Stránka 1 z 1

Lehké záseky notebooku

Napsal: 16 lis 2024 15:29
od Herrynek
Zdravím. Prosím o kontrolu logu. Objevily se lehké záseky NB. Tak jestli v tom není nějaká breberka. Děkuji

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 14-11-2024
Ran by pocitac (administrator) on DESKTOP-BFEMM0E (LENOVO 82JU) (16-11-2024 15:23:00)
Running from C:\Users\pocitac\Desktop\FRST64.exe
Loaded Profiles: pocitac
Platform: Microsoft Windows 10 Pro Version 22H2 19045.5011 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.40028.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe
(0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.40028.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe
(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe
(A-Volute SAS -> A-Volute) C:\Users\pocitac\AppData\Local\NhNotifSys\nahimic\nahimicNotifSys.exe
(C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantage-(DeviceSettingsSystemAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantage-(GenericMessagingAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantage-(LenovoGamingSystemAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantage-(LenovoServiceBridgeAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantage-(VantageCoreAddin).exe
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <7>
(C:\Program Files\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe ->) (Node.js Foundation -> Node.js) C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe
(C:\Program Files\Adobe\Adobe Creative Cloud Experience\libs\node.exe ->) (Adobe Inc. -> Adobe Inc) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\IPCBox\AdobeIPCBroker.exe
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_1f1bd4b8a7603166\LenovoUtilityService.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_1f1bd4b8a7603166\FnHotkeyCapsLKNumLK.exe
(DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_1f1bd4b8a7603166\LenovoUtilityService.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_1f1bd4b8a7603166\FnHotkeyUtility.exe
(DriverStore\FileRepository\u0371192.inf_amd64_c5a25be7573aa550\B369681\atiesrxx.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0371192.inf_amd64_c5a25be7573aa550\B369681\atieclxx.exe
(explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MusNotifyIcon.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Advanced Micro Devices Inc. -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0371192.inf_amd64_c5a25be7573aa550\B369681\atiesrxx.exe
(services.exe ->) (A-Volute SAS -> Nahimic) C:\Windows\System32\NahimicService.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\efwd.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantageService.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_1f1bd4b8a7603166\LenovoUtilityService.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Locator.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <2>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvlti.inf_amd64_00cc3a692c57c34d\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (NZXT, Inc. -> ) C:\Program Files\NZXT CAM\resources\app.asar.unpacked\node_modules\@nzxt\cam-core\dist\target\x86_64-pc-windows-msvc\release\service.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_74518f403e753586\RtkAudUService64.exe <2>
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\WinSxS\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.19041.5071_none_7e3c4e707c6a2679\TiWorker.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_74518f403e753586\RtkAudUService64.exe [1219312 2020-12-24] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [196008 2024-10-05] (ESET, spol. s r.o. -> ESET)
HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2022-05-25] (Adobe Inc. -> )
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-922192746-2314981634-1628445160-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4412512 2024-11-12] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-922192746-2314981634-1628445160-1001\...\MountPoints2: {15ffc5ad-6101-11ed-b5b4-902e16feee9a} - "D:\HiSuiteDownLoader.exe"
HKU\S-1-5-21-922192746-2314981634-1628445160-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\scrnsave.scr [39936 2024-05-26] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\130.0.6723.119\Installer\chrmstp.exe [2024-11-14] (Google LLC -> Google LLC)

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {DE9D76F2-EBD7-4984-A7AA-E98AABEF34D7} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1574856 2024-09-25] (Adobe Inc. -> Adobe Inc.)
Task: {A7F414C9-8384-4E96-8E4A-D52F65D5929D} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem132.0.6806.0{5B68BAD3-F478-4E35-9B6B-B69B0785B1B2} => C:\Program Files (x86)\Google\GoogleUpdater\132.0.6806.0\updater.exe [5567072 2024-10-29] (Google LLC -> Google LLC)
Task: {44A5264A-55D3-4E32-B4F7-6C803306F97D} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\Windows\system32\ImController.InfInstaller.exe [94496 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {FFE5F62D-648F-4C18-AEF5-77B27CB24F24} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => C:\Windows\system32\sc.exe [72192 2019-12-07] (Microsoft Windows -> Microsoft Corporation) -> START ImControllerService
Task: {63616776-6430-4671-9F02-F66C68877430} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => C:\Windows\System32\reg.exe [77312 2019-12-07] (Microsoft Windows -> Microsoft Corporation) -> add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32
Task: {A6080E4E-FED8-4F17-B450-1DAE333407A6} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\021b1998-a447-4be3-a70f-4a08e3549d75 => C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {741B364F-3D4B-44CF-9FA0-3149B64ABCFD} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\263e29c8-1330-444e-9aaf-b0470c9a3821 => C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {E010D128-2725-4E58-A6B4-D0189A0B756A} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\9a721480-815e-42c1-a624-028b56ce16c8 => C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {37E27E49-7056-4DB9-9645-18E8900FA9D8} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\aeea42dc-059e-471f-aefb-cc7b32022922 => C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {04A644B9-1F99-4CE4-8B05-9F8E9D97180D} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\b46aa64e-0602-4920-a78d-d25c6d39ad91 => C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {CFF65FF0-F99D-4DE8-905A-59D89D35AA86} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServiceMaintainance => C:\Windows\system32\sc.exe [72192 2019-12-07] (Microsoft Windows -> Microsoft Corporation) -> start LenovoVantageService
Task: {6C57A1F8-68E6-4F50-BC69-548E407E303B} - System32\Tasks\Lenovo\Vantage\Schedule\BatteryGaugeAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {0447BE51-108F-4D2B-BCC8-552E6AFDAE5A} - System32\Tasks\Lenovo\Vantage\Schedule\DailyTelemetryTransmission => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {94C20FC7-9125-4E17-BC7C-3DF9C375AF05} - System32\Tasks\Lenovo\Vantage\Schedule\GenericMessagingAddin => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {001F0742-E085-4B55-92DF-18057626FE90} - System32\Tasks\Lenovo\Vantage\Schedule\HeartbeatAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {F6430A0D-ECE7-4D6C-BD0C-19380B626639} - System32\Tasks\Lenovo\Vantage\Schedule\IdeaNotebookAddinDailyEvent => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {D9E4D75C-5783-46FC-8862-B599121D276D} - System32\Tasks\Lenovo\Vantage\Schedule\Lenovo.Vantage.SmartPerformance.MonthlyReport => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {F1BFE8F4-B2CF-482C-845E-BEB6B47261EB} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoCompanionAppAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {25894A4C-62CB-44A2-BDD6-E271565BD397} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoSystemUpdateAddin_WeeklyTask => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {B9113612-E7FD-4351-8B11-4C1CD6079F18} - System32\Tasks\Lenovo\Vantage\Schedule\NotificationCenter => C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe NotificationCenter (No File)
Task: {EBD7202A-2491-4905-B235-149541E255B3} - System32\Tasks\Lenovo\Vantage\Schedule\SettingsWidgetAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {8434EDE5-EE52-445B-BF26-E10A07BE8CBC} - System32\Tasks\Lenovo\Vantage\Schedule\SmartPerformance.ExpireReminder => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {4B1B7203-7EC1-4041-A656-DA317F69A114} - System32\Tasks\Lenovo\Vantage\Schedule\VantageCoreAddinIdleScheduleTask => C:\ProgramData\Lenovo\Vantage\Addins\VantageCoreAddin\1.0.0.181\x64\IdleScheduleEventAction.exe [143768 2024-11-01] (Lenovo -> )
Task: {639B829E-BF57-41B4-81A9-80E0BEF5AD12} - System32\Tasks\Lenovo\Vantage\Schedule\VantageCoreAddinWeekScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {DE493D12-C139-4664-8F85-20F7D2EAFBC0} - System32\Tasks\Lenovo\Vantage\StartupFixPlan => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\uninstall.exe [340968 2024-09-12] (Lenovo -> Lenovo)
Task: {5B815D73-7838-4E8C-A833-20833924A992} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => %ProgramFiles%\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe (No File)
Task: {CE62928B-3D95-4185-B2EE-683C6B790AC2} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {A0A8AF17-B87E-43CD-87D4-5C0414AE3105} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {D47D1D60-1A74-4A1B-A299-CE4F2A8C0066} - System32\Tasks\NvDriverUpdateCheckDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe [1277480 2024-04-10] (NVIDIA Corporation -> NVIDIA Corporation) -> C:\Program Files\NVIDIA Corporation\NvContainer\-d "C:\Program Files\NVIDIA Corporation\NvDriverUpdateCheck" -l 3 -f C:\ProgramData\NVIDIA\NvContainerDriverUpdateCheck.log
Task: {385B9AFA-BCE6-4E8D-B693-BC3FDB3E59CC} - System32\Tasks\NVIDIA GeForce Experience SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA GeForce Experience\NVIDIA GeForce Experience.exe [3347496 2024-04-10] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {69733F2E-907F-4715-9654-8F4FDA07EF0E} - System32\Tasks\NvNodeLauncher_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files (x86)\NVIDIA Corporation\NvNode\nvnodejslauncher.exe [646696 2024-04-10] (NVIDIA Corporation -> NVIDIA Corporation) -> C:\Program Files (x86)\NVIDIA Corporation\NvNode\--launcher=TaskScheduler
Task: {96C72372-127F-4EFD-B319-09A2B99DA07B} - System32\Tasks\NvProfileUpdaterDaily_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [908328 2024-04-10] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {0C27E865-25E4-4E4C-9376-C1259876A932} - System32\Tasks\NvProfileUpdaterOnLogon_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\Update Core\NvProfileUpdater64.exe [908328 2024-04-10] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {0C5CCC7C-31CE-482E-9531-5462703604CB} - System32\Tasks\NvTmRep_CrashReport1_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1673768 2024-04-10] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {2CFFE0AD-5DE1-42DC-8A5C-5A1BEF8BA3F5} - System32\Tasks\NvTmRep_CrashReport2_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1673768 2024-04-10] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {DC5F8C8E-EC44-4474-8421-D6C81ED84812} - System32\Tasks\NvTmRep_CrashReport3_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1673768 2024-04-10] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {695648E5-AC2A-4322-B0A6-4446DEDAF22B} - System32\Tasks\NvTmRep_CrashReport4_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NvBackend\NvTmRep.exe [1673768 2024-04-10] (NVIDIA Corporation -> NVIDIA Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 31.30.90.11 31.30.90.12
Tcpip\..\Interfaces\{2a866a60-4507-4e8c-97c3-2f73e430f84c}: [DhcpNameServer] 193.17.47.1 185.43.135.1 85.162.162.85 8.8.8.8
Tcpip\..\Interfaces\{80b92e48-3d3d-4e35-aeb7-471a682a26a5}: [DhcpNameServer] 31.30.90.11 31.30.90.12
Tcpip\..\Interfaces\{80b92e48-3d3d-4e35-aeb7-471a682a26a5}: [DhcpDomain] home
Tcpip\..\Interfaces\{80b92e48-3d3d-4e35-aeb7-471a682a26a5}\55053433231383530313: [DhcpNameServer] 31.30.90.11 31.30.90.12
Tcpip\..\Interfaces\{80b92e48-3d3d-4e35-aeb7-471a682a26a5}\55053433231383530313: [DhcpDomain] docsis.vodafone.cz
Tcpip\..\Interfaces\{80b92e48-3d3d-4e35-aeb7-471a682a26a5}\65F6461666F6E656D264448344: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{80b92e48-3d3d-4e35-aeb7-471a682a26a5}\65F6461666F6E656D264448344: [DhcpDomain] docsis.vodafone.cz

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\pocitac\AppData\Local\Microsoft\Edge\User Data\Default [2024-10-17]
Edge Extension: (Dokumenty Google offline) - C:\Users\pocitac\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-04-05]
Edge Extension: (Edge relevant text changes) - C:\Users\pocitac\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]

FireFox:
========
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2022-11-08] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2024-11-13] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~2\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)

Chrome:
=======
CHR Profile: C:\Users\pocitac\AppData\Local\Google\Chrome\User Data\Default [2024-11-16]
CHR DownloadDir: C:\Users\pocitac\Desktop
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR Extension: (Dokumenty Google offline) - C:\Users\pocitac\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-11-02]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\pocitac\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-03-25]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [172992 2024-09-25] (Adobe Inc. -> Adobe Inc.)
R2 CAMService; C:\Program Files\NZXT CAM\resources\app.asar.unpacked\node_modules\@nzxt\cam-core\dist\target\x86_64-pc-windows-msvc\release\service.exe [640448 2023-02-08] (NZXT, Inc. -> )
R2 efwd; C:\Program Files\ESET\ESET Security\efwd.exe [5527928 2024-10-05] (ESET, spol. s r.o. -> ESET)
S3 EHttpSrv; C:\Program Files\ESET\ESET Security\ehttpsrv.exe [57720 2024-10-05] (ESET, spol. s r.o. -> ESET)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [3945464 2024-10-05] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [3945464 2024-10-05] (ESET, spol. s r.o. -> ESET)
R2 ImControllerService; C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
R2 LenovoFnAndFunctionKeys; C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_1f1bd4b8a7603166\LenovoUtilityService.exe [178656 2024-08-21] (Lenovo -> Lenovo)
R2 LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantageService.exe [34256 2024-09-12] (Lenovo -> Lenovo)
R2 NahimicService; C:\Windows\system32\NahimicService.exe [1633288 2020-12-09] (A-Volute SAS -> Nahimic)
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nvlti.inf_amd64_00cc3a692c57c34d\Display.NvContainer\NVDisplay.Container.exe [1275440 2024-05-08] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [530488 2024-09-13] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\NisSrv.exe [3116848 2022-04-16] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2203.5-0\MsMpEng.exe [133544 2022-04-16] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [282624 2023-08-16] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [147968 2022-03-25] (Microsoft Corporation) [File not signed]
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R1 eamonm; C:\Windows\System32\DRIVERS\eamonm.sys [218832 2024-08-10] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\Windows\System32\DRIVERS\eelam.sys [16336 2022-09-16] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\Windows\system32\DRIVERS\ehdrv.sys [265824 2024-08-10] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\Windows\system32\DRIVERS\epfw.sys [84016 2024-08-10] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\Windows\system32\DRIVERS\epfwwfp.sys [126360 2024-08-10] (ESET, spol. s r.o. -> ESET)
R3 MTKBTFilterx64; C:\Windows\system32\DRIVERS\mtkbtfilterx.sys [285896 2022-04-07] (MEDIATEK INC. -> MediaTek Inc.)
R3 mtkwlex; C:\Windows\System32\drivers\mtkwl6ex.sys [1418448 2022-03-31] (MEDIATEK INC. -> MediaTek Inc.)
R3 Nahimic_Mirroring; C:\Windows\System32\drivers\Nahimic_Mirroring.sys [85592 2020-06-16] (A-Volute -> Windows (R) Win 7 DDK provider)
R3 NvModuleTracker; C:\Windows\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_ea6cec41fc5b2a8b\NvModuleTracker.sys [47240 2024-04-03] (NVIDIA Corporation -> NVIDIA Corporation)
R3 nvpcf; C:\Windows\System32\drivers\nvpcf.sys [235016 2024-05-07] (NVIDIA Corporation -> NVIDIA Corporation)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R3 ViGEmBus; C:\Windows\System32\drivers\ViGEmBus.sys [69168 2019-04-04] (Microsoft Windows Hardware Compatibility Publisher -> Benjamin Höglinger-Stelzer)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [49600 2022-04-16] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [443664 2022-04-16] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [90384 2022-04-16] (Microsoft Windows -> Microsoft Corporation)
S3 cpuz152; \??\C:\Windows\temp\cpuz152\cpuz152_x64.sys [X] <==== ATTENTION
S3 cpuz154; \??\C:\Windows\temp\cpuz154\cpuz154_x64.sys [X] <==== ATTENTION

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2024-11-16 15:23 - 2024-11-16 15:23 - 000025006 _____ C:\Users\pocitac\Desktop\FRST.txt
2024-11-16 15:22 - 2024-11-16 15:23 - 000000000 ____D C:\FRST
2024-11-16 15:21 - 2024-11-16 15:21 - 002402304 _____ (Farbar) C:\Users\pocitac\Desktop\FRST64.exe
2024-11-16 14:52 - 2024-11-16 14:52 - 000000000 ___HD C:\$WinREAgent
2024-11-10 18:12 - 2024-11-10 18:12 - 000001663 _____ C:\Users\pocitac\Desktop\HogwartsLegacy.exe – zástupce.lnk
2024-11-09 09:18 - 2024-11-09 09:18 - 008650029 _____ C:\Users\pocitac\Desktop\vintage-photography-frames-flat-design.zip
2024-11-09 09:05 - 2024-11-09 09:06 - 041638813 _____ C:\Users\pocitac\Desktop\parchment-paper-isolated.zip
2024-11-09 09:02 - 2024-11-09 09:02 - 019620520 _____ C:\Users\pocitac\Desktop\wedding-invitation-with-vintage-paper.zip
2024-10-31 17:35 - 2024-10-31 17:35 - 000471913 _____ C:\Users\pocitac\Desktop\ThisBedWeMade-CZ.rar
2024-10-29 20:01 - 2024-10-29 20:02 - 000000000 ____D C:\Users\pocitac\Desktop\Briggs Patricia audioknihy
2024-10-28 18:14 - 2024-10-28 18:14 - 011006550 _____ C:\Users\pocitac\Desktop\Jsem tvým příběhem z minulého vtělení 🙏🏼🤍.aac
2024-10-28 18:12 - 2024-10-28 18:13 - 033855034 _____ C:\Users\pocitac\Desktop\zasilka-QXNIF4DZ7YK382VI.zip
2024-10-17 17:21 - 2024-10-17 19:24 - 000038795 _____ C:\Users\pocitac\Desktop\hracka.prproj

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2024-11-16 15:20 - 2023-07-31 09:06 - 000000000 ____D C:\Program Files (x86)\Steam
2024-11-16 14:58 - 2019-12-07 10:03 - 000000000 ____D C:\Windows\CbsTemp
2024-11-16 14:51 - 2022-03-25 17:21 - 000000000 ____D C:\Windows\system32\MRT
2024-11-16 14:51 - 2022-03-25 16:55 - 000000000 ____D C:\Users\pocitac\AppData\Local\D3DSCache
2024-11-16 14:51 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2024-11-16 14:51 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness
2024-11-16 14:50 - 2022-03-25 17:21 - 202035632 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2024-11-16 14:50 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2024-11-16 14:37 - 2022-10-15 18:26 - 000002073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2024-11-16 14:37 - 2022-10-15 18:26 - 000002061 _____ C:\Users\Public\Desktop\Adobe Acrobat.lnk
2024-11-16 14:37 - 2022-03-29 08:51 - 000004562 _____ C:\Windows\system32\Tasks\Adobe Acrobat Update Task
2024-11-16 14:23 - 2022-03-25 17:09 - 000000000 ____D C:\ProgramData\NVIDIA
2024-11-14 16:06 - 2022-03-28 08:23 - 000003588 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-922192746-2314981634-1628445160-1001
2024-11-14 16:06 - 2022-03-25 16:53 - 000003382 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-922192746-2314981634-1628445160-1001
2024-11-14 16:06 - 2022-03-25 16:51 - 000002383 _____ C:\Users\pocitac\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2024-11-14 16:04 - 2022-03-25 18:26 - 000000000 ____D C:\Windows\SystemTemp
2024-11-14 16:04 - 2022-03-25 17:15 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2024-11-14 16:04 - 2022-03-25 17:15 - 000002206 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2024-11-11 17:15 - 2022-03-25 16:48 - 000000000 ____D C:\Windows\system32\SleepStudy
2024-11-09 17:58 - 2022-03-25 16:49 - 000003640 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2024-11-09 17:58 - 2022-03-25 16:49 - 000003516 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2024-11-09 09:12 - 2022-03-30 15:32 - 000000000 ____D C:\Program Files (x86)\Hry
2024-11-09 07:55 - 2022-03-25 16:49 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2024-11-08 18:43 - 2022-08-23 13:43 - 000000000 ____D C:\Users\pocitac\AppData\Local\Webshare
2024-11-08 17:17 - 2022-03-25 16:54 - 001694140 _____ C:\Windows\system32\PerfStringBackup.INI
2024-11-08 17:17 - 2019-12-07 15:43 - 000718262 _____ C:\Windows\system32\perfh005.dat
2024-11-08 17:17 - 2019-12-07 15:43 - 000145404 _____ C:\Windows\system32\perfc005.dat
2024-11-08 17:17 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF
2024-11-08 17:10 - 2022-03-25 16:49 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2024-11-08 17:10 - 2022-03-25 16:48 - 000008192 ___SH C:\DumpStack.log.tmp
2024-11-08 17:10 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\ServiceState
2024-11-06 20:41 - 2019-12-07 10:03 - 000524288 _____ C:\Windows\system32\config\BBI
2024-11-06 17:51 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\LiveKernelReports
2024-10-31 21:26 - 2022-08-23 17:24 - 000000000 ____D C:\Users\pocitac\AppData\Local\CrashDumps
2024-10-29 20:15 - 2023-08-21 18:47 - 000000000 ____D C:\Users\pocitac\AppData\Roaming\vlc
2024-10-25 15:23 - 2022-03-25 16:51 - 000000000 ____D C:\Users\pocitac\AppData\Local\Packages
2024-10-21 20:51 - 2023-10-13 16:16 - 000000000 ____D C:\Program Files\RUXIM
2024-10-21 19:35 - 2022-06-14 14:20 - 000000000 ____D C:\Users\pocitac\AppData\Roaming\calibre
2024-10-21 18:53 - 2022-03-29 09:29 - 000000000 ____D C:\Users\pocitac\AppData\Roaming\Microsoft\Word
2024-10-21 18:53 - 2022-03-29 09:29 - 000000000 ____D C:\Users\pocitac\AppData\Roaming\Microsoft\Šablony
2024-10-21 18:48 - 2023-09-02 12:09 - 000000000 ____D C:\Users\pocitac\Desktop\filmy
2024-10-17 20:12 - 2022-03-25 16:48 - 000447400 _____ C:\Windows\system32\FNTCACHE.DAT
2024-10-17 20:12 - 2019-12-07 15:44 - 000000000 ____D C:\Windows\system32\OpenSSH
2024-10-17 20:12 - 2019-12-07 10:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2024-10-17 20:12 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata
2024-10-17 20:12 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SysWOW64\Dism
2024-10-17 20:12 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\SystemResources
2024-10-17 20:12 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\WinMetadata
2024-10-17 20:12 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\oobe
2024-10-17 20:12 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\Dism
2024-10-17 20:12 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\system32\appraiser
2024-10-17 20:12 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\ShellExperiences
2024-10-17 20:12 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\PolicyDefinitions
2024-10-17 20:12 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\bcastdvr
2024-10-17 19:56 - 2022-08-20 09:13 - 000000000 ____D C:\Users\pocitac\Desktop\Adobe Premiere Pro Auto-Save
2024-10-17 19:28 - 2022-08-20 19:13 - 000000000 ____D C:\Users\pocitac\Desktop\Adobe Premiere Pro Audio Previews
2024-10-17 19:28 - 2022-08-20 16:04 - 000000000 ____D C:\Users\pocitac\Desktop\Adobe Premiere Pro Video Previews
2024-10-17 16:37 - 2022-09-17 11:14 - 000000000 ____D C:\Users\pocitac\AppData\Roaming\com.adobe.dunamis
2024-10-17 16:37 - 2022-03-29 08:48 - 000000000 ____D C:\Users\pocitac\AppData\Local\Adobe
2024-10-17 16:37 - 2022-03-25 16:51 - 000000000 ____D C:\Users\pocitac\AppData\Roaming\Adobe
2024-10-17 16:25 - 2022-03-25 16:52 - 003016192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll

==================== Files in the root of some directories ========

2022-12-26 16:44 - 2022-12-27 17:34 - 000012288 _____ () C:\Users\pocitac\AppData\Roaming\emp.bin
2022-09-20 17:14 - 2022-09-20 17:14 - 000332800 _____ () C:\Users\pocitac\AppData\Roaming\patcher.dll

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Re: Lehké záseky notebooku

Napsal: 16 lis 2024 15:29
od Herrynek
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14-11-2024
Ran by pocitac (16-11-2024 15:24:20)
Running from C:\Users\pocitac\Desktop
Microsoft Windows 10 Pro Version 22H2 19045.5011 (X64) (2022-03-25 15:50:12)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-922192746-2314981634-1628445160-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-922192746-2314981634-1628445160-503 - Limited - Disabled)
Guest (S-1-5-21-922192746-2314981634-1628445160-501 - Limited - Disabled)
pocitac (S-1-5-21-922192746-2314981634-1628445160-1001 - Administrator - Enabled) => C:\Users\pocitac
WDAGUtilityAccount (S-1-5-21-922192746-2314981634-1628445160-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: ESET Security (Enabled - Up to date) {DF8BEACB-94C9-218A-73AD-A78362A8C516}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET Security (Enabled - Up to date) {26E0861C-6FB9-CEF9-E4F0-531986211ACE}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

7-Zip 22.01 (x64) (HKLM\...\7-Zip) (Version: 22.01 - Igor Pavlov)
A Way Out (HKLM-x32\...\{E8D752CF-2FCC-470D-B0C5-4BFC6F42ACCE}) (Version: 1.0.62.0 - Electronic Arts, Inc.)
Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1029-1033-7760-BC15014EA700}) (Version: 24.004.20272 - Adobe)
Adobe After Effects 2021 (HKLM-x32\...\AEFT_18_2) (Version: 18.2 - Adobe Inc.)
Adobe Premiere Pro 2021 (HKLM-x32\...\PPRO_15_4_1) (Version: 15.4.1 - Adobe Inc.)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601102}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
calibre (HKLM-x32\...\{85703FD4-26A1-436A-85DA-A2612DE45C60}) (Version: 5.43.0 - Kovid Goyal)
ČEŠTINA A WAY OUT v 0.9 (HKU\S-1-5-21-922192746-2314981634-1628445160-1001\...\ČEŠTINA A WAY OUT v 0.9) (Version: - )
Detroit Become Human (HKLM-x32\...\Detroit Become Human_is1) (Version: - )
ESET Endpoint Antivirus (HKLM\...\{F8DE2A0C-AE50-4915-9F99-12A9B1DFCADA}) (Version: 11.1.2052.0 - ESET, spol. s r.o.)
Gas Station Simulator - Party Time (HKLM-x32\...\FLT_Gas_Station_Simulator) (Version: - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 130.0.6723.119 - Google LLC)
Intel(R) C++ Redistributables on Intel(R) 64 (HKLM-x32\...\{F70BCE36-25F2-4475-A918-6209B3D85BF3}) (Version: 15.0.179 - Intel Corporation)
It Takes Two (HKLM-x32\...\It Takes Two_is1) (Version: - )
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Legion Arena (HKLM-x32\...\Legion Arena_is1) (Version: 1.3.1.1 - Lenovo Group Ltd.)
Lenovo Vantage Service (HKLM-x32\...\VantageSRV_is1) (Version: 4.2.24.0 - Lenovo Group Ltd.)
Maxon Cinema 4D 22 (HKLM\...\Maxon Cinema 4D S22) (Version: S22 - Maxon)
Microsoft Access MUI (Czech) 2013 (HKLM-x32\...\{90150000-0015-0405-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft DCF MUI (Czech) 2013 (HKLM-x32\...\{90150000-0090-0405-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 130.0.2849.80 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 130.0.2849.80 - Microsoft Corporation)
Microsoft Excel MUI (Czech) 2013 (HKLM-x32\...\{90150000-0016-0405-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Groove MUI (Czech) 2013 (HKLM-x32\...\{90150000-00BA-0405-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft InfoPath MUI (Czech) 2013 (HKLM-x32\...\{90150000-0044-0405-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Lync MUI (Czech) 2013 (HKLM-x32\...\{90150000-012B-0405-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office 64-bit Components 2013 (HKLM\...\{90150000-002A-0000-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Korrekturhilfen 2013 - Deutsch (HKLM-x32\...\{90150000-001F-0407-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (Czech) 2013 (HKLM-x32\...\{90150000-00E1-0405-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM UX MUI (Czech) 2013 (HKLM-x32\...\{90150000-00E2-0405-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (HKLM-x32\...\Office15.PROPLUS) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office Proofing (Czech) 2013 (HKLM-x32\...\{90150000-002C-0405-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - English (HKLM-x32\...\{90150000-001F-0409-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (Czech) 2013 (HKLM\...\{90150000-002A-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Czech) 2013 (HKLM-x32\...\{90150000-006E-0405-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKU\S-1-5-21-922192746-2314981634-1628445160-1001\...\OneDriveSetup.exe) (Version: 24.206.1013.0004 - Microsoft Corporation)
Microsoft OneNote MUI (Czech) 2013 (HKLM-x32\...\{90150000-00A1-0405-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Outlook MUI (Czech) 2013 (HKLM-x32\...\{90150000-001A-0405-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft PowerPoint MUI (Czech) 2013 (HKLM-x32\...\{90150000-0018-0405-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Publisher MUI (Czech) 2013 (HKLM-x32\...\{90150000-0019-0405-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.36.32532 (HKLM-x32\...\{8bdfe669-9705-4184-9368-db9ce581e0e7}) (Version: 14.36.32532.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.36.32532 (HKLM-x32\...\{410c0ee1-00bb-41b6-9772-e12c2828b02f}) (Version: 14.36.32532.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.36.32532 (HKLM\...\{0025DD72-A959-45B5-A0A3-7EFEB15A8050}) (Version: 14.36.32532 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.36.32532 (HKLM\...\{D5D19E2F-7189-42FE-8103-92CD1FA457C2}) (Version: 14.36.32532 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.36.32532 (HKLM-x32\...\{C2C59CAB-8766-4ABD-A8EF-1151A36C41E5}) (Version: 14.36.32532 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.36.32532 (HKLM-x32\...\{73F77E4E-5A17-46E5-A5FC-8A061047725F}) (Version: 14.36.32532 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}) (Version: 10.0.50908 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Word MUI (Czech) 2013 (HKLM-x32\...\{90150000-001B-0405-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština (HKLM-x32\...\{90150000-001F-0405-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina (HKLM-x32\...\{90150000-001F-041B-0000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Notepad++ (64-bit x64) (HKLM\...\Notepad++) (Version: 8.4.2 - Notepad++ Team)
NVIDIA FrameView SDK 1.3.8513.32290073 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.3.8513.32290073 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.28.0.412 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.28.0.412 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.40.14 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.40.14 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 552.44 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 552.44 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation)
NVIDIA USBC Driver 1.50.831.832 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_USBC) (Version: 1.50.831.832 - NVIDIA Corporation)
NZXT CAM 4.45.3 (HKLM\...\ac0666ae-ee66-5310-ac01-9d6348133b2d) (Version: 4.45.3 - NZXT, Inc.)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{7F6C4883-A18C-459A-82C1-A2F9403F2DA6}) (Version: - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-0015-0405-0000-0000000FF1CE}_Office15.PROPLUS_{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-0016-0405-0000-0000000FF1CE}_Office15.PROPLUS_{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-0018-0405-0000-0000000FF1CE}_Office15.PROPLUS_{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-0019-0405-0000-0000000FF1CE}_Office15.PROPLUS_{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-001A-0405-0000-0000000FF1CE}_Office15.PROPLUS_{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-001B-0405-0000-0000000FF1CE}_Office15.PROPLUS_{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-001F-0405-0000-0000000FF1CE}_Office15.PROPLUS_{0A504FDF-F8F7-4792-9360-1F45E38F005D}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-001F-0407-0000-0000000FF1CE}_Office15.PROPLUS_{55A588B8-2D30-4B60-AB09-5DB57C592B81}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-001F-0409-0000-0000000FF1CE}_Office15.PROPLUS_{1F79A96A-2A70-45B3-8A5C-79DA61952879}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-001F-041B-0000-0000000FF1CE}_Office15.PROPLUS_{F1B4FD6F-C4F9-42B7-9B9E-BF3B24A8192D}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PROPLUS_{7A8FE9A6-2BBC-48F7-A2CF-2578F60EC895}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0405-1000-0000000FF1CE}_Office15.PROPLUS_{4C4BCB5E-6458-4573-99DF-535EFCFD6AFC}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-002C-0405-0000-0000000FF1CE}_Office15.PROPLUS_{7C7CDE76-1FF8-411F-9DA4-B4F91DBB58F5}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-0044-0405-0000-0000000FF1CE}_Office15.PROPLUS_{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-006E-0405-0000-0000000FF1CE}_Office15.PROPLUS_{DBBAB83F-8D50-4AFB-B0FF-8B90CA68B215}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-0090-0405-0000-0000000FF1CE}_Office15.PROPLUS_{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-00A1-0405-0000-0000000FF1CE}_Office15.PROPLUS_{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-00BA-0405-0000-0000000FF1CE}_Office15.PROPLUS_{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-00E1-0405-0000-0000000FF1CE}_Office15.PROPLUS_{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-00E2-0405-0000-0000000FF1CE}_Office15.PROPLUS_{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 32-Bit Edition (HKLM-x32\...\{90150000-012B-0405-0000-0000000FF1CE}_Office15.PROPLUS_{78A9943A-5DB1-4B90-8AEF-5CE30456FB6E}) (Version: - Microsoft) Hidden
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 148.1.10975 - Ubisoft)
UE4 Prerequisites (x64) (HKLM\...\{D7B591D8-1091-4A00-A0B3-5301C45E5D51}) (Version: 1.0.14.0 - Epic Games, Inc.) Hidden
UE4 Prerequisites (x64) (HKLM-x32\...\{0d995f46-317b-4b5f-bf3e-9f98bae9d339}) (Version: 1.0.14.0 - Epic Games, Inc.) Hidden
Update for Skype for Business 2015 (KB4484289) 32-Bit Edition (HKLM-x32\...\{90150000-0011-0000-0000-0000000FF1CE}_Office15.PROPLUS_{F97B139A-D8BF-46FF-A6F6-50710FED8644}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484289) 32-Bit Edition (HKLM-x32\...\{90150000-002A-0000-1000-0000000FF1CE}_Office15.PROPLUS_{F97B139A-D8BF-46FF-A6F6-50710FED8644}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484289) 32-Bit Edition (HKLM-x32\...\{90150000-012B-0405-0000-0000000FF1CE}_Office15.PROPLUS_{F97B139A-D8BF-46FF-A6F6-50710FED8644}) (Version: - Microsoft)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{DA80A019-4C3B-4DAA-ACA1-6937D7CAAF9E}) (Version: 8.94.0.0 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.18 - VideoLAN)
Webshare klient (HKLM-x32\...\Webshare klient) (Version: - )
WinRAR 6.00 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.00.0 - win.rar GmbH)

Packages:
=========
Adobe Acrobat Reader -> C:\Program Files\Adobe\Acrobat DC [2024-06-17] ()
AMD Radeon Software -> C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.20.40028.0_x64__0a9344xs7nr4m [2024-05-23] (Advanced Micro Devices Inc.) [Startup Task]
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2023-02-23] (Microsoft Corporation)
HP DesignJet Print Experience -> C:\Program Files\WindowsApps\AD2F1837.HPDesignjetExperience_1.0.0.12_neutral__v10z8vjag6ke6 [2022-03-25] (HP Inc.)
Lenovo Companion -> C:\Program Files\WindowsApps\E046963F.LenovoCompanion_10.2409.29.0_x64__k1h2ywk1493x8 [2024-10-25] (LENOVO INC.)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.966.0_x64__56jybvy8sckqj [2024-05-20] (NVIDIA Corp.)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.22.240.0_x64__dt26b99r8h8gj [2023-01-02] (Realtek Semiconductor Corp)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-922192746-2314981634-1628445160-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-922192746-2314981634-1628445160-1001_Classes\CLSID\{80172dde-4e20-4df0-81a2-0a48553e80bb}\localserver32 -> C:\Users\pocitac\AppData\Local\NhNotifSys\nahimic\nahimicNotifSys.exe (A-Volute SAS -> A-Volute)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2022-07-15] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [ANotepad++64] -> {B298D29A-A6ED-11DE-BA8C-A68E55D89593} => C:\Program Files\Notepad++\NppShell_06.dll [2022-05-29] (Notepad++ -> )
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2024-10-05] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2024-10-05] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2022-07-15] (Igor Pavlov) [File not signed]
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => C:\Windows\System32\atiacm64.dll [2021-08-30] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nvlti.inf_amd64_00cc3a692c57c34d\nvshext.dll [2024-05-08] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2022-07-15] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2024-10-05] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-12-01] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2024-11-09 07:54 - 2024-09-26 22:57 - 005377536 _____ (FFmpeg Project) [File not signed] C:\Program Files (x86)\Steam\libavcodec-61.dll
2024-11-09 07:54 - 2024-09-26 22:57 - 000875008 _____ (FFmpeg Project) [File not signed] C:\Program Files (x86)\Steam\libavfilter-10.dll
2024-11-09 07:54 - 2024-09-26 22:57 - 001674240 _____ (FFmpeg Project) [File not signed] C:\Program Files (x86)\Steam\libavformat-61.dll
2024-11-09 07:54 - 2024-09-26 22:57 - 001640960 _____ (FFmpeg Project) [File not signed] C:\Program Files (x86)\Steam\libavutil-59.dll
2024-11-09 07:54 - 2024-09-26 22:57 - 000630272 _____ (FFmpeg Project) [File not signed] C:\Program Files (x86)\Steam\libswresample-5.dll
2024-11-09 07:54 - 2024-09-26 22:57 - 001092608 _____ (FFmpeg Project) [File not signed] C:\Program Files (x86)\Steam\libswscale-8.dll
2022-08-20 20:32 - 2022-07-15 15:00 - 000094720 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) =============

BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-12-07 10:14 - 2019-12-07 10:12 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> %INTEL_DEV_REDIST%redist\intel64\compiler;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;C:\Program Files (x86)\Calibre2\
HKU\S-1-5-21-922192746-2314981634-1628445160-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\windows\img0.jpg
DNS Servers: 31.30.90.11 - 31.30.90.12
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

Network Binding:
=============
Wi-Fi: MediaTek Wi-Fi 6 MT7921 Wireless LAN Card -> mtkwl6ex.sys
Ethernet: Realtek PCIe GbE Family Controller -> rt640x64.sys

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

MSCONFIG\Services: wuauserv => 3
HKU\S-1-5-21-922192746-2314981634-1628445160-1001\...\StartupApproved\Run: => "OneDrive"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [TCP Query User{7EEDB066-68D3-4A4E-AA89-F0FE8B63480D}C:\program files (x86)\kingdom come - deliverance\bin\win64\kingdomcome.exe] => (Allow) C:\program files (x86)\kingdom come - deliverance\bin\win64\kingdomcome.exe => No File
FirewallRules: [UDP Query User{39541E17-A9C2-484E-83B4-00742C913A19}C:\program files (x86)\kingdom come - deliverance\bin\win64\kingdomcome.exe] => (Allow) C:\program files (x86)\kingdom come - deliverance\bin\win64\kingdomcome.exe => No File
FirewallRules: [{9BBB6D7B-B35E-4F6A-BF2D-B1ADBDB64C72}] => (Block) C:\program files (x86)\kingdom come - deliverance\bin\win64\kingdomcome.exe => No File
FirewallRules: [{CFF21976-576B-4843-9741-C858404D141C}] => (Block) C:\program files (x86)\kingdom come - deliverance\bin\win64\kingdomcome.exe => No File
FirewallRules: [{9A96557D-1398-4F45-AAC7-278E56E2E44C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{D92C039B-F256-438A-9614-F79510D89CA4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [TCP Query User{25F8094A-443D-4936-B323-E29B718245A4}C:\program files (x86)\hry\grand theft auto v\gta5.exe] => (Block) C:\program files (x86)\hry\grand theft auto v\gta5.exe => No File
FirewallRules: [UDP Query User{7DFBEDCA-FFE2-45F2-ABA7-985E5482C310}C:\program files (x86)\hry\grand theft auto v\gta5.exe] => (Block) C:\program files (x86)\hry\grand theft auto v\gta5.exe => No File
FirewallRules: [TCP Query User{C8AC11F8-5613-4E58-AD30-FE683D37E356}C:\program files (x86)\hry\assassin's creed\heavy rain\heavyrain.exe] => (Block) C:\program files (x86)\hry\assassin's creed\heavy rain\heavyrain.exe => No File
FirewallRules: [UDP Query User{FE0E17E1-6E45-4BBD-ADC3-579CA05599DD}C:\program files (x86)\hry\assassin's creed\heavy rain\heavyrain.exe] => (Block) C:\program files (x86)\hry\assassin's creed\heavy rain\heavyrain.exe => No File
FirewallRules: [TCP Query User{FD7F7EDF-DCAA-43C1-BBB2-A7AACA4352CA}C:\program files (x86)\hry\fire\firewatch - soundtrack edition\firewatch.exe] => (Block) C:\program files (x86)\hry\fire\firewatch - soundtrack edition\firewatch.exe => No File
FirewallRules: [UDP Query User{FE7497C1-E6C5-40DD-8D13-6BFCEDEDE6D0}C:\program files (x86)\hry\fire\firewatch - soundtrack edition\firewatch.exe] => (Block) C:\program files (x86)\hry\fire\firewatch - soundtrack edition\firewatch.exe => No File
FirewallRules: [TCP Query User{898736F5-EE78-42DE-B94A-3104FA84A0EB}C:\program files (x86)\hry\cyber\cyberpunk 2077\bin\x64\cyberpunk2077.exe] => (Block) C:\program files (x86)\hry\cyber\cyberpunk 2077\bin\x64\cyberpunk2077.exe => No File
FirewallRules: [UDP Query User{7D043431-09D7-42A9-A997-BD956A695867}C:\program files (x86)\hry\cyber\cyberpunk 2077\bin\x64\cyberpunk2077.exe] => (Block) C:\program files (x86)\hry\cyber\cyberpunk 2077\bin\x64\cyberpunk2077.exe => No File
FirewallRules: [TCP Query User{20012046-9CB6-4209-92E3-2D8F2F930158}C:\program files (x86)\hry\uncharted\uncharted legacy of thieves collection\tll.exe] => (Block) C:\program files (x86)\hry\uncharted\uncharted legacy of thieves collection\tll.exe => No File
FirewallRules: [UDP Query User{71335D6E-6B83-4C82-94CF-4D7CE60CF220}C:\program files (x86)\hry\uncharted\uncharted legacy of thieves collection\tll.exe] => (Block) C:\program files (x86)\hry\uncharted\uncharted legacy of thieves collection\tll.exe => No File
FirewallRules: [TCP Query User{345D3506-706E-46E3-9E0E-4732D79A5AAF}C:\program files (x86)\hry\uncharted\uncharted legacy of thieves collection\u4.exe] => (Block) C:\program files (x86)\hry\uncharted\uncharted legacy of thieves collection\u4.exe => No File
FirewallRules: [UDP Query User{28FA302C-E885-4424-BDBD-A2F9D15CAF4B}C:\program files (x86)\hry\uncharted\uncharted legacy of thieves collection\u4.exe] => (Block) C:\program files (x86)\hry\uncharted\uncharted legacy of thieves collection\u4.exe => No File
FirewallRules: [TCP Query User{01FCDADF-09DD-4A73-8D6E-663F95EEC4CA}C:\program files (x86)\hry\zoo\planet zoo\planetzoo.exe] => (Block) C:\program files (x86)\hry\zoo\planet zoo\planetzoo.exe => No File
FirewallRules: [UDP Query User{2C0F19D1-CC3B-490B-B490-B49E70B24F3D}C:\program files (x86)\hry\zoo\planet zoo\planetzoo.exe] => (Block) C:\program files (x86)\hry\zoo\planet zoo\planetzoo.exe => No File
FirewallRules: [TCP Query User{A67056F9-3054-4952-873E-048CE35B0A76}C:\program files (x86)\hry\lis 2\life is strange 2\lis2\binaries\win64\lis2-win64-shipping.exe] => (Block) C:\program files (x86)\hry\lis 2\life is strange 2\lis2\binaries\win64\lis2-win64-shipping.exe => No File
FirewallRules: [UDP Query User{3BB11CC2-94C5-483D-B959-CF7425D94CA8}C:\program files (x86)\hry\lis 2\life is strange 2\lis2\binaries\win64\lis2-win64-shipping.exe] => (Block) C:\program files (x86)\hry\lis 2\life is strange 2\lis2\binaries\win64\lis2-win64-shipping.exe => No File
FirewallRules: [TCP Query User{CE7A592D-B177-467C-BBEB-F9D645F019BC}C:\program files (x86)\hry\jwe2\jurassic world evolution 2\jwe2.release.exe] => (Block) C:\program files (x86)\hry\jwe2\jurassic world evolution 2\jwe2.release.exe => No File
FirewallRules: [UDP Query User{506B6B38-A710-4D3B-BA7F-23139AAE96FC}C:\program files (x86)\hry\jwe2\jurassic world evolution 2\jwe2.release.exe] => (Block) C:\program files (x86)\hry\jwe2\jurassic world evolution 2\jwe2.release.exe => No File
FirewallRules: [TCP Query User{A3141D44-4F54-45B4-952E-296FC4973C86}C:\program files (x86)\hry\far cry 6\far cry 6\bin\farcry6.exe] => (Block) C:\program files (x86)\hry\far cry 6\far cry 6\bin\farcry6.exe => No File
FirewallRules: [UDP Query User{E8C73233-1F04-405F-8295-02893C101718}C:\program files (x86)\hry\far cry 6\far cry 6\bin\farcry6.exe] => (Block) C:\program files (x86)\hry\far cry 6\far cry 6\bin\farcry6.exe => No File
FirewallRules: [TCP Query User{A2131917-1166-470F-886E-4C9137A0822B}C:\program files (x86)\hry\hogwarts\hogwarts legacy\phoenix\binaries\win64\hogwartslegacy.exe] => (Block) C:\program files (x86)\hry\hogwarts\hogwarts legacy\phoenix\binaries\win64\hogwartslegacy.exe => No File
FirewallRules: [UDP Query User{C653DE98-93FB-4AF9-844C-99CFAB5E058A}C:\program files (x86)\hry\hogwarts\hogwarts legacy\phoenix\binaries\win64\hogwartslegacy.exe] => (Block) C:\program files (x86)\hry\hogwarts\hogwarts legacy\phoenix\binaries\win64\hogwartslegacy.exe => No File
FirewallRules: [{30058B9E-2D8C-457E-917F-708E2143F71E}] => (Allow) C:\Program Files (x86)\Hry\RDR 2\Red Dead Redemption 2\RDR2.exe => No File
FirewallRules: [{4774A6A4-354E-4E9F-B441-8C4F156F81DE}] => (Allow) C:\Program Files (x86)\Hry\RDR 2\Red Dead Redemption 2\RDR2.exe => No File
FirewallRules: [TCP Query User{8DF7A525-FB2C-404B-974E-6C3E59DB370C}C:\program files (x86)\hry\r\red dead redemption 2\rdr2.exe] => (Block) C:\program files (x86)\hry\r\red dead redemption 2\rdr2.exe => No File
FirewallRules: [UDP Query User{21465887-E913-47EF-9BC6-166B78428D5E}C:\program files (x86)\hry\r\red dead redemption 2\rdr2.exe] => (Block) C:\program files (x86)\hry\r\red dead redemption 2\rdr2.exe => No File
FirewallRules: [{F8EFA437-3016-4E7C-AD87-1512351FF62B}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{194F2F90-29B4-45C9-B66D-D7422B40C750}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{D1A006C9-C05B-4F70-AD16-17467C80DBA1}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{E34565BE-0F72-4E5B-9261-0C9DEA7A2C67}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{80B32A7D-7445-4E22-8431-02A285F59CF2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Planet Zoo\PlanetZoo.exe (Frontier Developments) [File not signed]
FirewallRules: [{93FD3CF2-68A1-4F08-B830-DE703C435B66}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Planet Zoo\PlanetZoo.exe (Frontier Developments) [File not signed]
FirewallRules: [TCP Query User{F4B95A91-3BC4-4532-894B-8F1302C3D65D}C:\program files (x86)\hry\tmw\tell me why complete season\tme\binaries\win64\tme-win64-shipping.exe] => (Block) C:\program files (x86)\hry\tmw\tell me why complete season\tme\binaries\win64\tme-win64-shipping.exe => No File
FirewallRules: [UDP Query User{D241314A-5589-4AF9-882F-340BAF5B17B4}C:\program files (x86)\hry\tmw\tell me why complete season\tme\binaries\win64\tme-win64-shipping.exe] => (Block) C:\program files (x86)\hry\tmw\tell me why complete season\tme\binaries\win64\tme-win64-shipping.exe => No File
FirewallRules: [TCP Query User{914FB90D-4ABB-4785-9C42-6FC97268066F}C:\program files (x86)\tell me why complete season\tme\binaries\win64\tme-win64-shipping.exe] => (Block) C:\program files (x86)\tell me why complete season\tme\binaries\win64\tme-win64-shipping.exe => No File
FirewallRules: [UDP Query User{87165FF3-1695-4B58-8112-B46A396CB61E}C:\program files (x86)\tell me why complete season\tme\binaries\win64\tme-win64-shipping.exe] => (Block) C:\program files (x86)\tell me why complete season\tme\binaries\win64\tme-win64-shipping.exe => No File
FirewallRules: [TCP Query User{51A16D22-D387-4819-8A4E-B2C670EE3A08}C:\games\tell me why\tme\binaries\win64\tme-win64-shipping.exe] => (Block) C:\games\tell me why\tme\binaries\win64\tme-win64-shipping.exe => No File
FirewallRules: [UDP Query User{2F6D1148-08E2-4AB9-95C4-8D91DE559332}C:\games\tell me why\tme\binaries\win64\tme-win64-shipping.exe] => (Block) C:\games\tell me why\tme\binaries\win64\tme-win64-shipping.exe => No File
FirewallRules: [TCP Query User{C30C3ADE-390E-47F3-9ACF-28022B2B80FE}C:\program files (x86)\steam\steamapps\common\bulanci\bulanci.exe] => (Block) C:\program files (x86)\steam\steamapps\common\bulanci\bulanci.exe => No File
FirewallRules: [UDP Query User{4079A463-7F68-4436-A7AF-54271E0FAE75}C:\program files (x86)\steam\steamapps\common\bulanci\bulanci.exe] => (Block) C:\program files (x86)\steam\steamapps\common\bulanci\bulanci.exe => No File
FirewallRules: [TCP Query User{BB4DC5E1-3A66-4804-93F8-07F4B6D23A0A}D:\games\it takes two\nuts\binaries\win64\ittakestwo.exe] => (Block) D:\games\it takes two\nuts\binaries\win64\ittakestwo.exe => No File
FirewallRules: [UDP Query User{1826A933-062D-4834-8330-7F32A7BA0FBC}D:\games\it takes two\nuts\binaries\win64\ittakestwo.exe] => (Block) D:\games\it takes two\nuts\binaries\win64\ittakestwo.exe => No File
FirewallRules: [{B9F18A0A-9EEB-4BE0-8469-FAB31302314A}] => (Allow) C:\Program Files (x86)\Hry\Nová složka\Haze1\Binaries\Win64\AWayOut.exe => No File
FirewallRules: [{2B253141-FCFA-4C88-86E1-A2081A3BB5BD}] => (Allow) C:\Program Files (x86)\Hry\Nová složka\Haze1\Binaries\Win64\AWayOut.exe => No File
FirewallRules: [{F7EDC30B-5345-42E6-B67E-EB959550C4AB}] => (Allow) C:\Program Files (x86)\Hry\Nová složka\Haze1\Binaries\Win64\AWayOut_friend.exe => No File
FirewallRules: [{77122184-0940-4D63-96B1-FD10900BF722}] => (Allow) C:\Program Files (x86)\Hry\Nová složka\Haze1\Binaries\Win64\AWayOut_friend.exe => No File
FirewallRules: [TCP Query User{34B80107-B8EE-4C24-BFB0-86581B1013C9}C:\program files (x86)\hry\it takes two\it takes two\nuts\binaries\win64\ittakestwo.exe] => (Block) C:\program files (x86)\hry\it takes two\it takes two\nuts\binaries\win64\ittakestwo.exe (Hazelight Studios) [File not signed]
FirewallRules: [UDP Query User{F52C4CE4-9C72-4977-A400-AC9F00FA4E2F}C:\program files (x86)\hry\it takes two\it takes two\nuts\binaries\win64\ittakestwo.exe] => (Block) C:\program files (x86)\hry\it takes two\it takes two\nuts\binaries\win64\ittakestwo.exe (Hazelight Studios) [File not signed]
FirewallRules: [TCP Query User{1156DDF6-A6B4-466E-9E75-822BB81EC34E}C:\program files (x86)\hry\stredovek\kingdom come - deliverance\bin\win64\kingdomcome.exe] => (Block) C:\program files (x86)\hry\stredovek\kingdom come - deliverance\bin\win64\kingdomcome.exe => No File
FirewallRules: [UDP Query User{9AF92ABD-0FFA-4698-A284-58C9F62FCD56}C:\program files (x86)\hry\stredovek\kingdom come - deliverance\bin\win64\kingdomcome.exe] => (Block) C:\program files (x86)\hry\stredovek\kingdom come - deliverance\bin\win64\kingdomcome.exe => No File
FirewallRules: [TCP Query User{FC87360C-D31D-4317-B9C8-1BA1B4475890}C:\users\pocitac\desktop\jurassic world evolution 2\jurassic world evolution 2\jwe2.release.exe] => (Block) C:\users\pocitac\desktop\jurassic world evolution 2\jurassic world evolution 2\jwe2.release.exe => No File
FirewallRules: [UDP Query User{A0B8F90A-1D3B-4081-B888-75744138AD06}C:\users\pocitac\desktop\jurassic world evolution 2\jurassic world evolution 2\jwe2.release.exe] => (Block) C:\users\pocitac\desktop\jurassic world evolution 2\jurassic world evolution 2\jwe2.release.exe => No File
FirewallRules: [{708745E0-3C93-4B6F-B8B6-FEE152BC2DD7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{7010F1F2-9364-47F3-8CDE-A85B43E90365}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{4885F53A-736E-4AB6-A897-439D642F02E5}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{0553D429-B720-48F8-B5BF-4C3C02D61012}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [TCP Query User{862E4A50-FE7C-4CEB-8C6E-983BCA2B2131}C:\program files (x86)\hry\call\call of duty wwii shadow war\s2_mp64_ship.exe] => (Block) C:\program files (x86)\hry\call\call of duty wwii shadow war\s2_mp64_ship.exe => No File
FirewallRules: [UDP Query User{5BA42CCC-B741-4C5E-B038-1D6B68A1D464}C:\program files (x86)\hry\call\call of duty wwii shadow war\s2_mp64_ship.exe] => (Block) C:\program files (x86)\hry\call\call of duty wwii shadow war\s2_mp64_ship.exe => No File
FirewallRules: [TCP Query User{CCE21617-823A-4D0B-9AE6-1B78CD36C0F1}D:\hry\hogwarts legacy druhy pokus\hogwarts legacy\phoenix\binaries\win64\hogwartslegacy.exe] => (Block) D:\hry\hogwarts legacy druhy pokus\hogwarts legacy\phoenix\binaries\win64\hogwartslegacy.exe => No File
FirewallRules: [UDP Query User{AD9AF6B8-94F5-49E8-A6B2-D184E217EB1E}D:\hry\hogwarts legacy druhy pokus\hogwarts legacy\phoenix\binaries\win64\hogwartslegacy.exe] => (Block) D:\hry\hogwarts legacy druhy pokus\hogwarts legacy\phoenix\binaries\win64\hogwartslegacy.exe => No File
FirewallRules: [TCP Query User{D48CD573-B536-4EED-A6E6-11B4B8F07380}C:\program files (x86)\hry\hogwarts\phoenix\binaries\win64\hogwartslegacy.exe] => (Block) C:\program files (x86)\hry\hogwarts\phoenix\binaries\win64\hogwartslegacy.exe (Warner Bros. Interactive) [File not signed]
FirewallRules: [UDP Query User{D331DBF6-0661-44A3-A363-EA77DC3A9DEB}C:\program files (x86)\hry\hogwarts\phoenix\binaries\win64\hogwartslegacy.exe] => (Block) C:\program files (x86)\hry\hogwarts\phoenix\binaries\win64\hogwartslegacy.exe (Warner Bros. Interactive) [File not signed]
FirewallRules: [{F4630B29-F9E6-4F7B-B62D-E05E12740110}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\130.0.2849.80\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{D1FEABD8-0DE7-4C4F-B1EE-B131F4E415C5}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{6F075ED1-2C67-435D-8019-DCF65C109778}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.132.3201.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{A53FDDCB-39B8-427E-BF07-B3028239F41E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.132.3201.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{88F58003-4146-4B5A-966E-C5AB25C4484E}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.132.3201.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{2530ADF1-5EDE-408B-A54B-C31E41B1E663}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.132.3201.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)

==================== Restore Points =========================

09-11-2024 11:34:40 Naplánovaný kontrolní bod
16-11-2024 14:53:25 Instalační služba modulů systému Windows

==================== Faulty Device Manager Devices ============

==================== Event log errors: ========================

Application errors:
==================
Error: (11/16/2024 02:52:18 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny QueryFullProcessImageNameW došlo k neočekávané chybě. hr= 0x80070006, Neplatný popisovač..

Operace:
Spouštění asynchronní operace

Kontext:
Aktuální stav: DoSnapshotSet

Error: (11/08/2024 05:10:45 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Inicializace registrace certifikátu SCEP pro WORKGROUP\DESKTOP-BFEMM0E$ přes https://AMD-KeyId-52fb59e29aa83a962fb9e ... s/Aik/scep se nepovedla:

GetCACaps

Metoda: GET(31ms)
Fáze: GetCACaps
Nelze rozpoznat název nebo adresu serveru. 0x80072ee7 (WinHttp: 12007 ERROR_WINHTTP_NAME_NOT_RESOLVED)

Error: (11/04/2024 08:44:46 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Inicializace registrace certifikátu SCEP pro WORKGROUP\DESKTOP-BFEMM0E$ přes https://AMD-KeyId-52fb59e29aa83a962fb9e ... s/Aik/scep se nepovedla:

GetCACaps

Metoda: GET(31ms)
Fáze: GetCACaps
Nelze rozpoznat název nebo adresu serveru. 0x80072ee7 (WinHttp: 12007 ERROR_WINHTTP_NAME_NOT_RESOLVED)

Error: (11/03/2024 07:16:11 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému..

Error: (11/03/2024 07:16:11 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.]

Error: (10/31/2024 09:26:13 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Photos.exe, verze: 0.0.0.0, časové razítko: 0x67105e8f
Název chybujícího modulu: atidxx64.dll, verze: 27.20.15026.8004, časové razítko: 0x60eebb14
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000003b0f6
ID chybujícího procesu: 0x6dcc
Čas spuštění chybující aplikace: 0x01db2bd2cdffdb00
Cesta k chybující aplikaci: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2024.11100.16009.0_x64__8wekyb3d8bbwe\Photos.exe
Cesta k chybujícímu modulu: C:\Windows\System32\DriverStore\FileRepository\u0371192.inf_amd64_c5a25be7573aa550\B369681\atidxx64.dll
ID zprávy: 9fcae233-00eb-4342-9684-44bfc92d306f
Úplný název chybujícího balíčku: Microsoft.Windows.Photos_2024.11100.16009.0_x64__8wekyb3d8bbwe
ID aplikace související s chybujícím balíčkem: App

Error: (10/31/2024 07:41:49 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Photos.exe, verze: 0.0.0.0, časové razítko: 0x67105e8f
Název chybujícího modulu: atidxx64.dll, verze: 27.20.15026.8004, časové razítko: 0x60eebb14
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000003b0f6
ID chybujícího procesu: 0x437c
Čas spuštění chybující aplikace: 0x01db2bc47c2d2a9f
Cesta k chybující aplikaci: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2024.11100.16009.0_x64__8wekyb3d8bbwe\Photos.exe
Cesta k chybujícímu modulu: C:\Windows\System32\DriverStore\FileRepository\u0371192.inf_amd64_c5a25be7573aa550\B369681\atidxx64.dll
ID zprávy: e040d79d-fcf0-4cca-b618-2aeb1316300b
Úplný název chybujícího balíčku: Microsoft.Windows.Photos_2024.11100.16009.0_x64__8wekyb3d8bbwe
ID aplikace související s chybujícím balíčkem: App

Error: (10/31/2024 07:03:20 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: Photos.exe, verze: 0.0.0.0, časové razítko: 0x67105e8f
Název chybujícího modulu: atidxx64.dll, verze: 27.20.15026.8004, časové razítko: 0x60eebb14
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000003b0f6
ID chybujícího procesu: 0x2740
Čas spuštění chybující aplikace: 0x01db2bbea46d7997
Cesta k chybující aplikaci: C:\Program Files\WindowsApps\Microsoft.Windows.Photos_2024.11100.16009.0_x64__8wekyb3d8bbwe\Photos.exe
Cesta k chybujícímu modulu: C:\Windows\System32\DriverStore\FileRepository\u0371192.inf_amd64_c5a25be7573aa550\B369681\atidxx64.dll
ID zprávy: a61c8f4a-05b3-4a59-aaec-ae357e16fbc5
Úplný název chybujícího balíčku: Microsoft.Windows.Photos_2024.11100.16009.0_x64__8wekyb3d8bbwe
ID aplikace související s chybujícím balíčkem: App


System errors:
=============
Error: (11/15/2024 08:55:07 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-BFEMM0E)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (11/15/2024 08:55:07 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-BFEMM0E)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (11/15/2024 08:55:07 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-BFEMM0E)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (11/15/2024 08:55:07 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-BFEMM0E)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (11/15/2024 08:55:07 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-BFEMM0E)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (11/14/2024 04:04:11 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Steam Client Service neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (11/14/2024 04:04:11 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Steam Client Service bylo dosaženo časového limitu (30000 ms).

Error: (11/09/2024 07:54:52 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Steam Client Service neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.


Windows Defender:
================
Date: 2022-03-28 09:31:45
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {0CC0E4F5-1A52-4647-8DB8-53D0EE0B1667}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM

CodeIntegrity:
===============
Date: 2024-11-16 15:22:02
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Windows signing level requirements.

Date: 2024-11-16 14:21:01
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SIHClient.exe) attempted to load \Device\HarddiskVolume3\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Windows signing level requirements.


==================== Memory info ===========================

BIOS: LENOVO GKCN65WW 01/16/2024
Motherboard: LENOVO LNVNB161216
Processor: AMD Ryzen 5 5600H with Radeon Graphics
Percentage of memory in use: 37%
Total physical RAM: 14188.06 MB
Available physical RAM: 8832.42 MB
Total Virtual: 24940.06 MB
Available Virtual: 17473.93 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:476.33 GB) (Free:65.7 GB) (Model: SKHynix_HFS512GDE9X084N) NTFS

\\?\Volume{fdccdf6f-3287-4be5-bb9d-83e81378d20d}\ () (Fixed) (Total:0.5 GB) (Free:0.08 GB) NTFS
\\?\Volume{3db3fbc4-fa00-4df2-a1c2-6449254cea08}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Protective MBR) (Size: 476.9 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt =======================

Re: Lehké záseky notebooku

Napsal: 16 lis 2024 15:55
od Rudy
Zdravím!
Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
FirewallRules: [TCP Query User{7EEDB066-68D3-4A4E-AA89-F0FE8B63480D}C:\program files (x86)\kingdom come - deliverance\bin\win64\kingdomcome.exe] => (Allow) C:\program files (x86)\kingdom come - deliverance\bin\win64\kingdomcome.exe => No File
FirewallRules: [UDP Query User{39541E17-A9C2-484E-83B4-00742C913A19}C:\program files (x86)\kingdom come - deliverance\bin\win64\kingdomcome.exe] => (Allow) C:\program files (x86)\kingdom come - deliverance\bin\win64\kingdomcome.exe => No File
FirewallRules: [{9BBB6D7B-B35E-4F6A-BF2D-B1ADBDB64C72}] => (Block) C:\program files (x86)\kingdom come - deliverance\bin\win64\kingdomcome.exe => No File
FirewallRules: [{CFF21976-576B-4843-9741-C858404D141C}] => (Block) C:\program files (x86)\kingdom come - deliverance\bin\win64\kingdomcome.exe => No File
FirewallRules: [{9A96557D-1398-4F45-AAC7-278E56E2E44C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{D92C039B-F256-438A-9614-F79510D89CA4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [TCP Query User{25F8094A-443D-4936-B323-E29B718245A4}C:\program files (x86)\hry\grand theft auto v\gta5.exe] => (Block) C:\program files (x86)\hry\grand theft auto v\gta5.exe => No File
FirewallRules: [UDP Query User{7DFBEDCA-FFE2-45F2-ABA7-985E5482C310}C:\program files (x86)\hry\grand theft auto v\gta5.exe] => (Block) C:\program files (x86)\hry\grand theft auto v\gta5.exe => No File
FirewallRules: [TCP Query User{C8AC11F8-5613-4E58-AD30-FE683D37E356}C:\program files (x86)\hry\assassin's creed\heavy rain\heavyrain.exe] => (Block) C:\program files (x86)\hry\assassin's creed\heavy rain\heavyrain.exe => No File
FirewallRules: [UDP Query User{FE0E17E1-6E45-4BBD-ADC3-579CA05599DD}C:\program files (x86)\hry\assassin's creed\heavy rain\heavyrain.exe] => (Block) C:\program files (x86)\hry\assassin's creed\heavy rain\heavyrain.exe => No File
FirewallRules: [TCP Query User{FD7F7EDF-DCAA-43C1-BBB2-A7AACA4352CA}C:\program files (x86)\hry\fire\firewatch - soundtrack edition\firewatch.exe] => (Block) C:\program files (x86)\hry\fire\firewatch - soundtrack edition\firewatch.exe => No File
FirewallRules: [UDP Query User{FE7497C1-E6C5-40DD-8D13-6BFCEDEDE6D0}C:\program files (x86)\hry\fire\firewatch - soundtrack edition\firewatch.exe] => (Block) C:\program files (x86)\hry\fire\firewatch - soundtrack edition\firewatch.exe => No File
FirewallRules: [TCP Query User{898736F5-EE78-42DE-B94A-3104FA84A0EB}C:\program files (x86)\hry\cyber\cyberpunk 2077\bin\x64\cyberpunk2077.exe] => (Block) C:\program files (x86)\hry\cyber\cyberpunk 2077\bin\x64\cyberpunk2077.exe => No File
FirewallRules: [UDP Query User{7D043431-09D7-42A9-A997-BD956A695867}C:\program files (x86)\hry\cyber\cyberpunk 2077\bin\x64\cyberpunk2077.exe] => (Block) C:\program files (x86)\hry\cyber\cyberpunk 2077\bin\x64\cyberpunk2077.exe => No File
FirewallRules: [TCP Query User{20012046-9CB6-4209-92E3-2D8F2F930158}C:\program files (x86)\hry\uncharted\uncharted legacy of thieves collection\tll.exe] => (Block) C:\program files (x86)\hry\uncharted\uncharted legacy of thieves collection\tll.exe => No File
FirewallRules: [UDP Query User{71335D6E-6B83-4C82-94CF-4D7CE60CF220}C:\program files (x86)\hry\uncharted\uncharted legacy of thieves collection\tll.exe] => (Block) C:\program files (x86)\hry\uncharted\uncharted legacy of thieves collection\tll.exe => No File
FirewallRules: [TCP Query User{345D3506-706E-46E3-9E0E-4732D79A5AAF}C:\program files (x86)\hry\uncharted\uncharted legacy of thieves collection\u4.exe] => (Block) C:\program files (x86)\hry\uncharted\uncharted legacy of thieves collection\u4.exe => No File
FirewallRules: [UDP Query User{28FA302C-E885-4424-BDBD-A2F9D15CAF4B}C:\program files (x86)\hry\uncharted\uncharted legacy of thieves collection\u4.exe] => (Block) C:\program files (x86)\hry\uncharted\uncharted legacy of thieves collection\u4.exe => No File
FirewallRules: [TCP Query User{01FCDADF-09DD-4A73-8D6E-663F95EEC4CA}C:\program files (x86)\hry\zoo\planet zoo\planetzoo.exe] => (Block) C:\program files (x86)\hry\zoo\planet zoo\planetzoo.exe => No File
FirewallRules: [UDP Query User{2C0F19D1-CC3B-490B-B490-B49E70B24F3D}C:\program files (x86)\hry\zoo\planet zoo\planetzoo.exe] => (Block) C:\program files (x86)\hry\zoo\planet zoo\planetzoo.exe => No File
FirewallRules: [TCP Query User{A67056F9-3054-4952-873E-048CE35B0A76}C:\program files (x86)\hry\lis 2\life is strange 2\lis2\binaries\win64\lis2-win64-shipping.exe] => (Block) C:\program files (x86)\hry\lis 2\life is strange 2\lis2\binaries\win64\lis2-win64-shipping.exe => No File
FirewallRules: [UDP Query User{3BB11CC2-94C5-483D-B959-CF7425D94CA8}C:\program files (x86)\hry\lis 2\life is strange 2\lis2\binaries\win64\lis2-win64-shipping.exe] => (Block) C:\program files (x86)\hry\lis 2\life is strange 2\lis2\binaries\win64\lis2-win64-shipping.exe => No File
FirewallRules: [TCP Query User{CE7A592D-B177-467C-BBEB-F9D645F019BC}C:\program files (x86)\hry\jwe2\jurassic world evolution 2\jwe2.release.exe] => (Block) C:\program files (x86)\hry\jwe2\jurassic world evolution 2\jwe2.release.exe => No File
FirewallRules: [UDP Query User{506B6B38-A710-4D3B-BA7F-23139AAE96FC}C:\program files (x86)\hry\jwe2\jurassic world evolution 2\jwe2.release.exe] => (Block) C:\program files (x86)\hry\jwe2\jurassic world evolution 2\jwe2.release.exe => No File
FirewallRules: [TCP Query User{A3141D44-4F54-45B4-952E-296FC4973C86}C:\program files (x86)\hry\far cry 6\far cry 6\bin\farcry6.exe] => (Block) C:\program files (x86)\hry\far cry 6\far cry 6\bin\farcry6.exe => No File
FirewallRules: [UDP Query User{E8C73233-1F04-405F-8295-02893C101718}C:\program files (x86)\hry\far cry 6\far cry 6\bin\farcry6.exe] => (Block) C:\program files (x86)\hry\far cry 6\far cry 6\bin\farcry6.exe => No File
FirewallRules: [TCP Query User{A2131917-1166-470F-886E-4C9137A0822B}C:\program files (x86)\hry\hogwarts\hogwarts legacy\phoenix\binaries\win64\hogwartslegacy.exe] => (Block) C:\program files (x86)\hry\hogwarts\hogwarts legacy\phoenix\binaries\win64\hogwartslegacy.exe => No File
FirewallRules: [UDP Query User{C653DE98-93FB-4AF9-844C-99CFAB5E058A}C:\program files (x86)\hry\hogwarts\hogwarts legacy\phoenix\binaries\win64\hogwartslegacy.exe] => (Block) C:\program files (x86)\hry\hogwarts\hogwarts legacy\phoenix\binaries\win64\hogwartslegacy.exe => No File
FirewallRules: [{30058B9E-2D8C-457E-917F-708E2143F71E}] => (Allow) C:\Program Files (x86)\Hry\RDR 2\Red Dead Redemption 2\RDR2.exe => No File
FirewallRules: [{4774A6A4-354E-4E9F-B441-8C4F156F81DE}] => (Allow) C:\Program Files (x86)\Hry\RDR 2\Red Dead Redemption 2\RDR2.exe => No File
FirewallRules: [TCP Query User{8DF7A525-FB2C-404B-974E-6C3E59DB370C}C:\program files (x86)\hry\r\red dead redemption 2\rdr2.exe] => (Block) C:\program files (x86)\hry\r\red dead redemption 2\rdr2.exe => No File
FirewallRules: [UDP Query User{21465887-E913-47EF-9BC6-166B78428D5E}C:\program files (x86)\hry\r\red dead redemption 2\rdr2.exe] => (Block) C:\program files (x86)\hry\r\red dead redemption 2\rdr2.exe => No File
FirewallRules: [TCP Query User{F4B95A91-3BC4-4532-894B-8F1302C3D65D}C:\program files (x86)\hry\tmw\tell me why complete season\tme\binaries\win64\tme-win64-shipping.exe] => (Block) C:\program files (x86)\hry\tmw\tell me why complete season\tme\binaries\win64\tme-win64-shipping.exe => No File
FirewallRules: [UDP Query User{D241314A-5589-4AF9-882F-340BAF5B17B4}C:\program files (x86)\hry\tmw\tell me why complete season\tme\binaries\win64\tme-win64-shipping.exe] => (Block) C:\program files (x86)\hry\tmw\tell me why complete season\tme\binaries\win64\tme-win64-shipping.exe => No File
FirewallRules: [TCP Query User{914FB90D-4ABB-4785-9C42-6FC97268066F}C:\program files (x86)\tell me why complete season\tme\binaries\win64\tme-win64-shipping.exe] => (Block) C:\program files (x86)\tell me why complete season\tme\binaries\win64\tme-win64-shipping.exe => No File
FirewallRules: [UDP Query User{87165FF3-1695-4B58-8112-B46A396CB61E}C:\program files (x86)\tell me why complete season\tme\binaries\win64\tme-win64-shipping.exe] => (Block) C:\program files (x86)\tell me why complete season\tme\binaries\win64\tme-win64-shipping.exe => No File
FirewallRules: [TCP Query User{51A16D22-D387-4819-8A4E-B2C670EE3A08}C:\games\tell me why\tme\binaries\win64\tme-win64-shipping.exe] => (Block) C:\games\tell me why\tme\binaries\win64\tme-win64-shipping.exe => No File
FirewallRules: [UDP Query User{2F6D1148-08E2-4AB9-95C4-8D91DE559332}C:\games\tell me why\tme\binaries\win64\tme-win64-shipping.exe] => (Block) C:\games\tell me why\tme\binaries\win64\tme-win64-shipping.exe => No File
FirewallRules: [TCP Query User{C30C3ADE-390E-47F3-9ACF-28022B2B80FE}C:\program files (x86)\steam\steamapps\common\bulanci\bulanci.exe] => (Block) C:\program files (x86)\steam\steamapps\common\bulanci\bulanci.exe => No File
FirewallRules: [UDP Query User{4079A463-7F68-4436-A7AF-54271E0FAE75}C:\program files (x86)\steam\steamapps\common\bulanci\bulanci.exe] => (Block) C:\program files (x86)\steam\steamapps\common\bulanci\bulanci.exe => No File
FirewallRules: [TCP Query User{BB4DC5E1-3A66-4804-93F8-07F4B6D23A0A}D:\games\it takes two\nuts\binaries\win64\ittakestwo.exe] => (Block) D:\games\it takes two\nuts\binaries\win64\ittakestwo.exe => No File
FirewallRules: [UDP Query User{1826A933-062D-4834-8330-7F32A7BA0FBC}D:\games\it takes two\nuts\binaries\win64\ittakestwo.exe] => (Block) D:\games\it takes two\nuts\binaries\win64\ittakestwo.exe => No File
FirewallRules: [{B9F18A0A-9EEB-4BE0-8469-FAB31302314A}] => (Allow) C:\Program Files (x86)\Hry\Nová složka\Haze1\Binaries\Win64\AWayOut.exe => No File
FirewallRules: [{2B253141-FCFA-4C88-86E1-A2081A3BB5BD}] => (Allow) C:\Program Files (x86)\Hry\Nová složka\Haze1\Binaries\Win64\AWayOut.exe => No File
FirewallRules: [{F7EDC30B-5345-42E6-B67E-EB959550C4AB}] => (Allow) C:\Program Files (x86)\Hry\Nová složka\Haze1\Binaries\Win64\AWayOut_friend.exe => No File
FirewallRules: [{77122184-0940-4D63-96B1-FD10900BF722}] => (Allow) C:\Program Files (x86)\Hry\Nová složka\Haze1\Binaries\Win64\AWayOut_friend.exe => No File
FirewallRules: [TCP Query User{1156DDF6-A6B4-466E-9E75-822BB81EC34E}C:\program files (x86)\hry\stredovek\kingdom come - deliverance\bin\win64\kingdomcome.exe] => (Block) C:\program files (x86)\hry\stredovek\kingdom come - deliverance\bin\win64\kingdomcome.exe => No File
FirewallRules: [UDP Query User{9AF92ABD-0FFA-4698-A284-58C9F62FCD56}C:\program files (x86)\hry\stredovek\kingdom come - deliverance\bin\win64\kingdomcome.exe] => (Block) C:\program files (x86)\hry\stredovek\kingdom come - deliverance\bin\win64\kingdomcome.exe => No File
FirewallRules: [TCP Query User{FC87360C-D31D-4317-B9C8-1BA1B4475890}C:\users\pocitac\desktop\jurassic world evolution 2\jurassic world evolution 2\jwe2.release.exe] => (Block) C:\users\pocitac\desktop\jurassic world evolution 2\jurassic world evolution 2\jwe2.release.exe => No File
FirewallRules: [UDP Query User{A0B8F90A-1D3B-4081-B888-75744138AD06}C:\users\pocitac\desktop\jurassic world evolution 2\jurassic world evolution 2\jwe2.release.exe] => (Block) C:\users\pocitac\desktop\jurassic world evolution 2\jurassic world evolution 2\jwe2.release.exe => No File
FirewallRules: [TCP Query User{862E4A50-FE7C-4CEB-8C6E-983BCA2B2131}C:\program files (x86)\hry\call\call of duty wwii shadow war\s2_mp64_ship.exe] => (Block) C:\program files (x86)\hry\call\call of duty wwii shadow war\s2_mp64_ship.exe => No File
FirewallRules: [UDP Query User{5BA42CCC-B741-4C5E-B038-1D6B68A1D464}C:\program files (x86)\hry\call\call of duty wwii shadow war\s2_mp64_ship.exe] => (Block) C:\program files (x86)\hry\call\call of duty wwii shadow war\s2_mp64_ship.exe => No File
FirewallRules: [TCP Query User{CCE21617-823A-4D0B-9AE6-1B78CD36C0F1}D:\hry\hogwarts legacy druhy pokus\hogwarts legacy\phoenix\binaries\win64\hogwartslegacy.exe] => (Block) D:\hry\hogwarts legacy druhy pokus\hogwarts legacy\phoenix\binaries\win64\hogwartslegacy.exe => No File
FirewallRules: [UDP Query User{AD9AF6B8-94F5-49E8-A6B2-D184E217EB1E}D:\hry\hogwarts legacy druhy pokus\hogwarts legacy\phoenix\binaries\win64\hogwartslegacy.exe] => (Block) D:\hry\hogwarts legacy druhy pokus\hogwarts legacy\phoenix\binaries\win64\hogwartslegacy.exe => No File
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
Task: {A7F414C9-8384-4E96-8E4A-D52F65D5929D} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem132.0.6806.0{5B68BAD3-F478-4E35-9B6B-B69B0785B1B2} => C:\Program Files (x86)\Google\GoogleUpdater\132.0.6806.0\updater.exe [5567072 2024-10-29] (Google LLC -> Google LLC)
Task: {B9113612-E7FD-4351-8B11-4C1CD6079F18} - System32\Tasks\Lenovo\Vantage\Schedule\NotificationCenter => C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe NotificationCenter (No File)
Task: {5B815D73-7838-4E8C-A833-20833924A992} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => %ProgramFiles%\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe (No File)
S3 cpuz152; \??\C:\Windows\temp\cpuz152\cpuz152_x64.sys [X] <==== ATTENTION
S3 cpuz154; \??\C:\Windows\temp\cpuz154\cpuz154_x64.sys [X] <==== ATTENTION
C:\DumpStack.log.tmp

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: Lehké záseky notebooku

Napsal: 16 lis 2024 16:10
od Herrynek
Fix result of Farbar Recovery Scan Tool (x64) Version: 14-11-2024
Ran by pocitac (16-11-2024 16:02:13) Run:1
Running from C:\Users\pocitac\Desktop
Loaded Profiles: pocitac
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
FirewallRules: [TCP Query User{7EEDB066-68D3-4A4E-AA89-F0FE8B63480D}C:\program files (x86)\kingdom come - deliverance\bin\win64\kingdomcome.exe] => (Allow) C:\program files (x86)\kingdom come - deliverance\bin\win64\kingdomcome.exe => No File
FirewallRules: [UDP Query User{39541E17-A9C2-484E-83B4-00742C913A19}C:\program files (x86)\kingdom come - deliverance\bin\win64\kingdomcome.exe] => (Allow) C:\program files (x86)\kingdom come - deliverance\bin\win64\kingdomcome.exe => No File
FirewallRules: [{9BBB6D7B-B35E-4F6A-BF2D-B1ADBDB64C72}] => (Block) C:\program files (x86)\kingdom come - deliverance\bin\win64\kingdomcome.exe => No File
FirewallRules: [{CFF21976-576B-4843-9741-C858404D141C}] => (Block) C:\program files (x86)\kingdom come - deliverance\bin\win64\kingdomcome.exe => No File
FirewallRules: [{9A96557D-1398-4F45-AAC7-278E56E2E44C}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [{D92C039B-F256-438A-9614-F79510D89CA4}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (NVIDIA Corporation -> NVIDIA Corporation)
FirewallRules: [TCP Query User{25F8094A-443D-4936-B323-E29B718245A4}C:\program files (x86)\hry\grand theft auto v\gta5.exe] => (Block) C:\program files (x86)\hry\grand theft auto v\gta5.exe => No File
FirewallRules: [UDP Query User{7DFBEDCA-FFE2-45F2-ABA7-985E5482C310}C:\program files (x86)\hry\grand theft auto v\gta5.exe] => (Block) C:\program files (x86)\hry\grand theft auto v\gta5.exe => No File
FirewallRules: [TCP Query User{C8AC11F8-5613-4E58-AD30-FE683D37E356}C:\program files (x86)\hry\assassin's creed\heavy rain\heavyrain.exe] => (Block) C:\program files (x86)\hry\assassin's creed\heavy rain\heavyrain.exe => No File
FirewallRules: [UDP Query User{FE0E17E1-6E45-4BBD-ADC3-579CA05599DD}C:\program files (x86)\hry\assassin's creed\heavy rain\heavyrain.exe] => (Block) C:\program files (x86)\hry\assassin's creed\heavy rain\heavyrain.exe => No File
FirewallRules: [TCP Query User{FD7F7EDF-DCAA-43C1-BBB2-A7AACA4352CA}C:\program files (x86)\hry\fire\firewatch - soundtrack edition\firewatch.exe] => (Block) C:\program files (x86)\hry\fire\firewatch - soundtrack edition\firewatch.exe => No File
FirewallRules: [UDP Query User{FE7497C1-E6C5-40DD-8D13-6BFCEDEDE6D0}C:\program files (x86)\hry\fire\firewatch - soundtrack edition\firewatch.exe] => (Block) C:\program files (x86)\hry\fire\firewatch - soundtrack edition\firewatch.exe => No File
FirewallRules: [TCP Query User{898736F5-EE78-42DE-B94A-3104FA84A0EB}C:\program files (x86)\hry\cyber\cyberpunk 2077\bin\x64\cyberpunk2077.exe] => (Block) C:\program files (x86)\hry\cyber\cyberpunk 2077\bin\x64\cyberpunk2077.exe => No File
FirewallRules: [UDP Query User{7D043431-09D7-42A9-A997-BD956A695867}C:\program files (x86)\hry\cyber\cyberpunk 2077\bin\x64\cyberpunk2077.exe] => (Block) C:\program files (x86)\hry\cyber\cyberpunk 2077\bin\x64\cyberpunk2077.exe => No File
FirewallRules: [TCP Query User{20012046-9CB6-4209-92E3-2D8F2F930158}C:\program files (x86)\hry\uncharted\uncharted legacy of thieves collection\tll.exe] => (Block) C:\program files (x86)\hry\uncharted\uncharted legacy of thieves collection\tll.exe => No File
FirewallRules: [UDP Query User{71335D6E-6B83-4C82-94CF-4D7CE60CF220}C:\program files (x86)\hry\uncharted\uncharted legacy of thieves collection\tll.exe] => (Block) C:\program files (x86)\hry\uncharted\uncharted legacy of thieves collection\tll.exe => No File
FirewallRules: [TCP Query User{345D3506-706E-46E3-9E0E-4732D79A5AAF}C:\program files (x86)\hry\uncharted\uncharted legacy of thieves collection\u4.exe] => (Block) C:\program files (x86)\hry\uncharted\uncharted legacy of thieves collection\u4.exe => No File
FirewallRules: [UDP Query User{28FA302C-E885-4424-BDBD-A2F9D15CAF4B}C:\program files (x86)\hry\uncharted\uncharted legacy of thieves collection\u4.exe] => (Block) C:\program files (x86)\hry\uncharted\uncharted legacy of thieves collection\u4.exe => No File
FirewallRules: [TCP Query User{01FCDADF-09DD-4A73-8D6E-663F95EEC4CA}C:\program files (x86)\hry\zoo\planet zoo\planetzoo.exe] => (Block) C:\program files (x86)\hry\zoo\planet zoo\planetzoo.exe => No File
FirewallRules: [UDP Query User{2C0F19D1-CC3B-490B-B490-B49E70B24F3D}C:\program files (x86)\hry\zoo\planet zoo\planetzoo.exe] => (Block) C:\program files (x86)\hry\zoo\planet zoo\planetzoo.exe => No File
FirewallRules: [TCP Query User{A67056F9-3054-4952-873E-048CE35B0A76}C:\program files (x86)\hry\lis 2\life is strange 2\lis2\binaries\win64\lis2-win64-shipping.exe] => (Block) C:\program files (x86)\hry\lis 2\life is strange 2\lis2\binaries\win64\lis2-win64-shipping.exe => No File
FirewallRules: [UDP Query User{3BB11CC2-94C5-483D-B959-CF7425D94CA8}C:\program files (x86)\hry\lis 2\life is strange 2\lis2\binaries\win64\lis2-win64-shipping.exe] => (Block) C:\program files (x86)\hry\lis 2\life is strange 2\lis2\binaries\win64\lis2-win64-shipping.exe => No File
FirewallRules: [TCP Query User{CE7A592D-B177-467C-BBEB-F9D645F019BC}C:\program files (x86)\hry\jwe2\jurassic world evolution 2\jwe2.release.exe] => (Block) C:\program files (x86)\hry\jwe2\jurassic world evolution 2\jwe2.release.exe => No File
FirewallRules: [UDP Query User{506B6B38-A710-4D3B-BA7F-23139AAE96FC}C:\program files (x86)\hry\jwe2\jurassic world evolution 2\jwe2.release.exe] => (Block) C:\program files (x86)\hry\jwe2\jurassic world evolution 2\jwe2.release.exe => No File
FirewallRules: [TCP Query User{A3141D44-4F54-45B4-952E-296FC4973C86}C:\program files (x86)\hry\far cry 6\far cry 6\bin\farcry6.exe] => (Block) C:\program files (x86)\hry\far cry 6\far cry 6\bin\farcry6.exe => No File
FirewallRules: [UDP Query User{E8C73233-1F04-405F-8295-02893C101718}C:\program files (x86)\hry\far cry 6\far cry 6\bin\farcry6.exe] => (Block) C:\program files (x86)\hry\far cry 6\far cry 6\bin\farcry6.exe => No File
FirewallRules: [TCP Query User{A2131917-1166-470F-886E-4C9137A0822B}C:\program files (x86)\hry\hogwarts\hogwarts legacy\phoenix\binaries\win64\hogwartslegacy.exe] => (Block) C:\program files (x86)\hry\hogwarts\hogwarts legacy\phoenix\binaries\win64\hogwartslegacy.exe => No File
FirewallRules: [UDP Query User{C653DE98-93FB-4AF9-844C-99CFAB5E058A}C:\program files (x86)\hry\hogwarts\hogwarts legacy\phoenix\binaries\win64\hogwartslegacy.exe] => (Block) C:\program files (x86)\hry\hogwarts\hogwarts legacy\phoenix\binaries\win64\hogwartslegacy.exe => No File
FirewallRules: [{30058B9E-2D8C-457E-917F-708E2143F71E}] => (Allow) C:\Program Files (x86)\Hry\RDR 2\Red Dead Redemption 2\RDR2.exe => No File
FirewallRules: [{4774A6A4-354E-4E9F-B441-8C4F156F81DE}] => (Allow) C:\Program Files (x86)\Hry\RDR 2\Red Dead Redemption 2\RDR2.exe => No File
FirewallRules: [TCP Query User{8DF7A525-FB2C-404B-974E-6C3E59DB370C}C:\program files (x86)\hry\r\red dead redemption 2\rdr2.exe] => (Block) C:\program files (x86)\hry\r\red dead redemption 2\rdr2.exe => No File
FirewallRules: [UDP Query User{21465887-E913-47EF-9BC6-166B78428D5E}C:\program files (x86)\hry\r\red dead redemption 2\rdr2.exe] => (Block) C:\program files (x86)\hry\r\red dead redemption 2\rdr2.exe => No File
FirewallRules: [TCP Query User{F4B95A91-3BC4-4532-894B-8F1302C3D65D}C:\program files (x86)\hry\tmw\tell me why complete season\tme\binaries\win64\tme-win64-shipping.exe] => (Block) C:\program files (x86)\hry\tmw\tell me why complete season\tme\binaries\win64\tme-win64-shipping.exe => No File
FirewallRules: [UDP Query User{D241314A-5589-4AF9-882F-340BAF5B17B4}C:\program files (x86)\hry\tmw\tell me why complete season\tme\binaries\win64\tme-win64-shipping.exe] => (Block) C:\program files (x86)\hry\tmw\tell me why complete season\tme\binaries\win64\tme-win64-shipping.exe => No File
FirewallRules: [TCP Query User{914FB90D-4ABB-4785-9C42-6FC97268066F}C:\program files (x86)\tell me why complete season\tme\binaries\win64\tme-win64-shipping.exe] => (Block) C:\program files (x86)\tell me why complete season\tme\binaries\win64\tme-win64-shipping.exe => No File
FirewallRules: [UDP Query User{87165FF3-1695-4B58-8112-B46A396CB61E}C:\program files (x86)\tell me why complete season\tme\binaries\win64\tme-win64-shipping.exe] => (Block) C:\program files (x86)\tell me why complete season\tme\binaries\win64\tme-win64-shipping.exe => No File
FirewallRules: [TCP Query User{51A16D22-D387-4819-8A4E-B2C670EE3A08}C:\games\tell me why\tme\binaries\win64\tme-win64-shipping.exe] => (Block) C:\games\tell me why\tme\binaries\win64\tme-win64-shipping.exe => No File
FirewallRules: [UDP Query User{2F6D1148-08E2-4AB9-95C4-8D91DE559332}C:\games\tell me why\tme\binaries\win64\tme-win64-shipping.exe] => (Block) C:\games\tell me why\tme\binaries\win64\tme-win64-shipping.exe => No File
FirewallRules: [TCP Query User{C30C3ADE-390E-47F3-9ACF-28022B2B80FE}C:\program files (x86)\steam\steamapps\common\bulanci\bulanci.exe] => (Block) C:\program files (x86)\steam\steamapps\common\bulanci\bulanci.exe => No File
FirewallRules: [UDP Query User{4079A463-7F68-4436-A7AF-54271E0FAE75}C:\program files (x86)\steam\steamapps\common\bulanci\bulanci.exe] => (Block) C:\program files (x86)\steam\steamapps\common\bulanci\bulanci.exe => No File
FirewallRules: [TCP Query User{BB4DC5E1-3A66-4804-93F8-07F4B6D23A0A}D:\games\it takes two\nuts\binaries\win64\ittakestwo.exe] => (Block) D:\games\it takes two\nuts\binaries\win64\ittakestwo.exe => No File
FirewallRules: [UDP Query User{1826A933-062D-4834-8330-7F32A7BA0FBC}D:\games\it takes two\nuts\binaries\win64\ittakestwo.exe] => (Block) D:\games\it takes two\nuts\binaries\win64\ittakestwo.exe => No File
FirewallRules: [{B9F18A0A-9EEB-4BE0-8469-FAB31302314A}] => (Allow) C:\Program Files (x86)\Hry\Nová složka\Haze1\Binaries\Win64\AWayOut.exe => No File
FirewallRules: [{2B253141-FCFA-4C88-86E1-A2081A3BB5BD}] => (Allow) C:\Program Files (x86)\Hry\Nová složka\Haze1\Binaries\Win64\AWayOut.exe => No File
FirewallRules: [{F7EDC30B-5345-42E6-B67E-EB959550C4AB}] => (Allow) C:\Program Files (x86)\Hry\Nová složka\Haze1\Binaries\Win64\AWayOut_friend.exe => No File
FirewallRules: [{77122184-0940-4D63-96B1-FD10900BF722}] => (Allow) C:\Program Files (x86)\Hry\Nová složka\Haze1\Binaries\Win64\AWayOut_friend.exe => No File
FirewallRules: [TCP Query User{1156DDF6-A6B4-466E-9E75-822BB81EC34E}C:\program files (x86)\hry\stredovek\kingdom come - deliverance\bin\win64\kingdomcome.exe] => (Block) C:\program files (x86)\hry\stredovek\kingdom come - deliverance\bin\win64\kingdomcome.exe => No File
FirewallRules: [UDP Query User{9AF92ABD-0FFA-4698-A284-58C9F62FCD56}C:\program files (x86)\hry\stredovek\kingdom come - deliverance\bin\win64\kingdomcome.exe] => (Block) C:\program files (x86)\hry\stredovek\kingdom come - deliverance\bin\win64\kingdomcome.exe => No File
FirewallRules: [TCP Query User{FC87360C-D31D-4317-B9C8-1BA1B4475890}C:\users\pocitac\desktop\jurassic world evolution 2\jurassic world evolution 2\jwe2.release.exe] => (Block) C:\users\pocitac\desktop\jurassic world evolution 2\jurassic world evolution 2\jwe2.release.exe => No File
FirewallRules: [UDP Query User{A0B8F90A-1D3B-4081-B888-75744138AD06}C:\users\pocitac\desktop\jurassic world evolution 2\jurassic world evolution 2\jwe2.release.exe] => (Block) C:\users\pocitac\desktop\jurassic world evolution 2\jurassic world evolution 2\jwe2.release.exe => No File
FirewallRules: [TCP Query User{862E4A50-FE7C-4CEB-8C6E-983BCA2B2131}C:\program files (x86)\hry\call\call of duty wwii shadow war\s2_mp64_ship.exe] => (Block) C:\program files (x86)\hry\call\call of duty wwii shadow war\s2_mp64_ship.exe => No File
FirewallRules: [UDP Query User{5BA42CCC-B741-4C5E-B038-1D6B68A1D464}C:\program files (x86)\hry\call\call of duty wwii shadow war\s2_mp64_ship.exe] => (Block) C:\program files (x86)\hry\call\call of duty wwii shadow war\s2_mp64_ship.exe => No File
FirewallRules: [TCP Query User{CCE21617-823A-4D0B-9AE6-1B78CD36C0F1}D:\hry\hogwarts legacy druhy pokus\hogwarts legacy\phoenix\binaries\win64\hogwartslegacy.exe] => (Block) D:\hry\hogwarts legacy druhy pokus\hogwarts legacy\phoenix\binaries\win64\hogwartslegacy.exe => No File
FirewallRules: [UDP Query User{AD9AF6B8-94F5-49E8-A6B2-D184E217EB1E}D:\hry\hogwarts legacy druhy pokus\hogwarts legacy\phoenix\binaries\win64\hogwartslegacy.exe] => (Block) D:\hry\hogwarts legacy druhy pokus\hogwarts legacy\phoenix\binaries\win64\hogwartslegacy.exe => No File
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
Task: {A7F414C9-8384-4E96-8E4A-D52F65D5929D} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem132.0.6806.0{5B68BAD3-F478-4E35-9B6B-B69B0785B1B2} => C:\Program Files (x86)\Google\GoogleUpdater\132.0.6806.0\updater.exe [5567072 2024-10-29] (Google LLC -> Google LLC)
Task: {B9113612-E7FD-4351-8B11-4C1CD6079F18} - System32\Tasks\Lenovo\Vantage\Schedule\NotificationCenter => C:\Program Files (x86)\Lenovo\VantageService\3.13.72.0\ScheduleEventAction.exe NotificationCenter (No File)
Task: {5B815D73-7838-4E8C-A833-20833924A992} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => %ProgramFiles%\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe (No File)
S3 cpuz152; \??\C:\Windows\temp\cpuz152\cpuz152_x64.sys [X] <==== ATTENTION
S3 cpuz154; \??\C:\Windows\temp\cpuz154\cpuz154_x64.sys [X] <==== ATTENTION
C:\DumpStack.log.tmp

EmptyTemp:
End
*****************

Processes closed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{7EEDB066-68D3-4A4E-AA89-F0FE8B63480D}C:\program files (x86)\kingdom come - deliverance\bin\win64\kingdomcome.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{39541E17-A9C2-484E-83B4-00742C913A19}C:\program files (x86)\kingdom come - deliverance\bin\win64\kingdomcome.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9BBB6D7B-B35E-4F6A-BF2D-B1ADBDB64C72}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{CFF21976-576B-4843-9741-C858404D141C}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9A96557D-1398-4F45-AAC7-278E56E2E44C}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D92C039B-F256-438A-9614-F79510D89CA4}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{25F8094A-443D-4936-B323-E29B718245A4}C:\program files (x86)\hry\grand theft auto v\gta5.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{7DFBEDCA-FFE2-45F2-ABA7-985E5482C310}C:\program files (x86)\hry\grand theft auto v\gta5.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{C8AC11F8-5613-4E58-AD30-FE683D37E356}C:\program files (x86)\hry\assassin's creed\heavy rain\heavyrain.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{FE0E17E1-6E45-4BBD-ADC3-579CA05599DD}C:\program files (x86)\hry\assassin's creed\heavy rain\heavyrain.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{FD7F7EDF-DCAA-43C1-BBB2-A7AACA4352CA}C:\program files (x86)\hry\fire\firewatch - soundtrack edition\firewatch.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{FE7497C1-E6C5-40DD-8D13-6BFCEDEDE6D0}C:\program files (x86)\hry\fire\firewatch - soundtrack edition\firewatch.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{898736F5-EE78-42DE-B94A-3104FA84A0EB}C:\program files (x86)\hry\cyber\cyberpunk 2077\bin\x64\cyberpunk2077.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{7D043431-09D7-42A9-A997-BD956A695867}C:\program files (x86)\hry\cyber\cyberpunk 2077\bin\x64\cyberpunk2077.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{20012046-9CB6-4209-92E3-2D8F2F930158}C:\program files (x86)\hry\uncharted\uncharted legacy of thieves collection\tll.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{71335D6E-6B83-4C82-94CF-4D7CE60CF220}C:\program files (x86)\hry\uncharted\uncharted legacy of thieves collection\tll.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{345D3506-706E-46E3-9E0E-4732D79A5AAF}C:\program files (x86)\hry\uncharted\uncharted legacy of thieves collection\u4.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{28FA302C-E885-4424-BDBD-A2F9D15CAF4B}C:\program files (x86)\hry\uncharted\uncharted legacy of thieves collection\u4.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{01FCDADF-09DD-4A73-8D6E-663F95EEC4CA}C:\program files (x86)\hry\zoo\planet zoo\planetzoo.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{2C0F19D1-CC3B-490B-B490-B49E70B24F3D}C:\program files (x86)\hry\zoo\planet zoo\planetzoo.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{A67056F9-3054-4952-873E-048CE35B0A76}C:\program files (x86)\hry\lis 2\life is strange 2\lis2\binaries\win64\lis2-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{3BB11CC2-94C5-483D-B959-CF7425D94CA8}C:\program files (x86)\hry\lis 2\life is strange 2\lis2\binaries\win64\lis2-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{CE7A592D-B177-467C-BBEB-F9D645F019BC}C:\program files (x86)\hry\jwe2\jurassic world evolution 2\jwe2.release.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{506B6B38-A710-4D3B-BA7F-23139AAE96FC}C:\program files (x86)\hry\jwe2\jurassic world evolution 2\jwe2.release.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{A3141D44-4F54-45B4-952E-296FC4973C86}C:\program files (x86)\hry\far cry 6\far cry 6\bin\farcry6.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{E8C73233-1F04-405F-8295-02893C101718}C:\program files (x86)\hry\far cry 6\far cry 6\bin\farcry6.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{A2131917-1166-470F-886E-4C9137A0822B}C:\program files (x86)\hry\hogwarts\hogwarts legacy\phoenix\binaries\win64\hogwartslegacy.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{C653DE98-93FB-4AF9-844C-99CFAB5E058A}C:\program files (x86)\hry\hogwarts\hogwarts legacy\phoenix\binaries\win64\hogwartslegacy.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{30058B9E-2D8C-457E-917F-708E2143F71E}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4774A6A4-354E-4E9F-B441-8C4F156F81DE}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{8DF7A525-FB2C-404B-974E-6C3E59DB370C}C:\program files (x86)\hry\r\red dead redemption 2\rdr2.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{21465887-E913-47EF-9BC6-166B78428D5E}C:\program files (x86)\hry\r\red dead redemption 2\rdr2.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{F4B95A91-3BC4-4532-894B-8F1302C3D65D}C:\program files (x86)\hry\tmw\tell me why complete season\tme\binaries\win64\tme-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{D241314A-5589-4AF9-882F-340BAF5B17B4}C:\program files (x86)\hry\tmw\tell me why complete season\tme\binaries\win64\tme-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{914FB90D-4ABB-4785-9C42-6FC97268066F}C:\program files (x86)\tell me why complete season\tme\binaries\win64\tme-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{87165FF3-1695-4B58-8112-B46A396CB61E}C:\program files (x86)\tell me why complete season\tme\binaries\win64\tme-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{51A16D22-D387-4819-8A4E-B2C670EE3A08}C:\games\tell me why\tme\binaries\win64\tme-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{2F6D1148-08E2-4AB9-95C4-8D91DE559332}C:\games\tell me why\tme\binaries\win64\tme-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{C30C3ADE-390E-47F3-9ACF-28022B2B80FE}C:\program files (x86)\steam\steamapps\common\bulanci\bulanci.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{4079A463-7F68-4436-A7AF-54271E0FAE75}C:\program files (x86)\steam\steamapps\common\bulanci\bulanci.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{BB4DC5E1-3A66-4804-93F8-07F4B6D23A0A}D:\games\it takes two\nuts\binaries\win64\ittakestwo.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{1826A933-062D-4834-8330-7F32A7BA0FBC}D:\games\it takes two\nuts\binaries\win64\ittakestwo.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B9F18A0A-9EEB-4BE0-8469-FAB31302314A}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2B253141-FCFA-4C88-86E1-A2081A3BB5BD}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F7EDC30B-5345-42E6-B67E-EB959550C4AB}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{77122184-0940-4D63-96B1-FD10900BF722}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{1156DDF6-A6B4-466E-9E75-822BB81EC34E}C:\program files (x86)\hry\stredovek\kingdom come - deliverance\bin\win64\kingdomcome.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{9AF92ABD-0FFA-4698-A284-58C9F62FCD56}C:\program files (x86)\hry\stredovek\kingdom come - deliverance\bin\win64\kingdomcome.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{FC87360C-D31D-4317-B9C8-1BA1B4475890}C:\users\pocitac\desktop\jurassic world evolution 2\jurassic world evolution 2\jwe2.release.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{A0B8F90A-1D3B-4081-B888-75744138AD06}C:\users\pocitac\desktop\jurassic world evolution 2\jurassic world evolution 2\jwe2.release.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{862E4A50-FE7C-4CEB-8C6E-983BCA2B2131}C:\program files (x86)\hry\call\call of duty wwii shadow war\s2_mp64_ship.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{5BA42CCC-B741-4C5E-B038-1D6B68A1D464}C:\program files (x86)\hry\call\call of duty wwii shadow war\s2_mp64_ship.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{CCE21617-823A-4D0B-9AE6-1B78CD36C0F1}D:\hry\hogwarts legacy druhy pokus\hogwarts legacy\phoenix\binaries\win64\hogwartslegacy.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{AD9AF6B8-94F5-49E8-A6B2-D184E217EB1E}D:\hry\hogwarts legacy druhy pokus\hogwarts legacy\phoenix\binaries\win64\hogwartslegacy.exe" => removed successfully
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiSpyware"="0" => value restored successfully
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiVirus"="0" => value restored successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{A7F414C9-8384-4E96-8E4A-D52F65D5929D}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{A7F414C9-8384-4E96-8E4A-D52F65D5929D}" => removed successfully
C:\Windows\System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem132.0.6806.0{5B68BAD3-F478-4E35-9B6B-B69B0785B1B2} => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem132.0.6806.0{5B68BAD3-F478-4E35-9B6B-B69B0785B1B2}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{B9113612-E7FD-4351-8B11-4C1CD6079F18}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{B9113612-E7FD-4351-8B11-4C1CD6079F18}" => removed successfully
C:\Windows\System32\Tasks\Lenovo\Vantage\Schedule\NotificationCenter => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\Vantage\Schedule\NotificationCenter" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5B815D73-7838-4E8C-A833-20833924A992}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5B815D73-7838-4E8C-A833-20833924A992}" => removed successfully
C:\Windows\System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Office\Office 15 Subscription Heartbeat" => removed successfully
HKLM\System\CurrentControlSet\Services\cpuz152 => removed successfully
cpuz152 => service removed successfully
HKLM\System\CurrentControlSet\Services\cpuz154 => removed successfully
cpuz154 => service removed successfully
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.

=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 1572864 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 1751228198 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 277397000 B
Windows/system/drivers => 256713 B
Edge => 0 B
Chrome => 402555581 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 106 B
systemprofile32 => 106 B
LocalService => 330616 B
NetworkService => 9142210 B
pocitac => 107797348 B

RecycleBin => 83835 B
EmptyTemp: => 2.4 GB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 16-11-2024 16:07:59)

C:\DumpStack.log.tmp => Could not move

==== End of Fixlog 16:07:59 ====

Re: Lehké záseky notebooku

Napsal: 16 lis 2024 16:49
od Rudy
Bylo smazáno. Nastala nějaká změna?

Re: Lehké záseky notebooku

Napsal: 16 lis 2024 16:59
od Herrynek
Ano, zda se to plynulejsi...

PS2: přestala mi fungovat WiFi na NB, nevyhledá žádné sítě. Může to být nějak spojené s čistkou?

PS3: Po restartu se nic nezměnilo. Až po celkovém vypnutí NB a následném zapnutí WiFi naskočila.

Re: Lehké záseky notebooku

Napsal: 16 lis 2024 18:06
od Rudy
OK. Takže vše v pořádku? Ten výpadek WiFi nemá na svědomí čištění. Asi nějaká hloupá shoda oklností.

Re: Lehké záseky notebooku

Napsal: 16 lis 2024 18:34
od Herrynek
Ano, občas se ještě nějaký zásek objeví, ale je to o poznání méně. Děkuji

Je to vše? Žádné 'breberky', malware, ok? :)

Re: Lehké záseky notebooku

Napsal: 16 lis 2024 19:44
od Rudy
Ještě zkuste defragmentaci disku. Byly tam pouze zbytečnosti. Nemáte zač! :-)

Re: Lehké záseky notebooku

Napsal: 16 lis 2024 20:01
od Herrynek
Mockrát děkuji :)

Re: Lehké záseky notebooku

Napsal: 16 lis 2024 20:49
od Rudy
Rádo se stalo! :)