Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Prosím o kntrolu logu. Děkuji.

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
roman7
Návštěvník
Návštěvník
Příspěvky: 342
Registrován: 25 bře 2008 23:09

Prosím o kntrolu logu. Děkuji.

#1 Příspěvek od roman7 »

Zdravím! Prosím o kontrolu logu, pomalý internet. Děkuji.


Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 11-10-2025
Ran by Roman (administrator) on DESKTOP-9RDGM5O (Gigabyte Technology Co., Ltd. B550 GAMING X V2) (20-10-2025 18:07:16)
Running from C:\Users\rosmy\Desktop\FRST64.exe
Loaded Profiles: Roman
Platform: Microsoft Windows 11 Pro Version 23H2 22631.6060 (X64) Language: Čeština (Česko)
Default browser: "C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe" --single-argument %1
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc) C:\Program Files\WindowsApps\AppleInc.iCloud_15.5.23.0_x64__nzyj5cx40ttqa\iCloud\iCloudCKKS.exe
(Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe
(Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\AntiTrack\x86\ATTray.exe
(C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSSrcExt.exe
(C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cncmd.exe
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_525.28301.40.0_x64__cw5n1h2txyewy\WidgetBoard.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\141.0.3537.85\msedgewebview2.exe <7>
(C:\Users\rosmy\AppData\Local\Wondershare\Wondershare NativePush\WsNativePushService.exe ->) (Wondershare Technology Group Co.,Ltd -> Wondershare) C:\Users\rosmy\AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe
(cmd.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(DriverStore\FileRepository\u0417877.inf_amd64_8b2c2b61b3f8a9e5\B417004\atiesrxx.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0417877.inf_amd64_8b2c2b61b3f8a9e5\B417004\atieclxx.exe
(explorer.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Cleanup\TuneupUI.exe <3>
(explorer.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\SecureLine VPN\Vpn.exe <4>
(Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastUI.exe <4>
(GIGA-BYTE TECHNOLOGY CO., LTD. -> Gigabyte Technology CO.) C:\Program Files\GIGABYTE\Smart Backup\RPMDaemon.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(services.exe ->) (Advanced Micro Devices -> AMD) C:\Program Files\AMD\Performance Profile Client\AUEPDU.exe
(services.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0417877.inf_amd64_8b2c2b61b3f8a9e5\B417004\atiesrxx.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\AntiTrack\x86\ATServiceHost.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\afwServ.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\SecureLine VPN\VpnSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe
(services.exe ->) (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.) C:\Program Files (x86)\Gigabyte\EasyTuneEngineService\EasyTuneEngineService.exe
(services.exe ->) (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.) C:\Windows\System32\GigabyteUpdateService.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_25a6ec32bd401f19\RtkAudUService64.exe
(services.exe ->) (Wondershare Technology Group Co.,Ltd -> Wondershare) C:\Users\rosmy\AppData\Local\Wondershare\Wondershare NativePush\WsNativePushService.exe
(svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2541.3.0_x64__cv1g1gvanyjgm\WhatsApp.exe
(svchost.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\CPUMetricsServer.exe
(svchost.exe ->) (Advanced Micro Devices -> AMD) C:\Program Files\AMD\Performance Profile Client\AUEPMaster.exe
(svchost.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner.exe
(svchost.exe ->) (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.) C:\Program Files (x86)\Gigabyte\EasyTuneEngineService\GraphicsCardEngineStarter.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.151.0.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\rosmy\AppData\Local\Microsoft\OneDrive\25.179.0914.0003\FileCoAuth.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [845992 2025-09-24] (Gen Digital Inc. -> Gen Digital Inc.)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_25a6ec32bd401f19\RtkAudUService64.exe [3119640 2025-08-27] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [464608 2014-09-08] (Samsung Electronics CO., LTD. -> )
HKLM\...\Run: [Avast Cleanup UI] => C:\Program Files\Avast Software\Cleanup\TuneupUI.exe [7438128 2025-07-09] (Avast Software s.r.o. -> Gen Digital Inc.)
HKLM-x32\...\Run: [GrooveMonitor] => C:\Program Files (x86)\Microsoft Office\Office12\GrooveMonitor.exe [30040 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
HKLM-x32\...\Run: [Sovos] => C:\Program Files (x86)\Canyon CND-SGM14RGB Gaming Mouse\OemDrv.exe [2450944 2019-08-22] () [File not signed]
HKLM-x32\...\Run: [AvastAntiTrack] => C:\Program Files\Avast Software\AntiTrack\x86\ATTray.exe [236336 2025-08-06] (Avast Software s.r.o. -> AVAST Software)
HKLM\...\RunOnce: [RPMKickstart] => C:\Program Files\GIGABYTE\Smart Backup\RPMKickstartEx.exe [2320384 2014-04-01] (TODO: <Company name>) [File not signed]
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-3398037617-877173979-1485582407-1001\...\Run: [STUISpeedLauncher] => C:\Program Files\Samsung\Stylish UI Pack\TouchBasedUI.exe [411136 2015-02-09] () [File not signed]
HKLM\...\Windows x64\Print Processors\us016PC: C:\Windows\System32\spool\prtprocs\x64\us016pc.dll [61736 2022-02-24] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Codename Longhorn DDK provider)
HKLM\...\Print\Monitors\PDF-XChange Lite Port Monitor: C:\WINDOWS\system32\pxcpmL.dll [941392 2025-09-22] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
HKLM\...\Print\Monitors\us016 Langmon: C:\WINDOWS\system32\us016lm.dll [40744 2022-02-24] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{A8504530-742B-42BC-895D-2BAD6406F698}] -> C:\Program Files\AVAST Software\Browser\Application\140.0.32350.210\Installer\chrmstp.exe [2025-10-17] (Gen Digital Inc. -> Gen Digital Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Avast SecureLine VPN.lnk [2025-10-16]
ShortcutTarget: Avast SecureLine VPN.lnk -> C:\Program Files\Avast Software\SecureLine VPN\Vpn.exe (Gen Digital Inc. -> Gen Digital Inc.)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {9D738C3E-20FB-404C-8DB6-2E316CB950B4} - System32\Tasks\AMDAutoUpdate => C:\Program Files\AMD\AutoUpdate\AMDAutoUpdate.exe [671440 2024-07-24] (Advanced Micro Devices -> )
Task: {966EBD3B-631F-4953-8836-585F158656D0} - System32\Tasks\AMDInstallLauncher => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1030864 2025-07-01] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
Task: {B13F5755-EA2E-4D09-901B-937F37BED089} - System32\Tasks\AMDLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1030864 2025-07-01] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
Task: {A41F8779-62D6-49B6-B6E1-1C999F5EDB5A} - System32\Tasks\AMDRyzenMasterSDKTask => C:\Program Files\AMD\CNext\CNext\cpumetricsserver.exe [184016 2025-07-01] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
Task: {8EB333A3-B17D-475C-AC9B-074CA7BD291C} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe [3728592 2025-10-14] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {3E41EA70-0247-49A3-AB56-A61EF1A5AB09} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe [3728592 2025-10-14] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {3A1AB604-C31E-4BE7-AB01-221078E96F11} - System32\Tasks\Avast Secure Browser VPS Differential Update => C:\Program Files\AVAST Software\Browser\Application\vps_helper.exe [1872304 2025-10-14] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {9E619488-391E-4B4B-A6EC-CDE4980261BC} - System32\Tasks\Avast Software\Avast Antivirus Patcher => C:\Program Files\Common Files\Avast Software\Icarus\avast-av\icarus.exe [9072352 2025-09-12] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {125D64E3-7D1F-42A1-9C20-01D01F469482} - System32\Tasks\Avast Software\Avast Cleanup BugReport => C:\Program Files\Avast Software\Cleanup\AvBugReport.exe [6108464 2025-07-09] (Avast Software s.r.o. -> Gen Digital Inc.) -> --send "dumps|report" --silent --product 62 --programpath "C:\Program Files\Avast Software\Cleanup" --configpath "C:\ProgramData\Avast Software\Cleanup" --path "C:\ProgramData\Avast Software\Cleanup\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --logpath "C:\ProgramData\Avast Software\Cle (the data entry has 53 more characters).
Task: {DE552F44-D6DA-497F-8F54-494E37B33706} - System32\Tasks\Avast Software\Avast Cleanup Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-tu\icarus.exe [8930096 2025-07-09] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {3C87E182-18F6-49F5-839D-0F05C41528A2} - System32\Tasks\Avast Software\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5573800 2025-09-24] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {82A5154E-CE57-42A9-B0E6-E9DCED2B030A} - System32\Tasks\Avast Software\Avast SecureLine VPN Bug Report => C:\Program Files\Avast Software\SecureLine VPN\AvBugReport.exe [6192808 2025-10-15] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --silent --product 11 --programpath "C:\Program Files\Avast Software\SecureLine VPN" --configpath "C:\ProgramData\Avast Software\SecureLine VPN" --path "C:\ProgramData\Avast Software\SecureLine VPN\log" --path "C:\ProgramData\Avast Software\Icarus\Logs" --logpath "C:\ProgramDat (the data entry has 80 more characters).
Task: {3575FA18-7384-44D8-B18C-610D53900A36} - System32\Tasks\Avast Software\Avast SecureLine VPN Emergency Update => C:\Program Files\Avast Software\SecureLine VPN\VpnUpdate.exe [3977384 2025-10-15] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {FC11A5C0-A082-4CA2-AE6B-20123FDE5FD2} - System32\Tasks\Avast Software\Avast SecureLine VPN Update => C:\Program Files\Common Files\Avast Software\Icarus\avast-vpn\icarus.exe [9007408 2025-10-13] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {2B217388-9CD4-4E9E-9AEF-896CE417608C} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2977504 2025-10-14] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {1C195D11-92A2-488B-B81F-F3976018B61D} - System32\Tasks\AvastBrowserProtectS-1-5-21-3398037617-877173979-1485582407-1001 => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowserProtect.exe [1690008 2024-04-23] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {0CCD4B86-66E2-4131-9A15-9360A72B929F} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [192664 2024-12-30] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {089E6D52-65FA-44B3-941D-62B9C4C5C47D} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [192664 2024-12-30] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {58E75511-0E12-479A-BC16-131D85A17EA1} - System32\Tasks\CCleaner 7 - Skip UAC - S-1-5-21-3398037617-877173979-1485582407-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [4717688 2025-10-19] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {4CEA4CD4-1BE0-4833-8108-F6513736CFF0} - System32\Tasks\cFos\Registration Tasks\Open Browser => c:\program files (x86)\avast software\browser\application\avastbrowser.exe [3171424 2024-11-06] (Avast Software s.r.o. -> Gen Digital Inc.) -> "hxxps://www.cfos.de/en/traffic-shaping/speed-gu ... cfops:3926, (the data entry has 1001 more characters).
Task: {003BF7EB-175D-4E81-B433-FE4077F6F0BF} - System32\Tasks\CreateExplorerShellUnelevatedTask => C:\Windows\explorer.exe [5625136 2025-10-15] (Microsoft Windows -> Microsoft Corporation)
Task: {E39083DB-3B74-4928-B612-BD5C1477CF01} - System32\Tasks\EPM Preload => C:\Program Files (x86)\Samsung\Easy Printer Manager\EPM2DotNetHandler.exe [738816 2023-04-04] () [File not signed]
Task: {3C43BD24-83FA-4815-A1EE-1584EB78E88C} - System32\Tasks\GigabyteSsdFirmwareUpdateTask => C:\Program Files\GIGABYTE\GBTSsdFirmwareUpdate\GNSSsdFwD.exe [945776 2024-06-19] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.)
Task: {739865A7-D942-4DA9-AFB2-AC3004A50B43} - System32\Tasks\GraphicsCardEngine => C:\Program Files (x86)\GIGABYTE\EasyTuneEngineService\GraphicsCardEngineStarter.exe [237672 2023-06-26] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.)
Task: {9BA4DB6A-2539-485E-9D8E-4EF8985CF0CE} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2401792 2025-06-06] () [File not signed]
Task: {7DB48684-31B8-4E64-848A-A36E40D12D98} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1030864 2025-07-01] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
Task: {F90C3417-34BD-4725-995D-3E557D24383C} - System32\Tasks\OneDrive Startup Task-S-1-5-21-3398037617-877173979-1485582407-1001 => C:\Users\rosmy\AppData\Local\Microsoft\OneDrive\25.179.0914.0003\OneDriveLauncher.exe [725864 2025-10-14] (Microsoft Corporation -> Microsoft Corporation)
Task: {710C2BD6-A62B-4FCF-BEE9-313308F6052A} - System32\Tasks\Piriform\CCleaner 7 - S-1-5-21-3398037617-877173979-1485582407-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [4717688 2025-10-19] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {223774D3-EA26-4ADA-9EE0-555520473119} - System32\Tasks\Piriform\CCleaner 7 BugReport => C:\Program Files\Piriform\CCleaner 7\CCleanerBugReport.exe [6243960 2025-10-19] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --product 234 --programpath "C:\Program Files\Piriform\CCleaner 7" --configpath "C:\Program Files\Piriform\CCleaner 7\data" --path "C:\Program Files\Piriform\CCleaner 7\log" --path "C:\Program Files\Piriform\CCleaner 7\data\dumps" --logpath "C:\Program Files\Piriform\CCleaner 7 (the data entry has 58 more characters).
Task: {D2302A49-4FD6-4589-A245-8DBC660771A1} - System32\Tasks\Piriform\CCleaner 7 Update => C:\Program Files\Common Files\Piriform\Icarus\piriform-ccl\icarus.exe [8971064 2025-10-14] (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc.)
Task: {5A4B1497-16C7-4F05-9E9B-CF6700EC195F} - System32\Tasks\StartAUEP => C:\Program Files\AMD\Performance Profile Client\AUEPMaster.exe [823512 2024-08-02] (Advanced Micro Devices -> AMD)
Task: {464F24D3-9A19-4EDF-8510-DAEA42DA325C} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [60624 2025-07-01] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
Task: {D951BB86-4A4A-4252-9DB3-8E631DB9523D} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [323792 2025-07-01] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{99b877ff-3a1c-4207-bddb-9e3233fbea3d}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{bd812113-704b-4ed9-b905-a3488fc7687b}: [NameServer] 100.120.162.1

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\rosmy\AppData\Local\Microsoft\Edge\User Data\Default [2025-10-10]
Edge HomePage: Default -> hxxp://seznam.cz/
Edge Session Restore: Default -> is enabled.
Edge Extension: (Dokumenty Google offline) - C:\Users\rosmy\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-09-14]
Edge Extension: (Edge relevant text changes) - C:\Users\rosmy\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-02-01]
Edge Extension: (Avast AntiTrack) - C:\Users\rosmy\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\obngolbhcefpehgphiokbippabmkhjeo [2025-03-04]

FireFox:
========
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2025-09-22] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2025-09-22] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2025-09-22] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin: @videolan.org/vlc,version=3.0.16 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.21 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2025-09-22] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2025-09-22] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2025-09-22] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=3 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1697.6\npAvastBrowserUpdate3.dll [2024-12-30] (Avast Software s.r.o. -> Gen Digital Inc.)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=9 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1697.6\npAvastBrowserUpdate3.dll [2024-12-30] (Avast Software s.r.o. -> Gen Digital Inc.)
FF Plugin HKU\S-1-5-21-3398037617-877173979-1485582407-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2025-09-22] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin HKU\S-1-5-21-3398037617-877173979-1485582407-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2025-09-22] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin HKU\S-1-5-21-3398037617-877173979-1485582407-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2025-09-22] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [7785640 2025-09-24] (Gen Digital Inc. -> Gen Digital Inc.)
R2 AUEPLauncher; C:\Program Files\AMD\CIM\..\Performance Profile Client\AUEPDU.exe [542424 0] (Advanced Micro Devices -> AMD)
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [192664 2024-12-30] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [1036456 2025-09-24] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [2598568 2025-09-24] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [1089704 2025-09-24] (Gen Digital Inc. -> Gen Digital Inc.)
R2 AvastATServiceHost; C:\Program Files\Avast Software\AntiTrack\x86\ATServiceHost.exe [236336 2025-08-06] (Avast Software s.r.o. -> AVAST Software)
R2 AvastCleanupSvc; C:\Program Files\Avast Software\Cleanup\TuneupSvc.exe [20681008 2025-07-09] (Avast Software s.r.o. -> Gen Digital Inc.)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [192664 2024-12-30] (Avast Software s.r.o. -> Gen Digital Inc.)
S3 AvastSecureBrowserElevationService; C:\Program Files\AVAST Software\Browser\Application\140.0.32350.210\elevation_service.exe [2637712 2025-10-14] (Gen Digital Inc. -> Gen Digital Inc.)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2023-03-13] (Avast Software s.r.o. -> AVAST Software)
R2 CCleaner7; C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe [28276344 2025-10-19] (Gen Digital Inc. -> Gen Digital Inc.)
S3 CorsairDeviceControlService; C:\Program Files\Corsair\Corsair Device Control Service\bin\CorsairDeviceControlService.exe [2525576 2025-04-17] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
R2 EasyTuneEngineService; C:\Program Files (x86)\Gigabyte\EasyTuneEngineService\EasyTuneEngineService.exe [150696 2025-08-08] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.)
S2 GBTECService; C:\Program Files (x86)\Gigabyte\GBTECService\OLEDDisplayService.exe [21160 2025-08-08] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.)
R2 NativePushService; C:\Users\rosmy\AppData\Local\Wondershare\Wondershare NativePush\WsNativePushService.exe [594320 2023-02-22] (Wondershare Technology Group Co.,Ltd -> Wondershare)
S2 OCButtonService; C:\Program Files (x86)\Gigabyte\EasyTuneEngineService\OcButtonService.exe [131184 2023-12-06] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.)
S3 Samsung Printer Dianostics Service; C:\WINDOWS\SysWOW64\spdsvc.exe [508488 2018-07-23] (HP Inc. -> )
R2 SecureLine; C:\Program Files\Avast Software\SecureLine VPN\VpnSvc.exe [14314152 2025-10-15] (Gen Digital Inc. -> Gen Digital Inc.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [803080 2025-10-15] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\NisSrv.exe [3191256 2023-03-13] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2301.6-0\MsMpEng.exe [133576 2023-03-13] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 GigabyteUpdateService; C:\WINDOWS\system32\GigabyteUpdateService.exe [861328 2025-10-20] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 amdfendrmgr; C:\WINDOWS\System32\drivers\amdfendrmgr.sys [36736 2023-05-05] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R3 amdgpio3; C:\WINDOWS\System32\drivers\amdgpio3.sys [33592 2024-09-12] (ASMedia Technology Inc. -> Advanced Micro Devices, Inc)
R2 AMDRyzenMasterDriverV19; C:\Windows\system32\AMDRyzenMasterDriver.sys [48328 2025-07-01] (Advanced Micro Devices Inc. -> Advanced Micro Devices)
S2 AMDRyzenMasterDriverV20; C:\WINDOWS\system32\AMDRyzenMasterDriver.sys [48328 2025-07-01] (Advanced Micro Devices Inc. -> Advanced Micro Devices)
R3 AMDSAFD; C:\WINDOWS\System32\DriverStore\FileRepository\amdsafd.inf_amd64_960126269e89c62e\amdsafd.sys [113880 2024-05-10] (Advanced Micro Devices -> Advanced Micro Devices)
R3 amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0417877.inf_amd64_8b2c2b61b3f8a9e5\B417004\amdkmdag.sys [106595712 2025-07-31] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [61888 2023-05-24] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [244832 2025-09-24] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [390752 2025-09-24] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [299616 2025-09-24] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [85600 2025-09-24] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [29144 2025-08-02] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [29792 2025-09-24] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [284768 2025-09-24] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [574048 2025-09-24] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [92232 2025-09-24] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [71240 2025-09-24] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [876104 2025-09-24] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [1282632 2025-09-24] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [201824 2025-09-24] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [391776 2025-09-24] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 aswVpnRdr; C:\WINDOWS\System32\drivers\aswVpnRdr.sys [85776 2025-02-12] (Microsoft Windows Hardware Compatibility Publisher -> Avast Software)
R3 aswWintun; C:\WINDOWS\System32\drivers\aswWintun.sys [40832 2024-01-17] (Microsoft Windows Hardware Compatibility Publisher -> Avast Software)
S3 aswWireGuard; C:\WINDOWS\System32\drivers\aswWireguard.sys [174912 2025-06-10] (Microsoft Windows Hardware Compatibility Publisher -> Avast Software)
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [106496 2022-05-07] (Microsoft Corporation) [File not signed]
R1 CTIIO; C:\WINDOWS\system32\drivers\CtiIo64.sys [34920 2025-10-10] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Innovation Co., LTd.)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R3 gdrv3; C:\Windows\System32\drivers\gdrv3.sys [52440 2024-12-21] (GIGA-BYTE TECHNOLOGY CO., LTD. -> GIGA-BYTE TECHNOLOGY CO., LTD.)
R1 MSIO; C:\WINDOWS\system32\drivers\MsIo64.sys [19672 2025-10-10] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd)
R3 rt68cx21; C:\WINDOWS\System32\DriverStore\FileRepository\rt68cx21x64.inf_amd64_25769e03e756857c\rt68cx21x64.sys [905216 2025-07-20] (Realtek Semiconductor Corp. -> Realtek)
R2 SSPORT; C:\WINDOWS\system32\Drivers\SSPORT.sys [23320 2022-02-24] (Microsoft Windows Hardware Compatibility Publisher -> HP Inc)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [49576 2023-03-13] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [473336 2023-03-13] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [99576 2023-03-13] (Microsoft Windows -> Microsoft Corporation)
S1 WinSetupMon; system32\DRIVERS\WinSetupMon.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2025-10-20 18:07 - 2025-10-20 18:07 - 000031979 ____X C:\Users\rosmy\Desktop\FRST.txt
2025-10-20 18:07 - 2025-10-20 18:07 - 000000000 ___DX C:\Users\rosmy\Desktop\FRST-OlderVersion
2025-10-20 16:58 - 2025-10-20 16:58 - 000691102 _____ C:\WINDOWS\system32\perfh005.dat
2025-10-20 16:58 - 2025-10-20 16:58 - 000143008 _____ C:\WINDOWS\system32\perfc005.dat
2025-10-19 14:51 - 2025-10-19 14:51 - 000003268 _____ C:\WINDOWS\system32\Tasks\CCleaner 7 - Skip UAC - S-1-5-21-3398037617-877173979-1485582407-1001
2025-10-19 14:51 - 2025-10-19 14:51 - 000002152 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 7.lnk
2025-10-19 14:51 - 2025-10-19 14:51 - 000002140 _____ C:\Users\Public\Desktop\CCleaner 7.lnk
2025-10-19 14:51 - 2025-10-19 14:51 - 000000000 ____D C:\WINDOWS\system32\Tasks\Piriform
2025-10-19 14:51 - 2025-10-19 14:51 - 000000000 ____D C:\Users\rosmy\AppData\Roaming\CCleaner
2025-10-19 14:50 - 2025-10-19 14:50 - 000000000 ____D C:\Program Files\Piriform
2025-10-19 14:50 - 2025-10-19 14:50 - 000000000 ____D C:\Program Files\Common Files\Piriform
2025-10-18 22:37 - 2025-10-18 22:37 - 003887170 _____ C:\Users\rosmy\Downloads\detaily-kontaktni-zateplovaci-system-5e3d1e79063a9.pdf
2025-10-17 23:18 - 2025-10-17 23:18 - 000003642 _____ C:\WINDOWS\system32\Tasks\Avast Secure Browser VPS Differential Update
2025-10-15 21:39 - 2025-10-15 21:39 - 000010136 _____ C:\Users\rosmy\Documents\VYPL_080552_0_202509.pdf
2025-10-15 21:39 - 2025-10-15 21:39 - 000008405 _____ C:\Users\rosmy\Documents\VYPL_080552_1_202509.pdf
2025-10-10 20:26 - 2025-10-10 20:26 - 000000000 ____D C:\Program Files\Corsair
2025-10-10 20:23 - 2025-10-10 20:23 - 000008670 _____ C:\Users\rosmy\Documents\cc_20251010_202259.reg
2025-10-06 21:56 - 2025-10-06 21:56 - 000326674 _____ C:\Users\rosmy\Desktop\VŠ - potvrzení o studiu 1. ročník ZS.PDF
2025-10-05 19:12 - 2025-10-05 19:12 - 000034597 _____ C:\Users\rosmy\Documents\0447-20250901-20250930-9-MCZB.pdf
2025-10-05 19:11 - 2025-10-05 19:11 - 000139430 ____X C:\Users\rosmy\Desktop\Faktura_tonery cybermedia10969.pdf
2025-10-05 19:10 - 2025-10-05 19:10 - 000121096 ____X C:\Users\rosmy\Desktop\faktura xiaomi powerbanka.pdf
2025-09-29 21:00 - 2025-09-29 21:00 - 000461729 _____ C:\Users\rosmy\Downloads\Škoda Karoq 130 let.pdf
2025-09-29 20:41 - 2025-09-29 20:41 - 000156391 _____ C:\Users\rosmy\Downloads\mss-rocni-vypis-z-vkladoveho-uctu (1).pdf
2025-09-29 20:38 - 2025-09-29 20:38 - 000180674 _____ C:\Users\rosmy\Downloads\SB0000000000000000000091119911.pdf
2025-09-29 20:36 - 2025-09-29 20:36 - 000180755 _____ C:\Users\rosmy\Downloads\mss-rocni-vypis-z-vkladoveho-uctu.pdf
2025-09-25 20:04 - 2025-09-25 20:04 - 000000000 ____D C:\scan
2025-09-25 19:58 - 2025-09-25 19:58 - 000000000 ____D C:\Users\rosmy\Documents\Scan
2025-09-24 19:31 - 2025-09-24 19:31 - 000001115 _____ C:\Users\Public\Desktop\PDF-XChange Editor.lnk
2025-09-24 19:31 - 2025-09-24 19:31 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Tracker Software
2025-09-24 19:31 - 2025-09-24 19:31 - 000000000 ____D C:\ProgramData\FileOpen
2025-09-24 19:31 - 2025-09-24 19:31 - 000000000 ____D C:\Program Files\Tracker Software
2025-09-24 19:31 - 2025-09-24 19:31 - 000000000 ____D C:\Program Files\Common Files\Tracker Software
2025-09-24 19:31 - 2025-09-22 14:30 - 000941392 _____ (PDF-XChange Co Ltd.) C:\WINDOWS\system32\pxcpmL.dll
2025-09-24 19:01 - 2025-09-24 19:01 - 000322216 _____ (Gen Digital Inc.) C:\WINDOWS\system32\aswBoot.exe
2025-09-24 05:29 - 2025-09-24 05:29 - 000008802 _____ C:\WINDOWS\Info.xml
2025-09-22 18:05 - 2025-09-22 18:05 - 000030992 _____ C:\Users\rosmy\Desktop\SOKOLA - Faktura Kojátky.pdf
2025-09-22 18:04 - 2025-09-22 18:04 - 000033781 ____X C:\Users\rosmy\Desktop\SOKOLA - Faktura fasáda.pdf
2025-09-21 22:12 - 2025-09-21 22:12 - 000000000 ____D C:\Users\rosmy\Downloads\Photos-1-001
2025-09-20 21:34 - 2025-09-20 21:34 - 000008399 _____ C:\Users\rosmy\Desktop\VYPL_080552_1_202507.pdf
2025-09-20 21:33 - 2025-09-20 21:33 - 000116124 _____ C:\Users\rosmy\Desktop\faktura svetlo koupelnaFV250087698.pdf
2025-09-20 21:30 - 2025-09-20 21:30 - 000135009 ____X C:\Users\rosmy\Desktop\Faktura hmozdinky_WWW.E-STAVEBNINY.CZ_s.r.o._15010394.pdf

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2025-10-20 18:07 - 2023-03-12 23:32 - 000000000 ____D C:\FRST
2025-10-20 18:07 - 2023-03-12 23:23 - 002442752 _____ (Farbar) C:\Users\rosmy\Desktop\FRST64.exe
2025-10-20 17:43 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-10-20 17:41 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-10-20 17:03 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-10-20 16:58 - 2024-05-10 13:32 - 001629494 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-10-20 16:58 - 2022-05-07 07:22 - 000000000 ____D C:\WINDOWS\INF
2025-10-20 16:54 - 2025-02-17 22:52 - 000000000 ____D C:\Users\rosmy\AppData\Local\Avast AntiTrack
2025-10-20 16:53 - 2025-09-02 22:04 - 000003118 _____ C:\WINDOWS\system32\Tasks\AMDInstallLauncher
2025-10-20 16:53 - 2025-07-10 18:05 - 000003110 _____ C:\WINDOWS\system32\Tasks\AMDLinkUpdate
2025-10-20 16:53 - 2024-05-10 13:26 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2025-10-20 16:53 - 2024-05-10 13:23 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-10-20 16:53 - 2023-01-28 16:09 - 000000000 ____D C:\ProgramData\AVAST Software
2025-10-20 16:53 - 2023-01-28 12:40 - 000089232 _____ (GIGA-BYTE TECHNOLOGY CO., LTD.) C:\WINDOWS\system32\GigabyteDownloadAssistant.exe
2025-10-20 16:52 - 2024-05-10 13:26 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-10-20 16:52 - 2023-01-28 12:15 - 000875536 _____ C:\WINDOWS\system32\wpbbin.exe
2025-10-20 16:52 - 2023-01-28 12:15 - 000861328 _____ (GIGA-BYTE TECHNOLOGY CO., LTD.) C:\WINDOWS\system32\GigabyteUpdateService.exe
2025-10-20 16:52 - 2023-01-28 12:15 - 000012288 ___SH C:\DumpStack.log.tmp
2025-10-19 22:43 - 2022-05-07 07:17 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2025-10-19 14:53 - 2023-01-28 12:40 - 000000000 ____D C:\Users\rosmy\AppData\Local\D3DSCache
2025-10-19 14:52 - 2023-01-28 17:48 - 000000000 ____D C:\Users\rosmy\AppData\Local\CrashDumps
2025-10-19 14:50 - 2024-03-19 20:42 - 000000000 ____D C:\ProgramData\Piriform
2025-10-19 14:50 - 2023-02-01 00:00 - 000000000 ____D C:\Program Files\CCleaner
2025-10-18 21:30 - 2022-05-07 07:24 - 000000000 ___HD C:\Program Files\WindowsApps
2025-10-17 23:18 - 2023-03-13 10:43 - 000002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Secure Browser.lnk
2025-10-17 23:18 - 2023-01-28 12:15 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-10-15 22:40 - 2025-02-01 21:53 - 000479792 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2025-10-15 22:39 - 2024-05-10 14:21 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2025-10-15 22:39 - 2022-05-07 12:14 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2025-10-15 22:39 - 2022-05-07 07:24 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2025-10-15 22:39 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2025-10-15 22:39 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2025-10-15 22:39 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2025-10-15 22:39 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\SystemResources
2025-10-15 22:39 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2025-10-15 22:39 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\setup
2025-10-15 22:39 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2025-10-15 22:39 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\Dism
2025-10-15 22:39 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\ShellExperiences
2025-10-15 22:39 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\bcastdvr
2025-10-15 21:28 - 2022-05-07 07:24 - 000000000 ____D C:\ProgramData\USOPrivate
2025-10-15 21:17 - 2022-05-07 07:17 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-10-15 21:15 - 2024-05-10 13:24 - 003214848 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2025-10-15 21:06 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth
2025-10-15 21:02 - 2023-02-13 23:31 - 000000000 ____D C:\Users\rosmy\AppData\Local\AMD_Common
2025-10-14 20:21 - 2023-01-28 15:30 - 000000000 ____D C:\WINDOWS\system32\MRT
2025-10-14 20:18 - 2023-01-28 15:30 - 214534944 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2025-10-14 20:08 - 2025-02-06 21:32 - 000003570 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-3398037617-877173979-1485582407-1001
2025-10-14 20:08 - 2024-05-10 13:26 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3398037617-877173979-1485582407-1001
2025-10-14 20:08 - 2024-05-10 13:26 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3398037617-877173979-1485582407-1001
2025-10-14 20:08 - 2023-01-28 12:34 - 000002379 _____ C:\Users\rosmy\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-10-11 22:27 - 2024-05-10 13:26 - 000003640 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-10-11 22:27 - 2024-05-10 13:26 - 000003514 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-10-10 20:31 - 2024-01-11 22:14 - 000000000 ___HD C:\Program Files (x86)\Temp
2025-10-10 20:26 - 2024-12-22 00:46 - 000019672 _____ (MICSYS Technology Co., LTd) C:\WINDOWS\system32\Drivers\MsIo64.sys
2025-10-10 20:26 - 2024-01-11 21:59 - 000034920 _____ (Creative Technology Innovation Co., LTd.) C:\WINDOWS\system32\Drivers\CtiIo64.sys
2025-10-10 20:26 - 2024-01-11 21:59 - 000000000 ____D C:\Program Files\ENE
2025-10-10 20:26 - 2023-01-31 21:34 - 000000000 ____D C:\Program Files (x86)\Realtek
2025-10-10 20:26 - 2023-01-28 12:42 - 000000000 ____D C:\ProgramData\Package Cache
2025-10-10 20:26 - 2023-01-28 12:40 - 000000000 ____D C:\Users\rosmy\AppData\Local\Packages
2025-10-10 20:26 - 2023-01-28 12:40 - 000000000 ____D C:\ProgramData\Packages
2025-10-10 20:25 - 2024-01-11 21:59 - 000001921 _____ C:\Users\Public\Desktop\GCC.lnk
2025-10-02 21:13 - 2025-06-23 22:15 - 000003300 _____ C:\WINDOWS\system32\Tasks\klcp_update
2025-10-02 21:13 - 2025-06-23 22:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\K-Lite Codec Pack
2025-10-02 21:13 - 2025-06-23 22:15 - 000000000 ____D C:\Program Files (x86)\K-Lite Codec Pack
2025-10-01 21:12 - 2025-04-06 18:43 - 000006187 _____ C:\Users\rosmy\Desktop\spotify.txt
2025-09-26 23:40 - 2025-09-02 21:44 - 000002402 _____ C:\WINDOWS\system32\Tasks\AMDRyzenMasterSDKTask
2025-09-26 23:40 - 2025-06-01 22:28 - 000002672 _____ C:\WINDOWS\system32\Tasks\ModifyLinkUpdate
2025-09-26 23:40 - 2025-06-01 22:28 - 000002114 _____ C:\WINDOWS\system32\Tasks\StartDVR
2025-09-26 23:40 - 2025-01-25 14:40 - 000002648 _____ C:\WINDOWS\system32\Tasks\AMDAutoUpdate
2025-09-26 23:40 - 2025-01-25 14:40 - 000002504 _____ C:\WINDOWS\system32\Tasks\StartAUEP
2025-09-26 23:40 - 2024-11-19 23:03 - 000002588 _____ C:\WINDOWS\system32\Tasks\CreateExplorerShellUnelevatedTask
2025-09-26 23:40 - 2024-05-10 13:26 - 000002594 _____ C:\WINDOWS\system32\Tasks\GraphicsCardEngine
2025-09-26 23:40 - 2024-05-10 13:26 - 000002194 _____ C:\WINDOWS\system32\Tasks\StartCN
2025-09-25 20:09 - 2023-03-31 20:31 - 000000000 ____D C:\Users\rosmy\AppData\Roaming\Samsung
2025-09-25 19:58 - 2024-05-29 20:41 - 000000000 ____D C:\ProgramData\boost_interprocess
2025-09-25 19:28 - 2022-05-07 07:24 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2025-09-24 19:22 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\NDF
2025-09-24 19:01 - 2023-03-13 10:37 - 001282632 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswSP.sys
2025-09-24 19:01 - 2023-03-13 10:37 - 000876104 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswSnx.sys
2025-09-24 19:01 - 2023-03-13 10:37 - 000574048 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2025-09-24 19:01 - 2023-03-13 10:37 - 000391776 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswVmm.sys
2025-09-24 19:01 - 2023-03-13 10:37 - 000390752 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2025-09-24 19:01 - 2023-03-13 10:37 - 000299616 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2025-09-24 19:01 - 2023-03-13 10:37 - 000284768 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2025-09-24 19:01 - 2023-03-13 10:37 - 000244832 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswArPot.sys
2025-09-24 19:01 - 2023-03-13 10:37 - 000092232 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2025-09-24 19:01 - 2023-03-13 10:37 - 000085600 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2025-09-24 19:01 - 2023-03-13 10:37 - 000071240 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2025-09-24 19:01 - 2023-03-13 10:37 - 000029792 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswKbd.sys
2025-09-21 22:16 - 2023-01-28 15:40 - 000000000 ____D C:\Users\rosmy\AppData\Local\GHISLER

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================
Addition.zip
(13.2 KiB) Staženo 22 x

Log AdwCleaner

# -------------------------------
# Malwarebytes AdwCleaner 8.5.0.595
# -------------------------------
# Build: 03-05-2025
# Database: 2024-10-23.4 (Local)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 10-20-2025
# Duration: 00:00:08
# OS: Windows 11 (Build 22631.6060)
# Scanned: 32108
# Detected: 2


***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

No malicious files found.

***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

No malicious tasks found.

***** [ Registry ] *****

No malicious registry entries found.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries found.

***** [ Chromium URLs ] *****

No malicious Chromium URLs found.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries found.

***** [ Firefox URLs ] *****

No malicious Firefox URLs found.

***** [ Hosts File Entries ] *****

No malicious hosts file entries found.

***** [ Preinstalled Software ] *****

Preinstalled.SamsungEasyDocumentCreator Folder C:\Program Files (x86)\SAMSUNG\EASY DOCUMENT CREATOR
Preinstalled.SamsungEasyDocumentCreator Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\Samsung Easy Document Creator


AdwCleaner[S06].txt - [2016 octets] - [06/04/2025 21:30:04]
AdwCleaner[S00].txt - [1711 octets] - [08/04/2025 22:43:31]
AdwCleaner[S01].txt - [1772 octets] - [10/04/2025 21:42:03]
AdwCleaner[S02].txt - [1833 octets] - [18/04/2025 22:25:03]
AdwCleaner[S03].txt - [1894 octets] - [26/04/2025 20:47:34]
AdwCleaner[S04].txt - [1955 octets] - [27/04/2025 00:15:24]
AdwCleaner[S05].txt - [2016 octets] - [09/05/2025 22:13:06]
AdwCleaner[S07].txt - [2077 octets] - [12/06/2025 20:37:37]
AdwCleaner[S08].txt - [2138 octets] - [29/06/2025 20:05:35]
AdwCleaner[S09].txt - [2199 octets] - [04/07/2025 23:23:42]
AdwCleaner[S10].txt - [2260 octets] - [07/08/2025 20:57:10]
AdwCleaner[S11].txt - [2321 octets] - [01/09/2025 21:50:47]
AdwCleaner[S12].txt - [2382 octets] - [13/09/2025 08:09:52]
AdwCleaner[S13].txt - [2443 octets] - [14/09/2025 20:31:33]
AdwCleaner[S14].txt - [2504 octets] - [18/09/2025 21:58:02]
AdwCleaner[S15].txt - [2565 octets] - [10/10/2025 20:33:09]
AdwCleaner[S16].txt - [2398 octets] - [10/10/2025 20:33:29]
AdwCleaner[C16].txt - [2588 octets] - [10/10/2025 20:33:52]
AdwCleaner[S17].txt - [2748 octets] - [11/10/2025 23:16:41]
AdwCleaner[S18].txt - [2809 octets] - [19/10/2025 14:49:11]
AdwCleaner[S19].txt - [2870 octets] - [19/10/2025 14:49:45]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S20].txt ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119650
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kntrolu logu. Děkuji.

#2 Příspěvek od Rudy »

Zdravím!
Potřebuji ještě vidět log Addition k celkové kontrole. Je v souboru C:\Users\rosmy\Desktop\addition. txt. Děkuji.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

roman7
Návštěvník
Návštěvník
Příspěvky: 342
Registrován: 25 bře 2008 23:09

Re: Prosím o kntrolu logu. Děkuji.

#3 Příspěvek od roman7 »

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 11-10-2025
Ran by Roman (20-10-2025 18:08:27)
Running from C:\Users\rosmy\Desktop
Microsoft Windows 11 Pro Version 23H2 22631.6060 (X64) (2024-05-10 11:26:57)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-3398037617-877173979-1485582407-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3398037617-877173979-1485582407-503 - Limited - Disabled)
Guest (S-1-5-21-3398037617-877173979-1485582407-501 - Limited - Disabled)
Roman (S-1-5-21-3398037617-877173979-1485582407-1001 - Administrator - Enabled) => C:\Users\rosmy
WDAGUtilityAccount (S-1-5-21-3398037617-877173979-1485582407-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
FW: Avast Antivirus (Enabled) {D322394B-73F7-C65E-BBB0-3B81E063D6D4}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Aktualizace produktu Microsoft Office Excel 2007 Help (KB963678) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{0A1FAC46-B899-421D-B1A2-470896DC45DB}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Powerpoint 2007 Help (KB963669) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{5260BB53-C1F7-4A3B-9AEB-3EC9B37FF194}) (Version: - Microsoft)
Aktualizace produktu Microsoft Office Word 2007 Help (KB963665) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{E68DD413-B834-4923-8181-0A03B7555187}) (Version: - Microsoft)
AMD GPIO2 Driver (HKLM-x32\...\{E9DD399F-21A3-479E-A7DF-D6CF4B2ADBF3}) (Version: 2.2.0.134 - Advanced Micro Devices, Inc.) Hidden
AMD Chipset Software (HKLM-x32\...\AMD_Chipset_IODrivers) (Version: 7.09.23.2230 - Advanced Micro Devices, Inc.)
AMD PSP Driver (HKLM-x32\...\{988F14B8-79A8-475D-BAC7-83F96AD3D821}) (Version: 5.40.0.0 - Advanced Micro Devices, Inc.) Hidden
AMD Ryzen Balanced Driver (HKLM-x32\...\{A171D320-C42C-4F3B-A2D8-C6A09F6788CC}) (Version: 8.0.0.13 - Advanced Micro Devices, Inc.) Hidden
AMD Ryzen Master (HKLM\...\{02247819-03CD-414E-AC8D-FD518BFBA445}) (Version: 2.14.1.3277 - Advanced Micro Devices, Inc.) Hidden
AMD Ryzen Master (HKLM\...\AMD Ryzen Master) (Version: 2.14.1.3277 - Advanced Micro Devices, Inc.)
AMD SBxxx SMBus Driver (HKLM-x32\...\{AAE0E27D-C88A-49BA-8715-77ADCD4286A3}) (Version: 5.12.0.44 - Advanced Micro Devices, Inc.) Hidden
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 25.8.1 - Advanced Micro Devices, Inc.)
AMD_Chipset_Drivers (HKLM-x32\...\{db516d70-ab2f-4561-8045-005a2186ef15}) (Version: 7.09.23.2230 - Advanced Micro Devices, Inc.) Hidden
Ashampoo Burning Studio 25 (HKLM-x32\...\{91B33C97-FEC1-F2AA-3EBB-70E92CC4C227}_is1) (Version: 25.0.2 - Ashampoo GmbH & Co. KG)
Ashampoo Photo Optimizer FREE (HKLM\...\{91B33C97-65C7-CD30-B393-C710162776AA}_is1) (Version: 1.9.7 - Ashampoo GmbH & Co. KG)
Audio Record Wizard (HKLM-x32\...\Audio Record Wizard) (Version: 6.9 - NowSmart)
Avast AntiTrack (HKLM-x32\...\AvastAntiTrackPremium) (Version: 4.2.6251.12502 - Avast Software)
Avast Cleanup Premium (HKLM\...\Avast Cleanup) (Version: 25.1.17858.21062 - Gen Digital Inc.)
Avast Premium Security (HKLM\...\Avast Antivirus) (Version: 25.9.10453.3120 - Gen Digital Inc.)
Avast Secure Browser (HKLM-x32\...\Avast Secure Browser) (Version: 140.0.32350.210 - Autoři prohlížeče Avast Secure Browser)
Avast SecureLine VPN (HKLM\...\Avast SecureLine) (Version: 25.10.12054.16500 - Avast Software)
Avast Update Helper (HKLM-x32\...\{19C3AB22-3718-4E4D-B203-242F5001565B}) (Version: 1.8.1697.6 - AVAST Software) Hidden
Avast Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.5.245.0 - AVAST Software) Hidden
Branding64 (HKLM\...\{492AEFBE-1B81-4C20-A111-E6974BB98EC5}) (Version: 1.00.0009 - Advanced Micro Devices, Inc.) Hidden
Canyon CND-SGM14RGB Gaming Mouse (HKLM-x32\...\{373BE5DA-63B5-44D6-A61D-6AA6EDDABB5C}_is1) (Version: 1.0.4 - Canyon)
CCleaner 7 (HKLM\...\CCleaner 7) (Version: 7.0.1010.1196 - Piriform)
Common Desktop Agent (HKLM\...\{031A0E14-0413-4C97-9772-2639B782F46F}) (Version: 1.62.0 - OEM) Hidden
Corsair Device Control Service (HKLM\...\{7F05A2E7-F6C9-4419-AB4B-170B97CAE29D}) (Version: 1.7.27 - Corsair) Hidden
Corsair Device Control Service Bundle (HKLM-x32\...\{d04eddd3-9909-49af-aa59-b30e1b161f18}) (Version: 1.7.27 - Corsair)
EasyTuneEngineService (HKLM-x32\...\{964575C3-5820-4642-A89A-754255B5EFE1}) (Version: 1.24.0321 - GIGABYTE) Hidden
EasyTuneEngineService (HKLM-x32\...\InstallShield_{964575C3-5820-4642-A89A-754255B5EFE1}) (Version: 1.24.0321 - GIGABYTE)
ENE Video Capture Box HAL (HKLM\...\{A096611D-BA11-4A1A-8D09-0A0462D7C8F2}) (Version: 1.0.5.15 - Ene Tech.) Hidden
ENE Video Capture Box HAL (HKLM-x32\...\{974259bf-3ed1-4cd6-9ed1-40c7f601a786}) (Version: 1.0.5.15 - Ene Tech.) Hidden
ENE_AIC_Marvell_HAL (HKLM\...\{085E2365-0A70-4230-B664-02D5E4FE7E9C}) (Version: 1.0.7.0 - ENE TECHNOLOGY INC.) Hidden
ENE_AIC_Marvell_HAL (HKLM-x32\...\{887e18fb-6bc3-4cd4-b34e-32d9ff71bbae}) (Version: 1.0.7.0 - ENE TECHNOLOGY INC.) Hidden
ENE_DRAM_RGB_AIO (HKLM\...\{C59BF7A9-FFFA-4257-BD2B-52302F4A2772}) (Version: 1.0.19.0 - Ene Tech.) Hidden
ENE_DRAM_RGB_AIO (HKLM-x32\...\{a93538bc-9eee-458b-a5c6-d26ed02a2c75}) (Version: 1.0.19.0 - Ene Tech.) Hidden
ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
ENE_EHD_M2_HAL (HKLM-x32\...\{c1d017c2-8846-4000-9254-5689eccd462e}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
ENE_External_Device_HAL (HKLM\...\{2B8E611F-0B51-4FAC-87BB-AF50D82E7DDA}) (Version: 1.0.12.7 - ENE Tech) Hidden
ENE_External_Device_HAL (HKLM-x32\...\{a7b1cf47-d8f0-423d-9494-568195f1c864}) (Version: 1.0.12.7 - ENE Tech) Hidden
ENE_MousePad_HAL (HKLM\...\{9E97178A-ADB8-4778-BE60-7E28E2A72721}) (Version: 1.0.1.8 - ENE TECHNOLOGY INC.) Hidden
ENE_MousePad_HAL (HKLM-x32\...\{bf256b46-8ff7-48be-ab7f-5661e9a0651f}) (Version: 1.0.1.8 - ENE TECHNOLOGY INC.) Hidden
ENE_X_AIC_HAL (HKLM\...\{CF703694-01C6-4062-B797-84DB215662BC}) (Version: 1.0.6.3 - ENE TECHNOLOGY INC.) Hidden
ENE_X_AIC_HAL (HKLM-x32\...\{c662a481-d76a-4188-95d2-6eb4ffd55542}) (Version: 1.0.6.3 - ENE TECHNOLOGY INC.) Hidden
GBT_Dynamic_Lighting_Lib_UC 25.07.21.01 (HKLM\...\GBT_Dynamic_Lighting_Lib_UC) (Version: 25.07.21.01 - GIGABYTE)
GBT_MB_Update (HKLM\...\GBT_MB_Update) (Version: 25.05.28.01 - GIGABYTE)
GBT_RGB_Sync_Control 25.08.20.01 (HKLM\...\GBT_RGB_Sync_Control) (Version: 25.08.20.01 - GIGABYTE)
GBT_rgbMotherboard_UC 25.08.21.01 (HKLM\...\GBT_rgbMotherboard_UC) (Version: 25.08.21.01 - GIGABYTE)
GBTECService (HKLM-x32\...\{759D7F2F-1F0D-461E-A3CD-BF58FC60DB2F}) (Version: 1.23.0717 - Gigabyte) Hidden
GBTECService (HKLM-x32\...\InstallShield_{759D7F2F-1F0D-461E-A3CD-BF58FC60DB2F}) (Version: 1.23.0717 - Gigabyte)
GIGABYTE Control Center 25.07.21.01 (HKLM\...\GIGABYTE Control Center) (Version: 25.07.21.01 - GIGABYTE)
GIGABYTE Performance Library (HKLM\...\MBEasyTune) (Version: 25.08.15.01 - GIGABYTE)
GIGABYTE SSD Firmware Update Tool (HKLM\...\GBTSsdFirmwareUpdate) (Version: 24.06.19.01 - GIGABYTE)
GIGABYTE Storage Library (HKLM\...\MBStorage) (Version: 25.08.22.01 - GIGABYTE)
iCloud Outlook (HKLM\...\{76DBE4BD-97A4-4657-A75F-4DA83272360F}) (Version: 15.3.0.138 - Apple Inc.)
K-Lite Codec Pack 19.2.5 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 19.2.5 - KLCP)
Microsoft Edge (HKLM-x32\...\{F776F96D-6CF2-3037-8C36-ADC145FFF0E0}) (Version: 141.0.3537.85 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 141.0.3537.85 - Microsoft Corporation) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0015-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0019-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001A-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-002A-0000-1000-0000000FF1CE}_ENTERPRISE_{664655D8-B9BB-455D-8A58-7EAF7B0B2862}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-002A-0405-1000-0000000FF1CE}_ENTERPRISE_{A0AAD4D5-9F9C-49BB-AB64-0FD4695424E8}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{6E107EB7-8B55-48BF-ACCB-199F86A2CD93}) (Version: - Microsoft)
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-0044-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-006E-0405-0000-0000000FF1CE}_ENTERPRISE_{A0AAD4D5-9F9C-49BB-AB64-0FD4695424E8}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-00A1-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft) Hidden
Microsoft Office 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-00BA-0405-0000-0000000FF1CE}_ENTERPRISE_{3FD35521-B8F1-4CE0-85E0-DC6CA1E01012}) (Version: - Microsoft) Hidden
Microsoft Office Access MUI (Czech) 2007 (HKLM-x32\...\{90120000-0015-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Enterprise 2007 (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.6612.1000 - Microsoft Corporation)
Microsoft Office Excel MUI (Czech) 2007 (HKLM-x32\...\{90120000-0016-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office File Validation Add-In (HKLM-x32\...\{90140000-2005-0000-0000-0000000FF1CE}) (Version: 14.0.5130.5003 - Microsoft Corporation)
Microsoft Office Groove MUI (Czech) 2007 (HKLM-x32\...\{90120000-00BA-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office InfoPath MUI (Czech) 2007 (HKLM-x32\...\{90120000-0044-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Office 64-bit Components 2007 (HKLM\...\{90120000-002A-0000-1000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (Czech) 2007 (HKLM-x32\...\{90120000-00A1-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (Czech) 2007 (HKLM-x32\...\{90120000-001A-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (Czech) 2007 (HKLM-x32\...\{90120000-0018-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Czech) 2007 (HKLM-x32\...\{90120000-001F-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2007 (HKLM-x32\...\{90120000-001F-0409-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2007 (HKLM-x32\...\{90120000-001F-0407-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proof (Slovak) 2007 (HKLM-x32\...\{90120000-001F-041B-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Proofing (Czech) 2007 (HKLM-x32\...\{90120000-002C-0405-0000-0000000FF1CE}) (Version: 12.0.4518.1025 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001F-0405-0000-0000000FF1CE}_ENTERPRISE_{0B7A4B67-2A38-42B1-9857-662FAB361E08}) (Version: - Microsoft) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001F-0407-0000-0000000FF1CE}_ENTERPRISE_{928D7B99-2BEA-49F9-83B8-20FA57860643}) (Version: - Microsoft) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001F-0409-0000-0000000FF1CE}_ENTERPRISE_{1FF96026-A04A-4C3E-B50A-BB7022654D0F}) (Version: - Microsoft) Hidden
Microsoft Office Proofing Tools 2007 Service Pack 3 (SP3) (HKLM-x32\...\{90120000-001F-041B-0000-0000000FF1CE}_ENTERPRISE_{FDF9A959-241A-4662-A8DE-7DED9C22D160}) (Version: - Microsoft) Hidden
Microsoft Office Publisher MUI (Czech) 2007 (HKLM-x32\...\{90120000-0019-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (Czech) 2007 (HKLM\...\{90120000-002A-0405-1000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Czech) 2007 (HKLM-x32\...\{90120000-006E-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (Czech) 2007 (HKLM-x32\...\{90120000-001B-0405-0000-0000000FF1CE}) (Version: 12.0.6612.1000 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKU\S-1-5-21-3398037617-877173979-1485582407-1001\...\OneDriveSetup.exe) (Version: 25.179.0914.0003 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.44.35211 (HKLM-x32\...\{d8bbe9f9-7c5b-42c6-b715-9ee898a2e515}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.44.35211 (HKLM-x32\...\{0b5169e3-39da-4313-808e-1f9c0407f3bf}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.44.35211 (HKLM\...\{86AB2CC9-08BD-4643-B0F9-F82D006D72FF}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.44.35211 (HKLM\...\{43B0D101-A022-48F4-9D04-BA404CEB1D53}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.44.35211 (HKLM-x32\...\{C18FB403-1E88-43C8-AD8A-CED50F23DE8B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.44.35211 (HKLM-x32\...\{922480B5-CAEB-4B1B-AAA4-9716EFDCE26B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Opera Mail 1.0 (HKLM-x32\...\Opera 1.0.1040) (Version: 1.0.1040 - Opera Software ASA)
Opera Mail verze 1.5 (HKLM-x32\...\Opera Mail_is1) (Version: 1.5 - )
Patriot Viper M2 SSD RGB (HKLM\...\{8B4C0A3D-C135-4E1F-98D8-3926494B4D61}) (Version: 1.1.0.3 - Patriot Memory) Hidden
Patriot Viper M2 SSD RGB (HKLM-x32\...\{6e0eff60-c502-43bb-8f56-360ca07e73d9}) (Version: 1.1.0.3 - Patriot Memory) Hidden
PDF-XChange Editor (HKLM\...\{21419BC4-0444-4967-B1DB-BA089DECF674}) (Version: 10.7.3.401 - PDF-XChange Co Ltd.)
PDF-XChange Editor (HKLM-x32\...\{604944cd-f303-4436-bc7b-7a538b64c872}) (Version: 9.0.351.0 - Tracker Software Products (Canada) Ltd.)
Promontory_GPIO Driver (HKLM-x32\...\{B5512BCC-F4CD-4159-86A4-B2AD7D38FFA9}) (Version: 3.0.3.0 - Advanced Micro Devices, Inc.) Hidden
RAIDXpert2 Management Suite (HKLM-x32\...\RAIDXpert2 Management Suite) (Version: 9.3.0.296 - Advanced Micro Devices, Inc.)
Realtek Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.9879.1 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 11.26.50.2025 - Realtek)
RyzenMasterSDK (HKLM\...\{0963A25D-EBBE-4919-ACF8-BB45BFCC518A}) (Version: 1.2.3.5 - Advanced Micro Devices, Inc.) Hidden
Samsung Diagnostika tiskárny Samsung (HKLM-x32\...\Samsung Printer Diagnostics) (Version: 1.0.4.29 - HP Printing Korea Co., Ltd.)
Samsung Easy Document Creator (HKLM-x32\...\Samsung Easy Document Creator) (Version: 2.02.61 () - HP Development Company, L.P.)
Samsung Scan Process Machine (HKLM-x32\...\Samsung Scan Process Machine) (Version: 1.03.05.32 - Samsung Electronics Co., Ltd.) Hidden
Smart Backup (x64) (HKLM\...\{BC1FA5CF-A36F-4C61-9638-09D0B431B006}) (Version: 3.24.0829.1 - Gigabyte) Hidden
Smart Backup (x64) (HKLM-x32\...\InstallShield_{BC1FA5CF-A36F-4C61-9638-09D0B431B006}) (Version: 3.24.0829.1 - Gigabyte)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 11.56 - Ghisler Software GmbH)
Uninstall Samsung Printer Software (HKLM-x32\...\TotalUninstaller) (Version: 4.0.0.93 - Samsung Electronics CO., LTD.)
Update for 2007 Microsoft Office System (KB967642) (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}_ENTERPRISE_{C444285D-5E4F-48A4-91DD-47AAAA68E92D}) (Version: - Microsoft)
Verbatim_SureFireGaming_Product (HKLM\...\{35CB65C6-A7E3-4EE7-AD40-738D70A72164}) (Version: 1.0.3.11 - Verbatim) Hidden
Verbatim_SureFireGaming_Product (HKLM-x32\...\{d601832a-0d94-46ce-9b19-78e8a5887313}) (Version: 1.0.3.11 - Verbatim) Hidden
VLC media player (HKLM\...\VLC media player) (Version: 3.0.21 - VideoLAN)
Vypínač na dobrou noc verze 2.0 (HKLM-x32\...\Vypínač na dobrou noc_is1) (Version: - )
Wave Editor 3.8.0.0 (HKLM-x32\...\Wave Editor_is1) (Version: 3.8.0.0 - AbyssMedia.com)
WD P40 Game Drive (HKLM\...\{EE55DBAE-ECDD-4ADD-AAB5-23DE848B0996}) (Version: 1.0.2.18 - Western Digital Corporation) Hidden
WD P40 Game Drive (HKLM-x32\...\{72b1a866-fc31-4381-bff3-fa6cd8823777}) (Version: 1.0.2.18 - Western Digital Corporation) Hidden
WhereIsIt? 2010 (HKLM-x32\...\whereisit-wii_is1) (Version: 2010 - Robert Galle)
WinRAR 5.80 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.80.0 - win.rar GmbH)
Wondershare NativePush(Build 1.0.0.7) (HKU\S-1-5-21-3398037617-877173979-1485582407-1001\...\Wondershare NativePush_is1) (Version: - )
ZPS 19 CZ (HKU\S-1-5-21-3398037617-877173979-1485582407-1001\...\{E83AA227-7862-F115-2E87-46DCA9E3D879}) (Version: v.19.2004.2.262 - 18.08.2020 - libbi)

Packages:
=========
AMD Radeon Software -> C:\Program Files\AMD\CNext\CNext [2025-09-02] (Advanced Micro Devices Inc.)
Audio Video Converter to MP3 & MP4 Free -> C:\Program Files\WindowsApps\5331LeThanhDat.AudioVideoConvertertoMP3MP4Free_1.0.2.0_x64__4sg46mhseqky0 [2025-10-09] (Le Thanh Dat)
Disney+ -> C:\Program Files\WindowsApps\Disney.37853FC22B2CE_2024.3.211.0_neutral__6rarf9sa4v8jt [2025-09-08] (Disney)
Fotografie – starší verze -> C:\Program Files\WindowsApps\Microsoft.PhotosLegacy_2024.11090.26001.0_x64__8wekyb3d8bbwe [2024-11-15] (Microsoft Corporation)
GigabyteControlCenter -> C:\Program Files\WindowsApps\65d483df-b37e-4fcf-94de-8b795233db63_25.1.23.0_x64__1mmjbktjj1mkp [2025-10-10] (GIGABYTE)
iCloud -> C:\Program Files\WindowsApps\AppleInc.iCloud_15.5.23.0_x64__nzyj5cx40ttqa [2025-10-15] (Apple Inc.) [Startup Task]
Messenger -> C:\Program Files\WindowsApps\FACEBOOK.317180B0BB486_2250.1.0.0_x64__8xx8rvfyw5nnt [2025-10-14] (Meta)
Microsoft.LegacyPhotosAdd-on -> C:\Program Files\WindowsApps\Microsoft.LegacyPhotosAdd-on_2022.2206.0.0_x64__8wekyb3d8bbwe [2024-04-29] (Microsoft Corporation)
Microsoft.LegacyPhotosMediaEngineAdd-on -> C:\Program Files\WindowsApps\Microsoft.LegacyPhotosMediaEngineAdd-on_2022.2206.0.0_x64__8wekyb3d8bbwe [2024-04-19] (Microsoft Corporation)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.53.374.0_x64__dt26b99r8h8gj [2025-10-10] (Realtek Semiconductor Corp)
Samsung Printer Experience -> C:\Program Files\WindowsApps\SAMSUNGELECTRONICSCO.LTD.SamsungPrinterExperience_1.3.15.0_x64__3c1yjt4zspk6g [2023-02-18] (Samsung Electronics Co. Ltd.)
SpotifyAB.SpotifyMusic -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.274.477.0_x64__zpdnekdrzrea0 [2025-10-09] (Spotify AB) [Startup Task]
WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2541.3.0_x64__cv1g1gvanyjgm [2025-10-18] (WhatsApp Inc.) [Startup Task]

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3398037617-877173979-1485582407-1001_Classes\CLSID\{14100442-9664-1407-2647-000000000000}\localserver32 -> C:\Users\rosmy\AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe (Wondershare Technology Group Co.,Ltd -> Wondershare)
CustomCLSID: HKU\S-1-5-21-3398037617-877173979-1485582407-1001_Classes\CLSID\{47E6DCAF-41F8-441C-BD0E-A50D5FE6C4D1}\localserver32 -> C:\Users\rosmy\AppData\Local\Microsoft\OneDrive\25.179.0914.0003\OneDrive.Sync.Service.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3398037617-877173979-1485582407-1001_Classes\CLSID\{917E8742-AA3B-7318-FA12-10485FB322A2}\localserver32 -> C:\Users\rosmy\AppData\Local\Microsoft\OneDrive\25.179.0914.0003\OneDrive.Sync.Service.exe (Microsoft Corporation -> Microsoft Corporation)
ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2217832 2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-09-24] (Gen Digital Inc. -> Gen Digital Inc.)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-09-24] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-09-24] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers1: [Avast Cleanup Premium] -> {13004120-FCAF-4232-A255-807EAD6E7D01} => C:\Program Files\Avast Software\Cleanup\tucontextmenu.dll [2025-06-30] (Avast Software s.r.o. -> Gen Digital Inc.)
ContextMenuHandlers1: [PDFXChange Editor Context menu] -> {2ACD35AB-F74A-4C20-AA9B-2DE80081626D} => C:\Program Files\Tracker Software\Shell Extensions\XCShellMenu.x64.dll [2025-09-22] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-09-24] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers4: [Avast Cleanup Premium] -> {13004120-FCAF-4232-A255-807EAD6E7D01} => C:\Program Files\Avast Software\Cleanup\tucontextmenu.dll [2025-06-30] (Avast Software s.r.o. -> Gen Digital Inc.)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-09-24] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers6: [Avast Cleanup Premium] -> {13004120-FCAF-4232-A255-807EAD6E7D01} => C:\Program Files\Avast Software\Cleanup\tucontextmenu.dll [2025-06-30] (Avast Software s.r.o. -> Gen Digital Inc.)
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2019-12-05] (win.rar GmbH -> Alexander Roshal)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2023-03-29 15:46 - 2023-03-29 15:46 - 000087552 _____ () [File not signed] C:\WINDOWS\system32\SSDEVM64.DLL
2013-03-08 12:28 - 2013-03-08 12:28 - 000187392 _____ (Gigabyte Technology CO., LTD.) [File not signed] C:\Program Files\GIGABYTE\Smart Backup\RescuePlan.dll
2018-10-19 11:44 - 2018-10-19 11:44 - 000751616 _____ (Gigabyte Technology CO., LTD.) [File not signed] C:\Program Files\GIGABYTE\Smart Backup\srpCore.dll
2025-05-14 14:45 - 2025-05-14 14:45 - 000035840 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qgif.dll
2025-05-14 14:45 - 2025-05-14 14:45 - 000044032 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qicns.dll
2025-05-14 14:45 - 2025-05-14 14:45 - 000033792 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qico.dll
2025-05-14 14:45 - 2025-05-14 14:45 - 000564736 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qjpeg.dll
2025-05-14 14:45 - 2025-05-14 14:45 - 000029696 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qpdf.dll
2025-05-14 14:45 - 2025-05-14 14:45 - 000026624 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qsvg.dll
2025-05-14 14:45 - 2025-05-14 14:45 - 000026112 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qtga.dll
2025-05-14 14:45 - 2025-05-14 14:45 - 000024064 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qwbmp.dll
2025-05-14 14:45 - 2025-05-14 14:45 - 000540672 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\imageformats\qwebp.dll
2025-05-14 14:45 - 2025-05-14 14:45 - 000890368 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\platforms\qwindows.dll
2025-05-14 14:45 - 2025-05-14 14:45 - 001964544 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\sqldrivers\qsqlite.dll
2025-05-14 14:45 - 2025-05-14 14:45 - 000210432 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\plugins\styles\qmodernwindowsstyle.dll
2025-05-14 14:45 - 2025-05-14 14:45 - 000299520 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\Qt5Compat\GraphicalEffects\private\qtgraphicaleffectsprivateplugin.dll
2025-05-14 14:45 - 2025-05-14 14:45 - 000556032 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\Qt5Compat\GraphicalEffects\qtgraphicaleffectsplugin.dll
2025-05-14 14:45 - 2025-05-14 14:45 - 000020480 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\QtMultimedia\quickmultimediaplugin.dll
2025-05-14 14:45 - 2025-05-14 14:45 - 000019456 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\QtQuick\Controls\Basic\qtquickcontrols2basicstyleplugin.dll
2025-05-14 14:46 - 2025-05-14 14:46 - 000018944 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\QtQuick\Controls\Fusion\impl\qtquickcontrols2fusionstyleimplplugin.dll
2025-05-14 14:46 - 2025-05-14 14:46 - 000019456 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\QtQuick\Controls\Fusion\qtquickcontrols2fusionstyleplugin.dll
2025-05-14 14:46 - 2025-05-14 14:46 - 000028160 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\QtQuick\Controls\qtquickcontrols2plugin.dll
2025-05-14 14:46 - 2025-05-14 14:46 - 000018944 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\QtQuick\Controls\Windows\impl\qtquickcontrols2windowsstyleimplplugin.dll
2025-05-14 14:46 - 2025-05-14 14:46 - 000468992 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\QtQuick\Controls\Windows\qtquickcontrols2windowsstyleplugin.dll
2025-05-14 14:46 - 2025-05-14 14:46 - 000018944 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\QtQuick\Dialogs\qtquickdialogsplugin.dll
2025-05-14 14:46 - 2025-05-14 14:46 - 000018944 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\QtQuick\Effects\effectsplugin.dll
2025-05-14 14:46 - 2025-05-14 14:46 - 000018944 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\QtQuick\Layouts\qquicklayoutsplugin.dll
2025-05-14 14:46 - 2025-05-14 14:46 - 000767488 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\QtQuick\NativeStyle\qtquickcontrols2nativestyleplugin.dll
2025-05-14 14:46 - 2025-05-14 14:46 - 000019456 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\QtQuick\Templates\qtquicktemplates2plugin.dll
2025-05-14 14:46 - 2025-05-14 14:46 - 000019456 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\QtQuick\Window\quickwindowplugin.dll
2025-05-14 14:46 - 2025-05-14 14:46 - 000022016 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\qml\QtWebEngine\qtwebenginequickplugin.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 006071296 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6Core.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 008933376 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6Gui.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 000972288 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6Multimedia.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 000250368 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6MultimediaQuick.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 001725952 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6Network.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 001964544 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6OpenGL.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 005337600 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6Pdf.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 000500224 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6Positioning.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 005204992 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6Qml.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 000137728 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QmlMeta.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 000721920 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QmlModels.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 000062976 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QmlWorkerScript.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 006282752 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6Quick.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 000084992 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QuickControls2.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 001313280 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QuickControls2Basic.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 001131008 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QuickControls2Fusion.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 000195584 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QuickControls2FusionStyleImpl.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 000276480 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QuickControls2Impl.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 000058368 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QuickControls2WindowsStyleImpl.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 000142336 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QuickDialogs2.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 001992704 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QuickDialogs2QuickImpl.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 000035328 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QuickDialogs2Utils.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 000389120 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QuickEffects.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 000192512 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QuickLayouts.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 001864192 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6QuickTemplates2.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 004028416 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6ShaderTools.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 000303616 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6Sql.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 000513024 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6Svg.dll
2025-06-17 04:46 - 2025-06-17 04:46 - 154372608 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6WebEngineCore.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 000580096 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6WebEngineQuick.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 000228352 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6WebChannel.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 000050176 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6WebChannelQuick.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 006447616 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6Widgets.dll
2025-05-14 14:44 - 2025-05-14 14:44 - 000141824 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\AMD\CNext\CNext\Qt6Xml.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) =============

BHO: GBHO.BHO -> {45d30484-7ded-43d9-957a-d2fd1f046511} -> C:\WINDOWS\system32\mscoree.dll [2022-05-07] (Microsoft Windows -> Microsoft Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2009-02-26] (Microsoft Corporation -> Microsoft Corporation)
Toolbar: HKLM - Smart Backup - {1d09c093-f71e-43c3-b948-19316cbd695e} - C:\WINDOWS\system32\mscoree.dll [2022-05-07] (Microsoft Windows -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-12-07 11:14 - 2023-03-13 11:39 - 000000027 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1 localhost

==================== Network ===========================

(Currently there is no automatic fix for this section.)

DNS Servers: 192.168.1.1
Windows Firewall is enabled.

Network Binding:
=============
Avast SecureLine VPN: Avast SecureLine Wintun Adapter -> aswWintun.sys
Ethernet: Realtek PCIe GbE Family Controller -> rt68cx21x64.sys

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3398037617-877173979-1485582407-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\rosmy\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\P1050492aa.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)


==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run: => "CDAServer"
HKLM\...\StartupApproved\Run: => "RtkAudUService"
HKLM\...\StartupApproved\Run: => "TuneupUI.exe"
HKLM\...\StartupApproved\Run32: => "Sovos"
HKLM\...\StartupApproved\Run32: => "PreRun"
HKU\S-1-5-21-3398037617-877173979-1485582407-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-3398037617-877173979-1485582407-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_8C26541BB0E90087424048CEDDA8EBAF"
HKU\S-1-5-21-3398037617-877173979-1485582407-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-3398037617-877173979-1485582407-1001\...\StartupApproved\Run: => "AMDNoiseSuppression"
HKU\S-1-5-21-3398037617-877173979-1485582407-1001\...\StartupApproved\Run: => "STUISpeedLauncher"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{66068694-E59E-408D-B2D3-E1A650EB49F3}] => (Allow) C:\Program Files\Avast Software\SecureLine VPN\Vpn.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{15710162-D0B1-4F63-9BC2-12299972BBC6}] => (Allow) C:\Program Files\Avast Software\SecureLine VPN\Vpn.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{A36072BE-2BFA-43EC-8812-5445CB35D37E}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{78E77684-00BC-40E8-9352-4FD43C3415B7}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{78BC976C-78A1-4CB7-9B70-8C82F14925D6}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exe () [File not signed]
FirewallRules: [{215BC80D-A1CB-4681-B512-2A6585CDABBF}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDC.exe () [File not signed]
FirewallRules: [{1DF3DD04-DEFD-4203-8927-9A0999AF51D8}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDCApp.exe () [File not signed]
FirewallRules: [{C5E7BC9B-8607-4EC5-85A3-5D9A931A0577}] => (Allow) C:\Program Files (x86)\Samsung\Easy Document Creator\EDCApp.exe () [File not signed]
FirewallRules: [{5949F3CC-A9D0-4CD6-A9A2-AC9CD0804378}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{C229E6F3-03C0-41E3-99BD-7E876391729A}] => (Allow) C:\Program Files (x86)\Samsung\Samsung Universal Scan Driver\ScanCDLM.exe () [File not signed]
FirewallRules: [{6142AAF0-A5C4-4CCE-BF02-115E5EA6CED7}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{2B3FB9C9-47ED-4F17-AEA7-3BA4B12CAC1C}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{C72F82E4-A7DB-47B4-8F00-06BE97514D2A}] => (Allow) C:\Program Files (x86)\Opera Mail\operamail.exe (Opera Software ASA -> Opera Software)
FirewallRules: [{E9F717C7-8BD7-4256-8EFF-9364D6D56122}] => (Allow) C:\Program Files (x86)\Opera Mail\operamail.exe (Opera Software ASA -> Opera Software)
FirewallRules: [TCP Query User{587ABE2B-A95E-456E-B7D1-1B345DF0E2B9}C:\users\rosmy\appdata\local\wondershare\wondershare nativepush\wstoastnotification.exe] => (Block) C:\users\rosmy\appdata\local\wondershare\wondershare nativepush\wstoastnotification.exe (Wondershare Technology Group Co.,Ltd -> Wondershare)
FirewallRules: [UDP Query User{DB732D89-E822-4452-8273-BA1BCEEC4A91}C:\users\rosmy\appdata\local\wondershare\wondershare nativepush\wstoastnotification.exe] => (Block) C:\users\rosmy\appdata\local\wondershare\wondershare nativepush\wstoastnotification.exe (Wondershare Technology Group Co.,Ltd -> Wondershare)
FirewallRules: [TCP Query User{D89A9EEA-3166-4C61-BE9A-8E6F462EAB60}C:\users\rosmy\appdata\local\wondershare\wondershare nativepush\wstoastnotification.exe] => (Block) C:\users\rosmy\appdata\local\wondershare\wondershare nativepush\wstoastnotification.exe (Wondershare Technology Group Co.,Ltd -> Wondershare)
FirewallRules: [UDP Query User{3036C815-2A10-4992-85CA-BE93AA868819}C:\users\rosmy\appdata\local\wondershare\wondershare nativepush\wstoastnotification.exe] => (Block) C:\users\rosmy\appdata\local\wondershare\wondershare nativepush\wstoastnotification.exe (Wondershare Technology Group Co.,Ltd -> Wondershare)
FirewallRules: [{7ACE55A5-6023-49DC-BF3F-19FC7A4CECE2}] => (Allow) C:\Program Files\Avast Software\Cleanup\TuneupUI.exe (Avast Software s.r.o. -> Gen Digital Inc.)
FirewallRules: [{478A5A0E-CA82-4A25-8BD1-473B0F3BEF66}] => (Allow) C:\Program Files\Avast Software\Cleanup\TuneupUI.exe (Avast Software s.r.o. -> Gen Digital Inc.)
FirewallRules: [{290E5971-9A72-4139-9062-13262D5DE157}] => (Allow) C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe (Avast Software s.r.o. -> Gen Digital Inc.)
FirewallRules: [{5A005C02-8FCB-4955-AC37-A8A354AC4623}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\EasyPrinterManagerV2.exe (HP Development Company, L.P.) [File not signed]
FirewallRules: [{08659642-0FE0-4F77-8A12-6AC6D2EF2B24}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\OrderSupplies.exe (HP Development Company, L.P.) [File not signed]
FirewallRules: [{1936A8FB-1AD7-4F13-8B86-33689F6ED6EC}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\EPM2AlertList.exe (HP Development Company, L.P.) [File not signed]
FirewallRules: [{88697D7C-4E2A-4608-B937-13A5F56EAABA}] => (Allow) C:\Program Files (x86)\Samsung\Easy Printer Manager\EPM2Migrator.exe (HP Development Company, L.P.) [File not signed]
FirewallRules: [{7E81BBAE-D185-478F-AE90-6B630EB21D7C}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{C6D2AF49-4473-4A8B-A535-67447912AE3E}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{0246B59D-5FD5-4AF0-8D5F-B5D9992C8A1B}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{47C94DAB-9845-4A04-9D8C-F6DC81F17205}] => (Allow) C:\Program Files\GIGABYTE\Control Center\GCC.exe (GIGA-BYTE TECHNOLOGY CO., LTD. -> )
FirewallRules: [{CC9E4B72-2C97-4723-A9D2-B75D6FDCB89B}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25124.201.3625.2942_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{0BCD0BF5-DD36-4620-A588-3DE54C258269}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25124.201.3625.2942_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{6416B80B-FD37-45CB-9372-446D45202611}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.274.477.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{2756EC04-3D54-4781-BD66-80C7773AFE4F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.274.477.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{9F2D67CC-BEB6-4009-8505-615BC37DC57C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.274.477.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{F559779D-5455-4673-AECA-CAA87F4B747C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.274.477.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{17C8E017-E0E7-4194-A3A8-957BF489E51E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.274.477.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{C730DF57-F2FB-4B11-8078-07AAF6FD6842}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.274.477.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{3A6D99CE-5E63-4F1F-9D38-E6DAFAC47A8E}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.274.477.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{FD93EEE9-FCC9-4E68-BD47-25ED91525D43}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.274.477.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{599F86D1-3958-49FE-8F27-5964CBF0C908}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.274.477.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{BB113419-A8D0-4D17-A852-C6691CCC41AC}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.274.477.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{DBB428A7-C2C4-40D2-9B8A-4A6497F89EC2}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.274.477.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{4040868E-894D-4386-BACD-6B58972FD7F0}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.274.477.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{078A39CA-535A-4509-93B0-B0C9E3371EE0}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.274.477.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{8137EFF0-B696-43FA-A83D-912C8F7097B7}] => (Allow) C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe (Gen Digital Inc. -> Gen Digital Inc.)

==================== Restore Points =========================

09-10-2025 21:13:52 Windows Update
09-10-2025 21:13:52 Windows Update
09-10-2025 21:13:52 Windows Update
10-10-2025 20:29:34 Installed AMD_Chipset_Drivers.
14-10-2025 20:17:45 Windows Update
14-10-2025 20:17:46 Windows Update
18-10-2025 21:29:48 Windows Update
18-10-2025 21:29:48 Windows Update
18-10-2025 21:29:49 Windows Update

==================== Faulty Device Manager Devices ============

==================== Event log errors: ========================

Application errors:
==================
Error: (10/19/2025 12:57:35 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému..

Error: (10/19/2025 12:57:35 AM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.]

Error: (10/19/2025 12:46:58 AM) (Source: Application Error) (EventID: 1000) (User: DESKTOP-9RDGM5O)
Description: Název chybující aplikace: AUEPMaster.exe, verze: 2420.0.0.802, časové razítko: 0x66ad3d71
Název chybujícího modulu: AUEPMaster.exe, verze: 2420.0.0.802, časové razítko: 0x66ad3d71
Kód výjimky: 0xc0000409
Posun chyby: 0x000000000006c3c4
ID chybujícího procesu: 0x0x12e8
Čas spuštění chybující aplikace: 0x0x1dc404ebd952f2a
Cesta k chybující aplikaci: C:\Program Files\AMD\Performance Profile Client\AUEPMaster.exe
Cesta k chybujícímu modulu: C:\Program Files\AMD\Performance Profile Client\AUEPMaster.exe
ID zprávy: 6473d028-5fbf-4ef6-bcd9-631c2367d4bc
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (10/17/2025 03:25:41 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.]

Error: (10/16/2025 10:56:19 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému..

Error: (10/16/2025 10:56:19 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.]

Error: (10/16/2025 08:19:03 PM) (Source: GigabyteOLEDDisplayService) (EventID: 0) (User: )
Description: Službu nelze spustit. Neplatný popisovač

Error: (10/15/2025 10:40:00 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.]


System errors:
=============
Error: (10/20/2025 04:57:59 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:Gigabyte Technology Co., Ltd.;FirmwareManufacturer:American Megatrends International, LLC.;FirmwareVersion:F15;OEMModelNumber:B550 GAMING X V2;OEMModelBaseBoard:B550 GAMING X V2;OEMModelSystemFamily:B550 MB;OEMManufacturerName:Gigabyte Technology Co., Ltd.;OEMModelSKU:Default string;OSArchitecture:amd64;
BucketId: 9e332cd6adc58d2e72d73c49b9f6217eb15ebc1c7a71d19c523b35935a247ddb
BucketConfidenceLevel:
UpdateType: 0
HResult: 0

Error: (10/20/2025 04:53:54 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba AMDRyzenMasterDriverV20 neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.

Error: (10/20/2025 04:53:54 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba AMDRyzenMasterDriverV20 neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.

Error: (10/20/2025 04:53:03 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba AMDRyzenMasterDriverV20 neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.

Error: (10/19/2025 10:43:12 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-9RDGM5O)
Description: Server {740FE937-01F7-4482-AA62-C83F0AD3D6D0} se v daném časovém limitu neregistroval u služby DCOM.

Error: (10/19/2025 10:43:12 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-9RDGM5O)
Description: Server {740FE937-01F7-4482-AA62-C83F0AD3D6D0} se v daném časovém limitu neregistroval u služby DCOM.

Error: (10/19/2025 10:43:12 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-9RDGM5O)
Description: Server {6FA05A24-B1DF-4155-909E-7B424F2D2BB5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (10/19/2025 10:43:12 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-9RDGM5O)
Description: Server {6FA05A24-B1DF-4155-909E-7B424F2D2BB5} se v daném časovém limitu neregistroval u služby DCOM.


Windows Defender:
================Event[0]

Date: 2025-01-11 23:45:48
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 1.421.1305.0
Předchozí verze bezpečnostních informací: 1.383.1701.0
Zdroj aktualizace: Uživatel
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Úplné
Uživatel: DESKTOP-9RDGM5O\Roman
Aktuální verze modulu: 1.1.24090.11
Předchozí verze modulu: 1.1.20000.2
Kód chyby: 0x80070002
Popis chyby: Systém nemůže nalézt uvedený soubor.

Date: 2025-01-11 23:45:48
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 1.421.1305.0
Předchozí verze bezpečnostních informací: 1.383.1701.0
Zdroj aktualizace: Uživatel
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: DESKTOP-9RDGM5O\Roman
Aktuální verze modulu: 1.1.24090.11
Předchozí verze modulu: 1.1.20000.2
Kód chyby: 0x80070002
Popis chyby: Systém nemůže nalézt uvedený soubor.

Date: 2025-01-11 23:45:48
Description:
Program Antivirová ochrana v programu Microsoft Defender zjistil chybu při pokusu o aktualizaci modulu
Nová verze modulu: 1.1.24090.11
Předchozí verze modulu: 1.1.20000.2
Uživatel: DESKTOP-9RDGM5O\Roman
Kód chyby: 0x80070002
Popis chyby: Systém nemůže nalézt uvedený soubor.

CodeIntegrity:
===============
Date: 2025-10-14 20:02:38
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\Program Files\Avast Software\Avast\AvastSvc.exe) attempted to load \Device\HarddiskVolume4\Program Files\Common Files\microsoft shared\OFFICE12\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.


==================== Memory info ===========================

BIOS: American Megatrends International, LLC. F15 09/13/2022
Motherboard: Gigabyte Technology Co., Ltd. B550 GAMING X V2
Processor: AMD Ryzen 5 5600G with Radeon Graphics
Percentage of memory in use: 32%
Total physical RAM: 15720.61 MB
Available physical RAM: 10566.14 MB
Total Virtual: 16744.61 MB
Available Virtual: 10372.46 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:930.73 GB) (Free:433.73 GB) (Model: KINGSTON SNV2S1000G) NTFS
Drive d: () (Fixed) (Total:111.79 GB) (Free:7.51 GB) (Model: KINGSTON SV300S37A120G) NTFS

\\?\Volume{903dc978-8ff5-4b2b-8db9-7217af4cfe9d}\ () (Fixed) (Total:0.67 GB) (Free:0.07 GB) NTFS
\\?\Volume{6f6b86b3-2110-4642-ab54-0875e4ce36fb}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 111.8 GB) (Disk ID: B1A102E2)
Partition 1: (Not Active) - (Size=111.8 GB) - (Type=07 NTFS)

==========================================================
Disk: 1 (Size: 931.5 GB) (Disk ID: 7B887D5D)

Partition: GPT.

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119650
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kntrolu logu. Děkuji.

#4 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKLM\...\Print\Monitors\us016 Langmon: C:\WINDOWS\system32\us016lm.dll [40744 2022-02-24] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

roman7
Návštěvník
Návštěvník
Příspěvky: 342
Registrován: 25 bře 2008 23:09

Re: Prosím o kntrolu logu. Děkuji.

#5 Příspěvek od roman7 »

Fix result of Farbar Recovery Scan Tool (x64) Version: 11-10-2025
Ran by Roman (20-10-2025 22:04:48) Run:9
Running from C:\Users\rosmy\Desktop
Loaded Profiles: Roman
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKLM\...\Print\Monitors\us016 Langmon: C:\WINDOWS\system32\us016lm.dll [40744 2022-02-24] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

EmptyTemp:
End
*****************

Processes closed successfully.
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => removed successfully
HKLM\System\CurrentControlSet\Control\Print\Monitors\us016 Langmon => removed successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully

=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 1572864 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 11724564 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B
Windows/system/drivers => 281304 B
Edge => 0 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 9492 B
NetworkService => 9492 B
rosmy => 237142095 B

RecycleBin => 340 B
EmptyTemp: => 239.1 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 22:04:53 ====

Tak to vypadá, že už to zase běhá. Děkuji.

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119650
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Prosím o kntrolu logu. Děkuji.

#6 Příspěvek od Rudy »

Vše bylo smazáno. Nemáte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět