Prosím o kontrolu preventivně
Napsal: 23 říj 2025 18:42
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 21-10-2025
Ran by marti (administrator) on MARTIN (ASRock Z790 Steel Legend WiFi) (23-10-2025 19:37:49)
Running from C:\Users\marti\Downloads\FRST64.exe
Loaded Profiles: marti
Platform: Microsoft Windows 11 Pro Version 25H2 26200.6901 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(A-Volute SAS -> A-Volute) C:\Users\marti\AppData\Local\NhNotifSys\nahimic\nahimicNotifSys.exe
(C:\Program Files (x86)\ASRock Utility\A-Tuning\Bin\ATuning.exe ->) (ASROCK INC. -> ASRock Incorporation) C:\Program Files (x86)\ASRock Utility\A-Tuning\Bin\AsrSvc.exe
(C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\SimLogic.exe ->) (WINWING) [File not signed] C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\SimLogic.exe <3>
(C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTStream.exe ->) (WINWING) [File not signed] C:\Users\marti\AppData\Local\Temp\3498jpnwod38ubvvL4gYmVnuK6Z\WWTStream.exe <3>
(C:\Program Files (x86)\SimAppPro\SimAppPro.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe <2>
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <7>
(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\Malwarebytes.exe
(C:\Windows\SysWOW64\cmd.exe ->) (WINWING) [File not signed] [File is in use] C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\SimLogic.exe
(C:\Windows\SysWOW64\cmd.exe ->) (WINWING) [File not signed] [File is in use] C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTStream.exe
(Discord Inc. -> Discord Inc.) C:\Users\marti\AppData\Local\Discord\app-1.0.9212\Discord.exe <6>
(drivers\RivetNetworks\Killer\KAPSService.exe ->) (Intel Corporation -> Intel® Corporation) C:\Windows\System32\drivers\RivetNetworks\Killer\KAPS.exe
(drivers\RivetNetworks\Killer\KNDBWMService.exe ->) (Intel Corporation -> Intel® Corporation) C:\Windows\System32\drivers\RivetNetworks\Killer\KNDBWM.exe
(explorer.exe ->) (Navigraph Kommanditbolag -> Navigraph) C:\Program Files\Navigraph\Simlink\NavigraphSimlink.exe
(explorer.exe ->) (Navigraph Kommanditbolag -> Navigraph) C:\Users\marti\AppData\Local\Programs\navigraph-hub\Navigraph Hub.exe <4>
(explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <13>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\MSTeams_25255.703.3978.7153_x64__8wekyb3d8bbwe\ms-teams.exe
(services.exe ->) (A-Volute SAS -> Nahimic) C:\Windows\System32\NahimicService.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe
(services.exe ->) (Guillemot Corporation S.A. -> Guillemot Corporation) C:\Program Files (x86)\Thrustmaster\TARGET\TmService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe
(services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Windows\SysWOW64\XtuService.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Windows\System32\drivers\RivetNetworks\Killer\KillerAnalyticsService.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Windows\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe
(services.exe ->) (Intel Corporation -> Intel® Corporation) C:\Windows\System32\drivers\RivetNetworks\Killer\KAPSService.exe
(services.exe ->) (Intel Corporation -> Intel® Corporation) C:\Windows\System32\drivers\RivetNetworks\Killer\KNDBWMService.exe
(services.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster®) C:\Program Files\Thrustmaster\TM Flight Series\drivers\amd64\tmHInstall.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\NisSrv.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_d471cab2f241c3c2\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_09eece2033f5a691\RtkAudUService64.exe <2>
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe
(sihost.exe ->) (CACCD12F-7BFA-4346-AD14-30B4E275348F -> Hewlett-Packard Development Company, L.P.) C:\Program Files\WindowsApps\33C30B79.HyperXNGenuity_5.34.0.0_x64__0a78dr3hq0pvt\Assets\Native\NGenuity2Helper.exe
(sihost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2510.1001.55.0_x64__8wekyb3d8bbwe\XboxPcTray.exe
(svchost.exe ->) (ASROCK INC. -> ) C:\Program Files (x86)\ASRock Utility\APP Shop\AsrAPPShop.exe
(svchost.exe ->) (ASROCK INC. -> ASRock Incorporation) C:\Program Files (x86)\ASRock Utility\A-Tuning\Bin\ATuning.exe
(svchost.exe ->) (A-Volute SAS -> Nahimic) C:\Windows\System32\NahimicSvc64.exe
(svchost.exe ->) (A-Volute SAS -> Nahimic) C:\Windows\SysWOW64\NahimicSvc32.exe
(svchost.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.Edge.GameAssist_1.0.3590.0_x64__8wekyb3d8bbwe\EdgeGameAssist.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2510.1001.55.0_x64__8wekyb3d8bbwe\XboxPcApp.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2510.1001.55.0_x64__8wekyb3d8bbwe\XboxPcAppFT.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.151.0.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\marti\AppData\Local\Microsoft\OneDrive\25.184.0921.0004_1\FileCoAuth.exe
(svchost.exe ->) (Microsoft Windows -> ) C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\AppActions.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\DataExchangeHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(WINWING) [File not signed] C:\Program Files (x86)\SimAppPro\SimAppPro.exe <4>
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_09eece2033f5a691\RtkAudUService64.exe [1862040 2024-08-02] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [SimAppPro] => C:\Program Files (x86)\SimAppPro\SimAppPro.exe [90632704 2025-10-16] (WINWING) [File not signed]
HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\Run: [MicrosoftEdgeAutoLaunch_4A886EB596DDE810C696BFE47BAAC943] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4265032 2025-10-20] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4699288 2025-10-03] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\Run: [Navigraph Hub] => C:\Users\marti\AppData\Local\Programs\navigraph-hub\Navigraph Hub.exe [176372304 2025-10-01] (Navigraph Kommanditbolag -> Navigraph)
HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\Run: [Navigraph Simlink] => C:\Program Files\Navigraph\Simlink\NavigraphSimlink.exe [1789152 2025-02-19] (Navigraph Kommanditbolag -> Navigraph)
HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\Run: [SimAppPro] => [X]
HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\Run: [Discord] => C:\Users\marti\AppData\Local\Discord\Update.exe [1596344 2025-10-14] (Discord Inc. -> Discord Inc.)
HKLM\...\Print\Monitors\HP D811 Status Monitor: C:\WINDOWS\system32\hpinkstsD811LM.dll [393352 2017-04-05] (Hewlett Packard -> HP Inc.)
Startup: C:\Users\marti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SimAppPro – zástupce.lnk [2025-08-26]
ShortcutTarget: SimAppPro – zástupce.lnk -> C:\Program Files (x86)\SimAppPro\SimAppPro.exe (WINWING) [File not signed]
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {18EAF45D-9259-47DF-95E6-E60857E02EE7} - System32\Tasks\AsrAPPShop => C:\Program Files (x86)\ASRock Utility\APP Shop\AsrAPPShop.exe [6745544 2024-07-30] (ASROCK INC. -> )
Task: {C4F1C95B-CF3A-43BA-9897-714973B3C1A2} - System32\Tasks\ATuning => C:\Program Files (x86)\ASRock Utility\A-Tuning\Bin\ATuning.exe [10455016 2024-08-09] (ASROCK INC. -> ASRock Incorporation)
Task: {F9D9D5C0-0A24-4BD2-A573-85783BAEA290} - System32\Tasks\CCleaner 7 - Skip UAC - S-1-5-21-3429602048-725292175-2964145443-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [4717688 2025-10-19] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {C757F92B-9521-4DAA-9BBE-96E2330B97C9} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {A6232867-40F8-4A9C-9B73-7DDA9BEC9237} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {709077E1-726B-424D-856B-E177B89C44F0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MpCmdRun.exe [1790640 2025-10-22] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {2C09B4CD-E876-4EB6-A178-2FA03019B889} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MpCmdRun.exe [1790640 2025-10-22] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {89B9CE52-2674-4FF8-9BC6-871D0E91EB96} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MpCmdRun.exe [1790640 2025-10-22] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {2DD62033-84A5-4A2A-AD5A-372EBE2781C2} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MpCmdRun.exe [1790640 2025-10-22] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {981004EB-254F-44F1-9803-00DA03297905} - System32\Tasks\NahimicTask32 => C:\Windows\System32\..\SysWOW64\NahimicSvc32.exe [1117352 0] (A-Volute SAS -> Nahimic)
Task: {937E239A-5555-4DA9-81AD-116E27F3B933} - System32\Tasks\NahimicTask64 => C:\Windows\System32\.\NahimicSvc64.exe [1437352 0] (A-Volute SAS -> Nahimic)
Task: {DD4F62AF-8FD2-4F39-B06B-91EC190533B3} - System32\Tasks\OneDrive Startup Task-S-1-5-21-3429602048-725292175-2964145443-1001 => C:\Users\marti\AppData\Local\Microsoft\OneDrive\25.184.0921.0004_1\OneDriveLauncher.exe [725880 2025-10-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {F0842294-F19F-497A-9280-A761D4E9BA73} - System32\Tasks\Piriform\CCleaner 7 - S-1-5-21-3429602048-725292175-2964145443-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [4717688 2025-10-19] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {FE823439-432A-4271-B560-1B66A8A7BA6F} - System32\Tasks\Piriform\CCleaner 7 BugReport => C:\Program Files\Piriform\CCleaner 7\CCleanerBugReport.exe [6243960 2025-10-19] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --product 234 --programpath "C:\Program Files\Piriform\CCleaner 7" --configpath "C:\Program Files\Piriform\CCleaner 7\data" --path "C:\Program Files\Piriform\CCleaner 7\log" --path "C:\Program Files\Piriform\CCleaner 7\data\dumps" --logpath "C:\Program Files\Piriform\CCleaner 7 (the data entry has 58 more characters).
Task: {0CAE8208-3F60-4922-886F-5F8CEFC5CB63} - System32\Tasks\Piriform\CCleaner 7 Update => C:\Program Files\Common Files\Piriform\Icarus\piriform-ccl\icarus.exe [8971064 2025-10-14] (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{ee1a321e-2873-4950-8725-cc3e6a03f061}: [DhcpNameServer] 192.168.1.1
Edge:
=======
Edge Profile: C:\Users\marti\AppData\Local\Microsoft\Edge\User Data\Default [2025-10-23]
Edge Notifications: Default -> hxxps://www.facebook.com
Edge HomePage: Default -> hxxp://www.google.com/
Edge Extension: (Dokumenty Google offline) - C:\Users\marti\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-09-20]
Edge Extension: (Adblock Plus - free ad blocker) - C:\Users\marti\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmgoamodcdcjnbaobigkjelfplakmdhh [2025-10-22]
Edge Extension: (Edge relevant text changes) - C:\Users\marti\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2025-01-31]
Edge HKLM\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn]
Edge HKLM-x32\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn]
Chrome:
=======
CHR HKLM\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 CCleaner7; C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe [28276344 2025-10-19] (Gen Digital Inc. -> Gen Digital Inc.)
R3 GameInputRedistService; C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe [141688 2025-10-07] (Microsoft Corporation -> Microsoft Corporation)
S2 Intel(R) Platform License Manager Service; C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\PlatformLicenseManagerService.exe [741488 2023-12-14] (Intel Corporation -> Intel(R) Corporation)
R3 KAPSService; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KAPSService.exe [76576 2022-07-27] (Intel Corporation -> Intel® Corporation)
R2 Killer Analytics Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerAnalyticsService.exe [2454304 2022-07-27] (Intel Corporation -> Intel)
R2 Killer Network Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe [2898744 2022-07-27] (Intel Corporation -> Intel)
R3 KNDBWM; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KNDBWMService.exe [76600 2022-07-27] (Intel Corporation -> Intel® Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [11130144 2025-10-23] (Malwarebytes Inc -> Malwarebytes)
S3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe [2788304 2025-02-01] (Malwarebytes Inc. -> Malwarebytes)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MpDefenderCoreService.exe [2026144 2025-10-22] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NahimicService; C:\WINDOWS\system32\NahimicService.exe [1909528 2023-10-02] (A-Volute SAS -> Nahimic)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_d471cab2f241c3c2\Display.NvContainer\NVDisplay.Container.exe [1275584 2025-10-10] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [803064 2025-10-01] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 tmHInstall; C:\Program Files\Thrustmaster\TM Flight Series\drivers\amd64\tmHInstall.exe [139456 2025-06-02] (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster®)
R2 TmWinService; C:\Program Files (x86)\Thrustmaster\TARGET\TmService.exe [320536 2024-11-30] (Guillemot Corporation S.A. -> Guillemot Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\NisSrv.exe [4418608 2025-10-22] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MsMpEng.exe [282440 2025-10-22] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AppShopDrv103; C:\WINDOWS\SysWOW64\Drivers\AppShopDrv103.sys [34568 2025-02-01] (ASROCK Incorporation -> ASRock Incorporation) [File not signed]
R3 AsrDrv202; C:\WINDOWS\SysWOW64\Drivers\AsrDrv202.sys [68208 2025-03-02] (ASROCK INC. -> ASRock Incorporation)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [602112 2025-08-16] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [204800 2025-08-16] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [110592 2025-08-16] (Microsoft Corporation) [File not signed]
R1 CTIIO; C:\WINDOWS\system32\drivers\CtiIo64.sys [34920 2025-10-04] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Innovation Co., LTd.)
R3 GuiHidUsbDevLowerTFH; C:\WINDOWS\System32\drivers\GuiHidUsbDevLowerTFH.sys [256704 2025-06-02] (Microsoft Windows Hardware Compatibility Publisher -> © Guillemot R&D, 2020. All rights reserved.)
R3 KfeCoSvc; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KfeCo11X64.sys [188072 2022-07-27] (Intel Corporation -> Rivet Networks, LLC.)
R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [333216 2025-09-19] (Microsoft Windows -> Microsoft Corporation)
R2 mbamchameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [234088 2025-10-23] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [22120 2025-03-13] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [245336 2025-10-23] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S3 MSIO; C:\Program Files (x86)\ASRock Utility\ASRRGBLED\Bin\msio64.sys [19672 2023-12-10] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd)
R3 TmBusEn; C:\WINDOWS\System32\drivers\TmBusEn.sys [43088 2023-12-14] (Microsoft Windows Hardware Compatibility Publisher -> Guillemot Corporation)
R3 TmBusEn; C:\Windows\SysWOW64\drivers\TmBusEn.sys [43088 2023-12-14] (Microsoft Windows Hardware Compatibility Publisher -> Guillemot Corporation)
S3 TmFilter; C:\WINDOWS\System32\drivers\TmFilter.sys [70736 2023-12-14] (Microsoft Windows Hardware Compatibility Publisher -> Guillemot Corporation)
S3 TmFilter; C:\Windows\SysWOW64\drivers\TmFilter.sys [70736 2023-12-14] (Microsoft Windows Hardware Compatibility Publisher -> Guillemot Corporation)
S3 TmHid; C:\WINDOWS\system32\DRIVERS\TmHid.sys [49040 2023-12-14] (WDKTestCert plukidis,131540205154897060 -> Guillemot Corporation)
S3 TmHid; C:\Windows\SysWOW64\DRIVERS\TmHid.sys [49040 2023-12-14] (WDKTestCert plukidis,131540205154897060 -> Guillemot Corporation)
S3 TmHidFsimBus; C:\WINDOWS\System32\drivers\tmHidFsimBus.sys [202440 2025-06-02] (Microsoft Windows Hardware Compatibility Publisher -> © Guillemot R&D, 2021. All rights reserved.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [20888 2025-10-22] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [629128 2025-10-22] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [102832 2025-10-22] (Microsoft Windows -> Microsoft Corporation)
S3 WSDPrintDevice; C:\WINDOWS\System32\DriverStore\FileRepository\wsdprint.inf_amd64_1f9e32519098c0b6\WSDPrint.sys [57344 2025-08-16] (Microsoft Windows -> Microsoft Corporation)
S3 WSDScan; C:\WINDOWS\System32\DriverStore\FileRepository\sti.inf_amd64_a6dc64e436f22951\WSDScan.sys [61440 2025-09-01] (Microsoft Windows -> Microsoft Corporation)
S3 cpuz158; \??\C:\WINDOWS\temp\cpuz158\cpuz158_x64.sys [X] <==== ATTENTION
S3 usbscan; \SystemRoot\System32\DriverStore\FileRepository\sti.inf_amd64_971c769b103df369\usbscan.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-10-23 19:37 - 2025-10-23 19:38 - 000022794 _____ C:\Users\marti\Downloads\FRST.txt
2025-10-23 19:37 - 2025-10-23 19:38 - 000000000 ____D C:\FRST
2025-10-23 19:36 - 2025-10-23 19:36 - 002443264 _____ (Farbar) C:\Users\marti\Downloads\FRST64.exe
2025-10-22 20:11 - 2025-10-22 20:11 - 000677108 _____ C:\WINDOWS\system32\perfh005.dat
2025-10-22 20:11 - 2025-10-22 20:11 - 000144960 _____ C:\WINDOWS\system32\perfc005.dat
2025-10-19 21:28 - 2025-10-23 17:55 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-10-19 19:52 - 2025-10-23 18:58 - 000000000 ____D C:\Users\marti\AppData\Local\Discord
2025-10-19 19:52 - 2025-10-23 15:59 - 000000000 ____D C:\Users\marti\AppData\Roaming\discord
2025-10-19 19:52 - 2025-10-19 19:52 - 000002249 _____ C:\Users\marti\OneDrive\Plocha\Discord.lnk
2025-10-19 19:52 - 2025-10-19 19:52 - 000000000 ____D C:\Users\marti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2025-10-19 19:28 - 2025-10-19 19:28 - 000000000 ____D C:\Users\marti\AppData\Local\vAMSYS-Pegasus
2025-10-19 19:27 - 2025-10-19 19:28 - 000002307 _____ C:\Users\marti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\vAMSYS Pegasus.lnk
2025-10-19 19:27 - 2025-10-19 19:28 - 000002305 _____ C:\Users\marti\OneDrive\Plocha\vAMSYS Pegasus.lnk
2025-10-19 19:27 - 2025-10-19 19:28 - 000000000 ____D C:\Users\marti\AppData\Roaming\vAMSYS-Pegasus
2025-10-19 19:01 - 2025-10-19 19:01 - 000001875 _____ C:\Users\marti\OneDrive\Plocha\Community – zástupce.lnk
2025-10-16 18:19 - 2025-10-10 17:01 - 002402656 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2025-10-16 18:19 - 2025-10-10 17:01 - 002402656 _____ C:\WINDOWS\system32\vulkaninfo.exe
2025-10-16 18:19 - 2025-10-10 17:01 - 001908064 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2025-10-16 18:19 - 2025-10-10 17:01 - 001908064 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2025-10-16 18:19 - 2025-10-10 17:01 - 001581920 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2025-10-16 18:19 - 2025-10-10 17:01 - 001581920 _____ C:\WINDOWS\system32\vulkan-1.dll
2025-10-16 18:19 - 2025-10-10 17:01 - 001395552 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2025-10-16 18:19 - 2025-10-10 17:01 - 001395552 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2025-10-16 18:19 - 2025-10-10 17:01 - 000478400 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2025-10-16 18:19 - 2025-10-10 17:01 - 000374976 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2025-10-16 18:19 - 2025-10-10 16:58 - 001322176 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2025-10-16 18:19 - 2025-10-10 16:58 - 000675008 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvofapi64.dll
2025-10-16 18:19 - 2025-10-10 16:58 - 000509120 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvofapi.dll
2025-10-16 18:19 - 2025-10-10 16:57 - 026354880 _____ C:\WINDOWS\system32\nvidia-pcc.exe
2025-10-16 18:19 - 2025-10-10 16:57 - 002317504 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2025-10-16 18:19 - 2025-10-10 16:57 - 001715904 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2025-10-16 18:19 - 2025-10-10 16:57 - 001599680 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2025-10-16 18:19 - 2025-10-10 16:57 - 001572544 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2025-10-16 18:19 - 2025-10-10 16:57 - 001223360 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2025-10-16 18:19 - 2025-10-10 16:57 - 001057472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2025-10-16 18:19 - 2025-10-10 16:57 - 000813248 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2025-10-16 18:19 - 2025-10-10 16:56 - 024676032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2025-10-16 18:19 - 2025-10-10 16:56 - 021714112 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2025-10-16 18:19 - 2025-10-10 16:56 - 007683264 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2025-10-16 18:19 - 2025-10-10 16:56 - 005469888 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll
2025-10-16 18:19 - 2025-10-10 16:56 - 004175040 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2025-10-16 18:19 - 2025-10-10 16:56 - 000468672 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2025-10-16 18:19 - 2025-10-10 16:55 - 005918912 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2025-10-16 18:19 - 2025-10-10 16:55 - 005625520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2025-10-16 18:19 - 2025-10-10 16:55 - 004924120 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2025-10-16 18:19 - 2025-10-10 16:55 - 000853696 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2025-10-16 18:19 - 2025-10-10 07:36 - 000148902 _____ C:\WINDOWS\system32\nvinfo.pb
2025-10-16 17:49 - 2025-10-16 17:49 - 000000000 ____D C:\Program Files\Windows Kits
2025-10-16 17:49 - 2025-10-16 17:49 - 000000000 ____D C:\Program Files\Microsoft GameInput
2025-10-14 21:55 - 2024-07-30 12:11 - 000062482 _____ C:\WINDOWS\SysWOW64\StrRes.xml
2025-10-14 21:55 - 2024-07-30 12:08 - 000008765 _____ C:\WINDOWS\SysWOW64\ru.xml
2025-10-14 21:55 - 2024-07-30 12:08 - 000005916 _____ C:\WINDOWS\SysWOW64\tw.xml
2025-10-14 21:55 - 2024-07-30 12:08 - 000005078 _____ C:\WINDOWS\SysWOW64\pl.xml
2025-10-14 21:55 - 2024-07-30 12:08 - 000004982 _____ C:\WINDOWS\SysWOW64\pt.xml
2025-10-14 21:55 - 2024-07-30 12:07 - 000007895 _____ C:\WINDOWS\SysWOW64\en.xml
2025-10-14 21:55 - 2024-07-30 12:07 - 000007746 _____ C:\WINDOWS\SysWOW64\jp.xml
2025-10-14 21:55 - 2024-07-30 12:07 - 000006408 _____ C:\WINDOWS\SysWOW64\kr.xml
2025-10-14 21:55 - 2024-07-30 12:07 - 000004867 _____ C:\WINDOWS\SysWOW64\fr.xml
2025-10-14 21:55 - 2024-07-30 12:07 - 000004757 _____ C:\WINDOWS\SysWOW64\es.xml
2025-10-14 21:55 - 2024-07-30 12:06 - 000005830 _____ C:\WINDOWS\SysWOW64\cn.xml
2025-10-14 21:55 - 2024-07-30 12:06 - 000004753 _____ C:\WINDOWS\SysWOW64\de.xml
2025-10-14 21:30 - 2025-10-14 21:30 - 000000000 ____D C:\Program Files (x86)\WD
2025-10-14 17:35 - 2025-10-14 17:35 - 000000000 ____D C:\ProgramData\CPUID Software
2025-10-14 14:34 - 2025-10-19 19:27 - 000000000 ____D C:\Users\marti\AppData\Local\Sentry
2025-10-14 13:59 - 2025-10-14 22:45 - 000000000 ____D C:\ProgramData\Fenix
2025-10-14 13:59 - 2025-10-14 13:59 - 000002250 _____ C:\Users\marti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fenix Installer.lnk
2025-10-14 13:59 - 2025-10-14 13:59 - 000002248 _____ C:\Users\marti\OneDrive\Plocha\Fenix Installer.lnk
2025-10-14 13:59 - 2025-10-14 13:59 - 000000000 ____D C:\Users\marti\AppData\Local\FenixApp
2025-10-10 15:43 - 2025-10-10 15:43 - 000003268 _____ C:\WINDOWS\system32\Tasks\CCleaner 7 - Skip UAC - S-1-5-21-3429602048-725292175-2964145443-1001
2025-10-10 15:43 - 2025-10-10 15:43 - 000002152 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 7.lnk
2025-10-10 15:43 - 2025-10-10 15:43 - 000000000 ____D C:\WINDOWS\system32\Tasks\Piriform
2025-10-10 15:43 - 2025-10-10 15:43 - 000000000 ____D C:\Users\marti\AppData\Roaming\CCleaner
2025-10-10 15:42 - 2025-10-10 15:42 - 000055064 _____ (Gen Digital Inc.) C:\WINDOWS\system32\icarus_rvrt.exe
2025-10-10 15:42 - 2025-10-10 15:42 - 000000000 ____D C:\Program Files\Piriform
2025-10-10 15:42 - 2025-10-10 15:42 - 000000000 ____D C:\Program Files\Common Files\Piriform
2025-10-04 20:21 - 2025-10-04 20:21 - 000000000 ____D C:\Program Files\Verbatim
2025-10-04 16:18 - 2025-10-04 16:18 - 000000000 ____D C:\Users\marti\AppData\Roaming\Opera Software
2025-10-04 11:13 - 2025-10-14 11:07 - 000000087 _____ C:\Users\marti\OneDrive\Plocha\Sklipkani.txt
2025-10-01 18:15 - 2025-10-01 18:15 - 000035125 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2025-10-01 18:15 - 2025-10-01 18:15 - 000035125 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2025-10-01 18:10 - 2025-10-01 18:10 - 000000000 ____D C:\Users\marti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navigraph Hub
2025-10-01 18:04 - 2025-09-22 14:52 - 000126056 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2025-09-26 20:50 - 2025-09-29 15:50 - 000000000 ___RD C:\Users\marti\OneDrive\Dokumenty\FSUIPC7
2025-09-24 17:49 - 2025-09-24 17:49 - 000000000 ____D C:\Program Files\FenixSim A320
2025-09-23 19:15 - 2025-09-23 19:15 - 000002055 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SimAppPro.lnk
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-10-23 19:37 - 2025-02-01 01:49 - 000000000 ____D C:\Program Files (x86)\Steam
2025-10-23 19:35 - 2025-02-01 15:14 - 000000000 ____D C:\Users\marti\AppData\Local\Malwarebytes
2025-10-23 19:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-10-23 19:11 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-10-23 19:00 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-10-23 18:33 - 2025-08-07 17:22 - 000000000 ____D C:\Users\marti\AppData\Roaming\Microsoft Flight Simulator 2024
2025-10-23 18:16 - 2025-08-29 16:53 - 000000000 ____D C:\REX Atmos Core
2025-10-23 17:00 - 2025-02-01 14:11 - 000000000 ____D C:\Users\marti\AppData\Roaming\Virtuali
2025-10-23 16:59 - 2025-02-01 14:11 - 000000000 ____D C:\Users\marti\AppData\Roaming\FlyByWire Installer
2025-10-23 16:58 - 2025-02-01 05:34 - 000000000 ____D C:\Users\marti\AppData\Local\CrashDumps
2025-10-23 16:37 - 2025-08-24 16:00 - 000000000 ____D C:\Users\marti\AppData\Local\D3DSCache
2025-10-23 16:35 - 2025-05-20 20:39 - 000000000 ____D C:\Users\marti\AppData\Roaming\SimAppPro
2025-10-23 16:22 - 2025-02-01 14:28 - 000000000 ____D C:\FSUIPC7
2025-10-23 16:17 - 2024-04-01 09:26 - 000000000 ___HD C:\Program Files\WindowsApps
2025-10-23 16:00 - 2025-02-01 15:13 - 000245336 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2025-10-23 15:57 - 2025-02-01 14:16 - 000000000 ____D C:\Users\marti\AppData\Roaming\navigraph-hub
2025-10-23 15:57 - 2025-02-01 01:00 - 000000000 ___RD C:\Users\marti\OneDrive
2025-10-23 15:55 - 2025-08-17 00:25 - 000003020 _____ C:\WINDOWS\system32\Tasks\AsrAPPShop
2025-10-22 21:15 - 2025-08-24 16:02 - 000000000 ____D C:\ProgramData\NVIDIA
2025-10-22 21:04 - 2025-02-01 16:30 - 000000000 ____D C:\Users\marti\AppData\Roaming\fsltl-trafic-injector
2025-10-22 20:38 - 2025-02-01 16:30 - 000000513 _____ C:\Users\marti\OneDrive\Plocha\fsltl-trafficinjector-config.json
2025-10-22 20:13 - 2025-02-01 14:11 - 000000000 ____D C:\ProgramData\Virtuali
2025-10-22 20:11 - 2025-08-17 00:28 - 001603790 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-10-22 20:11 - 2024-04-01 09:24 - 000000000 ____D C:\WINDOWS\INF
2025-10-22 20:04 - 2025-08-17 00:25 - 000005986 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2025-10-22 20:04 - 2025-08-17 00:25 - 000003108 _____ C:\WINDOWS\system32\Tasks\NahimicTask32
2025-10-22 20:04 - 2025-08-17 00:25 - 000003088 _____ C:\WINDOWS\system32\Tasks\NahimicTask64
2025-10-22 20:04 - 2025-08-17 00:25 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-10-22 20:04 - 2025-08-17 00:23 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK
2025-10-22 20:04 - 2025-02-01 00:47 - 000012288 ___SH C:\DumpStack.log.tmp
2025-10-22 20:04 - 2024-04-01 09:21 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2025-10-22 18:47 - 2025-02-01 00:47 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2025-10-22 18:40 - 2025-02-01 14:25 - 000000000 ____D C:\Users\marti\AppData\Roaming\Aerosoft One
2025-10-22 18:31 - 2025-02-01 00:47 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-10-21 20:51 - 2024-04-01 09:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2025-10-21 20:51 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2025-10-21 20:43 - 2025-08-17 00:26 - 003276800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2025-10-19 21:01 - 2025-02-01 14:26 - 000000000 ____D C:\Users\marti\Aerosoft One Library
2025-10-19 19:52 - 2025-02-01 14:19 - 000000000 ____D C:\Users\marti\AppData\Local\SquirrelTemp
2025-10-19 19:28 - 2025-02-01 14:27 - 000000000 ____D C:\Users\marti\AppData\Roaming\Pegasus
2025-10-19 19:28 - 2025-02-01 00:54 - 000000000 ___SD C:\Users\marti\AppData\Roaming\Microsoft\Credentials
2025-10-19 19:27 - 2025-02-01 14:08 - 000000000 ____D C:\Program Files\dotnet
2025-10-19 19:27 - 2025-02-01 01:17 - 000000000 ____D C:\ProgramData\Package Cache
2025-10-19 19:06 - 2025-02-01 14:19 - 000000000 ____D C:\Users\marti\AppData\Roaming\iniManager
2025-10-19 18:43 - 2025-08-17 00:25 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3429602048-725292175-2964145443-1001
2025-10-19 18:43 - 2025-08-17 00:25 - 000003574 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-3429602048-725292175-2964145443-1001
2025-10-19 18:43 - 2025-08-17 00:25 - 000003360 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3429602048-725292175-2964145443-1001
2025-10-19 18:43 - 2025-02-01 01:00 - 000002379 _____ C:\Users\marti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-10-16 21:34 - 2025-08-24 16:02 - 000000000 ____D C:\Users\marti\AppData\Local\NVIDIA
2025-10-16 21:32 - 2025-08-20 16:27 - 000000000 ____D C:\Program Files (x86)\SimAppPro
2025-10-16 19:15 - 2025-08-17 00:23 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-10-16 17:49 - 2025-02-01 01:22 - 004213112 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2025-10-16 17:49 - 2025-02-01 01:22 - 000878968 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2025-10-16 17:49 - 2025-02-01 01:22 - 000285048 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2025-10-16 17:49 - 2025-02-01 01:22 - 000244088 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2025-10-16 17:49 - 2025-02-01 01:22 - 000166264 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2025-10-16 17:49 - 2025-02-01 01:22 - 000153976 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe
2025-10-16 17:49 - 2025-02-01 01:22 - 000076144 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe
2025-10-15 11:15 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth
2025-10-15 10:58 - 2025-08-17 00:23 - 000297264 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2025-10-15 10:57 - 2024-04-01 18:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2025-10-15 10:57 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2025-10-15 10:57 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2025-10-15 10:57 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2025-10-15 10:57 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemResources
2025-10-15 10:57 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2025-10-15 10:57 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\setup
2025-10-15 10:57 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2025-10-15 10:57 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2025-10-15 10:57 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2025-10-15 10:57 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2025-10-15 10:57 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2025-10-15 10:25 - 2025-02-01 01:11 - 000000000 ____D C:\WINDOWS\system32\MRT
2025-10-15 10:24 - 2025-02-01 01:11 - 214534944 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2025-10-14 21:55 - 2025-02-02 01:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASRock Utility
2025-10-14 21:55 - 2025-02-02 01:38 - 000000000 ____D C:\Program Files (x86)\ASRock Utility
2025-10-14 13:58 - 2025-02-01 15:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FenixSim A320
2025-10-14 13:49 - 2025-02-01 14:30 - 000000000 ____D C:\Users\marti\OneDrive\Plocha\FS2024
2025-10-13 08:33 - 2025-08-17 00:25 - 000003716 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{67CC9047-C3AD-4539-B2A6-99C3DD181152}
2025-10-13 08:33 - 2025-08-17 00:25 - 000003590 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{99CA179B-4625-40F9-81A8-B9FBE1F9501A}
2025-10-12 20:04 - 2025-02-01 00:58 - 000000000 ____D C:\Users\marti\AppData\Local\Publishers
2025-10-12 19:55 - 2025-02-01 00:57 - 000000000 ____D C:\Users\marti\AppData\Local\Packages
2025-10-12 19:55 - 2025-02-01 00:55 - 000000000 ____D C:\Users\marti\AppData\Local\PlaceholderTileLogoFolder
2025-10-12 19:55 - 2025-02-01 00:49 - 000000000 ____D C:\ProgramData\Packages
2025-10-11 10:30 - 2025-02-01 01:50 - 000000000 ____D C:\Users\marti\AppData\Local\Steam
2025-10-10 15:56 - 2025-05-11 19:13 - 000000000 ____D C:\Users\marti\AppData\Local\iniManager
2025-10-10 15:56 - 2025-02-01 14:19 - 000000000 ____D C:\Users\marti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iniBuilds Ltd
2025-10-10 15:42 - 2025-08-30 00:58 - 000000000 ____D C:\ProgramData\Piriform
2025-10-10 15:42 - 2025-08-30 00:58 - 000000000 ____D C:\Program Files\CCleaner
2025-10-10 09:32 - 2025-02-01 15:13 - 000000000 ____D C:\ProgramData\Malwarebytes
2025-10-04 20:21 - 2025-08-16 23:48 - 000000000 ____D C:\Program Files\ENE
2025-10-03 21:14 - 2025-07-16 16:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BeyondATC
2025-10-03 21:14 - 2025-07-16 16:09 - 000000000 ____D C:\BeyondATC
2025-10-01 18:30 - 2024-04-01 18:31 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2025-10-01 18:30 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\UUS
2025-10-01 18:30 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2025-10-01 18:30 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2025-10-01 18:30 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2025-10-01 18:30 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2025-10-01 18:30 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\Provisioning
2025-10-01 18:30 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2025-10-01 18:30 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\USOPrivate
2025-10-01 18:30 - 2024-04-01 09:21 - 000000000 ____D C:\WINDOWS\servicing
2025-09-26 20:50 - 2025-04-13 11:11 - 000001466 _____ C:\Users\marti\OneDrive\Plocha\MSFS24.lnk
==================== Files in the root of some directories ========
2025-02-09 17:36 - 2025-02-09 17:40 - 000024576 _____ () C:\Users\marti\AppData\Roaming\EFB.db
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 21-10-2025
Ran by marti (23-10-2025 19:39:09)
Running from C:\Users\marti\Downloads
Microsoft Windows 11 Pro Version 25H2 26200.6901 (X64) (2025-08-16 22:26:01)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-3429602048-725292175-2964145443-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3429602048-725292175-2964145443-503 - Limited - Disabled)
Guest (S-1-5-21-3429602048-725292175-2964145443-501 - Limited - Disabled)
marti (S-1-5-21-3429602048-725292175-2964145443-1001 - Administrator - Enabled) => C:\Users\marti
WDAGUtilityAccount (S-1-5-21-3429602048-725292175-2964145443-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Aerosoft One 0.16.12 (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\6cfbc6f2-d82c-56dd-8cbb-177a5d4b5b90) (Version: 0.16.12 - Aerosoft GmbH)
APP Shop v2.0.0.6 (HKLM-x32\...\{3B9B2DDC-07B8-4F28-82D9-4092C4LE5B67}_is1) (Version: 2.0.0.6 - ASRock Inc.)
ASRock Restart to UEFI v1.0.15 (HKLM-x32\...\ASRock Restart to UEFI_is1) (Version: 1.0.15 - ASRock Inc.)
ASRRGBLED v2.0.190 (HKLM-x32\...\ASRock RGB LED_is1) (Version: 2.0.190 - ASRock Inc.)
A-Tuning v4.1.11 (HKLM-x32\...\A-Tuning_is1) (Version: 4.1.11 - ASRock Inc.)
Auto Driver Installer v2.0.0.6 (HKLM-x32\...\{B7C3650A-7201-4D71-BCE7-D6B2FCB96CE9}_is1) (Version: 2.0.0.6 - ASRock Inc.)
BeyondATC version 1.6.68.EA (HKLM-x32\...\{CF88F4D6-A60E-473D-A1D3-ABB5FE336EFA}_is1) (Version: 1.6.68.EA - Skirmish Mode Games, Inc.)
BleachBit (HKLM-x32\...\BleachBit) (Version: 5.0.0.2936 - BleachBit)
CCleaner 7 (HKLM\...\CCleaner 7) (Version: 7.0.1010.1196 - Piriform)
CPUID HWMonitor 1.60 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.60 - CPUID, Inc.)
Discord (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\Discord) (Version: 1.0.9212 - Discord Inc.)
Display Driver Uninstaller (HKLM-x32\...\Display Driver Uninstaller) (Version: 18.1.3.1 - Wagnardsoft)
Dynamic Application Loader Host Interface Service (HKLM\...\{12EF5653-F4C0-4B29-A4EE-E2C7A527E668}) (Version: 1.0.0.0 - Intel Corporation) Hidden
ENE Video Capture Box HAL (HKLM\...\{A096611D-BA11-4A1A-8D09-0A0462D7C8F2}) (Version: 1.0.5.15 - Ene Tech.) Hidden
ENE Video Capture Box HAL (HKLM-x32\...\{974259bf-3ed1-4cd6-9ed1-40c7f601a786}) (Version: 1.0.5.15 - Ene Tech.) Hidden
ENE_DRAM_RGB_AIO (HKLM\...\{93C7E355-7193-4F5F-938B-C519251D472B}) (Version: 1.0.13.0 - Ene Tech.) Hidden
ENE_DRAM_RGB_AIO (HKLM-x32\...\{b3481593-508d-41a9-b09f-4b10414b371d}) (Version: 1.0.13.0 - Ene Tech.) Hidden
ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
ENE_EHD_M2_HAL (HKLM-x32\...\{c1d017c2-8846-4000-9254-5689eccd462e}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
ENE_External_Device_HAL (HKLM\...\{2B8E611F-0B51-4FAC-87BB-AF50D82E7DDA}) (Version: 1.0.12.7 - ENE Tech) Hidden
ENE_External_Device_HAL (HKLM-x32\...\{a7b1cf47-d8f0-423d-9494-568195f1c864}) (Version: 1.0.12.7 - ENE Tech) Hidden
ENE_MousePad_HAL (HKLM\...\{9E97178A-ADB8-4778-BE60-7E28E2A72721}) (Version: 1.0.2.0 - ENE TECHNOLOGY INC.) Hidden
ENE_MousePad_HAL (HKLM-x32\...\{c2c794a4-7986-4c45-884d-d4ca43b88df9}) (Version: 1.0.2.0 - ENE TECHNOLOGY INC.) Hidden
ENE_QSI_Loki_HAL (HKLM\...\{BDE43F26-5917-44F8-B86A-F1D9A6B80B32}) (Version: 1.0.3.0 - ENE TECHNOLOGY INC.) Hidden
ENE_QSI_Loki_HAL (HKLM-x32\...\{205ef3a8-937b-43cb-90fc-2f58f71408d8}) (Version: 1.0.3.0 - ENE TECHNOLOGY INC.) Hidden
ENE_X_AIC_HAL (HKLM\...\{CF703694-01C6-4062-B797-84DB215662BC}) (Version: 1.0.6.3 - ENE TECHNOLOGY INC.) Hidden
ENE_X_AIC_HAL (HKLM-x32\...\{c662a481-d76a-4188-95d2-6eb4ffd55542}) (Version: 1.0.6.3 - ENE TECHNOLOGY INC.) Hidden
Fenix Installer (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\FenixApp) (Version: 1.0.243 - FenixSim Ltd.)
FenixSim A320 (HKLM\...\{49120c8f-c92c-47c4-ba07-e99057c45d3d}) (Version: 2.4.0.2481 - FenixSim Ltd.)
FlyByWire Installer 3.4.3 (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\80b9efbf-2017-5d38-8868-3afd67a5a47d) (Version: 3.4.3 - FlyByWire Simulations)
FSDreamTeam Universal Installer version 1.2.0 (HKLM-x32\...\FSDreamTeam Universal Installer_is1) (Version: 1.2.0 - VIRTUALI Sagl)
FSUIPC7 v7.5.4 (HKLM-x32\...\FSUIPC72024) (Version: v7.5.4 - John L. Dowson)
iFly Manager (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\iFly Manager) (Version: - )
iniManager (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\iniManager) (Version: 2.4.8 - iniBuilds Ltd.)
Intel(R) Chipset Device Software (HKLM\...\{2B96B7E3-FA08-4749-9D23-CDC64F1B835B}) (Version: 10.1.19600.8418 - Intel Corporation) Hidden
Intel(R) Chipset Device Software (HKLM-x32\...\{404581d0-19c1-47ba-bcd3-10178793c239}) (Version: 10.1.19600.8418 - Intel(R) Corporation)
Intel(R) Icls (HKLM\...\{39C50D87-BFD1-43DD-8A18-676086E328C9}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 2340.5.36.0 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{BA97A47F-9B59-4B07-BC82-FF3F6CE6E597}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Driver (HKLM\...\{C8EEBC98-5759-4B1D-9834-E5F897161475}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) ME WMI Provider (HKLM\...\{8105FECC-2670-4EA1-A98B-FA803A30AEEB}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Killer Performance Driver Suite UWD (HKLM\...\{FFC31014-7FD6-4720-8C5D-7B16E9E6F73E}) (Version: 3.1222.750 - Rivet Networks)
Malwarebytes version 5.4.2.217 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.4.2.217 - Malwarebytes)
Microsoft .NET Host - 6.0.36 (x64) (HKLM\...\{D6932D97-36F1-40B8-9CDC-CA8365B21000}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Host - 7.0.17 (x64) (HKLM\...\{089B0F2C-87D9-4470-B6E6-154DD6961C56}) (Version: 56.68.10360 - Microsoft Corporation) Hidden
Microsoft .NET Host - 8.0.12 (x64) (HKLM\...\{C4C6E39D-48AE-426C-960C-46ED3447DDEB}) (Version: 64.48.26165 - Microsoft Corporation) Hidden
Microsoft .NET Host - 9.0.10 (x64) (HKLM\...\{EB00D346-1FB5-46E0-89C0-93F056F5ACF4}) (Version: 72.40.40927 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.36 (x64) (HKLM\...\{A9E32B25-994B-4856-A12B-0EBED3050410}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 7.0.17 (x64) (HKLM\...\{6B4D3428-4800-446B-971F-62A7377F06F6}) (Version: 56.68.10360 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.12 (x64) (HKLM\...\{C9C872D5-3CA9-4E0E-AF90-1B85325F9243}) (Version: 64.48.26165 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 9.0.10 (x64) (HKLM\...\{FDC862D8-5CDD-4FC6-8E9A-873A689600BC}) (Version: 72.40.40927 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.36 (x64) (HKLM\...\{C912E33F-956A-4921-9F55-CC11AE8F09AF}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.36 (x64) (HKLM-x32\...\{9d3fc73f-1cf4-412c-a1c9-d2ad28ccbd62}) (Version: 6.0.36.34214 - Microsoft Corporation)
Microsoft .NET Runtime - 7.0.17 (x64) (HKLM\...\{A638EFAE-5229-46A8-9A18-D0FF9D9827D2}) (Version: 56.68.10360 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.12 (x64) (HKLM\...\{1E606649-7E56-452F-8AC4-495C70D1E341}) (Version: 64.48.26165 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 9.0.10 (x64) (HKLM\...\{05987870-6EDD-4352-ADEA-4A8694040F3E}) (Version: 72.40.40927 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 141.0.3537.92 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 141.0.3537.92 - Microsoft Corporation) Hidden
Microsoft Flight Simulator 2024 SDK 1.4.5 (Core) (HKLM\...\{0073E71D-9183-4D2D-88CD-B0F04A09DDE2}) (Version: 1.4.5 - Microsoft)
Microsoft Flight Simulator SDK 0.24.4 (Core) (HKLM\...\{3D42EBFC-1EBC-4468-9B77-388C2A3290FE}) (Version: 0.24.4 - Microsoft)
Microsoft GameInput (HKLM\...\{0812546C-471E-E343-DE9C-AECF3D0137E6}) (Version: 10.1.26100.6154 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\OneDriveSetup.exe) (Version: 25.184.0921.0004 - Microsoft Corporation)
Microsoft Teams Meeting Add-in for Microsoft Office (HKLM\...\{A7AB73A3-CB10-4AA5-9D38-6AEFFBDE4C91}) (Version: 1.25.18302 - Microsoft)
Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.44.35211 (HKLM-x32\...\{d8bbe9f9-7c5b-42c6-b715-9ee898a2e515}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.44.35211 (HKLM-x32\...\{0b5169e3-39da-4313-808e-1f9c0407f3bf}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.44.35211 (HKLM\...\{86AB2CC9-08BD-4643-B0F9-F82D006D72FF}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.44.35211 (HKLM\...\{43B0D101-A022-48F4-9D04-BA404CEB1D53}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.44.35211 (HKLM-x32\...\{C18FB403-1E88-43C8-AD8A-CED50F23DE8B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.44.35211 (HKLM-x32\...\{922480B5-CAEB-4B1B-AAA4-9716EFDCE26B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.36 (x64) (HKLM\...\{61D4736B-3325-4D4A-BD41-8BD206C6A86E}) (Version: 48.144.23186 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.36 (x64) (HKLM-x32\...\{0532b8f2-12d7-43de-95fc-7b87006758a8}) (Version: 6.0.36.34217 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 7.0.17 (x64) (HKLM\...\{93812F65-BAA9-42E0-AF19-F15F39A92E3C}) (Version: 56.68.10379 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 7.0.17 (x64) (HKLM-x32\...\{24a68a65-6ac6-4276-9d7d-2c3939d8474e}) (Version: 7.0.17.33416 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.12 (x64) (HKLM\...\{71CD19D6-C448-4B5D-9A38-018741753290}) (Version: 64.48.26178 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.12 (x64) (HKLM-x32\...\{aafaa0cc-b975-4ffa-ba33-8690e64683c4}) (Version: 8.0.12.34404 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 9.0.10 (x64) (HKLM\...\{8466C2EB-71A6-4529-A615-0E8FE0CCCBED}) (Version: 72.40.40921 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 9.0.10 (x64) (HKLM-x32\...\{877aacfd-984e-464a-ba89-9fc575eb79ed}) (Version: 9.0.10.35325 - Microsoft Corporation)
Navigraph Hub 1.2.23 (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\55f042a9-1285-5a7a-abcd-4e2044c5b51b) (Version: 1.2.23 - Navigraph)
Navigraph Simlink 1.1.39.1902 (HKLM\...\{E5431A0D-8735-4E89-9E41-D820334B2909}}_is1) (Version: 1.1.39.1902 - Navigraph)
NVIDIA FrameView SDK 1.5.11504.36206172 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.5.11504.36206172 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.4.5.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.4.5.0 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 581.57 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 581.57 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.23.1019 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.23.1019 - NVIDIA Corporation)
Orbx Central 4.5.7 (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\7cf15176-b7c3-5704-8319-ddca84b92c9a) (Version: 4.5.7 - Orbx Simulation Systems Pty Ltd)
Pilot Experience Sim Central V2 (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\pesim-central-v2-client) (Version: 2.1.8 - Pilot Experience Sim)
REX Atmos Core (HKLM\...\{525601AC-690F-4B81-A037-9F46BB5AA798}) (Version: 8.0.2025.0825 - REX Game Studios, LLC.)
SimAppPro 1.16.67 (HKLM-x32\...\2873a9d6-0e65-5078-b232-daee9dce2239) (Version: 1.16.67 - WINWING)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
T.Flight Hotas drivers (HKLM-x32\...\{E08E6F77-E66C-47FC-8565-0AA3389D48C8}) (Version: 4.TFHT.2025 - Thrustmaster)
Thrustmaster TARGET (HKLM-x32\...\{8036A569-CA02-4D33-A7E9-E9BC8A482E91}) (Version: 3.0.25.127 - Thrustmaster)
Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 159.0.11374 - Ubisoft)
vAMSYS Pegasus (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\vAMSYS-Pegasus) (Version: 2.0.3 - vAMSYS LTD)
Verbatim_SureFireGaming_Product (HKLM\...\{35CB65C6-A7E3-4EE7-AD40-738D70A72164}) (Version: 1.0.3.11 - Verbatim) Hidden
Verbatim_SureFireGaming_Product (HKLM-x32\...\{d601832a-0d94-46ce-9b19-78e8a5887313}) (Version: 1.0.3.11 - Verbatim) Hidden
WinRAR 7.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 7.01.0 - win.rar GmbH)
Packages:
=========
@{MicrosoftWindows.58683691.InpApp_1000.26100.6725.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.58683691.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-10-21] (Microsoft Windows)
@{MicrosoftWindows.58683691.InpApp_1000.26100.6899.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.58683691.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-10-21] (Microsoft Windows)
Balíček prostředí funkcí systému Windows -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-10-21] (Microsoft Windows)
Edit Docx PLUS -> C:\Program Files\WindowsApps\24091FileFormatApps.WordEditorBasic_2.1.12.0_x64__8t2vtv4rwtrk0 [2025-05-18] (File Format Apps)
HyperX NGENUITY -> C:\Program Files\WindowsApps\33C30B79.HyperXNGenuity_5.34.0.0_x64__0a78dr3hq0pvt [2025-10-12] (HP Inc.) [Startup Task]
Killer Intelligence Center -> C:\Program Files\WindowsApps\rivetnetworks.killercontrolcenter_3.1222.726.0_x64__rh07ty8m5nkag [2025-05-18] (Rivet Networks LLC) [Startup Task]
Malwarebytes Anti-Malware -> C:\Program Files\Malwarebytes\Anti-Malware [2025-10-23] ()
Microsoft Jenny (Natural) - English (United States) -> C:\Program Files\WindowsApps\MicrosoftWindows.Voice.en-US.Jenny.1_1.0.8.0_x64__cw5n1h2txyewy [2025-05-18] (Microsoft Windows)
Nahimic -> C:\Program Files\WindowsApps\A-Volute.Nahimic_1.10.7.0_x64__w2gh52qy24etm [2025-08-12] (A-Volute)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.968.0_x64__56jybvy8sckqj [2025-08-24] (NVIDIA Corp.)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.43.296.0_x64__dt26b99r8h8gj [2025-08-09] (Realtek Semiconductor Corp)
Speech Pack - English (United States) -> C:\Program Files\WindowsApps\MicrosoftWindows.Speech.en-US.1_1.0.24.0_x64__cw5n1h2txyewy [2025-08-16] (Microsoft Windows)
WinRAR -> C:\Program Files\WinRAR [2025-03-16] (win.rar GmbH)
XboxInsiderHub -> C:\Program Files\WindowsApps\Microsoft.XboxInsider_1.2508.26001.0_x64__8wekyb3d8bbwe [2025-09-17] (Microsoft Corporation)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3429602048-725292175-2964145443-1001_Classes\CLSID\{47E6DCAF-41F8-441C-BD0E-A50D5FE6C4D1}\localserver32 -> C:\Users\marti\AppData\Local\Microsoft\OneDrive\25.184.0921.0004_1\OneDrive.Sync.Service.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3429602048-725292175-2964145443-1001_Classes\CLSID\{80172dde-4e20-4df0-81a2-0a48553e80bb}\localserver32 -> C:\Users\marti\AppData\Local\NhNotifSys\nahimic\nahimicNotifSys.exe (A-Volute SAS -> A-Volute)
CustomCLSID: HKU\S-1-5-21-3429602048-725292175-2964145443-1001_Classes\CLSID\{917E8742-AA3B-7318-FA12-10485FB322A2}\localserver32 -> C:\Users\marti\AppData\Local\Microsoft\OneDrive\25.184.0921.0004_1\OneDrive.Sync.Service.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3429602048-725292175-2964145443-1001_Classes\CLSID\{EABAE40C-B27C-455A-B672-F234DD780948}\InprocServer32 -> C:\Users\marti\AppData\Local\Microsoft\TeamsMeetingAdd-in\1.25.18302\x64\Microsoft.Teams.MeetingAddin.DLL (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2025-10-23] (Malwarebytes Inc -> Malwarebytes)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_d471cab2f241c3c2\nvshext.dll [2025-10-10] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2025-10-23] (Malwarebytes Inc -> Malwarebytes)
==================== Codecs (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Drivers32: [MidisrvTransferComplete] => 0
==================== Shortcuts & WMI ========================
==================== Loaded Modules (Whitelisted) =============
2025-10-16 21:32 - 2025-10-16 13:41 - 000072704 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\MagicThread.dll
2025-10-16 21:32 - 2025-10-16 13:41 - 000023552 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTDefaultEvents.dll
2025-10-16 21:32 - 2025-10-16 13:41 - 000090112 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTEventsBinding.dll
2025-10-16 21:32 - 2025-10-16 13:41 - 000035840 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTFactoryTest.dll
2025-10-16 21:32 - 2025-10-16 13:41 - 000359936 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTHID.dll
2025-10-16 21:32 - 2025-10-16 13:41 - 000627200 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTHID_JSAPI.node
2025-10-16 21:32 - 2025-10-16 13:41 - 000136192 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTMapConfigLink.dll
2025-10-16 21:32 - 2025-10-16 13:41 - 000017920 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTMapLink.dll
2025-10-16 21:32 - 2025-10-16 13:41 - 000032256 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTMonitor.dll
2025-10-16 21:32 - 2025-10-16 13:41 - 000033792 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTVirtualDeviceConfig.dll
2025-10-23 16:35 - 2025-10-16 12:50 - 000130048 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\resources\app.asar.unpacked\node\WWTEffect_NODE\WWTEffect_NODE.node
2025-10-23 16:35 - 2025-10-16 12:50 - 000067072 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\resources\app.asar.unpacked\node\WWTGP_NODE\SimConnect.dll
2025-10-23 16:35 - 2025-10-16 12:50 - 000154624 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\resources\app.asar.unpacked\node\WWTGP_NODE\WWTDcsLinker.dll
2025-10-23 16:35 - 2025-10-16 12:50 - 000300544 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\resources\app.asar.unpacked\node\WWTGP_NODE\WWTGP_NODE.node
2025-10-23 16:35 - 2025-10-16 12:50 - 000119808 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\resources\app.asar.unpacked\node\WWTGP_NODE\WWTP3DSimConnect.dll
2025-10-23 16:35 - 2025-10-16 12:50 - 000141824 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\resources\app.asar.unpacked\node\WWTGP_NODE\WWTXPlaneLinker.dll
2025-10-23 16:35 - 2025-10-16 12:50 - 000094720 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\resources\app.asar.unpacked\node\WWTHID_NODE\MagicThread.dll
2025-10-23 16:35 - 2025-10-16 12:50 - 000483840 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\resources\app.asar.unpacked\node\WWTHID_NODE\WWTHID.dll
2025-10-23 16:35 - 2025-10-16 12:50 - 000206336 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\resources\app.asar.unpacked\node\WWTHID_NODE\WWTHID_NODE.node
2025-10-23 16:35 - 2025-10-16 12:50 - 000125440 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\resources\app.asar.unpacked\node\WWTOS_NODE\WWTOS_NODE.node
2025-10-23 15:58 - 2025-10-16 13:36 - 000067072 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3498jpnwod38ubvvL4gYmVnuK6Z\resources\app.asar.unpacked\node\WWTGP_NODE\SimConnect.dll
2025-10-23 15:58 - 2025-10-16 13:36 - 000151552 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3498jpnwod38ubvvL4gYmVnuK6Z\resources\app.asar.unpacked\node\WWTGP_NODE\WWTDcsLinker.dll
2025-10-23 15:58 - 2025-10-16 13:36 - 000184320 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3498jpnwod38ubvvL4gYmVnuK6Z\resources\app.asar.unpacked\node\WWTGP_NODE\WWTGP_NODE.node
2025-10-23 15:58 - 2025-10-16 13:36 - 000119808 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3498jpnwod38ubvvL4gYmVnuK6Z\resources\app.asar.unpacked\node\WWTGP_NODE\WWTP3DSimConnect.dll
2025-10-23 15:58 - 2025-10-16 13:36 - 000141824 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3498jpnwod38ubvvL4gYmVnuK6Z\resources\app.asar.unpacked\node\WWTGP_NODE\WWTXPlaneLinker.dll
2025-10-23 15:58 - 2025-10-16 13:36 - 000094720 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3498jpnwod38ubvvL4gYmVnuK6Z\resources\app.asar.unpacked\node\WWTHID_NODE\MagicThread.dll
2025-10-23 15:58 - 2025-10-16 13:36 - 000481280 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3498jpnwod38ubvvL4gYmVnuK6Z\resources\app.asar.unpacked\node\WWTHID_NODE\WWTHID.dll
2025-10-23 15:58 - 2025-10-16 13:36 - 000202752 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3498jpnwod38ubvvL4gYmVnuK6Z\resources\app.asar.unpacked\node\WWTHID_NODE\WWTHID_NODE.node
2025-10-23 15:58 - 2025-10-16 13:36 - 000125440 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3498jpnwod38ubvvL4gYmVnuK6Z\resources\app.asar.unpacked\node\WWTOS_NODE\WWTOS_NODE.node
2025-10-23 16:35 - 2025-10-23 16:35 - 001685504 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\fc0238af-37f3-4449-b3d0-489c9c022420.tmp.node
2025-09-23 19:15 - 2025-10-16 13:41 - 002163200 _____ () [File not signed] C:\Program Files (x86)\SimAppPro\ffmpeg.dll
2025-09-23 19:15 - 2025-10-16 13:41 - 000311808 _____ () [File not signed] C:\Program Files (x86)\SimAppPro\libegl.dll
2025-09-23 19:15 - 2025-10-16 13:41 - 006904320 _____ () [File not signed] C:\Program Files (x86)\SimAppPro\libglesv2.dll
2025-02-01 14:16 - 2025-10-01 08:04 - 002866176 _____ () [File not signed] C:\Users\marti\AppData\Local\Programs\navigraph-hub\ffmpeg.dll
2025-02-01 14:16 - 2025-10-01 08:04 - 000479232 _____ () [File not signed] C:\Users\marti\AppData\Local\Programs\navigraph-hub\libegl.dll
2025-02-01 14:16 - 2025-10-01 08:04 - 007672320 _____ () [File not signed] C:\Users\marti\AppData\Local\Programs\navigraph-hub\libglesv2.dll
2025-02-01 14:16 - 2025-10-01 08:04 - 005312000 _____ () [File not signed] C:\Users\marti\AppData\Local\Programs\navigraph-hub\vk_swiftshader.dll
2025-10-23 16:35 - 2025-10-16 12:50 - 002877440 _____ () [File not signed] C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\ffmpeg.dll
2025-10-23 16:35 - 2025-10-16 12:50 - 000478208 _____ () [File not signed] C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\libegl.dll
2025-10-23 16:35 - 2025-10-16 12:50 - 007808512 _____ () [File not signed] C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\libglesv2.dll
2025-10-23 16:35 - 2025-10-16 12:50 - 005238784 _____ () [File not signed] C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\vk_swiftshader.dll
2025-10-23 15:58 - 2025-10-16 13:36 - 002877440 _____ () [File not signed] C:\Users\marti\AppData\Local\Temp\3498jpnwod38ubvvL4gYmVnuK6Z\ffmpeg.dll
2025-10-23 15:58 - 2025-10-16 13:36 - 000478208 _____ () [File not signed] C:\Users\marti\AppData\Local\Temp\3498jpnwod38ubvvL4gYmVnuK6Z\libegl.dll
2025-10-23 15:58 - 2025-10-16 13:36 - 007808512 _____ () [File not signed] C:\Users\marti\AppData\Local\Temp\3498jpnwod38ubvvL4gYmVnuK6Z\libglesv2.dll
2025-10-23 15:58 - 2025-10-16 13:36 - 005238784 _____ () [File not signed] C:\Users\marti\AppData\Local\Temp\3498jpnwod38ubvvL4gYmVnuK6Z\vk_swiftshader.dll
2025-10-23 15:58 - 2025-10-23 15:58 - 000012288 _____ () [File not signed] C:\Users\marti\AppData\Local\Temp\nsb33BE.tmp\System.dll
2025-10-23 16:35 - 2025-10-23 16:35 - 000012288 _____ () [File not signed] C:\Users\marti\AppData\Local\Temp\nsfC3D8.tmp\System.dll
2025-10-16 21:32 - 2025-10-16 13:41 - 006018560 _____ (FreeImage) [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\FreeImage.dll
2025-05-25 16:55 - 2020-04-01 06:46 - 000037376 _____ (Guillemot Corporation) [File not signed] C:\Program Files (x86)\Thrustmaster\TARGET\cint.dll
2025-05-25 16:55 - 2016-04-14 04:46 - 001036800 _____ (Guillemot Corporation) [File not signed] C:\Program Files (x86)\Thrustmaster\TARGET\TmCommon.dll
2025-05-25 16:55 - 2024-09-09 21:09 - 000192000 _____ (Guillemot Corporation) [File not signed] C:\Program Files (x86)\Thrustmaster\TARGET\TmHidControl.dll
2025-10-23 15:58 - 2025-10-23 15:58 - 000102400 _____ (Muldersoft.com Free Software Division) [File not signed] C:\Users\marti\AppData\Local\Temp\nsb33BE.tmp\StdUtils.dll
2025-10-23 16:35 - 2025-10-23 16:35 - 000102400 _____ (Muldersoft.com Free Software Division) [File not signed] C:\Users\marti\AppData\Local\Temp\nsfC3D8.tmp\StdUtils.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 002293248 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files\Navigraph\Simlink\LIBEAY32.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 000386560 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files\Navigraph\Simlink\ssleay32.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 000047616 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\bearer\qgenericbearer.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 000031744 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\imageformats\qgif.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 000040960 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\imageformats\qicns.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 000032256 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\imageformats\qico.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 000397312 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\imageformats\qjpeg.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 000025600 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\imageformats\qsvg.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 000025088 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\imageformats\qtga.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 000374272 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\imageformats\qtiff.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 000023552 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\imageformats\qwbmp.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 000491520 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\imageformats\qwebp.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 001453568 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\platforms\qwindows.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 006130176 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\Qt5Core.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 006470656 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\Qt5Gui.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 001314816 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\Qt5Network.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 000332288 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\Qt5Svg.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 005580800 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\Qt5Widgets.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 000137216 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\styles\qwindowsvistastyle.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2025-02-01 00:42 - 2025-02-01 00:42 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
==================== Network ===========================
(Currently there is no automatic fix for this section.)
DNS Servers: 192.168.1.1
Windows Firewall is enabled.
Network Binding:
=============
Ethernet: Realtek Gaming 2.5GbE Family Controller -> rt640x64.sys
Wi-Fi: Killer(R) Wi-Fi 6E AX1675x 160MHz Wireless Network Adapter (210NGW) -> Netwtw14.sys
Síťové připojení Bluetooth: Bluetooth Device (Personal Area Network) -> bthpan.sys
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3429602048-725292175-2964145443-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\marti\AppData\Local\Packages\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\LocalCache\Microsoft\IrisService\18383155024926870698\134055370672896341.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Program Files (x86)\Addon Manager
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Program Files\FenixSim A320
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Program Files\FenixSim A320\Fenix.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Program Files\FenixSim A320\deps\FenixBootstrapper.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Program Files\FenixSim A320\deps\FenixCDU.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Program Files\FenixSim A320\deps\FenixDisplay.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Program Files\FenixSim A320\deps\FenixSystem.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Program Files\FenixSim A320\deps\GqlGateway\Fenix.GqlGateway.exe
==================== MSCONFIG/TASK MANAGER disabled items ==
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{4DB20927-AB65-476B-86A9-FAA3185BA230}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Stronghold Crusader Definitive Edition\Stronghold Crusader Definitive Edition.exe () [File not signed]
FirewallRules: [{6DEA4A50-4212-4C94-A751-475E55D6B3AF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Stronghold Crusader Definitive Edition\Stronghold Crusader Definitive Edition.exe () [File not signed]
FirewallRules: [UDP Query User{1FE2408B-F103-421E-BC7C-DD30C97CED6F}C:\beyondatc\beyondatc.exe] => (Allow) C:\beyondatc\beyondatc.exe (Skirmish Mode Games Inc. -> )
FirewallRules: [TCP Query User{9140CB26-DF34-45D5-9016-378CE4090318}C:\beyondatc\beyondatc.exe] => (Allow) C:\beyondatc\beyondatc.exe (Skirmish Mode Games Inc. -> )
FirewallRules: [UDP Query User{85C1CEF4-E338-432C-A2B4-D4EFA3C6D5D4}C:\users\marti\appdata\roaming\microsoft flight simulator 2024\packages\community\fsltl-traffic-injector\fsltl-trafficinjector.exe] => (Allow) C:\users\marti\appdata\roaming\microsoft flight simulator 2024\packages\community\fsltl-traffic-injector\fsltl-trafficinjector.exe (Node.js) [File not signed]
FirewallRules: [TCP Query User{D2C14152-CC5F-41D7-8E71-BF18B4382A16}C:\users\marti\appdata\roaming\microsoft flight simulator 2024\packages\community\fsltl-traffic-injector\fsltl-trafficinjector.exe] => (Allow) C:\users\marti\appdata\roaming\microsoft flight simulator 2024\packages\community\fsltl-traffic-injector\fsltl-trafficinjector.exe (Node.js) [File not signed]
FirewallRules: [UDP Query User{03823B6E-D220-4505-880B-A2A419C55560}C:\program files\fenixsim a320\deps\gqlgateway\fenix.gqlgateway.exe] => (Allow) C:\program files\fenixsim a320\deps\gqlgateway\fenix.gqlgateway.exe (FenixSim Limited -> FenixSim Ltd.)
FirewallRules: [TCP Query User{4A59D9D8-093E-4293-BB1B-2B9AC0DFEA50}C:\program files\fenixsim a320\deps\gqlgateway\fenix.gqlgateway.exe] => (Allow) C:\program files\fenixsim a320\deps\gqlgateway\fenix.gqlgateway.exe (FenixSim Limited -> FenixSim Ltd.)
FirewallRules: [UDP Query User{C627BBA9-8E18-477B-8F94-B33C89EE7DA4}C:\program files\fenixsim a320\deps\fenixsystem.exe] => (Allow) C:\program files\fenixsim a320\deps\fenixsystem.exe (FenixSim Limited -> FenixSim Ltd.)
FirewallRules: [TCP Query User{44FC857C-1A87-4A94-B2D1-B6825823E407}C:\program files\fenixsim a320\deps\fenixsystem.exe] => (Allow) C:\program files\fenixsim a320\deps\fenixsystem.exe (FenixSim Limited -> FenixSim Ltd.)
FirewallRules: [{3DB3E66F-10AF-4AEB-A46F-5EEE913A285C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\KingdomComeDeliverance2\Bin\Win64MasterMasterSteamPGO\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [{81AF212D-8C22-4885-9625-4F4CF2417AFE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\KingdomComeDeliverance2\Bin\Win64MasterMasterSteamPGO\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [{4F6E9194-A501-49C4-A3A1-505147589759}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{B4FBB25F-296F-4931-B1FC-A33FB3A3FA0A}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{FE7793A9-39CF-43E9-888A-A3D0F00B5BFE}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{D6C9F1FF-425A-44A9-8C31-9B6D935ABAE3}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [TCP Query User{113B68B2-EDC0-4914-A02C-2012AC8F7740}C:\program files (x86)\simapppro\simapppro.exe] => (Allow) C:\program files (x86)\simapppro\simapppro.exe (WINWING) [File not signed]
FirewallRules: [UDP Query User{884759EC-8ED9-4C6D-9937-6AB86754CA26}C:\program files (x86)\simapppro\simapppro.exe] => (Allow) C:\program files (x86)\simapppro\simapppro.exe (WINWING) [File not signed]
FirewallRules: [{E12F0322-7D7B-4121-9D46-D6C660DDC024}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25212.2101.3846.4105_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{51B8DDEF-2C2B-48B2-AC35-6441862DABBB}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25212.2101.3846.4105_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{516EE6A9-E34B-47D2-BCD2-3927212DB7C8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\MSFS2024\FlightSimulator2024.exe (Asobo Studio) [File not signed]
FirewallRules: [{928C0910-E3C4-46BC-82C4-D8A31F35AB0F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\MSFS2024\FlightSimulator2024.exe (Asobo Studio) [File not signed]
FirewallRules: [{242DEE40-B6BC-4193-A5E6-53E5DEE7A41C}] => (Allow) C:\Program Files\WindowsApps\MSTeams_25255.703.3978.7153_x64__8wekyb3d8bbwe\ms-teams_modulehost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{48E4B765-87F2-4979-8565-0AA6ECFF66AE}] => (Allow) C:\Program Files\WindowsApps\MSTeams_25255.703.3978.7153_x64__8wekyb3d8bbwe\ms-teams_modulehost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{45734181-4050-4318-B6FC-84BEC63EC8E9}] => (Allow) C:\Program Files\WindowsApps\MSTeams_25255.703.3978.7153_x64__8wekyb3d8bbwe\ms-teams_modulehost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{5C1F3A68-7833-40EB-A715-3724F4F9BC4D}] => (Allow) C:\Program Files\WindowsApps\MSTeams_25255.703.3978.7153_x64__8wekyb3d8bbwe\ms-teams_modulehost.exe (Microsoft Corporation -> Microsoft Corporation)
==================== Restore Points =========================
23-10-2025 16:17:20 Windows Update
23-10-2025 16:17:21 Windows Update
23-10-2025 16:17:22 Windows Update
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (10/23/2025 04:58:55 PM) (Source: Application Error) (EventID: 1000) (User: MARTIN)
Description: Název chybující aplikace: couatl64_MSFS2024.exe, verze: 5.0.0.6020, časové razítko: 0x68a72d4d
Název chybujícího modulu: clr.dll, verze: 4.8.9221.0, časové razítko: 0x68531fc6
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000000657c
ID chybujícího procesu: 0x3f68
Čas spuštění chybující aplikace: 0x1dc442d689920c9
Cesta k chybující aplikaci: C:\Program Files (x86)\Addon Manager\couatl64\couatl64_MSFS2024.exe
Cesta k chybujícímu modulu: C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll
ID sestavy: bd235fdc-8ff3-48c4-8281-1b55a6039010
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:
Error: (10/23/2025 04:58:54 PM) (Source: .NET Runtime) (EventID: 1023) (User: )
Description: Aplikace: couatl64_MSFS2024.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu vnitřní chyby v modulu .NET Runtime na IP adrese 00007FF954C1657C (00007FF954C10000) s ukončovacím kódem 80131506.
Error: (10/23/2025 04:57:19 PM) (Source: Application Error) (EventID: 1000) (User: MARTIN)
Description: Název chybující aplikace: couatl64_MSFS2024.exe, verze: 5.0.0.6020, časové razítko: 0x68a72d4d
Název chybujícího modulu: clr.dll, verze: 4.8.9221.0, časové razítko: 0x68531fc6
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000000657c
ID chybujícího procesu: 0x1fa8
Čas spuštění chybující aplikace: 0x1dc442884631d7e
Cesta k chybující aplikaci: C:\Program Files (x86)\Addon Manager\couatl64\couatl64_MSFS2024.exe
Cesta k chybujícímu modulu: C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll
ID sestavy: 631f05b0-5b61-4f44-8056-e4f7e3bb33da
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:
Error: (10/23/2025 04:57:18 PM) (Source: .NET Runtime) (EventID: 1023) (User: )
Description: Aplikace: couatl64_MSFS2024.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu vnitřní chyby v modulu .NET Runtime na IP adrese 00007FF954C1657C (00007FF954C10000) s ukončovacím kódem 80131506.
Error: (10/22/2025 07:21:48 PM) (Source: Application Error) (EventID: 1000) (User: MARTIN)
Description: Název chybující aplikace: couatl64_MSFS2024.exe, verze: 5.0.0.6020, časové razítko: 0x68a72d4d
Název chybujícího modulu: clr.dll, verze: 4.8.9221.0, časové razítko: 0x68531fc6
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000000657c
ID chybujícího procesu: 0x4460
Čas spuštění chybující aplikace: 0x1dc43784c912a3e
Cesta k chybující aplikaci: C:\Program Files (x86)\Addon Manager\couatl64\couatl64_MSFS2024.exe
Cesta k chybujícímu modulu: C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll
ID sestavy: 26fb93d4-d7bb-4f1c-a910-5887123fd6c9
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:
Error: (10/22/2025 07:21:48 PM) (Source: .NET Runtime) (EventID: 1023) (User: )
Description: Aplikace: couatl64_MSFS2024.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu vnitřní chyby v modulu .NET Runtime na IP adrese 00007FFFB471657C (00007FFFB4710000) s ukončovacím kódem 80131506.
Error: (10/22/2025 07:20:48 PM) (Source: Application Error) (EventID: 1000) (User: MARTIN)
Description: Název chybující aplikace: couatl64_MSFS2024.exe, verze: 5.0.0.6020, časové razítko: 0x68a72d4d
Název chybujícího modulu: clr.dll, verze: 4.8.9221.0, časové razítko: 0x68531fc6
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000000657c
ID chybujícího procesu: 0x76dc
Čas spuštění chybující aplikace: 0x1dc437828c711af
Cesta k chybující aplikaci: C:\Program Files (x86)\Addon Manager\couatl64\couatl64_MSFS2024.exe
Cesta k chybujícímu modulu: C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll
ID sestavy: 784e5660-3ee9-4fbc-8ecc-93c2dfb18fe2
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:
Error: (10/22/2025 07:20:48 PM) (Source: .NET Runtime) (EventID: 1023) (User: )
Description: Aplikace: couatl64_MSFS2024.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu vnitřní chyby v modulu .NET Runtime na IP adrese 00007FFFB471657C (00007FFFB4710000) s ukončovacím kódem 80131506.
System errors:
=============
Error: (10/23/2025 04:01:35 PM) (Source: DCOM) (EventID: 10029) (User: MARTIN)
Description: U aktivace identifikátoru CLSID Windows.Media.Capture.Internal.AppCaptureShell vypršel časový limit během čekání na zastavení služby BcastDVRUserService_6f60e.
Error: (10/23/2025 03:57:34 PM) (Source: DCOM) (EventID: 10029) (User: MARTIN)
Description: U aktivace identifikátoru CLSID Windows.Media.Capture.AppCaptureManager vypršel časový limit během čekání na zastavení služby BcastDVRUserService_6f60e.
Error: (10/22/2025 09:14:59 PM) (Source: DCOM) (EventID: 10010) (User: MARTIN)
Description: Server {6FA05A24-B1DF-4155-909E-7B424F2D2BB5} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/22/2025 09:14:59 PM) (Source: DCOM) (EventID: 10010) (User: MARTIN)
Description: Server {3E11DF0F-42EB-4747-9A35-802D98B5BCF0} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/22/2025 09:13:23 PM) (Source: DCOM) (EventID: 10029) (User: MARTIN)
Description: U aktivace identifikátoru CLSID Windows.Media.Capture.Internal.AppCaptureShell vypršel časový limit během čekání na zastavení služby BcastDVRUserService_6f60e.
Error: (10/22/2025 09:09:22 PM) (Source: DCOM) (EventID: 10029) (User: MARTIN)
Description: U aktivace identifikátoru CLSID Windows.Media.Capture.AppCaptureManager vypršel časový limit během čekání na zastavení služby BcastDVRUserService_6f60e.
Error: (10/22/2025 08:03:50 PM) (Source: DCOM) (EventID: 10010) (User: MARTIN)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/22/2025 08:03:46 PM) (Source: DCOM) (EventID: 10010) (User: MARTIN)
Description: Server {3E11DF0F-42EB-4747-9A35-802D98B5BCF0} se v daném časovém limitu neregistroval u služby DCOM.
Windows Defender:
================
Date: 2025-10-23 19:00:35
Description:
Antivirová ochrana v programu Microsoft Defender ѕсдπ ђдŝ ьέεη ŝţоφрєð вĕƒőřë ċõmрĺεţíθñ.%ή %ŧŠçāʼn ĬÐ:%ъ{5A55C83B-40ED-4B1B-A155-07C9593EFB81}%ⁿ %ťŚ¢αʼn Τÿр℮:%вAntimalwarový program%ŋ %ţŠсаņ Рäřдмėŧēřş:%вRychlé prohledávání%ń %τŪšεг:%ьNT AUTHORITY\SYSTEM%ʼn %ťŚŧòρ Řêâšóп:%ъŜ¢ĥзδůŀėď ѕčаň ẃªś ѕκϊφρзđ ъε¢άύśé тнė ļǻşт šџ¢čзššƒцľ śĉåή ώãŝ щīŧнĩň τћė ľάŝŧ 7 đªγś
Date: 2025-10-20 19:33:08
Description:
Antivirová ochrana v programu Microsoft Defender ѕсдπ ђдŝ ьέεη ŝţоφрєð вĕƒőřë ċõmрĺεţíθñ.%ή %ŧŠçāʼn ĬÐ:%ъ{4B62860C-3498-49DC-83AB-126B71C2B793}%ⁿ %ťŚ¢αʼn Τÿр℮:%вAntimalwarový program%ŋ %ţŠсаņ Рäřдмėŧēřş:%вRychlé prohledávání%ń %τŪšεг:%ьNT AUTHORITY\SYSTEM%ʼn %ťŚŧòρ Řêâšóп:%ъŠĉђэδџŀêđ śĉąŋ щªѕ ŝќïрρęđ ъęćâџŝĕ ţħĕ ℓάšť ѕµ¢¢ëšśƒùļ ѕсǻπ ẃāš ẅīтђĭń τћз ļàśť 7 δαýŝ
Date: 2025-10-16 19:14:06
Description:
Antivirová ochrana v programu Microsoft Defender ѕсдπ ђдŝ ьέεη ŝţоφрєð вĕƒőřë ċõmрĺεţíθñ.%ή %ŧŠçāʼn ĬÐ:%ъ{CD123A72-B046-4787-8F1C-13F1454CABB3}%ⁿ %ťŚ¢αʼn Τÿр℮:%вAntimalwarový program%ŋ %ţŠсаņ Рäřдмėŧēřş:%вRychlé prohledávání%ń %τŪšεг:%ьNT AUTHORITY\SYSTEM%ʼn %ťŚŧòρ Řêâšóп:%ъŠĉђэδџŀêđ śĉąŋ щªѕ ŝќïрρęđ ъęćâџŝĕ ţħĕ ℓάšť ѕµ¢¢ëšśƒùļ ѕсǻπ ẃāš ẅīтђĭń τћз ļàśť 7 δαýŝ
Date: 2025-10-14 19:58:57
Description:
Antivirová ochrana v programu Microsoft Defender ѕсдπ ђдŝ ьέεη ŝţоφрєð вĕƒőřë ċõmрĺεţíθñ.%ή %ŧŠçāʼn ĬÐ:%ъ{D4CCB7E5-7064-40E5-9472-87A5CB570608}%ⁿ %ťŚ¢αʼn Τÿр℮:%вAntimalwarový program%ŋ %ţŠсаņ Рäřдмėŧēřş:%вRychlé prohledávání%ń %τŪšεг:%ьNT AUTHORITY\SYSTEM%ʼn %ťŚŧòρ Řêâšóп:%ъЯΡĊ ¢óņпęçτϊõп гůńđоẁπ
Date: 2025-10-14 12:14:11
Description:
Antivirová ochrana v programu Microsoft Defender ѕсдπ ђдŝ ьέεη ŝţоφрєð вĕƒőřë ċõmрĺεţíθñ.%ή %ŧŠçāʼn ĬÐ:%ъ{F2E6CB8F-9E49-4A3C-8937-90D51F401BAD}%ⁿ %ťŚ¢αʼn Τÿр℮:%вAntimalwarový program%ŋ %ţŠсаņ Рäřдмėŧēřş:%вRychlé prohledávání%ń %τŪšεг:%ьNT AUTHORITY\SYSTEM%ʼn %ťŚŧòρ Řêâšóп:%ъŠĉђэδџŀêđ śĉąŋ щªѕ ŝќïрρęđ ъęćâџŝĕ ţħĕ ℓάšť ѕµ¢¢ëšśƒùļ ѕсǻπ ẃāš ẅīтђĭń τћз ļàśť 7 δαýŝ
Event[0]
Date: 2025-08-24 15:53:15
Description:
Funkce Ochrana v reálném čase u prohledávání Antivirová ochrana v programu Microsoft Defender zjistila chybu a došlo k jejímu selhání.
Funkce: Při přístupu
Kód chyby: 0x8007043c
Popis chyby: Tuto službu nelze spustit v nouzovém režimu.
Důvod: Antimalwarové bezpečnostní informace přestaly z neznámých důvodů fungovat. V některých případech se tento problém dá vyřešit restartováním služby.
Date: 2025-08-18 19:10:53
Description:
Funkce Ochrana v reálném čase u prohledávání Antivirová ochrana v programu Microsoft Defender zjistila chybu a došlo k jejímu selhání.
Funkce: Při přístupu
Kód chyby: 0x8007043c
Popis chyby: Tuto službu nelze spustit v nouzovém režimu.
Důvod: Antimalwarové bezpečnostní informace přestaly z neznámých důvodů fungovat. V některých případech se tento problém dá vyřešit restartováním služby.
Date: 2025-08-18 19:09:38
Description:
Funkce Ochrana v reálném čase u prohledávání Antivirová ochrana v programu Microsoft Defender zjistila chybu a došlo k jejímu selhání.
Funkce: Při přístupu
Kód chyby: 0x8007043c
Popis chyby: Tuto službu nelze spustit v nouzovém režimu.
Důvod: Antimalwarové bezpečnostní informace přestaly z neznámých důvodů fungovat. V některých případech se tento problém dá vyřešit restartováním služby.
CodeIntegrity:
===============
Date: 2025-10-21 18:28:33
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Microsoft\EdgeWebView\Application\141.0.3537.85\msedgewebview2.exe) attempted to load \Device\HarddiskVolume3\ProgramData\A-Volute\A-Volute.Nahimic\Modules\Scheduled\x64\AudioDevProps2.dll that did not meet the Microsoft signing level requirements.
Date: 2025-10-16 18:21:37
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Microsoft\EdgeWebView\Application\141.0.3537.71\msedgewebview2.exe) attempted to load \Device\HarddiskVolume3\ProgramData\A-Volute\A-Volute.Nahimic\Modules\Scheduled\x64\AudioDevProps2.dll that did not meet the Microsoft signing level requirements.
Date: 2025-10-10 09:22:15
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Microsoft\EdgeWebView\Application\141.0.3537.57\msedgewebview2.exe) attempted to load \Device\HarddiskVolume3\ProgramData\A-Volute\A-Volute.Nahimic\Modules\Scheduled\x64\AudioDevProps2.dll that did not meet the Microsoft signing level requirements.
Date: 2025-10-07 19:32:43
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Microsoft\EdgeWebView\Application\140.0.3485.94\msedgewebview2.exe) attempted to load \Device\HarddiskVolume3\ProgramData\A-Volute\A-Volute.Nahimic\Modules\Scheduled\x64\AudioDevProps2.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends International, LLC. 21.02 10/08/2025
Motherboard: ASRock Z790 Steel Legend WiFi
Processor: Intel(R) Core(TM) i7-14700K
Percentage of memory in use: 19%
Total physical RAM: 65295.25 MB
Available physical RAM: 52341.5 MB
Total Virtual: 69391.25 MB
Available Virtual: 51689.31 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:1862.12 GB) (Free:1190.27 GB) (Model: WD_BLACK SN770 2TB) NTFS
\\?\Volume{15f8162a-6101-4482-a6d7-c7d0ee34c194}\ () (Fixed) (Total:0.78 GB) (Free:0.1 GB) NTFS
\\?\Volume{a3314b53-6b5b-465c-97cc-70ba011d202f}\ () (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Protective MBR) (Size: 1863 GB) (Disk ID: 00000000)
Partition: GPT.
==================== End of Addition.txt =======================
Ran by marti (administrator) on MARTIN (ASRock Z790 Steel Legend WiFi) (23-10-2025 19:37:49)
Running from C:\Users\marti\Downloads\FRST64.exe
Loaded Profiles: marti
Platform: Microsoft Windows 11 Pro Version 25H2 26200.6901 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(A-Volute SAS -> A-Volute) C:\Users\marti\AppData\Local\NhNotifSys\nahimic\nahimicNotifSys.exe
(C:\Program Files (x86)\ASRock Utility\A-Tuning\Bin\ATuning.exe ->) (ASROCK INC. -> ASRock Incorporation) C:\Program Files (x86)\ASRock Utility\A-Tuning\Bin\AsrSvc.exe
(C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\SimLogic.exe ->) (WINWING) [File not signed] C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\SimLogic.exe <3>
(C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTStream.exe ->) (WINWING) [File not signed] C:\Users\marti\AppData\Local\Temp\3498jpnwod38ubvvL4gYmVnuK6Z\WWTStream.exe <3>
(C:\Program Files (x86)\SimAppPro\SimAppPro.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SysWOW64\cmd.exe <2>
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <7>
(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\Malwarebytes.exe
(C:\Windows\SysWOW64\cmd.exe ->) (WINWING) [File not signed] [File is in use] C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\SimLogic.exe
(C:\Windows\SysWOW64\cmd.exe ->) (WINWING) [File not signed] [File is in use] C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTStream.exe
(Discord Inc. -> Discord Inc.) C:\Users\marti\AppData\Local\Discord\app-1.0.9212\Discord.exe <6>
(drivers\RivetNetworks\Killer\KAPSService.exe ->) (Intel Corporation -> Intel® Corporation) C:\Windows\System32\drivers\RivetNetworks\Killer\KAPS.exe
(drivers\RivetNetworks\Killer\KNDBWMService.exe ->) (Intel Corporation -> Intel® Corporation) C:\Windows\System32\drivers\RivetNetworks\Killer\KNDBWM.exe
(explorer.exe ->) (Navigraph Kommanditbolag -> Navigraph) C:\Program Files\Navigraph\Simlink\NavigraphSimlink.exe
(explorer.exe ->) (Navigraph Kommanditbolag -> Navigraph) C:\Users\marti\AppData\Local\Programs\navigraph-hub\Navigraph Hub.exe <4>
(explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <13>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\MSTeams_25255.703.3978.7153_x64__8wekyb3d8bbwe\ms-teams.exe
(services.exe ->) (A-Volute SAS -> Nahimic) C:\Windows\System32\NahimicService.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe
(services.exe ->) (Guillemot Corporation S.A. -> Guillemot Corporation) C:\Program Files (x86)\Thrustmaster\TARGET\TmService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe
(services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Windows\SysWOW64\XtuService.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Windows\System32\drivers\RivetNetworks\Killer\KillerAnalyticsService.exe
(services.exe ->) (Intel Corporation -> Intel) C:\Windows\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe
(services.exe ->) (Intel Corporation -> Intel® Corporation) C:\Windows\System32\drivers\RivetNetworks\Killer\KAPSService.exe
(services.exe ->) (Intel Corporation -> Intel® Corporation) C:\Windows\System32\drivers\RivetNetworks\Killer\KNDBWMService.exe
(services.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster®) C:\Program Files\Thrustmaster\TM Flight Series\drivers\amd64\tmHInstall.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\NisSrv.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_d471cab2f241c3c2\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_09eece2033f5a691\RtkAudUService64.exe <2>
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe
(sihost.exe ->) (CACCD12F-7BFA-4346-AD14-30B4E275348F -> Hewlett-Packard Development Company, L.P.) C:\Program Files\WindowsApps\33C30B79.HyperXNGenuity_5.34.0.0_x64__0a78dr3hq0pvt\Assets\Native\NGenuity2Helper.exe
(sihost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2510.1001.55.0_x64__8wekyb3d8bbwe\XboxPcTray.exe
(svchost.exe ->) (ASROCK INC. -> ) C:\Program Files (x86)\ASRock Utility\APP Shop\AsrAPPShop.exe
(svchost.exe ->) (ASROCK INC. -> ASRock Incorporation) C:\Program Files (x86)\ASRock Utility\A-Tuning\Bin\ATuning.exe
(svchost.exe ->) (A-Volute SAS -> Nahimic) C:\Windows\System32\NahimicSvc64.exe
(svchost.exe ->) (A-Volute SAS -> Nahimic) C:\Windows\SysWOW64\NahimicSvc32.exe
(svchost.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.Edge.GameAssist_1.0.3590.0_x64__8wekyb3d8bbwe\EdgeGameAssist.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2510.1001.55.0_x64__8wekyb3d8bbwe\XboxPcApp.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2510.1001.55.0_x64__8wekyb3d8bbwe\XboxPcAppFT.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.151.0.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\marti\AppData\Local\Microsoft\OneDrive\25.184.0921.0004_1\FileCoAuth.exe
(svchost.exe ->) (Microsoft Windows -> ) C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\AppActions.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\DataExchangeHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(WINWING) [File not signed] C:\Program Files (x86)\SimAppPro\SimAppPro.exe <4>
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_09eece2033f5a691\RtkAudUService64.exe [1862040 2024-08-02] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [SimAppPro] => C:\Program Files (x86)\SimAppPro\SimAppPro.exe [90632704 2025-10-16] (WINWING) [File not signed]
HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\Run: [MicrosoftEdgeAutoLaunch_4A886EB596DDE810C696BFE47BAAC943] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4265032 2025-10-20] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4699288 2025-10-03] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\Run: [Navigraph Hub] => C:\Users\marti\AppData\Local\Programs\navigraph-hub\Navigraph Hub.exe [176372304 2025-10-01] (Navigraph Kommanditbolag -> Navigraph)
HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\Run: [Navigraph Simlink] => C:\Program Files\Navigraph\Simlink\NavigraphSimlink.exe [1789152 2025-02-19] (Navigraph Kommanditbolag -> Navigraph)
HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\Run: [SimAppPro] => [X]
HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\Run: [Discord] => C:\Users\marti\AppData\Local\Discord\Update.exe [1596344 2025-10-14] (Discord Inc. -> Discord Inc.)
HKLM\...\Print\Monitors\HP D811 Status Monitor: C:\WINDOWS\system32\hpinkstsD811LM.dll [393352 2017-04-05] (Hewlett Packard -> HP Inc.)
Startup: C:\Users\marti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\SimAppPro – zástupce.lnk [2025-08-26]
ShortcutTarget: SimAppPro – zástupce.lnk -> C:\Program Files (x86)\SimAppPro\SimAppPro.exe (WINWING) [File not signed]
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {18EAF45D-9259-47DF-95E6-E60857E02EE7} - System32\Tasks\AsrAPPShop => C:\Program Files (x86)\ASRock Utility\APP Shop\AsrAPPShop.exe [6745544 2024-07-30] (ASROCK INC. -> )
Task: {C4F1C95B-CF3A-43BA-9897-714973B3C1A2} - System32\Tasks\ATuning => C:\Program Files (x86)\ASRock Utility\A-Tuning\Bin\ATuning.exe [10455016 2024-08-09] (ASROCK INC. -> ASRock Incorporation)
Task: {F9D9D5C0-0A24-4BD2-A573-85783BAEA290} - System32\Tasks\CCleaner 7 - Skip UAC - S-1-5-21-3429602048-725292175-2964145443-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [4717688 2025-10-19] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {C757F92B-9521-4DAA-9BBE-96E2330B97C9} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {A6232867-40F8-4A9C-9B73-7DDA9BEC9237} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {709077E1-726B-424D-856B-E177B89C44F0} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MpCmdRun.exe [1790640 2025-10-22] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {2C09B4CD-E876-4EB6-A178-2FA03019B889} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MpCmdRun.exe [1790640 2025-10-22] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {89B9CE52-2674-4FF8-9BC6-871D0E91EB96} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MpCmdRun.exe [1790640 2025-10-22] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {2DD62033-84A5-4A2A-AD5A-372EBE2781C2} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MpCmdRun.exe [1790640 2025-10-22] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {981004EB-254F-44F1-9803-00DA03297905} - System32\Tasks\NahimicTask32 => C:\Windows\System32\..\SysWOW64\NahimicSvc32.exe [1117352 0] (A-Volute SAS -> Nahimic)
Task: {937E239A-5555-4DA9-81AD-116E27F3B933} - System32\Tasks\NahimicTask64 => C:\Windows\System32\.\NahimicSvc64.exe [1437352 0] (A-Volute SAS -> Nahimic)
Task: {DD4F62AF-8FD2-4F39-B06B-91EC190533B3} - System32\Tasks\OneDrive Startup Task-S-1-5-21-3429602048-725292175-2964145443-1001 => C:\Users\marti\AppData\Local\Microsoft\OneDrive\25.184.0921.0004_1\OneDriveLauncher.exe [725880 2025-10-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {F0842294-F19F-497A-9280-A761D4E9BA73} - System32\Tasks\Piriform\CCleaner 7 - S-1-5-21-3429602048-725292175-2964145443-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [4717688 2025-10-19] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {FE823439-432A-4271-B560-1B66A8A7BA6F} - System32\Tasks\Piriform\CCleaner 7 BugReport => C:\Program Files\Piriform\CCleaner 7\CCleanerBugReport.exe [6243960 2025-10-19] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --product 234 --programpath "C:\Program Files\Piriform\CCleaner 7" --configpath "C:\Program Files\Piriform\CCleaner 7\data" --path "C:\Program Files\Piriform\CCleaner 7\log" --path "C:\Program Files\Piriform\CCleaner 7\data\dumps" --logpath "C:\Program Files\Piriform\CCleaner 7 (the data entry has 58 more characters).
Task: {0CAE8208-3F60-4922-886F-5F8CEFC5CB63} - System32\Tasks\Piriform\CCleaner 7 Update => C:\Program Files\Common Files\Piriform\Icarus\piriform-ccl\icarus.exe [8971064 2025-10-14] (PIRIFORM SOFTWARE LIMITED -> Gen Digital Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{ee1a321e-2873-4950-8725-cc3e6a03f061}: [DhcpNameServer] 192.168.1.1
Edge:
=======
Edge Profile: C:\Users\marti\AppData\Local\Microsoft\Edge\User Data\Default [2025-10-23]
Edge Notifications: Default -> hxxps://www.facebook.com
Edge HomePage: Default -> hxxp://www.google.com/
Edge Extension: (Dokumenty Google offline) - C:\Users\marti\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-09-20]
Edge Extension: (Adblock Plus - free ad blocker) - C:\Users\marti\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmgoamodcdcjnbaobigkjelfplakmdhh [2025-10-22]
Edge Extension: (Edge relevant text changes) - C:\Users\marti\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2025-01-31]
Edge HKLM\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn]
Edge HKLM-x32\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn]
Chrome:
=======
CHR HKLM\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 CCleaner7; C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe [28276344 2025-10-19] (Gen Digital Inc. -> Gen Digital Inc.)
R3 GameInputRedistService; C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe [141688 2025-10-07] (Microsoft Corporation -> Microsoft Corporation)
S2 Intel(R) Platform License Manager Service; C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\PlatformLicenseManagerService.exe [741488 2023-12-14] (Intel Corporation -> Intel(R) Corporation)
R3 KAPSService; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KAPSService.exe [76576 2022-07-27] (Intel Corporation -> Intel® Corporation)
R2 Killer Analytics Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerAnalyticsService.exe [2454304 2022-07-27] (Intel Corporation -> Intel)
R2 Killer Network Service; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KillerNetworkService.exe [2898744 2022-07-27] (Intel Corporation -> Intel)
R3 KNDBWM; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KNDBWMService.exe [76600 2022-07-27] (Intel Corporation -> Intel® Corporation)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [11130144 2025-10-23] (Malwarebytes Inc -> Malwarebytes)
S3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe [2788304 2025-02-01] (Malwarebytes Inc. -> Malwarebytes)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MpDefenderCoreService.exe [2026144 2025-10-22] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NahimicService; C:\WINDOWS\system32\NahimicService.exe [1909528 2023-10-02] (A-Volute SAS -> Nahimic)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_d471cab2f241c3c2\Display.NvContainer\NVDisplay.Container.exe [1275584 2025-10-10] (NVIDIA Corporation -> NVIDIA Corporation)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [803064 2025-10-01] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 tmHInstall; C:\Program Files\Thrustmaster\TM Flight Series\drivers\amd64\tmHInstall.exe [139456 2025-06-02] (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster®)
R2 TmWinService; C:\Program Files (x86)\Thrustmaster\TARGET\TmService.exe [320536 2024-11-30] (Guillemot Corporation S.A. -> Guillemot Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\NisSrv.exe [4418608 2025-10-22] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25090.3009-0\MsMpEng.exe [282440 2025-10-22] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AppShopDrv103; C:\WINDOWS\SysWOW64\Drivers\AppShopDrv103.sys [34568 2025-02-01] (ASROCK Incorporation -> ASRock Incorporation) [File not signed]
R3 AsrDrv202; C:\WINDOWS\SysWOW64\Drivers\AsrDrv202.sys [68208 2025-03-02] (ASROCK INC. -> ASRock Incorporation)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [602112 2025-08-16] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [204800 2025-08-16] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [110592 2025-08-16] (Microsoft Corporation) [File not signed]
R1 CTIIO; C:\WINDOWS\system32\drivers\CtiIo64.sys [34920 2025-10-04] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Innovation Co., LTd.)
R3 GuiHidUsbDevLowerTFH; C:\WINDOWS\System32\drivers\GuiHidUsbDevLowerTFH.sys [256704 2025-06-02] (Microsoft Windows Hardware Compatibility Publisher -> © Guillemot R&D, 2020. All rights reserved.)
R3 KfeCoSvc; C:\WINDOWS\System32\drivers\RivetNetworks\Killer\KfeCo11X64.sys [188072 2022-07-27] (Intel Corporation -> Rivet Networks, LLC.)
R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [333216 2025-09-19] (Microsoft Windows -> Microsoft Corporation)
R2 mbamchameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [234088 2025-10-23] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [22120 2025-03-13] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [245336 2025-10-23] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S3 MSIO; C:\Program Files (x86)\ASRock Utility\ASRRGBLED\Bin\msio64.sys [19672 2023-12-10] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd)
R3 TmBusEn; C:\WINDOWS\System32\drivers\TmBusEn.sys [43088 2023-12-14] (Microsoft Windows Hardware Compatibility Publisher -> Guillemot Corporation)
R3 TmBusEn; C:\Windows\SysWOW64\drivers\TmBusEn.sys [43088 2023-12-14] (Microsoft Windows Hardware Compatibility Publisher -> Guillemot Corporation)
S3 TmFilter; C:\WINDOWS\System32\drivers\TmFilter.sys [70736 2023-12-14] (Microsoft Windows Hardware Compatibility Publisher -> Guillemot Corporation)
S3 TmFilter; C:\Windows\SysWOW64\drivers\TmFilter.sys [70736 2023-12-14] (Microsoft Windows Hardware Compatibility Publisher -> Guillemot Corporation)
S3 TmHid; C:\WINDOWS\system32\DRIVERS\TmHid.sys [49040 2023-12-14] (WDKTestCert plukidis,131540205154897060 -> Guillemot Corporation)
S3 TmHid; C:\Windows\SysWOW64\DRIVERS\TmHid.sys [49040 2023-12-14] (WDKTestCert plukidis,131540205154897060 -> Guillemot Corporation)
S3 TmHidFsimBus; C:\WINDOWS\System32\drivers\tmHidFsimBus.sys [202440 2025-06-02] (Microsoft Windows Hardware Compatibility Publisher -> © Guillemot R&D, 2021. All rights reserved.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [20888 2025-10-22] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [629128 2025-10-22] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [102832 2025-10-22] (Microsoft Windows -> Microsoft Corporation)
S3 WSDPrintDevice; C:\WINDOWS\System32\DriverStore\FileRepository\wsdprint.inf_amd64_1f9e32519098c0b6\WSDPrint.sys [57344 2025-08-16] (Microsoft Windows -> Microsoft Corporation)
S3 WSDScan; C:\WINDOWS\System32\DriverStore\FileRepository\sti.inf_amd64_a6dc64e436f22951\WSDScan.sys [61440 2025-09-01] (Microsoft Windows -> Microsoft Corporation)
S3 cpuz158; \??\C:\WINDOWS\temp\cpuz158\cpuz158_x64.sys [X] <==== ATTENTION
S3 usbscan; \SystemRoot\System32\DriverStore\FileRepository\sti.inf_amd64_971c769b103df369\usbscan.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-10-23 19:37 - 2025-10-23 19:38 - 000022794 _____ C:\Users\marti\Downloads\FRST.txt
2025-10-23 19:37 - 2025-10-23 19:38 - 000000000 ____D C:\FRST
2025-10-23 19:36 - 2025-10-23 19:36 - 002443264 _____ (Farbar) C:\Users\marti\Downloads\FRST64.exe
2025-10-22 20:11 - 2025-10-22 20:11 - 000677108 _____ C:\WINDOWS\system32\perfh005.dat
2025-10-22 20:11 - 2025-10-22 20:11 - 000144960 _____ C:\WINDOWS\system32\perfc005.dat
2025-10-19 21:28 - 2025-10-23 17:55 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-10-19 19:52 - 2025-10-23 18:58 - 000000000 ____D C:\Users\marti\AppData\Local\Discord
2025-10-19 19:52 - 2025-10-23 15:59 - 000000000 ____D C:\Users\marti\AppData\Roaming\discord
2025-10-19 19:52 - 2025-10-19 19:52 - 000002249 _____ C:\Users\marti\OneDrive\Plocha\Discord.lnk
2025-10-19 19:52 - 2025-10-19 19:52 - 000000000 ____D C:\Users\marti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2025-10-19 19:28 - 2025-10-19 19:28 - 000000000 ____D C:\Users\marti\AppData\Local\vAMSYS-Pegasus
2025-10-19 19:27 - 2025-10-19 19:28 - 000002307 _____ C:\Users\marti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\vAMSYS Pegasus.lnk
2025-10-19 19:27 - 2025-10-19 19:28 - 000002305 _____ C:\Users\marti\OneDrive\Plocha\vAMSYS Pegasus.lnk
2025-10-19 19:27 - 2025-10-19 19:28 - 000000000 ____D C:\Users\marti\AppData\Roaming\vAMSYS-Pegasus
2025-10-19 19:01 - 2025-10-19 19:01 - 000001875 _____ C:\Users\marti\OneDrive\Plocha\Community – zástupce.lnk
2025-10-16 18:19 - 2025-10-10 17:01 - 002402656 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2025-10-16 18:19 - 2025-10-10 17:01 - 002402656 _____ C:\WINDOWS\system32\vulkaninfo.exe
2025-10-16 18:19 - 2025-10-10 17:01 - 001908064 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2025-10-16 18:19 - 2025-10-10 17:01 - 001908064 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2025-10-16 18:19 - 2025-10-10 17:01 - 001581920 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2025-10-16 18:19 - 2025-10-10 17:01 - 001581920 _____ C:\WINDOWS\system32\vulkan-1.dll
2025-10-16 18:19 - 2025-10-10 17:01 - 001395552 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2025-10-16 18:19 - 2025-10-10 17:01 - 001395552 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2025-10-16 18:19 - 2025-10-10 17:01 - 000478400 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2025-10-16 18:19 - 2025-10-10 17:01 - 000374976 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2025-10-16 18:19 - 2025-10-10 16:58 - 001322176 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2025-10-16 18:19 - 2025-10-10 16:58 - 000675008 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvofapi64.dll
2025-10-16 18:19 - 2025-10-10 16:58 - 000509120 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvofapi.dll
2025-10-16 18:19 - 2025-10-10 16:57 - 026354880 _____ C:\WINDOWS\system32\nvidia-pcc.exe
2025-10-16 18:19 - 2025-10-10 16:57 - 002317504 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2025-10-16 18:19 - 2025-10-10 16:57 - 001715904 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2025-10-16 18:19 - 2025-10-10 16:57 - 001599680 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2025-10-16 18:19 - 2025-10-10 16:57 - 001572544 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2025-10-16 18:19 - 2025-10-10 16:57 - 001223360 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2025-10-16 18:19 - 2025-10-10 16:57 - 001057472 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2025-10-16 18:19 - 2025-10-10 16:57 - 000813248 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2025-10-16 18:19 - 2025-10-10 16:56 - 024676032 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2025-10-16 18:19 - 2025-10-10 16:56 - 021714112 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2025-10-16 18:19 - 2025-10-10 16:56 - 007683264 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2025-10-16 18:19 - 2025-10-10 16:56 - 005469888 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll
2025-10-16 18:19 - 2025-10-10 16:56 - 004175040 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2025-10-16 18:19 - 2025-10-10 16:56 - 000468672 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2025-10-16 18:19 - 2025-10-10 16:55 - 005918912 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2025-10-16 18:19 - 2025-10-10 16:55 - 005625520 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2025-10-16 18:19 - 2025-10-10 16:55 - 004924120 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2025-10-16 18:19 - 2025-10-10 16:55 - 000853696 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2025-10-16 18:19 - 2025-10-10 07:36 - 000148902 _____ C:\WINDOWS\system32\nvinfo.pb
2025-10-16 17:49 - 2025-10-16 17:49 - 000000000 ____D C:\Program Files\Windows Kits
2025-10-16 17:49 - 2025-10-16 17:49 - 000000000 ____D C:\Program Files\Microsoft GameInput
2025-10-14 21:55 - 2024-07-30 12:11 - 000062482 _____ C:\WINDOWS\SysWOW64\StrRes.xml
2025-10-14 21:55 - 2024-07-30 12:08 - 000008765 _____ C:\WINDOWS\SysWOW64\ru.xml
2025-10-14 21:55 - 2024-07-30 12:08 - 000005916 _____ C:\WINDOWS\SysWOW64\tw.xml
2025-10-14 21:55 - 2024-07-30 12:08 - 000005078 _____ C:\WINDOWS\SysWOW64\pl.xml
2025-10-14 21:55 - 2024-07-30 12:08 - 000004982 _____ C:\WINDOWS\SysWOW64\pt.xml
2025-10-14 21:55 - 2024-07-30 12:07 - 000007895 _____ C:\WINDOWS\SysWOW64\en.xml
2025-10-14 21:55 - 2024-07-30 12:07 - 000007746 _____ C:\WINDOWS\SysWOW64\jp.xml
2025-10-14 21:55 - 2024-07-30 12:07 - 000006408 _____ C:\WINDOWS\SysWOW64\kr.xml
2025-10-14 21:55 - 2024-07-30 12:07 - 000004867 _____ C:\WINDOWS\SysWOW64\fr.xml
2025-10-14 21:55 - 2024-07-30 12:07 - 000004757 _____ C:\WINDOWS\SysWOW64\es.xml
2025-10-14 21:55 - 2024-07-30 12:06 - 000005830 _____ C:\WINDOWS\SysWOW64\cn.xml
2025-10-14 21:55 - 2024-07-30 12:06 - 000004753 _____ C:\WINDOWS\SysWOW64\de.xml
2025-10-14 21:30 - 2025-10-14 21:30 - 000000000 ____D C:\Program Files (x86)\WD
2025-10-14 17:35 - 2025-10-14 17:35 - 000000000 ____D C:\ProgramData\CPUID Software
2025-10-14 14:34 - 2025-10-19 19:27 - 000000000 ____D C:\Users\marti\AppData\Local\Sentry
2025-10-14 13:59 - 2025-10-14 22:45 - 000000000 ____D C:\ProgramData\Fenix
2025-10-14 13:59 - 2025-10-14 13:59 - 000002250 _____ C:\Users\marti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Fenix Installer.lnk
2025-10-14 13:59 - 2025-10-14 13:59 - 000002248 _____ C:\Users\marti\OneDrive\Plocha\Fenix Installer.lnk
2025-10-14 13:59 - 2025-10-14 13:59 - 000000000 ____D C:\Users\marti\AppData\Local\FenixApp
2025-10-10 15:43 - 2025-10-10 15:43 - 000003268 _____ C:\WINDOWS\system32\Tasks\CCleaner 7 - Skip UAC - S-1-5-21-3429602048-725292175-2964145443-1001
2025-10-10 15:43 - 2025-10-10 15:43 - 000002152 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 7.lnk
2025-10-10 15:43 - 2025-10-10 15:43 - 000000000 ____D C:\WINDOWS\system32\Tasks\Piriform
2025-10-10 15:43 - 2025-10-10 15:43 - 000000000 ____D C:\Users\marti\AppData\Roaming\CCleaner
2025-10-10 15:42 - 2025-10-10 15:42 - 000055064 _____ (Gen Digital Inc.) C:\WINDOWS\system32\icarus_rvrt.exe
2025-10-10 15:42 - 2025-10-10 15:42 - 000000000 ____D C:\Program Files\Piriform
2025-10-10 15:42 - 2025-10-10 15:42 - 000000000 ____D C:\Program Files\Common Files\Piriform
2025-10-04 20:21 - 2025-10-04 20:21 - 000000000 ____D C:\Program Files\Verbatim
2025-10-04 16:18 - 2025-10-04 16:18 - 000000000 ____D C:\Users\marti\AppData\Roaming\Opera Software
2025-10-04 11:13 - 2025-10-14 11:07 - 000000087 _____ C:\Users\marti\OneDrive\Plocha\Sklipkani.txt
2025-10-01 18:15 - 2025-10-01 18:15 - 000035125 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2025-10-01 18:15 - 2025-10-01 18:15 - 000035125 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2025-10-01 18:10 - 2025-10-01 18:10 - 000000000 ____D C:\Users\marti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Navigraph Hub
2025-10-01 18:04 - 2025-09-22 14:52 - 000126056 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2025-09-26 20:50 - 2025-09-29 15:50 - 000000000 ___RD C:\Users\marti\OneDrive\Dokumenty\FSUIPC7
2025-09-24 17:49 - 2025-09-24 17:49 - 000000000 ____D C:\Program Files\FenixSim A320
2025-09-23 19:15 - 2025-09-23 19:15 - 000002055 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\SimAppPro.lnk
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-10-23 19:37 - 2025-02-01 01:49 - 000000000 ____D C:\Program Files (x86)\Steam
2025-10-23 19:35 - 2025-02-01 15:14 - 000000000 ____D C:\Users\marti\AppData\Local\Malwarebytes
2025-10-23 19:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-10-23 19:11 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-10-23 19:00 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-10-23 18:33 - 2025-08-07 17:22 - 000000000 ____D C:\Users\marti\AppData\Roaming\Microsoft Flight Simulator 2024
2025-10-23 18:16 - 2025-08-29 16:53 - 000000000 ____D C:\REX Atmos Core
2025-10-23 17:00 - 2025-02-01 14:11 - 000000000 ____D C:\Users\marti\AppData\Roaming\Virtuali
2025-10-23 16:59 - 2025-02-01 14:11 - 000000000 ____D C:\Users\marti\AppData\Roaming\FlyByWire Installer
2025-10-23 16:58 - 2025-02-01 05:34 - 000000000 ____D C:\Users\marti\AppData\Local\CrashDumps
2025-10-23 16:37 - 2025-08-24 16:00 - 000000000 ____D C:\Users\marti\AppData\Local\D3DSCache
2025-10-23 16:35 - 2025-05-20 20:39 - 000000000 ____D C:\Users\marti\AppData\Roaming\SimAppPro
2025-10-23 16:22 - 2025-02-01 14:28 - 000000000 ____D C:\FSUIPC7
2025-10-23 16:17 - 2024-04-01 09:26 - 000000000 ___HD C:\Program Files\WindowsApps
2025-10-23 16:00 - 2025-02-01 15:13 - 000245336 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2025-10-23 15:57 - 2025-02-01 14:16 - 000000000 ____D C:\Users\marti\AppData\Roaming\navigraph-hub
2025-10-23 15:57 - 2025-02-01 01:00 - 000000000 ___RD C:\Users\marti\OneDrive
2025-10-23 15:55 - 2025-08-17 00:25 - 000003020 _____ C:\WINDOWS\system32\Tasks\AsrAPPShop
2025-10-22 21:15 - 2025-08-24 16:02 - 000000000 ____D C:\ProgramData\NVIDIA
2025-10-22 21:04 - 2025-02-01 16:30 - 000000000 ____D C:\Users\marti\AppData\Roaming\fsltl-trafic-injector
2025-10-22 20:38 - 2025-02-01 16:30 - 000000513 _____ C:\Users\marti\OneDrive\Plocha\fsltl-trafficinjector-config.json
2025-10-22 20:13 - 2025-02-01 14:11 - 000000000 ____D C:\ProgramData\Virtuali
2025-10-22 20:11 - 2025-08-17 00:28 - 001603790 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-10-22 20:11 - 2024-04-01 09:24 - 000000000 ____D C:\WINDOWS\INF
2025-10-22 20:04 - 2025-08-17 00:25 - 000005986 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2025-10-22 20:04 - 2025-08-17 00:25 - 000003108 _____ C:\WINDOWS\system32\Tasks\NahimicTask32
2025-10-22 20:04 - 2025-08-17 00:25 - 000003088 _____ C:\WINDOWS\system32\Tasks\NahimicTask64
2025-10-22 20:04 - 2025-08-17 00:25 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-10-22 20:04 - 2025-08-17 00:23 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK
2025-10-22 20:04 - 2025-02-01 00:47 - 000012288 ___SH C:\DumpStack.log.tmp
2025-10-22 20:04 - 2024-04-01 09:21 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2025-10-22 18:47 - 2025-02-01 00:47 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2025-10-22 18:40 - 2025-02-01 14:25 - 000000000 ____D C:\Users\marti\AppData\Roaming\Aerosoft One
2025-10-22 18:31 - 2025-02-01 00:47 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-10-21 20:51 - 2024-04-01 09:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2025-10-21 20:51 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2025-10-21 20:43 - 2025-08-17 00:26 - 003276800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2025-10-19 21:01 - 2025-02-01 14:26 - 000000000 ____D C:\Users\marti\Aerosoft One Library
2025-10-19 19:52 - 2025-02-01 14:19 - 000000000 ____D C:\Users\marti\AppData\Local\SquirrelTemp
2025-10-19 19:28 - 2025-02-01 14:27 - 000000000 ____D C:\Users\marti\AppData\Roaming\Pegasus
2025-10-19 19:28 - 2025-02-01 00:54 - 000000000 ___SD C:\Users\marti\AppData\Roaming\Microsoft\Credentials
2025-10-19 19:27 - 2025-02-01 14:08 - 000000000 ____D C:\Program Files\dotnet
2025-10-19 19:27 - 2025-02-01 01:17 - 000000000 ____D C:\ProgramData\Package Cache
2025-10-19 19:06 - 2025-02-01 14:19 - 000000000 ____D C:\Users\marti\AppData\Roaming\iniManager
2025-10-19 18:43 - 2025-08-17 00:25 - 000003588 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3429602048-725292175-2964145443-1001
2025-10-19 18:43 - 2025-08-17 00:25 - 000003574 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-3429602048-725292175-2964145443-1001
2025-10-19 18:43 - 2025-08-17 00:25 - 000003360 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3429602048-725292175-2964145443-1001
2025-10-19 18:43 - 2025-02-01 01:00 - 000002379 _____ C:\Users\marti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-10-16 21:34 - 2025-08-24 16:02 - 000000000 ____D C:\Users\marti\AppData\Local\NVIDIA
2025-10-16 21:32 - 2025-08-20 16:27 - 000000000 ____D C:\Program Files (x86)\SimAppPro
2025-10-16 19:15 - 2025-08-17 00:23 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-10-16 17:49 - 2025-02-01 01:22 - 004213112 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2025-10-16 17:49 - 2025-02-01 01:22 - 000878968 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2025-10-16 17:49 - 2025-02-01 01:22 - 000285048 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2025-10-16 17:49 - 2025-02-01 01:22 - 000244088 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2025-10-16 17:49 - 2025-02-01 01:22 - 000166264 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2025-10-16 17:49 - 2025-02-01 01:22 - 000153976 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe
2025-10-16 17:49 - 2025-02-01 01:22 - 000076144 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe
2025-10-15 11:15 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecurityHealth
2025-10-15 10:58 - 2025-08-17 00:23 - 000297264 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2025-10-15 10:57 - 2024-04-01 18:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2025-10-15 10:57 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2025-10-15 10:57 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2025-10-15 10:57 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2025-10-15 10:57 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemResources
2025-10-15 10:57 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2025-10-15 10:57 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\setup
2025-10-15 10:57 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2025-10-15 10:57 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2025-10-15 10:57 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2025-10-15 10:57 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2025-10-15 10:57 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2025-10-15 10:25 - 2025-02-01 01:11 - 000000000 ____D C:\WINDOWS\system32\MRT
2025-10-15 10:24 - 2025-02-01 01:11 - 214534944 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2025-10-14 21:55 - 2025-02-02 01:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASRock Utility
2025-10-14 21:55 - 2025-02-02 01:38 - 000000000 ____D C:\Program Files (x86)\ASRock Utility
2025-10-14 13:58 - 2025-02-01 15:02 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FenixSim A320
2025-10-14 13:49 - 2025-02-01 14:30 - 000000000 ____D C:\Users\marti\OneDrive\Plocha\FS2024
2025-10-13 08:33 - 2025-08-17 00:25 - 000003716 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{67CC9047-C3AD-4539-B2A6-99C3DD181152}
2025-10-13 08:33 - 2025-08-17 00:25 - 000003590 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{99CA179B-4625-40F9-81A8-B9FBE1F9501A}
2025-10-12 20:04 - 2025-02-01 00:58 - 000000000 ____D C:\Users\marti\AppData\Local\Publishers
2025-10-12 19:55 - 2025-02-01 00:57 - 000000000 ____D C:\Users\marti\AppData\Local\Packages
2025-10-12 19:55 - 2025-02-01 00:55 - 000000000 ____D C:\Users\marti\AppData\Local\PlaceholderTileLogoFolder
2025-10-12 19:55 - 2025-02-01 00:49 - 000000000 ____D C:\ProgramData\Packages
2025-10-11 10:30 - 2025-02-01 01:50 - 000000000 ____D C:\Users\marti\AppData\Local\Steam
2025-10-10 15:56 - 2025-05-11 19:13 - 000000000 ____D C:\Users\marti\AppData\Local\iniManager
2025-10-10 15:56 - 2025-02-01 14:19 - 000000000 ____D C:\Users\marti\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\iniBuilds Ltd
2025-10-10 15:42 - 2025-08-30 00:58 - 000000000 ____D C:\ProgramData\Piriform
2025-10-10 15:42 - 2025-08-30 00:58 - 000000000 ____D C:\Program Files\CCleaner
2025-10-10 09:32 - 2025-02-01 15:13 - 000000000 ____D C:\ProgramData\Malwarebytes
2025-10-04 20:21 - 2025-08-16 23:48 - 000000000 ____D C:\Program Files\ENE
2025-10-03 21:14 - 2025-07-16 16:09 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BeyondATC
2025-10-03 21:14 - 2025-07-16 16:09 - 000000000 ____D C:\BeyondATC
2025-10-01 18:30 - 2024-04-01 18:31 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2025-10-01 18:30 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\UUS
2025-10-01 18:30 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2025-10-01 18:30 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2025-10-01 18:30 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2025-10-01 18:30 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2025-10-01 18:30 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\Provisioning
2025-10-01 18:30 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2025-10-01 18:30 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\USOPrivate
2025-10-01 18:30 - 2024-04-01 09:21 - 000000000 ____D C:\WINDOWS\servicing
2025-09-26 20:50 - 2025-04-13 11:11 - 000001466 _____ C:\Users\marti\OneDrive\Plocha\MSFS24.lnk
==================== Files in the root of some directories ========
2025-02-09 17:36 - 2025-02-09 17:40 - 000024576 _____ () C:\Users\marti\AppData\Roaming\EFB.db
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 21-10-2025
Ran by marti (23-10-2025 19:39:09)
Running from C:\Users\marti\Downloads
Microsoft Windows 11 Pro Version 25H2 26200.6901 (X64) (2025-08-16 22:26:01)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-3429602048-725292175-2964145443-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3429602048-725292175-2964145443-503 - Limited - Disabled)
Guest (S-1-5-21-3429602048-725292175-2964145443-501 - Limited - Disabled)
marti (S-1-5-21-3429602048-725292175-2964145443-1001 - Administrator - Enabled) => C:\Users\marti
WDAGUtilityAccount (S-1-5-21-3429602048-725292175-2964145443-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
Aerosoft One 0.16.12 (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\6cfbc6f2-d82c-56dd-8cbb-177a5d4b5b90) (Version: 0.16.12 - Aerosoft GmbH)
APP Shop v2.0.0.6 (HKLM-x32\...\{3B9B2DDC-07B8-4F28-82D9-4092C4LE5B67}_is1) (Version: 2.0.0.6 - ASRock Inc.)
ASRock Restart to UEFI v1.0.15 (HKLM-x32\...\ASRock Restart to UEFI_is1) (Version: 1.0.15 - ASRock Inc.)
ASRRGBLED v2.0.190 (HKLM-x32\...\ASRock RGB LED_is1) (Version: 2.0.190 - ASRock Inc.)
A-Tuning v4.1.11 (HKLM-x32\...\A-Tuning_is1) (Version: 4.1.11 - ASRock Inc.)
Auto Driver Installer v2.0.0.6 (HKLM-x32\...\{B7C3650A-7201-4D71-BCE7-D6B2FCB96CE9}_is1) (Version: 2.0.0.6 - ASRock Inc.)
BeyondATC version 1.6.68.EA (HKLM-x32\...\{CF88F4D6-A60E-473D-A1D3-ABB5FE336EFA}_is1) (Version: 1.6.68.EA - Skirmish Mode Games, Inc.)
BleachBit (HKLM-x32\...\BleachBit) (Version: 5.0.0.2936 - BleachBit)
CCleaner 7 (HKLM\...\CCleaner 7) (Version: 7.0.1010.1196 - Piriform)
CPUID HWMonitor 1.60 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.60 - CPUID, Inc.)
Discord (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\Discord) (Version: 1.0.9212 - Discord Inc.)
Display Driver Uninstaller (HKLM-x32\...\Display Driver Uninstaller) (Version: 18.1.3.1 - Wagnardsoft)
Dynamic Application Loader Host Interface Service (HKLM\...\{12EF5653-F4C0-4B29-A4EE-E2C7A527E668}) (Version: 1.0.0.0 - Intel Corporation) Hidden
ENE Video Capture Box HAL (HKLM\...\{A096611D-BA11-4A1A-8D09-0A0462D7C8F2}) (Version: 1.0.5.15 - Ene Tech.) Hidden
ENE Video Capture Box HAL (HKLM-x32\...\{974259bf-3ed1-4cd6-9ed1-40c7f601a786}) (Version: 1.0.5.15 - Ene Tech.) Hidden
ENE_DRAM_RGB_AIO (HKLM\...\{93C7E355-7193-4F5F-938B-C519251D472B}) (Version: 1.0.13.0 - Ene Tech.) Hidden
ENE_DRAM_RGB_AIO (HKLM-x32\...\{b3481593-508d-41a9-b09f-4b10414b371d}) (Version: 1.0.13.0 - Ene Tech.) Hidden
ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
ENE_EHD_M2_HAL (HKLM-x32\...\{c1d017c2-8846-4000-9254-5689eccd462e}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
ENE_External_Device_HAL (HKLM\...\{2B8E611F-0B51-4FAC-87BB-AF50D82E7DDA}) (Version: 1.0.12.7 - ENE Tech) Hidden
ENE_External_Device_HAL (HKLM-x32\...\{a7b1cf47-d8f0-423d-9494-568195f1c864}) (Version: 1.0.12.7 - ENE Tech) Hidden
ENE_MousePad_HAL (HKLM\...\{9E97178A-ADB8-4778-BE60-7E28E2A72721}) (Version: 1.0.2.0 - ENE TECHNOLOGY INC.) Hidden
ENE_MousePad_HAL (HKLM-x32\...\{c2c794a4-7986-4c45-884d-d4ca43b88df9}) (Version: 1.0.2.0 - ENE TECHNOLOGY INC.) Hidden
ENE_QSI_Loki_HAL (HKLM\...\{BDE43F26-5917-44F8-B86A-F1D9A6B80B32}) (Version: 1.0.3.0 - ENE TECHNOLOGY INC.) Hidden
ENE_QSI_Loki_HAL (HKLM-x32\...\{205ef3a8-937b-43cb-90fc-2f58f71408d8}) (Version: 1.0.3.0 - ENE TECHNOLOGY INC.) Hidden
ENE_X_AIC_HAL (HKLM\...\{CF703694-01C6-4062-B797-84DB215662BC}) (Version: 1.0.6.3 - ENE TECHNOLOGY INC.) Hidden
ENE_X_AIC_HAL (HKLM-x32\...\{c662a481-d76a-4188-95d2-6eb4ffd55542}) (Version: 1.0.6.3 - ENE TECHNOLOGY INC.) Hidden
Fenix Installer (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\FenixApp) (Version: 1.0.243 - FenixSim Ltd.)
FenixSim A320 (HKLM\...\{49120c8f-c92c-47c4-ba07-e99057c45d3d}) (Version: 2.4.0.2481 - FenixSim Ltd.)
FlyByWire Installer 3.4.3 (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\80b9efbf-2017-5d38-8868-3afd67a5a47d) (Version: 3.4.3 - FlyByWire Simulations)
FSDreamTeam Universal Installer version 1.2.0 (HKLM-x32\...\FSDreamTeam Universal Installer_is1) (Version: 1.2.0 - VIRTUALI Sagl)
FSUIPC7 v7.5.4 (HKLM-x32\...\FSUIPC72024) (Version: v7.5.4 - John L. Dowson)
iFly Manager (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\iFly Manager) (Version: - )
iniManager (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\iniManager) (Version: 2.4.8 - iniBuilds Ltd.)
Intel(R) Chipset Device Software (HKLM\...\{2B96B7E3-FA08-4749-9D23-CDC64F1B835B}) (Version: 10.1.19600.8418 - Intel Corporation) Hidden
Intel(R) Chipset Device Software (HKLM-x32\...\{404581d0-19c1-47ba-bcd3-10178793c239}) (Version: 10.1.19600.8418 - Intel(R) Corporation)
Intel(R) Icls (HKLM\...\{39C50D87-BFD1-43DD-8A18-676086E328C9}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 2340.5.36.0 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{BA97A47F-9B59-4B07-BC82-FF3F6CE6E597}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Driver (HKLM\...\{C8EEBC98-5759-4B1D-9834-E5F897161475}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) ME WMI Provider (HKLM\...\{8105FECC-2670-4EA1-A98B-FA803A30AEEB}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Killer Performance Driver Suite UWD (HKLM\...\{FFC31014-7FD6-4720-8C5D-7B16E9E6F73E}) (Version: 3.1222.750 - Rivet Networks)
Malwarebytes version 5.4.2.217 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.4.2.217 - Malwarebytes)
Microsoft .NET Host - 6.0.36 (x64) (HKLM\...\{D6932D97-36F1-40B8-9CDC-CA8365B21000}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Host - 7.0.17 (x64) (HKLM\...\{089B0F2C-87D9-4470-B6E6-154DD6961C56}) (Version: 56.68.10360 - Microsoft Corporation) Hidden
Microsoft .NET Host - 8.0.12 (x64) (HKLM\...\{C4C6E39D-48AE-426C-960C-46ED3447DDEB}) (Version: 64.48.26165 - Microsoft Corporation) Hidden
Microsoft .NET Host - 9.0.10 (x64) (HKLM\...\{EB00D346-1FB5-46E0-89C0-93F056F5ACF4}) (Version: 72.40.40927 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.36 (x64) (HKLM\...\{A9E32B25-994B-4856-A12B-0EBED3050410}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 7.0.17 (x64) (HKLM\...\{6B4D3428-4800-446B-971F-62A7377F06F6}) (Version: 56.68.10360 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.12 (x64) (HKLM\...\{C9C872D5-3CA9-4E0E-AF90-1B85325F9243}) (Version: 64.48.26165 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 9.0.10 (x64) (HKLM\...\{FDC862D8-5CDD-4FC6-8E9A-873A689600BC}) (Version: 72.40.40927 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.36 (x64) (HKLM\...\{C912E33F-956A-4921-9F55-CC11AE8F09AF}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.36 (x64) (HKLM-x32\...\{9d3fc73f-1cf4-412c-a1c9-d2ad28ccbd62}) (Version: 6.0.36.34214 - Microsoft Corporation)
Microsoft .NET Runtime - 7.0.17 (x64) (HKLM\...\{A638EFAE-5229-46A8-9A18-D0FF9D9827D2}) (Version: 56.68.10360 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.12 (x64) (HKLM\...\{1E606649-7E56-452F-8AC4-495C70D1E341}) (Version: 64.48.26165 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 9.0.10 (x64) (HKLM\...\{05987870-6EDD-4352-ADEA-4A8694040F3E}) (Version: 72.40.40927 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 141.0.3537.92 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 141.0.3537.92 - Microsoft Corporation) Hidden
Microsoft Flight Simulator 2024 SDK 1.4.5 (Core) (HKLM\...\{0073E71D-9183-4D2D-88CD-B0F04A09DDE2}) (Version: 1.4.5 - Microsoft)
Microsoft Flight Simulator SDK 0.24.4 (Core) (HKLM\...\{3D42EBFC-1EBC-4468-9B77-388C2A3290FE}) (Version: 0.24.4 - Microsoft)
Microsoft GameInput (HKLM\...\{0812546C-471E-E343-DE9C-AECF3D0137E6}) (Version: 10.1.26100.6154 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\OneDriveSetup.exe) (Version: 25.184.0921.0004 - Microsoft Corporation)
Microsoft Teams Meeting Add-in for Microsoft Office (HKLM\...\{A7AB73A3-CB10-4AA5-9D38-6AEFFBDE4C91}) (Version: 1.25.18302 - Microsoft)
Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.44.35211 (HKLM-x32\...\{d8bbe9f9-7c5b-42c6-b715-9ee898a2e515}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.44.35211 (HKLM-x32\...\{0b5169e3-39da-4313-808e-1f9c0407f3bf}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.44.35211 (HKLM\...\{86AB2CC9-08BD-4643-B0F9-F82D006D72FF}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.44.35211 (HKLM\...\{43B0D101-A022-48F4-9D04-BA404CEB1D53}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.44.35211 (HKLM-x32\...\{C18FB403-1E88-43C8-AD8A-CED50F23DE8B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.44.35211 (HKLM-x32\...\{922480B5-CAEB-4B1B-AAA4-9716EFDCE26B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.36 (x64) (HKLM\...\{61D4736B-3325-4D4A-BD41-8BD206C6A86E}) (Version: 48.144.23186 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.36 (x64) (HKLM-x32\...\{0532b8f2-12d7-43de-95fc-7b87006758a8}) (Version: 6.0.36.34217 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 7.0.17 (x64) (HKLM\...\{93812F65-BAA9-42E0-AF19-F15F39A92E3C}) (Version: 56.68.10379 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 7.0.17 (x64) (HKLM-x32\...\{24a68a65-6ac6-4276-9d7d-2c3939d8474e}) (Version: 7.0.17.33416 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.12 (x64) (HKLM\...\{71CD19D6-C448-4B5D-9A38-018741753290}) (Version: 64.48.26178 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.12 (x64) (HKLM-x32\...\{aafaa0cc-b975-4ffa-ba33-8690e64683c4}) (Version: 8.0.12.34404 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 9.0.10 (x64) (HKLM\...\{8466C2EB-71A6-4529-A615-0E8FE0CCCBED}) (Version: 72.40.40921 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 9.0.10 (x64) (HKLM-x32\...\{877aacfd-984e-464a-ba89-9fc575eb79ed}) (Version: 9.0.10.35325 - Microsoft Corporation)
Navigraph Hub 1.2.23 (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\55f042a9-1285-5a7a-abcd-4e2044c5b51b) (Version: 1.2.23 - Navigraph)
Navigraph Simlink 1.1.39.1902 (HKLM\...\{E5431A0D-8735-4E89-9E41-D820334B2909}}_is1) (Version: 1.1.39.1902 - Navigraph)
NVIDIA FrameView SDK 1.5.11504.36206172 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.5.11504.36206172 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.4.5.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.4.5.0 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 581.57 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 581.57 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.23.1019 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.23.1019 - NVIDIA Corporation)
Orbx Central 4.5.7 (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\7cf15176-b7c3-5704-8319-ddca84b92c9a) (Version: 4.5.7 - Orbx Simulation Systems Pty Ltd)
Pilot Experience Sim Central V2 (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\pesim-central-v2-client) (Version: 2.1.8 - Pilot Experience Sim)
REX Atmos Core (HKLM\...\{525601AC-690F-4B81-A037-9F46BB5AA798}) (Version: 8.0.2025.0825 - REX Game Studios, LLC.)
SimAppPro 1.16.67 (HKLM-x32\...\2873a9d6-0e65-5078-b232-daee9dce2239) (Version: 1.16.67 - WINWING)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
T.Flight Hotas drivers (HKLM-x32\...\{E08E6F77-E66C-47FC-8565-0AA3389D48C8}) (Version: 4.TFHT.2025 - Thrustmaster)
Thrustmaster TARGET (HKLM-x32\...\{8036A569-CA02-4D33-A7E9-E9BC8A482E91}) (Version: 3.0.25.127 - Thrustmaster)
Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 159.0.11374 - Ubisoft)
vAMSYS Pegasus (HKU\S-1-5-21-3429602048-725292175-2964145443-1001\...\vAMSYS-Pegasus) (Version: 2.0.3 - vAMSYS LTD)
Verbatim_SureFireGaming_Product (HKLM\...\{35CB65C6-A7E3-4EE7-AD40-738D70A72164}) (Version: 1.0.3.11 - Verbatim) Hidden
Verbatim_SureFireGaming_Product (HKLM-x32\...\{d601832a-0d94-46ce-9b19-78e8a5887313}) (Version: 1.0.3.11 - Verbatim) Hidden
WinRAR 7.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 7.01.0 - win.rar GmbH)
Packages:
=========
@{MicrosoftWindows.58683691.InpApp_1000.26100.6725.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.58683691.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-10-21] (Microsoft Windows)
@{MicrosoftWindows.58683691.InpApp_1000.26100.6899.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.58683691.InpApp/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-10-21] (Microsoft Windows)
Balíček prostředí funkcí systému Windows -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-10-21] (Microsoft Windows)
Edit Docx PLUS -> C:\Program Files\WindowsApps\24091FileFormatApps.WordEditorBasic_2.1.12.0_x64__8t2vtv4rwtrk0 [2025-05-18] (File Format Apps)
HyperX NGENUITY -> C:\Program Files\WindowsApps\33C30B79.HyperXNGenuity_5.34.0.0_x64__0a78dr3hq0pvt [2025-10-12] (HP Inc.) [Startup Task]
Killer Intelligence Center -> C:\Program Files\WindowsApps\rivetnetworks.killercontrolcenter_3.1222.726.0_x64__rh07ty8m5nkag [2025-05-18] (Rivet Networks LLC) [Startup Task]
Malwarebytes Anti-Malware -> C:\Program Files\Malwarebytes\Anti-Malware [2025-10-23] ()
Microsoft Jenny (Natural) - English (United States) -> C:\Program Files\WindowsApps\MicrosoftWindows.Voice.en-US.Jenny.1_1.0.8.0_x64__cw5n1h2txyewy [2025-05-18] (Microsoft Windows)
Nahimic -> C:\Program Files\WindowsApps\A-Volute.Nahimic_1.10.7.0_x64__w2gh52qy24etm [2025-08-12] (A-Volute)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.968.0_x64__56jybvy8sckqj [2025-08-24] (NVIDIA Corp.)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.43.296.0_x64__dt26b99r8h8gj [2025-08-09] (Realtek Semiconductor Corp)
Speech Pack - English (United States) -> C:\Program Files\WindowsApps\MicrosoftWindows.Speech.en-US.1_1.0.24.0_x64__cw5n1h2txyewy [2025-08-16] (Microsoft Windows)
WinRAR -> C:\Program Files\WinRAR [2025-03-16] (win.rar GmbH)
XboxInsiderHub -> C:\Program Files\WindowsApps\Microsoft.XboxInsider_1.2508.26001.0_x64__8wekyb3d8bbwe [2025-09-17] (Microsoft Corporation)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3429602048-725292175-2964145443-1001_Classes\CLSID\{47E6DCAF-41F8-441C-BD0E-A50D5FE6C4D1}\localserver32 -> C:\Users\marti\AppData\Local\Microsoft\OneDrive\25.184.0921.0004_1\OneDrive.Sync.Service.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3429602048-725292175-2964145443-1001_Classes\CLSID\{80172dde-4e20-4df0-81a2-0a48553e80bb}\localserver32 -> C:\Users\marti\AppData\Local\NhNotifSys\nahimic\nahimicNotifSys.exe (A-Volute SAS -> A-Volute)
CustomCLSID: HKU\S-1-5-21-3429602048-725292175-2964145443-1001_Classes\CLSID\{917E8742-AA3B-7318-FA12-10485FB322A2}\localserver32 -> C:\Users\marti\AppData\Local\Microsoft\OneDrive\25.184.0921.0004_1\OneDrive.Sync.Service.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3429602048-725292175-2964145443-1001_Classes\CLSID\{EABAE40C-B27C-455A-B672-F234DD780948}\InprocServer32 -> C:\Users\marti\AppData\Local\Microsoft\TeamsMeetingAdd-in\1.25.18302\x64\Microsoft.Teams.MeetingAddin.DLL (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2025-10-23] (Malwarebytes Inc -> Malwarebytes)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_d471cab2f241c3c2\nvshext.dll [2025-10-10] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2025-10-23] (Malwarebytes Inc -> Malwarebytes)
==================== Codecs (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Drivers32: [MidisrvTransferComplete] => 0
==================== Shortcuts & WMI ========================
==================== Loaded Modules (Whitelisted) =============
2025-10-16 21:32 - 2025-10-16 13:41 - 000072704 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\MagicThread.dll
2025-10-16 21:32 - 2025-10-16 13:41 - 000023552 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTDefaultEvents.dll
2025-10-16 21:32 - 2025-10-16 13:41 - 000090112 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTEventsBinding.dll
2025-10-16 21:32 - 2025-10-16 13:41 - 000035840 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTFactoryTest.dll
2025-10-16 21:32 - 2025-10-16 13:41 - 000359936 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTHID.dll
2025-10-16 21:32 - 2025-10-16 13:41 - 000627200 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTHID_JSAPI.node
2025-10-16 21:32 - 2025-10-16 13:41 - 000136192 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTMapConfigLink.dll
2025-10-16 21:32 - 2025-10-16 13:41 - 000017920 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTMapLink.dll
2025-10-16 21:32 - 2025-10-16 13:41 - 000032256 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTMonitor.dll
2025-10-16 21:32 - 2025-10-16 13:41 - 000033792 _____ () [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\WWTVirtualDeviceConfig.dll
2025-10-23 16:35 - 2025-10-16 12:50 - 000130048 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\resources\app.asar.unpacked\node\WWTEffect_NODE\WWTEffect_NODE.node
2025-10-23 16:35 - 2025-10-16 12:50 - 000067072 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\resources\app.asar.unpacked\node\WWTGP_NODE\SimConnect.dll
2025-10-23 16:35 - 2025-10-16 12:50 - 000154624 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\resources\app.asar.unpacked\node\WWTGP_NODE\WWTDcsLinker.dll
2025-10-23 16:35 - 2025-10-16 12:50 - 000300544 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\resources\app.asar.unpacked\node\WWTGP_NODE\WWTGP_NODE.node
2025-10-23 16:35 - 2025-10-16 12:50 - 000119808 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\resources\app.asar.unpacked\node\WWTGP_NODE\WWTP3DSimConnect.dll
2025-10-23 16:35 - 2025-10-16 12:50 - 000141824 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\resources\app.asar.unpacked\node\WWTGP_NODE\WWTXPlaneLinker.dll
2025-10-23 16:35 - 2025-10-16 12:50 - 000094720 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\resources\app.asar.unpacked\node\WWTHID_NODE\MagicThread.dll
2025-10-23 16:35 - 2025-10-16 12:50 - 000483840 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\resources\app.asar.unpacked\node\WWTHID_NODE\WWTHID.dll
2025-10-23 16:35 - 2025-10-16 12:50 - 000206336 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\resources\app.asar.unpacked\node\WWTHID_NODE\WWTHID_NODE.node
2025-10-23 16:35 - 2025-10-16 12:50 - 000125440 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\resources\app.asar.unpacked\node\WWTOS_NODE\WWTOS_NODE.node
2025-10-23 15:58 - 2025-10-16 13:36 - 000067072 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3498jpnwod38ubvvL4gYmVnuK6Z\resources\app.asar.unpacked\node\WWTGP_NODE\SimConnect.dll
2025-10-23 15:58 - 2025-10-16 13:36 - 000151552 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3498jpnwod38ubvvL4gYmVnuK6Z\resources\app.asar.unpacked\node\WWTGP_NODE\WWTDcsLinker.dll
2025-10-23 15:58 - 2025-10-16 13:36 - 000184320 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3498jpnwod38ubvvL4gYmVnuK6Z\resources\app.asar.unpacked\node\WWTGP_NODE\WWTGP_NODE.node
2025-10-23 15:58 - 2025-10-16 13:36 - 000119808 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3498jpnwod38ubvvL4gYmVnuK6Z\resources\app.asar.unpacked\node\WWTGP_NODE\WWTP3DSimConnect.dll
2025-10-23 15:58 - 2025-10-16 13:36 - 000141824 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3498jpnwod38ubvvL4gYmVnuK6Z\resources\app.asar.unpacked\node\WWTGP_NODE\WWTXPlaneLinker.dll
2025-10-23 15:58 - 2025-10-16 13:36 - 000094720 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3498jpnwod38ubvvL4gYmVnuK6Z\resources\app.asar.unpacked\node\WWTHID_NODE\MagicThread.dll
2025-10-23 15:58 - 2025-10-16 13:36 - 000481280 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3498jpnwod38ubvvL4gYmVnuK6Z\resources\app.asar.unpacked\node\WWTHID_NODE\WWTHID.dll
2025-10-23 15:58 - 2025-10-16 13:36 - 000202752 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3498jpnwod38ubvvL4gYmVnuK6Z\resources\app.asar.unpacked\node\WWTHID_NODE\WWTHID_NODE.node
2025-10-23 15:58 - 2025-10-16 13:36 - 000125440 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\3498jpnwod38ubvvL4gYmVnuK6Z\resources\app.asar.unpacked\node\WWTOS_NODE\WWTOS_NODE.node
2025-10-23 16:35 - 2025-10-23 16:35 - 001685504 _____ () [File not signed] \\?\C:\Users\marti\AppData\Local\Temp\fc0238af-37f3-4449-b3d0-489c9c022420.tmp.node
2025-09-23 19:15 - 2025-10-16 13:41 - 002163200 _____ () [File not signed] C:\Program Files (x86)\SimAppPro\ffmpeg.dll
2025-09-23 19:15 - 2025-10-16 13:41 - 000311808 _____ () [File not signed] C:\Program Files (x86)\SimAppPro\libegl.dll
2025-09-23 19:15 - 2025-10-16 13:41 - 006904320 _____ () [File not signed] C:\Program Files (x86)\SimAppPro\libglesv2.dll
2025-02-01 14:16 - 2025-10-01 08:04 - 002866176 _____ () [File not signed] C:\Users\marti\AppData\Local\Programs\navigraph-hub\ffmpeg.dll
2025-02-01 14:16 - 2025-10-01 08:04 - 000479232 _____ () [File not signed] C:\Users\marti\AppData\Local\Programs\navigraph-hub\libegl.dll
2025-02-01 14:16 - 2025-10-01 08:04 - 007672320 _____ () [File not signed] C:\Users\marti\AppData\Local\Programs\navigraph-hub\libglesv2.dll
2025-02-01 14:16 - 2025-10-01 08:04 - 005312000 _____ () [File not signed] C:\Users\marti\AppData\Local\Programs\navigraph-hub\vk_swiftshader.dll
2025-10-23 16:35 - 2025-10-16 12:50 - 002877440 _____ () [File not signed] C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\ffmpeg.dll
2025-10-23 16:35 - 2025-10-16 12:50 - 000478208 _____ () [File not signed] C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\libegl.dll
2025-10-23 16:35 - 2025-10-16 12:50 - 007808512 _____ () [File not signed] C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\libglesv2.dll
2025-10-23 16:35 - 2025-10-16 12:50 - 005238784 _____ () [File not signed] C:\Users\marti\AppData\Local\Temp\3493E2gFTEXshJOatHWRvXNN4tc\vk_swiftshader.dll
2025-10-23 15:58 - 2025-10-16 13:36 - 002877440 _____ () [File not signed] C:\Users\marti\AppData\Local\Temp\3498jpnwod38ubvvL4gYmVnuK6Z\ffmpeg.dll
2025-10-23 15:58 - 2025-10-16 13:36 - 000478208 _____ () [File not signed] C:\Users\marti\AppData\Local\Temp\3498jpnwod38ubvvL4gYmVnuK6Z\libegl.dll
2025-10-23 15:58 - 2025-10-16 13:36 - 007808512 _____ () [File not signed] C:\Users\marti\AppData\Local\Temp\3498jpnwod38ubvvL4gYmVnuK6Z\libglesv2.dll
2025-10-23 15:58 - 2025-10-16 13:36 - 005238784 _____ () [File not signed] C:\Users\marti\AppData\Local\Temp\3498jpnwod38ubvvL4gYmVnuK6Z\vk_swiftshader.dll
2025-10-23 15:58 - 2025-10-23 15:58 - 000012288 _____ () [File not signed] C:\Users\marti\AppData\Local\Temp\nsb33BE.tmp\System.dll
2025-10-23 16:35 - 2025-10-23 16:35 - 000012288 _____ () [File not signed] C:\Users\marti\AppData\Local\Temp\nsfC3D8.tmp\System.dll
2025-10-16 21:32 - 2025-10-16 13:41 - 006018560 _____ (FreeImage) [File not signed] \\?\C:\Program Files (x86)\SimAppPro\resources\app.asar.unpacked\FreeImage.dll
2025-05-25 16:55 - 2020-04-01 06:46 - 000037376 _____ (Guillemot Corporation) [File not signed] C:\Program Files (x86)\Thrustmaster\TARGET\cint.dll
2025-05-25 16:55 - 2016-04-14 04:46 - 001036800 _____ (Guillemot Corporation) [File not signed] C:\Program Files (x86)\Thrustmaster\TARGET\TmCommon.dll
2025-05-25 16:55 - 2024-09-09 21:09 - 000192000 _____ (Guillemot Corporation) [File not signed] C:\Program Files (x86)\Thrustmaster\TARGET\TmHidControl.dll
2025-10-23 15:58 - 2025-10-23 15:58 - 000102400 _____ (Muldersoft.com Free Software Division) [File not signed] C:\Users\marti\AppData\Local\Temp\nsb33BE.tmp\StdUtils.dll
2025-10-23 16:35 - 2025-10-23 16:35 - 000102400 _____ (Muldersoft.com Free Software Division) [File not signed] C:\Users\marti\AppData\Local\Temp\nsfC3D8.tmp\StdUtils.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 002293248 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files\Navigraph\Simlink\LIBEAY32.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 000386560 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files\Navigraph\Simlink\ssleay32.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 000047616 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\bearer\qgenericbearer.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 000031744 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\imageformats\qgif.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 000040960 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\imageformats\qicns.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 000032256 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\imageformats\qico.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 000397312 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\imageformats\qjpeg.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 000025600 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\imageformats\qsvg.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 000025088 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\imageformats\qtga.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 000374272 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\imageformats\qtiff.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 000023552 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\imageformats\qwbmp.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 000491520 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\imageformats\qwebp.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 001453568 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\platforms\qwindows.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 006130176 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\Qt5Core.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 006470656 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\Qt5Gui.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 001314816 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\Qt5Network.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 000332288 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\Qt5Svg.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 005580800 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\Qt5Widgets.dll
2025-02-01 14:18 - 2024-04-18 14:27 - 000137216 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files\Navigraph\Simlink\styles\qwindowsvistastyle.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2025-02-01 00:42 - 2025-02-01 00:42 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
==================== Network ===========================
(Currently there is no automatic fix for this section.)
DNS Servers: 192.168.1.1
Windows Firewall is enabled.
Network Binding:
=============
Ethernet: Realtek Gaming 2.5GbE Family Controller -> rt640x64.sys
Wi-Fi: Killer(R) Wi-Fi 6E AX1675x 160MHz Wireless Network Adapter (210NGW) -> Netwtw14.sys
Síťové připojení Bluetooth: Bluetooth Device (Personal Area Network) -> bthpan.sys
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-3429602048-725292175-2964145443-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\marti\AppData\Local\Packages\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\LocalCache\Microsoft\IrisService\18383155024926870698\134055370672896341.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Program Files (x86)\Addon Manager
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Program Files\FenixSim A320
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Program Files\FenixSim A320\Fenix.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Program Files\FenixSim A320\deps\FenixBootstrapper.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Program Files\FenixSim A320\deps\FenixCDU.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Program Files\FenixSim A320\deps\FenixDisplay.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Program Files\FenixSim A320\deps\FenixSystem.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Program Files\FenixSim A320\deps\GqlGateway\Fenix.GqlGateway.exe
==================== MSCONFIG/TASK MANAGER disabled items ==
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{4DB20927-AB65-476B-86A9-FAA3185BA230}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Stronghold Crusader Definitive Edition\Stronghold Crusader Definitive Edition.exe () [File not signed]
FirewallRules: [{6DEA4A50-4212-4C94-A751-475E55D6B3AF}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Stronghold Crusader Definitive Edition\Stronghold Crusader Definitive Edition.exe () [File not signed]
FirewallRules: [UDP Query User{1FE2408B-F103-421E-BC7C-DD30C97CED6F}C:\beyondatc\beyondatc.exe] => (Allow) C:\beyondatc\beyondatc.exe (Skirmish Mode Games Inc. -> )
FirewallRules: [TCP Query User{9140CB26-DF34-45D5-9016-378CE4090318}C:\beyondatc\beyondatc.exe] => (Allow) C:\beyondatc\beyondatc.exe (Skirmish Mode Games Inc. -> )
FirewallRules: [UDP Query User{85C1CEF4-E338-432C-A2B4-D4EFA3C6D5D4}C:\users\marti\appdata\roaming\microsoft flight simulator 2024\packages\community\fsltl-traffic-injector\fsltl-trafficinjector.exe] => (Allow) C:\users\marti\appdata\roaming\microsoft flight simulator 2024\packages\community\fsltl-traffic-injector\fsltl-trafficinjector.exe (Node.js) [File not signed]
FirewallRules: [TCP Query User{D2C14152-CC5F-41D7-8E71-BF18B4382A16}C:\users\marti\appdata\roaming\microsoft flight simulator 2024\packages\community\fsltl-traffic-injector\fsltl-trafficinjector.exe] => (Allow) C:\users\marti\appdata\roaming\microsoft flight simulator 2024\packages\community\fsltl-traffic-injector\fsltl-trafficinjector.exe (Node.js) [File not signed]
FirewallRules: [UDP Query User{03823B6E-D220-4505-880B-A2A419C55560}C:\program files\fenixsim a320\deps\gqlgateway\fenix.gqlgateway.exe] => (Allow) C:\program files\fenixsim a320\deps\gqlgateway\fenix.gqlgateway.exe (FenixSim Limited -> FenixSim Ltd.)
FirewallRules: [TCP Query User{4A59D9D8-093E-4293-BB1B-2B9AC0DFEA50}C:\program files\fenixsim a320\deps\gqlgateway\fenix.gqlgateway.exe] => (Allow) C:\program files\fenixsim a320\deps\gqlgateway\fenix.gqlgateway.exe (FenixSim Limited -> FenixSim Ltd.)
FirewallRules: [UDP Query User{C627BBA9-8E18-477B-8F94-B33C89EE7DA4}C:\program files\fenixsim a320\deps\fenixsystem.exe] => (Allow) C:\program files\fenixsim a320\deps\fenixsystem.exe (FenixSim Limited -> FenixSim Ltd.)
FirewallRules: [TCP Query User{44FC857C-1A87-4A94-B2D1-B6825823E407}C:\program files\fenixsim a320\deps\fenixsystem.exe] => (Allow) C:\program files\fenixsim a320\deps\fenixsystem.exe (FenixSim Limited -> FenixSim Ltd.)
FirewallRules: [{3DB3E66F-10AF-4AEB-A46F-5EEE913A285C}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\KingdomComeDeliverance2\Bin\Win64MasterMasterSteamPGO\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [{81AF212D-8C22-4885-9625-4F4CF2417AFE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\KingdomComeDeliverance2\Bin\Win64MasterMasterSteamPGO\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [{4F6E9194-A501-49C4-A3A1-505147589759}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{B4FBB25F-296F-4931-B1FC-A33FB3A3FA0A}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{FE7793A9-39CF-43E9-888A-A3D0F00B5BFE}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{D6C9F1FF-425A-44A9-8C31-9B6D935ABAE3}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [TCP Query User{113B68B2-EDC0-4914-A02C-2012AC8F7740}C:\program files (x86)\simapppro\simapppro.exe] => (Allow) C:\program files (x86)\simapppro\simapppro.exe (WINWING) [File not signed]
FirewallRules: [UDP Query User{884759EC-8ED9-4C6D-9937-6AB86754CA26}C:\program files (x86)\simapppro\simapppro.exe] => (Allow) C:\program files (x86)\simapppro\simapppro.exe (WINWING) [File not signed]
FirewallRules: [{E12F0322-7D7B-4121-9D46-D6C660DDC024}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25212.2101.3846.4105_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{51B8DDEF-2C2B-48B2-AC35-6441862DABBB}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25212.2101.3846.4105_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{516EE6A9-E34B-47D2-BCD2-3927212DB7C8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\MSFS2024\FlightSimulator2024.exe (Asobo Studio) [File not signed]
FirewallRules: [{928C0910-E3C4-46BC-82C4-D8A31F35AB0F}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\MSFS2024\FlightSimulator2024.exe (Asobo Studio) [File not signed]
FirewallRules: [{242DEE40-B6BC-4193-A5E6-53E5DEE7A41C}] => (Allow) C:\Program Files\WindowsApps\MSTeams_25255.703.3978.7153_x64__8wekyb3d8bbwe\ms-teams_modulehost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{48E4B765-87F2-4979-8565-0AA6ECFF66AE}] => (Allow) C:\Program Files\WindowsApps\MSTeams_25255.703.3978.7153_x64__8wekyb3d8bbwe\ms-teams_modulehost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{45734181-4050-4318-B6FC-84BEC63EC8E9}] => (Allow) C:\Program Files\WindowsApps\MSTeams_25255.703.3978.7153_x64__8wekyb3d8bbwe\ms-teams_modulehost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{5C1F3A68-7833-40EB-A715-3724F4F9BC4D}] => (Allow) C:\Program Files\WindowsApps\MSTeams_25255.703.3978.7153_x64__8wekyb3d8bbwe\ms-teams_modulehost.exe (Microsoft Corporation -> Microsoft Corporation)
==================== Restore Points =========================
23-10-2025 16:17:20 Windows Update
23-10-2025 16:17:21 Windows Update
23-10-2025 16:17:22 Windows Update
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (10/23/2025 04:58:55 PM) (Source: Application Error) (EventID: 1000) (User: MARTIN)
Description: Název chybující aplikace: couatl64_MSFS2024.exe, verze: 5.0.0.6020, časové razítko: 0x68a72d4d
Název chybujícího modulu: clr.dll, verze: 4.8.9221.0, časové razítko: 0x68531fc6
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000000657c
ID chybujícího procesu: 0x3f68
Čas spuštění chybující aplikace: 0x1dc442d689920c9
Cesta k chybující aplikaci: C:\Program Files (x86)\Addon Manager\couatl64\couatl64_MSFS2024.exe
Cesta k chybujícímu modulu: C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll
ID sestavy: bd235fdc-8ff3-48c4-8281-1b55a6039010
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:
Error: (10/23/2025 04:58:54 PM) (Source: .NET Runtime) (EventID: 1023) (User: )
Description: Aplikace: couatl64_MSFS2024.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu vnitřní chyby v modulu .NET Runtime na IP adrese 00007FF954C1657C (00007FF954C10000) s ukončovacím kódem 80131506.
Error: (10/23/2025 04:57:19 PM) (Source: Application Error) (EventID: 1000) (User: MARTIN)
Description: Název chybující aplikace: couatl64_MSFS2024.exe, verze: 5.0.0.6020, časové razítko: 0x68a72d4d
Název chybujícího modulu: clr.dll, verze: 4.8.9221.0, časové razítko: 0x68531fc6
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000000657c
ID chybujícího procesu: 0x1fa8
Čas spuštění chybující aplikace: 0x1dc442884631d7e
Cesta k chybující aplikaci: C:\Program Files (x86)\Addon Manager\couatl64\couatl64_MSFS2024.exe
Cesta k chybujícímu modulu: C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll
ID sestavy: 631f05b0-5b61-4f44-8056-e4f7e3bb33da
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:
Error: (10/23/2025 04:57:18 PM) (Source: .NET Runtime) (EventID: 1023) (User: )
Description: Aplikace: couatl64_MSFS2024.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu vnitřní chyby v modulu .NET Runtime na IP adrese 00007FF954C1657C (00007FF954C10000) s ukončovacím kódem 80131506.
Error: (10/22/2025 07:21:48 PM) (Source: Application Error) (EventID: 1000) (User: MARTIN)
Description: Název chybující aplikace: couatl64_MSFS2024.exe, verze: 5.0.0.6020, časové razítko: 0x68a72d4d
Název chybujícího modulu: clr.dll, verze: 4.8.9221.0, časové razítko: 0x68531fc6
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000000657c
ID chybujícího procesu: 0x4460
Čas spuštění chybující aplikace: 0x1dc43784c912a3e
Cesta k chybující aplikaci: C:\Program Files (x86)\Addon Manager\couatl64\couatl64_MSFS2024.exe
Cesta k chybujícímu modulu: C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll
ID sestavy: 26fb93d4-d7bb-4f1c-a910-5887123fd6c9
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:
Error: (10/22/2025 07:21:48 PM) (Source: .NET Runtime) (EventID: 1023) (User: )
Description: Aplikace: couatl64_MSFS2024.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu vnitřní chyby v modulu .NET Runtime na IP adrese 00007FFFB471657C (00007FFFB4710000) s ukončovacím kódem 80131506.
Error: (10/22/2025 07:20:48 PM) (Source: Application Error) (EventID: 1000) (User: MARTIN)
Description: Název chybující aplikace: couatl64_MSFS2024.exe, verze: 5.0.0.6020, časové razítko: 0x68a72d4d
Název chybujícího modulu: clr.dll, verze: 4.8.9221.0, časové razítko: 0x68531fc6
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000000657c
ID chybujícího procesu: 0x76dc
Čas spuštění chybující aplikace: 0x1dc437828c711af
Cesta k chybující aplikaci: C:\Program Files (x86)\Addon Manager\couatl64\couatl64_MSFS2024.exe
Cesta k chybujícímu modulu: C:\Windows\Microsoft.NET\Framework64\v4.0.30319\clr.dll
ID sestavy: 784e5660-3ee9-4fbc-8ecc-93c2dfb18fe2
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:
Error: (10/22/2025 07:20:48 PM) (Source: .NET Runtime) (EventID: 1023) (User: )
Description: Aplikace: couatl64_MSFS2024.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu vnitřní chyby v modulu .NET Runtime na IP adrese 00007FFFB471657C (00007FFFB4710000) s ukončovacím kódem 80131506.
System errors:
=============
Error: (10/23/2025 04:01:35 PM) (Source: DCOM) (EventID: 10029) (User: MARTIN)
Description: U aktivace identifikátoru CLSID Windows.Media.Capture.Internal.AppCaptureShell vypršel časový limit během čekání na zastavení služby BcastDVRUserService_6f60e.
Error: (10/23/2025 03:57:34 PM) (Source: DCOM) (EventID: 10029) (User: MARTIN)
Description: U aktivace identifikátoru CLSID Windows.Media.Capture.AppCaptureManager vypršel časový limit během čekání na zastavení služby BcastDVRUserService_6f60e.
Error: (10/22/2025 09:14:59 PM) (Source: DCOM) (EventID: 10010) (User: MARTIN)
Description: Server {6FA05A24-B1DF-4155-909E-7B424F2D2BB5} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/22/2025 09:14:59 PM) (Source: DCOM) (EventID: 10010) (User: MARTIN)
Description: Server {3E11DF0F-42EB-4747-9A35-802D98B5BCF0} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/22/2025 09:13:23 PM) (Source: DCOM) (EventID: 10029) (User: MARTIN)
Description: U aktivace identifikátoru CLSID Windows.Media.Capture.Internal.AppCaptureShell vypršel časový limit během čekání na zastavení služby BcastDVRUserService_6f60e.
Error: (10/22/2025 09:09:22 PM) (Source: DCOM) (EventID: 10029) (User: MARTIN)
Description: U aktivace identifikátoru CLSID Windows.Media.Capture.AppCaptureManager vypršel časový limit během čekání na zastavení služby BcastDVRUserService_6f60e.
Error: (10/22/2025 08:03:50 PM) (Source: DCOM) (EventID: 10010) (User: MARTIN)
Description: Server {AB8902B4-09CA-4BB6-B78D-A8F59079A8D5} se v daném časovém limitu neregistroval u služby DCOM.
Error: (10/22/2025 08:03:46 PM) (Source: DCOM) (EventID: 10010) (User: MARTIN)
Description: Server {3E11DF0F-42EB-4747-9A35-802D98B5BCF0} se v daném časovém limitu neregistroval u služby DCOM.
Windows Defender:
================
Date: 2025-10-23 19:00:35
Description:
Antivirová ochrana v programu Microsoft Defender ѕсдπ ђдŝ ьέεη ŝţоφрєð вĕƒőřë ċõmрĺεţíθñ.%ή %ŧŠçāʼn ĬÐ:%ъ{5A55C83B-40ED-4B1B-A155-07C9593EFB81}%ⁿ %ťŚ¢αʼn Τÿр℮:%вAntimalwarový program%ŋ %ţŠсаņ Рäřдмėŧēřş:%вRychlé prohledávání%ń %τŪšεг:%ьNT AUTHORITY\SYSTEM%ʼn %ťŚŧòρ Řêâšóп:%ъŜ¢ĥзδůŀėď ѕčаň ẃªś ѕκϊφρзđ ъε¢άύśé тнė ļǻşт šџ¢čзššƒцľ śĉåή ώãŝ щīŧнĩň τћė ľάŝŧ 7 đªγś
Date: 2025-10-20 19:33:08
Description:
Antivirová ochrana v programu Microsoft Defender ѕсдπ ђдŝ ьέεη ŝţоφрєð вĕƒőřë ċõmрĺεţíθñ.%ή %ŧŠçāʼn ĬÐ:%ъ{4B62860C-3498-49DC-83AB-126B71C2B793}%ⁿ %ťŚ¢αʼn Τÿр℮:%вAntimalwarový program%ŋ %ţŠсаņ Рäřдмėŧēřş:%вRychlé prohledávání%ń %τŪšεг:%ьNT AUTHORITY\SYSTEM%ʼn %ťŚŧòρ Řêâšóп:%ъŠĉђэδџŀêđ śĉąŋ щªѕ ŝќïрρęđ ъęćâџŝĕ ţħĕ ℓάšť ѕµ¢¢ëšśƒùļ ѕсǻπ ẃāš ẅīтђĭń τћз ļàśť 7 δαýŝ
Date: 2025-10-16 19:14:06
Description:
Antivirová ochrana v programu Microsoft Defender ѕсдπ ђдŝ ьέεη ŝţоφрєð вĕƒőřë ċõmрĺεţíθñ.%ή %ŧŠçāʼn ĬÐ:%ъ{CD123A72-B046-4787-8F1C-13F1454CABB3}%ⁿ %ťŚ¢αʼn Τÿр℮:%вAntimalwarový program%ŋ %ţŠсаņ Рäřдмėŧēřş:%вRychlé prohledávání%ń %τŪšεг:%ьNT AUTHORITY\SYSTEM%ʼn %ťŚŧòρ Řêâšóп:%ъŠĉђэδџŀêđ śĉąŋ щªѕ ŝќïрρęđ ъęćâџŝĕ ţħĕ ℓάšť ѕµ¢¢ëšśƒùļ ѕсǻπ ẃāš ẅīтђĭń τћз ļàśť 7 δαýŝ
Date: 2025-10-14 19:58:57
Description:
Antivirová ochrana v programu Microsoft Defender ѕсдπ ђдŝ ьέεη ŝţоφрєð вĕƒőřë ċõmрĺεţíθñ.%ή %ŧŠçāʼn ĬÐ:%ъ{D4CCB7E5-7064-40E5-9472-87A5CB570608}%ⁿ %ťŚ¢αʼn Τÿр℮:%вAntimalwarový program%ŋ %ţŠсаņ Рäřдмėŧēřş:%вRychlé prohledávání%ń %τŪšεг:%ьNT AUTHORITY\SYSTEM%ʼn %ťŚŧòρ Řêâšóп:%ъЯΡĊ ¢óņпęçτϊõп гůńđоẁπ
Date: 2025-10-14 12:14:11
Description:
Antivirová ochrana v programu Microsoft Defender ѕсдπ ђдŝ ьέεη ŝţоφрєð вĕƒőřë ċõmрĺεţíθñ.%ή %ŧŠçāʼn ĬÐ:%ъ{F2E6CB8F-9E49-4A3C-8937-90D51F401BAD}%ⁿ %ťŚ¢αʼn Τÿр℮:%вAntimalwarový program%ŋ %ţŠсаņ Рäřдмėŧēřş:%вRychlé prohledávání%ń %τŪšεг:%ьNT AUTHORITY\SYSTEM%ʼn %ťŚŧòρ Řêâšóп:%ъŠĉђэδџŀêđ śĉąŋ щªѕ ŝќïрρęđ ъęćâџŝĕ ţħĕ ℓάšť ѕµ¢¢ëšśƒùļ ѕсǻπ ẃāš ẅīтђĭń τћз ļàśť 7 δαýŝ
Event[0]
Date: 2025-08-24 15:53:15
Description:
Funkce Ochrana v reálném čase u prohledávání Antivirová ochrana v programu Microsoft Defender zjistila chybu a došlo k jejímu selhání.
Funkce: Při přístupu
Kód chyby: 0x8007043c
Popis chyby: Tuto službu nelze spustit v nouzovém režimu.
Důvod: Antimalwarové bezpečnostní informace přestaly z neznámých důvodů fungovat. V některých případech se tento problém dá vyřešit restartováním služby.
Date: 2025-08-18 19:10:53
Description:
Funkce Ochrana v reálném čase u prohledávání Antivirová ochrana v programu Microsoft Defender zjistila chybu a došlo k jejímu selhání.
Funkce: Při přístupu
Kód chyby: 0x8007043c
Popis chyby: Tuto službu nelze spustit v nouzovém režimu.
Důvod: Antimalwarové bezpečnostní informace přestaly z neznámých důvodů fungovat. V některých případech se tento problém dá vyřešit restartováním služby.
Date: 2025-08-18 19:09:38
Description:
Funkce Ochrana v reálném čase u prohledávání Antivirová ochrana v programu Microsoft Defender zjistila chybu a došlo k jejímu selhání.
Funkce: Při přístupu
Kód chyby: 0x8007043c
Popis chyby: Tuto službu nelze spustit v nouzovém režimu.
Důvod: Antimalwarové bezpečnostní informace přestaly z neznámých důvodů fungovat. V některých případech se tento problém dá vyřešit restartováním služby.
CodeIntegrity:
===============
Date: 2025-10-21 18:28:33
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Microsoft\EdgeWebView\Application\141.0.3537.85\msedgewebview2.exe) attempted to load \Device\HarddiskVolume3\ProgramData\A-Volute\A-Volute.Nahimic\Modules\Scheduled\x64\AudioDevProps2.dll that did not meet the Microsoft signing level requirements.
Date: 2025-10-16 18:21:37
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Microsoft\EdgeWebView\Application\141.0.3537.71\msedgewebview2.exe) attempted to load \Device\HarddiskVolume3\ProgramData\A-Volute\A-Volute.Nahimic\Modules\Scheduled\x64\AudioDevProps2.dll that did not meet the Microsoft signing level requirements.
Date: 2025-10-10 09:22:15
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Microsoft\EdgeWebView\Application\141.0.3537.57\msedgewebview2.exe) attempted to load \Device\HarddiskVolume3\ProgramData\A-Volute\A-Volute.Nahimic\Modules\Scheduled\x64\AudioDevProps2.dll that did not meet the Microsoft signing level requirements.
Date: 2025-10-07 19:32:43
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files (x86)\Microsoft\EdgeWebView\Application\140.0.3485.94\msedgewebview2.exe) attempted to load \Device\HarddiskVolume3\ProgramData\A-Volute\A-Volute.Nahimic\Modules\Scheduled\x64\AudioDevProps2.dll that did not meet the Microsoft signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends International, LLC. 21.02 10/08/2025
Motherboard: ASRock Z790 Steel Legend WiFi
Processor: Intel(R) Core(TM) i7-14700K
Percentage of memory in use: 19%
Total physical RAM: 65295.25 MB
Available physical RAM: 52341.5 MB
Total Virtual: 69391.25 MB
Available Virtual: 51689.31 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:1862.12 GB) (Free:1190.27 GB) (Model: WD_BLACK SN770 2TB) NTFS
\\?\Volume{15f8162a-6101-4482-a6d7-c7d0ee34c194}\ () (Fixed) (Total:0.78 GB) (Free:0.1 GB) NTFS
\\?\Volume{a3314b53-6b5b-465c-97cc-70ba011d202f}\ () (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Protective MBR) (Size: 1863 GB) (Disk ID: 00000000)
Partition: GPT.
==================== End of Addition.txt =======================