Stránka 1 z 1

Zpomalený počítač, plné úložiště

Napsal: 26 zář 2025 11:15
od Nela_M
Dobrý den, prosím o kontrolu logu. Synovi se z ničeho nic zaplnila pamět a jsou problémy při spuštění.
Děkuji moc Nela_M

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 15-09-2025
Ran by vojta (administrator) on DESKTOP-AR8PDOO (Dell Inc. OptiPlex 790) (26-09-2025 11:55:41)
Running from C:\Users\vojta\Downloads\FRST64.exe
Loaded Profiles: vojta
Platform: Microsoft Windows 10 Home Version 22H2 19045.6332 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe ->) (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(C:\Program Files (x86)\Google\Chrome\Application\chrome.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(C:\Program Files (x86)\Microsoft\EdgeUpdate\Install\{A5839063-4114-44C0-B783-50F524969944}\MicrosoftEdge_X64_140.0.3485.81_140.0.3485.66.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\Install\{A5839063-4114-44C0-B783-50F524969944}\EDGEMITMP_775C5.tmp\setup.exe <2>
(C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\Install\{A5839063-4114-44C0-B783-50F524969944}\MicrosoftEdge_X64_140.0.3485.81_140.0.3485.66.exe
(C:\Program Files\McAfee\WebAdvisor\servicehost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe
(cmd.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\browserhost.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <14>
(Microsoft Corporation -> Microsoft Corporation) C:\Users\vojta\AppData\Local\Microsoft\OneDrive\25.164.0824.0003\OneDriveLauncher.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Huawei Technologies Co., Ltd. -> ) [File not signed] C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe
(services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\NisSrv.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_0afec3f2050014a0\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(svchost.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\ActionsServer\ActionsServer.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\opushutil.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe <3>
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeC2RClient.exe <2>
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.22342.0_x64__8wekyb3d8bbwe\HxTsr.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\vojta\AppData\Local\Microsoft\OneDrive\25.164.0824.0003\FileCoAuth.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\vojta\AppData\Local\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe <2>
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\CompatTelRunner.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\DeviceCensus.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706288 2021-04-09] (Oracle America, Inc. -> Oracle Corporation)
HKLM\Software\Policies\...\system: [EnableSmartScreen] 0
HKU\S-1-5-21-2309234071-1434396835-1567940020-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [36981208 2024-12-04] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-2309234071-1434396835-1567940020-1001\...\Run: [Microsoft Edge Update] => C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.199.11\MicrosoftEdgeUpdateCore.exe [268880 2025-09-12] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2309234071-1434396835-1567940020-1001\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe [1911040 2025-09-07] (Overwolf Ltd -> Overwolf Ltd.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\140.0.7339.128\Installer\chrmstp.exe [2025-09-11] (Google LLC -> Google LLC)
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {73EC1224-B299-4089-A521-324D13CA7887} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1581568 2025-08-24] (Adobe Inc. -> Adobe Inc.)
Task: {EA6A8065-AD49-4BB4-A866-54493A3AEC60} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem141.0.7376.0{8A6C165A-21B5-4D9D-88A8-18F4E0A9162A} => C:\Program Files (x86)\Google\GoogleUpdater\141.0.7376.0\updater.exe [6855320 2025-08-26] (Google LLC -> Google LLC)
Task: {B4207548-9ED5-496E-8D89-1974E31BBD57} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem142.0.7416.0{20B5FB81-D249-4FC7-A2F8-4276E1D9160E} => C:\Program Files (x86)\Google\GoogleUpdater\142.0.7416.0\updater.exe [6863512 2025-09-15] (Google LLC -> Google LLC)
Task: {E000A350-3588-4AB6-BD81-3CABB598AC58} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\ActionsServer\ActionsServer.exe [11418472 2025-09-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {FA4E1DFA-932F-4AA5-9423-459F9EB21B34} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29024664 2025-09-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {77F78BF4-627C-495F-B2F8-21E7881CA593} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonx86\Microsoft Shared\OFFICE16\opushutil.exe [61360 2025-09-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {3739E7DB-C928-456E-A350-3C81231B1D6D} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29024664 2025-09-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {CF512DC8-33C3-46FA-ADAF-51434E7BA6A5} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [224632 2025-09-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {29A4359C-3D35-4C70-A298-04D5D44B6391} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [224632 2025-09-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {82D70B55-052B-4C19-B53A-37534FA437EC} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MpCmdRun.exe [1778248 2025-09-22] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {33FEEF2A-84C3-4FDC-A712-F902982DFCA4} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MpCmdRun.exe [1778248 2025-09-22] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {A096E26B-2F22-4CF9-8329-A306517F3C03} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MpCmdRun.exe [1778248 2025-09-22] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F19166DA-9E63-4371-AB13-8BE1B3790B41} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MpCmdRun.exe [1778248 2025-09-22] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {2B252F72-A9B7-4A45-B4D7-5B3FB2D8E651} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-2309234071-1434396835-1567940020-1001Core => C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [214928 2022-03-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {B8D00BF7-1EF1-456D-8822-B8A695F29184} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-2309234071-1434396835-1567940020-1001UA => C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [214928 2022-03-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {DBE0DB9F-04F7-4465-B1C7-316CB9D35C4F} - System32\Tasks\OneDrive Startup Task-S-1-5-21-2309234071-1434396835-1567940020-1001 => C:\Users\vojta\AppData\Local\Microsoft\OneDrive\25.164.0824.0003\OneDriveLauncher.exe [725864 2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {6A79BAEA-1E24-46E0-B7E3-D60E48C73AE8} - System32\Tasks\Opera scheduled assistant Autoupdate 1596177460 => C:\Users\vojta\AppData\Local\Programs\Opera\launcher.exe -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\vojta\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {3061243F-57B8-46AD-AAB6-AA6E619373E9} - System32\Tasks\Opera scheduled Autoupdate 1596141558 => C:\Users\vojta\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe --scheduledtask --bypasslauncher $(Arg0) (No File)
Task: {F743E6DC-C1B4-43AE-BA6A-1B20537410F3} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2398016 2025-09-07] (Overwolf Ltd -> Overwolf LTD) -> C:\Program Files (x86)\Overwolf\/RunningFrom Schedule

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.1.138
Tcpip\..\Interfaces\{a0cf52cf-08bf-4fc8-9b8e-f5e8ad9e956d}: [DhcpNameServer] 10.0.1.138
Tcpip\..\Interfaces\{a0cf52cf-08bf-4fc8-9b8e-f5e8ad9e956d}: [DhcpDomain] home

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\vojta\AppData\Local\Microsoft\Edge\User Data\Default [2025-01-25]
Edge Extension: (Dokumenty Google offline) - C:\Users\vojta\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-01-15]
Edge Extension: (Edge relevant text changes) - C:\Users\vojta\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]
Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee]

FireFox:
========
FF Plugin-x32: @java.com/DTPlugin,version=11.291.2 -> C:\Program Files (x86)\Java\jre1.8.0_291\bin\dtplugin\npDeployJava1.dll [2021-06-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.291.2 -> C:\Program Files (x86)\Java\jre1.8.0_291\bin\plugin2\npjp2.dll [2021-06-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-09-14] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2025-09-08] (Adobe Inc. -> Adobe Systems Inc.)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\vojta\AppData\Local\Google\Chrome\User Data\Default [2025-09-26]
CHR HomePage: Default -> hxxps://www.roblox.com/
CHR StartupUrls: Default -> "hxxp://www.google.cz/"
CHR Extension: (McAfee® WebAdvisor) - C:\Users\vojta\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2025-09-22]
CHR Extension: (Dokumenty Google offline) - C:\Users\vojta\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-09-22]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\vojta\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2025-09-22]
CHR Extension: (Malwarebytes Browser Guard) - C:\Users\vojta\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2025-09-11]
CHR Extension: (FormApps Extension) - C:\Users\vojta\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilfoopambfaclfjmpiaijnccgcmbeigi [2024-04-15]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\vojta\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Profile: C:\Users\vojta\AppData\Local\Google\Chrome\User Data\Profile 2 [2024-11-28]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\vojta\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2024-11-28]
CHR Extension: (Dokumenty Google offline) - C:\Users\vojta\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-11-28]
CHR Extension: (Malwarebytes Browser Guard) - C:\Users\vojta\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2024-11-28]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\vojta\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-11-28]
CHR Profile: C:\Users\vojta\AppData\Local\Google\Chrome\User Data\System Profile [2024-12-08]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKU\S-1-5-21-2309234071-1434396835-1567940020-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]

Opera:
=======
OPR Profile: C:\Users\vojta\AppData\Roaming\Opera Software\Opera Stable [2025-09-22]
OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=o ... utEncoding}

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174584 2025-08-24] (Adobe Inc. -> Adobe Inc.)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [15689512 2024-03-09] (BattlEye Innovations e.K. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13287776 2025-09-08] (Microsoft Corporation -> Microsoft Corporation)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [818304 2021-02-19] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [965872 2024-11-17] (EasyAntiCheat Oy -> Epic Games, Inc.)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934352 2023-08-02] (Epic Games Inc. -> Epic Games, Inc.)
R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [192320 2020-09-07] (Huawei Technologies Co., Ltd. -> ) [File not signed]
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [951024 2025-09-22] (McAfee, LLC -> McAfee, LLC)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MpDefenderCoreService.exe [2009656 2025-09-22] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_0afec3f2050014a0\Display.NvContainer\NVDisplay.Container.exe [1275000 2024-09-15] (NVIDIA Corporation -> NVIDIA Corporation)
S3 OverwolfUpdater; C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2398016 2025-09-07] (Overwolf Ltd -> Overwolf LTD)
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [21827888 2025-03-05] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\NisSrv.exe [4414464 2025-09-22] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MsMpEng.exe [282480 2025-09-22] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [76800 2019-12-07] (Microsoft Corporation) [File not signed]
S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2020-09-07] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [333216 2025-09-22] (Microsoft Windows -> Microsoft Corporation)
R3 MpKsl636ecb2c; C:\ProgramData\Microsoft\Windows Defender\Definition Updates\{602B8E0C-D4BF-41FC-8DCA-B6F1EFFC0672}\MpKslDrv.sys [333216 2025-09-22] (Microsoft Windows -> Microsoft Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [20880 2025-09-22] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [627104 2025-09-22] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [102816 2025-09-22] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2025-09-26 11:55 - 2025-09-26 12:01 - 000020400 _____ C:\Users\vojta\Downloads\FRST.txt
2025-09-26 11:53 - 2025-09-26 11:53 - 002442752 _____ (Farbar) C:\Users\vojta\Downloads\FRST64.exe
2025-09-12 17:24 - 2025-09-12 17:24 - 000004042 _____ C:\WINDOWS\system32\Tasks\PostponeDeviceSetupToast_S-1-5-21-2309234071-1434396835-1567940020-1001_11
2025-09-10 02:58 - 2025-09-10 02:58 - 000548437 _____ C:\Users\vojta\Downloads\Adobe Express - image — Kapwing - Google Chrome 2025-09-10 02-55-20.mp4
2025-09-10 02:45 - 2025-09-10 02:45 - 001728556 _____ C:\Users\vojta\Downloads\output (9).wav
2025-09-10 01:44 - 2025-09-10 01:44 - 001488557 _____ C:\Users\vojta\Downloads\IMG_0184.jpeg

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2025-09-26 12:01 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-09-26 11:58 - 2021-12-18 01:40 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-09-26 11:58 - 2019-06-28 16:37 - 000000000 ____D C:\FRST
2025-09-26 11:43 - 2020-04-22 15:38 - 000000000 ____D C:\Users\vojta\AppData\Local\D3DSCache
2025-09-23 00:40 - 2021-02-10 00:04 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-09-23 00:40 - 2020-04-17 22:51 - 000000000 ____D C:\ProgramData\NVIDIA
2025-09-23 00:40 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-09-22 22:46 - 2020-04-17 22:02 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2025-09-22 22:45 - 2024-10-29 18:38 - 000000000 ____D C:\Program Files (x86)\Overwolf
2025-09-22 22:43 - 2025-02-17 21:35 - 000003576 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-2309234071-1434396835-1567940020-1001
2025-09-22 22:43 - 2021-12-11 12:39 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2309234071-1434396835-1567940020-1001
2025-09-22 22:43 - 2021-02-10 00:36 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2309234071-1434396835-1567940020-1001
2025-09-22 22:43 - 2021-02-10 00:09 - 000002387 _____ C:\Users\vojta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-09-22 22:39 - 2024-10-29 18:35 - 000000000 ____D C:\Users\vojta\AppData\Local\Overwolf
2025-09-22 22:37 - 2024-10-29 18:38 - 000002327 _____ C:\Users\vojta\Desktop\CurseForge.lnk
2025-09-22 22:32 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-09-22 18:31 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2025-09-22 18:29 - 2020-04-17 22:52 - 000000000 ___RD C:\Users\vojta\OneDrive
2025-09-22 18:24 - 2020-04-17 22:47 - 000000000 ____D C:\Users\vojta\AppData\Local\Packages
2025-09-22 18:10 - 2021-09-10 14:37 - 000000000 ____D C:\Users\vojta\AppData\Local\CrashDumps
2025-09-17 15:56 - 2020-04-22 16:52 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2025-09-15 00:08 - 2020-04-17 22:56 - 000000000 ____D C:\Users\vojta\AppData\Local\Roblox
2025-09-14 19:48 - 2023-01-17 20:50 - 000002280 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2025-09-14 19:48 - 2020-06-13 09:25 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-09-14 18:41 - 2021-02-10 00:36 - 000003640 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-09-14 18:41 - 2021-02-10 00:36 - 000003514 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-09-13 01:55 - 2022-06-06 20:01 - 000000000 ____D C:\Program Files\TeamViewer
2025-09-13 01:55 - 2021-02-10 00:36 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-09-13 01:55 - 2021-02-10 00:04 - 000008192 ___SH C:\DumpStack.log.tmp
2025-09-13 00:27 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2025-09-12 18:10 - 2025-04-08 19:50 - 000001401 _____ C:\Users\vojta\Desktop\Roblox Player.lnk
2025-09-12 18:10 - 2020-04-17 22:56 - 000000000 ____D C:\Users\vojta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox
2025-09-12 18:07 - 2022-03-03 18:02 - 000003904 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-2309234071-1434396835-1567940020-1001UA
2025-09-12 18:07 - 2022-03-03 18:02 - 000003838 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-2309234071-1434396835-1567940020-1001Core
2025-09-12 17:42 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-09-12 02:22 - 2021-02-10 00:26 - 001693140 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-09-12 02:22 - 2019-12-07 16:41 - 000716770 _____ C:\WINDOWS\system32\perfh005.dat
2025-09-12 02:22 - 2019-12-07 16:41 - 000144948 _____ C:\WINDOWS\system32\perfc005.dat
2025-09-12 02:16 - 2022-11-21 19:01 - 000287696 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2025-09-12 02:07 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2025-09-12 02:07 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2025-09-12 02:07 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2025-09-12 02:07 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2025-09-12 02:07 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup
2025-09-12 02:07 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2025-09-12 02:07 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2025-09-12 02:07 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2025-09-12 02:07 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2025-09-12 01:28 - 2021-02-10 00:09 - 003016192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2025-09-11 22:41 - 2021-02-12 12:30 - 000000000 ____D C:\WINDOWS\Minidump
2025-09-11 22:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2025-09-11 22:31 - 2020-04-17 22:53 - 000002307 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2025-09-11 22:31 - 2020-04-17 22:53 - 000002266 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2025-09-10 02:55 - 2020-04-18 10:58 - 000000000 ____D C:\Captures
2025-09-10 02:52 - 2022-10-14 18:17 - 000002142 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader.lnk
2025-09-06 15:31 - 2025-08-22 16:16 - 000432528 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_9.dll
2025-09-06 15:31 - 2024-10-26 16:29 - 004213136 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2025-09-06 15:31 - 2024-10-26 16:29 - 000166288 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2025-09-06 15:31 - 2024-10-26 16:29 - 000121208 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe
2025-09-06 15:31 - 2024-10-26 16:29 - 000076176 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe
2025-09-06 15:30 - 2024-10-26 16:29 - 000829840 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2025-09-06 15:30 - 2024-10-26 16:29 - 000276880 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2025-09-06 15:30 - 2024-10-26 16:29 - 000244088 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2025-09-05 14:52 - 2021-02-10 00:36 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2025-08-29 15:56 - 2025-03-16 21:33 - 000001401 _____ C:\Users\vojta\Desktop\Roblox Studio.lnk

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 15-09-2025
Ran by vojta (26-09-2025 12:08:15)
Running from C:\Users\vojta\Downloads
Microsoft Windows 10 Home Version 22H2 19045.6332 (X64) (2021-02-09 22:37:21)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-2309234071-1434396835-1567940020-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2309234071-1434396835-1567940020-503 - Limited - Disabled)
Guest (S-1-5-21-2309234071-1434396835-1567940020-501 - Limited - Disabled)
vojta (S-1-5-21-2309234071-1434396835-1567940020-1001 - Administrator - Enabled) => C:\Users\vojta
WDAGUtilityAccount (S-1-5-21-2309234071-1434396835-1567940020-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 25.001.20693 - Adobe Systems Incorporated)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601120}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Ashampoo WinOptimizer 18 (HKLM-x32\...\{4209F371-3AF1-5998-2DFB-FC430324C91A}_is1) (Version: 18.00.10 - Ashampoo GmbH & Co. KG)
CurseForge (HKU\S-1-5-21-2309234071-1434396835-1567940020-1001\...\Overwolf_cchhcaiapeikjbdbpfplgmpobbcdkdaphclbmkbj) (Version: 1.288.0.8211 - Overwolf app)
Discord (HKU\S-1-5-21-2309234071-1434396835-1567940020-1001\...\Discord) (Version: 0.0.309 - Discord Inc.)
Epic Games Launcher (HKLM-x32\...\{FEF3A9BA-A962-4469-AD62-04839D4BB847}) (Version: 1.1.298.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Epic Online Services (HKLM-x32\...\{57A956AB-4BCC-45C6-9B40-957E4E125568}) (Version: 2.0.44.0 - Epic Games, Inc.)
FormApps Plug-in GPO (HKLM-x32\...\{4E6F3A31-FADD-4634-A820-3EC96877C7B9}) (Version: 1.29.0.79 - Software602 a.s.)
FormApps Signing Extension (HKLM-x32\...\{35C42D1D-32DC-404F-8978-A30B0D64DD26}) (Version: 2.24.0.43 - Software602 a.s.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 140.0.7339.128 - Google LLC)
HiSuite (HKLM-x32\...\Hi Suite) (Version: 11.0.0.320 - Huawei Technologies Co., Ltd.)
Java 8 Update 291 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180291F0}) (Version: 8.0.2910.10 - Oracle Corporation)
Java(TM) SE Development Kit 16.0.1 (64-bit) (HKLM\...\{75CDB88B-F917-5456-AB2D-5504DE7F43DE}) (Version: 16.0.1.0 - Oracle Corporation)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 140.0.3485.66 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 140.0.3485.66 - Microsoft Corporation) Hidden
Microsoft Excel 2016 - cs-cz (HKLM\...\ExcelRetail - cs-cz) (Version: 16.0.19127.20222 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2309234071-1434396835-1567940020-1001\...\OneDriveSetup.exe) (Version: 25.164.0824.0003 - Microsoft Corporation)
Microsoft PowerPoint 2016 - cs-cz (HKLM\...\PowerPointRetail - cs-cz) (Version: 16.0.19127.20222 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.28.29334 (HKLM-x32\...\{a9cfe9c7-e54f-46cd-9c5c-542ff8e3e8c4}) (Version: 14.28.29334.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.28.29334 (HKLM-x32\...\{b2d0f752-adc5-496e-8f70-8669de01f746}) (Version: 14.28.29334.0 - Microsoft Corporation)
Microsoft Visual C++ 2019 X64 Additional Runtime - 14.28.29334 (HKLM\...\{2E11EF4E-901F-4B2D-B68E-3DB2A566C857}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.28.29334 (HKLM\...\{8A3F7D5B-422D-49D9-84F7-8DC1B7782967}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Additional Runtime - 14.28.29334 (HKLM-x32\...\{14C49FC8-3E9B-4F29-8526-26629B5CF30B}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.28.29334 (HKLM-x32\...\{0D01A812-82A1-481F-8546-8E28E976F8DF}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Word 2016 - cs-cz (HKLM\...\WordRetail - cs-cz) (Version: 16.0.19127.20222 - Microsoft Corporation)
NVIDIA Ovladače grafiky 560.94 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 560.94 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.19127.20154 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.19127.20154 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.19127.20222 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0405-0000-0000000FF1CE}) (Version: 16.0.14131.20278 - Microsoft Corporation) Hidden
Overwolf (HKLM-x32\...\Overwolf) (Version: 0.282.0.9 - Overwolf Ltd.)
qBittorrent 4.2.3 (HKLM-x32\...\qBittorrent) (Version: 4.2.3 - The qBittorrent project)
Roblox Player for vojta (HKU\S-1-5-21-2309234071-1434396835-1567940020-1001\...\roblox-player) (Version: - Roblox Corporation)
Roblox Studio for vojta (HKU\S-1-5-21-2309234071-1434396835-1567940020-1001\...\roblox-studio) (Version: - Roblox Corporation)
Slime Rancher Galactic Bundle (HKLM-x32\...\Slime Rancher Galactic Bundle_is1) (Version: - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamViewer (HKLM\...\TeamViewer) (Version: 15.63.5 - TeamViewer)
TLauncher (HKLM-x32\...\TLauncher) (Version: 2.83 - TLauncher Inc.)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{B8D93870-98D1-4980-AFCA-E26563CDFB79}) (Version: 8.94.0.0 - Microsoft Corporation)
WebAdvisor od společnosti McAfee (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.1.1070 - McAfee, LLC)
WinRAR 5.90 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.90.0 - win.rar GmbH)
Zoom (HKU\S-1-5-21-2309234071-1434396835-1567940020-1001\...\ZoomUMX) (Version: 5.8.3 (1581) - Zoom Video Communications, Inc.)

Packages:
=========
Adobe Acrobat Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC [2025-07-21] ()
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-11-20] (Microsoft Corporation)
Local Artificial Intelligence Manager -> C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\AI [2025-09-17] ()
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2021-02-09] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2021-02-09] (Microsoft Corporation) [MS Ad]
Microsoft.Office.ActionsServer -> C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\ActionsServer [2025-09-17] ()
Minecraft for Windows -> C:\Program Files\WindowsApps\Microsoft.MinecraftUWP_1.21.10101.0_x64__8wekyb3d8bbwe [2025-08-14] (Microsoft Studios)
Minecraft Launcher -> C:\Program Files\WindowsApps\Microsoft.4297127D64EC6_2.2.2.0_x64__8wekyb3d8bbwe [2025-02-19] (Microsoft Studios)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.968.0_x64__56jybvy8sckqj [2025-06-12] (NVIDIA Corp.)
OfficePushNotificationsUtility -> C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16 [2025-09-17] ()
Samsung Printer Experience -> C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCO.LTD.SamsungPrinterExperience_1.3.15.0_x64__3c1yjt4zspk6g [2021-12-15] (Samsung Electronics Co. Ltd.)
Spotify – hudba a podcasty -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0 [2025-09-14] (Spotify AB) [Startup Task]
WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2535.3.0_x64__cv1g1gvanyjgm [2025-09-14] (WhatsApp Inc.) [Startup Task]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{1108FD1C-492F-4251-B9DB-77F0274267B2}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.187.37\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{262BE1F8-0897-4692-9D50-E3F63DAA43E2}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.27\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{2ABD6384-2E18-40E8-8439-F06D21E0B03D}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.43\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{2EF7E390-2F7C-4F9A-9B7D-4A87B56B711D}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.173.51\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{2FDB3305-19B8-4FE2-972B-ED5E97CBBD6E}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.39\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{38971E90-14FD-44F6-AA45-1447B653F873}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.173.45\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{41B09861-5409-4D44-8CA4-D49FBFAA2E6F}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.49\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{47E6DCAF-41F8-441C-BD0E-A50D5FE6C4D1}\localserver32 -> C:\Users\vojta\AppData\Local\Microsoft\OneDrive\25.164.0824.0003\OneDrive.Sync.Service.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{4FFB4BD8-A109-4F25-A4DB-313678B19417}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.31\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{5EA43877-C6D8-4885-B77A-C0BB27E94372}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.199.11\psuser_64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{5FC44EBC-3A1F-4FBB-85E5-34405788C8D7}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.187.41\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{608D599A-DCA6-4A7C-BED7-AFCD8465345A}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.175.29\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{64C6EFB9-8F79-4106-B975-067448DC768F}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.177.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{6DD6748E-7DAE-47EF-B4D5-03AA1B06D697}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.187.39\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{72726D01-426C-4B35-8266-B4496CAA889E}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.183.29\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{78C1ADF4-6DAE-4164-AEFA-4E3EAD9E750A}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.19\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{79F05C14-E714-4C12-9924-93C812894CB0}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.57\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{7C9A348D-C321-47AC-904F-150312A5430F}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.175.27\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{7EFB4924-4B93-4C43-9832-9C3D05E85214}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.59\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{81093D63-7825-417B-BFC8-ADC63FA4E53D}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.199.11\psuser_64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{83F21C4B-8643-4A08-A29A-822AFD835037}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.193.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{917E8742-AA3B-7318-FA12-10485FB322A2}\localserver32 -> C:\Users\vojta\AppData\Local\Microsoft\OneDrive\25.164.0824.0003\OneDrive.Sync.Service.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{A087E49F-1F8E-4603-A200-55537B737421}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.25\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{ABF66F82-B04C-4FE4-8272-661539463FE1}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.171.37\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{AE1542A7-3989-481B-93A9-1500C5F56B14}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.185.27\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{B258532D-3529-4BEB-BF38-F08F98B3968C}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.15\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{B29F5F83-90DF-479A-BDE7-8A9F4412E394}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.171.39\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{BC4C72EF-3055-4A6D-86E1-AE4D24DB63CA}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.35\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{C88B3957-621C-415B-8EE5-B688FC7EF924}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.61\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{CAE1760A-CB07-481B-8F9A-BC65510AF5D5}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.185.21\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{D2188EEC-2B0F-488C-8ECA-5285E8ECD87D}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.69\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{D8599F80-3D26-46D2-8CF1-0AD21B0ECF31}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.65\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{DAA7499A-B3AC-4419-A89B-124318504051}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.185.29\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{E3D57E77-FE71-4D06-BD34-D48820074909}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.181.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{E76F97B1-1AE9-497C-9FA4-F57BBABAD54A}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.185.17\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{E8791438-3525-48BF-A600-C577AD1674C2}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.173.49\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{ECCE2756-C45D-4E13-BC2D-EC9F138997E6}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.199.11\psuser_64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{F1CBF5EB-347F-4E4C-90AC-E43339FC34EC}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.173.55\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{F46A78BD-06FC-442C-88DF-0500F08F2379}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.45\psuser_64.dll => No File
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat Reader DC\Acrobat Elements\ContextMenuShim64.dll [2025-09-08] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_0afec3f2050014a0\nvshext.dll [2024-09-15] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2020-04-28 17:13 - 2020-04-28 17:13 - 000000000 ___JL (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R32.dll] C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\c2r32.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [5514]

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) =============

SearchScopes: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2025-09-14] (Microsoft Corporation -> Microsoft Corporation)
BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2022-07-20] (McAfee, LLC -> McAfee, LLC)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_291\bin\ssv.dll [2021-06-09] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2022-07-20] (McAfee, LLC -> McAfee, LLC)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_291\bin\jp2ssv.dll [2021-06-09] (Oracle America, Inc. -> Oracle Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-14] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-14] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-14] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-14] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-03-19 06:49 - 2019-03-19 06:49 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Network ===========================

(Currently there is no automatic fix for this section.)

DNS Servers: 10.0.1.138
Windows Firewall is enabled.

Network Binding:
=============
Ethernet: Intel(R) 82579LM Gigabit Network Connection -> e1i65x64.sys

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Program Files\Common Files\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-2309234071-1434396835-1567940020-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\windows\img0.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 5) (TamperProtectionSource: 2)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)


==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKU\S-1-5-21-2309234071-1434396835-1567940020-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-2309234071-1434396835-1567940020-1001\...\StartupApproved\Run: => "Microsoft Edge Update"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [UDP Query User{10F1AEAC-A7B7-45AC-B2B8-B98C37AF5731}C:\program files\qbittorrent\qbittorrent.exe] => (Allow) C:\program files\qbittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [TCP Query User{310EC3AC-784A-4E07-A46F-FD4CD1D4D0B2}C:\program files\qbittorrent\qbittorrent.exe] => (Allow) C:\program files\qbittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{800DFD4C-0056-44B8-91A2-E8EBF927DF71}] => (Allow) C:\Users\vojta\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{78FE9939-897A-46CD-9FE7-5AA887693C8A}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{C063E291-0D3F-42B6-9723-821695004F10}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{BCA5D52B-197A-4CCD-97D6-3A3ADA628B7F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Among Us\Among Us.exe () [File not signed]
FirewallRules: [{2435CD30-3DAE-48AD-A1CE-E6E53902DE36}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Among Us\Among Us.exe () [File not signed]
FirewallRules: [{288D69FF-C8CE-49CC-808E-614DE32FD439}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{67B74F2E-D5B4-4AC7-8CDF-D166144E3E2B}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [TCP Query User{B6208E80-63E4-4811-9C86-D623D2CB51FA}C:\users\vojta\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe] => (Allow) C:\users\vojta\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe
FirewallRules: [UDP Query User{5018E63C-13B0-46DA-8074-5A0CD43D0C24}C:\users\vojta\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe] => (Allow) C:\users\vojta\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe
FirewallRules: [TCP Query User{BF0096A4-9FF0-48F3-9A85-2F699B3ADE0D}C:\users\vojta\appdata\roaming\.minecraft\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe] => (Block) C:\users\vojta\appdata\roaming\.minecraft\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe
FirewallRules: [UDP Query User{8228CE77-F2B9-48C7-9EA8-C31B83C2DA1F}C:\users\vojta\appdata\roaming\.minecraft\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe] => (Block) C:\users\vojta\appdata\roaming\.minecraft\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe
FirewallRules: [TCP Query User{153429B9-5AF0-4ADF-AEA6-763726C048E5}C:\users\vojta\appdata\roaming\.minecraft\runtime\java-runtime-gamma\windows\java-runtime-gamma\bin\javaw.exe] => (Block) C:\users\vojta\appdata\roaming\.minecraft\runtime\java-runtime-gamma\windows\java-runtime-gamma\bin\javaw.exe
FirewallRules: [UDP Query User{7EACA8A0-0D7C-4D40-AB85-BAAA035F80CC}C:\users\vojta\appdata\roaming\.minecraft\runtime\java-runtime-gamma\windows\java-runtime-gamma\bin\javaw.exe] => (Block) C:\users\vojta\appdata\roaming\.minecraft\runtime\java-runtime-gamma\windows\java-runtime-gamma\bin\javaw.exe
FirewallRules: [{AB64C456-8FC4-43DC-905A-22B08755A935}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Ultimate Chicken Horse\UltimateChickenHorse.exe () [File not signed]
FirewallRules: [{10E8C3F7-E3FD-447C-96CA-D3D3FB1AD4AA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Ultimate Chicken Horse\UltimateChickenHorse.exe () [File not signed]
FirewallRules: [{31912624-05D6-41AA-9AFB-55C86CDFC0BC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Ultimate Custom Night\Ultimate Custom Night.exe () [File not signed]
FirewallRules: [{C57014F5-6275-4898-B4FF-C5584857760C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Ultimate Custom Night\Ultimate Custom Night.exe () [File not signed]
FirewallRules: [TCP Query User{A3433E29-52F3-4B0E-8054-41B8E046EB4F}C:\users\vojta\appdata\roaming\.minecraft\runtime\java-runtime-delta\windows\java-runtime-delta\bin\javaw.exe] => (Block) C:\users\vojta\appdata\roaming\.minecraft\runtime\java-runtime-delta\windows\java-runtime-delta\bin\javaw.exe
FirewallRules: [UDP Query User{87E79D0D-B621-48DF-9CEE-08CF95369A49}C:\users\vojta\appdata\roaming\.minecraft\runtime\java-runtime-delta\windows\java-runtime-delta\bin\javaw.exe] => (Block) C:\users\vojta\appdata\roaming\.minecraft\runtime\java-runtime-delta\windows\java-runtime-delta\bin\javaw.exe
FirewallRules: [TCP Query User{59E910BE-CEC9-4A97-AF08-5366962D6850}C:\users\vojta\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Block) C:\users\vojta\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe
FirewallRules: [UDP Query User{F2FBC8C2-1D9D-4C20-853C-518B0707A918}C:\users\vojta\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Block) C:\users\vojta\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe
FirewallRules: [TCP Query User{71654BA7-1960-42F9-85CB-9AE2528A1421}C:\users\vojta\curseforge\minecraft\install\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe] => (Block) C:\users\vojta\curseforge\minecraft\install\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe
FirewallRules: [UDP Query User{F08ED7CF-7E95-4D5E-B07F-E93DACA9B246}C:\users\vojta\curseforge\minecraft\install\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe] => (Block) C:\users\vojta\curseforge\minecraft\install\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe
FirewallRules: [{82A954B9-0F9A-45B1-ADBF-DCF80081CD85}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{E4C017A0-C633-4337-AD92-E087F8D01F69}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{B48B591D-9F16-4AF0-91B8-EE8391837CD1}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{76160B58-C52F-4B46-BC6A-CFC86BCE3C20}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [TCP Query User{515C6936-9230-430B-87ED-5180ECB5DEE5}C:\users\vojta\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Block) C:\users\vojta\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe
FirewallRules: [UDP Query User{641FE489-16C1-4B15-92E7-EC96E78F2570}C:\users\vojta\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Block) C:\users\vojta\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe
FirewallRules: [{362869C1-F712-4628-A9C7-6DBD6E6BF0BA}] => (Allow) C:\Users\vojta\AppData\Local\Programs\Opera\opera.exe => No File
FirewallRules: [{F9073C16-061A-45D1-A74E-7B4D12C68267}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{FC895ED6-8830-43AA-AC99-1FB4FBBBE2B0}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{62978742-EF53-42CB-8616-6054B0543369}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{05CCE2E8-BEE1-49DA-B3D8-E1578DBF1DF3}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{80255A70-21CD-4273-8212-89CF3A3A80F4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{C2D51241-79D8-43FD-8FD3-3BD93EB8BAF2}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{686DFE5C-E308-416C-8D04-68A89662D099}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{F3127747-7F40-404B-ADC5-211D7C4C66D7}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{E0C5473F-DA69-4954-872B-30FEA4BA7EBB}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{500AEED5-A9CE-4CD8-B1E5-F289E2B1CB02}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{3218F3BD-961F-460D-ADD3-276177389A07}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{2BA161E6-D0EB-4EC1-A38B-F04C271C476D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{195D2B0F-FD87-4315-B1D3-A45B47FE2A1A}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{044704D1-E959-406A-944A-7BC4459FDACB}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{21546FD6-D029-4799-9F9D-CA48AC2D0EB0}] => (Allow) C:\Program Files (x86)\Overwolf\0.280.2.1\OverwolfBrowser.exe => No File
FirewallRules: [{C6C70A5E-7B70-4258-AD83-9563D675BEF6}] => (Allow) C:\Program Files (x86)\Overwolf\0.280.2.1\OverwolfBrowser.exe => No File
FirewallRules: [{9FE5F832-1CA0-4180-8240-E9017EEBBEB3}] => (Block) C:\Program Files (x86)\Overwolf\0.280.2.1\OverwolfBrowser.exe => No File
FirewallRules: [{E6021F6B-B86E-45D6-9BE4-9F72C23DA8EF}] => (Block) C:\Program Files (x86)\Overwolf\0.280.2.1\OverwolfBrowser.exe => No File
FirewallRules: [{B7CD0418-107C-461D-8D13-33E50DB192F8}] => (Allow) C:\Program Files (x86)\Overwolf\0.282.0.9\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [{50AB1F12-0E58-4CB5-ACD2-9F2AA898B744}] => (Allow) C:\Program Files (x86)\Overwolf\0.282.0.9\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)

==================== Restore Points =========================


==================== Faulty Device Manager Devices ============
Name: Kompatibilní myš PS/2
Description: Kompatibilní myš PS/2
Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Event log errors: ========================

Application errors:
==================
Error: (09/22/2025 11:29:04 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (09/22/2025 06:34:40 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program notepad.exe verze 10.0.19041.5794 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 2e3c

Čas spuštění: 01dc2bde9c2a221b

Čas ukončení: 10

Cesta k aplikaci: C:\Windows\System32\notepad.exe

ID hlášení: 553b4a3c-bb16-45fb-af88-68ba828b2e4b

Úplný název balíčku s chybou:

ID aplikace relativní podle balíčku s chybou:

Typ zablokování: Unknown

Error: (09/22/2025 06:29:54 PM) (Source: ESENT) (EventID: 104) (User: )
Description: wuaueng.dll (15308,T,97) SUS20ClientDataStore: Databázový stroj zastavil instanci (0) s chybou (-1092).



Sekvence interního načasování:
[1] 0.000007 +J(0)
[2] 0.000021 +J(0) +M(C:0K, Fs:2, WS:8K # 0K, PF:0K # 0K, P:0K)
[3] 0.000004 +J(0)
[4] 0.000006 +J(0)
[5] 0.0 +J(0)
[6] 0.001623 +J(0) +M(C:0K, Fs:2, WS:-4932K # 0K, PF:-5044K # 0K, P:-5044K)
[7] 0.000009 +J(0)
[8] 0.001461 +J(0) +M(C:0K, Fs:5, WS:0K # 0K, PF:-64K # 0K, P:-64K)
[9] -
[10] 0.000004 +J(0)
[11] -
[12] 0.000034 +J(0) +M(C:0K, Fs:0, WS:-4K # 0K, PF:-4K # 0K, P:-4K)
[13] 0.000517 +J(0)
[14] 0.000020 +J(0) +M(C:0K, Fs:0, WS:-64K # 0K, PF:-68K # 0K, P:-68K)
[15] 0.000003 +J(0).

Error: (09/22/2025 06:10:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: svchost.exe_WpnUserService, verze: 10.0.19041.5794, časové razítko: 0x11bd0919
Název chybujícího modulu: QuietHours.dll, verze: 10.0.19041.5848, časové razítko: 0xa97ba274
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000003e96e
ID chybujícího procesu: 0x1fa0
Čas spuštění chybující aplikace: 0x01dc2bd9cb4a47af
Cesta k chybující aplikaci: C:\WINDOWS\system32\svchost.exe
Cesta k chybujícímu modulu: C:\Windows\System32\QuietHours.dll
ID zprávy: 89fcfc25-2d6e-4f05-add4-d900b31be443
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (09/22/2025 06:08:51 PM) (Source: ESENT) (EventID: 471) (User: )
Description: wuaueng.dll (15308,D,11) SUS20ClientDataStore: Operaci č. 12935 s databází C:\WINDOWS\SoftwareDistribution\DataStore\DataStore.edb nejde vrátit zpět. Chyba: -529. Všechny budoucí aktualizace databáze se odmítnou.

Error: (09/22/2025 06:08:51 PM) (Source: ESENT) (EventID: 492) (User: )
Description: wuaueng.dll (15308,D,0) SUS20ClientDataStore: Posloupnost souborů protokolů (C:\WINDOWS\SoftwareDistribution\DataStore\Logs\) se zastavila kvůli závažné chybě. Databáze, které používají tuto posloupnost souborů protokolů, už nejde aktualizovat. Vyřešte prosím problémy a restartujte nebo obnovte databázi ze záložní kopie.

Error: (09/22/2025 06:08:51 PM) (Source: ESENT) (EventID: 413) (User: )
Description: wuaueng.dll (15308,D,0) SUS20ClientDataStore: Nový soubor protokolu se nedá vytvořit, protože databáze nemůže zapisovat na jednotku protokolu. Jednotka může být jen pro čtení, špatně nakonfigurovaná nebo poškozená nebo na ní nemusí být dost místa. Chyba: -529

Error: (09/22/2025 06:08:51 PM) (Source: ESENT) (EventID: 482) (User: )
Description: wuaueng.dll (15308,D,0) SUS20ClientDataStore: Pokus o zápis do souboru C:\WINDOWS\SoftwareDistribution\DataStore\Logs\edbtmp.log na posunu 1310720 (0x0000000000140000) o 0 (0x00000000) bajtů po 0.000 sekundách selhal. Došlo k systémové chybě 112 (0x00000070): Na disku není dost místa. . Operace zápisu selže a dojde k chybě -1808 (0xfffff8f0). Pokud s tím budou dál problémy, může být soubor poškozený a budete ho možná muset obnovit z předchozí zálohy.


System errors:
=============
Error: (09/26/2025 12:08:58 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 87 při pokusu o spuštění služby GamingServices s argumenty Není k dispozici za účelem spuštění serveru:
{D529741A-1BF1-4D1E-9976-35089622E758}

Error: (09/26/2025 12:08:58 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 87 při pokusu o spuštění služby GamingServices s argumenty Není k dispozici za účelem spuštění serveru:
{3E8C9ABE-9226-4609-BF5B-60288A391DEE}

Error: (09/26/2025 12:08:58 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 87 při pokusu o spuštění služby GamingServices s argumenty Není k dispozici za účelem spuštění serveru:
{D529741A-1BF1-4D1E-9976-35089622E758}

Error: (09/26/2025 12:08:58 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 87 při pokusu o spuštění služby GamingServices s argumenty Není k dispozici za účelem spuštění serveru:
{3E8C9ABE-9226-4609-BF5B-60288A391DEE}

Error: (09/26/2025 12:08:58 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 87 při pokusu o spuštění služby GamingServices s argumenty Není k dispozici za účelem spuštění serveru:
{D529741A-1BF1-4D1E-9976-35089622E758}

Error: (09/26/2025 12:08:58 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 87 při pokusu o spuštění služby GamingServices s argumenty Není k dispozici za účelem spuštění serveru:
{3E8C9ABE-9226-4609-BF5B-60288A391DEE}

Error: (09/26/2025 12:08:58 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 87 při pokusu o spuštění služby GamingServices s argumenty Není k dispozici za účelem spuštění serveru:
{D529741A-1BF1-4D1E-9976-35089622E758}

Error: (09/26/2025 12:08:58 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 87 při pokusu o spuštění služby GamingServices s argumenty Není k dispozici za účelem spuštění serveru:
{3E8C9ABE-9226-4609-BF5B-60288A391DEE}


Windows Defender:
================
Date: 2025-09-22 18:25:53
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Trojan:Win32/Ulthar.A!ml
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\vojta\Downloads\pivotAnimator_v4-2.exe
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Ochrana v reálném čase
Uživatel: DESKTOP-AR8PDOO\vojta
Název procesu: C:\Windows\explorer.exe
Verze bezpečnostních informací: AV: 1.437.5.0, AS: 1.437.5.0, NIS: 1.437.5.0
Verze modulu: AM: 1.1.25080.5, NIS: 1.1.25080.5

Date: 2025-09-17 17:55:43
Description:
Antivirová ochrana v programu Microsoft Defender šĉàŋ ђåŝ ъėëп şţǿрρєđ ъεƒõŕė ςόмφℓеŧιοл.%ñ %ŧЅċǻⁿ ĨĎ:%ъ{480C10BC-8EFF-445E-B1CA-7A086B6199B4}%и %ţŠ¢åή Ŧγρэ:%ьAntimalwarový program%ñ %τŜčдⁿ Рâŕǻмет℮гş:%ъRychlé prohledávání%л %тŮŝέя:%ъNT AUTHORITY\SYSTEM%ⁿ %ţŞťορ Ŗèǻśõп:%вŞςħеδΰĺэδ ŝćąń ŵάŝ şķïρρĕđ ьěċäύśé ţħė łªśт şΰćčêѕŝƒŭℓ śčàņ ŵαš ώîťђîп ťħз łáśť 7 δªỳş

Date: 2025-09-17 16:05:09
Description:
Antivirová ochrana v programu Microsoft Defender šĉàŋ ђåŝ ъėëп şţǿрρєđ ъεƒõŕė ςόмφℓеŧιοл.%ñ %ŧЅċǻⁿ ĨĎ:%ъ{3F42373E-AC29-4303-B11E-79D91E1B5437}%и %ţŠ¢åή Ŧγρэ:%ьAntimalwarový program%ñ %τŜčдⁿ Рâŕǻмет℮гş:%ъRychlé prohledávání%л %тŮŝέя:%ъNT AUTHORITY\SYSTEM%ⁿ %ţŞťορ Ŗèǻśõп:%вŞςħеδΰĺэδ ŝćąń ŵάŝ şķïρρĕđ ьěċäύśé ţħė łªśт şΰćčêѕŝƒŭℓ śčàņ ŵαš ώîťђîп ťħз łáśť 7 δªỳş

Date: 2025-09-14 20:53:16
Description:
Antivirová ochrana v programu Microsoft Defender šĉàŋ ђåŝ ъėëп şţǿрρєđ ъεƒõŕė ςόмφℓеŧιοл.%ñ %ŧЅċǻⁿ ĨĎ:%ъ{1CEFF80E-FFED-46D3-AAC5-082A3251BAF4}%и %ţŠ¢åή Ŧγρэ:%ьAntimalwarový program%ñ %τŜčдⁿ Рâŕǻмет℮гş:%ъRychlé prohledávání%л %тŮŝέя:%ъNT AUTHORITY\SYSTEM%ⁿ %ţŞťορ Ŗèǻśõп:%вŞςħеδΰĺэδ ŝćąń ŵάŝ şķïρρĕđ ьěċäύśé ţħė łªśт şΰćčêѕŝƒŭℓ śčàņ ŵαš ώîťђîп ťħз łáśť 7 δªỳş

Date: 2025-09-12 17:46:51
Description:
Antivirová ochrana v programu Microsoft Defender šĉàŋ ђåŝ ъėëп şţǿрρєđ ъεƒõŕė ςόмφℓеŧιοл.%ñ %ŧЅċǻⁿ ĨĎ:%ъ{2A0F5963-A7D4-4BF3-B959-FBE5F11AFEA9}%и %ţŠ¢åή Ŧγρэ:%ьAntimalwarový program%ñ %τŜčдⁿ Рâŕǻмет℮гş:%ъRychlé prohledávání%л %тŮŝέя:%ъNT AUTHORITY\SYSTEM%ⁿ %ţŞťορ Ŗèǻśõп:%вŔΡÇ ċбňйεčтìσй ѓŭлðóщʼn
Event[0]:

Date: 2025-09-26 12:10:49
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.437.101.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.25080.5
Kód chyby: 0x80070020
Popis chyby: Proces nemá přístup k souboru, neboť jej právě využívá jiný proces.

Date: 2025-09-26 12:10:49
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.437.101.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.25080.5
Kód chyby: 0x80070020
Popis chyby: Proces nemá přístup k souboru, neboť jej právě využívá jiný proces.

Date: 2025-09-26 12:10:49
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.437.101.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.25080.5
Kód chyby: 0x80070020
Popis chyby: Proces nemá přístup k souboru, neboť jej právě využívá jiný proces.

Date: 2025-09-22 22:46:31
Description:
Služba Antivirová ochrana v programu Microsoft Defender zřejmě během vypnutí neodpovídá.
Timout (sekundy): 0
Součást: UninitializeServiceWppTracing
Ukončeno: 0

Date: 2025-09-22 18:09:25
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.437.5.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.25080.5
Kód chyby: 0x80070070
Popis chyby: Na disku není dost místa.

CodeIntegrity:
===============
Date: 2025-08-31 16:06:59
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\fcon.dll because the set of per-page image hashes could not be found on the system.

Date: 2025-08-31 16:06:53
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.


==================== Memory info ===========================

BIOS: Dell Inc. A05 05/28/2011
Motherboard: Dell Inc. 0HY9JP
Processor: Intel(R) Core(TM) i5-2400 CPU @ 3.10GHz
Percentage of memory in use: 25%
Total physical RAM: 24532.93 MB
Available physical RAM: 18351.43 MB
Total Virtual: 28116.93 MB
Available Virtual: 21443.7 MB

==================== Drives ================================

Drive c: (Compik) (Fixed) (Total:296.54 GB) (Free:0.23 GB) (Model: WDC WD3200AAKS-61L9A0) NTFS
Drive d: (Compik) (RAMDisk) (Total:296.54 GB) (Free:1.3 GB) (Model: WDC WD3200AAKS-61L9A0) NTFS

\\?\Volume{085c6574-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.54 GB) (Free:0.5 GB) NTFS
\\?\Volume{085c6574-0000-0000-0000-b0444a000000}\ () (Fixed) (Total:0.51 GB) (Free:0.08 GB) NTFS
\\?\Volume{085c6574-0000-0000-0000-30654a000000}\ () (Fixed) (Total:0.51 GB) (Free:0.08 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 298.1 GB) (Disk ID: 085C6574)
Partition 1: (Active) - (Size=549 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=296.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=519 MB) - (Type=27)
Partition 4: (Not Active) - (Size=521 MB) - (Type=27)

==================== End of Addition.txt =======================

Re: Zpomalený počítač, plné úložiště

Napsal: 26 zář 2025 17:39
od Rudy
Zdravím!
Nejprve přesuňte některé vaěe soubory (např. fotky, videa, hudbu apod.) na jiné úložiště (třeba na D:\, kde je více, než 1 GB volného místa). Pak spusťte tuto utilitu: https://forum.viry.cz/viewtopic.php?f=13&t=154679 a dejte logy FRST+Adfdition.

Re: Zpomalený počítač, plné úložiště

Napsal: 26 zář 2025 18:08
od Nela_M
Děkuji, jak je možné, že disk D nevídím? Viz. obrázek...

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 15-09-2025
Ran by vojta (administrator) on DESKTOP-AR8PDOO (Dell Inc. OptiPlex 790) (26-09-2025 18:50:27)
Running from C:\Users\vojta\Desktop\FRST64.exe
Loaded Profiles: vojta
Platform: Microsoft Windows 10 Home Version 22H2 19045.6332 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AdobeCollabSync.exe <2>
(C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe ->) (Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jucheck.exe
(C:\Program Files (x86)\Overwolf\Overwolf.exe ->) (Overwolf Ltd -> Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\0.282.0.9\OverwolfHelper.exe
(C:\Program Files (x86)\Overwolf\Overwolf.exe ->) (Overwolf Ltd -> Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\0.282.0.9\OverwolfHelper64.exe
(C:\Program Files (x86)\Overwolf\Overwolf.exe ->) (Overwolf Ltd -> Overwolf LTD) C:\Program Files (x86)\Overwolf\0.282.0.9\OverwolfBrowser.exe <5>
(C:\Program Files\McAfee\WebAdvisor\servicehost.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\uihost.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(Overwolf Ltd -> Overwolf LTD) C:\Program Files (x86)\Overwolf\Overwolf.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Huawei Technologies Co., Ltd. -> ) [File not signed] C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe
(services.exe ->) (McAfee, LLC -> McAfee, LLC) C:\Program Files\McAfee\WebAdvisor\servicehost.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\GameInputSvc.exe <2>
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\NisSrv.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_0afec3f2050014a0\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2535.3.0_x64__cv1g1gvanyjgm\WhatsApp.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\SDXHelper.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\microsoft.windowscommunicationsapps_16005.14326.22342.0_x64__8wekyb3d8bbwe\HxTsr.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\vojta\AppData\Local\Microsoft\OneDrive\25.164.0824.0003\FileCoAuth.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\SppExtComObj.Exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [706288 2021-04-09] (Oracle America, Inc. -> Oracle Corporation)
HKLM\Software\Policies\...\system: [EnableSmartScreen] 0
HKU\S-1-5-21-2309234071-1434396835-1567940020-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [36981208 2024-12-04] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-2309234071-1434396835-1567940020-1001\...\Run: [Microsoft Edge Update] => C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.199.11\MicrosoftEdgeUpdateCore.exe [268880 2025-09-12] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2309234071-1434396835-1567940020-1001\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe [1911040 2025-09-07] (Overwolf Ltd -> Overwolf Ltd.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\140.0.7339.128\Installer\chrmstp.exe [2025-09-11] (Google LLC -> Google LLC)
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {8FF5DE67-C947-4488-997B-4184221E7D50} - System32\Tasks\Microsoft\Windows\WindowsUpdate\Scheduled Start
Task: {A072C6AC-EF95-43DC-9B52-60B9B361C6CD} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Maintenance Work
Task: {F5149BC7-FB00-46D5-A884-A2BBA79A03E1} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Schedule Work
Task: {73EC1224-B299-4089-A521-324D13CA7887} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1581568 2025-08-24] (Adobe Inc. -> Adobe Inc.)
Task: {B4207548-9ED5-496E-8D89-1974E31BBD57} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem142.0.7416.0{20B5FB81-D249-4FC7-A2F8-4276E1D9160E} => C:\Program Files (x86)\Google\GoogleUpdater\142.0.7416.0\updater.exe [6863512 2025-09-15] (Google LLC -> Google LLC)
Task: {E000A350-3588-4AB6-BD81-3CABB598AC58} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\ActionsServer\ActionsServer.exe [11418472 2025-09-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {FA4E1DFA-932F-4AA5-9423-459F9EB21B34} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29024664 2025-09-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {77F78BF4-627C-495F-B2F8-21E7881CA593} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonx86\Microsoft Shared\OFFICE16\opushutil.exe [61360 2025-09-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {3739E7DB-C928-456E-A350-3C81231B1D6D} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29024664 2025-09-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {CF512DC8-33C3-46FA-ADAF-51434E7BA6A5} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [224632 2025-09-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {29A4359C-3D35-4C70-A298-04D5D44B6391} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [224632 2025-09-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {82D70B55-052B-4C19-B53A-37534FA437EC} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MpCmdRun.exe [1778248 2025-09-22] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {33FEEF2A-84C3-4FDC-A712-F902982DFCA4} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MpCmdRun.exe [1778248 2025-09-22] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {A096E26B-2F22-4CF9-8329-A306517F3C03} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MpCmdRun.exe [1778248 2025-09-22] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F19166DA-9E63-4371-AB13-8BE1B3790B41} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MpCmdRun.exe [1778248 2025-09-22] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {2B252F72-A9B7-4A45-B4D7-5B3FB2D8E651} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-2309234071-1434396835-1567940020-1001Core => C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [214928 2022-03-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {B8D00BF7-1EF1-456D-8822-B8A695F29184} - System32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-2309234071-1434396835-1567940020-1001UA => C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe [214928 2022-03-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {DBE0DB9F-04F7-4465-B1C7-316CB9D35C4F} - System32\Tasks\OneDrive Startup Task-S-1-5-21-2309234071-1434396835-1567940020-1001 => C:\Users\vojta\AppData\Local\Microsoft\OneDrive\25.164.0824.0003\OneDriveLauncher.exe [725864 2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {6A79BAEA-1E24-46E0-B7E3-D60E48C73AE8} - System32\Tasks\Opera scheduled assistant Autoupdate 1596177460 => C:\Users\vojta\AppData\Local\Programs\Opera\launcher.exe -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\vojta\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {3061243F-57B8-46AD-AAB6-AA6E619373E9} - System32\Tasks\Opera scheduled Autoupdate 1596141558 => C:\Users\vojta\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe --scheduledtask --bypasslauncher $(Arg0) (No File)
Task: {F743E6DC-C1B4-43AE-BA6A-1B20537410F3} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2398016 2025-09-07] (Overwolf Ltd -> Overwolf LTD) -> C:\Program Files (x86)\Overwolf\/RunningFrom Schedule

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.0.1.138
Tcpip\..\Interfaces\{a0cf52cf-08bf-4fc8-9b8e-f5e8ad9e956d}: [DhcpNameServer] 10.0.1.138
Tcpip\..\Interfaces\{a0cf52cf-08bf-4fc8-9b8e-f5e8ad9e956d}: [DhcpDomain] home

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\vojta\AppData\Local\Microsoft\Edge\User Data\Default [2025-01-25]
Edge Extension: (Dokumenty Google offline) - C:\Users\vojta\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-01-15]
Edge Extension: (Edge relevant text changes) - C:\Users\vojta\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]
Edge HKLM-x32\...\Edge\Extension: [ihcjicgdanjaechkgeegckofjjedodee]

FireFox:
========
FF Plugin-x32: @java.com/DTPlugin,version=11.291.2 -> C:\Program Files (x86)\Java\jre1.8.0_291\bin\dtplugin\npDeployJava1.dll [2021-06-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.291.2 -> C:\Program Files (x86)\Java\jre1.8.0_291\bin\plugin2\npjp2.dll [2021-06-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-09-14] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2025-09-08] (Adobe Inc. -> Adobe Systems Inc.)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\vojta\AppData\Local\Google\Chrome\User Data\Default [2025-09-26]
CHR HomePage: Default -> hxxps://www.roblox.com/
CHR StartupUrls: Default -> "hxxp://www.google.cz/"
CHR Extension: (McAfee® WebAdvisor) - C:\Users\vojta\AppData\Local\Google\Chrome\User Data\Default\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2025-09-22]
CHR Extension: (Dokumenty Google offline) - C:\Users\vojta\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-09-22]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\vojta\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2025-09-26]
CHR Extension: (Malwarebytes Browser Guard) - C:\Users\vojta\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2025-09-11]
CHR Extension: (FormApps Extension) - C:\Users\vojta\AppData\Local\Google\Chrome\User Data\Default\Extensions\ilfoopambfaclfjmpiaijnccgcmbeigi [2024-04-15]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\vojta\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Profile: C:\Users\vojta\AppData\Local\Google\Chrome\User Data\Profile 2 [2024-11-28]
CHR Extension: (McAfee® WebAdvisor) - C:\Users\vojta\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\fheoggkfdfchfphceeifdbepaooicaho [2024-11-28]
CHR Extension: (Dokumenty Google offline) - C:\Users\vojta\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-11-28]
CHR Extension: (Malwarebytes Browser Guard) - C:\Users\vojta\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2024-11-28]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\vojta\AppData\Local\Google\Chrome\User Data\Profile 2\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-11-28]
CHR Profile: C:\Users\vojta\AppData\Local\Google\Chrome\User Data\System Profile [2024-12-08]
CHR HKLM\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKU\S-1-5-21-2309234071-1434396835-1567940020-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [fheoggkfdfchfphceeifdbepaooicaho]
CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]

Opera:
=======
OPR Profile: C:\Users\vojta\AppData\Roaming\Opera Software\Opera Stable [2025-09-22]
OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=o ... utEncoding}

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174584 2025-08-24] (Adobe Inc. -> Adobe Inc.)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [15689512 2024-03-09] (BattlEye Innovations e.K. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13287776 2025-09-08] (Microsoft Corporation -> Microsoft Corporation)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [818304 2021-02-19] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [965872 2024-11-17] (EasyAntiCheat Oy -> Epic Games, Inc.)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934352 2023-08-02] (Epic Games Inc. -> Epic Games, Inc.)
S3 GameInputRedistService; C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe [137616 2025-09-16] (Microsoft Corporation -> Microsoft Corporation)
R2 HuaweiHiSuiteService64.exe; C:\Program Files (x86)\HiSuite\HandSetService\HuaweiHiSuiteService64.exe [192320 2020-09-07] (Huawei Technologies Co., Ltd. -> ) [File not signed]
R2 McAfee WebAdvisor; C:\Program Files\McAfee\WebAdvisor\ServiceHost.exe [951024 2025-09-22] (McAfee, LLC -> McAfee, LLC)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MpDefenderCoreService.exe [2009656 2025-09-22] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_0afec3f2050014a0\Display.NvContainer\NVDisplay.Container.exe [1275000 2024-09-15] (NVIDIA Corporation -> NVIDIA Corporation)
S3 OverwolfUpdater; C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2398016 2025-09-07] (Overwolf Ltd -> Overwolf LTD)
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [21827888 2025-03-05] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\NisSrv.exe [4414464 2025-09-22] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25080.5-0\MsMpEng.exe [282480 2025-09-22] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [76800 2019-12-07] (Microsoft Corporation) [File not signed]
S3 ew_usbccgpfilter; C:\WINDOWS\System32\drivers\ew_usbccgpfilter.sys [18944 2020-09-07] (Microsoft Windows Hardware Compatibility Publisher -> Huawei Technologies Co., Ltd.)
S3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [333216 2025-09-22] (Microsoft Windows -> Microsoft Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [20880 2025-09-22] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [627104 2025-09-22] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [102816 2025-09-22] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2025-09-26 18:50 - 2025-09-26 18:52 - 000019772 _____ C:\Users\vojta\Desktop\FRST.txt
2025-09-26 12:09 - 2025-09-26 12:09 - 000000000 ____D C:\Program Files\Windows Kits
2025-09-26 12:09 - 2025-09-26 12:09 - 000000000 ____D C:\Program Files\Microsoft GameInput
2025-09-26 11:53 - 2025-09-26 11:53 - 002442752 _____ (Farbar) C:\Users\vojta\Desktop\FRST64.exe
2025-09-12 17:24 - 2025-09-12 17:24 - 000004042 _____ C:\WINDOWS\system32\Tasks\PostponeDeviceSetupToast_S-1-5-21-2309234071-1434396835-1567940020-1001_11

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2025-09-26 18:51 - 2019-06-28 16:37 - 000000000 ____D C:\FRST
2025-09-26 18:48 - 2021-02-10 00:09 - 000000000 ____D C:\Users\vojta
2025-09-26 18:45 - 2021-12-18 01:40 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-09-26 18:45 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-09-26 16:07 - 2024-10-29 18:38 - 000002327 _____ C:\Users\vojta\Desktop\CurseForge.lnk
2025-09-26 16:07 - 2024-10-29 18:35 - 000000000 ____D C:\Users\vojta\AppData\Local\Overwolf
2025-09-26 13:34 - 2020-04-17 22:51 - 000000000 ____D C:\ProgramData\NVIDIA
2025-09-26 13:28 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-09-26 13:28 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-09-26 12:09 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2025-09-26 12:08 - 2024-10-26 16:29 - 004213136 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2025-09-26 12:08 - 2024-10-26 16:29 - 000154000 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe
2025-09-26 12:08 - 2024-10-26 16:29 - 000076176 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe
2025-09-26 12:07 - 2024-10-26 16:29 - 000166288 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2025-09-26 12:06 - 2024-10-26 16:29 - 000878960 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2025-09-26 12:06 - 2024-10-26 16:29 - 000285048 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2025-09-26 12:06 - 2024-10-26 16:29 - 000244112 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2025-09-26 11:43 - 2020-04-22 15:38 - 000000000 ____D C:\Users\vojta\AppData\Local\D3DSCache
2025-09-23 00:40 - 2021-02-10 00:04 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-09-22 22:46 - 2020-04-17 22:02 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2025-09-22 22:45 - 2024-10-29 18:38 - 000000000 ____D C:\Program Files (x86)\Overwolf
2025-09-22 22:43 - 2025-02-17 21:35 - 000003576 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-2309234071-1434396835-1567940020-1001
2025-09-22 22:43 - 2021-12-11 12:39 - 000003592 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2309234071-1434396835-1567940020-1001
2025-09-22 22:43 - 2021-02-10 00:36 - 000003380 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-2309234071-1434396835-1567940020-1001
2025-09-22 22:43 - 2021-02-10 00:09 - 000002387 _____ C:\Users\vojta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-09-22 18:29 - 2020-04-17 22:52 - 000000000 ___RD C:\Users\vojta\OneDrive
2025-09-22 18:24 - 2020-04-17 22:47 - 000000000 ____D C:\Users\vojta\AppData\Local\Packages
2025-09-22 18:10 - 2021-09-10 14:37 - 000000000 ____D C:\Users\vojta\AppData\Local\CrashDumps
2025-09-17 15:56 - 2020-04-22 16:52 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2025-09-15 00:08 - 2020-04-17 22:56 - 000000000 ____D C:\Users\vojta\AppData\Local\Roblox
2025-09-14 19:48 - 2023-01-17 20:50 - 000002280 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2025-09-14 19:48 - 2020-06-13 09:25 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-09-14 18:41 - 2021-02-10 00:36 - 000003640 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-09-14 18:41 - 2021-02-10 00:36 - 000003514 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-09-13 01:55 - 2022-06-06 20:01 - 000000000 ____D C:\Program Files\TeamViewer
2025-09-13 01:55 - 2021-02-10 00:36 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-09-13 01:55 - 2021-02-10 00:04 - 000008192 ___SH C:\DumpStack.log.tmp
2025-09-13 00:27 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2025-09-12 18:10 - 2025-04-08 19:50 - 000001401 _____ C:\Users\vojta\Desktop\Roblox Player.lnk
2025-09-12 18:10 - 2020-04-17 22:56 - 000000000 ____D C:\Users\vojta\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox
2025-09-12 18:07 - 2022-03-03 18:02 - 000003904 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-2309234071-1434396835-1567940020-1001UA
2025-09-12 18:07 - 2022-03-03 18:02 - 000003838 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskUserS-1-5-21-2309234071-1434396835-1567940020-1001Core
2025-09-12 17:42 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-09-12 02:22 - 2021-02-10 00:26 - 001693140 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-09-12 02:22 - 2019-12-07 16:41 - 000716770 _____ C:\WINDOWS\system32\perfh005.dat
2025-09-12 02:22 - 2019-12-07 16:41 - 000144948 _____ C:\WINDOWS\system32\perfc005.dat
2025-09-12 02:16 - 2022-11-21 19:01 - 000287696 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2025-09-12 02:07 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2025-09-12 02:07 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2025-09-12 02:07 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2025-09-12 02:07 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2025-09-12 02:07 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup
2025-09-12 02:07 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2025-09-12 02:07 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2025-09-12 02:07 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2025-09-12 02:07 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2025-09-12 01:28 - 2021-02-10 00:09 - 003016192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2025-09-11 22:41 - 2021-02-12 12:30 - 000000000 ____D C:\WINDOWS\Minidump
2025-09-11 22:41 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2025-09-11 22:31 - 2020-04-17 22:53 - 000002307 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2025-09-11 22:31 - 2020-04-17 22:53 - 000002266 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2025-09-10 02:55 - 2020-04-18 10:58 - 000000000 ____D C:\Captures
2025-09-10 02:52 - 2022-10-14 18:17 - 000002142 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader.lnk
2025-09-06 15:31 - 2025-08-22 16:16 - 000432528 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_9.dll
2025-09-06 15:30 - 2024-10-26 16:29 - 000829840 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll.0
2025-09-05 14:52 - 2021-02-10 00:36 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2025-08-29 15:56 - 2025-03-16 21:33 - 000001401 _____ C:\Users\vojta\Desktop\Roblox Studio.lnk

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 15-09-2025
Ran by vojta (26-09-2025 18:54:06)
Running from C:\Users\vojta\Desktop
Microsoft Windows 10 Home Version 22H2 19045.6332 (X64) (2021-02-09 22:37:21)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-2309234071-1434396835-1567940020-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2309234071-1434396835-1567940020-503 - Limited - Disabled)
Guest (S-1-5-21-2309234071-1434396835-1567940020-501 - Limited - Disabled)
vojta (S-1-5-21-2309234071-1434396835-1567940020-1001 - Administrator - Enabled) => C:\Users\vojta
WDAGUtilityAccount (S-1-5-21-2309234071-1434396835-1567940020-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat Reader - Czech (HKLM-x32\...\{AC76BA86-7AD7-1029-7B44-AC0F074E4100}) (Version: 25.001.20693 - Adobe Systems Incorporated)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601120}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Ashampoo WinOptimizer 18 (HKLM-x32\...\{4209F371-3AF1-5998-2DFB-FC430324C91A}_is1) (Version: 18.00.10 - Ashampoo GmbH & Co. KG)
CurseForge (HKU\S-1-5-21-2309234071-1434396835-1567940020-1001\...\Overwolf_cchhcaiapeikjbdbpfplgmpobbcdkdaphclbmkbj) (Version: 1.288.0.8211 - Overwolf app)
Discord (HKU\S-1-5-21-2309234071-1434396835-1567940020-1001\...\Discord) (Version: 0.0.309 - Discord Inc.)
Epic Games Launcher (HKLM-x32\...\{FEF3A9BA-A962-4469-AD62-04839D4BB847}) (Version: 1.1.298.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Epic Online Services (HKLM-x32\...\{57A956AB-4BCC-45C6-9B40-957E4E125568}) (Version: 2.0.44.0 - Epic Games, Inc.)
FormApps Plug-in GPO (HKLM-x32\...\{4E6F3A31-FADD-4634-A820-3EC96877C7B9}) (Version: 1.29.0.79 - Software602 a.s.)
FormApps Signing Extension (HKLM-x32\...\{35C42D1D-32DC-404F-8978-A30B0D64DD26}) (Version: 2.24.0.43 - Software602 a.s.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 140.0.7339.128 - Google LLC)
HiSuite (HKLM-x32\...\Hi Suite) (Version: 11.0.0.320 - Huawei Technologies Co., Ltd.)
Java 8 Update 291 (HKLM-x32\...\{26A24AE4-039D-4CA4-87B4-2F32180291F0}) (Version: 8.0.2910.10 - Oracle Corporation)
Java(TM) SE Development Kit 16.0.1 (64-bit) (HKLM\...\{75CDB88B-F917-5456-AB2D-5504DE7F43DE}) (Version: 16.0.1.0 - Oracle Corporation)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 140.0.3485.66 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 140.0.3485.66 - Microsoft Corporation) Hidden
Microsoft Excel 2016 - cs-cz (HKLM\...\ExcelRetail - cs-cz) (Version: 16.0.19127.20222 - Microsoft Corporation)
Microsoft GameInput (HKLM\...\{F563DC73-9550-F772-B4BF-2F72C83F9F30}) (Version: 10.1.26100.6114 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2309234071-1434396835-1567940020-1001\...\OneDriveSetup.exe) (Version: 25.164.0824.0003 - Microsoft Corporation)
Microsoft PowerPoint 2016 - cs-cz (HKLM\...\PowerPointRetail - cs-cz) (Version: 16.0.19127.20222 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.28.29334 (HKLM-x32\...\{a9cfe9c7-e54f-46cd-9c5c-542ff8e3e8c4}) (Version: 14.28.29334.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.28.29334 (HKLM-x32\...\{b2d0f752-adc5-496e-8f70-8669de01f746}) (Version: 14.28.29334.0 - Microsoft Corporation)
Microsoft Visual C++ 2019 X64 Additional Runtime - 14.28.29334 (HKLM\...\{2E11EF4E-901F-4B2D-B68E-3DB2A566C857}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.28.29334 (HKLM\...\{8A3F7D5B-422D-49D9-84F7-8DC1B7782967}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Additional Runtime - 14.28.29334 (HKLM-x32\...\{14C49FC8-3E9B-4F29-8526-26629B5CF30B}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.28.29334 (HKLM-x32\...\{0D01A812-82A1-481F-8546-8E28E976F8DF}) (Version: 14.28.29334 - Microsoft Corporation) Hidden
Microsoft Word 2016 - cs-cz (HKLM\...\WordRetail - cs-cz) (Version: 16.0.19127.20222 - Microsoft Corporation)
NVIDIA Ovladače grafiky 560.94 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 560.94 - NVIDIA Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.19127.20154 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.19127.20154 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.19127.20222 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0405-0000-0000000FF1CE}) (Version: 16.0.14131.20278 - Microsoft Corporation) Hidden
Overwolf (HKLM-x32\...\Overwolf) (Version: 0.282.0.9 - Overwolf Ltd.)
qBittorrent 4.2.3 (HKLM-x32\...\qBittorrent) (Version: 4.2.3 - The qBittorrent project)
Roblox Player for vojta (HKU\S-1-5-21-2309234071-1434396835-1567940020-1001\...\roblox-player) (Version: - Roblox Corporation)
Roblox Studio for vojta (HKU\S-1-5-21-2309234071-1434396835-1567940020-1001\...\roblox-studio) (Version: - Roblox Corporation)
Slime Rancher Galactic Bundle (HKLM-x32\...\Slime Rancher Galactic Bundle_is1) (Version: - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamViewer (HKLM\...\TeamViewer) (Version: 15.63.5 - TeamViewer)
TLauncher (HKLM-x32\...\TLauncher) (Version: 2.83 - TLauncher Inc.)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{B8D93870-98D1-4980-AFCA-E26563CDFB79}) (Version: 8.94.0.0 - Microsoft Corporation)
WebAdvisor od společnosti McAfee (HKLM-x32\...\{35ED3F83-4BDC-4c44-8EC6-6A8301C7413A}) (Version: 4.1.1.1070 - McAfee, LLC)
WinRAR 5.90 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.90.0 - win.rar GmbH)
Zoom (HKU\S-1-5-21-2309234071-1434396835-1567940020-1001\...\ZoomUMX) (Version: 5.8.3 (1581) - Zoom Video Communications, Inc.)

Packages:
=========
Adobe Acrobat Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC [2025-07-21] ()
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-11-20] (Microsoft Corporation)
Local Artificial Intelligence Manager -> C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\AI [2025-09-17] ()
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2021-02-09] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2021-02-09] (Microsoft Corporation) [MS Ad]
Microsoft.Office.ActionsServer -> C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\ActionsServer [2025-09-17] ()
Minecraft for Windows -> C:\Program Files\WindowsApps\Microsoft.MinecraftUWP_1.21.10101.0_x64__8wekyb3d8bbwe [2025-08-14] (Microsoft Studios)
Minecraft Launcher -> C:\Program Files\WindowsApps\Microsoft.4297127D64EC6_2.2.2.0_x64__8wekyb3d8bbwe [2025-02-19] (Microsoft Studios)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.968.0_x64__56jybvy8sckqj [2025-06-12] (NVIDIA Corp.)
OfficePushNotificationsUtility -> C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16 [2025-09-17] ()
Samsung Printer Experience -> C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCO.LTD.SamsungPrinterExperience_1.3.15.0_x64__3c1yjt4zspk6g [2021-12-15] (Samsung Electronics Co. Ltd.)
Spotify – hudba a podcasty -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0 [2025-09-14] (Spotify AB) [Startup Task]
WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2535.3.0_x64__cv1g1gvanyjgm [2025-09-14] (WhatsApp Inc.) [Startup Task]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{1108FD1C-492F-4251-B9DB-77F0274267B2}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.187.37\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{262BE1F8-0897-4692-9D50-E3F63DAA43E2}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.27\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{2ABD6384-2E18-40E8-8439-F06D21E0B03D}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.43\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{2EF7E390-2F7C-4F9A-9B7D-4A87B56B711D}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.173.51\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{2FDB3305-19B8-4FE2-972B-ED5E97CBBD6E}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.39\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{38971E90-14FD-44F6-AA45-1447B653F873}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.173.45\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{41B09861-5409-4D44-8CA4-D49FBFAA2E6F}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.49\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{47E6DCAF-41F8-441C-BD0E-A50D5FE6C4D1}\localserver32 -> C:\Users\vojta\AppData\Local\Microsoft\OneDrive\25.164.0824.0003\OneDrive.Sync.Service.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{4FFB4BD8-A109-4F25-A4DB-313678B19417}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.31\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{5EA43877-C6D8-4885-B77A-C0BB27E94372}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.199.11\psuser_64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{5FC44EBC-3A1F-4FBB-85E5-34405788C8D7}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.187.41\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{608D599A-DCA6-4A7C-BED7-AFCD8465345A}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.175.29\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{64C6EFB9-8F79-4106-B975-067448DC768F}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.177.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{6DD6748E-7DAE-47EF-B4D5-03AA1B06D697}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.187.39\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{72726D01-426C-4B35-8266-B4496CAA889E}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.183.29\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{78C1ADF4-6DAE-4164-AEFA-4E3EAD9E750A}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.19\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{79F05C14-E714-4C12-9924-93C812894CB0}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.57\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{7C9A348D-C321-47AC-904F-150312A5430F}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.175.27\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{7EFB4924-4B93-4C43-9832-9C3D05E85214}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.59\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{81093D63-7825-417B-BFC8-ADC63FA4E53D}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.199.11\psuser_64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{83F21C4B-8643-4A08-A29A-822AFD835037}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.193.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{917E8742-AA3B-7318-FA12-10485FB322A2}\localserver32 -> C:\Users\vojta\AppData\Local\Microsoft\OneDrive\25.164.0824.0003\OneDrive.Sync.Service.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{A087E49F-1F8E-4603-A200-55537B737421}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.25\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{ABF66F82-B04C-4FE4-8272-661539463FE1}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.171.37\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{AE1542A7-3989-481B-93A9-1500C5F56B14}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.185.27\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{B258532D-3529-4BEB-BF38-F08F98B3968C}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.15\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{B29F5F83-90DF-479A-BDE7-8A9F4412E394}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.171.39\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{BC4C72EF-3055-4A6D-86E1-AE4D24DB63CA}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.35\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{C88B3957-621C-415B-8EE5-B688FC7EF924}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.61\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{CAE1760A-CB07-481B-8F9A-BC65510AF5D5}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.185.21\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{D2188EEC-2B0F-488C-8ECA-5285E8ECD87D}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.69\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{D8599F80-3D26-46D2-8CF1-0AD21B0ECF31}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.65\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{DAA7499A-B3AC-4419-A89B-124318504051}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.185.29\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{E3D57E77-FE71-4D06-BD34-D48820074909}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.181.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{E76F97B1-1AE9-497C-9FA4-F57BBABAD54A}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.185.17\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{E8791438-3525-48BF-A600-C577AD1674C2}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.173.49\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{ECCE2756-C45D-4E13-BC2D-EC9F138997E6}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.199.11\psuser_64.dll (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{F1CBF5EB-347F-4E4C-90AC-E43339FC34EC}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.173.55\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{F46A78BD-06FC-442C-88DF-0500F08F2379}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.45\psuser_64.dll => No File
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat Reader DC\Acrobat Elements\ContextMenuShim64.dll [2025-09-08] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispig.inf_amd64_0afec3f2050014a0\nvshext.dll [2024-09-15] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2020-03-26] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2020-04-28 17:13 - 2020-04-28 17:13 - 000000000 ___JL (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems32.dll] C:\Program Files (x86)\Microsoft Office\Root\Office16\AppVIsvSubsystems32.dll
2020-04-28 17:13 - 2020-04-28 17:13 - 000000000 ___JL (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R32.dll] C:\Program Files (x86)\Microsoft Office\Root\Office16\c2r32.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [5514]

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) =============

SearchScopes: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2025-09-14] (Microsoft Corporation -> Microsoft Corporation)
BHO: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\x64\IEPlugin.dll [2022-07-20] (McAfee, LLC -> McAfee, LLC)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_291\bin\ssv.dll [2021-06-09] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: McAfee WebAdvisor -> {B164E929-A1B6-4A06-B104-2CD0E90A88FF} -> C:\Program Files\McAfee\WebAdvisor\win32\IEPlugin.dll [2022-07-20] (McAfee, LLC -> McAfee, LLC)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_291\bin\jp2ssv.dll [2021-06-09] (Oracle America, Inc. -> Oracle Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-14] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-14] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-14] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-14] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-03-19 06:49 - 2019-03-19 06:49 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Network ===========================

(Currently there is no automatic fix for this section.)

DNS Servers: 10.0.1.138
Windows Firewall is enabled.

Network Binding:
=============
Ethernet: Intel(R) 82579LM Gigabit Network Connection -> e1i65x64.sys

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Program Files\Common Files\Oracle\Java\javapath;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-2309234071-1434396835-1567940020-1001\Control Panel\Desktop\\Wallpaper -> c:\windows\web\wallpaper\windows\img0.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Off)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 5) (TamperProtectionSource: 2)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)


==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKU\S-1-5-21-2309234071-1434396835-1567940020-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-2309234071-1434396835-1567940020-1001\...\StartupApproved\Run: => "Microsoft Edge Update"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [UDP Query User{10F1AEAC-A7B7-45AC-B2B8-B98C37AF5731}C:\program files\qbittorrent\qbittorrent.exe] => (Allow) C:\program files\qbittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [TCP Query User{310EC3AC-784A-4E07-A46F-FD4CD1D4D0B2}C:\program files\qbittorrent\qbittorrent.exe] => (Allow) C:\program files\qbittorrent\qbittorrent.exe () [File not signed]
FirewallRules: [{800DFD4C-0056-44B8-91A2-E8EBF927DF71}] => (Allow) C:\Users\vojta\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)
FirewallRules: [{78FE9939-897A-46CD-9FE7-5AA887693C8A}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{C063E291-0D3F-42B6-9723-821695004F10}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{BCA5D52B-197A-4CCD-97D6-3A3ADA628B7F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Among Us\Among Us.exe () [File not signed]
FirewallRules: [{2435CD30-3DAE-48AD-A1CE-E6E53902DE36}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Among Us\Among Us.exe () [File not signed]
FirewallRules: [{288D69FF-C8CE-49CC-808E-614DE32FD439}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{67B74F2E-D5B4-4AC7-8CDF-D166144E3E2B}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [TCP Query User{B6208E80-63E4-4811-9C86-D623D2CB51FA}C:\users\vojta\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe] => (Allow) C:\users\vojta\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe
FirewallRules: [UDP Query User{5018E63C-13B0-46DA-8074-5A0CD43D0C24}C:\users\vojta\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe] => (Allow) C:\users\vojta\appdata\roaming\.tlauncher\jvms\jre1.8.0_281\bin\javaw.exe
FirewallRules: [TCP Query User{BF0096A4-9FF0-48F3-9A85-2F699B3ADE0D}C:\users\vojta\appdata\roaming\.minecraft\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe] => (Block) C:\users\vojta\appdata\roaming\.minecraft\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe
FirewallRules: [UDP Query User{8228CE77-F2B9-48C7-9EA8-C31B83C2DA1F}C:\users\vojta\appdata\roaming\.minecraft\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe] => (Block) C:\users\vojta\appdata\roaming\.minecraft\runtime\jre-legacy\windows\jre-legacy\bin\javaw.exe
FirewallRules: [TCP Query User{153429B9-5AF0-4ADF-AEA6-763726C048E5}C:\users\vojta\appdata\roaming\.minecraft\runtime\java-runtime-gamma\windows\java-runtime-gamma\bin\javaw.exe] => (Block) C:\users\vojta\appdata\roaming\.minecraft\runtime\java-runtime-gamma\windows\java-runtime-gamma\bin\javaw.exe
FirewallRules: [UDP Query User{7EACA8A0-0D7C-4D40-AB85-BAAA035F80CC}C:\users\vojta\appdata\roaming\.minecraft\runtime\java-runtime-gamma\windows\java-runtime-gamma\bin\javaw.exe] => (Block) C:\users\vojta\appdata\roaming\.minecraft\runtime\java-runtime-gamma\windows\java-runtime-gamma\bin\javaw.exe
FirewallRules: [{AB64C456-8FC4-43DC-905A-22B08755A935}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Ultimate Chicken Horse\UltimateChickenHorse.exe () [File not signed]
FirewallRules: [{10E8C3F7-E3FD-447C-96CA-D3D3FB1AD4AA}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Ultimate Chicken Horse\UltimateChickenHorse.exe () [File not signed]
FirewallRules: [{31912624-05D6-41AA-9AFB-55C86CDFC0BC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Ultimate Custom Night\Ultimate Custom Night.exe () [File not signed]
FirewallRules: [{C57014F5-6275-4898-B4FF-C5584857760C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Ultimate Custom Night\Ultimate Custom Night.exe () [File not signed]
FirewallRules: [TCP Query User{A3433E29-52F3-4B0E-8054-41B8E046EB4F}C:\users\vojta\appdata\roaming\.minecraft\runtime\java-runtime-delta\windows\java-runtime-delta\bin\javaw.exe] => (Block) C:\users\vojta\appdata\roaming\.minecraft\runtime\java-runtime-delta\windows\java-runtime-delta\bin\javaw.exe
FirewallRules: [UDP Query User{87E79D0D-B621-48DF-9CEE-08CF95369A49}C:\users\vojta\appdata\roaming\.minecraft\runtime\java-runtime-delta\windows\java-runtime-delta\bin\javaw.exe] => (Block) C:\users\vojta\appdata\roaming\.minecraft\runtime\java-runtime-delta\windows\java-runtime-delta\bin\javaw.exe
FirewallRules: [TCP Query User{59E910BE-CEC9-4A97-AF08-5366962D6850}C:\users\vojta\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Block) C:\users\vojta\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe
FirewallRules: [UDP Query User{F2FBC8C2-1D9D-4C20-853C-518B0707A918}C:\users\vojta\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Block) C:\users\vojta\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe
FirewallRules: [TCP Query User{71654BA7-1960-42F9-85CB-9AE2528A1421}C:\users\vojta\curseforge\minecraft\install\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe] => (Block) C:\users\vojta\curseforge\minecraft\install\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe
FirewallRules: [UDP Query User{F08ED7CF-7E95-4D5E-B07F-E93DACA9B246}C:\users\vojta\curseforge\minecraft\install\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe] => (Block) C:\users\vojta\curseforge\minecraft\install\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe
FirewallRules: [{82A954B9-0F9A-45B1-ADBF-DCF80081CD85}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{E4C017A0-C633-4337-AD92-E087F8D01F69}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{B48B591D-9F16-4AF0-91B8-EE8391837CD1}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{76160B58-C52F-4B46-BC6A-CFC86BCE3C20}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [TCP Query User{515C6936-9230-430B-87ED-5180ECB5DEE5}C:\users\vojta\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Block) C:\users\vojta\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe
FirewallRules: [UDP Query User{641FE489-16C1-4B15-92E7-EC96E78F2570}C:\users\vojta\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Block) C:\users\vojta\appdata\local\packages\microsoft.4297127d64ec6_8wekyb3d8bbwe\localcache\local\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe
FirewallRules: [{362869C1-F712-4628-A9C7-6DBD6E6BF0BA}] => (Allow) C:\Users\vojta\AppData\Local\Programs\Opera\opera.exe => No File
FirewallRules: [{F9073C16-061A-45D1-A74E-7B4D12C68267}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{FC895ED6-8830-43AA-AC99-1FB4FBBBE2B0}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{62978742-EF53-42CB-8616-6054B0543369}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{05CCE2E8-BEE1-49DA-B3D8-E1578DBF1DF3}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{80255A70-21CD-4273-8212-89CF3A3A80F4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{C2D51241-79D8-43FD-8FD3-3BD93EB8BAF2}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{686DFE5C-E308-416C-8D04-68A89662D099}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{F3127747-7F40-404B-ADC5-211D7C4C66D7}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{E0C5473F-DA69-4954-872B-30FEA4BA7EBB}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{500AEED5-A9CE-4CD8-B1E5-F289E2B1CB02}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{3218F3BD-961F-460D-ADD3-276177389A07}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{2BA161E6-D0EB-4EC1-A38B-F04C271C476D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{195D2B0F-FD87-4315-B1D3-A45B47FE2A1A}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{044704D1-E959-406A-944A-7BC4459FDACB}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.272.438.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{21546FD6-D029-4799-9F9D-CA48AC2D0EB0}] => (Allow) C:\Program Files (x86)\Overwolf\0.280.2.1\OverwolfBrowser.exe => No File
FirewallRules: [{C6C70A5E-7B70-4258-AD83-9563D675BEF6}] => (Allow) C:\Program Files (x86)\Overwolf\0.280.2.1\OverwolfBrowser.exe => No File
FirewallRules: [{9FE5F832-1CA0-4180-8240-E9017EEBBEB3}] => (Block) C:\Program Files (x86)\Overwolf\0.280.2.1\OverwolfBrowser.exe => No File
FirewallRules: [{E6021F6B-B86E-45D6-9BE4-9F72C23DA8EF}] => (Block) C:\Program Files (x86)\Overwolf\0.280.2.1\OverwolfBrowser.exe => No File
FirewallRules: [{B7CD0418-107C-461D-8D13-33E50DB192F8}] => (Allow) C:\Program Files (x86)\Overwolf\0.282.0.9\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [{50AB1F12-0E58-4CB5-ACD2-9F2AA898B744}] => (Allow) C:\Program Files (x86)\Overwolf\0.282.0.9\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)

==================== Restore Points =========================


==================== Faulty Device Manager Devices ============
Name: Kompatibilní myš PS/2
Description: Kompatibilní myš PS/2
Class Guid: {4d36e96f-e325-11ce-bfc1-08002be10318}
Manufacturer: Microsoft
Service: i8042prt
Problem: : This device is not present, is not working properly, or does not have all its drivers installed. (Code 24)
Resolution: The device is installed incorrectly. The problem could be a hardware failure, or a new driver might be needed.
Devices stay in this state if they have been prepared for removal.
After you remove the device, this error disappears.Remove the device, and this error should be resolved.


==================== Event log errors: ========================

Application errors:
==================
Error: (09/26/2025 06:45:49 PM) (Source: Software Protection Platform Service) (EventID: 8229) (User: )
Description: Stroji pravidel se nepodařilo provést některé naplánované akce.
Kód chyby:0x80070070
Cesta:SERIALIZE_INTERNAL
Argumenty:<none>

Error: (09/26/2025 04:09:13 PM) (Source: ESENT) (EventID: 482) (User: )
Description: svchost (6960,D,20) Unistore: Pokus o zápis do souboru C:\Users\vojta\AppData\Local\Comms\UnistoreDB\store.vol na posunu 7077888 (0x00000000006c0000) o 61440 (0x0000f000) bajtů po 0.000 sekundách selhal. Došlo k systémové chybě 112 (0x00000070): Na disku není dost místa. . Operace zápisu selže a dojde k chybě -1808 (0xfffff8f0). Pokud s tím budou dál problémy, může být soubor poškozený a budete ho možná muset obnovit z předchozí zálohy.

Error: (09/26/2025 12:38:00 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (09/26/2025 12:14:11 PM) (Source: ESENT) (EventID: 482) (User: )
Description: wuaueng.dll (8392,D,0) SUS20ClientDataStore: Pokus o zápis do souboru C:\WINDOWS\SoftwareDistribution\DataStore\DataStore.edb na posunu 20971520 (0x0000000001400000) o 262144 (0x00040000) bajtů po 0.000 sekundách selhal. Došlo k systémové chybě 112 (0x00000070): Na disku není dost místa. . Operace zápisu selže a dojde k chybě -1808 (0xfffff8f0). Pokud s tím budou dál problémy, může být soubor poškozený a budete ho možná muset obnovit z předchozí zálohy.

Error: (09/22/2025 11:29:04 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na Rezervováno systémem, protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)

Error: (09/22/2025 06:34:40 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program notepad.exe verze 10.0.19041.5794 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 2e3c

Čas spuštění: 01dc2bde9c2a221b

Čas ukončení: 10

Cesta k aplikaci: C:\Windows\System32\notepad.exe

ID hlášení: 553b4a3c-bb16-45fb-af88-68ba828b2e4b

Úplný název balíčku s chybou:

ID aplikace relativní podle balíčku s chybou:

Typ zablokování: Unknown

Error: (09/22/2025 06:29:54 PM) (Source: ESENT) (EventID: 104) (User: )
Description: wuaueng.dll (15308,T,97) SUS20ClientDataStore: Databázový stroj zastavil instanci (0) s chybou (-1092).



Sekvence interního načasování:
[1] 0.000007 +J(0)
[2] 0.000021 +J(0) +M(C:0K, Fs:2, WS:8K # 0K, PF:0K # 0K, P:0K)
[3] 0.000004 +J(0)
[4] 0.000006 +J(0)
[5] 0.0 +J(0)
[6] 0.001623 +J(0) +M(C:0K, Fs:2, WS:-4932K # 0K, PF:-5044K # 0K, P:-5044K)
[7] 0.000009 +J(0)
[8] 0.001461 +J(0) +M(C:0K, Fs:5, WS:0K # 0K, PF:-64K # 0K, P:-64K)
[9] -
[10] 0.000004 +J(0)
[11] -
[12] 0.000034 +J(0) +M(C:0K, Fs:0, WS:-4K # 0K, PF:-4K # 0K, P:-4K)
[13] 0.000517 +J(0)
[14] 0.000020 +J(0) +M(C:0K, Fs:0, WS:-64K # 0K, PF:-68K # 0K, P:-68K)
[15] 0.000003 +J(0).

Error: (09/22/2025 06:10:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: svchost.exe_WpnUserService, verze: 10.0.19041.5794, časové razítko: 0x11bd0919
Název chybujícího modulu: QuietHours.dll, verze: 10.0.19041.5848, časové razítko: 0xa97ba274
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000003e96e
ID chybujícího procesu: 0x1fa0
Čas spuštění chybující aplikace: 0x01dc2bd9cb4a47af
Cesta k chybující aplikaci: C:\WINDOWS\system32\svchost.exe
Cesta k chybujícímu modulu: C:\Windows\System32\QuietHours.dll
ID zprávy: 89fcfc25-2d6e-4f05-add4-d900b31be443
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:


System errors:
=============
Error: (09/26/2025 01:34:09 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-AR8PDOO)
Description: Server microsoft.windowscommunicationsapps_16005.14326.22342.0_x64__8wekyb3d8bbwe!microsoft.windowslive.calendar.AppXwkn9j84yh1kvnt49k5r8h6y1ecsv09hs.mca se v daném časovém limitu neregistroval u služby DCOM.

Error: (09/26/2025 12:08:58 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 87 při pokusu o spuštění služby GamingServices s argumenty Není k dispozici za účelem spuštění serveru:
{D529741A-1BF1-4D1E-9976-35089622E758}

Error: (09/26/2025 12:08:58 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 87 při pokusu o spuštění služby GamingServices s argumenty Není k dispozici za účelem spuštění serveru:
{3E8C9ABE-9226-4609-BF5B-60288A391DEE}

Error: (09/26/2025 12:08:58 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 87 při pokusu o spuštění služby GamingServices s argumenty Není k dispozici za účelem spuštění serveru:
{D529741A-1BF1-4D1E-9976-35089622E758}

Error: (09/26/2025 12:08:58 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 87 při pokusu o spuštění služby GamingServices s argumenty Není k dispozici za účelem spuštění serveru:
{3E8C9ABE-9226-4609-BF5B-60288A391DEE}

Error: (09/26/2025 12:08:58 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 87 při pokusu o spuštění služby GamingServices s argumenty Není k dispozici za účelem spuštění serveru:
{D529741A-1BF1-4D1E-9976-35089622E758}

Error: (09/26/2025 12:08:58 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 87 při pokusu o spuštění služby GamingServices s argumenty Není k dispozici za účelem spuštění serveru:
{3E8C9ABE-9226-4609-BF5B-60288A391DEE}

Error: (09/26/2025 12:08:58 PM) (Source: DCOM) (EventID: 10005) (User: NT AUTHORITY)
Description: Služba DCOM zjistila chybu 87 při pokusu o spuštění služby GamingServices s argumenty Není k dispozici za účelem spuštění serveru:
{D529741A-1BF1-4D1E-9976-35089622E758}


Windows Defender:
================
Date: 2025-09-26 12:37:48
Description:
Antivirová ochrana v programu Microsoft Defender šĉàŋ ђåŝ ъėëп şţǿрρєđ ъεƒõŕė ςόмφℓеŧιοл.%ñ %ŧЅċǻⁿ ĨĎ:%ъ{7FD32110-9846-470A-8427-672BE2C9428F}%и %ţŠ¢åή Ŧγρэ:%ьAntimalwarový program%ñ %τŜčдⁿ Рâŕǻмет℮гş:%ъRychlé prohledávání%л %тŮŝέя:%ъNT AUTHORITY\SYSTEM%ⁿ %ţŞťορ Ŗèǻśõп:%вŠĉђэδџŀêđ śĉąŋ щªѕ ŝќïрρęđ ъęćâџŝĕ ţħĕ ℓάšť ѕµ¢¢ëšśƒùļ ѕсǻπ ẃāš ẅīтђĭń τћз ļàśť 7 δαýŝ

Date: 2025-09-22 18:25:53
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: Trojan:Win32/Ulthar.A!ml
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\vojta\Downloads\pivotAnimator_v4-2.exe
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Ochrana v reálném čase
Uživatel: DESKTOP-AR8PDOO\vojta
Název procesu: C:\Windows\explorer.exe
Verze bezpečnostních informací: AV: 1.437.5.0, AS: 1.437.5.0, NIS: 1.437.5.0
Verze modulu: AM: 1.1.25080.5, NIS: 1.1.25080.5

Date: 2025-09-17 17:55:43
Description:
Antivirová ochrana v programu Microsoft Defender šĉàŋ ђåŝ ъėëп şţǿрρєđ ъεƒõŕė ςόмφℓеŧιοл.%ñ %ŧЅċǻⁿ ĨĎ:%ъ{480C10BC-8EFF-445E-B1CA-7A086B6199B4}%и %ţŠ¢åή Ŧγρэ:%ьAntimalwarový program%ñ %τŜčдⁿ Рâŕǻмет℮гş:%ъRychlé prohledávání%л %тŮŝέя:%ъNT AUTHORITY\SYSTEM%ⁿ %ţŞťορ Ŗèǻśõп:%вŞςħеδΰĺэδ ŝćąń ŵάŝ şķïρρĕđ ьěċäύśé ţħė łªśт şΰćčêѕŝƒŭℓ śčàņ ŵαš ώîťђîп ťħз łáśť 7 δªỳş

Date: 2025-09-17 16:05:09
Description:
Antivirová ochrana v programu Microsoft Defender šĉàŋ ђåŝ ъėëп şţǿрρєđ ъεƒõŕė ςόмφℓеŧιοл.%ñ %ŧЅċǻⁿ ĨĎ:%ъ{3F42373E-AC29-4303-B11E-79D91E1B5437}%и %ţŠ¢åή Ŧγρэ:%ьAntimalwarový program%ñ %τŜčдⁿ Рâŕǻмет℮гş:%ъRychlé prohledávání%л %тŮŝέя:%ъNT AUTHORITY\SYSTEM%ⁿ %ţŞťορ Ŗèǻśõп:%вŞςħеδΰĺэδ ŝćąń ŵάŝ şķïρρĕđ ьěċäύśé ţħė łªśт şΰćčêѕŝƒŭℓ śčàņ ŵαš ώîťђîп ťħз łáśť 7 δªỳş

Date: 2025-09-14 20:53:16
Description:
Antivirová ochrana v programu Microsoft Defender šĉàŋ ђåŝ ъėëп şţǿрρєđ ъεƒõŕė ςόмφℓеŧιοл.%ñ %ŧЅċǻⁿ ĨĎ:%ъ{1CEFF80E-FFED-46D3-AAC5-082A3251BAF4}%и %ţŠ¢åή Ŧγρэ:%ьAntimalwarový program%ñ %τŜčдⁿ Рâŕǻмет℮гş:%ъRychlé prohledávání%л %тŮŝέя:%ъNT AUTHORITY\SYSTEM%ⁿ %ţŞťορ Ŗèǻśõп:%вŞςħеδΰĺэδ ŝćąń ŵάŝ şķïρρĕđ ьěċäύśé ţħė łªśт şΰćčêѕŝƒŭℓ śčàņ ŵαš ώîťђîп ťħз łáśť 7 δªỳş
Event[0]:

Date: 2025-09-26 12:10:49
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.437.101.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.25080.5
Kód chyby: 0x80070020
Popis chyby: Proces nemá přístup k souboru, neboť jej právě využívá jiný proces.

Date: 2025-09-26 12:10:49
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.437.101.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.25080.5
Kód chyby: 0x80070020
Popis chyby: Proces nemá přístup k souboru, neboť jej právě využívá jiný proces.

Date: 2025-09-26 12:10:49
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.437.101.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.25080.5
Kód chyby: 0x80070020
Popis chyby: Proces nemá přístup k souboru, neboť jej právě využívá jiný proces.

Date: 2025-09-22 22:46:31
Description:
Služba Antivirová ochrana v programu Microsoft Defender zřejmě během vypnutí neodpovídá.
Timout (sekundy): 0
Součást: UninitializeServiceWppTracing
Ukončeno: 0

Date: 2025-09-22 18:09:25
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.437.5.0
Zdroj aktualizace: Centrum společnosti Microsoft pro ochranu před škodlivým softwarem
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.25080.5
Kód chyby: 0x80070070
Popis chyby: Na disku není dost místa.

CodeIntegrity:
===============
Date: 2025-08-31 16:06:59
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\fcon.dll because the set of per-page image hashes could not be found on the system.

Date: 2025-08-31 16:06:53
Description:
Code Integrity is unable to verify the image integrity of the file \Device\HarddiskVolume2\Windows\System32\aepic.dll because the set of per-page image hashes could not be found on the system.


==================== Memory info ===========================

BIOS: Dell Inc. A05 05/28/2011
Motherboard: Dell Inc. 0HY9JP
Processor: Intel(R) Core(TM) i5-2400 CPU @ 3.10GHz
Percentage of memory in use: 19%
Total physical RAM: 24532.93 MB
Available physical RAM: 19694.63 MB
Total Virtual: 28116.93 MB
Available Virtual: 22201.3 MB

==================== Drives ================================

Drive c: (Compik) (Fixed) (Total:296.54 GB) (Free:9.29 GB) (Model: WDC WD3200AAKS-61L9A0) NTFS

\\?\Volume{085c6574-0000-0000-0000-100000000000}\ (Rezervováno systémem) (Fixed) (Total:0.54 GB) (Free:0.5 GB) NTFS
\\?\Volume{085c6574-0000-0000-0000-b0444a000000}\ () (Fixed) (Total:0.51 GB) (Free:0.08 GB) NTFS
\\?\Volume{085c6574-0000-0000-0000-30654a000000}\ () (Fixed) (Total:0.51 GB) (Free:0.08 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 298.1 GB) (Disk ID: 085C6574)
Partition 1: (Active) - (Size=549 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=296.5 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=519 MB) - (Type=27)
Partition 4: (Not Active) - (Size=521 MB) - (Type=27)

==================== End of Addition.txt =======================

Re: Zpomalený počítač, plné úložiště

Napsal: 26 zář 2025 19:04
od Rudy
Podle skenu by tam měl být:
Drive c: (Compik) (Fixed) (Total:296.54 GB) (Free:0.23 GB) (Model: WDC WD3200AAKS-61L9A0) NTFS
Drive d: (Compik) (RAMDisk) (Total:296.54 GB) (Free:1.3 GB) (Model: WDC WD3200AAKS-61L9A0) NTFS
Pokud tam není, budete muset soubory přesunout na externí úložiště. Pak otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
Task: {3061243F-57B8-46AD-AAB6-AA6E619373E9} - System32\Tasks\Opera scheduled Autoupdate 1596141558 => C:\Users\vojta\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe --scheduledtask --bypasslauncher $(Arg0) (No File)
C:\DumpStack.log.tmp
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{1108FD1C-492F-4251-B9DB-77F0274267B2}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.187.37\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{262BE1F8-0897-4692-9D50-E3F63DAA43E2}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.27\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{2ABD6384-2E18-40E8-8439-F06D21E0B03D}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.43\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{2EF7E390-2F7C-4F9A-9B7D-4A87B56B711D}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.173.51\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{2FDB3305-19B8-4FE2-972B-ED5E97CBBD6E}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.39\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{38971E90-14FD-44F6-AA45-1447B653F873}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.173.45\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{41B09861-5409-4D44-8CA4-D49FBFAA2E6F}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.49\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{4FFB4BD8-A109-4F25-A4DB-313678B19417}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.31\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{5FC44EBC-3A1F-4FBB-85E5-34405788C8D7}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.187.41\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{608D599A-DCA6-4A7C-BED7-AFCD8465345A}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.175.29\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{64C6EFB9-8F79-4106-B975-067448DC768F}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.177.11\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{6DD6748E-7DAE-47EF-B4D5-03AA1B06D697}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.187.39\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{72726D01-426C-4B35-8266-B4496CAA889E}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.183.29\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{78C1ADF4-6DAE-4164-AEFA-4E3EAD9E750A}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.19\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{79F05C14-E714-4C12-9924-93C812894CB0}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.57\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{7C9A348D-C321-47AC-904F-150312A5430F}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.175.27\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{7EFB4924-4B93-4C43-9832-9C3D05E85214}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.59\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{83F21C4B-8643-4A08-A29A-822AFD835037}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.193.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{A087E49F-1F8E-4603-A200-55537B737421}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.25\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{ABF66F82-B04C-4FE4-8272-661539463FE1}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.171.37\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{AE1542A7-3989-481B-93A9-1500C5F56B14}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.185.27\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{B258532D-3529-4BEB-BF38-F08F98B3968C}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.15\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{B29F5F83-90DF-479A-BDE7-8A9F4412E394}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.171.39\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{BC4C72EF-3055-4A6D-86E1-AE4D24DB63CA}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.35\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{C88B3957-621C-415B-8EE5-B688FC7EF924}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.61\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{CAE1760A-CB07-481B-8F9A-BC65510AF5D5}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.185.21\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{D2188EEC-2B0F-488C-8ECA-5285E8ECD87D}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.69\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{D8599F80-3D26-46D2-8CF1-0AD21B0ECF31}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.65\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{DAA7499A-B3AC-4419-A89B-124318504051}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.185.29\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{E3D57E77-FE71-4D06-BD34-D48820074909}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.181.5\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{E76F97B1-1AE9-497C-9FA4-F57BBABAD54A}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.185.17\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{E8791438-3525-48BF-A600-C577AD1674C2}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.173.49\psuser_64.dll => No File
ustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{F1CBF5EB-347F-4E4C-90AC-E43339FC34EC}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.173.55\psuser_64.dll => No File
CustomCLSID: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001_Classes\CLSID\{F46A78BD-06FC-442C-88DF-0500F08F2379}\InprocServer32 -> C:\Users\vojta\AppData\Local\Microsoft\EdgeUpdate\1.3.195.45\psuser_64.dll => No File
SearchScopes: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
SearchScopes: HKU\S-1-5-21-2309234071-1434396835-1567940020-1001 -> DefaultScope {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL =
FirewallRules: [{21546FD6-D029-4799-9F9D-CA48AC2D0EB0}] => (Allow) C:\Program Files (x86)\Overwolf\0.280.2.1\OverwolfBrowser.exe => No File
FirewallRules: [{C6C70A5E-7B70-4258-AD83-9563D675BEF6}] => (Allow) C:\Program Files (x86)\Overwolf\0.280.2.1\OverwolfBrowser.exe => No File
FirewallRules: [{9FE5F832-1CA0-4180-8240-E9017EEBBEB3}] => (Block) C:\Program Files (x86)\Overwolf\0.280.2.1\OverwolfBrowser.exe => No File
FirewallRules: [{E6021F6B-B86E-45D6-9BE4-9F72C23DA8EF}] => (Block) C:\Program Files (x86)\Overwolf\0.280.2.1\OverwolfBrowser.exe => No File
C:\Users\vojta\Downloads\pivotAnimator_v4-2.exe

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.