Stránka 1 z 1

Mcafee zbavte mě toho díky

Napsal: 04 pro 2025 15:00
od Thomas
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-11-2025
Ran by pc (administrator) on DESKTOP-TA0JUN9 (04-12-2025 14:56:28)
Running from C:\Users\pc\Desktop\FRST64.exe
Loaded Profiles: pc
Platform: Microsoft Windows 11 Home Version 25H2 26200.7171 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(atiesrxx.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe
(C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe ->) (Adguard Software Limited -> Adguard Software Limited) C:\Program Files\AdGuard\Adguard.exe
(C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe ->) (Nokia -> Nokia) C:\Program Files (x86)\Nokia\Nokia PC Suite 7\CommunicationCentre.exe
(C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe ->) (Nokia -> Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclRSSrv.exe
(C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe ->) (Nokia -> Nokia) C:\Program Files (x86)\PC Connectivity Solution\Transports\NclUSBSrv64.exe
(C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvtray.exe
(C:\Users\pc\AppData\Local\Programs\Opera\opera.exe ->) (Opera Norway AS -> Opera Software) C:\Users\pc\AppData\Local\Programs\Opera\90.0.4480.48\opera_crashreporter.exe
(explorer.exe ->) (Nokia -> Nokia) C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe
(explorer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe
(explorer.exe ->) (Opera Norway AS -> Opera Software) C:\Users\pc\AppData\Local\Programs\Opera\opera.exe <21>
(Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7>
(nvvsvc.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\Display\nvxdsync.exe
(services.exe ->) (Adguard Software Limited -> Adguard Software Limited) C:\Program Files\AdGuard\AdguardSvc.exe
(services.exe ->) (FOXIT SOFTWARE INC. -> Foxit Software Inc.) C:\Program Files\Common Files\Foxit\Foxit PDF Reader\FoxitPDFReaderUpdateService.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\NisSrv.exe
(services.exe ->) (Nokia -> Nokia) C:\Program Files (x86)\PC Connectivity Solution\ServiceLayer.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPISvr.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\nvvsvc.exe <2>
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.151.0.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Users\pc\AppData\Local\Microsoft\OneDrive\25.209.1026.0002\FileCoAuth.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\DataExchangeHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [NvBackend] => C:\Program Files (x86)\NVIDIA Corporation\Update Core\NvBackend.exe [1794888 2015-06-29] (NVIDIA Corporation -> NVIDIA Corporation)
HKLM\...\Run: [Adguard] => C:\Program Files\AdGuard\Adguard.exe [7439960 2025-10-15] (Adguard Software Limited -> Adguard Software Limited)
HKU\S-1-5-21-3448014884-476748778-2740803645-1001\...\Run: [MicrosoftEdgeAutoLaunch_72FC07CE8FBC282A90F28F3BD5668C8E] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4253736 2025-11-20] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3448014884-476748778-2740803645-1001\...\Run: [Opera Browser Assistant] => C:\Users\pc\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [4812752 2022-08-18] (Opera Norway AS -> Opera Software)
HKU\S-1-5-21-3448014884-476748778-2740803645-1001\...\Run: [PC Suite Tray] => C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [1516632 2012-06-26] (Nokia -> Nokia)
HKLM\...\Windows x64\Print Processors\SXP3MPC: C:\Windows\System32\spool\prtprocs\x64\sxp3mpc.dll [33792 2009-04-07] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Server 2003 DDK provider)
HKLM\...\Print\Monitors\SXP3M Langmon: C:\Windows\system32\sxp3ml6.dll [34304 2012-11-05] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> "C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe" --first-run

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {F89A1F21-BFDA-4E58-B68C-ABD02436F6B7} - System32\Tasks\CCleaner 7 - Skip UAC - S-1-5-21-3448014884-476748778-2740803645-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [4856440 2025-12-04] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {9F5E3B95-9A8A-415F-87B2-F91FB17A7BA2} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\MpCmdRun.exe [1790656 2025-11-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {56DCBBCD-19AF-446B-A955-9BF1E01D23FA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\MpCmdRun.exe [1790656 2025-11-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B7742690-B0A9-4B5B-86B1-46502CB1972A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\MpCmdRun.exe [1790656 2025-11-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {53E79D5D-0C5A-4FD7-810D-493FCCA79367} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\MpCmdRun.exe [1790656 2025-11-28] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {6ADF0C69-0F63-476F-BCC4-AAD7504D979B} - System32\Tasks\OneDrive Startup Task-S-1-5-21-3448014884-476748778-2740803645-1001 => C:\Users\pc\AppData\Local\Microsoft\OneDrive\25.209.1026.0002\OneDriveLauncher.exe [727440 2025-11-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {0E90446E-31D9-4B5A-A61C-46BF7B6F65C8} - System32\Tasks\Opera scheduled assistant Autoupdate 1764836611 => C:\Users\pc\AppData\Local\Programs\Opera\launcher.exe -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\pc\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {191BBD55-EA42-48DA-943C-EBB8C23B5B5C} - System32\Tasks\Opera scheduled Autoupdate 1764836604 => C:\Users\pc\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [6189528 2025-11-19] (Opera Norway AS -> Opera Software)
Task: {5AEDC271-7FFC-45A1-824D-CCBA06BA3C91} - System32\Tasks\Piriform\CCleaner 7 - S-1-5-21-3448014884-476748778-2740803645-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [4856440 2025-12-04] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {DEBC3617-9B1C-4C42-9092-F4BF2A583CCB} - System32\Tasks\Piriform\CCleaner 7 - Scheduled Cleaning - default - S-1-5-21-3448014884-476748778-2740803645-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [4856440 2025-12-04] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {6FE0E4DB-C688-428C-8755-538DDCB2F36C} - System32\Tasks\Piriform\CCleaner 7 BugReport => C:\Program Files\Piriform\CCleaner 7\CCleanerBugReport.exe [6274680 2025-12-04] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --product 234 --programpath "C:\Program Files\Piriform\CCleaner 7" --configpath "C:\Program Files\Piriform\CCleaner 7\data" --path "C:\Program Files\Piriform\CCleaner 7\log" --path "C:\Program Files\Piriform\CCleaner 7\data\dumps" --logpath "C:\Program Files\Piriform\CCleaner 7 (the data entry has 58 more characters).
Task: {E49930E0-309C-4E42-9124-531A70942B0C} - System32\Tasks\Piriform\CCleaner 7 Update => C:\Program Files\Common Files\Piriform\Icarus\piriform-ccl\icarus.exe [9239776 2025-11-25] (Gen Digital Inc. -> Gen Digital Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.1.0.3 8.8.8.8
Tcpip\..\Interfaces\{51ab050b-879f-438d-86c0-a54ea98d3edb}: [DhcpNameServer] 10.1.0.3 8.8.8.8

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\pc\AppData\Local\Microsoft\Edge\User Data\Default [2025-12-04]
Edge Extension: (Dokumenty Google offline) - C:\Users\pc\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-11-28]
Edge Extension: (Edge relevant text changes) - C:\Users\pc\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2025-11-28]
Edge Profile: C:\Users\pc\AppData\Local\Microsoft\Edge\User Data\Profile 1 [2025-12-04]
Edge Extension: (Dokumenty Google offline) - C:\Users\pc\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-12-04]
Edge Extension: (Edge relevant text changes) - C:\Users\pc\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2025-12-04]

FireFox:
========
FF DefaultProfile: d11myxk4.default
FF ProfilePath: C:\Users\pc\AppData\Roaming\Mozilla\Firefox\Profiles\d11myxk4.default [2025-12-04]
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2025-09-20] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2025-09-20] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xdp -> C:\Program Files\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2025-09-20] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/vnd.xfdf -> C:\Program Files\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2025-09-20] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.21 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin-x32: @foxitsoftware.com/Foxit Reader Plugin,version=1.0,application/pdf -> C:\Program Files\Foxit Software\Foxit PDF Reader\plugins\npFoxitPDFReaderPlugin.dll [2025-09-20] (FOXIT SOFTWARE INC. -> Foxit Corporation)
FF Plugin-x32: @nvidia.com/3DVision -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dv.dll [2015-06-29] (NVIDIA Corporation PE Sign v2014 -> NVIDIA Corporation) [File not signed]
FF Plugin-x32: @nvidia.com/3DVisionStreaming -> C:\Program Files (x86)\NVIDIA Corporation\3D Vision\npnv3dvstreaming.dll [2015-06-29] (NVIDIA Corporation PE Sign v2014 -> NVIDIA Corporation) [File not signed]

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default [2025-12-04]
CHR Notifications: Default -> hxxps://5fdyaqqmcte5jg.valnero.co.in; hxxps://d4oh0du071bc73a72chg.valnero.co.in; hxxps://d4oh5a6071bc73a76s90.metricboosthub.com; hxxps://d4oh5bu071bc73a76tt0.flowboosthub.com; hxxps://uclc261tncmi42.valnero.co.in; hxxps://www.facebook.com; hxxps://www.youtube.com
CHR DefaultSearchURL: Default -> hxxps://search.seznam.cz/?q={searchTerms}
CHR DefaultSearchKeyword: Default -> seznam
CHR DefaultNewTabURL: Default -> hxxps://search.seznam.cz/newtab
CHR DefaultSuggestURL: Default -> hxxps://suggest.seznam.cz/fulltext_ff?phrase={searchTerms}
CHR Extension: (Dokumenty Google offline) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-12-04]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\pc\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2025-12-04]

Opera:
=======
OPR Profile: C:\Users\pc\AppData\Roaming\Opera Software\Opera Stable [2025-12-04]
OPR Notifications: Opera Stable -> hxxps://www.amateri.com; hxxps://www.youtube.com
OPR DefaultSuggestURL: Opera Stable -> hxxps://www.google.com/complete/search?client=o ... utEncoding}
OPR Extension: (Rich Hints Agent) - C:\Users\pc\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2025-12-04]
OPR Extension: (Opera Wallet) - C:\Users\pc\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2025-12-04]
OPR Extension: (Amazon Assistant Promotion) - C:\Users\pc\AppData\Roaming\Opera Software\Opera Stable\Extensions\kbmoiomgmchbpihhdpabemajcbjpcijk [2025-12-04]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 Adguard Service; C:\Program Files\AdGuard\AdguardSvc.exe [805464 2025-10-15] (Adguard Software Limited -> Adguard Software Limited)
R2 CCleaner7; C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe [28341880 2025-12-04] (Gen Digital Inc. -> Gen Digital Inc.)
R2 FoxitReaderUpdateService; C:\Program Files\Common Files\Foxit\Foxit PDF Reader\FoxitPDFReaderUpdateService.exe [3069024 2025-09-14] (FOXIT SOFTWARE INC. -> Foxit Software Inc.)
S3 LibreOfficeMaintenance; C:\Program Files\LibreOffice\program\update_service.exe [122792 2025-11-06] (The Document Foundation -> The Document Foundation)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\MpDefenderCoreService.exe [2026184 2025-11-28] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\NisSrv.exe [4414480 2025-11-28] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\MsMpEng.exe [282440 2025-11-28] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 adgnetworkwfpdrv; C:\Windows\System32\drivers\adgnetworkwfpdrv.sys [115928 2025-08-14] (Microsoft Windows Hardware Compatibility Publisher -> Adguard Software Limited)
S3 AtiDCM; C:\Windows\Temp\atdcm64a.sys [33992 2015-03-26] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) <==== ATTENTION
R3 KslD; C:\Windows\System32\drivers\wd\KslD.sys [333192 2025-11-28] (Microsoft Windows -> Microsoft Corporation)
S3 nmwcd; C:\Windows\system32\drivers\ccdcmbx64.sys [19968 2012-01-09] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
S3 nmwcdc; C:\Windows\system32\drivers\ccdcmbox64.sys [27136 2012-01-09] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
S3 pccsmcfd; C:\Windows\system32\DRIVERS\pccsmcfdx64.sys [26112 2012-06-11] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
S3 upperdev; C:\Windows\system32\DRIVERS\usbser_lowerfltx64.sys [9216 2012-01-09] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
S3 UsbserFilt; C:\Windows\system32\DRIVERS\usbser_lowerfltjx64.sys [9216 2012-01-09] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [20904 2025-11-28] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [629168 2025-11-28] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [102792 2025-11-28] (Microsoft Windows -> Microsoft Corporation)
S2 DgiVecp; \??\C:\Windows\system32\Drivers\DgiVecp.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2025-12-04 14:56 - 2025-12-04 14:56 - 000018116 _____ C:\Users\pc\Desktop\FRST.txt
2025-12-04 14:56 - 2025-12-04 14:56 - 000000000 ____D C:\FRST
2025-12-04 14:54 - 2025-12-04 14:54 - 002444288 _____ (Farbar) C:\Users\pc\Desktop\FRST64.exe
2025-12-04 10:59 - 2025-12-04 14:48 - 000000000 ____D C:\ProgramData\Adguard
2025-12-04 10:59 - 2025-12-04 10:59 - 000001985 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\AdGuard.lnk
2025-12-04 10:59 - 2025-12-04 10:59 - 000000000 ____D C:\Users\pc\AppData\Roaming\Adguard Software Limited
2025-12-04 10:59 - 2025-12-04 10:59 - 000000000 ____D C:\Users\pc\AppData\Local\Adguard_Software_Limited
2025-12-04 10:59 - 2025-12-04 10:59 - 000000000 ____D C:\Program Files\AdGuard
2025-12-04 10:41 - 2025-12-04 10:41 - 000003268 _____ C:\Windows\system32\Tasks\CCleaner 7 - Skip UAC - S-1-5-21-3448014884-476748778-2740803645-1001
2025-12-04 10:40 - 2025-12-04 10:40 - 000056128 _____ (Gen Digital Inc.) C:\Windows\system32\icarus_rvrt.exe
2025-12-04 10:40 - 2025-12-04 10:40 - 000002152 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CCleaner 7.lnk
2025-12-04 10:40 - 2025-12-04 10:40 - 000000000 ____D C:\Windows\system32\Tasks\Piriform
2025-12-04 10:40 - 2025-12-04 10:40 - 000000000 ____D C:\Users\pc\AppData\Roaming\CCleaner
2025-12-04 10:40 - 2025-12-04 10:40 - 000000000 ____D C:\ProgramData\Piriform
2025-12-04 10:40 - 2025-12-04 10:40 - 000000000 ____D C:\Program Files\Piriform
2025-12-04 10:40 - 2025-12-04 10:40 - 000000000 ____D C:\Program Files\Common Files\Piriform
2025-12-04 10:35 - 2025-12-04 10:35 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xerox Phaser 3140 and 3155
2025-12-04 10:34 - 2025-12-04 10:34 - 010106843 _____ C:\Users\pc\Downloads\Phaser_3140-3155_Win8_32-bit_and_64-bit_GDI.exe
2025-12-04 10:34 - 2025-12-04 10:34 - 000000000 ____D C:\Xerox
2025-12-04 10:34 - 2025-12-04 10:34 - 000000000 ____D C:\Program Files (x86)\Xerox
2025-12-04 10:34 - 2012-11-05 17:57 - 000011576 _____ (Samsung Electronics) C:\Windows\system32\Drivers\SSPORT.SYS
2025-12-04 10:13 - 2025-12-04 10:13 - 000677108 _____ C:\Windows\system32\perfh005.dat
2025-12-04 10:13 - 2025-12-04 10:13 - 000144960 _____ C:\Windows\system32\perfc005.dat
2025-12-04 09:57 - 2025-12-04 09:57 - 000001040 _____ C:\ProgramData\Microsoft\Windows\Start Menu\VueScan x64.lnk
2025-12-04 09:57 - 2025-12-04 09:57 - 000000000 ____D C:\Windows\twain_64
2025-12-04 09:57 - 2025-12-04 09:57 - 000000000 ____D C:\Users\pc\AppData\Local\vuescan
2025-12-04 09:56 - 2025-12-04 09:56 - 000000000 ____D C:\Program Files\VueScan
2025-12-04 09:55 - 2025-12-04 09:55 - 050019408 _____ (Hamrick Software) C:\Users\pc\Downloads\vuex64-9.8.49.exe
2025-12-04 09:52 - 2025-12-04 09:52 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_ccdcmbx64_01009.Wdf
2025-12-04 09:51 - 2025-12-04 09:52 - 000000000 ____D C:\Users\pc\AppData\Roaming\PC Suite
2025-12-04 09:51 - 2025-12-04 09:52 - 000000000 ____D C:\Users\pc\AppData\Roaming\Nokia
2025-12-04 09:51 - 2025-12-04 09:51 - 000000000 ____D C:\ProgramData\PC Suite
2025-12-04 09:45 - 2025-12-04 09:45 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Nokia PC Suite
2025-12-04 09:45 - 2025-12-04 09:45 - 000000000 ____D C:\Program Files\DIFX
2025-12-04 09:44 - 2025-12-04 09:45 - 000000000 ____D C:\Program Files (x86)\Nokia
2025-12-04 09:44 - 2025-12-04 09:44 - 000000000 ____D C:\ProgramData\Installations
2025-12-04 09:44 - 2025-12-04 09:44 - 000000000 ____D C:\Program Files (x86)\PC Connectivity Solution
2025-12-04 09:43 - 2025-12-04 09:44 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FastStone Image Viewer
2025-12-04 09:43 - 2025-12-04 09:44 - 000000000 ____D C:\Program Files (x86)\FastStone Image Viewer
2025-12-04 09:42 - 2025-12-04 09:42 - 067963216 _____ () C:\Users\pc\Downloads\Nokia_PC_Suite_ALL.exe
2025-12-04 09:42 - 2025-12-04 09:42 - 001736128 _____ (Gen Digital Inc.) C:\Users\pc\Downloads\ccsetup_online_setup.exe
2025-12-04 09:41 - 2025-12-04 09:41 - 008777744 _____ (FastStone Corporation) C:\Users\pc\Downloads\FSViewerSetup83.exe
2025-12-04 09:33 - 2025-12-04 09:33 - 000000000 ____D C:\Users\pc\Downloads\AdGuardVPNForWindows-2.7.0
2025-12-04 09:30 - 2025-12-04 09:30 - 000005947 _____ C:\Users\pc\Downloads\AdGuardVPNForWindows-2.7.0.zip
2025-12-04 09:30 - 2025-12-04 09:30 - 000000000 ____D C:\Users\pc\AppData\Roaming\WinRAR
2025-12-04 09:30 - 2025-01-20 09:44 - 000002676 ____N C:\README.md
2025-12-04 09:30 - 2025-01-20 09:44 - 000000351 ____N C:\CHANGELOG.md
2025-12-04 09:30 - 2025-01-20 09:44 - 000000000 ____D C:\.github
2025-12-04 09:23 - 2025-12-04 09:24 - 000004208 _____ C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1764836604
2025-12-04 09:23 - 2025-12-04 09:24 - 000001377 _____ C:\Users\pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2025-12-04 09:23 - 2025-12-04 09:23 - 000004430 _____ C:\Windows\system32\Tasks\Opera scheduled assistant Autoupdate 1764836611
2025-12-04 09:23 - 2025-12-04 09:23 - 000000000 ____D C:\Users\pc\AppData\Roaming\Opera Software
2025-12-04 09:23 - 2025-12-04 09:23 - 000000000 ____D C:\Users\pc\AppData\Local\Opera Software
2025-12-04 09:22 - 2025-12-04 09:22 - 088732944 _____ (Opera Software) C:\Users\pc\Downloads\Opera_90.0.4480.48_Setup_x64.exe
2025-12-04 08:57 - 2025-12-04 08:57 - 000001228 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Mozilla Firefox.lnk
2025-12-04 08:57 - 2025-12-04 08:57 - 000000000 ____D C:\Users\pc\AppData\Roaming\Mozilla
2025-12-04 08:57 - 2025-12-04 08:57 - 000000000 ____D C:\Users\pc\AppData\Local\Mozilla
2025-12-04 08:57 - 2025-12-04 08:57 - 000000000 ____D C:\ProgramData\Mozilla
2025-12-04 08:57 - 2025-12-04 08:57 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2025-12-04 08:57 - 2025-12-04 08:57 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2025-12-04 06:52 - 2025-12-04 06:55 - 000000000 ____D C:\Windows\system32\Tasks\GoogleUserPEH
2025-12-04 05:27 - 2025-12-04 05:27 - 000000000 ____D C:\Users\pc\AppData\Local\Google
2025-11-29 11:28 - 2025-11-29 11:28 - 000000000 ____D C:\Users\pc\AppData\Roaming\LibreOffice
2025-11-29 11:28 - 2025-11-29 11:28 - 000000000 ____D C:\Users\pc\AppData\Roaming\doublecmd
2025-11-29 11:28 - 2025-11-29 11:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Double Commander
2025-11-29 11:28 - 2025-11-29 11:28 - 000000000 ____D C:\Program Files\Double Commander
2025-11-29 11:23 - 2025-11-29 11:23 - 000000000 ____D C:\Users\Public\Foxit Software
2025-11-29 11:23 - 2025-11-29 11:23 - 000000000 ____D C:\Users\Public\Documents\Foxit Software
2025-11-29 11:23 - 2025-11-29 11:23 - 000000000 ____D C:\Users\pc\AppData\Roaming\Foxit Software
2025-11-29 11:23 - 2025-11-29 11:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Foxit PDF Reader
2025-11-29 11:23 - 2025-11-29 11:23 - 000000000 ____D C:\ProgramData\Foxit Software
2025-11-29 11:23 - 2025-11-29 11:23 - 000000000 ____D C:\Program Files\Foxit Software
2025-11-29 11:23 - 2025-11-29 11:23 - 000000000 ____D C:\Program Files\Common Files\Foxit
2025-11-29 11:22 - 2025-11-29 11:22 - 000000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice
2025-11-29 11:22 - 2025-11-29 11:22 - 000000000 ____D C:\Program Files (x86)\dotnet
2025-11-29 11:21 - 2025-11-29 11:21 - 000000929 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\GIMP 3.0.6-1.lnk
2025-11-29 11:21 - 2025-11-29 11:21 - 000000000 ____D C:\Program Files\LibreOffice
2025-11-29 11:19 - 2025-11-29 11:20 - 000000000 ____D C:\Program Files\GIMP 3
2025-11-29 11:19 - 2025-11-29 11:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VideoLAN
2025-11-29 11:19 - 2025-11-29 11:19 - 000000000 ____D C:\Program Files\VideoLAN
2025-11-29 11:18 - 2025-12-04 10:11 - 000000000 ____D C:\Program Files (x86)\Google
2025-11-29 11:18 - 2025-11-29 11:18 - 000000000 ____D C:\Users\pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2025-11-29 11:18 - 2025-11-29 11:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2025-11-29 11:18 - 2025-11-29 11:18 - 000000000 ____D C:\Program Files\WinRAR
2025-11-29 11:17 - 2025-11-29 11:17 - 000000000 ____D C:\INST_NINITE
2025-11-28 10:14 - 2025-11-28 10:14 - 000000000 ____D C:\Users\pc\AppData\Local\NVIDIA
2025-11-28 10:14 - 2025-11-28 10:14 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2025-11-28 10:06 - 2025-12-04 10:08 - 000000000 ____D C:\ProgramData\NVIDIA
2025-11-28 10:06 - 2025-11-28 10:06 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2025-11-28 10:06 - 2025-11-28 10:06 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2025-11-28 10:06 - 2025-11-28 10:06 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2025-11-28 10:06 - 2015-06-29 22:53 - 031514312 _____ (NVIDIA Corporation) C:\Windows\system32\nvoglv64.dll
2025-11-28 10:06 - 2015-06-29 22:53 - 024200336 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvoglv32.dll
2025-11-28 10:06 - 2015-06-29 22:53 - 022992072 _____ (NVIDIA Corporation) C:\Windows\system32\nvcompiler.dll
2025-11-28 10:06 - 2015-06-29 22:53 - 018634264 _____ (NVIDIA Corporation) C:\Windows\system32\nvwgf2umx.dll
2025-11-28 10:06 - 2015-06-29 22:53 - 017559432 _____ (NVIDIA Corporation) C:\Windows\system32\nvd3dumx.dll
2025-11-28 10:06 - 2015-06-29 22:53 - 016128768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvwgf2um.dll
2025-11-28 10:06 - 2015-06-29 22:53 - 015294280 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcompiler.dll
2025-11-28 10:06 - 2015-06-29 22:53 - 014497568 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvd3dum.dll
2025-11-28 10:06 - 2015-06-29 22:53 - 013916600 _____ (NVIDIA Corporation) C:\Windows\system32\nvopencl.dll
2025-11-28 10:06 - 2015-06-29 22:53 - 013828032 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2025-11-28 10:06 - 2015-06-29 22:53 - 012896400 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvlddmkm.sys
2025-11-28 10:06 - 2015-06-29 22:53 - 011272240 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvopencl.dll
2025-11-28 10:06 - 2015-06-29 22:53 - 011209192 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2025-11-28 10:06 - 2015-06-29 22:53 - 004245832 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2025-11-28 10:06 - 2015-06-29 22:53 - 003986632 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2025-11-28 10:06 - 2015-06-29 22:53 - 003209736 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2025-11-28 10:06 - 2015-06-29 22:53 - 002823992 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2025-11-28 10:06 - 2015-06-29 22:53 - 001907400 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispco6434174.dll
2025-11-28 10:06 - 2015-06-29 22:53 - 001557832 _____ (NVIDIA Corporation) C:\Windows\system32\nvdispgenco6434174.dll
2025-11-28 10:06 - 2015-06-29 22:53 - 000945480 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2025-11-28 10:06 - 2015-06-29 22:53 - 000907464 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2025-11-28 10:06 - 2015-06-29 22:53 - 000903496 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2025-11-28 10:06 - 2015-06-29 22:53 - 000870032 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2025-11-28 10:06 - 2015-06-29 22:53 - 000026155 _____ C:\Windows\system32\nvinfo.pb
2025-11-28 10:06 - 2015-06-29 21:42 - 006783304 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2025-11-28 10:06 - 2015-06-29 21:42 - 003522192 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvc64.dll
2025-11-28 10:06 - 2015-06-29 21:42 - 002558792 _____ (NVIDIA Corporation) C:\Windows\system32\nvsvcr.dll
2025-11-28 10:06 - 2015-06-29 21:42 - 000932040 _____ (NVIDIA Corporation) C:\Windows\system32\nvvsvc.exe
2025-11-28 10:06 - 2015-06-29 21:42 - 000385352 _____ (NVIDIA Corporation) C:\Windows\system32\nvmctray.dll
2025-11-28 10:06 - 2015-06-29 21:42 - 000062792 _____ (NVIDIA Corporation) C:\Windows\system32\nvshext.dll
2025-11-28 10:06 - 2015-06-29 20:07 - 000606920 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvStreaming.exe
2025-11-28 10:06 - 2015-06-29 12:02 - 004437364 _____ C:\Windows\system32\nvcoproc.bin
2025-11-28 10:06 - 2013-11-28 13:38 - 000197408 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2025-11-28 10:06 - 2013-11-28 13:38 - 000031520 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdap64.dll
2025-11-28 10:06 - 2013-11-22 08:36 - 001515296 _____ (NVIDIA Corporation) C:\Windows\system32\nvhdagenco6420103.dll
2025-11-28 10:02 - 2025-12-04 05:56 - 000000000 ____D C:\ProgramData\Whesvc
2025-11-28 08:29 - 2025-11-28 08:29 - 000000000 ____D C:\Users\pc\AppData\Roaming\ATI
2025-11-28 08:29 - 2025-11-28 08:29 - 000000000 ____D C:\Users\pc\AppData\Local\ATI
2025-11-28 08:29 - 2025-11-28 08:29 - 000000000 ____D C:\Users\pc\AppData\Local\AMD
2025-11-28 08:28 - 2025-11-28 08:28 - 000000000 ____D C:\Users\pc\AppData\Local\Comms
2025-11-28 08:05 - 2025-12-04 12:27 - 000000000 ____D C:\Windows\CbsTemp
2025-11-28 08:01 - 2025-11-28 08:01 - 000079894 _____ C:\Windows\SysWOW64\ctac.json
2025-11-28 08:01 - 2025-11-28 08:01 - 000079894 _____ C:\Windows\system32\ctac.json
2025-11-28 08:01 - 2025-11-28 08:01 - 000035082 _____ C:\Windows\SysWOW64\IntegratedServicesRegionPolicySet.json
2025-11-28 08:01 - 2025-11-28 08:01 - 000035082 _____ C:\Windows\system32\IntegratedServicesRegionPolicySet.json
2025-11-28 07:35 - 2025-12-04 10:59 - 000000000 ____D C:\ProgramData\Package Cache
2025-11-28 07:35 - 2025-11-28 10:12 - 000000000 ____D C:\ProgramData\AMD
2025-11-28 07:34 - 2025-11-28 07:34 - 000000000 ____D C:\Program Files\Common Files\ATI Technologies
2025-11-28 07:34 - 2025-11-28 07:34 - 000000000 ____D C:\Program Files\AMD
2025-11-28 07:34 - 2025-11-28 07:34 - 000000000 ____D C:\AMD
2025-11-28 07:34 - 2025-11-28 07:34 - 000000000 _____ C:\Windows\ativpsrm.bin
2025-11-28 07:33 - 2025-11-28 07:33 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_amdpsp_01011.Wdf
2025-11-28 07:31 - 2025-11-28 07:31 - 000000000 ____D C:\Windows\system32\MRT
2025-11-28 07:24 - 2025-11-28 07:24 - 000000000 ____D C:\Users\pc\AppData\Roaming\Microsoft\MMC
2025-11-28 07:23 - 2025-12-04 10:08 - 000002482 _____ C:\Windows\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2025-11-28 07:23 - 2025-12-04 06:51 - 000000000 ____D C:\Users\pc\AppData\Local\PlaceholderTileLogoFolder
2025-11-28 07:22 - 2025-11-28 08:29 - 000003588 _____ C:\Windows\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3448014884-476748778-2740803645-1001
2025-11-28 07:22 - 2025-11-28 08:29 - 000003564 _____ C:\Windows\system32\Tasks\OneDrive Startup Task-S-1-5-21-3448014884-476748778-2740803645-1001
2025-11-28 07:22 - 2025-11-28 08:29 - 000003372 _____ C:\Windows\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-3448014884-476748778-2740803645-1001
2025-11-28 07:22 - 2025-11-28 08:29 - 000002370 _____ C:\Users\pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-11-28 07:22 - 2025-11-28 07:22 - 000000000 ___RD C:\Users\pc\OneDrive
2025-11-28 07:21 - 2025-11-28 07:21 - 000000000 ____D C:\Users\pc\AppData\Local\Publishers
2025-11-28 07:21 - 2025-11-28 07:21 - 000000000 ____D C:\ProgramData\Microsoft OneDrive
2025-11-28 07:20 - 2025-12-04 10:06 - 000000000 ____D C:\Users\pc\AppData\Local\D3DSCache
2025-11-28 07:20 - 2025-12-04 07:56 - 000000000 ____D C:\Users\pc
2025-11-28 07:20 - 2025-12-04 06:46 - 000000000 ____D C:\Users\pc\AppData\Local\Packages
2025-11-28 07:20 - 2025-12-04 05:36 - 000000000 ____D C:\Users\pc\AppData\Roaming\Microsoft\Spelling
2025-11-28 07:20 - 2025-11-28 07:20 - 000000020 ___SH C:\Users\pc\ntuser.ini
2025-11-28 07:20 - 2025-11-28 07:20 - 000000000 SHDJL C:\Users\pc\Šablony
2025-11-28 07:20 - 2025-11-28 07:20 - 000000000 SHDJL C:\Users\pc\Soubory cookie
2025-11-28 07:20 - 2025-11-28 07:20 - 000000000 SHDJL C:\Users\pc\Poslední
2025-11-28 07:20 - 2025-11-28 07:20 - 000000000 SHDJL C:\Users\pc\Okolní tiskárny
2025-11-28 07:20 - 2025-11-28 07:20 - 000000000 SHDJL C:\Users\pc\Okolní síť
2025-11-28 07:20 - 2025-11-28 07:20 - 000000000 SHDJL C:\Users\pc\Nabídka Start
2025-11-28 07:20 - 2025-11-28 07:20 - 000000000 SHDJL C:\Users\pc\Dokumenty
2025-11-28 07:20 - 2025-11-28 07:20 - 000000000 SHDJL C:\Users\pc\Documents\Obrázky
2025-11-28 07:20 - 2025-11-28 07:20 - 000000000 SHDJL C:\Users\pc\Documents\Hudba
2025-11-28 07:20 - 2025-11-28 07:20 - 000000000 SHDJL C:\Users\pc\Documents\Filmy
2025-11-28 07:20 - 2025-11-28 07:20 - 000000000 SHDJL C:\Users\pc\Data aplikací
2025-11-28 07:20 - 2025-11-28 07:20 - 000000000 SHDJL C:\Users\pc\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2025-11-28 07:20 - 2025-11-28 07:20 - 000000000 SHDJL C:\Users\pc\AppData\Local\Data aplikací
2025-11-28 07:20 - 2025-11-28 07:20 - 000000000 __RHD C:\Users\Public\AccountPictures
2025-11-28 07:20 - 2025-11-28 07:20 - 000000000 ___SD C:\Users\pc\AppData\Roaming\Microsoft\SystemCertificates
2025-11-28 07:20 - 2025-11-28 07:20 - 000000000 ___SD C:\Users\pc\AppData\Roaming\Microsoft\Protect
2025-11-28 07:20 - 2025-11-28 07:20 - 000000000 ___SD C:\Users\pc\AppData\Roaming\Microsoft\Crypto
2025-11-28 07:20 - 2025-11-28 07:20 - 000000000 ___SD C:\Users\pc\AppData\Roaming\Microsoft\Credentials
2025-11-28 07:20 - 2025-11-28 07:20 - 000000000 ____D C:\Users\pc\AppData\Roaming\Microsoft\Windows
2025-11-28 07:20 - 2025-11-28 07:20 - 000000000 ____D C:\Users\pc\AppData\Roaming\Microsoft\Vault
2025-11-28 07:20 - 2025-11-28 07:20 - 000000000 ____D C:\Users\pc\AppData\Roaming\Microsoft\Network
2025-11-28 07:20 - 2025-11-28 07:20 - 000000000 ____D C:\Users\pc\AppData\Roaming\Adobe
2025-11-28 07:20 - 2025-11-28 07:20 - 000000000 ____D C:\Users\pc\AppData\Local\VirtualStore
2025-11-28 07:20 - 2025-11-28 07:20 - 000000000 ____D C:\Users\pc\AppData\Local\ConnectedDevicesPlatform
2025-11-28 07:16 - 2025-12-04 10:13 - 001603790 _____ C:\Windows\system32\PerfStringBackup.INI
2025-11-28 07:12 - 2025-11-29 11:35 - 000000000 ____D C:\ProgramData\Packages
2025-11-28 07:12 - 2025-11-28 07:12 - 000000000 SHDJL C:\Users\Public\Documents\Obrázky
2025-11-28 07:12 - 2025-11-28 07:12 - 000000000 SHDJL C:\Users\Public\Documents\Hudba
2025-11-28 07:12 - 2025-11-28 07:12 - 000000000 SHDJL C:\Users\Public\Documents\Filmy
2025-11-28 07:12 - 2025-11-28 07:12 - 000000000 SHDJL C:\Users\Default\Šablony
2025-11-28 07:12 - 2025-11-28 07:12 - 000000000 SHDJL C:\Users\Default\Soubory cookie
2025-11-28 07:12 - 2025-11-28 07:12 - 000000000 SHDJL C:\Users\Default\Poslední
2025-11-28 07:12 - 2025-11-28 07:12 - 000000000 SHDJL C:\Users\Default\Okolní tiskárny
2025-11-28 07:12 - 2025-11-28 07:12 - 000000000 SHDJL C:\Users\Default\Okolní síť
2025-11-28 07:12 - 2025-11-28 07:12 - 000000000 SHDJL C:\Users\Default\Nabídka Start
2025-11-28 07:12 - 2025-11-28 07:12 - 000000000 SHDJL C:\Users\Default\Dokumenty
2025-11-28 07:12 - 2025-11-28 07:12 - 000000000 SHDJL C:\Users\Default\Documents\Obrázky
2025-11-28 07:12 - 2025-11-28 07:12 - 000000000 SHDJL C:\Users\Default\Documents\Hudba
2025-11-28 07:12 - 2025-11-28 07:12 - 000000000 SHDJL C:\Users\Default\Documents\Filmy
2025-11-28 07:12 - 2025-11-28 07:12 - 000000000 SHDJL C:\Users\Default\Data aplikací
2025-11-28 07:12 - 2025-11-28 07:12 - 000000000 SHDJL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2025-11-28 07:12 - 2025-11-28 07:12 - 000000000 SHDJL C:\Users\Default\AppData\Local\Data aplikací
2025-11-28 07:12 - 2025-11-28 07:12 - 000000000 SHDJL C:\ProgramData\Šablony
2025-11-28 07:12 - 2025-11-28 07:12 - 000000000 SHDJL C:\ProgramData\Plocha
2025-11-28 07:12 - 2025-11-28 07:12 - 000000000 SHDJL C:\ProgramData\Nabídka Start
2025-11-28 07:12 - 2025-11-28 07:12 - 000000000 SHDJL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2025-11-28 07:12 - 2025-11-28 07:12 - 000000000 SHDJL C:\ProgramData\Dokumenty
2025-11-28 07:12 - 2025-11-28 07:12 - 000000000 SHDJL C:\ProgramData\Data aplikací
2025-11-28 07:12 - 2025-11-28 07:12 - 000000000 SHDJL C:\Documents and Settings
2025-11-28 07:09 - 2025-12-04 14:47 - 000000000 ____D C:\Windows\system32\SleepStudy
2025-11-28 07:09 - 2025-12-04 10:08 - 000012288 ___SH C:\DumpStack.log.tmp
2025-11-28 07:09 - 2025-12-04 10:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2025-11-28 07:09 - 2025-12-04 05:27 - 000458000 _____ C:\Windows\system32\FNTCACHE.DAT
2025-11-28 07:09 - 2025-11-30 17:05 - 000003714 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{6AEAB7D9-D0A1-4809-8CF7-2C1398486A43}
2025-11-28 07:09 - 2025-11-30 17:05 - 000003588 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{83848FD4-EF3D-45BA-A6D2-66F61A382044}
2025-11-28 07:09 - 2025-11-28 10:12 - 000000000 ____D C:\Windows\system32\Drivers\wd
2025-11-28 07:09 - 2025-11-28 08:12 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-11-28 07:09 - 2025-11-28 07:09 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2025-11-28 07:09 - 2025-11-28 07:09 - 000000000 ____D C:\Windows\system32\config\BFS
2025-11-28 07:09 - 2025-11-28 07:09 - 000000000 ____D C:\Windows\ServiceProfiles
2025-11-28 07:08 - 2025-12-04 05:28 - 000000000 ____D C:\Windows\Panther

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2025-12-04 13:13 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\SystemTemp
2025-12-04 10:38 - 2024-04-01 08:24 - 000000000 ____D C:\Windows\INF
2025-12-04 10:10 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-12-04 10:07 - 2024-04-01 08:21 - 000262144 _____ C:\Windows\system32\config\BBI
2025-12-04 06:51 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\AppReadiness
2025-12-04 05:28 - 2024-04-01 08:26 - 000000000 ___HD C:\Program Files\WindowsApps
2025-11-28 10:12 - 2024-04-01 08:26 - 000000000 ___RD C:\Program Files\Windows Defender
2025-11-28 10:06 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\Help
2025-11-28 08:25 - 2025-09-15 20:44 - 000000000 ____D C:\Windows\system32\ruxim
2025-11-28 08:25 - 2025-09-15 20:44 - 000000000 ____D C:\Windows\InboxApps
2025-11-28 08:25 - 2024-04-01 17:30 - 000000000 ____D C:\Windows\system32\Microsoft-Edge-WebView
2025-11-28 08:25 - 2024-04-01 17:28 - 000000000 ____D C:\Windows\SysWOW64\cs
2025-11-28 08:25 - 2024-04-01 17:28 - 000000000 ____D C:\Windows\system32\cs
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\UUS
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\SysWOW64\setup
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\SysWOW64\InstallShield
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\SysWOW64\Dism
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\SystemResources
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\WinMetadata
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\WinBioPlugIns
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\vi-VN
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ur-PK
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ug-CN
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\tt-RU
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\te-IN
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ta-IN
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\sq-AL
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ShellExperiences
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\setup
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\SecureBootUpdates
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\quz-PE
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\qps-plocm
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\qps-ploc
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\pa-IN
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\or-IN
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\oobe
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\nn-NO
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ne-NP
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\mt-MT
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\mr-IN
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ml-IN
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\mk-MK
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\mi-NZ
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\migwiz
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\lv-LV
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\lt-LT
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\lo-LA
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\lb-LU
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\kok-IN
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\kn-IN
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\km-KH
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\kk-KZ
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ka-GE
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\is-IS
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\id-ID
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\hy-AM
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\hi-IN
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\HealthAttestationClient
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\gu-IN
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\gl-ES
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\gd-GB
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ga-IE
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\fil-PH
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\fa-IR
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\eu-ES
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\et-EE
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\es-MX
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\Dism
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\DDFs
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\cy-GB
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ca-ES
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\bn-IN
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\be-BY
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\as-IN
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\appraiser
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\am-ET
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\af-ZA
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\ShellExperiences
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\ShellComponents
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\Provisioning
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\DiagTrack
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\BrowserCore
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\bcastdvr
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\USOPrivate
2025-11-28 08:25 - 2024-04-01 08:26 - 000000000 ____D C:\Program Files\Common Files\System
2025-11-28 08:25 - 2024-04-01 08:21 - 000000000 ____D C:\Windows\servicing
2025-11-28 07:45 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\appcompat
2025-11-28 07:38 - 2024-04-01 08:21 - 000032768 _____ C:\Windows\system32\config\ELAM
2025-11-28 07:36 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\SecurityHealth
2025-11-28 07:14 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\spool
2025-11-28 07:14 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\AppLocker
2025-11-28 07:12 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\WinBioDatabase
2025-11-28 07:12 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\ServiceState
2025-11-28 07:12 - 2024-04-01 08:26 - 000000000 ____D C:\Program Files\Windows NT
2025-11-28 07:09 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\Drivers\DriverData
2025-11-28 07:08 - 2024-04-01 08:26 - 000028672 _____ C:\Windows\system32\config\BCD-Template

==================== Files in the root of some directories ========

2025-07-05 23:21 - 2025-07-05 23:21 - 000000264 _____ () C:\ProgramData\fontcacheev1.dat

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20-11-2025
Ran by pc (04-12-2025 14:57:43)
Running from C:\Users\pc\Desktop
Microsoft Windows 11 Home Version 25H2 26200.7171 (X64) (2025-11-28 06:12:13)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-3448014884-476748778-2740803645-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3448014884-476748778-2740803645-503 - Limited - Disabled)
Guest (S-1-5-21-3448014884-476748778-2740803645-501 - Limited - Disabled)
pc (S-1-5-21-3448014884-476748778-2740803645-1001 - Administrator - Enabled) => C:\Users\pc
WDAGUtilityAccount (S-1-5-21-3448014884-476748778-2740803645-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

AdGuard (HKLM\...\{F7E7F6C0-052C-4290-927B-97B6A6314405}) (Version: 7.22.5225.0 - Adguard Software Limited) Hidden
AdGuard (HKLM-x32\...\{6d3e4a5a-5a74-49ed-a3e2-aaa31ad27fc1}) (Version: 7.22.5225.0 - Adguard Software Limited)
Aktualizace NVIDIA 10.4.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Update) (Version: 10.4.0 - NVIDIA Corporation)
Balíček ovladače systému Windows - Nokia Modem (02/25/2011 4.7) (HKLM\...\E0AC723A3DE3A04256288CADBBB011B112AED454) (Version: 02/25/2011 4.7 - Nokia)
Balíček ovladače systému Windows - Nokia Modem (02/25/2011 7.01.0.9) (HKLM\...\72A50F48CC5601190B9C4E74D81161693133E7F7) (Version: 02/25/2011 7.01.0.9 - Nokia)
Balíček ovladače systému Windows - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) (HKLM\...\62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F) (Version: 05/31/2012 7.1.2.0 - Nokia)
CCleaner 7 (HKLM\...\CCleaner 7) (Version: 7.2.1080.1295 - Piriform)
Double Commander (HKLM\...\Double Commander_is1) (Version: 1.1.30 - Alexander Koblov)
FastStone Image Viewer 8.3 (HKLM-x32\...\FastStone Image Viewer) (Version: 8.3 - FastStone Corporation)
Foxit PDF Reader (HKLM\...\{01A75E1E-7567-11F0-B81F-54BF64A63C26}) (Version: 2025.2.1.33197 - Foxit Software Inc.)
GIMP 3.0.6-1 (HKLM\...\GIMP-3_is1) (Version: 3.0.6.1 - The GIMP Team)
LibreOffice 25.8.3.2 (HKLM\...\{5370F9CB-D8E4-452D-A5DD-90EB7A6E5E1F}) (Version: 25.8.3.2 - The Document Foundation)
Microsoft .NET Host - 8.0.22 (x86) (HKLM-x32\...\{E3308628-44F2-49F2-B618-7735D528FAC2}) (Version: 64.88.42551 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.22 (x86) (HKLM-x32\...\{4560BF00-0D8D-4FE8-84BA-83A208E9CB97}) (Version: 64.88.42551 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.22 (x86) (HKLM-x32\...\{3BAD90A6-48B6-4C89-97FF-02FEB96227C1}) (Version: 64.88.42551 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 142.0.3595.94 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 142.0.3595.94 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKU\S-1-5-21-3448014884-476748778-2740803645-1001\...\OneDriveSetup.exe) (Version: 25.209.1026.0002 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.44.35211 (HKLM-x32\...\{d8bbe9f9-7c5b-42c6-b715-9ee898a2e515}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.44.35211 (HKLM-x32\...\{0b5169e3-39da-4313-808e-1f9c0407f3bf}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.44.35211 (HKLM\...\{86AB2CC9-08BD-4643-B0F9-F82D006D72FF}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.44.35211 (HKLM\...\{43B0D101-A022-48F4-9D04-BA404CEB1D53}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.44.35211 (HKLM-x32\...\{C18FB403-1E88-43C8-AD8A-CED50F23DE8B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.44.35211 (HKLM-x32\...\{922480B5-CAEB-4B1B-AAA4-9716EFDCE26B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.22 (x86) (HKLM-x32\...\{2d077ae0-4556-4d5a-aa87-4ea76e32ec2d}) (Version: 8.0.22.35428 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.22 (x86) (HKLM-x32\...\{AABE221C-DA7E-4DDA-9AD6-322E03B95E2D}) (Version: 64.88.42561 - Microsoft Corporation) Hidden
Mozilla Firefox 39.0 (x86 cs) (HKLM-x32\...\Mozilla Firefox 39.0 (x86 cs)) (Version: 39.0 - Mozilla)
Mozilla Maintenance Service (HKLM-x32\...\MozillaMaintenanceService) (Version: 39.0 - Mozilla)
MSVC90_x64 (HKLM\...\{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}) (Version: 1.0.1.2 - Nokia) Hidden
MSVC90_x86 (HKLM-x32\...\{AF111648-99A1-453E-81DD-80DBBF6DAD0D}) (Version: 1.0.1.2 - Nokia) Hidden
Nokia Connectivity Cable Driver (HKLM-x32\...\{A57025CC-5F2E-4D01-B387-06DB10500D43}) (Version: 7.1.78.0 - Nokia)
Nokia PC Suite (HKLM-x32\...\{866C4563-ED53-43F3-A29D-8BEE2BD1BA3C}) (Version: 7.1.180.94 - Nokia) Hidden
Nokia PC Suite (HKLM-x32\...\Nokia PC Suite) (Version: 7.1.180.94 - Nokia)
NVIDIA Ovladač 3D Vision 341.74 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.3DVision) (Version: 341.74 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.30.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.30.1 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 341.74 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 341.74 - NVIDIA Corporation)
NVIDIA Stereoscopic 3D Driver (HKLM-x32\...\NVIDIAStereo) (Version: 7.17.12.6514 - NVIDIA Corporation) Hidden
Opera Stable 124.0.5705.42 (HKU\S-1-5-21-3448014884-476748778-2740803645-1001\...\Opera 124.0.5705.42) (Version: 124.0.5705.42 - Opera Software)
PC Connectivity Solution (HKLM-x32\...\{644F4910-E812-49AD-93EC-86828CB81A0D}) (Version: 12.0.27.0 - Nokia)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.21 - VideoLAN)
VueScan x64 (HKLM\...\VueScan x64) (Version: 9.8.49.15 - Hamrick Software)
WinRAR 7.13 (64-bit) (HKLM\...\WinRAR archiver) (Version: 7.13.0 - win.rar GmbH)
Xerox Phaser 3140 and 3155 (HKLM-x32\...\Xerox Phaser 3140 and 3155) (Version: - )

Packages:
=========
Balíček prostředí funkcí systému Windows -> C:\Windows\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-11-28] (Microsoft Windows)
Balíček prostředí funkcí systému Windows -> C:\Windows\SystemApps\SxS\MicrosoftWindows.59379618.InpApp_cw5n1h2txyewy [2025-11-28] (Microsoft Windows)
HP Display Center -> C:\Program Files\WindowsApps\AD2F1837.HPDisplayCenter_2.4.4.0_x64__v10z8vjag6ke6 [2025-11-28] (HP Inc.) [Startup Task]
Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.103.0_x64__8wekyb3d8bbwe [2025-11-28] (Microsoft Corp.)
WinRAR -> C:\Program Files\WinRAR [2025-11-29] (win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3448014884-476748778-2740803645-1001_Classes\CLSID\{47E6DCAF-41F8-441C-BD0E-A50D5FE6C4D1}\localserver32 -> C:\Users\pc\AppData\Local\Microsoft\OneDrive\25.209.1026.0002\OneDrive.Sync.Service.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3448014884-476748778-2740803645-1001_Classes\CLSID\{917E8742-AA3B-7318-FA12-10485FB322A2}\localserver32 -> C:\Users\pc\AppData\Local\Microsoft\OneDrive\25.209.1026.0002\OneDrive.Sync.Service.exe (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3448014884-476748778-2740803645-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> "C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe" -toastactivated => No File
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => -> No File
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\system32\nvshext.dll [2015-06-29] (NVIDIA Corporation -> NVIDIA Corporation)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [MidisrvTransferComplete] => 0

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2012-06-26 13:08 - 2012-06-26 13:08 - 000026624 _____ (Nokia) [File not signed] C:\Program Files (x86)\Nokia\Nokia PC Suite 7\Lang\PhoneBrowser_cze.nlr
2012-06-26 11:58 - 2012-06-26 11:58 - 001262592 _____ (Nokia) [File not signed] C:\Program Files (x86)\Nokia\Nokia PC Suite 7\NGSCM64.DLL
2012-06-26 13:08 - 2012-06-26 13:08 - 000572928 _____ (Nokia) [File not signed] C:\Program Files (x86)\Nokia\Nokia PC Suite 7\Resource\PhoneBrowser_Nokia.ngr
2025-11-28 10:06 - 2015-06-29 20:08 - 001406200 _____ (NVIDIA Corporation PE Sign v2014 -> NVIDIA Corporation) [File not signed] C:\Program Files (x86)\NVIDIA Corporation\3D Vision\nvSCPAPI64.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) =============


==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2024-04-01 08:26 - 2024-04-01 08:24 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

==================== Network ===========================

(Currently there is no automatic fix for this section.)

DNS Servers: 10.1.0.3 - 8.8.8.8
Windows Firewall is enabled.

Network Binding:
=============
Ethernet: Realtek(R) PCI(e) Ethernet Controller -> rt640x64.sys

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\PC Connectivity Solution\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static
HKU\S-1-5-21-3448014884-476748778-2740803645-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\pc\Desktop\wp1990632.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)


==================== MSCONFIG/TASK MANAGER disabled items ==

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{439019BA-6F90-4AA5-8570-2587317718AD}] => (Allow) C:\Program Files\WindowsApps\MSTeams_25306.804.4102.7193_x64__8wekyb3d8bbwe\ms-teams_modulehost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{BDC11362-FCC5-4BFC-8718-228CC73DC640}] => (Allow) C:\Program Files\WindowsApps\MSTeams_25306.804.4102.7193_x64__8wekyb3d8bbwe\ms-teams_modulehost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{3A760854-66A5-461D-9453-44D6C4A2E51E}] => (Allow) C:\Program Files\WindowsApps\MSTeams_25306.804.4102.7193_x64__8wekyb3d8bbwe\ms-teams_modulehost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{740C656D-54ED-4DF8-A507-4839382EC625}] => (Allow) C:\Program Files\WindowsApps\MSTeams_25306.804.4102.7193_x64__8wekyb3d8bbwe\ms-teams_modulehost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{220F5AF2-4DEC-475B-8FE3-C1678D1ED596}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{50C9294A-DE16-4FD9-8B0B-C64A10CC10B8}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{56031FBF-5646-434F-9F25-C7DA01285CF3}] => (Allow) C:\Program Files\VueScan\vuescan.exe (Hamrick Software -> Hamrick Software)
FirewallRules: [{81FA9B1B-F047-454B-B6BA-9EC9DFA4DB3E}] => (Allow) C:\Program Files\VueScan\vuescan.exe (Hamrick Software -> Hamrick Software)
FirewallRules: [{D2BCFC73-5878-461B-8194-C73C7224ED43}] => (Allow) C:\Program Files\AdGuard\AdguardSvc.exe (Adguard Software Limited -> Adguard Software Limited)
FirewallRules: [{9502A9D2-22C0-4F54-9651-355F9A4C03A2}] => (Allow) C:\Program Files\AdGuard\Adguard.Launcher.exe (Adguard Software Limited -> Adguard Software Limited)
FirewallRules: [{461868BD-B0DE-454A-96F9-0B74B6F6597B}] => (Allow) C:\Program Files\AdGuard\Adguard.Launcher.Arm64.exe (Adguard Software Limited -> Adguard Software Limited)

==================== Restore Points =========================

04-12-2025 06:45:56 Windows Update

==================== Faulty Device Manager Devices ============

==================== Event log errors: ========================

Application errors:
==================
Error: (12/04/2025 12:29:42 PM) (Source: Application Error) (EventID: 1000) (User: NT AUTHORITY)
Description: Název chybující aplikace: TiWorker.exe, verze: 10.0.26100.7010, časové razítko: 0x54817d92
Název chybujícího modulu: ntdll.dll, verze: 10.0.26100.7019, časové razítko: 0x9c8f8241
Kód výjimky: 0xc0000005
Posun chyby: 0x0000000000078d5d
ID chybujícího procesu: 0x24f4
Čas spuštění chybující aplikace: 0x1dc6510fd14ede5
Cesta k chybující aplikaci: C:\Windows\winsxs\amd64_microsoft-windows-servicingstack_31bf3856ad364e35_10.0.26100.7010_none_a54d8be7772fd084\TiWorker.exe
Cesta k chybujícímu modulu: C:\Windows\SYSTEM32\ntdll.dll
ID sestavy: 01cfe601-9982-4239-a353-6879d24ebf95
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:

Error: (12/04/2025 10:07:37 AM) (Source: Application Error) (EventID: 1000) (User: NT AUTHORITY)
Description: Název chybující aplikace: atieclxx.exe, verze: 6.14.11.1199, časové razítko: 0x563a76a9
Název chybujícího modulu: atieclxx.exe, verze: 6.14.11.1199, časové razítko: 0x563a76a9
Kód výjimky: 0xc000041d
Posun chyby: 0x00000000000425c6
ID chybujícího procesu: 0xbcc
Čas spuštění chybující aplikace: 0x1dc64f4c9292ad7
Cesta k chybující aplikaci: C:\Windows\system32\atieclxx.exe
Cesta k chybujícímu modulu: C:\Windows\system32\atieclxx.exe
ID sestavy: c8df7f0f-62a6-4463-8e21-9a208118fbce
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:

Error: (12/04/2025 10:07:35 AM) (Source: Application Error) (EventID: 1000) (User: NT AUTHORITY)
Description: Název chybující aplikace: atieclxx.exe, verze: 6.14.11.1199, časové razítko: 0x563a76a9
Název chybujícího modulu: atieclxx.exe, verze: 6.14.11.1199, časové razítko: 0x563a76a9
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000000425c6
ID chybujícího procesu: 0xbcc
Čas spuštění chybující aplikace: 0x1dc64f4c9292ad7
Cesta k chybující aplikaci: C:\Windows\system32\atieclxx.exe
Cesta k chybujícímu modulu: C:\Windows\system32\atieclxx.exe
ID sestavy: 1f465e95-be1e-4b10-ab8f-f5079a013774
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:

Error: (12/04/2025 09:05:14 AM) (Source: Application Error) (EventID: 1000) (User: NT AUTHORITY)
Description: Název chybující aplikace: atieclxx.exe, verze: 6.14.11.1199, časové razítko: 0x563a76a9
Název chybujícího modulu: atieclxx.exe, verze: 6.14.11.1199, časové razítko: 0x563a76a9
Kód výjimky: 0xc000041d
Posun chyby: 0x00000000000425c6
ID chybujícího procesu: 0xbe0
Čas spuštění chybující aplikace: 0x1dc64f4339d99e9
Cesta k chybující aplikaci: C:\Windows\system32\atieclxx.exe
Cesta k chybujícímu modulu: C:\Windows\system32\atieclxx.exe
ID sestavy: cc22d2a1-3c76-42ad-96fe-502dbf17ae6c
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:

Error: (12/04/2025 09:05:11 AM) (Source: Application Error) (EventID: 1000) (User: NT AUTHORITY)
Description: Název chybující aplikace: atieclxx.exe, verze: 6.14.11.1199, časové razítko: 0x563a76a9
Název chybujícího modulu: atieclxx.exe, verze: 6.14.11.1199, časové razítko: 0x563a76a9
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000000425c6
ID chybujícího procesu: 0xbe0
Čas spuštění chybující aplikace: 0x1dc64f4339d99e9
Cesta k chybující aplikaci: C:\Windows\system32\atieclxx.exe
Cesta k chybujícímu modulu: C:\Windows\system32\atieclxx.exe
ID sestavy: b9271a80-8b27-471c-8933-778d8ded47ed
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:

Error: (12/04/2025 09:01:01 AM) (Source: Application Error) (EventID: 1000) (User: NT AUTHORITY)
Description: Název chybující aplikace: atieclxx.exe, verze: 6.14.11.1199, časové razítko: 0x563a76a9
Název chybujícího modulu: atieclxx.exe, verze: 6.14.11.1199, časové razítko: 0x563a76a9
Kód výjimky: 0xc000041d
Posun chyby: 0x00000000000425c6
ID chybujícího procesu: 0xbe0
Čas spuštění chybující aplikace: 0x1dc64f2e1126b56
Cesta k chybující aplikaci: C:\Windows\system32\atieclxx.exe
Cesta k chybujícímu modulu: C:\Windows\system32\atieclxx.exe
ID sestavy: 997e90de-b166-47f3-ba8d-bb8ebecd12bc
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:

Error: (12/04/2025 09:00:59 AM) (Source: Application Error) (EventID: 1000) (User: NT AUTHORITY)
Description: Název chybující aplikace: atieclxx.exe, verze: 6.14.11.1199, časové razítko: 0x563a76a9
Název chybujícího modulu: atieclxx.exe, verze: 6.14.11.1199, časové razítko: 0x563a76a9
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000000425c6
ID chybujícího procesu: 0xbe0
Čas spuštění chybující aplikace: 0x1dc64f2e1126b56
Cesta k chybující aplikaci: C:\Windows\system32\atieclxx.exe
Cesta k chybujícímu modulu: C:\Windows\system32\atieclxx.exe
ID sestavy: d6d23882-3003-4a7c-9d23-9191c0a1acfb
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:

Error: (12/04/2025 08:51:34 AM) (Source: Application Error) (EventID: 1000) (User: NT AUTHORITY)
Description: Název chybující aplikace: atieclxx.exe, verze: 6.14.11.1199, časové razítko: 0x563a76a9
Název chybujícího modulu: atieclxx.exe, verze: 6.14.11.1199, časové razítko: 0x563a76a9
Kód výjimky: 0xc000041d
Posun chyby: 0x00000000000425c6
ID chybujícího procesu: 0x768
Čas spuštění chybující aplikace: 0x1dc64edb66a2e30
Cesta k chybující aplikaci: C:\Windows\system32\atieclxx.exe
Cesta k chybujícímu modulu: C:\Windows\system32\atieclxx.exe
ID sestavy: 4d796b86-796c-46ff-a8d9-4c5c93cc58fd
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:


System errors:
=============
Error: (12/04/2025 10:34:51 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba DgiVecp neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.

Error: (12/04/2025 10:13:10 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:ASRock;FirmwareManufacturer:American Megatrends Inc.;FirmwareVersion:P1.40;OEMModelNumber:To Be Filled By O.E.M.;OEMModelBaseBoard:A320M Pro4 R2.0;OEMModelSystemFamily:To Be Filled By O.E.M.;OEMManufacturerName:To Be Filled By O.E.M.;OEMModelSKU:To Be Filled By O.E.M.;OSArchitecture:amd64;
BucketId: 18cb3dd0122b96ac0f3fed472d0b6393b29527ae987b6dcce198ec175f8d565e
BucketConfidenceLevel:
UpdateType: 0
HResult: 0

Error: (12/04/2025 10:07:35 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-TA0JUN9)
Description: Server {6FA05A24-B1DF-4155-909E-7B424F2D2BB5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (12/04/2025 10:07:35 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-TA0JUN9)
Description: Server {6FA05A24-B1DF-4155-909E-7B424F2D2BB5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (12/04/2025 09:44:58 AM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba ServiceLayer je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

Error: (12/04/2025 09:10:42 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:ASRock;FirmwareManufacturer:American Megatrends Inc.;FirmwareVersion:P1.40;OEMModelNumber:To Be Filled By O.E.M.;OEMModelBaseBoard:A320M Pro4 R2.0;OEMModelSystemFamily:To Be Filled By O.E.M.;OEMManufacturerName:To Be Filled By O.E.M.;OEMModelSKU:To Be Filled By O.E.M.;OSArchitecture:amd64;
BucketId: 18cb3dd0122b96ac0f3fed472d0b6393b29527ae987b6dcce198ec175f8d565e
BucketConfidenceLevel:
UpdateType: 0
HResult: 0

Error: (12/04/2025 09:05:11 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-TA0JUN9)
Description: Server {6FA05A24-B1DF-4155-909E-7B424F2D2BB5} se v daném časovém limitu neregistroval u služby DCOM.

Error: (12/04/2025 08:57:04 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:ASRock;FirmwareManufacturer:American Megatrends Inc.;FirmwareVersion:P1.40;OEMModelNumber:To Be Filled By O.E.M.;OEMModelBaseBoard:A320M Pro4 R2.0;OEMModelSystemFamily:To Be Filled By O.E.M.;OEMManufacturerName:To Be Filled By O.E.M.;OEMModelSKU:To Be Filled By O.E.M.;OSArchitecture:amd64;
BucketId: 18cb3dd0122b96ac0f3fed472d0b6393b29527ae987b6dcce198ec175f8d565e
BucketConfidenceLevel:
UpdateType: 0
HResult: 0


CodeIntegrity:
===============
Date: 2025-11-28 07:34:59
Description:
Code Integrity determined that a process (System) attempted to load \Device\HarddiskVolume3\Windows\Temp\atdcm64a.sys that did not meet the Authenticode signing level requirements or violated code integrity policy (Policy ID:{d2bda982-ccf6-4344-ac5b-0b44427b6816}).

Date: 2025-11-28 07:34:59
Description:
The driver \Device\HarddiskVolume3\Windows\Temp\atdcm64a.sys is blocked from loading as the driver has been revoked by Microsoft.

Date: 2025-11-28 07:34:59
Description:
Code Integrity determined that a process (System) attempted to load \Device\HarddiskVolume3\AMD\WU-CCC2\ccc2_install\Support64\atdcm64a.sys that did not meet the Authenticode signing level requirements or violated code integrity policy (Policy ID:{d2bda982-ccf6-4344-ac5b-0b44427b6816}).

Date: 2025-11-28 07:34:59
Description:
The driver \Device\HarddiskVolume3\AMD\WU-CCC2\ccc2_install\Support64\atdcm64a.sys is blocked from loading as the driver has been revoked by Microsoft.


==================== Memory info ===========================

BIOS: American Megatrends Inc. P1.40 07/03/2019
Motherboard: ASRock A320M Pro4 R2.0
Processor: AMD Ryzen 5 2600 Six-Core Processor
Percentage of memory in use: 34%
Total physical RAM: 16315.64 MB
Available physical RAM: 10679.34 MB
Total Virtual: 19259.64 MB
Available Virtual: 12305.29 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:464.83 GB) (Free:414.18 GB) (Model: Samsung SSD 980 PRO 500GB) NTFS

\\?\Volume{61d76b1b-d140-4131-b99f-c9eac70130ae}\ () (Fixed) (Total:0.71 GB) (Free:0.11 GB) NTFS
\\?\Volume{6f39cbd5-0be3-48ec-8738-f9a3fed9865e}\ () (Fixed) (Total:0.19 GB) (Free:0.16 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 465.8 GB) (Disk ID: 0EE6CDCC)

Partition: GPT.

==================== End of Addition.txt =======================

Re: Mcafee zbavte mě toho díky

Napsal: 04 pro 2025 15:05
od Rudy
Zdravím!
Co máte za problém s McAfee? McAfee je etablovaný antivirus a jak jsem se díval do logu, máte pouze WinDefender. Vy s ním chcete udělat co?

Re: Mcafee zbavte mě toho díky

Napsal: 04 pro 2025 15:16
od Thomas
Když jsem repasovanej pc zapnul začaly mi tam vyskakovat okna Mcafee, zkoušel jsem různý rady jak se toho zbavit, ale nepodařilo se mi to. Přišel jsem ovšem na to, že automaticky naskakuje pouze v prohlížeči Google Chrome, tak jsem ho odinstaloval a na Opeře se to neděje. Pokud tam tedy nikde není tak je to vyřešený, ale stejně to nechápu.

Re: Mcafee zbavte mě toho díky

Napsal: 04 pro 2025 15:18
od Rudy
Prozatím otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
S3 AtiDCM; C:\Windows\Temp\atdcm64a.sys [33992 2015-03-26] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) <==== ATTENTION
C:\DumpStack.log.tmp
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => -> No File

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

A příště, prosím, pište vše do jedoho postu. Děkuji

Re: Mcafee zbavte mě toho díky

Napsal: 04 pro 2025 15:27
od Thomas
Fix result of Farbar Recovery Scan Tool (x64) Version: 20-11-2025
Ran by pc (04-12-2025 15:22:02) Run:1
Running from C:\Users\pc\Desktop
Loaded Profiles: pc
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
S3 AtiDCM; C:\Windows\Temp\atdcm64a.sys [33992 2015-03-26] (Advanced Micro Devices, Inc. -> Advanced Micro Devices, Inc.) <==== ATTENTION
C:\DumpStack.log.tmp
ContextMenuHandlers5: [ACE] -> {5E2121EE-0300-11D4-8D3B-444553540000} => -> No File

EmptyTemp:
End
*****************

Processes closed successfully.
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
C:\Windows\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker" => removed successfully
HKLM\System\CurrentControlSet\Services\AtiDCM => removed successfully
AtiDCM => service removed successfully
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.
HKLM\Software\Classes\Directory\Background\ShellEx\ContextMenuHandlers\ACE => removed successfully
HKLM\Software\Classes\CLSID\{5E2121EE-0300-11D4-8D3B-444553540000} => removed successfully

=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 11676134 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B
Windows/system/drivers => 1217299 B
Edge => 0 B
Chrome => 329907909 B
Firefox => 2792495 B
Opera => 381493258 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => 2584 B
pc => 1535144395 B

RecycleBin => 109925592 B
EmptyTemp: => 2.2 GB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 04-12-2025 15:23:04)

C:\DumpStack.log.tmp => Could not move

==== End of Fixlog 15:23:04 ====

Re: Mcafee zbavte mě toho díky

Napsal: 04 pro 2025 15:48
od Rudy
Smazáno. Nastala nějaká změna?

Re: Mcafee zbavte mě toho díky

Napsal: 04 pro 2025 15:50
od Thomas
Snad dobrý, ale bylo to děsně otravný! Díky

:closed:

Posílám drobnej příspěvek na chod viry.cz :| :closed:

Re: Mcafee zbavte mě toho díky

Napsal: 04 pro 2025 19:19
od Rudy
To jsem rád. Nemáte zač! :)