gpu-process --user-data-dir="C:\Users\magic\AppData\Roaming\Microsoft\Skype for Store" --gpu-preferences=UAAAAAAAAADgAAAYAAAAAAAAAAAAAAAAAABgAAAAAAAwAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAEgAAAAAAAAASAAAAAAAAAAYAAAAAgAAABAAAAAAAAAAGAAAAAAAAAAQAAAAAAAAAAAAAAAOAAAAEAAAAAAAAAABAAAADgAAAAgAAAAAAAAACAAAAAAAAAA= --mojo-platform-channel-handle=2196 --field-trial-handle=2148,i,6703451542114484217,357457861956133256,131072 --enable-features=WinUseBrowserSpellChecker,WinUseHybridSpellChecker,WinrtGeolocationImplementation --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:2
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.99.3403.0_x64__kzf8qxf38zg5c\Skype\Skype.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=cs --service-sandbox-type=none --user-data-dir="C:\Users\magic\AppData\Roaming\Microsoft\Skype for Store" --mojo-platform-channel-handle=2512 --field-trial-handle=2148,i,6703451542114484217,357457861956133256,131072 --enable-features=WinUseBrowserSpellChecker,WinUseHybridSpellChecker,WinrtGeolocationImplementation --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand /prefetch:8
"C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.99.3403.0_x64__kzf8qxf38zg5c\Skype\Skype.exe" --type=renderer --user-data-dir="C:\Users\magic\AppData\Roaming\Microsoft\Skype for Store" --app-user-model-id=Microsoft.Skype.SkypeDesktop --app-path="C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.99.3403.0_x64__kzf8qxf38zg5c\Skype\resources\app.asar" --no-sandbox --no-zygote --autoplay-policy=no-user-gesture-required --disable-background-timer-throttling --ms-disable-indexeddb-transaction-timeout --lang=cs --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=4 --launch-time-ticks=329513084015 --mojo-platform-channel-handle=2888 --field-trial-handle=2148,i,6703451542114484217,357457861956133256,131072 --enable-features=WinUseBrowserSpellChecker,WinUseHybridSpellChecker,WinrtGeolocationImplementation --disable-features=SpareRendererForSitePerProcess,WinRetrieveSuggestionsOnlyOnDemand --skype-process-type=Main --skype-window-id=__MAIN_ROOT_VIEW_ID__ /prefetch:1
"C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe" -s
"C:\Program Files (x86)\Sticky Password\spUIAManager.exe"
C:\WINDOWS\system32\svchost.exe -k LocalServiceNetworkRestricted -p -s AJRouter
C:\WINDOWS\system32\DllHost.exe /Processid:{49F171DD-B51A-40D3-9A6C-52D674CC729D}
C:\WINDOWS\system32\svchost.exe -k UnistackSvcGroup
C:\Windows\System32\CompPkgSrv.exe -Embedding
C:\WINDOWS\system32\DllHost.exe /Processid:{973D20D7-562D-44B9-B70B-5A0F49CCDF3F}
C:\Windows\System32\smartscreen.exe -Embedding
"C:\Program Files\Opera\opera.exe" --ran-launcher --started-from-shortcut
"C:\Program Files\Opera\99.0.4788.88\opera_crashreporter.exe" --type=crashpad-handler /prefetch:7 --monitor-self-annotation=ptype=crashpad-handler "--database=C:\Users\magic\AppData\Roaming\Opera Software\Opera Stable\Crash Reports" "--crash-count-file=C:\Users\magic\AppData\Roaming\Opera Software\Opera Stable\crash_count.txt" --url=https://crashstats-collector.opera.com/collector/submit --annotation=channel=Stable --annotation=plat=Win64 --annotation=prod=OperaDesktop --annotation=ver=99.0.4788.88 --initial-client-data=0x304,0x308,0x30c,0x300,0x310,0x7ffc7dccbe10,0x7ffc7dccbe20,0x7ffc7dccbe30
"C:\Program Files\Opera\opera.exe" --type=gpu-process --start-stack-profiler --with-feature:address-bar-dropdown-cities=on --with-feature:address-bar-keywords-monetization=on --with-feature:aliexpress-modal=off --with-feature:amazon-new-ids=on --with-feature:booking-modal=off --with-feature:continue-on-booking=on --with-feature:continue-shopping=on --with-feature:continue-shopping-2=on --with-feature:continue-shopping-5=on --with-feature:continue-shopping-structured-partners=on --with-feature:extended-unstoppable-domains=on --with-feature:feature-remote-disable-updates-testing-flag=off --with-feature:feature-remote-updates-testing-flag=on --with-feature:game-maker-studio-integration=on --with-feature:gaming-api=on --with-feature:google-suggest-entities=on --with-feature:lucid-mode-hide-text=on --with-feature:native-crypto-wallet=on --with-feature:personalized-speeddials=on --with-feature:sd-suggestions-external=on --with-feature:session-restore-attribution=on --with-feature:sitecheck-age=on --with-feature:specific-keywords=on --with-feature:startpage-sync-banner-ref=on --with-feature:yandex-zen-iframe-scroll=on --with-feature:yandex-zen-leads-for-nonsdusers=off --with-feature:yandex-zen-lift-up=off --with-feature:yandex-zen-news=off --with-feature:yandex-zen-news-next=on --with-feature:yat-emoji-addresses=on --with-feature:installer-experiment-test=off --with-feature:installer-bypass-launcher=off --with-feature:installer-one-version-one-subfolder=off --gpu-preferences=WAAAAAAAAADgAAAMAAAAAAAAAAAAAAAAAABgAAAAAAA4AAAAAAAAAAAAAAAIAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAGAAAAAAAAAAYAAAAAAAAAAgAAAAAAAAACAAAAAAAAAAIAAAAAAAAAA== --mojo-platform-channel-handle=1960 --field-trial-handle=1972,i,7846945909095024489,11304128297144985067,262144 /prefetch:2
"C:\Program Files\Opera\opera.exe" --type=utility --utility-sub-type=network.mojom.NetworkService --lang=cs --service-sandbox-type=none --enable-quic --start-stack-profiler --with-feature:address-bar-dropdown-cities=on --with-feature:address-bar-keywords-monetization=on --with-feature:aliexpress-modal=off --with-feature:amazon-new-ids=on --with-feature:booking-modal=off --with-feature:continue-on-booking=on --with-feature:continue-shopping=on --with-feature:continue-shopping-2=on --with-feature:continue-shopping-5=on --with-feature:continue-shopping-structured-partners=on --with-feature:extended-unstoppable-domains=on --with-feature:feature-remote-disable-updates-testing-flag=off --with-feature:feature-remote-updates-testing-flag=on --with-feature:game-maker-studio-integration=on --with-feature:gaming-api=on --with-feature:google-suggest-entities=on --with-feature:lucid-mode-hide-text=on --with-feature:native-crypto-wallet=on --with-feature:personalized-speeddials=on --with-feature:sd-suggestions-external=on --with-feature:session-restore-attribution=on --with-feature:sitecheck-age=on --with-feature:specific-keywords=on --with-feature:startpage-sync-banner-ref=on --with-feature:yandex-zen-iframe-scroll=on --with-feature:yandex-zen-leads-for-nonsdusers=off --with-feature:yandex-zen-lift-up=off --with-feature:yandex-zen-news=off --with-feature:yandex-zen-news-next=on --with-feature:yat-emoji-addresses=on --with-feature:installer-experiment-test=off --with-feature:installer-bypass-launcher=off --with-feature:installer-one-version-one-subfolder=off --mojo-platform-channel-handle=2208 --field-trial-handle=1972,i,7846945909095024489,11304128297144985067,262144 /prefetch:8
"C:\Program Files\Opera\opera.exe" --type=utility --utility-sub-type=storage.mojom.StorageService --lang=cs --service-sandbox-type=service --enable-quic --with-feature:address-bar-dropdown-cities=on --with-feature:address-bar-keywords-monetization=on --with-feature:aliexpress-modal=off --with-feature:amazon-new-ids=on --with-feature:booking-modal=off --with-feature:continue-on-booking=on --with-feature:continue-shopping=on --with-feature:continue-shopping-2=on --with-feature:continue-shopping-5=on --with-feature:continue-shopping-structured-partners=on --with-feature:extended-unstoppable-domains=on --with-feature:feature-remote-disable-updates-testing-flag=off --with-feature:feature-remote-updates-testing-flag=on --with-feature:game-maker-studio-integration=on --with-feature:gaming-api=on --with-feature:google-suggest-entities=on --with-feature:lucid-mode-hide-text=on --with-feature:native-crypto-wallet=on --with-feature:personalized-speeddials=on --with-feature:sd-suggestions-external=on --with-feature:session-restore-attribution=on --with-feature:sitecheck-age=on --with-feature:specific-keywords=on --with-feature:startpage-sync-banner-ref=on --with-feature:yandex-zen-iframe-scroll=on --with-feature:yandex-zen-leads-for-nonsdusers=off --with-feature:yandex-zen-lift-up=off --with-feature:yandex-zen-news=off --with-feature:yandex-zen-news-next=on --with-feature:yat-emoji-addresses=on --with-feature:installer-experiment-test=off --with-feature:installer-bypass-launcher=off --with-feature:installer-one-version-one-subfolder=off --mojo-platform-channel-handle=2336 --field-trial-handle=1972,i,7846945909095024489,11304128297144985067,262144 /prefetch:8
"C:\Program Files\Opera\opera.exe" --type=renderer --with-feature:address-bar-dropdown-cities=on --with-feature:address-bar-keywords-monetization=on --with-feature:aliexpress-modal=off --with-feature:amazon-new-ids=on --with-feature:booking-modal=off --with-feature:continue-on-booking=on --with-feature:continue-shopping=on --with-feature:continue-shopping-2=on --with-feature:continue-shopping-5=on --with-feature:continue-shopping-structured-partners=on --with-feature:extended-unstoppable-domains=on --with-feature:feature-remote-disable-updates-testing-flag=off --with-feature:feature-remote-updates-testing-flag=on --with-feature:game-maker-studio-integration=on --with-feature:gaming-api=on --with-feature:google-suggest-entities=on --with-feature:lucid-mode-hide-text=on --with-feature:native-crypto-wallet=on --with-feature:personalized-speeddials=on --with-feature:sd-suggestions-external=on --with-feature:session-restore-attribution=on --with-feature:sitecheck-age=on --with-feature:specific-keywords=on --with-feature:startpage-sync-banner-ref=on --with-feature:yandex-zen-iframe-scroll=on --with-feature:yandex-zen-leads-for-nonsdusers=off --with-feature:yandex-zen-lift-up=off --with-feature:yandex-zen-news=off --with-feature:yandex-zen-news-next=on --with-feature:yat-emoji-addresses=on --with-feature:installer-experiment-test=off --with-feature:installer-bypass-launcher=off --with-feature:installer-one-version-one-subfolder=off --lang=cs --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=9 --time-ticks-at-unix-epoch=-1688895740137177 --launch-time-ticks=330149548560 --mojo-platform-channel-handle=3212 --field-trial-handle=1972,i,7846945909095024489,11304128297144985067,262144 /prefetch:1
"C:\Program Files\Opera\opera.exe" --type=renderer --with-feature:address-bar-dropdown-cities=on --with-feature:address-bar-keywords-monetization=on --with-feature:aliexpress-modal=off --with-feature:amazon-new-ids=on --with-feature:booking-modal=off --with-feature:continue-on-booking=on --with-feature:continue-shopping=on --with-feature:continue-shopping-2=on --with-feature:continue-shopping-5=on --with-feature:continue-shopping-structured-partners=on --with-feature:extended-unstoppable-domains=on --with-feature:feature-remote-disable-updates-testing-flag=off --with-feature:feature-remote-updates-testing-flag=on --with-feature:game-maker-studio-integration=on --with-feature:gaming-api=on --with-feature:google-suggest-entities=on --with-feature:lucid-mode-hide-text=on --with-feature:native-crypto-wallet=on --with-feature:personalized-speeddials=on --with-feature:sd-suggestions-external=on --with-feature:session-restore-attribution=on --with-feature:sitecheck-age=on --with-feature:specific-keywords=on --with-feature:startpage-sync-banner-ref=on --with-feature:yandex-zen-iframe-scroll=on --with-feature:yandex-zen-leads-for-nonsdusers=off --with-feature:yandex-zen-lift-up=off --with-feature:yandex-zen-news=off --with-feature:yandex-zen-news-next=on --with-feature:yat-emoji-addresses=on --with-feature:installer-experiment-test=off --with-feature:installer-bypass-launcher=off --with-feature:installer-one-version-one-subfolder=off --lang=cs --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=11 --time-ticks-at-unix-epoch=-1688895740137177 --launch-time-ticks=330149649807 --mojo-platform-channel-handle=3704 --field-trial-handle=1972,i,7846945909095024489,11304128297144985067,262144 /prefetch:1
"C:\Program Files\Opera\opera.exe" --type=renderer --extension-process --with-feature:address-bar-dropdown-cities=on --with-feature:address-bar-keywords-monetization=on --with-feature:aliexpress-modal=off --with-feature:amazon-new-ids=on --with-feature:booking-modal=off --with-feature:continue-on-booking=on --with-feature:continue-shopping=on --with-feature:continue-shopping-2=on --with-feature:continue-shopping-5=on --with-feature:continue-shopping-structured-partners=on --with-feature:extended-unstoppable-domains=on --with-feature:feature-remote-disable-updates-testing-flag=off --with-feature:feature-remote-updates-testing-flag=on --with-feature:game-maker-studio-integration=on --with-feature:gaming-api=on --with-feature:google-suggest-entities=on --with-feature:lucid-mode-hide-text=on --with-feature:native-crypto-wallet=on --with-feature:personalized-speeddials=on --with-feature:sd-suggestions-external=on --with-feature:session-restore-attribution=on --with-feature:sitecheck-age=on --with-feature:specific-keywords=on --with-feature:startpage-sync-banner-ref=on --with-feature:yandex-zen-iframe-scroll=on --with-feature:yandex-zen-leads-for-nonsdusers=off --with-feature:yandex-zen-lift-up=off --with-feature:yandex-zen-news=off --with-feature:yandex-zen-news-next=on --with-feature:yat-emoji-addresses=on --with-feature:installer-experiment-test=off --with-feature:installer-bypass-launcher=off --with-feature:installer-one-version-one-subfolder=off --lang=cs --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=5 --time-ticks-at-unix-epoch=-1688895740137177 --launch-time-ticks=330149934738 --mojo-platform-channel-handle=4760 --field-trial-handle=1972,i,7846945909095024489,11304128297144985067,262144 /prefetch:1
"C:\Program Files\Opera\opera.exe" --type=utility --utility-sub-type=audio.mojom.AudioService --lang=cs --service-sandbox-type=audio --enable-quic --with-feature:address-bar-dropdown-cities=on --with-feature:address-bar-keywords-monetization=on --with-feature:aliexpress-modal=off --with-feature:amazon-new-ids=on --with-feature:booking-modal=off --with-feature:continue-on-booking=on --with-feature:continue-shopping=on --with-feature:continue-shopping-2=on --with-feature:continue-shopping-5=on --with-feature:continue-shopping-structured-partners=on --with-feature:extended-unstoppable-domains=on --with-feature:feature-remote-disable-updates-testing-flag=off --with-feature:feature-remote-updates-testing-flag=on --with-feature:game-maker-studio-integration=on --with-feature:gaming-api=on --with-feature:google-suggest-entities=on --with-feature:lucid-mode-hide-text=on --with-feature:native-crypto-wallet=on --with-feature:personalized-speeddials=on --with-feature:sd-suggestions-external=on --with-feature:session-restore-attribution=on --with-feature:sitecheck-age=on --with-feature:specific-keywords=on --with-feature:startpage-sync-banner-ref=on --with-feature:yandex-zen-iframe-scroll=on --with-feature:yandex-zen-leads-for-nonsdusers=off --with-feature:yandex-zen-lift-up=off --with-feature:yandex-zen-news=off --with-feature:yandex-zen-news-next=on --with-feature:yat-emoji-addresses=on --with-feature:installer-experiment-test=off --with-feature:installer-bypass-launcher=off --with-feature:installer-one-version-one-subfolder=off --mojo-platform-channel-handle=4792 --field-trial-handle=1972,i,7846945909095024489,11304128297144985067,262144 /prefetch:8
"C:\Program Files\Opera\opera.exe" --type=renderer --extension-process --with-feature:address-bar-dropdown-cities=on --with-feature:address-bar-keywords-monetization=on --with-feature:aliexpress-modal=off --with-feature:amazon-new-ids=on --with-feature:booking-modal=off --with-feature:continue-on-booking=on --with-feature:continue-shopping=on --with-feature:continue-shopping-2=on --with-feature:continue-shopping-5=on --with-feature:continue-shopping-structured-partners=on --with-feature:extended-unstoppable-domains=on --with-feature:feature-remote-disable-updates-testing-flag=off --with-feature:feature-remote-updates-testing-flag=on --with-feature:game-maker-studio-integration=on --with-feature:gaming-api=on --with-feature:google-suggest-entities=on --with-feature:lucid-mode-hide-text=on --with-feature:native-crypto-wallet=on --with-feature:personalized-speeddials=on --with-feature:sd-suggestions-external=on --with-feature:session-restore-attribution=on --with-feature:sitecheck-age=on --with-feature:specific-keywords=on --with-feature:startpage-sync-banner-ref=on --with-feature:yandex-zen-iframe-scroll=on --with-feature:yandex-zen-leads-for-nonsdusers=off --with-feature:yandex-zen-lift-up=off --with-feature:yandex-zen-news=off --with-feature:yandex-zen-news-next=on --with-feature:yat-emoji-addresses=on --with-feature:installer-experiment-test=off --with-feature:installer-bypass-launcher=off --with-feature:installer-one-version-one-subfolder=off --lang=cs --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=6 --time-ticks-at-unix-epoch=-1688895740137177 --launch-time-ticks=330152584619 --mojo-platform-channel-handle=5096 --field-trial-handle=1972,i,7846945909095024489,11304128297144985067,262144 /prefetch:1
"C:\Program Files\Opera\opera.exe" --type=renderer --extension-process --with-feature:address-bar-dropdown-cities=on --with-feature:address-bar-keywords-monetization=on --with-feature:aliexpress-modal=off --with-feature:amazon-new-ids=on --with-feature:booking-modal=off --with-feature:continue-on-booking=on --with-feature:continue-shopping=on --with-feature:continue-shopping-2=on --with-feature:continue-shopping-5=on --with-feature:continue-shopping-structured-partners=on --with-feature:extended-unstoppable-domains=on --with-feature:feature-remote-disable-updates-testing-flag=off --with-feature:feature-remote-updates-testing-flag=on --with-feature:game-maker-studio-integration=on --with-feature:gaming-api=on --with-feature:google-suggest-entities=on --with-feature:lucid-mode-hide-text=on --with-feature:native-crypto-wallet=on --with-feature:personalized-speeddials=on --with-feature:sd-suggestions-external=on --with-feature:session-restore-attribution=on --with-feature:sitecheck-age=on --with-feature:specific-keywords=on --with-feature:startpage-sync-banner-ref=on --with-feature:yandex-zen-iframe-scroll=on --with-feature:yandex-zen-leads-for-nonsdusers=off --with-feature:yandex-zen-lift-up=off --with-feature:yandex-zen-news=off --with-feature:yandex-zen-news-next=on --with-feature:yat-emoji-addresses=on --with-feature:installer-experiment-test=off --with-feature:installer-bypass-launcher=off --with-feature:installer-one-version-one-subfolder=off --lang=cs --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=7 --time-ticks-at-unix-epoch=-1688895740137177 --launch-time-ticks=330152609286 --mojo-platform-channel-handle=3708 --field-trial-handle=1972,i,7846945909095024489,11304128297144985067,262144 /prefetch:1
"C:\Program Files\Opera\opera.exe" --type=renderer --extension-process --with-feature:address-bar-dropdown-cities=on --with-feature:address-bar-keywords-monetization=on --with-feature:aliexpress-modal=off --with-feature:amazon-new-ids=on --with-feature:booking-modal=off --with-feature:continue-on-booking=on --with-feature:continue-shopping=on --with-feature:continue-shopping-2=on --with-feature:continue-shopping-5=on --with-feature:continue-shopping-structured-partners=on --with-feature:extended-unstoppable-domains=on --with-feature:feature-remote-disable-updates-testing-flag=off --with-feature:feature-remote-updates-testing-flag=on --with-feature:game-maker-studio-integration=on --with-feature:gaming-api=on --with-feature:google-suggest-entities=on --with-feature:lucid-mode-hide-text=on --with-feature:native-crypto-wallet=on --with-feature:personalized-speeddials=on --with-feature:sd-suggestions-external=on --with-feature:session-restore-attribution=on --with-feature:sitecheck-age=on --with-feature:specific-keywords=on --with-feature:startpage-sync-banner-ref=on --with-feature:yandex-zen-iframe-scroll=on --with-feature:yandex-zen-leads-for-nonsdusers=off --with-feature:yandex-zen-lift-up=off --with-feature:yandex-zen-news=off --with-feature:yandex-zen-news-next=on --with-feature:yat-emoji-addresses=on --with-feature:installer-experiment-test=off --with-feature:installer-bypass-launcher=off --with-feature:installer-one-version-one-subfolder=off --lang=cs --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=17 --time-ticks-at-unix-epoch=-1688895740137177 --launch-time-ticks=330152631187 --mojo-platform-channel-handle=5444 --field-trial-handle=1972,i,7846945909095024489,11304128297144985067,262144 /prefetch:1
"C:\Program Files\Opera\opera.exe" --type=renderer --extension-process --with-feature:address-bar-dropdown-cities=on --with-feature:address-bar-keywords-monetization=on --with-feature:aliexpress-modal=off --with-feature:amazon-new-ids=on --with-feature:booking-modal=off --with-feature:continue-on-booking=on --with-feature:continue-shopping=on --with-feature:continue-shopping-2=on --with-feature:continue-shopping-5=on --with-feature:continue-shopping-structured-partners=on --with-feature:extended-unstoppable-domains=on --with-feature:feature-remote-disable-updates-testing-flag=off --with-feature:feature-remote-updates-testing-flag=on --with-feature:game-maker-studio-integration=on --with-feature:gaming-api=on --with-feature:google-suggest-entities=on --with-feature:lucid-mode-hide-text=on --with-feature:native-crypto-wallet=on --with-feature:personalized-speeddials=on --with-feature:sd-suggestions-external=on --with-feature:session-restore-attribution=on --with-feature:sitecheck-age=on --with-feature:specific-keywords=on --with-feature:startpage-sync-banner-ref=on --with-feature:yandex-zen-iframe-scroll=on --with-feature:yandex-zen-leads-for-nonsdusers=off --with-feature:yandex-zen-lift-up=off --with-feature:yandex-zen-news=off --with-feature:yandex-zen-news-next=on --with-feature:yat-emoji-addresses=on --with-feature:installer-experiment-test=off --with-feature:installer-bypass-launcher=off --with-feature:installer-one-version-one-subfolder=off --lang=cs --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=14 --time-ticks-at-unix-epoch=-1688895740137177 --launch-time-ticks=330152644037 --mojo-platform-channel-handle=2960 --field-trial-handle=1972,i,7846945909095024489,11304128297144985067,262144 /prefetch:1
C:\WINDOWS\system32\cmd.exe /d /c "C:\Program Files (x86)\Sticky Password\spNMHost.exe" chrome-extension://bnfdmghkeppfadphbnkjcicejfepnbfe/ --parent-window=0 < \\.\pipe\chrome.nativeMessaging.in.2c69c3cdde82d214 > \\.\pipe\chrome.nativeMessaging.out.2c69c3cdde82d214
\??\C:\WINDOWS\system32\conhost.exe 0x4
"C:\Program Files (x86)\Sticky Password\spNMHost.exe" chrome-extension://bnfdmghkeppfadphbnkjcicejfepnbfe/ --parent-window=0

"C:\Program Files\Opera\opera.exe" --type=utility --utility-sub-type=data_decoder.mojom.DataDecoderService --lang=cs --service-sandbox-type=service --enable-quic --with-feature:address-bar-dropdown-cities=on --with-feature:address-bar-keywords-monetization=on --with-feature:aliexpress-modal=off --with-feature:amazon-new-ids=on --with-feature:booking-modal=off --with-feature:continue-on-booking=on --with-feature:continue-shopping=on --with-feature:continue-shopping-2=on --with-feature:continue-shopping-5=on --with-feature:continue-shopping-structured-partners=on --with-feature:extended-unstoppable-domains=on --with-feature:feature-remote-disable-updates-testing-flag=off --with-feature:feature-remote-updates-testing-flag=on --with-feature:game-maker-studio-integration=on --with-feature:gaming-api=on --with-feature:google-suggest-entities=on --with-feature:lucid-mode-hide-text=on --with-feature:native-crypto-wallet=on --with-feature:personalized-speeddials=on --with-feature:sd-suggestions-external=on --with-feature:session-restore-attribution=on --with-feature:sitecheck-age=on --with-feature:specific-keywords=on --with-feature:startpage-sync-banner-ref=on --with-feature:yandex-zen-iframe-scroll=on --with-feature:yandex-zen-leads-for-nonsdusers=off --with-feature:yandex-zen-lift-up=off --with-feature:yandex-zen-news=off --with-feature:yandex-zen-news-next=on --with-feature:yat-emoji-addresses=on --with-feature:installer-experiment-test=off --with-feature:installer-bypass-launcher=off --with-feature:installer-one-version-one-subfolder=off --mojo-platform-channel-handle=6628 --field-trial-handle=1972,i,7846945909095024489,11304128297144985067,262144 /prefetch:8
C:\WINDOWS\system32\AUDIODG.EXE 0x510
"C:\Program Files\Opera\opera.exe" --type=renderer --start-stack-profiler --with-feature:address-bar-dropdown-cities=on --with-feature:address-bar-keywords-monetization=on --with-feature:aliexpress-modal=off --with-feature:amazon-new-ids=on --with-feature:booking-modal=off --with-feature:continue-on-booking=on --with-feature:continue-shopping=on --with-feature:continue-shopping-2=on --with-feature:continue-shopping-5=on --with-feature:continue-shopping-structured-partners=on --with-feature:extended-unstoppable-domains=on --with-feature:feature-remote-disable-updates-testing-flag=off --with-feature:feature-remote-updates-testing-flag=on --with-feature:game-maker-studio-integration=on --with-feature:gaming-api=on --with-feature:google-suggest-entities=on --with-feature:lucid-mode-hide-text=on --with-feature:native-crypto-wallet=on --with-feature:personalized-speeddials=on --with-feature:sd-suggestions-external=on --with-feature:session-restore-attribution=on --with-feature:sitecheck-age=on --with-feature:specific-keywords=on --with-feature:startpage-sync-banner-ref=on --with-feature:yandex-zen-iframe-scroll=on --with-feature:yandex-zen-leads-for-nonsdusers=off --with-feature:yandex-zen-lift-up=off --with-feature:yandex-zen-news=off --with-feature:yandex-zen-news-next=on --with-feature:yat-emoji-addresses=on --with-feature:installer-experiment-test=off --with-feature:installer-bypass-launcher=off --with-feature:installer-one-version-one-subfolder=off --lang=cs --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=98 --time-ticks-at-unix-epoch=-1688895740137177 --launch-time-ticks=330243107821 --mojo-platform-channel-handle=11736 --field-trial-handle=1972,i,7846945909095024489,11304128297144985067,262144 /prefetch:1
"C:\Program Files\Opera\opera.exe" --type=renderer --with-feature:address-bar-dropdown-cities=on --with-feature:address-bar-keywords-monetization=on --with-feature:aliexpress-modal=off --with-feature:amazon-new-ids=on --with-feature:booking-modal=off --with-feature:continue-on-booking=on --with-feature:continue-shopping=on --with-feature:continue-shopping-2=on --with-feature:continue-shopping-5=on --with-feature:continue-shopping-structured-partners=on --with-feature:extended-unstoppable-domains=on --with-feature:feature-remote-disable-updates-testing-flag=off --with-feature:feature-remote-updates-testing-flag=on --with-feature:game-maker-studio-integration=on --with-feature:gaming-api=on --with-feature:google-suggest-entities=on --with-feature:lucid-mode-hide-text=on --with-feature:native-crypto-wallet=on --with-feature:personalized-speeddials=on --with-feature:sd-suggestions-external=on --with-feature:session-restore-attribution=on --with-feature:sitecheck-age=on --with-feature:specific-keywords=on --with-feature:startpage-sync-banner-ref=on --with-feature:yandex-zen-iframe-scroll=on --with-feature:yandex-zen-leads-for-nonsdusers=off --with-feature:yandex-zen-lift-up=off --with-feature:yandex-zen-news=off --with-feature:yandex-zen-news-next=on --with-feature:yat-emoji-addresses=on --with-feature:installer-experiment-test=off --with-feature:installer-bypass-launcher=off --with-feature:installer-one-version-one-subfolder=off --lang=cs --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=99 --time-ticks-at-unix-epoch=-1688895740137177 --launch-time-ticks=330244669959 --mojo-platform-channel-handle=10244 --field-trial-handle=1972,i,7846945909095024489,11304128297144985067,262144 /prefetch:1
"C:\Program Files\Opera\opera.exe" --type=renderer --with-feature:address-bar-dropdown-cities=on --with-feature:address-bar-keywords-monetization=on --with-feature:aliexpress-modal=off --with-feature:amazon-new-ids=on --with-feature:booking-modal=off --with-feature:continue-on-booking=on --with-feature:continue-shopping=on --with-feature:continue-shopping-2=on --with-feature:continue-shopping-5=on --with-feature:continue-shopping-structured-partners=on --with-feature:extended-unstoppable-domains=on --with-feature:feature-remote-disable-updates-testing-flag=off --with-feature:feature-remote-updates-testing-flag=on --with-feature:game-maker-studio-integration=on --with-feature:gaming-api=on --with-feature:google-suggest-entities=on --with-feature:lucid-mode-hide-text=on --with-feature:native-crypto-wallet=on --with-feature:personalized-speeddials=on --with-feature:sd-suggestions-external=on --with-feature:session-restore-attribution=on --with-feature:sitecheck-age=on --with-feature:specific-keywords=on --with-feature:startpage-sync-banner-ref=on --with-feature:yandex-zen-iframe-scroll=on --with-feature:yandex-zen-leads-for-nonsdusers=off --with-feature:yandex-zen-lift-up=off --with-feature:yandex-zen-news=off --with-feature:yandex-zen-news-next=on --with-feature:yat-emoji-addresses=on --with-feature:installer-experiment-test=off --with-feature:installer-bypass-launcher=off --with-feature:installer-one-version-one-subfolder=off --lang=cs --device-scale-factor=1 --num-raster-threads=2 --enable-main-frame-before-activation --renderer-client-id=101 --time-ticks-at-unix-epoch=-1688895740137177 --launch-time-ticks=330262425691 --mojo-platform-channel-handle=8304 --field-trial-handle=1972,i,7846945909095024489,11304128297144985067,262144 /prefetch:1
"C:\WINDOWS\system32\SearchProtocolHost.exe" Global\UsGthrFltPipeMssGthrPipe6_ Global\UsGthrCtrlFltPipeMssGthrPipe6 1 -2147483646 "Software\Microsoft\Windows Search" "Mozilla/4.0 (compatible; MSIE 6.0; Windows NT; MS Search 4.0 Robot)" "C:\ProgramData\Microsoft\Search\Data\Temp\usgthrsvc" "DownLevelDaemon"
"C:\WINDOWS\system32\SearchFilterHost.exe" 0 808 812 820 8192 816 792
"C:\Users\magic\AppData\Local\Temp\scoped_dir7640_680653838\RSITx64.exe"
C:\WINDOWS\system32\wbem\wmiprvse.exe

======Scheduled tasks folder======

C:\WINDOWS\tasks\CCleanerCrashReporting.job - C:\Program Files\CCleaner\CCleanerBugReport.exe --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "956d34c9-0e6a-48cc-9a38-c39565406db5" --version "6.13.10517" --silent

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C}]
IEToEdge BHO - C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.79\BHO\ie_to_edge_bho_64.dll [2023-07-10 589248]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2023-07-07 211304]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1FD49718-1D00-4B19-AF5F-070AF6D5D54C}]
IEToEdge BHO - C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.79\BHO\ie_to_edge_bho.dll [2023-07-10 454592]

[HKEY_LOCAL_MACHINE\SOFTWARE\wow6432node\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{31D09BA0-12F5-4CCE-BE8A-2923E76605DA}]
Skype for Business Browser Helper - C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2023-07-07 167824]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"SecurityHealth"=C:\WINDOWS\system32\SecurityHealthSystray.exe [2019-12-07 86016]
"Služba Acronis Scheduler2"=C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [2015-12-25 383624]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"DAEMON Tools Lite Automount"=C:\Program Files\DAEMON Tools Lite\DTAgent.exe [2019-12-25 371304]
"OneDrive"=C:\Users\magic\AppData\Local\Microsoft\OneDrive\OneDrive.exe [2023-07-06 2605960]
"StickyPassword"=C:\Program Files (x86)\Sticky Password\stpass.exe [2023-05-23 71584]
"Spotify"=C:\Users\magic\AppData\Roaming\Spotify\Spotify.exe [2022-06-09 19065272]
"CCleaner Smart Cleaning"=C:\Program Files\CCleaner\CCleaner64.exe [2023-06-07 40496032]
"HP DeskJet 4530 series (NET)"=C:\Program Files\HP\HP DeskJet 4530 series\Bin\ScanToPCActivationApp.exe [2021-11-17 3770528]

[HKEY_LOCAL_MACHINE\Software\wow6432node\Microsoft\Windows\CurrentVersion\Run]
"Opera Browser Assistant"=C:\Program Files\Opera\assistant\browser_assistant.exe [2023-06-20 3955608]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioEndpointBuilder]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\AudioSrv]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CBDHSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudAddService.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HdAudBus.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HidSpiCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\iai2c.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcCtnrSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\NgcSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SerCx2.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\usbaudio.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{4D36E96C-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\Ahcache.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioEndpointBuilder]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\AudioSrv]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CBDHSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\CoreMessagingRegistrar]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudAddService.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HdAudBus.Sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\HidSpiCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\MsQuic]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NetSetupSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NgcCtnrSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\NgcSvc]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SerCx2.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\SpbCx.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\StateRepository]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\uefi.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\usbaudio.sys]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\UserManager]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{4D36E96C-E325-11CE-BFC1-08002BE10318}]

[HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\network\{F2E7DD72-6468-4E36-B6F1-6488F42C1B52}]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"DSCAutomationHostEnabled"=2
"EnableFullTrustStartupTasks"=2
"EnableUwpStartupTasks"=2
"SupportFullTrustStartupTasks"=1
"SupportUwpStartupTasks"=1

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoSimpleNetIDList"=1
"NoDriveTypeAutoRun"=221

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"NoResolveTrack"=1

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Drivers32]
"aux"=wdmaud.drv
"midi"=wdmaud.drv
"midimapper"=midimap.dll
"mixer"=wdmaud.drv
"msacm.imaadpcm"=imaadp32.acm
"msacm.msadpcm"=msadp32.acm
"msacm.msg711"=msg711.acm
"msacm.msgsm610"=msgsm32.acm
"vidc.i420"=iyuv_32.dll
"vidc.iyuv"=iyuv_32.dll
"vidc.mrle"=msrle32.dll
"vidc.msvc"=msvidc32.dll
"vidc.uyvy"=msyuv.dll
"vidc.yuy2"=msyuv.dll
"vidc.yvu9"=tsbyuv.dll
"vidc.yvyu"=msyuv.dll
"wave"=wdmaud.drv
"wavemapper"=msacm32.drv
"msacm.l3acm"=C:\Windows\System32\l3codeca.acm
"VIDC.X264"=x264vfw64.dll
"VIDC.LAGS"=lagarith.dll
"VIDC.XVID"=xvidvfw.dll
"msacm.ac3acm"=ac3acm.acm
"MSVideo8"=VfWWDM32.dll
"aux1"=wdmaud.drv
"midi2"=wdmaud.drv
"mixer2"=wdmaud.drv
"wave2"=wdmaud.drv
"midi1"=wdmaud.drv
"mixer1"=wdmaud.drv
"wave1"=wdmaud.drv
"aux2"=wdmaud.drv
"midi3"=wdmaud.drv
"mixer3"=wdmaud.drv
"wave3"=wdmaud.drv

======File associations======

.inf - install -
.js - edit - C:\Windows\System32\Notepad.exe %1
.js - open - C:\Windows\System32\WScript.exe "%1" %*

======List of files/folders created in the last 1 month======

2023-07-13 07:27:25 ----D---- C:\Program Files\trend micro
2023-07-13 07:27:24 ----D---- C:\rsit
2023-07-13 07:13:32 ----A---- C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2023-07-11 21:01:51 ----HD---- C:\$WinREAgent
2023-07-09 11:35:36 ----A---- C:\WINDOWS\SYSWOW64\dfshim.dll
2023-07-09 11:35:35 ----A---- C:\WINDOWS\system32\dfshim.dll
2023-07-06 10:20:42 ----A---- C:\WINDOWS\system32\vcruntime140_clr0400.dll
2023-07-06 10:20:42 ----A---- C:\WINDOWS\system32\vcruntime140_1_clr0400.dll
2023-07-06 10:20:41 ----A---- C:\WINDOWS\SYSWOW64\vcruntime140_clr0400.dll
2023-07-06 10:20:34 ----A---- C:\WINDOWS\system32\msvcr100_clr0400.dll
2023-07-06 10:20:33 ----A---- C:\WINDOWS\SYSWOW64\ucrtbase_clr0400.dll
2023-07-06 10:20:33 ----A---- C:\WINDOWS\SYSWOW64\msvcp140_clr0400.dll
2023-07-06 10:20:33 ----A---- C:\WINDOWS\SYSWOW64\aspnet_counters.dll
2023-07-06 10:20:33 ----A---- C:\WINDOWS\system32\ucrtbase_clr0400.dll
2023-07-06 10:20:33 ----A---- C:\WINDOWS\system32\msvcp140_clr0400.dll
2023-07-06 10:20:33 ----A---- C:\WINDOWS\system32\aspnet_counters.dll
2023-07-06 10:20:27 ----A---- C:\WINDOWS\SYSWOW64\msvcr100_clr0400.dll
2023-06-14 16:05:57 ----A---- C:\WINDOWS\SYSWOW64\cdp.dll
2023-06-14 16:05:57 ----A---- C:\WINDOWS\system32\WinBioDataModelOOBE.exe
2023-06-14 16:05:57 ----A---- C:\WINDOWS\system32\WinBioDataModel.dll
2023-06-14 16:05:54 ----A---- C:\WINDOWS\system32\Windows.UI.Shell.dll
2023-06-14 16:05:54 ----A---- C:\WINDOWS\system32\cdp.dll
2023-06-14 16:05:52 ----A---- C:\WINDOWS\system32\xpsrchvw.exe
2023-06-14 16:05:52 ----A---- C:\WINDOWS\system32\quickassist.exe
2023-06-14 16:05:52 ----A---- C:\WINDOWS\system32\mspaint.exe
2023-06-14 16:05:46 ----A---- C:\WINDOWS\SYSWOW64\WMVCORE.DLL
2023-06-14 16:05:46 ----A---- C:\WINDOWS\SYSWOW64\msmpeg2vdec.dll
2023-06-14 16:05:46 ----A---- C:\WINDOWS\SYSWOW64\mfps.dll
2023-06-14 16:05:46 ----A---- C:\WINDOWS\SYSWOW64\mfmpeg2srcsnk.dll
2023-06-14 16:05:46 ----A---- C:\WINDOWS\SYSWOW64\mfmp4srcsnk.dll
2023-06-14 16:05:45 ----A---- C:\WINDOWS\SYSWOW64\mfcore.dll
2023-06-14 16:05:45 ----A---- C:\WINDOWS\SYSWOW64\mfasfsrcsnk.dll
2023-06-14 16:05:45 ----A---- C:\WINDOWS\SYSWOW64\mf.dll
2023-06-14 16:05:45 ----A---- C:\WINDOWS\system32\DolbyDecMFT.dll
2023-06-14 16:05:43 ----A---- C:\WINDOWS\system32\Hydrogen.dll
2023-06-14 16:05:42 ----A---- C:\WINDOWS\system32\WMVCORE.DLL
2023-06-14 16:05:42 ----A---- C:\WINDOWS\system32\msmpeg2vdec.dll
2023-06-14 16:05:42 ----A---- C:\WINDOWS\system32\MSAudDecMFT.dll
2023-06-14 16:05:42 ----A---- C:\WINDOWS\system32\mfmpeg2srcsnk.dll
2023-06-14 16:05:42 ----A---- C:\WINDOWS\system32\HologramWorld.dll
2023-06-14 16:05:41 ----A---- C:\WINDOWS\system32\mfps.dll
2023-06-14 16:05:41 ----A---- C:\WINDOWS\system32\mfmp4srcsnk.dll
2023-06-14 16:05:41 ----A---- C:\WINDOWS\system32\mfcore.dll
2023-06-14 16:05:41 ----A---- C:\WINDOWS\system32\mfasfsrcsnk.dll
2023-06-14 16:05:41 ----A---- C:\WINDOWS\system32\mf.dll
2023-06-14 16:05:39 ----A---- C:\WINDOWS\SYSWOW64\tsgqec.dll
2023-06-14 16:05:39 ----A---- C:\WINDOWS\SYSWOW64\CPFilters.dll
2023-06-14 16:05:39 ----A---- C:\WINDOWS\SYSWOW64\AcXtrnal.dll
2023-06-14 16:05:39 ----A---- C:\WINDOWS\SYSWOW64\AcLayers.dll
2023-06-14 16:05:39 ----A---- C:\WINDOWS\SYSWOW64\AcGenral.dll
2023-06-14 16:05:38 ----A---- C:\WINDOWS\SYSWOW64\wsp_health.dll
2023-06-14 16:05:38 ----A---- C:\WINDOWS\SYSWOW64\wsp_fs.dll
2023-06-14 16:05:38 ----A---- C:\WINDOWS\SYSWOW64\sqlsrv32.dll
2023-06-14 16:05:38 ----A---- C:\WINDOWS\SYSWOW64\NAPCRYPT.DLL
2023-06-14 16:05:38 ----A---- C:\WINDOWS\SYSWOW64\mstscax.dll
2023-06-14 16:05:38 ----A---- C:\WINDOWS\SYSWOW64\msimsg.dll
2023-06-14 16:05:38 ----A---- C:\WINDOWS\SYSWOW64\msi.dll
2023-06-14 16:05:38 ----A---- C:\WINDOWS\SYSWOW64\iemigplugin.dll
2023-06-14 16:05:37 ----A---- C:\WINDOWS\SYSWOW64\ieframe.dll
2023-06-14 16:05:36 ----A---- C:\WINDOWS\SYSWOW64\webplatstorageserver.dll
2023-06-14 16:05:36 ----A---- C:\WINDOWS\SYSWOW64\mshtml.dll
2023-06-14 16:05:36 ----A---- C:\WINDOWS\SYSWOW64\EdgeManager.dll
2023-06-14 16:05:34 ----A---- C:\WINDOWS\SYSWOW64\edgehtml.dll
2023-06-14 16:05:34 ----A---- C:\WINDOWS\SYSWOW64\dswave.dll
2023-06-14 16:05:34 ----A---- C:\WINDOWS\SYSWOW64\dnscmmc.dll
2023-06-14 16:05:34 ----A---- C:\WINDOWS\SYSWOW64\dmusic.dll
2023-06-14 16:05:34 ----A---- C:\WINDOWS\SYSWOW64\dmsynth.dll
2023-06-14 16:05:34 ----A---- C:\WINDOWS\SYSWOW64\dmloader.dll
2023-06-14 16:05:32 ----A---- C:\WINDOWS\system32\tsgqec.dll
2023-06-14 16:05:32 ----A---- C:\WINDOWS\system32\SIHClient.exe
2023-06-14 16:05:32 ----A---- C:\WINDOWS\system32\FileHistory.exe
2023-06-14 16:05:32 ----A---- C:\WINDOWS\system32\fhuxgraphics.dll
2023-06-14 16:05:32 ----A---- C:\WINDOWS\system32\CPFilters.dll
2023-06-14 16:05:32 ----A---- C:\WINDOWS\system32\AcXtrnal.dll
2023-06-14 16:05:32 ----A---- C:\WINDOWS\system32\AcLayers.dll
2023-06-14 16:05:32 ----A---- C:\WINDOWS\system32\AcGenral.dll
2023-06-14 16:05:31 ----A---- C:\WINDOWS\system32\wsp_health.dll
2023-06-14 16:05:31 ----A---- C:\WINDOWS\system32\wsp_fs.dll
2023-06-14 16:05:31 ----A---- C:\WINDOWS\system32\mstscax.dll
2023-06-14 16:05:30 ----A---- C:\WINDOWS\system32\wshrm.dll
2023-06-14 16:05:30 ----A---- C:\WINDOWS\system32\sqlsrv32.dll
2023-06-14 16:05:30 ----A---- C:\WINDOWS\system32\NAPCRYPT.DLL
2023-06-14 16:05:30 ----A---- C:\WINDOWS\system32\msimsg.dll
2023-06-14 16:05:30 ----A---- C:\WINDOWS\system32\msi.dll
2023-06-14 16:05:30 ----A---- C:\WINDOWS\system32\iscsiwmiv2.dll
2023-06-14 16:05:30 ----A---- C:\WINDOWS\system32\iscsiwmi.dll
2023-06-14 16:05:30 ----A---- C:\WINDOWS\system32\iscsium.dll
2023-06-14 16:05:30 ----A---- C:\WINDOWS\system32\iscsiexe.dll
2023-06-14 16:05:30 ----A---- C:\WINDOWS\system32\iscsied.dll
2023-06-14 16:05:30 ----A---- C:\WINDOWS\system32\iscsidsc.dll
2023-06-14 16:05:30 ----A---- C:\WINDOWS\system32\iscsicli.exe
2023-06-14 16:05:30 ----A---- C:\WINDOWS\system32\IESettingSync.exe
2023-06-14 16:05:30 ----A---- C:\WINDOWS\system32\iemigplugin.dll
2023-06-14 16:05:30 ----A---- C:\WINDOWS\system32\drivers\rmcast.sys
2023-06-14 16:05:29 ----A---- C:\WINDOWS\system32\ieframe.dll
2023-06-14 16:05:28 ----A---- C:\WINDOWS\system32\mshtml.dll
2023-06-14 16:05:27 ----A---- C:\WINDOWS\system32\webplatstorageserver.dll
2023-06-14 16:05:27 ----A---- C:\WINDOWS\system32\EdgeManager.dll
2023-06-14 16:05:25 ----A---- C:\WINDOWS\system32\edgehtml.dll
2023-06-14 16:05:25 ----A---- C:\WINDOWS\system32\dswave.dll
2023-06-14 16:05:25 ----A---- C:\WINDOWS\system32\dnscmmc.dll
2023-06-14 16:05:25 ----A---- C:\WINDOWS\system32\dmusic.dll
2023-06-14 16:05:25 ----A---- C:\WINDOWS\system32\dmsynth.dll
2023-06-14 16:05:25 ----A---- C:\WINDOWS\system32\dmloader.dll
2023-06-14 16:05:25 ----A---- C:\WINDOWS\system32\ClipUp.exe
2023-06-14 16:05:22 ----A---- C:\WINDOWS\system32\vertdll.dll
2023-06-14 16:05:22 ----A---- C:\WINDOWS\system32\tcbloader.dll
2023-06-14 16:05:22 ----A---- C:\WINDOWS\system32\tcblaunch.exe
2023-06-14 16:05:22 ----A---- C:\WINDOWS\system32\skci.dll
2023-06-14 16:05:22 ----A---- C:\WINDOWS\system32\SgrmEnclave_secure.dll
2023-06-14 16:05:22 ----A---- C:\WINDOWS\system32\SgrmEnclave.dll
2023-06-14 16:05:22 ----A---- C:\WINDOWS\system32\securekernel.exe
2023-06-14 16:05:22 ----A---- C:\WINDOWS\system32\resutils.dll
2023-06-14 16:05:22 ----A---- C:\WINDOWS\system32\hvix64.exe
2023-06-14 16:05:22 ----A---- C:\WINDOWS\system32\hvax64.exe
2023-06-14 16:05:22 ----A---- C:\WINDOWS\system32\drivers\winhvr.sys
2023-06-14 16:05:21 ----A---- C:\WINDOWS\SYSWOW64\Windows.Media.Protection.PlayReady.dll
2023-06-14 16:05:21 ----A---- C:\WINDOWS\SYSWOW64\urlmon.dll
2023-06-14 16:05:21 ----A---- C:\WINDOWS\SYSWOW64\shell32.dll
2023-06-14 16:05:21 ----A---- C:\WINDOWS\SYSWOW64\rtutils.dll
2023-06-14 16:05:21 ----A---- C:\WINDOWS\SYSWOW64\msIso.dll
2023-06-14 16:05:21 ----A---- C:\WINDOWS\SYSWOW64\jsproxy.dll
2023-06-14 16:05:21 ----A---- C:\WINDOWS\SYSWOW64\iertutil.dll
2023-06-14 16:05:21 ----A---- C:\WINDOWS\SYSWOW64\edgeIso.dll
2023-06-14 16:05:21 ----A---- C:\WINDOWS\SYSWOW64\AboveLockAppHost.dll
2023-06-14 16:05:20 ----A---- C:\WINDOWS\SYSWOW64\wininet.dll
2023-06-14 16:05:20 ----A---- C:\WINDOWS\SYSWOW64\winhttp.dll
2023-06-14 16:05:20 ----A---- C:\WINDOWS\SYSWOW64\webio.dll
2023-06-14 16:05:20 ----A---- C:\WINDOWS\SYSWOW64\netlogon.dll
2023-06-14 16:05:20 ----A---- C:\WINDOWS\SYSWOW64\mspatcha.dll
2023-06-14 16:05:20 ----A---- C:\WINDOWS\SYSWOW64\msdelta.dll
2023-06-14 16:05:20 ----A---- C:\WINDOWS\SYSWOW64\enrollmentapi.dll
2023-06-14 16:05:20 ----A---- C:\WINDOWS\SYSWOW64\dmenrollengine.dll
2023-06-14 16:05:18 ----A---- C:\WINDOWS\SYSWOW64\wups.dll
2023-06-14 16:05:18 ----A---- C:\WINDOWS\SYSWOW64\wuapi.dll
2023-06-14 16:05:18 ----A---- C:\WINDOWS\SYSWOW64\winbio.dll
2023-06-14 16:05:18 ----A---- C:\WINDOWS\SYSWOW64\win32u.dll
2023-06-14 16:05:18 ----A---- C:\WINDOWS\SYSWOW64\win32kfull.sys
2023-06-14 16:05:18 ----A---- C:\WINDOWS\SYSWOW64\win32k.sys
2023-06-14 16:05:18 ----A---- C:\WINDOWS\SYSWOW64\user32.dll
2023-06-14 16:05:18 ----A---- C:\WINDOWS\SYSWOW64\uReFS.dll
2023-06-14 16:05:18 ----A---- C:\WINDOWS\SYSWOW64\schannel.dll
2023-06-14 16:05:18 ----A---- C:\WINDOWS\SYSWOW64\msv1_0.dll
2023-06-14 16:05:18 ----A---- C:\WINDOWS\SYSWOW64\mdmregistration.dll
2023-06-14 16:05:18 ----A---- C:\WINDOWS\SYSWOW64\dnsapi.dll
2023-06-14 16:05:18 ----A---- C:\WINDOWS\SYSWOW64\daxexec.dll
2023-06-14 16:05:18 ----A---- C:\WINDOWS\SYSWOW64\crypt32.dll
2023-06-14 16:05:18 ----A---- C:\WINDOWS\SYSWOW64\console.dll
2023-06-14 16:05:17 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.Store.dll
2023-06-14 16:05:17 ----A---- C:\WINDOWS\SYSWOW64\twinapi.appcore.dll
2023-06-14 16:05:17 ----A---- C:\WINDOWS\SYSWOW64\rdpserverbase.dll
2023-06-14 16:05:17 ----A---- C:\WINDOWS\SYSWOW64\OneCoreUAPCommonProxyStub.dll
2023-06-14 16:05:17 ----A---- C:\WINDOWS\SYSWOW64\LicenseManager.dll
2023-06-14 16:05:17 ----A---- C:\WINDOWS\SYSWOW64\kerberos.dll
2023-06-14 16:05:17 ----A---- C:\WINDOWS\SYSWOW64\InstallServiceTasks.dll
2023-06-14 16:05:17 ----A---- C:\WINDOWS\SYSWOW64\AppXDeploymentClient.dll
2023-06-14 16:05:16 ----A---- C:\WINDOWS\SYSWOW64\WordBreakers.dll
2023-06-14 16:05:16 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Core.TextInput.dll
2023-06-14 16:05:16 ----A---- C:\WINDOWS\SYSWOW64\tquery.dll
2023-06-14 16:05:16 ----A---- C:\WINDOWS\SYSWOW64\TileDataRepository.dll
2023-06-14 16:05:16 ----A---- C:\WINDOWS\SYSWOW64\TextInputMethodFormatter.dll
2023-06-14 16:05:16 ----A---- C:\WINDOWS\SYSWOW64\TextInputFramework.dll
2023-06-14 16:05:16 ----A---- C:\WINDOWS\SYSWOW64\MapRouter.dll
2023-06-14 16:05:16 ----A---- C:\WINDOWS\SYSWOW64\InstallService.dll
2023-06-14 16:05:16 ----A---- C:\WINDOWS\SYSWOW64\EditBufferTestHook.dll
2023-06-14 16:05:16 ----A---- C:\WINDOWS\SYSWOW64\BingMaps.dll
2023-06-14 16:05:15 ----A---- C:\WINDOWS\SYSWOW64\XInputUap.dll
2023-06-14 16:05:15 ----A---- C:\WINDOWS\SYSWOW64\Windows.Gaming.Input.dll
2023-06-14 16:05:15 ----A---- C:\WINDOWS\SYSWOW64\SearchProtocolHost.exe
2023-06-14 16:05:15 ----A---- C:\WINDOWS\SYSWOW64\SearchIndexer.exe
2023-06-14 16:05:15 ----A---- C:\WINDOWS\SYSWOW64\SearchFilterHost.exe
2023-06-14 16:05:15 ----A---- C:\WINDOWS\SYSWOW64\Search.ProtocolHandler.MAPI2.dll
2023-06-14 16:05:15 ----A---- C:\WINDOWS\SYSWOW64\mssvp.dll
2023-06-14 16:05:15 ----A---- C:\WINDOWS\SYSWOW64\mssrch.dll
2023-06-14 16:05:15 ----A---- C:\WINDOWS\SYSWOW64\mssprxy.dll
2023-06-14 16:05:15 ----A---- C:\WINDOWS\SYSWOW64\mssph.dll
2023-06-14 16:05:15 ----A---- C:\WINDOWS\SYSWOW64\mssitlb.dll
2023-06-14 16:05:15 ----A---- C:\WINDOWS\SYSWOW64\msscntrs.dll
2023-06-14 16:05:15 ----A---- C:\WINDOWS\SYSWOW64\GameInput.dll
2023-06-14 16:05:15 ----A---- C:\WINDOWS\SYSWOW64\d3d9on12.dll
2023-06-14 16:05:15 ----A---- C:\WINDOWS\SYSWOW64\AppxAllUserStore.dll
2023-06-14 16:05:14 ----A---- C:\WINDOWS\SYSWOW64\wudriver.dll
2023-06-14 16:05:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.UI.Xaml.dll
2023-06-14 16:05:14 ----A---- C:\WINDOWS\SYSWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2023-06-14 16:05:14 ----A---- C:\WINDOWS\SYSWOW64\twinui.dll
2023-06-14 16:05:14 ----A---- C:\WINDOWS\SYSWOW64\ShellCommonCommonProxyStub.dll
2023-06-14 16:05:14 ----A---- C:\WINDOWS\SYSWOW64\LaunchWinApp.exe
2023-06-14 16:05:14 ----A---- C:\WINDOWS\SYSWOW64\kernel32.dll
2023-06-14 16:05:13 ----A---- C:\WINDOWS\SYSWOW64\Windows.ApplicationModel.ConversationalAgent.dll
2023-06-14 16:05:13 ----A---- C:\WINDOWS\SYSWOW64\PCPKsp.dll
2023-06-14 16:05:13 ----A---- C:\WINDOWS\SYSWOW64\ntdll.dll
2023-06-14 16:05:13 ----A---- C:\WINDOWS\SYSWOW64\explorer.exe
2023-06-14 16:05:13 ----A---- C:\WINDOWS\system32\wudriver.dll
2023-06-14 16:05:13 ----A---- C:\WINDOWS\system32\windowsudk.shellcommon.dll
2023-06-14 16:05:13 ----A---- C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2023-06-14 16:05:13 ----A---- C:\WINDOWS\system32\LsaIso.exe
2023-06-14 16:05:13 ----A---- C:\WINDOWS\system32\LaunchWinApp.exe
2023-06-14 16:05:13 ----A---- C:\WINDOWS\system32\kernel32.dll
2023-06-14 16:05:13 ----A---- C:\WINDOWS\system32\iumcrypt.dll
2023-06-14 16:05:13 ----A---- C:\WINDOWS\system32\ActionQueue.dll
2023-06-14 16:05:12 ----A---- C:\WINDOWS\system32\xpsservices.dll
2023-06-14 16:05:12 ----A---- C:\WINDOWS\system32\twinui.dll
2023-06-14 16:05:12 ----A---- C:\WINDOWS\system32\SettingsHandlers_nt.dll
2023-06-14 16:05:12 ----A---- C:\WINDOWS\system32\rtutils.dll
2023-06-14 16:05:12 ----A---- C:\WINDOWS\system32\npmproxy.dll
2023-06-14 16:05:12 ----A---- C:\WINDOWS\system32\nlmsprep.dll
2023-06-14 16:05:12 ----A---- C:\WINDOWS\system32\nlmproxy.dll
2023-06-14 16:05:12 ----A---- C:\WINDOWS\system32\nlasvc.dll
2023-06-14 16:05:12 ----A---- C:\WINDOWS\system32\nlaapi.dll
2023-06-14 16:05:12 ----A---- C:\WINDOWS\system32\netprofmsvc.dll
2023-06-14 16:05:12 ----A---- C:\WINDOWS\system32\netprofm.dll
2023-06-14 16:05:12 ----A---- C:\WINDOWS\system32\ncsi.dll
2023-06-14 16:05:12 ----A---- C:\WINDOWS\system32\drivers\rassstp.sys
2023-06-14 16:05:12 ----A---- C:\WINDOWS\system32\drivers\rasl2tp.sys
2023-06-14 16:05:12 ----A---- C:\WINDOWS\system32\DeveloperOptionsSettingsHandlers.dll
2023-06-14 16:05:12 ----A---- C:\WINDOWS\system32\CustomInstallExec.exe
2023-06-14 16:05:11 ----A---- C:\WINDOWS\system32\msIso.dll
2023-06-14 16:05:11 ----A---- C:\WINDOWS\system32\laps.dll
2023-06-14 16:05:11 ----A---- C:\WINDOWS\system32\iertutil.dll
2023-06-14 16:05:11 ----A---- C:\WINDOWS\system32\edgeIso.dll
2023-06-14 16:05:11 ----A---- C:\WINDOWS\system32\drivers\mskssrv.sys
2023-06-14 16:05:11 ----A---- C:\WINDOWS\system32\drivers\ks.sys
2023-06-14 16:05:11 ----A---- C:\WINDOWS\system32\AppxSysprep.dll
2023-06-14 16:05:11 ----A---- C:\WINDOWS\system32\AppXDeploymentServer.dll
2023-06-14 16:05:11 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.onecore.dll
2023-06-14 16:05:11 ----A---- C:\WINDOWS\system32\AppXDeploymentExtensions.desktop.dll
2023-06-14 16:05:11 ----A---- C:\WINDOWS\system32\AppXApplicabilityBlob.dll
2023-06-14 16:05:11 ----A---- C:\WINDOWS\system32\AppxAllUserStore.dll
2023-06-14 16:05:11 ----A---- C:\WINDOWS\system32\ApplyTrustOffline.exe
2023-06-14 16:05:11 ----A---- C:\WINDOWS\system32\AboveLockAppHost.dll
2023-06-14 16:05:10 ----A---- C:\WINDOWS\system32\wininet.dll
2023-06-14 16:05:10 ----A---- C:\WINDOWS\system32\urlmon.dll
2023-06-14 16:05:10 ----A---- C:\WINDOWS\system32\omadmclient.exe
2023-06-14 16:05:10 ----A---- C:\WINDOWS\system32\mdmmigrator.dll
2023-06-14 16:05:10 ----A---- C:\WINDOWS\system32\MdmDiagnostics.dll
2023-06-14 16:05:10 ----A---- C:\WINDOWS\system32\LocationFrameworkPS.dll
2023-06-14 16:05:10 ----A---- C:\WINDOWS\system32\LocationFrameworkInternalPS.dll
2023-06-14 16:05:10 ----A---- C:\WINDOWS\system32\LocationFramework.dll
2023-06-14 16:05:10 ----A---- C:\WINDOWS\system32\jsproxy.dll
2023-06-14 16:05:10 ----A---- C:\WINDOWS\system32\enterprisecsps.dll
2023-06-14 16:05:10 ----A---- C:\WINDOWS\system32\enrollmentapi.dll
2023-06-14 16:05:10 ----A---- C:\WINDOWS\system32\dmenrollengine.dll
2023-06-14 16:05:09 ----A---- C:\WINDOWS\system32\sppsvc.exe
2023-06-14 16:05:09 ----A---- C:\WINDOWS\system32\sppobjs.dll
2023-06-14 16:05:09 ----A---- C:\WINDOWS\system32\SppExtComObj.Exe
2023-06-14 16:05:09 ----A---- C:\WINDOWS\system32\sppcext.dll
2023-06-14 16:05:09 ----A---- C:\WINDOWS\system32\DeviceEnroller.exe
2023-06-14 16:05:07 ----A---- C:\WINDOWS\system32\witnesswmiv2provider.dll
2023-06-14 16:05:06 ----A---- C:\WINDOWS\SYSWOW64\KernelBase.dll
2023-06-14 16:05:06 ----A---- C:\WINDOWS\system32\wuuhext.dll
2023-06-14 16:05:06 ----A---- C:\WINDOWS\system32\sscore.dll
2023-06-14 16:05:06 ----A---- C:\WINDOWS\system32\srvsvc.dll
2023-06-14 16:05:06 ----A---- C:\WINDOWS\system32\shell32.dll
2023-06-14 16:05:06 ----A---- C:\WINDOWS\system32\netlogon.dll
2023-06-14 16:05:06 ----A---- C:\WINDOWS\system32\mspatchc.dll
2023-06-14 16:05:06 ----A---- C:\WINDOWS\system32\mspatcha.dll
2023-06-14 16:05:06 ----A---- C:\WINDOWS\system32\msdelta.dll
2023-06-14 16:05:06 ----A---- C:\WINDOWS\system32\drivers\FWPKCLNT.SYS
2023-06-14 16:05:05 ----A---- C:\WINDOWS\system32\KernelBase.dll
2023-06-14 16:05:05 ----A---- C:\WINDOWS\system32\drivers\tcpip.sys
2023-06-14 16:05:05 ----A---- C:\WINDOWS\system32\drivers\netio.sys
2023-06-14 16:05:04 ----A---- C:\WINDOWS\system32\winhttp.dll
2023-06-14 16:05:04 ----A---- C:\WINDOWS\system32\pacjsworker.exe
2023-06-14 16:05:04 ----A---- C:\WINDOWS\system32\offlinelsa.dll
2023-06-14 16:05:04 ----A---- C:\WINDOWS\system32\ntoskrnl.exe
2023-06-14 16:05:04 ----A---- C:\WINDOWS\system32\ntdll.dll
2023-06-14 16:05:04 ----A---- C:\WINDOWS\system32\lsasrv.dll
2023-06-14 16:05:04 ----A---- C:\WINDOWS\system32\drivers\ntfs.sys
2023-06-14 16:05:04 ----A---- C:\WINDOWS\system32\drivers\ksecpkg.sys
2023-06-14 16:05:04 ----A---- C:\WINDOWS\system32\drivers\fltMgr.sys
2023-06-14 16:05:03 ----A---- C:\WINDOWS\system32\winresume.exe
2023-06-14 16:05:03 ----A---- C:\WINDOWS\system32\winload.exe
2023-06-14 16:05:03 ----A---- C:\WINDOWS\system32\webio.dll
2023-06-14 16:05:03 ----A---- C:\WINDOWS\system32\schannel.dll
2023-06-14 16:05:03 ----A---- C:\WINDOWS\system32\msv1_0.dll
2023-06-14 16:05:03 ----A---- C:\WINDOWS\system32\KdsCli.dll
2023-06-14 16:05:03 ----A---- C:\WINDOWS\system32\drivers\cldflt.sys
2023-06-14 16:05:03 ----A---- C:\WINDOWS\system32\dnsrslvr.dll
2023-06-14 16:05:03 ----A---- C:\WINDOWS\system32\dnsapi.dll
2023-06-14 16:05:03 ----A---- C:\WINDOWS\system32\crypt32.dll
2023-06-14 16:05:03 ----A---- C:\WINDOWS\system32\console.dll
2023-06-14 16:05:03 ----A---- C:\WINDOWS\system32\conhost.exe
2023-06-14 16:05:03 ----A---- C:\WINDOWS\system32\ci.dll
2023-06-14 16:05:02 ----A---- C:\WINDOWS\system32\uReFS.dll
2023-06-14 16:05:02 ----A---- C:\WINDOWS\system32\ShellAppRuntime.exe
2023-06-14 16:05:02 ----A---- C:\WINDOWS\system32\refsutil.exe
2023-06-14 16:05:02 ----A---- C:\WINDOWS\system32\pcasvc.dll
2023-06-14 16:05:02 ----A---- C:\WINDOWS\system32\pcalua.exe
2023-06-14 16:05:02 ----A---- C:\WINDOWS\system32\pcaevts.dll
2023-06-14 16:05:02 ----A---- C:\WINDOWS\system32\pcadm.dll
2023-06-14 16:05:02 ----A---- C:\WINDOWS\system32\NotificationControllerPS.dll
2023-06-14 16:05:02 ----A---- C:\WINDOWS\system32\NotificationController.dll
2023-06-14 16:05:02 ----A---- C:\WINDOWS\system32\drivers\refs.sys
2023-06-14 16:05:01 ----A---- C:\WINDOWS\system32\wuuhosdeployment.dll
2023-06-14 16:05:01 ----A---- C:\WINDOWS\system32\wups2.dll
2023-06-14 16:05:01 ----A---- C:\WINDOWS\system32\wuaueng.dll
2023-06-14 16:05:01 ----A---- C:\WINDOWS\system32\wuauclt.exe
2023-06-14 16:05:01 ----A---- C:\WINDOWS\system32\UpdateDeploymentProvider.dll
2023-06-14 16:05:01 ----A---- C:\WINDOWS\system32\twinui.pcshell.dll
2023-06-14 16:05:01 ----A---- C:\WINDOWS\system32\SettingsEnvironment.Desktop.dll
2023-06-14 16:05:00 ----A---- C:\WINDOWS\system32\wups.dll
2023-06-14 16:05:00 ----A---- C:\WINDOWS\system32\wuapi.dll
2023-06-14 16:05:00 ----A---- C:\WINDOWS\system32\winbio.dll
2023-06-14 16:05:00 ----A---- C:\WINDOWS\system32\wbiosrvc.dll
2023-06-14 16:05:00 ----A---- C:\WINDOWS\system32\usosvc.dll
2023-06-14 16:05:00 ----A---- C:\WINDOWS\system32\usocoreworker.exe
2023-06-14 16:05:00 ----A---- C:\WINDOWS\system32\UpdateAgent.dll
2023-06-14 16:05:00 ----A---- C:\WINDOWS\system32\MusUpdateHandlers.dll
2023-06-14 16:05:00 ----A---- C:\WINDOWS\system32\MoUsoCoreWorker.exe
2023-06-14 16:05:00 ----A---- C:\WINDOWS\system32\mdmregistration.dll
2023-06-14 16:05:00 ----A---- C:\WINDOWS\system32\HttpsDataSource.dll
2023-06-14 16:05:00 ----A---- C:\WINDOWS\system32\drivers\SpbCx.sys
2023-06-14 16:05:00 ----A---- C:\WINDOWS\system32\drivers\HidSpiCx.sys
2023-06-14 16:04:59 ----A---- C:\WINDOWS\system32\windows.immersiveshell.serviceprovider.dll
2023-06-14 16:04:59 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.Store.dll
2023-06-14 16:04:59 ----A---- C:\WINDOWS\system32\win32u.dll
2023-06-14 16:04:59 ----A---- C:\WINDOWS\system32\win32kfull.sys
2023-06-14 16:04:59 ----A---- C:\WINDOWS\system32\win32k.sys
2023-06-14 16:04:59 ----A---- C:\WINDOWS\system32\storewuauth.dll
2023-06-14 16:04:59 ----A---- C:\WINDOWS\system32\PushToInstall.dll
2023-06-14 16:04:59 ----A---- C:\WINDOWS\system32\LicenseManager.dll
2023-06-14 16:04:59 ----A---- C:\WINDOWS\system32\kerberos.dll
2023-06-14 16:04:59 ----A---- C:\WINDOWS\system32\InstallServiceTasks.dll
2023-06-14 16:04:59 ----A---- C:\WINDOWS\system32\IKEEXT.DLL
2023-06-14 16:04:59 ----A---- C:\WINDOWS\system32\FWPUCLNT.DLL
2023-06-14 16:04:59 ----A---- C:\WINDOWS\system32\drivers\wfplwfs.sys
2023-06-14 16:04:59 ----A---- C:\WINDOWS\system32\BFE.DLL
2023-06-14 16:04:59 ----A---- C:\WINDOWS\system32\AppXDeploymentClient.dll
2023-06-14 16:04:58 ----A---- C:\WINDOWS\system32\TileDataRepository.dll
2023-06-14 16:04:58 ----A---- C:\WINDOWS\system32\MapsStore.dll
2023-06-14 16:04:58 ----A---- C:\WINDOWS\system32\MapRouter.dll
2023-06-14 16:04:58 ----A---- C:\WINDOWS\system32\ISM.dll
2023-06-14 16:04:58 ----A---- C:\WINDOWS\system32\InstallService.dll
2023-06-14 16:04:57 ----A---- C:\WINDOWS\system32\WordBreakers.dll
2023-06-14 16:04:57 ----A---- C:\WINDOWS\system32\Windows.UI.Core.TextInput.dll
2023-06-14 16:04:57 ----A---- C:\WINDOWS\system32\TextInputMethodFormatter.dll
2023-06-14 16:04:57 ----A---- C:\WINDOWS\system32\TextInputFramework.dll
2023-06-14 16:04:57 ----A---- C:\WINDOWS\system32\InputService.dll
2023-06-14 16:04:57 ----A---- C:\WINDOWS\system32\InputLocaleManager.dll
2023-06-14 16:04:57 ----A---- C:\WINDOWS\system32\EditBufferTestHook.dll
2023-06-14 16:04:57 ----A---- C:\WINDOWS\system32\BingMaps.dll
2023-06-14 16:04:56 ----A---- C:\WINDOWS\system32\tquery.dll
2023-06-14 16:04:56 ----A---- C:\WINDOWS\system32\SearchProtocolHost.exe
2023-06-14 16:04:56 ----A---- C:\WINDOWS\system32\SearchIndexer.exe
2023-06-14 16:04:56 ----A---- C:\WINDOWS\system32\SearchFilterHost.exe
2023-06-14 16:04:56 ----A---- C:\WINDOWS\system32\Search.ProtocolHandler.MAPI2.dll
2023-06-14 16:04:56 ----A---- C:\WINDOWS\system32\mssvp.dll
2023-06-14 16:04:56 ----A---- C:\WINDOWS\system32\mssrch.dll
2023-06-14 16:04:56 ----A---- C:\WINDOWS\system32\mssprxy.dll
2023-06-14 16:04:56 ----A---- C:\WINDOWS\system32\mssph.dll
2023-06-14 16:04:56 ----A---- C:\WINDOWS\system32\mssitlb.dll
2023-06-14 16:04:54 ----A---- C:\WINDOWS\system32\win32kbase.sys
2023-06-14 16:04:54 ----A---- C:\WINDOWS\system32\msscntrs.dll
2023-06-14 16:04:54 ----A---- C:\WINDOWS\system32\EdgeContent.dll
2023-06-14 16:04:54 ----A---- C:\WINDOWS\system32\dosvc.dll
2023-06-14 16:04:54 ----A---- C:\WINDOWS\system32\domgmt.dll
2023-06-14 16:04:54 ----A---- C:\WINDOWS\system32\d3d9on12.dll
2023-06-14 16:04:48 ----A---- C:\WINDOWS\system32\vaultsvc.dll
2023-06-14 16:04:48 ----A---- C:\WINDOWS\system32\vaultcli.dll
2023-06-14 16:04:48 ----A---- C:\WINDOWS\system32\twinapi.appcore.dll
2023-06-14 16:04:48 ----A---- C:\WINDOWS\system32\smartscreenps.dll
2023-06-14 16:04:48 ----A---- C:\WINDOWS\system32\OneCoreUAPCommonProxyStub.dll
2023-06-14 16:04:48 ----A---- C:\WINDOWS\system32\licensingdiag.exe
2023-06-14 16:04:48 ----A---- C:\WINDOWS\system32\drivers\ClipSp.sys
2023-06-14 16:04:47 ----A---- C:\WINDOWS\system32\XInputUap.dll
2023-06-14 16:04:47 ----A---- C:\WINDOWS\system32\Windows.Graphics.Printing.3D.dll
2023-06-14 16:04:47 ----A---- C:\WINDOWS\system32\Windows.Gaming.Input.dll
2023-06-14 16:04:47 ----A---- C:\WINDOWS\system32\smartscreen.exe
2023-06-14 16:04:47 ----A---- C:\WINDOWS\system32\GameInput.dll
2023-06-14 16:04:47 ----A---- C:\WINDOWS\system32\cloudAP.dll
2023-06-14 16:04:47 ----A---- C:\WINDOWS\system32\aadcloudap.dll
2023-06-14 16:04:46 ----A---- C:\WINDOWS\system32\Windows.UI.Xaml.dll
2023-06-14 16:04:45 ----A---- C:\WINDOWS\system32\wow64cpu.dll
2023-06-14 16:04:45 ----A---- C:\WINDOWS\system32\wow64.dll
2023-06-14 16:04:45 ----A---- C:\WINDOWS\system32\Windows.Media.Protection.PlayReady.dll
2023-06-14 16:04:44 ----A---- C:\WINDOWS\system32\wifidatacapabilityhandler.dll
2023-06-14 16:04:44 ----A---- C:\WINDOWS\system32\wcmsvc.dll
2023-06-14 16:04:44 ----A---- C:\WINDOWS\system32\wcmcsp.dll
2023-06-14 16:04:44 ----A---- C:\WINDOWS\system32\usbmon.dll
2023-06-14 16:04:44 ----A---- C:\WINDOWS\system32\ShellCommonCommonProxyStub.dll
2023-06-14 16:04:44 ----A---- C:\WINDOWS\system32\PrinterCleanupTask.dll
2023-06-14 16:04:44 ----A---- C:\WINDOWS\system32\PCPKsp.dll
2023-06-14 16:04:44 ----A---- C:\WINDOWS\system32\localui.dll
2023-06-14 16:04:44 ----A---- C:\WINDOWS\system32\localspl.dll
2023-06-14 16:04:44 ----A---- C:\WINDOWS\system32\FaxPrinterInstaller.dll
2023-06-14 16:04:44 ----A---- C:\WINDOWS\system32\cellulardatacapabilityhandler.dll
2023-06-14 16:04:44 ----A---- C:\WINDOWS\system32\apisetschema.dll
2023-06-14 16:04:44 ----A---- C:\WINDOWS\explorer.exe
2023-06-14 16:04:43 ----A---- C:\WINDOWS\system32\Windows.ApplicationModel.ConversationalAgent.dll
2023-06-14 16:04:43 ----A---- C:\WINDOWS\system32\SpeechPal.dll
2023-06-14 16:04:43 ----A---- C:\WINDOWS\system32\MitigationClient.dll
2023-06-14 16:04:43 ----A---- C:\WINDOWS\system32\drivers\storport.sys
2023-06-14 16:04:43 ----A---- C:\WINDOWS\system32\AppListBackupLauncher.dll
2023-06-14 16:04:42 ----A---- C:\WINDOWS\system32\drivers\USBXHCI.SYS
2023-06-14 16:04:42 ----A---- C:\WINDOWS\system32\drivers\stornvme.sys
2023-06-14 16:04:42 ----A---- C:\WINDOWS\system32\drivers\pci.sys
2023-06-14 16:04:42 ----A---- C:\WINDOWS\system32\drivers\hidusb.sys
2023-06-14 16:04:42 ----A---- C:\WINDOWS\system32\drivers\hidspi.sys
2023-06-14 16:04:42 ----A---- C:\WINDOWS\system32\drivers\hidparse.sys
2023-06-14 16:04:42 ----A---- C:\WINDOWS\system32\drivers\hidclass.sys
2023-06-14 16:04:42 ----A---- C:\WINDOWS\system32\drivers\acpi.sys
2023-06-14 16:04:39 ----A---- C:\WINDOWS\system32\drivers\xinputhid.sys
2023-06-14 16:04:39 ----A---- C:\WINDOWS\system32\drivers\hdaudbus.sys
2023-06-14 15:46:23 ----A---- C:\WINDOWS\SYSWOW64\poqexec.exe
2023-06-14 15:46:22 ----A---- C:\WINDOWS\system32\poqexec.exe

======List of files/folders modified in the last 1 month======

2023-07-13 07:27:25 ----RD---- C:\Program Files
2023-07-13 07:25:09 ----D---- C:\WINDOWS\Temp
2023-07-13 07:14:08 ----D---- C:\WINDOWS\system32\sru
2023-07-13 07:13:58 ----D---- C:\ProgramData\NVIDIA
2023-07-13 07:13:48 ----D---- C:\WINDOWS\SystemTemp
2023-07-13 07:13:46 ----D---- C:\Program Files (x86)\Google
2023-07-13 07:13:32 ----D---- C:\WINDOWS\System32
2023-07-12 21:12:37 ----D---- C:\WINDOWS\system32\SleepStudy
2023-07-12 18:20:57 ----D---- C:\WINDOWS\system32\config
2023-07-12 18:20:43 ----HD---- C:\Program Files\WindowsApps
2023-07-12 18:20:39 ----D---- C:\WINDOWS\AppReadiness
2023-07-11 21:12:07 ----D---- C:\ProgramData\regid.1991-06.com.microsoft
2023-07-11 21:05:06 ----SHDC---- C:\WINDOWS\Installer
2023-07-11 21:04:52 ----D---- C:\WINDOWS\system32\Tasks
2023-07-11 21:04:28 ----D---- C:\WINDOWS\Prefetch
2023-07-11 21:04:17 ----D---- C:\WINDOWS\SysWOW64
2023-07-11 21:02:35 ----D---- C:\WINDOWS\WinSxS
2023-07-09 11:42:59 ----D---- C:\Program Files (x86)\TeamViewer
2023-07-09 11:42:54 ----D---- C:\WINDOWS\ServiceState
2023-07-09 11:42:53 ----ASH---- C:\DumpStack.log.tmp
2023-07-09 11:42:38 ----D---- C:\WINDOWS\system32\catroot2
2023-07-09 11:38:02 ----D---- C:\WINDOWS\CbsTemp
2023-07-09 11:37:28 ----RD---- C:\WINDOWS\Microsoft.NET
2023-07-07 23:07:23 ----D---- C:\Users\magic\AppData\Roaming\vlc
2023-07-07 14:16:16 ----D---- C:\Windows
2023-07-07 13:14:54 ----D---- C:\Program Files (x86)\Microsoft Office
2023-07-07 13:06:38 ----D---- C:\WINDOWS\INF
2023-07-07 13:06:38 ----A---- C:\WINDOWS\system32\PerfStringBackup.INI
2023-07-06 21:55:41 ----D---- C:\Program Files\Opera
2023-07-06 21:55:41 ----D---- C:\Program Files\CCleaner
2023-06-24 20:38:44 ----D---- C:\WINDOWS\Logs
2023-06-22 18:34:27 ----D---- C:\WINDOWS\Tasks
2023-06-18 18:56:34 ----D---- C:\WINDOWS\system32\LogFiles
2023-06-16 18:34:45 ----D---- C:\WINDOWS\system32\DriverStore
2023-06-15 19:10:32 ----RSD---- C:\WINDOWS\assembly
2023-06-15 19:07:25 ----D---- C:\Program Files\HPPrintScanDoctor
2023-06-14 20:57:08 ----D---- C:\WINDOWS\system32\drivers
2023-06-14 20:56:41 ----D---- C:\WINDOWS\SYSWOW64\WinMetadata
2023-06-14 20:56:41 ----D---- C:\WINDOWS\SYSWOW64\sppui
2023-06-14 20:56:41 ----D---- C:\WINDOWS\SYSWOW64\nl-NL
2023-06-14 20:56:41 ----D---- C:\WINDOWS\SYSWOW64\migration
2023-06-14 20:56:40 ----D---- C:\WINDOWS\SystemResources
2023-06-14 20:56:40 ----D---- C:\WINDOWS\system32\WinMetadata
2023-06-14 20:56:40 ----D---- C:\WINDOWS\system32\wbem
2023-06-14 20:56:40 ----D---- C:\WINDOWS\system32\sppui
2023-06-14 20:56:40 ----D---- C:\WINDOWS\system32\sk-SK
2023-06-14 20:56:40 ----D---- C:\WINDOWS\system32\oobe
2023-06-14 20:56:40 ----D---- C:\WINDOWS\system32\nl-NL
2023-06-14 20:56:40 ----D---- C:\WINDOWS\system32\migwiz
2023-06-14 20:56:40 ----D---- C:\WINDOWS\system32\migration
2023-06-14 20:56:40 ----D---- C:\WINDOWS\system32\fr-FR
2023-06-14 20:56:40 ----D---- C:\WINDOWS\system32\fr-CA
2023-06-14 20:56:40 ----D---- C:\WINDOWS\system32\en-US
2023-06-14 20:56:40 ----D---- C:\WINDOWS\system32\cs-CZ
2023-06-14 20:56:40 ----D---- C:\WINDOWS\system32\Boot
2023-06-14 20:56:39 ----RD---- C:\WINDOWS\ImmersiveControlPanel
2023-06-14 20:56:39 ----D---- C:\WINDOWS\ShellExperiences
2023-06-14 20:56:39 ----D---- C:\WINDOWS\bcastdvr
2023-06-14 20:56:39 ----D---- C:\Program Files\Internet Explorer
2023-06-14 20:56:37 ----D---- C:\WINDOWS\system32\drivers\UMDF
2023-06-14 16:04:43 ----A---- C:\WINDOWS\SYSWOW64\PrintConfig.dll
2023-06-14 15:37:23 ----D---- C:\WINDOWS\system32\MRT
2023-06-14 15:36:53 ----AC---- C:\WINDOWS\system32\MRT.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R0 fltsrv;Acronis Storage Filter Management; C:\WINDOWS\system32\DRIVERS\fltsrv.sys [2018-02-03 160600]
R0 iaStorA;iaStorA; C:\WINDOWS\System32\drivers\iaStorA.sys [2017-09-14 1469952]
R0 IntelHSWPcc;IntelHSWPcc; C:\WINDOWS\System32\drivers\IntelPcc.sys [2015-06-09 88256]
R0 iorate;@%SystemRoot%\system32\drivers\iorate.sys,-101; C:\WINDOWS\system32\drivers\iorate.sys [2021-10-06 57168]
R1 afunix;afunix; C:\WINDOWS\system32\drivers\afunix.sys [2022-08-10 44032]
R1 ATKWMIACPIIO;ATKWMIACPI Driver; \??\C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [2015-05-08 20096]
R1 bam;@%SystemRoot%\system32\drivers\bam.sys,-100; C:\WINDOWS\system32\drivers\bam.sys [2019-12-07 78136]
R1 CimFS;CimFS; C:\WINDOWS\system32\drivers\CimFS.sys [2023-02-15 95232]
R1 ElbyCDIO;ElbyCDIO Driver; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [2017-05-14 42616]
R1 FileCrypt;@%systemroot%\system32\drivers\filecrypt.sys,-100; C:\WINDOWS\system32\drivers\filecrypt.sys [2019-12-07 59392]
R1 GpuEnergyDrv;@%SystemRoot%\system32\drivers\gpuenergydrv.sys,-100; C:\WINDOWS\System32\drivers\gpuenergydrv.sys [2019-12-07 8704]
R2 bindflt;@%systemroot%\system32\drivers\bindflt.sys,-100; C:\WINDOWS\system32\drivers\bindflt.sys [2023-01-13 145760]
R2 CldFlt;Windows Cloud Files Filter Driver; C:\WINDOWS\system32\drivers\cldflt.sys [2023-06-14 493056]
R2 MMCSS;@%systemroot%\system32\drivers\mmcss.sys,-100; C:\WINDOWS\system32\drivers\mmcss.sys [2021-10-06 53248]
R3 AsusTP;@oem48.inf,%PS2.DeviceDesc%;ASUS Input Touchpad Device; C:\WINDOWS\System32\drivers\AsusTP.sys [2019-08-19 102144]
R3 athr;@oem52.inf,%ATHR.Service.DispName%;Qualcomm Extensible Wireless LAN device driver; C:\WINDOWS\System32\drivers\athw10x.sys [2019-07-15 4322552]
R3 BtFilter;BtFilter; C:\WINDOWS\System32\drivers\btfilter.sys [2019-09-04 69368]
R3 BTHPORT;@bth.inf,%BTHPORT.SvcDesc%;Ovladač portu Bluetooth; C:\WINDOWS\System32\drivers\BTHport.sys [2023-05-10 1565696]
R3 BTHUSB;@bth.inf,%BTHUSB.SvcDesc%;Ovladač rozhraní USB radiostanice Bluetooth; C:\WINDOWS\System32\drivers\BTHUSB.sys [2023-05-10 110592]
R3 CAD;@ChargeArbitration.inf,%CAD_DevDesc%;Charge Arbitration Driver; C:\WINDOWS\System32\drivers\CAD.sys [2019-12-07 66576]
R3 dptf_acpi;dptf_acpi; C:\WINDOWS\System32\DriverStore\FileRepository\dptf_acpi.inf_amd64_e7c3288c5f827f77\dptf_acpi.sys [2022-02-22 81040]
R3 dptf_cpu;dptf_cpu; C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_82419944dda69b12\dptf_cpu.sys [2022-02-22 76952]
R3 dtlitescsibus;@oem9.inf,%DisplayName%;DAEMON Tools Lite Virtual SCSI Bus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [2019-12-25 42256]
R3 dtliteusbbus;@oem15.inf,%DisplayName%;DAEMON Tools Lite Virtual USB Bus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [2019-12-25 59360]
R3 esif_lf;esif_lf; C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_82419944dda69b12\esif_lf.sys [2022-02-22 426136]
R3 ETDSMBus;ETDSMBus; C:\WINDOWS\System32\drivers\ETDSMBus.sys [2022-02-01 53200]
R3 HIDSwitch;@oem14.inf,%ASSW.DisplayName%;ASUS Wireless Radio Control; C:\WINDOWS\System32\drivers\AsRadioControl.sys [2020-11-19 32696]
R3 ICCWDT;@oem46.inf,%ICCWDT.SVCDESC%;Intel(R) Watchdog Timer Driver (Intel(R) WDT); C:\WINDOWS\System32\drivers\ICCWDT.sys [2019-02-04 48080]
R3 igfx;igfx; C:\WINDOWS\system32\DRIVERS\igdkmd64.sys [2020-01-16 7990344]
R3 IntcAzAudAddService;Service for Realtek HD Audio (WDM); C:\WINDOWS\system32\drivers\RTKVHD64.sys [2021-07-20 6573360]
R3 MEIx64;@oem58.inf,%TEE_SvcDesc%;Intel(R) Management Engine Interface ; C:\WINDOWS\System32\DriverStore\FileRepository\heci.inf_amd64_098df91f3c4fcb08\x64\TeeDriverW10x64.sys [2022-06-04 312480]
R3 MsQuic;@%SystemRoot%\system32\drivers\msquic.sys,-1; C:\WINDOWS\system32\drivers\msquic.sys [2021-10-06 322376]
R3 nvlddmkm;nvlddmkm; C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_700b78aaed9fe381\nvlddmkm.sys [2023-05-25 58992640]
R3 NvModuleTracker;@oem65.inf,%ServiceName%;NvModuleTracker; C:\WINDOWS\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [2022-07-14 45656]
R3 nvvad_WaveExtensible;@oem62.inf,%nvvad_WaveExtensible.SvcDesc%;NVIDIA Virtual Audio Device (Wave Extensible) (WDM); C:\WINDOWS\system32\drivers\nvvad64v.sys [2022-10-14 59928]
R3 nvvhci;@oem39.inf,%ServiceDesc%;NVVHCI Enumerator Service; C:\WINDOWS\System32\drivers\nvvhci.sys [2022-07-14 60112]
R3 rt640x64;@oem3.inf,%rt640.Service.DispName%;Realtek RT640 NT Driver; C:\WINDOWS\System32\drivers\rt640x64.sys [2022-03-08 1163096]
R3 RtlWlanu;@oem51.inf,%RtlWlanu.DeviceDesc.DispName%;Realtek Wireless LAN 802.11n USB 2.0 Network Adapter; C:\WINDOWS\System32\drivers\rtwlanu.sys [2021-08-12 12152784]
R3 RTSPER;@oem54.inf,%Rts5227PER%;Realtek PCIE Card Reader - PER; C:\WINDOWS\System32\drivers\RtsPer.sys [2022-06-04 1334200]
S0 bttflt;@virtdisk.inf,%service_desc%;Microsoft Hyper-V VHDPMEM BTT Filter; C:\WINDOWS\System32\drivers\bttflt.sys [2019-12-07 43832]
S0 cht4iscsi;cht4iscsi; C:\WINDOWS\System32\drivers\cht4sx64.sys [2019-12-07 319800]
S0 iaStorAVC;@iastorav.inf,%iaStorAVC.DeviceDesc%;Intel Chipset SATA RAID Controller; C:\WINDOWS\System32\drivers\iaStorAVC.sys [2019-12-07 884752]
S0 ItSas35i;ItSas35i; C:\WINDOWS\System32\drivers\ItSas35i.sys [2019-12-07 172344]
S0 LSI_SAS2i;LSI_SAS2i; C:\WINDOWS\System32\drivers\lsi_sas2i.sys [2019-12-07 124216]
S0 LSI_SAS3i;LSI_SAS3i; C:\WINDOWS\System32\drivers\lsi_sas3i.sys [2019-12-07 135992]
S0 megasas2i;megasas2i; C:\WINDOWS\System32\drivers\MegaSas2i.sys [2019-12-07 81720]
S0 megasas35i;megasas35i; C:\WINDOWS\System32\drivers\megasas35i.sys [2019-12-07 105480]
S0 nvdimm;@nvdimm.inf,%nvdimm.SvcDesc%;Microsoft NVDIMM device driver; C:\WINDOWS\System32\drivers\nvdimm.sys [2019-12-07 168464]
S0 percsas2i;percsas2i; C:\WINDOWS\System32\drivers\percsas2i.sys [2019-12-07 58680]
S0 percsas3i;percsas3i; C:\WINDOWS\System32\drivers\percsas3i.sys [2019-12-07 68408]
S0 pmem;@pmem.inf,%pmem.SvcDesc%;Microsoft persistent memory disk driver; C:\WINDOWS\System32\drivers\pmem.sys [2022-09-17 142176]
S0 Ramdisk;Windows RAM Disk Driver; C:\WINDOWS\system32\DRIVERS\ramdisk.sys [2019-12-07 42296]
S3 AcpiDev;@acpidev.inf,%AcpiDev.SvcDesc%;ACPI Devices driver; C:\WINDOWS\System32\drivers\AcpiDev.sys [2019-12-07 23040]
S3 Acx01000;@%SystemRoot%\system32\drivers\Acx01000.sys,-1000; C:\WINDOWS\system32\drivers\Acx01000.sys [2022-01-28 694272]
S3 amdgpio2;@amdgpio2.inf,%GPIO.SvcDesc%;AMD GPIO Client Driver; C:\WINDOWS\System32\drivers\amdgpio2.sys [2019-12-07 18432]
S3 amdi2c;@amdi2c.inf,%amdi2c.SVCDESC%;AMD I2C Controller Service; C:\WINDOWS\System32\drivers\amdi2c.sys [2019-12-07 45568]
S3 applockerfltr;@%systemroot%\system32\srpapi.dll,-102; C:\WINDOWS\system32\drivers\applockerfltr.sys [2023-02-27 18432]
S3 arusb_win7x;Service For TP-LINK Wireless N Adapter; C:\WINDOWS\System32\drivers\arusb_win7x.sys [2010-02-23 769024]
S3 BazisVirtualCDBus;WinCDEmu Virtual Bus Driver; C:\WINDOWS\System32\drivers\BazisVirtualCDBus.sys [2015-09-28 172376]
S3 BthA2dp;@microsoft_bluetooth_a2dp.inf,%BthA2dp.ServiceDescription%;Microsoft Bluetooth A2dp driver; C:\WINDOWS\System32\drivers\BthA2dp.sys [2022-10-13 280064]
S3 BthEnum;@bth.inf,%BthEnum.SVCDESC%;Bluetooth Enumerator Service; C:\WINDOWS\System32\drivers\BthEnum.sys [2023-05-10 113664]
S3 BthHFAud;@microsoft_bluetooth_hfp.inf,%BTHHFAUD_DISPLAY_NAME%;Microsoft Bluetooth Hands-Free Audio driver; C:\WINDOWS\System32\drivers\BthHfAud.sys [2022-04-15 65536]
S3 BthLEEnum;@bthleenum.inf,%BthLEEnum.SVCDESC%;Bluetooth Low Energy Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.Legacy.LEEnumerator.sys [2021-10-06 106496]
S3 BthMini;@bth.inf,%BTHMINI.SvcDesc%;Bluetooth Radio Driver; C:\WINDOWS\System32\drivers\BTHMINI.sys [2023-05-10 45568]
S3 BthPan;@bthpan.inf,%BthPan.DisplayName%;Bluetooth Device (Personal Area Network); C:\WINDOWS\System32\drivers\bthpan.sys [2023-04-12 133632]
S3 buttonconverter;@buttonconverter.inf,%btnconv.SvcDesc%;Service for Portable Device Control devices; C:\WINDOWS\System32\drivers\buttonconverter.sys [2019-12-07 44032]
S3 genericusbfn;@genericusbfn.inf,%genericusbfn.ServiceName%;Generic USB Function Class; C:\WINDOWS\System32\DriverStore\FileRepository\genericusbfn.inf_amd64_53931f0ae21d6d2c\genericusbfn.sys [2019-12-07 23040]
S3 hidinterrupt;@hidinterrupt.inf,%HID_Interrupt.SvcDesc%;Common Driver for HID Buttons implemented with interrupts; C:\WINDOWS\System32\drivers\hidinterrupt.sys [2019-12-07 55824]
S3 hidspi;@hidspi_km.inf,%hidspi.SVCDESC%;Microsoft SPI HID Miniport Driver; C:\WINDOWS\System32\drivers\hidspi.sys [2023-06-14 104448]
S3 HidSpiCx;HidSpi KMDF Class Extension; C:\WINDOWS\system32\drivers\HidSpiCx.sys [2023-06-14 98304]
S3 hvservice;@%SystemRoot%\system32\drivers\hvservice.sys,-16; C:\WINDOWS\system32\drivers\hvservice.sys [2023-03-19 96112]
S3 HwNClx0101;Microsoft Hardware Notifications Class Extension Driver; C:\WINDOWS\System32\Drivers\mshwnclx.sys [2019-12-07 30208]
S3 cht4vbd;@cht4vx64.inf,%cht4vbd.generic%;Chelsio Virtual Bus Driver; C:\WINDOWS\System32\drivers\cht4vx64.sys [2019-12-07 1853752]
S3 iagpio;@iagpio.inf,%iagpio.SVCDESC%;Intel Serial IO GPIO Controller Driver; C:\WINDOWS\System32\drivers\iagpio.sys [2019-12-07 36352]
S3 iai2c;@iai2c.inf,%iai2c.SVCDESC%;Intel(R) Serial IO I2C Host Controller; C:\WINDOWS\System32\drivers\iai2c.sys [2019-12-07 91136]
S3 iaLPSS2i_GPIO2;@iaLPSS2i_GPIO2_SKL.inf,%iaLPSS2i_GPIO2.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2.sys [2019-12-07 79360]
S3 iaLPSS2i_GPIO2_BXT_P;@iaLPSS2i_GPIO2_BXT_P.inf,%iaLPSS2i_GPIO2_BXT_P.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_BXT_P.sys [2019-12-07 93184]
S3 iaLPSS2i_GPIO2_CNL;@iaLPSS2i_GPIO2_CNL.inf,%iaLPSS2i_GPIO2_CNL.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_CNL.sys [2019-12-07 112128]
S3 iaLPSS2i_GPIO2_GLK;@iaLPSS2i_GPIO2_GLK.inf,%iaLPSS2i_GPIO2_GLK.SVCDESC%;Intel(R) Serial IO GPIO Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_GPIO2_GLK.sys [2019-12-07 96256]
S3 iaLPSS2i_I2C;@iaLPSS2i_I2C_SKL.inf,%iaLPSS2i_I2C.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C.sys [2019-12-07 171520]
S3 iaLPSS2i_I2C_BXT_P;@iaLPSS2i_I2C_BXT_P.inf,%iaLPSS2i_I2C_BXT_P.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_BXT_P.sys [2019-12-07 175104]
S3 iaLPSS2i_I2C_CNL;@iaLPSS2i_I2C_CNL.inf,%iaLPSS2i_I2C_CNL.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_CNL.sys [2019-12-07 177152]
S3 iaLPSS2i_I2C_GLK;@iaLPSS2i_I2C_GLK.inf,%iaLPSS2i_I2C_GLK.SVCDESC%;Intel(R) Serial IO I2C Driver v2; C:\WINDOWS\System32\drivers\iaLPSS2i_I2C_GLK.sys [2019-12-07 177664]
S3 ibbus;@mlx4_bus.inf,%Ibbus.ServiceDesc%;Mellanox InfiniBand Bus/AL (Filter Driver); C:\WINDOWS\System32\drivers\ibbus.sys [2019-12-07 558904]
S3 IndirectKmd;@%SystemRoot%\system32\drivers\IndirectKmd.sys,-100; C:\WINDOWS\System32\drivers\IndirectKmd.sys [2021-10-06 47104]
S3 IntcDAud;@oem16.inf,%IntcDAud.SvcDesc%;Intel(R) Display Audio; C:\WINDOWS\System32\drivers\IntcDAud.sys [2019-06-11 480176]
S3 intelpmax;@intelpmax.inf,%SvcDesc%;Intel(R) Dynamic Device Peak Power Manager Driver; C:\WINDOWS\System32\drivers\intelpmax.sys [2019-12-07 30720]
S3 IPT;IPT; C:\WINDOWS\System32\drivers\ipt.sys [2019-12-07 59704]
S3 mausbhost;@mausbhost.inf,%MAUSBHost.ServiceName%;MA-USB Host Controller Driver; C:\WINDOWS\System32\drivers\mausbhost.sys [2019-12-07 537608]
S3 mausbip;@mausbhost.inf,%MAUSBIP.ServiceName%;MA-USB IP Filter Driver; C:\WINDOWS\System32\drivers\mausbip.sys [2019-12-07 64016]
S3 MbbCx;MBB Network Adapter Class Extension; C:\WINDOWS\system32\drivers\MbbCx.sys [2022-04-15 386048]
S3 Microsoft_Bluetooth_AvrcpTransport;@microsoft_bluetooth_avrcptransport.inf,%Microsoft_Bluetooth_AvrcpTransport.ServiceDescription%;Microsoft Bluetooth Avrcp Transport Driver; C:\WINDOWS\System32\drivers\Microsoft.Bluetooth.AvrcpTransport.sys [2019-12-07 65024]
S3 mlx4_bus;@mlx4_bus.inf,%MLX4BUS.ServiceDesc%;Mellanox ConnectX Bus Enumerator; C:\WINDOWS\System32\drivers\mlx4_bus.sys [2019-12-07 1131320]
S3 ndfltr;@mlx4_bus.inf,%ndfltr.ServiceDesc%;NetworkDirect Service; C:\WINDOWS\System32\drivers\ndfltr.sys [2019-12-07 146232]
S3 NDKPing;NDKPing Driver; C:\WINDOWS\system32\drivers\NDKPing.sys [2019-12-07 72720]
S3 NetAdapterCx;Network Adapter Wdf Class Extension Library; C:\WINDOWS\system32\drivers\NetAdapterCx.sys [2022-04-15 210944]
S3 PktMon;Packet Monitor Driver; C:\WINDOWS\system32\drivers\PktMon.sys [2023-05-10 131400]
S3 PNPMEM;@memory.inf,%PNPMEM.SvcDesc%;Microsoft Memory Module Driver; C:\WINDOWS\System32\drivers\pnpmem.sys [2019-12-07 17408]
S3 portcfg;portcfg; C:\WINDOWS\System32\drivers\portcfg.sys [2019-12-07 27136]
S3 ReFSv1;ReFSv1; C:\WINDOWS\system32\drivers\ReFSv1.sys [2022-01-28 990536]
S3 RFCOMM;@tdibth.inf,%RFCOMM.DisplayName%;Bluetooth Device (RFCOMM Protocol TDI); C:\WINDOWS\System32\drivers\rfcomm.sys [2019-12-07 213504]
S3 rhproxy;@rhproxy.inf,%rhproxy.SVCDESC%;Resource Hub proxy driver; C:\WINDOWS\System32\drivers\rhproxy.sys [2019-12-07 115712]
S4 hvcrash;hvcrash; C:\WINDOWS\System32\drivers\hvcrash.sys [2019-12-07 35128]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 AdobeARMservice;Adobe Acrobat Update Service; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [2023-04-03 173040]
R2 ASLDRService;ASLDR Service; C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe [2016-07-28 130744]
R2 AtherosSvc;AtherosSvc; C:\WINDOWS\System32\drivers\AdminService.exe [2019-09-04 382712]
R2 CDPSvc;@%SystemRoot%\system32\cdpsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
R2 CDPUserSvc_9c12ccc;Uživatelská služba platformy připojených zařízení_9c12ccc; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
R2 ClickToRunSvc;Služba Microsoft Office Klikni a spusť; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [2023-07-07 11851144]
R2 CoreMessagingRegistrar;@%SystemRoot%\system32\coremessaging.dll,-1; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
R2 DiagTrack;@%SystemRoot%\system32\diagtrack.dll,-3001; C:\WINDOWS\System32\svchost.exe [2022-07-15 55320]
R2 DispBrokerDesktopSvc;@%SystemRoot%\system32\dispbroker.desktop.dll,-101; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
R2 DoSvc;@%systemroot%\system32\dosvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-07-15 55320]
R2 DusmSvc;@%SystemRoot%\System32\dusmsvc.dll,-1; C:\WINDOWS\System32\svchost.exe [2022-07-15 55320]
R2 esifsvc;@oem26.inf,%ServiceDisplayName%;Intel(R) Dynamic Tuning service; C:\WINDOWS\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_82419944dda69b12\esif_uf.exe [2022-02-22 2284216]
R2 HPPrintScanDoctorService;HP Print Scan Doctor Service; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [2023-06-15 230352]
R2 ICEsoundService;ICEsound Service; C:\WINDOWS\system32\ICEsoundService64.exe [2021-07-20 814368]
R2 igfxCUIService2.0.0.0;Intel(R) HD Graphics Control Panel Service; C:\WINDOWS\system32\igfxCUIService.exe [2020-01-16 372296]
R2 jhi_service;Intel(R) Dynamic Application Loader Host Interface Service; C:\WINDOWS\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe [2021-06-16 628616]
R2 LMS;Intel(R) Management and Security Application Local Management Service; C:\WINDOWS\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe [2021-09-02 4064384]
R2 NvContainerLocalSystem;NVIDIA LocalSystem Container; C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [2022-03-15 1003128]
R2 NVDisplay.ContainerLocalSystem;NVIDIA Display Container LS; C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_700b78aaed9fe381\Display.NvContainer\NVDisplay.Container.exe [2023-05-25 1014768]
R2 OneSyncSvc_9c12ccc;Hostitel synchronizace_9c12ccc; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
R2 RealtekWlanU;RealtekWlanU; C:\Program Files (x86)\netis\USB Wireless LAN Utility\RtlService.exe [2014-10-09 48856]
R2 RichVideo64;Cyberlink RichVideo64 Service(CRVS); C:\Program Files\CyberLink\Shared files\RichVideo64.exe [2016-09-08 614664]
R2 RunSwUSB;RunSwUSB; C:\Windows\runSW.exe [2014-12-15 44760]
R3 AarSvc_9c12ccc;Agent Activation Runtime_9c12ccc; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
R3 AJRouter;@%SystemRoot%\system32\AJRouter.dll,-2; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
R3 BthAvctpSvc;@%SystemRoot%\system32\BthAvctpSvc.dll,-101; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
R3 camsvc;@%SystemRoot%\system32\CapabilityAccessManager.dll,-1; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
R3 cbdhsvc_9c12ccc;Uživatelská služba schránky_9c12ccc; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
R3 ClipSVC;@%SystemRoot%\system32\ClipSVC.dll,-103; C:\WINDOWS\System32\svchost.exe [2022-07-15 55320]
R3 Disc Soft Lite Bus Service;Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [2019-12-25 4452456]
R3 DisplayEnhancementService;@%SystemRoot%\System32\Microsoft.Graphics.Display.DisplayEnhancementService.dll,-1000; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
R3 FontCache3.0.0.0;@%SystemRoot%\system32\PresentationHost.exe,-3309; C:\WINDOWS\Microsoft.Net\Framework64\v3.0\WPF\PresentationFontCache.exe [2019-11-08 46184]
R3 InstallService;@%SystemRoot%\system32\InstallService.dll,-200; C:\WINDOWS\System32\svchost.exe [2022-07-15 55320]
R3 LicenseManager;@%SystemRoot%\system32\licensemanagersvc.dll,-200; C:\WINDOWS\System32\svchost.exe [2022-07-15 55320]
R3 NgcCtnrSvc;@%SystemRoot%\System32\NgcCtnrSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
R3 NgcSvc;@%SystemRoot%\System32\ngcsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
R3 PimIndexMaintenanceSvc_9c12ccc;Data kontaktů_9c12ccc; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
R3 RmSvc;@%SystemRoot%\system32\RMapi.dll,-1001; C:\WINDOWS\System32\svchost.exe [2022-07-15 55320]
S2 CDPUserSvc;@%SystemRoot%\system32\cdpusersvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S2 edgeupdate;Microsoft Edge Update Service (edgeupdate); C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2020-09-27 213392]
S2 Freemake Improver;Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [2021-11-30 87432]
S2 gupdate;Služba Google Update (gupdate); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-02-05 107848]
S2 Intel(R) TPM Provisioning Service;@oem32.inf,%TPMProvisioningServiceName%;Intel(R) TPM Provisioning Service; C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\TPMProvisioningService.exe [2021-09-15 729944]
S2 MapsBroker;@%SystemRoot%\System32\moshost.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-07-15 55320]
S2 OneSyncSvc;@%SystemRoot%\system32\APHostRes.dll,-10002; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S2 RTLDHCPService;Realtek DHCP Service; C:\Program Files (x86)\netis\USB Wireless LAN Utility\RTLDHCP.exe [2014-10-09 262360]
S3 AarSvc;@%SystemRoot%\system32\AarSvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 AcrSch2Svc;Služba Acronis Scheduler2; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [2015-12-25 943280]
S3 autotimesvc;@%SystemRoot%\System32\autotimesvc.dll,-6; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 BcastDVRUserService;@%SystemRoot%\system32\BcastDVRUserService.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 BcastDVRUserService_9c12ccc;Uživatelská služba pro GameDVR a vysílání her_9c12ccc; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 BluetoothUserService;@%SystemRoot%\system32\Microsoft.Bluetooth.UserService.dll,-101; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 BluetoothUserService_9c12ccc;Služba pro podporu uživatelů Bluetooth_9c12ccc; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 BTAGService;@%SystemRoot%\system32\BTAGService.dll,-101; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 CaptureService;@%SystemRoot%\system32\CaptureService.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 CaptureService_9c12ccc;CaptureService_9c12ccc; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 cbdhsvc;@%SystemRoot%\system32\cbdhsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 ConsentUxUserSvc;@%SystemRoot%\system32\ConsentUxClient.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 ConsentUxUserSvc_9c12ccc;ConsentUX_9c12ccc; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 cphs;Intel(R) Content Protection HECI Service; C:\WINDOWS\SysWow64\IntelCpHeciSvc.exe [2020-01-16 394824]
S3 CredentialEnrollmentManagerUserSvc;@%SystemRoot%\system32\CredentialEnrollmentManager.exe,-100; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [2021-10-06 382696]
S3 CredentialEnrollmentManagerUserSvc_9c12ccc;CredentialEnrollmentManagerUserSvc_9c12ccc; C:\WINDOWS\system32\CredentialEnrollmentManager.exe [2021-10-06 382696]
S3 dcsvc;@%systemroot%\system32\dcsvc,-100; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 DeviceAssociationBrokerSvc;@%SystemRoot%\system32\deviceaccess.dll,-107; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 DeviceAssociationBrokerSvc_9c12ccc;DeviceAssociationBroker_9c12ccc; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 DevicePickerUserSvc;@%SystemRoot%\system32\Windows.Devices.Picker.dll,-1006; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 DevicePickerUserSvc_9c12ccc;DevicePicker_9c12ccc; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 DevicesFlowUserSvc;@%SystemRoot%\system32\DevicesFlowBroker.dll,-103; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 DevicesFlowUserSvc_9c12ccc;Tok zařízení_9c12ccc; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 DevQueryBroker;@%SystemRoot%\system32\DevQueryBroker.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 DfSdkS;Defragmentation-Service; C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer FREE\Dfsdks.exe [2009-08-24 544768]
S3 diagnosticshub.standardcollector.service;@%SystemRoot%\system32\DiagSvcs\DiagnosticsHub.StandardCollector.ServiceRes.dll,-1000; C:\WINDOWS\system32\DiagSvcs\DiagnosticsHub.StandardCollector.Service.exe [2022-01-28 94208]
S3 diagsvc;@%systemroot%\system32\DiagSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-07-15 55320]
S3 DmEnrollmentSvc;@%systemroot%\system32\Windows.Internal.Management.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 dmwappushservice;@%SystemRoot%\system32\dmwappushsvc.dll,-200; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 DsSvc;@%SystemRoot%\system32\dssvc.dll,-10003; C:\WINDOWS\System32\svchost.exe [2022-07-15 55320]
S3 EasyAntiCheat;EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [2020-12-03 818304]
S3 edgeupdatem;Microsoft Edge Update Service (edgeupdatem); C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [2020-09-27 213392]
S3 embeddedmode;@%SystemRoot%\system32\embeddedmodesvc.dll,-201; C:\WINDOWS\System32\svchost.exe [2022-07-15 55320]
S3 EntAppSvc;@EnterpriseAppMgmtSvc.dll,-1; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 FrameServer;@%systemroot%\system32\FrameServer.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-07-15 55320]
S3 FvSvc;NVIDIA FrameView SDK service; C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe [2023-01-13 1081896]
S3 GoogleChromeElevationService;Google Chrome Elevation Service (GoogleChromeElevationService); C:\Program Files (x86)\Google\Chrome\Application\114.0.5735.199\elevation_service.exe [2023-06-24 1742616]
S3 GraphicsPerfSvc;@%SystemRoot%\system32\GraphicsPerfSvc.dll,-100; C:\WINDOWS\System32\svchost.exe [2022-07-15 55320]
S3 gupdatem;Služba Google Update (gupdatem); C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [2018-02-05 107848]
S3 HvHost;@%SystemRoot%\system32\hvhostsvc.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 icssvc;@%SystemRoot%\System32\tetheringservice.dll,-4097; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 Intel(R) Capability Licensing Service TCP IP Interface;@oem32.inf,%SocketHECIServiceName%;Intel(R) Capability Licensing Service TCP IP Interface; C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_76523213b78d9046\lib\SocketHeciServer.exe [2021-09-15 785240]
S3 IpxlatCfgSvc;@%Systemroot%\system32\ipxlatcfg.dll,-500; C:\WINDOWS\System32\svchost.exe [2022-07-15 55320]
S3 LxpSvc;@%SystemRoot%\system32\LanguageOverlayServer.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 McpManagementService;@%SystemRoot%\system32\McpManagementService.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 MessagingService;@%SystemRoot%\system32\MessagingService.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 MessagingService_9c12ccc;Služba zasílání zpráv_9c12ccc; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 MicrosoftEdgeElevationService;Microsoft Edge Elevation Service (MicrosoftEdgeElevationService); C:\Program Files (x86)\Microsoft\Edge\Application\114.0.1823.79\elevation_service.exe [2023-07-10 1744320]
S3 MixedRealityOpenXRSvc;@%SystemRoot%\system32\MixedRealityRuntime.dll,-101; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 NaturalAuthentication;@%systemroot%\system32\NaturalAuth.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 NetSetupSvc;@%SystemRoot%\system32\NetSetupSvc.dll,-3; C:\WINDOWS\System32\svchost.exe [2022-07-15 55320]
S3 ose;Office Source Engine; C:\Program Files (x86)\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2002-02-01 214832]
S3 perceptionsimulation;@%systemroot%\system32\PerceptionSimulation\PerceptionSimulationService.exe,-101; C:\WINDOWS\system32\PerceptionSimulation\PerceptionSimulationService.exe [2021-10-06 106496]
S3 PhoneSvc;@%SystemRoot%\system32\PhoneserviceRes.dll,-10000; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 PimIndexMaintenanceSvc;@%SystemRoot%\system32\UserDataAccessRes.dll,-15001; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 PrintWorkflowUserSvc;@%SystemRoot%\system32\PrintWorkflowService.dll,-100; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 PrintWorkflowUserSvc_9c12ccc;PrintWorkflow_9c12ccc; C:\WINDOWS\system32\svchost.exe [2022-07-15 55320]
S3 PushToInstall;@%SystemRoot%\system32\pushtoinstall.dll,-200; C:\WINDOWS\System32\svchost.exe [2022-07-15 55320]
S3 RetailDemo;@%SystemRoot%\System32\RDXService.dll,-256; C:\WINDOWS\System32\svchost.exe [2022-07-15 55320]

-----------------EOF-----------------

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15216
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Prosim o kontrolu logu

#2 Příspěvek od JaRon »

ahoj,
vloz logy FRST - oba
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Maroš
Návštěvník
Návštěvník
Příspěvky: 173
Registrován: 29 črc 2011 13:32

Re: Prosim o kontrolu logu

#3 Příspěvek od Maroš »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 12-07-2023
Ran by magic (administrator) on MAROSASUS2 (ASUSTeK COMPUTER INC. X751LB) (15-07-2023 10:30:13)
Running from C:\Users\magic\AppData\Local\Temp\scoped_dir9596_1845067097\FRST64.exe
Loaded Profiles: magic
Platform: Microsoft Windows 10 Home Version 22H2 19045.3208 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Media\DMedia.exe
(ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATKOSD2\ATKOSD2.exe
(C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe ->) (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\HControl.exe
(C:\Program Files (x86)\Sticky Password\stpass.exe ->) (Lamantine Software a.s. -> Lamantine Software a.s.) C:\Program Files (x86)\Sticky Password\spUIAManager.exe
(C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer.exe
(C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\tv_w32.exe
(C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\tv_x64.exe
(C:\Program Files\Opera\opera.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(C:\Program Files\Opera\opera.exe ->) (Opera Norway AS -> Opera Software) C:\Program Files\Opera\99.0.4788.88\opera_crashreporter.exe
(cmd.exe ->) (Lamantine Software a.s. -> Lamantine Software a.s.) C:\Program Files (x86)\Sticky Password\spNMHost.exe
(explorer.exe ->) (Acronis International GmbH -> Acronis) C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe
(explorer.exe ->) (Lamantine Software a.s. -> Lamantine Software a.s.) C:\Program Files (x86)\Sticky Password\stpass.exe
(explorer.exe ->) (Skype Software Sarl -> Skype Technologies S.A.) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.99.3403.0_x64__kzf8qxf38zg5c\Skype\Skype.exe <5>
(Intel Corporation -> ) C:\Windows\System32\igfxTray.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Nvidia Corporation -> Node.js) C:\Program Files (x86)\NVIDIA Corporation\NvNode\NVIDIA Web Helper.exe
(Opera Norway AS -> Opera Software) C:\Program Files\Opera\opera.exe <35>
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (ASUSTeK Computer Inc. -> ASUSTek Computer Inc.) C:\Program Files (x86)\ASUS\ATK Package\ATK Hotkey\AsLdrSrv.exe
(services.exe ->) (AVB Disc Soft, SIA -> Disc Soft Ltd) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe
(services.exe ->) (CyberLink Corp. -> CyberLink) C:\Program Files\CyberLink\Shared files\RichVideo64.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe
(services.exe ->) (ICEpower a/s -> ICEpower A/S) C:\Windows\System32\ICEsoundService64.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dptf_cpu.inf_amd64_82419944dda69b12\esif_uf.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\lms.inf_amd64_fddb643595e0b8d0\LMS.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_cad1db73e8c782a6\WMIRegistrationService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(services.exe ->) (Intel(R) Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_b5484efd38adbe8d\jhi_service.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\NisSrv.exe
(services.exe ->) (Nvidia Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvami.inf_amd64_700b78aaed9fe381\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Qualcomm Atheros -> Windows (R) Win 7 DDK provider) C:\Windows\System32\drivers\AdminService.exe
(services.exe ->) (Realtek Semiconductor Corp -> ) C:\Windows\runSW.exe
(services.exe ->) (Realtek Semiconductor Corp -> Realtek) C:\Program Files (x86)\netis\USB Wireless LAN Utility\RtlService.exe
(services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [Služba Acronis Scheduler2] => C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedhlp.exe [383624 2015-12-25] (Acronis International GmbH -> Acronis)
HKLM-x32\...\Run: [Opera Browser Assistant] => C:\Program Files\Opera\assistant\browser_assistant.exe [3955608 2023-06-20] (Opera Norway AS -> Opera Software)
HKLM\Software\Policies\...\system: [EnableActivityFeed] 1
HKLM\Software\Policies\...\system: [PublishUserActivities] 1
HKLM\Software\Policies\...\system: [UploadUserActivities] 1
HKU\S-1-5-21-3200854963-3717341606-596258127-1001\...\Run: [DAEMON Tools Lite Automount] => C:\Program Files\DAEMON Tools Lite\DTAgent.exe [371304 2019-12-25] (AVB Disc Soft, SIA -> Disc Soft Ltd)
HKU\S-1-5-21-3200854963-3717341606-596258127-1001\...\Run: [StickyPassword] => C:\Program Files (x86)\Sticky Password\stpass.exe [71584 2023-05-23] (Lamantine Software a.s. -> Lamantine Software a.s.)
HKU\S-1-5-21-3200854963-3717341606-596258127-1001\...\Run: [Spotify] => C:\Users\magic\AppData\Roaming\Spotify\Spotify.exe [19065272 2022-06-09] (Spotify AB -> Spotify Ltd)
HKU\S-1-5-21-3200854963-3717341606-596258127-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [40496032 2023-06-07] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
HKU\S-1-5-21-3200854963-3717341606-596258127-1001\...\Run: [HP DeskJet 4530 series (NET)] => C:\Program Files\HP\HP DeskJet 4530 series\Bin\ScanToPCActivationApp.exe [3770528 2021-11-17] (HP Inc. -> HP Inc.)
HKU\S-1-5-21-3200854963-3717341606-596258127-1001\...\Policies\Explorer: [NolowDiskSpaceChecks] 1
HKLM\...\Print\Monitors\HP D811 Status Monitor: C:\Windows\system32\hpinkstsD811LM.dll [393352 2017-04-05] (Hewlett Packard -> HP Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\114.0.5735.199\Installer\chrmstp.exe [2023-06-29] (Google LLC -> Google LLC)

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {B6849033-9F65-48CD-B25A-9A305C8A8BBB} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1564152 2023-04-03] (Adobe Inc. -> Adobe Inc.)
Task: {300E3E7A-7673-4140-99B0-B0521289D6F7} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [714256 2023-06-07] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {47C7B6DC-793D-4162-B100-77E73A09CCA5} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [4703648 2023-06-07] (PIRIFORM SOFTWARE LIMITED -> Piriform Software) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --configpath "C:\Program Files\CCleaner\Setup" --guid "956d34c9-0e6a-48cc-9a38-c39565406db5" --version "6.13.10517" --silent
Task: {A7A7132A-FD78-418A-B664-58B0EA9B5A0B} - System32\Tasks\CCleanerSkipUAC - magic => C:\Program Files\CCleaner\CCleaner.exe [34304928 2023-06-07] (PIRIFORM SOFTWARE LIMITED -> Piriform Software Ltd)
Task: {1C21AB42-872F-483E-8D06-8752A42A35E0} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2018-02-05] (Google Inc -> Google Inc.)
Task: {D4D704E7-407D-4104-BFD5-01254F5DB804} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [107848 2018-02-05] (Google Inc -> Google Inc.)
Task: {7B975551-7414-4D08-B2E7-C876FB9B8601} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe [58832 2023-06-15] (HP Inc. -> HP Inc.)
Task: {0070E450-3174-4FFB-9719-0F6C2DF09A83} - System32\Tasks\HP\HP Print Scan Doctor\Printer Health Monitor Logon => C:\Program Files\HPPrintScanDoctor\HPPrinterHealthMonitor.exe [58832 2023-06-15] (HP Inc. -> HP Inc.)
Task: {3845EF6F-8E31-4133-8A16-9404461BB9C6} - System32\Tasks\HPCustParticipation HP DeskJet 4530 series => C:\Program Files\HP\HP DeskJet 4530 series\Bin\HPCustPartic.exe [6439072 2021-11-17] (HP Inc. -> HP Inc.)
Task: {44722EA6-6B26-4001-A64E-D1834C31DB90} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26616832 2023-07-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {31DBFB0A-66CF-44DD-B0CE-9123152729DB} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [26616832 2023-07-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {A8298B60-4113-4EF9-9743-D5063426E8E8} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [124296 2023-07-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {0723772D-6649-493A-AC0B-1F87FE007186} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [124296 2023-07-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {D3264CA8-D382-4D69-9624-CFA9FC6FC3CE} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MpCmdRun.exe [1650040 2023-06-10] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {57E39E46-4B07-4EDD-B673-82FEA0C4710F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MpCmdRun.exe [1650040 2023-06-10] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F934E002-E47B-42BF-9DF1-FCAA7A624CD4} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MpCmdRun.exe [1650040 2023-06-10] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {64337A6A-B442-4515-A9B8-8AC7AF9A09B1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MpCmdRun.exe [1650040 2023-06-10] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {D60DD107-4EC9-4312-B0EF-9328C4EED023} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1003128 2022-03-15] (Nvidia Corporation -> NVIDIA Corporation) -> -d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {B8D62BEF-4F1B-45A2-BF51-9BA5E27E8146} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3342376 2023-01-27] (Nvidia Corporation -> NVIDIA Corporation)
Task: {2210C296-8242-4E09-9BD7-0EAB2A494477} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [649784 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {2CC23549-D1E3-46FA-8404-CF53A6F096EA} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {90B5AE93-6AEC-4A91-9D53-6F9926E556DA} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [910888 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {2DB49BDB-A48F-44E4-9375-0F4EE03BEE2B} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {05F61026-C702-4D15-AC61-E2341A719823} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {B2AF5512-2D67-4876-9E25-625F953A0682} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {3980E725-E110-4744-9BDE-AA340FF384FA} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1665064 2023-01-20] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {5BCB6B37-1950-4C78-B301-935CAE5A3745} - System32\Tasks\Opera scheduled assistant Autoupdate 1582788523 => C:\Program Files\Opera\launcher.exe [2708376 2023-06-27] (Opera Norway AS -> Opera Software) -> --scheduledautoupdate --component-name=assistant --component-path="C:\Program Files\Opera\assistant" $(Arg0)
Task: {554E55CD-A79C-4606-B548-AC0E43EDA164} - System32\Tasks\Opera scheduled Autoupdate 1517511580 => C:\Program Files\Opera\launcher.exe [2708376 2023-06-27] (Opera Norway AS -> Opera Software)
Task: {E4C505B5-3CD0-4DE1-BF05-7E25DD57664C} - System32\Tasks\RtHDVBg_ListenToDevice => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3617880 2021-07-20] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
Task: {36ABB328-73B5-4817-A72E-5C7747EFB4CA} - System32\Tasks\RTKCPL => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [3617880 2021-07-20] (Realtek Semiconductor Corp. -> Realtek Semiconductor)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 82.144.129.1 82.144.128.1 8.8.8.8
Tcpip\..\Interfaces\{03ee4b61-ba34-4df4-9925-8e4966f485ab}: [DhcpNameServer] 192.168.2.1
Tcpip\..\Interfaces\{468918b5-460d-453f-a2d7-d86535790ee0}: [DhcpNameServer] 82.144.129.1 82.144.128.1 8.8.8.8
Tcpip\..\Interfaces\{78a52ea8-a769-4549-bec7-058386d199d8}: [DhcpNameServer] 82.144.129.1 82.144.128.1 8.8.8.8
Tcpip\..\Interfaces\{f849261d-4f20-412d-ba52-7fe6a4f734ae}: [DhcpNameServer] 8.8.8.8 192.168.0.2
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\magic\AppData\Local\Microsoft\Edge\User Data\Default [2023-04-12]
Edge HomePage: Default -> hxxp://www.msn.com/

FireFox:
========
FF DefaultProfile: z63v4xqh.default
FF ProfilePath: C:\Users\magic\AppData\Roaming\Mozilla\Firefox\Profiles\z63v4xqh.default [2022-12-20]
FF user.js: detected! => C:\Users\magic\AppData\Roaming\Mozilla\Firefox\Profiles\z63v4xqh.default\user.js [2020-03-16]
FF Extension: (Советник Яндекс.Маркета) - C:\Users\magic\AppData\Roaming\Mozilla\Firefox\Profiles\z63v4xqh.default\Extensions\sovetnik-yandex@yandex.ru.xpi [2018-03-11] [UpdateUrl:hxxps://static.sovetnik.yandex.net/sovetnik/extension/firefox-webextension-yandex-update.json]
FF Extension: (Visual Bookmarks) - C:\Users\magic\AppData\Roaming\Mozilla\Firefox\Profiles\z63v4xqh.default\Extensions\vb@yandex.ru.xpi [2018-03-11] [Legacy]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2023-07-03] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2023-07-07] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> C:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2023-07-07] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @videolan.org/vlc,version=2.2.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.0 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.10 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.11 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.12 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.3 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.4 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.5 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.6 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.7.1 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin-x32: @videolan.org/vlc,version=3.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2021-01-04] (VideoLAN -> VideoLAN)
FF Plugin HKU\S-1-5-21-3200854963-3717341606-596258127-1001: @rocketlife.com/RocketLife Secure Plug-In Layer;version=1.0.5 -> C:\Users\magic\AppData\Roaming\Visan\plugins\npRLSecurePluginLayer.dll [2011-11-15] (RocketLife -> RocketLife, LLP)

Chrome:
=======
CHR Profile: C:\Users\magic\AppData\Local\Google\Chrome\User Data\Default [2023-03-16]
CHR Notifications: Default -> hxxps://fastshare.cz; hxxps://www.kinobox.cz; hxxps://www.luxor.cz; hxxps://www.netflix.com
CHR Extension: (Sticky Password - správce hesel) - C:\Users\magic\AppData\Local\Google\Chrome\User Data\Default\Extensions\bnfdmghkeppfadphbnkjcicejfepnbfe [2023-02-27]
CHR Extension: (Plná Peněženka Lištička) - C:\Users\magic\AppData\Local\Google\Chrome\User Data\Default\Extensions\ecmgkhgjmodembdmiimbacpjgcdimiek [2022-12-18]
CHR Extension: (Dokumenty Google offline) - C:\Users\magic\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-03-16]
CHR Extension: (IE Tab) - C:\Users\magic\AppData\Local\Google\Chrome\User Data\Default\Extensions\hehijbfgiekmjfkfjpbkbammjbdenadd [2023-02-03]
CHR Extension: (Spouštěč aplikací pro Disk (od Googlu)) - C:\Users\magic\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2023-01-24]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\magic\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-30]
CHR HKU\S-1-5-21-3200854963-3717341606-596258127-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]

Opera:
=======
OPR Profile: C:\Users\magic\AppData\Roaming\Opera Software\Opera Stable [2023-07-15]
OPR Notifications: Opera Stable -> hxxps://calendar.google.com; hxxps://fastshare.cz; hxxps://p6.regardensy.mobi; hxxps://prokliky.cz; hxxps://svetsatelitu.cz; hxxps://wcontentdelivery.info; hxxps://www.facebook.com; hxxps://www.luxor.cz; hxxps://www.papirnictvipavlik.cz; hxxps://ytop1.com
OPR DefaultSearchURL: Opera Stable -> hxxps://www.google.com/search?client=opera&q={s ... utEncoding}
OPR DefaultSearchKeyword: Opera Stable -> g
OPR Extension: (Sticky Password - správce hesel) - C:\Users\magic\AppData\Roaming\Opera Software\Opera Stable\Extensions\bnfdmghkeppfadphbnkjcicejfepnbfe [2023-07-05]
OPR Extension: (Rich Hints Agent) - C:\Users\magic\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2023-07-05]
OPR Extension: (Opera Wallet) - C:\Users\magic\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2023-07-07]
OPR Extension: (Amazon Assistant Promotion) - C:\Users\magic\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2021-08-17]
OPR Extension: (Opera AI Prompts) - C:\Users\magic\AppData\Roaming\Opera Software\Opera Stable\Extensions\mljbnbeedpkgakdchcmfapkjhfcogaoc [2023-07-03]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AcrSch2Svc; C:\Program Files (x86)\Common Files\Acronis\Schedule2\schedul2.exe [943280 2015-12-25] (Acronis International GmbH -> Acronis)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [173040 2023-04-03] (Adobe Inc. -> Adobe Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11851240 2023-07-14] (Microsoft Corporation -> Microsoft Corporation)
S3 DfSdkS; C:\Program Files (x86)\Ashampoo\Ashampoo WinOptimizer FREE\Dfsdks.exe [544768 2009-08-24] (mst software GmbH, Germany) [File not signed]
R3 Disc Soft Lite Bus Service; C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe [4452456 2019-12-25] (AVB Disc Soft, SIA -> Disc Soft Ltd)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [818304 2020-12-03] (EasyAntiCheat Oy -> Epic Games, Inc)
S2 Freemake Improver; C:\ProgramData\Freemake\FreemakeUtilsService\FreemakeUtilsService.exe [87432 2021-11-30] (MIXBYTE, INC. -> Freemake)
R2 HPPrintScanDoctorService; C:\Program Files\HPPrintScanDoctor\HPPrintScanDoctorService.exe [230352 2023-06-15] (HP Inc. -> HP Inc.)
R2 RealtekWlanU; C:\Program Files (x86)\netis\USB Wireless LAN Utility\RtlService.exe [48856 2014-10-09] (Realtek Semiconductor Corp -> Realtek)
R2 RichVideo64; C:\Program Files\CyberLink\Shared files\RichVideo64.exe [614664 2016-09-08] (CyberLink Corp. -> CyberLink)
S2 RTLDHCPService; C:\Program Files (x86)\netis\USB Wireless LAN Utility\RTLDHCP.exe [262360 2014-10-09] (Realtek Semiconductor Corp -> Realtek)
R2 RunSwUSB; C:\Windows\runSW.exe [44760 2014-12-15] (Realtek Semiconductor Corp -> )
R2 TeamViewer; C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe [17823032 2023-07-03] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\NisSrv.exe [3232576 2023-06-10] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MsMpEng.exe [133592 2023-06-10] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_700b78aaed9fe381\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_700b78aaed9fe381\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 arusb_win7x; C:\WINDOWS\System32\drivers\arusb_win7x.sys [769024 2010-02-23] (Atheros Communications, Inc.) [File not signed]
R3 AsusTP; C:\WINDOWS\System32\drivers\AsusTP.sys [102144 2019-08-19] (ASUSTek Computer Inc. -> ASUS Corporation)
R1 ATKWMIACPIIO; C:\Program Files (x86)\ASUS\ATK Package\ATK WMIACPI\atkwmiacpi64.sys [20096 2015-05-08] (Microsoft Windows Hardware Compatibility Publisher -> ASUSTek Computer Inc.)
R3 dtlitescsibus; C:\WINDOWS\System32\drivers\dtlitescsibus.sys [42256 2019-12-25] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R3 dtliteusbbus; C:\WINDOWS\System32\drivers\dtliteusbbus.sys [59360 2019-12-25] (AVB Disc Soft, SIA -> Disc Soft Ltd)
R1 ElbyCDIO; C:\WINDOWS\System32\Drivers\ElbyCDIO.sys [42616 2017-05-14] (Microsoft Windows Hardware Compatibility Publisher -> Elaborate Bytes AG)
R0 fltsrv; C:\WINDOWS\System32\DRIVERS\fltsrv.sys [160600 2018-02-03] (ACRONIS INTERNATIONAL GMBH -> Acronis International GmbH)
R3 HIDSwitch; C:\WINDOWS\System32\drivers\AsRadioControl.sys [32696 2020-11-19] (ASUSTek Computer Inc. -> ASUS)
R3 NvModuleTracker; C:\WINDOWS\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_0c1cc60a4b422185\NvModuleTracker.sys [45656 2022-07-14] (Nvidia Corporation -> NVIDIA Corporation)
R3 RtlWlanu; C:\WINDOWS\System32\drivers\rtwlanu.sys [12152784 2021-08-12] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
S3 usbscan; C:\WINDOWS\system32\DRIVERS\usbscan.sys [49152 2021-10-06] (Microsoft Corporation) [File not signed]
S3 VClone; C:\WINDOWS\System32\drivers\VClone.sys [44544 2020-02-22] (Microsoft Windows Hardware Compatibility Publisher -> Elaborate Bytes AG)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49560 2023-06-10] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [498944 2023-06-10] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [99568 2023-06-10] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-07-15 10:29 - 2023-07-15 10:29 - 002384384 _____ (Farbar) C:\Users\magic\Desktop\FRST64.exe
2023-07-15 09:08 - 2023-07-15 09:08 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2023-07-14 22:21 - 2023-07-14 22:22 - 001186468 _____ C:\WINDOWS\Minidump\071423-12906-01.dmp
2023-07-14 22:21 - 2023-07-14 22:21 - 000008192 ___SH C:\DumpStack.log.tmp
2023-07-14 20:33 - 2023-07-14 20:33 - 000003368 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3200854963-3717341606-596258127-1001
2023-07-14 20:33 - 2023-07-14 20:33 - 000002417 _____ C:\Users\magic\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2023-07-13 18:00 - 2023-07-13 18:00 - 000000000 ___HD C:\$WinREAgent
2023-07-13 07:27 - 2023-07-13 07:27 - 000000000 ____D C:\rsit
2023-07-13 07:27 - 2023-07-13 07:27 - 000000000 ____D C:\Program Files\trend micro
2023-07-13 07:26 - 2023-07-13 07:26 - 001222144 _____ C:\Users\magic\Desktop\RSITx64.exe
2023-07-11 21:04 - 2023-07-11 21:04 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2023-07-11 21:04 - 2023-07-11 21:04 - 000002075 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2023-07-11 21:04 - 2023-07-11 21:04 - 000002063 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk
2023-07-10 15:09 - 2023-07-10 15:09 - 000064595 _____ C:\Users\magic\Downloads\143 Pongratz (1).pdf
2023-06-29 18:14 - 2023-06-29 18:14 - 000003948 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1517511580
2023-06-29 18:14 - 2023-06-29 18:14 - 000001113 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2023-06-27 17:59 - 2023-06-27 17:59 - 000004160 _____ C:\WINDOWS\system32\Tasks\Opera scheduled assistant Autoupdate 1582788523
2023-06-22 18:34 - 2023-07-06 21:55 - 000000760 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job
2023-06-22 18:34 - 2023-06-22 18:34 - 000003936 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2023-06-22 18:34 - 2023-06-22 18:34 - 000003474 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-07-15 10:30 - 2022-01-19 09:20 - 000000000 ____D C:\FRST
2023-07-15 10:25 - 2022-01-28 10:30 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2023-07-15 10:09 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-07-15 09:39 - 2022-01-28 09:32 - 000000000 ____D C:\WINDOWS\SystemTemp
2023-07-15 09:39 - 2018-02-05 15:22 - 000000000 ____D C:\Program Files (x86)\Google
2023-07-15 09:09 - 2018-02-01 21:56 - 000000000 ____D C:\ProgramData\NVIDIA
2023-07-15 09:09 - 2018-02-01 21:04 - 000000000 ___SD C:\Users\magic\Documents\Sticky Passwords
2023-07-15 09:08 - 2018-02-01 21:00 - 000000000 __SHD C:\Users\magic\IntelGraphicsProfiles
2023-07-15 09:08 - 2018-02-01 20:44 - 000000000 ___RD C:\Users\magic\OneDrive
2023-07-14 23:20 - 2018-02-05 14:17 - 000000000 ____D C:\Users\magic\AppData\Roaming\vlc
2023-07-14 22:22 - 2023-03-18 15:54 - 000000000 ____D C:\WINDOWS\Minidump
2023-07-14 22:22 - 2022-01-28 09:40 - 000000000 ____D C:\Users\magic
2023-07-14 22:22 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2023-07-14 22:21 - 2023-03-18 15:54 - 1262463009 _____ C:\WINDOWS\MEMORY.DMP
2023-07-14 22:21 - 2022-01-28 10:57 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2023-07-14 22:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState
2023-07-14 22:21 - 2018-02-18 17:37 - 000000000 ____D C:\Program Files (x86)\TeamViewer
2023-07-14 21:00 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2023-07-14 20:33 - 2022-01-28 10:57 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3200854963-3717341606-596258127-1001
2023-07-14 19:31 - 2022-01-28 10:49 - 001693136 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2023-07-14 19:31 - 2019-12-07 16:41 - 000719322 _____ C:\WINDOWS\system32\perfh005.dat
2023-07-14 19:31 - 2019-12-07 16:41 - 000145448 _____ C:\WINDOWS\system32\perfc005.dat
2023-07-14 16:43 - 2019-03-20 16:41 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2023-07-14 16:38 - 2020-02-24 09:39 - 000914872 ____N (Microsoft Corporation) C:\WINDOWS\system32\MpSigStub.exe
2023-07-13 21:40 - 2022-01-28 10:30 - 000446336 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2023-07-13 21:40 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2023-07-13 21:39 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2023-07-13 21:39 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2023-07-13 21:39 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2023-07-13 21:39 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup
2023-07-13 21:39 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2023-07-13 21:39 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2023-07-13 21:39 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2023-07-13 18:13 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2023-07-13 18:08 - 2022-01-28 10:34 - 003015168 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2023-07-13 17:58 - 2018-02-01 22:36 - 000000000 ____D C:\WINDOWS\system32\MRT
2023-07-13 17:56 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-07-13 17:54 - 2018-02-01 22:36 - 173351160 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2023-07-12 18:20 - 2020-09-27 09:53 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-07-12 18:20 - 2020-09-27 09:53 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2023-07-11 19:45 - 2022-01-28 10:57 - 000003640 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-07-11 19:45 - 2022-01-28 10:57 - 000003516 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2023-07-06 21:55 - 2022-01-19 16:37 - 000000000 ____D C:\Program Files\CCleaner
2023-07-06 21:55 - 2018-02-01 20:56 - 000000000 ____D C:\Program Files\Opera
2023-06-29 18:08 - 2018-02-05 15:24 - 000002301 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-06-29 18:08 - 2018-02-05 15:24 - 000002260 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2023-06-22 18:34 - 2018-02-14 13:05 - 000000000 ____D C:\Users\magic\AppData\Local\CrashDumps
2023-06-16 18:34 - 2022-01-28 10:57 - 000003768 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2023-06-16 18:34 - 2022-01-28 10:57 - 000003644 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2023-06-15 19:07 - 2022-02-08 11:01 - 000000000 ____D C:\WINDOWS\system32\Tasks\HP
2023-06-15 19:07 - 2022-02-08 10:57 - 000000000 ____D C:\Program Files\HPPrintScanDoctor

==================== Files in the root of some directories ========

2019-08-02 20:46 - 2019-08-02 20:48 - 000007605 _____ () C:\Users\magic\AppData\Local\resmon.resmoncfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Maroš
Návštěvník
Návštěvník
Příspěvky: 173
Registrován: 29 črc 2011 13:32

Re: Prosim o kontrolu logu

#4 Příspěvek od Maroš »

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 12-07-2023
Ran by magic (15-07-2023 10:37:55)
Running from C:\Users\magic\AppData\Local\Temp\scoped_dir9596_1845067097
Microsoft Windows 10 Home Version 22H2 19045.3208 (X64) (2022-01-28 08:59:34)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-3200854963-3717341606-596258127-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3200854963-3717341606-596258127-503 - Limited - Disabled)
Guest (S-1-5-21-3200854963-3717341606-596258127-501 - Limited - Disabled)
magic (S-1-5-21-3200854963-3717341606-596258127-1001 - Administrator - Enabled) => C:\Users\magic
WDAGUtilityAccount (S-1-5-21-3200854963-3717341606-596258127-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Acronis Disk Director (HKLM-x32\...\{AE372858-B1BD-49EF-8308-648322846008}) (Version: 12.0.3270 - Acronis)
Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1029-1033-7760-BC15014EA700}) (Version: 23.003.20244 - Adobe)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601047}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
AIMP (HKLM-x32\...\AIMP) (Version: v4.70.2251, 23.05.2021 - AIMP DevTeam)
Any Video Converter 6.2.2 (HKLM-x32\...\Any Video Converter) (Version: 6.2.2 - Anvsoft)
Ashampoo WinOptimizer FREE (HKLM-x32\...\{4209F371-8668-980C-19C9-F8698AB75135}_is1) (Version: 1.0.0 - Ashampoo GmbH & Co. KG)
ATK Package (HKLM-x32\...\{AB5C933E-5C7D-4D30-B314-9C83A49B94BE}) (Version: 1.0.0050 - ASUS)
Audacity 3.2.2 (HKLM\...\Audacity_is1) (Version: 3.2.2 - Audacity Team)
Balíček ovladače systému Windows - ASUS (HIDSwitch) System (08/18/2015 1.0.0.5) (HKLM\...\6D6063B1EDBCB582F1E596B1EB8BBFAAA100B1BD) (Version: 08/18/2015 1.0.0.5 - ASUS)
Balíček ovladače systému Windows - Intel (MEIx64) System (10/03/2017 11.7.0.1045) (HKLM\...\623E6BEBFE0E32D8AD88825BDC5B643D996BCA93) (Version: 10/03/2017 11.7.0.1045 - Intel)
Balíček ovladače systému Windows - Intel Corporation (iaStorA) HDC (04/10/2017 14.8.16.1063) (HKLM\...\1956B72D229BA5E262A8828A81DB9133B5F111B2) (Version: 04/10/2017 14.8.16.1063 - Intel Corporation)
Balíček ovladače systému Windows - Intel Corporation (iaStorA) SCSIAdapter (04/10/2017 14.8.16.1063) (HKLM\...\7B099E88B288543F1ED20B3C3332D4B1B2E6A621) (Version: 04/10/2017 14.8.16.1063 - Intel Corporation)
Balíček ovladače systému Windows - Qualcomm Atheros Communications (BtFilter) Bluetooth (05/18/2016 10.0.1.7) (HKLM\...\9196235C47040428607C47455891A82EB6B04203) (Version: 05/18/2016 10.0.1.7 - Qualcomm Atheros Communications)
Balíček ovladače systému Windows - Realtek Semiconductor Corp. (RTSPER) MTD (12/04/2017 10.0.16299.21304) (HKLM\...\30643CED791BBDA850B1D497B0BD7EF6DFBAD4FE) (Version: 12/04/2017 10.0.16299.21304 - Realtek Semiconductor Corp.)
CCleaner (HKLM\...\CCleaner) (Version: 6.13 - Piriform)
Cisco EAP-FAST Module (HKLM-x32\...\{64BF0187-F3D2-498B-99EA-163AF9AE6EC9}) (Version: 2.2.14 - Cisco Systems, Inc.)
Cisco LEAP Module (HKLM-x32\...\{AF312B06-5C5C-468E-89B3-BE6DE2645722}) (Version: 1.0.19 - Cisco Systems, Inc.)
Cisco PEAP Module (HKLM-x32\...\{0A4EF0E6-A912-4CDE-A7F3-6E56E7C13A2F}) (Version: 1.1.6 - Cisco Systems, Inc.)
CyberLink PowerDirector 15 (HKLM-x32\...\{FA285575-B543-4E6E-A573-A4F534AC9965}) (Version: 15.0.3223.0 - CyberLink Corp.)
DAEMON Tools Lite (HKLM\...\DAEMON Tools Lite) (Version: 10.11.0.1001 - Disc Soft Ltd)
Data Lifeguard Diagnostic for Windows 1.31 (HKLM-x32\...\{519C4DB6-B53B-4F5C-8297-89B2BE949FA5}_is1) (Version: - Western Digital Corporation)
EAX4 Unified Redist (HKLM-x32\...\{89661B04-C646-4412-B6D3-5E19F02F1F37}) (Version: 4.001 - Creative Labs)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{66C5838F-B854-4A55-89E6-A6138747A4DF}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Farming Simulator 19 (HKLM-x32\...\Farming Simulator 19_is1) (Version: - )
FastShare.cz verze 2.3.1 (HKLM-x32\...\FastShare.cz_is1) (Version: 2.3.1 - )
FlipPDF to ePUB (freeware) (HKLM-x32\...\FlipPDF to ePUB (freeware)_is1) (Version: - FlipPDF Solution)
FORM studio (HKLM-x32\...\FSCZ_is1) (Version: - KASTNER software s.r.o.)
Freemake Video Converter verze 4.1.13 (HKLM-x32\...\Freemake Video Converter_is1) (Version: 4.1.13 - Mixbyte Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 114.0.5735.199 - Google LLC)
HP Dropbox Plugin (HKLM-x32\...\{D58993B3-BA5F-4181-8D1C-05D0302398EB}) (Version: 40.13.54.81239 - HP)
HP Google Drive Plugin (HKLM-x32\...\{C777EAED-CEE8-4AF4-A2DE-2A0FC510481A}) (Version: 40.13.54.81239 - HP)
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.5107 - Intel Corporation)
IPC360 (HKLM-x32\...\InstallShield_{C89E22AC-0603-466A-88A2-242694F28E98}) (Version: 1.0.0.1 - _)
KC Softwares BATExpert (HKLM-x32\...\KC Softwares BATExpert_is1) (Version: 1.13.1.20 - KC Softwares)
K-Lite Mega Codec Pack 13.7.5 (HKLM-x32\...\KLiteCodecPack_is1) (Version: 13.7.5 - KLCP)
Kontrola stavu osobního počítače s Windows (HKLM\...\{95548B78-8547-4E91-B0DA-1CBB82150917}) (Version: 3.7.2204.15001 - Microsoft Corporation)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Kontrola stavu osobního počítače s Windows (HKLM\...\{E496AFB7-CB04-46CF-8FBB-5D665BC8811B}) (Version: 3.3.2110.22002 - Microsoft Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{c6c5a357-c7ca-4a5f-9789-3bb1af579253}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Microsoft Access database engine 2010 (English) (HKLM-x32\...\{90140000-00D1-0409-0000-0000000FF1CE}) (Version: 14.0.7015.1000 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 114.0.1823.79 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 114.0.1823.79 - Microsoft Corporation)
Microsoft Office Professional Plus 2016 - cs-cz (HKLM\...\ProPlusRetail - cs-cz) (Version: 16.0.16529.20182 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3200854963-3717341606-596258127-1001\...\OneDriveSetup.exe) (Version: 23.132.0625.0001 - Microsoft Corporation)
Microsoft Silverlight (HKLM\...\{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}) (Version: 5.1.50918.0 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{BB052C53-34CB-42DE-AF41-66FDFCEEC868}) (Version: 3.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729 (HKLM-x32\...\{CA8A885F-E95B-3FC6-BB91-F4D9377C7686}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.21005 (HKLM-x32\...\{7f51bdb9-ee21-49ee-94d6-90afc321780e}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40660 (HKLM-x32\...\{ef6b00ec-13e1-4c25-9064-b2f383cb8412}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.21005 (HKLM-x32\...\{ce085a78-074e-4823-8dc1-8a721b94b76d}) (Version: 12.0.21005.1 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40660 (HKLM-x32\...\{61087a79-ac85-455c-934d-1fa22cc64f36}) (Version: 12.0.40660.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40660 (HKLM\...\{5740BD44-B58D-321A-AFC0-6D3D4556DD6C}) (Version: 12.0.40660 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40660 (HKLM\...\{CB0836EC-B072-368D-82B2-D3470BF95707}) (Version: 12.0.40660 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40660 (HKLM-x32\...\{7DAD0258-515C-3DD4-8964-BD714199E0F7}) (Version: 12.0.40660 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40660 (HKLM-x32\...\{E30D8B21-D82D-3211-82CC-0F0A5D1495E8}) (Version: 12.0.40660 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.30.30704 (HKLM-x32\...\{57a73df6-4ba9-4c1d-bbbb-517289ff6c13}) (Version: 14.30.30704.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.30.30704 (HKLM-x32\...\{4d8dcf8c-a72a-43e1-9833-c12724db736e}) (Version: 14.30.30704.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.30.30704 (HKLM\...\{6DB765A8-05AF-49A1-A71D-6F645EE3CE41}) (Version: 14.30.30704 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.30.30704 (HKLM\...\{662A0088-6FCD-45DD-9EA7-68674058AED5}) (Version: 14.30.30704 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.30.30704 (HKLM-x32\...\{BF08E976-B92E-4336-B56F-2171179476C4}) (Version: 14.30.30704 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.30.30704 (HKLM-x32\...\{F6080405-9FA8-4CAA-9982-14E95D1A3DAC}) (Version: 14.30.30704 - Microsoft Corporation) Hidden
Microsoft Visual C++ Run Time Lib Setup (HKLM-x32\...\{AAF4238F-7C29-451D-9925-C753271A5728}) (Version: 1.0.0 - Microsoft)
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
MP3Studio YouTube Downloader (HKLM-x32\...\{3AB59E5E-AADB-4F45-8741-DCA2BDF0F1DD}) (Version: 2.0.10.0 - MP3Studio/) Hidden
MP3Studio YouTube Downloader (HKLM-x32\...\{a17fa95e-ee4e-4c87-b026-5a550246b3a2}) (Version: 2.0.10.0 - MP3Studio)
NAS Starter Utility (HKLM-x32\...\NAS Starter Utility) (Version: - ZyXEL)
NETIS Wireless LAN Driver and Utility (HKLM-x32\...\{9C049509-055C-4CFF-A116-1D12312225EB}) (Version: 1.00.0290 - Netis Systems Co., Ltd.)
NVIDIA FrameView SDK 1.3.8513.32290073 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.3.8513.32290073 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.27.0.112 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.27.0.112 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 535.98 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 535.98 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.16529.20182 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.16529.20182 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.16529.20182 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0405-0000-0000000FF1CE}) (Version: 16.0.14131.20278 - Microsoft Corporation) Hidden
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Opera Stable 87.0.4390.45 (HKLM-x32\...\Opera 87.0.4390.45) (Version: 87.0.4390.45 - Opera Software)
Opera Stable 99.0.4788.88 (HKLM-x32\...\Opera 99.0.4788.88) (Version: 99.0.4788.88 - Opera Software)
PL-2303 USB-to-Serial (HKLM-x32\...\{ECC3713C-08A4-40E3-95F1-7D0704F1CE5E}) (Version: 1.2.10 - Prolific Technology INC)
Pomocník s aktualizací Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.19041.1375 - Microsoft Corporation)
PosteRazor (HKLM-x32\...\PosteRazor_is1) (Version: 1.5.2 - Alessandro Portale)
PRO 100 CZ verze 1.5 (HKLM-x32\...\{67A98B3A-9045-4EC3-88F5-E3637389D241}_is1) (Version: 1.5 - My Company, Inc.)
Qualcomm Atheros Client Installation Program (HKLM-x32\...\{28006915-2739-4EBE-B5E8-49B25D32EB33}) (Version: 10.0 - Qualcomm Atheros)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.15063.21300 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.24.1208.2017 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.9205.1 - Realtek Semiconductor Corp.)
Sniper Ghost Warrior Contracts - STURM BODYGUARD 9 (HKLM-x32\...\2060028353_is1) (Version: 1.04 - GOG.com)
Sniper Ghost Warrior Contracts - SV - AMUR (HKLM-x32\...\1297892886_is1) (Version: 1.04 - GOG.com)
Sniper Ghost Warrior Contracts (HKLM-x32\...\1708301722_is1) (Version: 1.04 - GOG.com)
Spotify (HKU\S-1-5-21-3200854963-3717341606-596258127-1001\...\Spotify) (Version: 1.1.74.631.g0b24d9ad - Spotify AB)
Sticky Password 8.6.4.1448 (HKLM-x32\...\Sticky Password_is1) (Version: 8.6 - Lamantine Software)
Studie vylepšování produktu HP DeskJet 4530 series (HKLM\...\{79C4417A-70A3-44B3-98BE-CC38A8AEDCDE}) (Version: 40.15.1231.21321 - HP Inc.)
TeamViewer (HKLM-x32\...\TeamViewer) (Version: 15.43.7 - TeamViewer)
Total Commander 64+32-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.10 - Ghisler Software GmbH)
Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 136.0.10773 - Ubisoft)
Ulož.to FileManager verze 2.76 (HKLM-x32\...\{7DE5EA5D-C933-4549-9A44-5BC671F23BBF}_is1) (Version: 2.76 - Uloz.to cloud a.s.)
USB Bridge Installer (HKLM\...\USB Bridge Installer_is1) (Version: - )
vanBasco's Karaoke Player (HKLM-x32\...\VMidi) (Version: - )
Veroval® medi.connect (HKLM-x32\...\{3D84DEBB-7913-4DC3-9AE7-7CF05CE48E9B}) (Version: 1.9.5.9 - Název společnosti:) Hidden
Veroval® medi.connect (HKLM-x32\...\Veroval MediConnect) (Version: 1.9.5.9 - Název společnosti:)
VirtualDJ 2018 (HKLM-x32\...\{FBCC4640-0D91-45B8-90B6-CFA1D0031EB2}) (Version: 8.3.4675.0 - Atomix Productions)
VirtualDJ 2021 (HKLM\...\{8F666AF4-949F-4DDB-8F97-197BC147435C}) (Version: 8.5.6242.0 - Atomix Productions)
VLC media player (HKLM-x32\...\VLC media player) (Version: 3.0.12 - VideoLAN)
Vojenský újezd Ralsko - Číhající Sovět (HKLM-x32\...\{Vojensky ujezd Ralsko - cihajici sovet}_is1) (Version: - Špidla Data Processing, s.r.o.)
Webshare klient (HKLM-x32\...\Webshare klient) (Version: - )
WinCDEmu (HKLM-x32\...\WinCDEmu) (Version: 4.1 - Sysprogs)
WinDirStat 1.1.2 (HKU\S-1-5-21-3200854963-3717341606-596258127-1001\...\WinDirStat) (Version: - )
WinRAR 5.70 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.70.0 - win.rar GmbH)
Youtube Downloader HD v. 4.4.2 (HKLM-x32\...\Youtube Downloader HD_is1) (Version: - YoutubeDownloaderHD.com)
Youtube-DLG version 0.4 (HKLM-x32\...\{3C455028-FC99-4846-8E04-4FCD87D85613}_is1) (Version: 0.4 - Sotiris Papadopoulos)
Základní software zařízení HP DeskJet 4530 series (HKLM\...\{B46461A1-5DE6-484A-A1F2-79DA628FC4E2}) (Version: 40.15.1231.21321 - HP Inc.)

Packages:
=========
2D Audio Mixer -> C:\Program Files\WindowsApps\5626PanosKarabelas.2DAudioMixer_1.1.0.1_x86__qj94rv5hrx17w [2022-06-30] (Panos Karabelas)
City Lights by Talha Tariq -> C:\Program Files\WindowsApps\Microsoft.CityLightsbyTalhaTariq_1.0.0.0_neutral__8wekyb3d8bbwe [2022-06-30] (Microsoft Corporation)
Community Showcase Natural Landscapes 3 -> C:\Program Files\WindowsApps\Microsoft.CommunityShowcaseNaturalLandscapes3_1.0.0.0_neutral__8wekyb3d8bbwe [2022-06-30] (Microsoft Corporation)
Converter for YouTube by Flvto.com -> C:\Program Files\WindowsApps\Hotger.com.YouTubeConverterbywww.flvto.com_2.0.58.0_x64__cg7p2qfgefa1a [2022-06-30] (Белов Кирилл Леонидович) [MS Ad]
Dj Mixer -> C:\Program Files\WindowsApps\27576KetoLabs.DjMixer_1.10.11.1000_x64__6nansvgt4vxt0 [2022-06-30] (KetoLabs)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2022-06-30] (Microsoft Corporation)
Doplněk pro Fotky -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2021.39122.10110.0_x64__8wekyb3d8bbwe [2022-06-30] (Microsoft Corporation)
edjing 5: DJ turntable to mix and record music -> C:\Program Files\WindowsApps\DJiT.edjing-DJmixerconsolestudio-PlayMixRecordShar_5.1.12.0_x64__3nf5xjt6s13jt [2022-06-30] (DJiT) [MS Ad]
Fish and Corals -> C:\Program Files\WindowsApps\Microsoft.FishandCorals_1.0.0.0_neutral__8wekyb3d8bbwe [2022-06-30] (Microsoft Corporation)
HP Smart -> C:\Program Files\WindowsApps\AD2F1837.HPPrinterControl_146.3.1087.0_x64__v10z8vjag6ke6 [2023-06-26] (HP Inc.)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2022-06-30] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2022-06-30] (Microsoft Corporation) [MS Ad]
Microsoft Jackpot -> C:\Program Files\WindowsApps\Microsoft.MicrosoftJackpot_1.9.1110.0_x86__8wekyb3d8bbwe [2022-06-30] (Microsoft Studios) [MS Ad]
Mixfader dj - digital vinyl -> C:\Program Files\WindowsApps\DJiT.edjingScratchvinyledigital_1.2.12.0_x64__3nf5xjt6s13jt [2022-06-30] (DJiT)
MyASUS -> C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_3.1.20.0_x64__qmba6cd70vzyy [2023-06-14] (ASUSTeK COMPUTER INC.)
myTube! -> C:\Program Files\WindowsApps\59750RYKENAPPS.435307C335C44_4.0.19.0_x64__zd92nzxdcatqw [2022-06-30] (Ryken Studio)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.964.0_x64__56jybvy8sckqj [2023-06-05] (NVIDIA Corp.)
Rambling Pathways -> C:\Program Files\WindowsApps\Microsoft.RamblingPathways_1.0.0.0_neutral__8wekyb3d8bbwe [2022-06-30] (Microsoft Corporation)
Rozšíření pro video MPEG-2 -> C:\Program Files\WindowsApps\Microsoft.MPEG2VideoExtension_1.0.50901.0_x64__8wekyb3d8bbwe [2022-06-30] (Microsoft Corporation)
Solitaire & Casual Games -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.16.3140.0_x64__8wekyb3d8bbwe [2023-03-22] (Microsoft Studios) [MS Ad]
Speedtest by Ookla -> C:\Program Files\WindowsApps\Ookla.SpeedtestbyOokla_1.16.165.0_x64__43tkc6nmykmb6 [2023-03-22] (Ookla)
WavePad Audio Editor Free -> C:\Program Files\WindowsApps\NCHSoftware.WavePadAudioEditorFree_17.2.1.0_x86__7kedsbyvzns34 [2023-02-03] (NCH Software)
WiFi Analyzer -> C:\Program Files\WindowsApps\19965MATTHAFNER.WIFIANALYZER_2.6.1.0_x64__gs5k5vmxr2ste [2022-06-30] (Matt Hafner)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3200854963-3717341606-596258127-1001_Classes\CLSID\{227C9E8F-71A1-4B23-9076-682A1A8EAAED}\localserver32 -> "c:\program files\macrium\common\reflectmonitor.exe" -ToastActivated => No File
ContextMenuHandlers1: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP\System\aimp_menu64.dll [2021-07-01] (IP Izmaylov Artem Andreevich -> AIMP DevTeam)
ContextMenuHandlers1: [FormatFactoryShell] -> {A3777921-CFD3-4A6B-89BF-08E6B95716E8} => C:\Program Files (x86)\FormatFactory\ShellEx64_104.dll [2018-03-19] (Free Time) [File not signed]
ContextMenuHandlers1: [WinCDEmu] -> {D0E37FD2-F675-426F-B09A-2CF37BA46FD5} => C:\Program Files (x86)\WinCDEmu\x64\WinCDEmuContextMenu.dll [2015-09-28] (Sysprogs OU) [File not signed]
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [DaemonShellExtDriveLite] -> {C06369D6-E77D-4626-9656-1256312BD576} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2019-12-25] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers2: [WinCDEmu] -> {A9901FCD-B4DF-43A1-BD5D-6C9F88679497} => C:\Program Files (x86)\WinCDEmu\x64\WinCDEmuContextMenu.dll [2015-09-28] (Sysprogs OU) [File not signed]
ContextMenuHandlers3: [DaemonShellExtImageLite] -> {1D1B5D7B-0FC9-452E-902C-12BACD4FBC20} => C:\Program Files\DAEMON Tools Lite\dtshl64.dll [2019-12-25] (AVB Disc Soft, SIA -> Disc Soft Ltd)
ContextMenuHandlers4: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP\System\aimp_menu64.dll [2021-07-01] (IP Izmaylov Artem Andreevich -> AIMP DevTeam)
ContextMenuHandlers4: [FormatFactoryShell] -> {A3777921-CFD3-4A6B-89BF-08E6B95716E8} => C:\Program Files (x86)\FormatFactory\ShellEx64_104.dll [2018-03-19] (Free Time) [File not signed]
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2020-01-16] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvami.inf_amd64_700b78aaed9fe381\nvshext.dll [2023-05-25] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [WinCDEmu] -> {A9901FCD-B4DF-43A1-BD5D-6C9F88679497} => C:\Program Files (x86)\WinCDEmu\x64\WinCDEmuContextMenu.dll [2015-09-28] (Sysprogs OU) [File not signed]
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-02-24] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [VIDC.X264] => C:\Windows\system32\x264vfw64.dll [3799552 2017-07-30] (x264vfw project) [File not signed]
HKLM\...\Drivers32: [VIDC.LAGS] => C:\Windows\system32\lagarith.dll [148992 2011-12-07] () [File not signed]
HKLM\...\Drivers32: [VIDC.XVID] => C:\Windows\system32\xvidvfw.dll [309248 2015-12-18] () [File not signed]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\Windows\system32\ac3acm.acm [180736 2012-07-21] (fccHandler) [File not signed]
HKLM\...\Drivers32: [VIDC.X264] => C:\Windows\SysWOW64\x264vfw.dll [3850240 2017-07-30] (x264vfw project) [File not signed]
HKLM\...\Drivers32: [VIDC.LAGS] => C:\Windows\SysWOW64\lagarith.dll [216064 2011-12-07] () [File not signed]
HKLM\...\Drivers32: [VIDC.XVID] => C:\Windows\SysWOW64\xvidvfw.dll [282112 2015-12-18] () [File not signed]
HKLM\...\Drivers32: [VIDC.FFDS] => C:\Windows\SysWOW64\ff_vfw.dll [112128 2015-10-24] () [File not signed]
HKLM\...\Drivers32: [msacm.ac3acm] => C:\Windows\SysWOW64\ac3acm.acm [122880 2012-07-21] (fccHandler) [File not signed]

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============


==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2023-07-07] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\Office16\OCHelper.dll [2023-07-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2023-07-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2023-07-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2023-07-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2023-07-07] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2017-09-29 15:46 - 2017-09-29 15:44 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3200854963-3717341606-596258127-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\magic\AppData\Roaming\Microsoft\Windows\Themes\TranscodedWallpaper
DNS Servers: 82.144.129.1 - 82.144.128.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run: => "WindowsDefender"
HKU\S-1-5-21-3200854963-3717341606-596258127-1001\...\StartupApproved\Run: => "HP DeskJet 4530 series (NET)"
HKU\S-1-5-21-3200854963-3717341606-596258127-1001\...\StartupApproved\Run: => "Spotify"
HKU\S-1-5-21-3200854963-3717341606-596258127-1001\...\StartupApproved\Run: => "DAEMON Tools Lite Automount"
HKU\S-1-5-21-3200854963-3717341606-596258127-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [UDP Query User{8D438082-EE7B-46B2-9456-6DA1B1C68DBE}C:\program files\opera\opera.exe] => (Block) C:\program files\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [TCP Query User{A1745927-8243-4886-8B05-E48EA939DADD}C:\program files\opera\opera.exe] => (Block) C:\program files\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [UDP Query User{AE5956BD-A224-4106-ABF5-CEAAF19B5051}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [TCP Query User{F8AC96AB-FAD2-4AAF-8142-83496821072F}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [UDP Query User{F0CD54C6-1EB5-4640-B11C-E8A01EFE213B}C:\users\magic\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\magic\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{2EE98752-F881-4127-A0ED-9A81515CC68B}C:\users\magic\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\magic\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{05BD1FAD-AE4B-4773-B387-876000FF1B8B}C:\users\magic\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\magic\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [TCP Query User{69BC2D85-55F7-42A1-A2C9-DC6AA302E233}C:\users\magic\appdata\roaming\spotify\spotify.exe] => (Allow) C:\users\magic\appdata\roaming\spotify\spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [UDP Query User{E9B1CA3E-4969-45A1-8FB1-00C761B58594}C:\program files (x86)\ipc360\ipc360.exe] => (Allow) C:\program files (x86)\ipc360\ipc360.exe () [File not signed]
FirewallRules: [TCP Query User{CC6BC8DB-9A30-4C76-83B5-7A626C9A8A0A}C:\program files (x86)\ipc360\ipc360.exe] => (Allow) C:\program files (x86)\ipc360\ipc360.exe () [File not signed]
FirewallRules: [UDP Query User{0D876EC0-8ACB-4D68-A27C-02B15A6E379A}C:\program files (x86)\searchtool\searchtool.exe] => (Allow) C:\program files (x86)\searchtool\searchtool.exe () [File not signed]
FirewallRules: [TCP Query User{818FF721-EED1-477A-89C8-985912074970}C:\program files (x86)\searchtool\searchtool.exe] => (Allow) C:\program files (x86)\searchtool\searchtool.exe () [File not signed]
FirewallRules: [UDP Query User{21EE41A5-4DFE-4B20-9366-C820322ECB3E}C:\users\magic\downloads\cms\cms\cms.exe] => (Allow) C:\users\magic\downloads\cms\cms\cms.exe () [File not signed]
FirewallRules: [TCP Query User{593BAFF5-3CB0-4A9F-B5EC-AB73EC8E3065}C:\users\magic\downloads\cms\cms\cms.exe] => (Allow) C:\users\magic\downloads\cms\cms\cms.exe () [File not signed]
FirewallRules: [{74065532-0CAD-4EFA-940B-9180E73CC8F3}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [{B7EFA839-5232-47C8-83FE-2FED917B291A}] => (Allow) C:\Program Files\DAEMON Tools Lite\DiscSoftBusServiceLite.exe (AVB Disc Soft, SIA -> Disc Soft Ltd)
FirewallRules: [UDP Query User{2EB8DB99-528F-4326-AD4C-11124E10D452}C:\users\magic\onedrive\dokumenty\odorik.exe] => (Allow) C:\users\magic\onedrive\dokumenty\odorik.exe (Odorik.cz) [File not signed]
FirewallRules: [TCP Query User{FCFE6141-69A9-4F90-8A3C-EF131EBAAE23}C:\users\magic\onedrive\dokumenty\odorik.exe] => (Allow) C:\users\magic\onedrive\dokumenty\odorik.exe (Odorik.cz) [File not signed]
FirewallRules: [{6143B0B3-7BA4-4C9C-B05D-6050C9288ED8}] => (Allow) C:\Program Files (x86)\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe (Free Time Co., Ltd. -> Free Time Co., Ltd.)
FirewallRules: [{A765F971-FE7B-4FF3-933B-DD3EC1F53FA9}] => (Allow) C:\Program Files (x86)\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe (Free Time Co., Ltd. -> Free Time Co., Ltd.)
FirewallRules: [UDP Query User{11218CAD-3EEF-4727-9A12-7F5B20979926}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [TCP Query User{AB12CF31-0082-46BD-BD7C-9D5F8A46F80D}C:\program files (x86)\videolan\vlc\vlc.exe] => (Allow) C:\program files (x86)\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [UDP Query User{FE7D3932-2550-4415-BA72-59A78882616B}C:\program files (x86)\zyxel\nas starter utility\nas starter utility.exe] => (Allow) C:\program files (x86)\zyxel\nas starter utility\nas starter utility.exe () [File not signed]
FirewallRules: [TCP Query User{9A0FEC17-8388-4BB1-92E1-2CBABE2EC3CB}C:\program files (x86)\zyxel\nas starter utility\nas starter utility.exe] => (Allow) C:\program files (x86)\zyxel\nas starter utility\nas starter utility.exe () [File not signed]
FirewallRules: [{82B8A8F2-97A5-403D-BB74-99BB49B1A800}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{FDCFDB0C-55D5-4099-A64E-F11111E23C77}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [UDP Query User{0DD17A2F-7FBC-42BC-A75E-A47F7C343BEC}C:\program files (x86)\zyxel\nas starter utility\nas starter utility.exe] => (Allow) C:\program files (x86)\zyxel\nas starter utility\nas starter utility.exe () [File not signed]
FirewallRules: [TCP Query User{34D3420A-4704-4186-8C23-935E1C82F288}C:\program files (x86)\zyxel\nas starter utility\nas starter utility.exe] => (Allow) C:\program files (x86)\zyxel\nas starter utility\nas starter utility.exe () [File not signed]
FirewallRules: [TCP Query User{50E176F4-F8A7-4276-AF1F-DAFD8535DB31}D:\games\farming simulator 19\x64\farmingsimulator2019game.exe] => (Block) D:\games\farming simulator 19\x64\farmingsimulator2019game.exe (GIANTS Software GmbH -> GIANTS Software GmbH) [File not signed]
FirewallRules: [UDP Query User{A839851B-DCBA-4FCD-A1CC-B420F495BC09}D:\games\farming simulator 19\x64\farmingsimulator2019game.exe] => (Block) D:\games\farming simulator 19\x64\farmingsimulator2019game.exe (GIANTS Software GmbH -> GIANTS Software GmbH) [File not signed]
FirewallRules: [{922CAA0D-AFC7-48FF-A84D-9A8C53EC5F60}] => (Allow) C:\Program Files (x86)\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe (Free Time Co., Ltd. -> Free Time Co., Ltd.)
FirewallRules: [{50DE2E3B-1237-47D7-8252-3B2D40F25180}] => (Allow) C:\Program Files (x86)\FormatFactory\FFModules\Encoder\Doc\EBookCodec.exe (Free Time Co., Ltd. -> Free Time Co., Ltd.)
FirewallRules: [TCP Query User{021FE1B9-95F5-4307-BAD2-C1AD4764612F}C:\program files\opera\opera.exe] => (Allow) C:\program files\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [UDP Query User{FAC12F82-3263-41AA-A287-171FBA0C8423}C:\program files\opera\opera.exe] => (Allow) C:\program files\opera\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [{32EE9053-9550-4F48-B888-F32FE272E9FC}] => (Allow) C:\Program Files (x86)\HP\Diagnostics\PSDR\SoftPaq\Binaries\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.)
FirewallRules: [{27B3A3F7-0186-48D0-A50A-98E1468DEF14}] => (Allow) C:\Program Files (x86)\HP\Diagnostics\PSDR\SoftPaq\Binaries\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.)
FirewallRules: [{0DF200B9-6342-4DEF-A06D-E6BD12FF58E2}] => (Allow) C:\HP\Diagnostics\PSDR\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.)
FirewallRules: [{BE900228-274A-46E5-81EA-2E3B40204FDB}] => (Allow) C:\HP\Diagnostics\PSDR\HPDiagnosticCoreUI.exe (HP Inc. -> HP Development Company, L.P.)
FirewallRules: [{9CAFAA7C-6D4B-4B92-AD7B-576DC4FF8C76}] => (Allow) C:\Program Files\HP\HP DeskJet 4530 series\Bin\DeviceSetup.exe (HP Inc. -> HP Inc.)
FirewallRules: [{5FC2E1A4-EFB9-4CCE-8E2A-0E1E01A2607F}] => (Allow) LPort=5357
FirewallRules: [{1804CA84-E24E-461B-8113-4810F860E374}] => (Allow) C:\Program Files\HP\HP DeskJet 4530 series\Bin\HPNetworkCommunicatorCom.exe (HP Inc. -> HP Inc.)
FirewallRules: [{730DB51E-4613-4D2A-8D75-4121A9551472}] => (Allow) C:\Program Files\Opera\87.0.4390.36\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [{2E11B0ED-0FA1-49DF-9773-36259C1DFED2}] => (Allow) C:\Program Files (x86)\netis\USB Wireless LAN Utility\RtWLan.exe (Realtek Semiconductor Corp.) [File not signed]
FirewallRules: [{55D1C44A-4987-42E9-83C1-3729E1724D22}] => (Allow) LPort=1542
FirewallRules: [{3D5A6BFE-B890-4A23-B707-770694E251D4}] => (Allow) LPort=1542
FirewallRules: [{3EB2A9B5-4570-4455-97F9-F68EA0C6C861}] => (Allow) LPort=53
FirewallRules: [{EA2E2959-3DF8-43E6-8B9C-6E0B84D7479A}] => (Allow) C:\Program Files (x86)\netis\USB Wireless LAN Utility\RTLDHCP.exe (Realtek Semiconductor Corp -> Realtek)
FirewallRules: [{F9386EE3-3FBB-497E-9847-F94C1FEE271B}] => (Allow) C:\Program Files (x86)\netis\USB Wireless LAN Utility\RTLDHCP.exe (Realtek Semiconductor Corp -> Realtek)
FirewallRules: [{CC45F8D6-58C6-4EA7-9842-24EB14B83125}] => (Allow) C:\Program Files (x86)\netis\USB Wireless LAN Utility\RTLDHCP.exe (Realtek Semiconductor Corp -> Realtek)
FirewallRules: [{B320AAB4-63CB-4CB3-8EF8-60D475915E12}] => (Allow) C:\Program Files (x86)\netis\USB Wireless LAN Utility\RTLDHCP.exe (Realtek Semiconductor Corp -> Realtek)
FirewallRules: [{0C989D61-0833-41AA-A432-FEA9CDF203A3}] => (Allow) C:\Program Files (x86)\netis\USB Wireless LAN Utility\RTLDHCP.exe (Realtek Semiconductor Corp -> Realtek)
FirewallRules: [{9D834C10-D6EB-4D56-8E20-EFBE3BB77F6B}] => (Allow) C:\Program Files (x86)\netis\USB Wireless LAN Utility\RTLDHCP.exe (Realtek Semiconductor Corp -> Realtek)
FirewallRules: [{CA7BB131-FED1-495F-935B-95258ABEB610}] => (Allow) C:\Program Files (x86)\netis\USB Wireless LAN Utility\RTLDHCP.exe (Realtek Semiconductor Corp -> Realtek)
FirewallRules: [{127236B9-04DF-40D5-910E-E7CE57055289}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's Splinter Cell\system\SplinterCell.exe => No File
FirewallRules: [{BDE9E2CB-9F69-41B6-B07C-C2E397F0C5AB}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Tom Clancy's Splinter Cell\system\SplinterCell.exe => No File
FirewallRules: [{5D07BE5A-CB78-4D16-B407-7CEDCE0DCE02}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{F56B7574-1EB4-4937-B305-3E358067BDDB}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{80D77A41-4CA2-48B3-85E9-53BDEEB7EF8F}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{DC0DE3C7-B3B4-483D-93B2-319BEC0430EF}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{FD26015F-A6D1-44B8-ABBD-2ABC7E993F7F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{A6FA7569-51AD-4CB1-8748-C30697F6D8F0}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{D8E4315B-787B-4408-8D24-B703BDAAEF6F}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{BB7838DC-CC80-4CAD-9275-114C0EA08AB8}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{BA97E413-914E-42E2-9D23-9C19519BBA20}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{C4BB0ECB-3FA1-48FA-B447-5FEB2109D5D2}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{0CD6B748-0895-4B16-B0CB-49712D769E35}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{E214F1B3-ADFE-4199-859B-368267E9DEFD}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{16AA42C5-F581-49E1-B955-2CC6990AB747}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{D3AA8DF5-5770-442A-8874-49345FA02AFE}] => (Allow) C:\Program Files (x86)\Sticky Password\stpass.exe (Lamantine Software a.s. -> Lamantine Software a.s.)
FirewallRules: [{A1ACBA2D-69F5-48C1-80A6-F8C3780E9AC1}] => (Allow) C:\Program Files (x86)\Sticky Password\stpass.exe (Lamantine Software a.s. -> Lamantine Software a.s.)
FirewallRules: [{4C6CBA79-58D2-48A6-8553-AB87599E8B47}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_3.1.20.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.)
FirewallRules: [{EB2E170A-3EEE-4F2E-A902-1A07B6650C4E}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_3.1.20.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.)
FirewallRules: [{7F61691C-C23C-4A69-B57F-416B28D831CA}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_3.1.20.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.)
FirewallRules: [{DA88C486-D097-4331-9370-A485BFE83965}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_3.1.20.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.)
FirewallRules: [{4335B174-F349-45BD-AB5E-A82FB36BF520}] => (Allow) C:\Program Files\Opera\99.0.4788.65\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [{CA199708-6D7F-4CF3-84E7-E903874A2322}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{F1CBBBE5-F504-4A72-8CDD-26BF9C301CB7}] => (Allow) C:\Program Files\Opera\99.0.4788.88\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [{9E73C6E3-7403-48E2-B11B-87B52DE2BE87}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.99.3403.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{FA6A8A9A-87D9-4848-BCA3-003A4664D972}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.99.3403.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{87B5E789-4891-4256-9998-012A535595FB}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.99.3403.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{0F6190A6-0A81-43E0-801D-6B057E0B9BAE}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.99.3403.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{F88E9274-C3CD-47A6-8A85-3C0DDB3D2205}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{3D6432B7-91CF-4FE9-BEBE-C0A7F74073C6}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{5FAEFA80-EEF9-4FBB-8563-959E6E2A266E}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{76B647E4-2799-4634-A81E-3870E52A6F32}] => (Allow) C:\Program Files (x86)\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{2A3B46A1-8EF5-4BD5-B3DB-ED5CF826B564}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\114.0.1823.79\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)

==================== Restore Points =========================


==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (07/14/2023 10:21:55 PM) (Source: Freemake Improver) (EventID: 0) (User: )
Description: Službu nelze spustit. System.IO.FileLoadException: Nelze načíst soubor nebo sestavení Newtonsoft.Json, Version=7.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed nebo jeden z jejich závislých prvků. Zjištěná definice manifestu sestavení neodpovídá odkazu na sestavení. (Výjimka na základě hodnoty HRESULT: 0x80131040)
Název souboru: Newtonsoft.Json, Version=7.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed ---> System.IO.FileLoadException: Nelze načíst soubor nebo sestavení Newtonsoft.Json, Version=6.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed nebo jeden z jejich závislých prvků. Zjištěná definice manifestu sestavení neodpovídá odkazu na sestavení. (Výjimka na základě hodnoty HRESULT: 0x80131040)
Název souboru: Newtonsoft.Json, Version=6.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed

WRN: Protokolování vazeb sestavení je VYPNUTO.
Chcete-li povolit protokolování chyb vazeb sestavení, nastavte hodnotu registru [HKLM\Software\Microsoft\Fusion!EnableLog] (DWORD) na hodnotu 1.
Poznámka: Proto...

Error: (07/13/2023 09:40:26 PM) (Source: Freemake Improver) (EventID: 0) (User: )
Description: Službu nelze spustit. System.IO.FileLoadException: Nelze načíst soubor nebo sestavení Newtonsoft.Json, Version=7.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed nebo jeden z jejich závislých prvků. Zjištěná definice manifestu sestavení neodpovídá odkazu na sestavení. (Výjimka na základě hodnoty HRESULT: 0x80131040)
Název souboru: Newtonsoft.Json, Version=7.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed ---> System.IO.FileLoadException: Nelze načíst soubor nebo sestavení Newtonsoft.Json, Version=6.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed nebo jeden z jejich závislých prvků. Zjištěná definice manifestu sestavení neodpovídá odkazu na sestavení. (Výjimka na základě hodnoty HRESULT: 0x80131040)
Název souboru: Newtonsoft.Json, Version=6.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed

WRN: Protokolování vazeb sestavení je VYPNUTO.
Chcete-li povolit protokolování chyb vazeb sestavení, nastavte hodnotu registru [HKLM\Software\Microsoft\Fusion!EnableLog] (DWORD) na hodnotu 1.
Poznámka: Proto...

Error: (07/13/2023 06:00:33 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: Vytvoření bodu obnovení se nezdařilo (Proces = C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.3205_none_7e1f4da67c811930\TiWorker.exe -Embedding; Popis = Instalační služba modulů systému Windows; Chyba = 0x80070422).

Error: (07/13/2023 06:00:08 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: Vytvoření bodu obnovení se nezdařilo (Proces = C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.3025_none_7e36ee127c6f13fc\TiWorker.exe -Embedding; Popis = Instalační služba modulů systému Windows; Chyba = 0x80070422).

Error: (07/13/2023 05:59:46 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: Vytvoření bodu obnovení se nezdařilo (Proces = C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.3025_none_7e36ee127c6f13fc\TiWorker.exe -Embedding; Popis = Instalační služba modulů systému Windows; Chyba = 0x80070422).

Error: (07/09/2023 11:43:02 AM) (Source: Freemake Improver) (EventID: 0) (User: )
Description: Službu nelze spustit. System.IO.FileLoadException: Nelze načíst soubor nebo sestavení Newtonsoft.Json, Version=7.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed nebo jeden z jejich závislých prvků. Zjištěná definice manifestu sestavení neodpovídá odkazu na sestavení. (Výjimka na základě hodnoty HRESULT: 0x80131040)
Název souboru: Newtonsoft.Json, Version=7.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed ---> System.IO.FileLoadException: Nelze načíst soubor nebo sestavení Newtonsoft.Json, Version=6.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed nebo jeden z jejich závislých prvků. Zjištěná definice manifestu sestavení neodpovídá odkazu na sestavení. (Výjimka na základě hodnoty HRESULT: 0x80131040)
Název souboru: Newtonsoft.Json, Version=6.0.0.0, Culture=neutral, PublicKeyToken=30ad4fe6b2a6aeed

WRN: Protokolování vazeb sestavení je VYPNUTO.
Chcete-li povolit protokolování chyb vazeb sestavení, nastavte hodnotu registru [HKLM\Software\Microsoft\Fusion!EnableLog] (DWORD) na hodnotu 1.
Poznámka: Proto...

Error: (07/09/2023 11:39:02 AM) (Source: System Restore) (EventID: 8193) (User: )
Description: Vytvoření bodu obnovení se nezdařilo (Proces = C:\WINDOWS\system32\srtasks.exe ExecuteScheduledSPPCreation; Popis = Naplánovaný kontrolní bod; Chyba = 0x80070422).

Error: (07/09/2023 11:37:11 AM) (Source: System Restore) (EventID: 8193) (User: )
Description: Vytvoření bodu obnovení se nezdařilo (Proces = C:\WINDOWS\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.3025_none_7e36ee127c6f13fc\TiWorker.exe -Embedding; Popis = Instalační služba modulů systému Windows; Chyba = 0x80070422).


System errors:
=============
Error: (07/14/2023 10:22:02 PM) (Source: BugCheck) (EventID: 1001) (User: )
Description: Počítač byl restartován z procesu kontroly chyb. Kontrola chyb: 0x00000124 (0x0000000000000000, 0xffff9083b4575028, 0x00000000be000000, 0x000000000100110b). Výpis byl uložen do: C:\WINDOWS\MEMORY.DMP. ID hlášení: b8ce074f-499c-4c5c-b750-9f4f8040c5a6

Error: (07/14/2023 10:21:54 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Realtek DHCP Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (07/14/2023 10:21:46 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (22:20:05, ‎14.‎07.‎2023) bylo neočekávané.

Error: (07/14/2023 07:27:13 PM) (Source: BTHUSB) (EventID: 16) (User: )
Description: Vzájemné ověření mezi místním adaptérem Bluetooth a zařízením s adresou adaptéru Bluetooth (f0:13:c3:61:82:d7) se nezdařilo.

Error: (07/13/2023 09:40:25 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Realtek DHCP Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (07/10/2023 10:07:09 PM) (Source: DCOM) (EventID: 10010) (User: MAROSASUS2)
Description: Server microsoft.windowscommunicationsapps_16005.14326.21490.0_x64__8wekyb3d8bbwe!microsoft.windowslive.calendar.AppXwkn9j84yh1kvnt49k5r8h6y1ecsv09hs.mca se v daném časovém limitu neregistroval u služby DCOM.

Error: (07/10/2023 10:07:09 PM) (Source: DCOM) (EventID: 10010) (User: MAROSASUS2)
Description: Server Microsoft.BingWeather_4.53.51775.0_x64__8wekyb3d8bbwe!App.AppXydmptpzm8pts0mhzrytvzy52ye9x3ttq.mca se v daném časovém limitu neregistroval u služby DCOM.

Error: (07/10/2023 09:20:46 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Windows Camera Frame Server byla neočekávaně ukončena. Tento stav nastal již 1krát.


Windows Defender:
================
Date: 2023-07-13 17:55:43
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {E00DC9E1-E603-4091-9EC5-A97660806E01}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2023-07-09 11:34:59
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {DBDA65E4-76F5-4AD1-B799-4E5C8B3D06E3}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2023-07-07 14:27:56
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {35ED7D3C-C49B-401C-AEF5-F679CDA90FEE}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2023-07-06 12:17:24
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {AA7D70A3-9038-4DB3-BA6D-583344ABB7B0}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

Date: 2023-07-05 13:35:20
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {A1C84A72-F275-4B0B-811D-4870FCC1A596}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM
Event[0]:

Date: 2023-03-03 16:55:15
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.383.916.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.20000.2
Kód chyby: 0x80070050
Popis chyby: Soubor existuje.

Date: 2023-01-11 16:24:54
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.381.1969.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\NETWORK SERVICE
Aktuální verze modulu:
Předchozí verze modulu: 1.1.19900.2
Kód chyby: 0x80070102
Popis chyby: Vypršel časový limit operace čekání.

CodeIntegrity:
===============
Date: 2023-07-13 17:53:58
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.5-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2023-05-27 10:46:42
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\ProgramData\Microsoft\Windows Defender\Platform\4.18.23050.3-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2023-05-11 19:28:29
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2023-04-14 17:16:12
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\ProgramData\Microsoft\Windows Defender\Platform\4.18.2303.8-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2023-03-24 16:49:08
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.7-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2023-03-20 18:16:34
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\ProgramData\Microsoft\Windows Defender\Platform\4.18.2302.3-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume3\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info ===========================

BIOS: American Megatrends Inc. X751LB.606 12/07/2015
Motherboard: ASUSTeK COMPUTER INC. X751LB
Processor: Intel(R) Core(TM) i7-5500U CPU @ 2.40GHz
Percentage of memory in use: 42%
Total physical RAM: 12158.74 MB
Available physical RAM: 7007.38 MB
Total Virtual: 14014.74 MB
Available Virtual: 8545.25 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:371.34 GB) (Free:65.58 GB) (Model: Verbatim Vi550 S3) NTFS
Drive d: (DATA) (Fixed) (Total:581.26 GB) (Free:171.05 GB) (Model: Verbatim Vi550 S3) NTFS

\\?\Volume{4419ebd6-f5aa-4e72-9d89-ebc13c5a392d}\ () (Fixed) (Total:0.51 GB) (Free:0.05 GB) NTFS
\\?\Volume{f7f26e06-fabb-4783-926c-d93c11a4365a}\ (RECOVERY) (Fixed) (Total:0.49 GB) (Free:0.09 GB) NTFS
\\?\Volume{a211259f-19d9-45a7-9a3a-908635ef760d}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Protective MBR) (Size: 953.9 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt =======================

Uživatelský avatar
JaRon
Moderátor
Moderátor
Příspěvky: 15216
Registrován: 29 bře 2005 13:39
Bydliště: BB-SK

Re: Prosim o kontrolu logu

#5 Příspěvek od JaRon »

1. vycisti PC s Adwcleanerom
2. spust ako spravca s prikazoveho riadku
sfc /scannow
FRST |ADWCleaner |MBAM |CCleaner |AVPTool

V prípade spokojnosti je možné podporiť fórum
https://platba.viry.cz/payment/

Odpovědět