Zpomalení PC
Napsal: 21 pro 2025 23:33
Náhled došlo k rapidnímu zpomalení mého PC. Pomohl az restart. Rád bych eliminoval moznost viru.
Zde je log
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-11-2025
Ran by jakub (administrator) on ROCKET (Micro-Star International Co., Ltd. MS-7B93) (21-12-2025 23:25:23)
Running from E:\Temp\01_Download\FRST64.exe
Loaded Profiles: jakub
Platform: Microsoft Windows 11 Pro Version 25H2 26200.7462 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(C:\Program Files\Corsair\Corsair iCUE5 Software\clink\Corsair.Service.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\Corsair iCUE5 Software\clink\Corsair.Service.CpuIdRemote64.exe
(C:\Program Files\Corsair\Corsair iCUE5 Software\iCUE.exe ->) (Corsair Memory, Inc. -> ) C:\Program Files\Corsair\Corsair iCUE5 Software\crashpad_handler.exe
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\egui.exe
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(C:\Program Files\Razer\RazerAppEngine\app-4.0.563\RazerAppEngine.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files\Razer\RazerAppEngine\app-4.0.563\CommonDLL\RzEngineMon.exe
(C:\Program Files\WindowsApps\AppleInc.AppleDevices_1.1536.29189.0_x64__nzyj5cx40ttqa\AppleMobileDeviceLauncher.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.AppleDevices_1.1536.29189.0_x64__nzyj5cx40ttqa\AppleMobileDeviceProcess.exe
(Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\Corsair iCUE5 Software\iCUE.exe
(explorer.exe ->) (Focusrite Audio Engineering Ltd -> Focusrite Audio Engineering, Ltd.) C:\Program Files\Focusrite\Drivers\Focusrite Notifier.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <13>
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE
(Razer USA Ltd. -> Razer Inc.) C:\Program Files\Razer\RazerAppEngine\app-4.0.563\RazerAppEngine.exe <9>
(services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\Corsair Device Control Service\bin\CorsairDeviceControlService.exe
(services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\Corsair iCUE5 Software\clink\Corsair.Service.exe
(services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\Corsair iCUE5 Software\CorsairCpuIdService.exe
(services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\Corsair iCUE5 Software\iCUEUpdateService.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\efwd.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
(services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Windows\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_6558957747ed9640\logi_lamparray_service.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) C:\Windows\System32\CorsairGamingAudioCfgService64.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_3496fbfac7a2d1ba\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Razer USA Ltd. -> Razer Inc) C:\Program Files (x86)\Razer\Razer Services\GMS3\GameManagerService3.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc) C:\Program Files\Razer\razer_elevation_service\razer_elevation_service.exe
(services.exe ->) (Samsung Electronics Co., Ltd. -> Clonix & CottonCandy) C:\Program Files (x86)\Samsung\Samsung Magician\MigrationService\MigrationService.exe
(services.exe ->) (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagicianSVC.exe
(sihost.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.AppleDevices_1.1536.29189.0_x64__nzyj5cx40ttqa\AppleMobileDeviceLauncher.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.195.0.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe <4>
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [285616 2025-11-26] (ESET, spol. s r.o. -> ESET)
HKLM\...\Run: [Corsair iCUE5 Software] => C:\Program Files\Corsair\Corsair iCUE5 Software\iCUE Launcher.exe [189480 2024-08-24] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
HKLM\...\Run: [Focusrite Notifier] => C:\Program Files\Focusrite\Drivers\Focusrite Notifier.exe [907352 2024-09-19] (Focusrite Audio Engineering Ltd -> Focusrite Audio Engineering, Ltd.)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-3823661678-3611372174-1390376250-1001\...\Run: [MicrosoftEdgeAutoLaunch_4F2B1FC128F21355E1EB1FD267A7E60E] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4228688 2025-12-18] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3823661678-3611372174-1390376250-1001\...\Run: [Opera Browser Assistant] => C:\Users\jakub\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [3996064 2024-03-04] (Opera Norway AS -> Opera Software)
HKU\S-1-5-21-3823661678-3611372174-1390376250-1001\...\Run: [RazerAppEngine] => C:\Program Files\Razer\RazerAppEngine\RazerAppEngine.exe [853640 2025-08-07] (Razer USA Ltd. -> Razer Inc.)
HKU\S-1-5-18\...\Run: [RazerAppEngine] => C:\Program Files\Razer\RazerAppEngine\RazerAppEngine.exe [853640 2025-08-07] (Razer USA Ltd. -> Razer Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> "C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe" --first-run
Startup: C:\Users\jakub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Luminar Neo.lnk [2025-12-02]
ShortcutTarget: Luminar Neo.lnk -> C:\Program Files\Skylum\Luminar Neo\Luminar Neo.exe (Skylum Software USA, Inc. -> Skylum)
Startup: C:\Users\jakub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Poslat do aplikace OneNote.lnk [2023-10-22]
ShortcutTarget: Poslat do aplikace OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {4EBF6227-3BA0-41F1-AFF7-72C90E4C6ED0} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16659248 2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {4270CE07-77B9-4DDE-868F-27F163CACEA1} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28946240 2025-12-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {902D07CC-C43A-4A89-90CD-DF28F5F01D47} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe [70976 2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {FA6BC42D-14F0-479C-AB31-35B419B5929F} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28946240 2025-12-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {C542223A-7EF4-43B7-A732-6698C4714A8E} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311040 2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {7DA9B7D9-ECB6-496D-B37C-F0008D27A689} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311040 2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {53584DDE-82DB-44F2-B293-14237968D061} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [1347344 2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {0E6A2C5B-989F-4807-8C59-92576735C3C5} - System32\Tasks\Microsoft\Office\Office Startup Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16659248 2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {0523A107-B8BD-4873-9352-CFA9FA432093} - System32\Tasks\Microsoft\Windows\Setup\PITRTask => {093cb270-c282-4c22-b2ea-7d2bf1c30bbf} C:\WINDOWS\system32\oobe\PITRTask.dll [118784 2025-12-02] (Microsoft Windows -> Microsoft Corporation)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {C412C875-726F-4919-93E8-77FD4F0F59E5} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [696960 2025-12-19] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {BE4AE9C4-6067-4C95-96AB-47E1F2447032} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-3823661678-3611372174-1390376250-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [696960 2025-12-19] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {533B461D-2E7D-4F9E-BC32-56D17DC474A4} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34944 2025-12-19] (Mozilla Corporation -> Mozilla Foundation)
Task: {0BC677D4-80A3-4122-B9DE-B38683E01937} - System32\Tasks\Opera scheduled assistant Autoupdate 1703177349 => C:\Users\jakub\AppData\Local\Programs\Opera\launcher.exe -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\jakub\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {343BFF92-4D92-4F71-951B-9104378FA1A8} - System32\Tasks\Opera scheduled Autoupdate 1703177349 => C:\Users\jakub\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [6189528 2025-11-19] (Opera Norway AS -> Opera Software)
Task: {412ADA0D-0099-48A8-B793-8688A91FF4B1} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe [154438440 2025-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) -> C:\Program Files (x86)\Samsung\Samsung Magician\\--disable-gpu-sandbox /AUTOHIDE
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.50.1
Tcpip\..\Interfaces\{2e946ed5-d0cd-4e94-a4e1-5b06e09eaf8f}: [DhcpNameServer] 192.168.50.1
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\jakub\AppData\Local\Microsoft\Edge\User Data\Default [2025-12-21]
Edge HomePage: Default -> hxxps://www.google.cz/
Edge StartupUrls: Default -> "hxxps://www.google.cz/"
Edge NewTab: Default -> Not-active:"chrome-extension://onagfgjlokaciajhjmajljcfanonbmia/index.html"
Edge DefaultSearchURL: Default -> hxxps://duckduckgo.com/?q={searchTerms}
Edge DefaultSearchKeyword: Default -> duckduckgo.com
Edge DefaultNewTabURL: Default -> hxxps://duckduckgo.com/chrome_newtab
Edge DefaultSuggestURL: Default -> hxxps://duckduckgo.com/ac/?q={searchTerms}&type=list
Edge Extension: (Edge relevant text changes) - C:\Users\jakub\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]
Edge Extension: (Privacy Badger) - C:\Users\jakub\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mkejgcgkdlddbggjhhflekkondicpnop [2025-12-12]
Edge Extension: (uBlock Origin) - C:\Users\jakub\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\odfafepnkmbhccpbejgmiehpchacaeak [2025-11-28]
Edge Extension: (Custom New Tab) - C:\Users\jakub\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\onagfgjlokaciajhjmajljcfanonbmia [2023-10-21]
FireFox:
========
FF DefaultProfile: 0ciywr5v.default
FF ProfilePath: C:\Users\jakub\AppData\Roaming\Mozilla\Firefox\Profiles\52s79vo0.default-release [2025-12-10]
FF Homepage: Mozilla\Firefox\Profiles\52s79vo0.default-release -> chrome://browser/content/blanktab.html
FF Extension: (New Tab) - C:\Users\jakub\AppData\Roaming\Mozilla\Firefox\Profiles\52s79vo0.default-release\Extensions\newtab@mozilla.org.xpi [2025-11-30]
FF Extension: (uBlock Origin) - C:\Users\jakub\AppData\Roaming\Mozilla\Firefox\Profiles\52s79vo0.default-release\Extensions\uBlock0@raymondhill.net.xpi [2025-12-07]
FF ProfilePath: C:\Users\jakub\AppData\Roaming\Mozilla\Firefox\Profiles\0ciywr5v.default [2022-05-18]
FF ProfilePath: C:\Users\jakub\AppData\Roaming\Mozilla\Firefox\Profiles\60julwhd.default-nightly [2025-08-28]
FF Extension: (Privacy Badger) - C:\Users\jakub\AppData\Roaming\Mozilla\Firefox\Profiles\60julwhd.default-nightly\Extensions\jid1-MnnxcxisBPnSXQ@jetpack.xpi [2023-09-16]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-12-08] (Microsoft Corporation -> Microsoft Corporation)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\eset_security_config_overlay.js [2025-12-21]
Chrome:
=======
CHR Profile: C:\Users\jakub\AppData\Local\Google\Chrome\User Data\Default [2025-12-13]
CHR DownloadDir: D:\10_General\10_Temp\01_Download
CHR HomePage: Default -> hxxps://www.google.cz/
CHR DefaultSearchURL: Default -> hxxps://duckduckgo.com/?q={searchTerms}
CHR DefaultSearchKeyword: Default -> duckduckgo.com
CHR DefaultNewTabURL: Default -> hxxps://duckduckgo.com/chrome_newtab
CHR DefaultSuggestURL: Default -> hxxps://duckduckgo.com/ac/?q={searchTerms}&type=list
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\jakub\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-05-14]
Opera:
=======
OPR DefaultProfile: Default
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 battlenet_helpersvc; C:\ProgramData\Battle.net_components\battlenet_helpersvc\AgentHelper.exe [3386064 2025-09-18] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13419408 2025-12-16] (Microsoft Corporation -> Microsoft Corporation)
R2 CMigrationService; C:\Program Files (x86)\Samsung\Samsung Magician\MigrationService\MigrationService.exe [765736 2025-11-11] (Samsung Electronics Co., Ltd. -> Clonix & CottonCandy)
R3 CorsairCpuIdService; C:\Program Files\Corsair\Corsair iCUE5 Software\CorsairCpuIdService.exe [300584 2024-08-24] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
R3 CorsairDeviceControlService; C:\Program Files\Corsair\Corsair Device Control Service\bin\CorsairDeviceControlService.exe [2368040 2024-08-02] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
S3 CorsairDeviceListerService; C:\Program Files\Corsair\Corsair iCUE5 Software\CorsairDeviceListerService.exe [175656 2024-08-24] (Corsair Memory, Inc. -> )
R2 CorsairGamingAudioConfig; C:\Windows\System32\CorsairGamingAudioCfgService64.exe [613952 2024-08-24] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.)
R2 CorsairService; C:\Program Files\Corsair\Corsair iCUE5 Software\clink\Corsair.Service.exe [84008 2024-08-24] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
S3 EAAntiCheatService; C:\Program Files\EA\AC\eaanticheat.gameservice.exe [126268152 2025-09-11] (Electronic Arts, Inc. -> Electronic Arts)
S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [19281056 2025-10-09] (Electronic Arts, Inc. -> Electronic Arts)
R2 efwd; C:\Program Files\ESET\ESET Security\efwd.exe [5543856 2025-11-26] (ESET, spol. s r.o. -> ESET)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [4980040 2025-11-26] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [4980040 2025-11-26] (ESET, spol. s r.o. -> ESET)
S3 GameInputRedistService; C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe [141680 2025-10-20] (Microsoft Corporation -> Microsoft Corporation)
R3 iCUEUpdateService; C:\Program Files\Corsair\Corsair iCUE5 Software\iCUEUpdateService.exe [459304 2024-08-24] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [19361616 2025-07-12] (Logitech Inc -> Logitech, Inc.)
R2 logi_lamparray_service; C:\WINDOWS\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_6558957747ed9640\logi_lamparray_service.exe [11391560 2025-07-22] (Logitech Inc -> Logitech, Inc.)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_3496fbfac7a2d1ba\Display.NvContainer\NVDisplay.Container.exe [1275584 2025-08-23] (NVIDIA Corporation -> NVIDIA Corporation)
R3 Razer Elevation Service; C:\Program Files\Razer\razer_elevation_service\razer_elevation_service.exe [1741960 2025-04-25] (Razer USA Ltd. -> Razer Inc)
R2 Razer Game Manager Service 3; C:\Program Files (x86)\Razer\Razer Services\GMS3\GameManagerService3.exe [362248 2024-06-27] (Razer USA Ltd. -> Razer Inc)
R2 SamsungMagicianSVC; C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagicianSVC.exe [497448 2025-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [803088 2025-10-29] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4414464 2025-12-02] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [282480 2025-12-02] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AmdTools64; C:\WINDOWS\System32\drivers\AmdTools64.sys [77240 2022-07-18] (Advanced Micro Devices Inc. -> AMD)
S3 CorsairGamingAudioService; C:\WINDOWS\system32\DRIVERS\CorsairGamingAudio64.sys [63040 2024-08-24] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.)
R2 CorsairLLAccess8F050F5E415C1A5882EB9FF7CE2BC59B7BE3A953; C:\Program Files\Corsair\Corsair iCUE5 Software\CorsairLLAccess64.sys [23728 2024-08-24] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.)
R2 CorsairLLAccessE5624B0A345A7E17A08498BFEDC2D42A7CBA71C2; C:\Program Files\Corsair\Corsair Device Control Service\bin\CorsairLLAccess64.sys [23632 2024-08-02] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.)
R3 CorsairVBusDriver; C:\WINDOWS\System32\drivers\CorsairVBusDriver.sys [47032 2024-08-24] (Microsoft Windows Hardware Compatibility Publisher -> Corsair)
R3 CorsairVHidDriver; C:\WINDOWS\System32\drivers\CorsairVHidDriver.sys [22968 2024-08-24] (Microsoft Windows Hardware Compatibility Publisher -> Corsair)
R3 cpuz158; C:\WINDOWS\temp\cpuz158\cpuz158_x64.sys [44592 2025-12-21] (Microsoft Windows Hardware Compatibility Publisher -> CPUID) <==== ATTENTION
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [175824 2024-10-17] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [232928 2025-10-26] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [17840 2025-11-26] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [273768 2025-10-26] (ESET, spol. s r.o. -> ESET)
S4 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [57368 2025-10-26] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [86800 2025-10-26] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [126552 2025-10-26] (ESET, spol. s r.o. -> ESET)
R3 FocusritePCIeSwRoot; C:\WINDOWS\System32\drivers\FocusritePCIeSwRoot.sys [106704 2024-09-19] (Focusrite Audio Engineering Ltd -> Focusrite Audio Engineering Ltd.)
R3 FocusriteUsb; C:\WINDOWS\System32\drivers\FocusriteUsb.sys [170320 2024-09-19] (Focusrite Audio Engineering Ltd -> Focusrite Audio Engineering Ltd.)
R3 FocusriteUsbAudio; C:\WINDOWS\System32\drivers\FocusriteUsbAudio.sys [109392 2024-09-19] (Focusrite Audio Engineering Ltd -> Focusrite Audio Engineering Ltd.)
R3 FocusriteUsbSwRoot; C:\WINDOWS\System32\drivers\FocusriteUsbSwRoot.sys [112952 2024-09-19] (Focusrite Audio Engineering Ltd -> Focusrite Audio Engineering Ltd.)
R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [44880 2025-01-25] (Logitech Inc -> Logitech)
S3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [32080 2022-12-29] (Logitech Inc -> Logitech)
R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [73040 2025-01-25] (Logitech Inc -> Logitech)
R3 logi_lamparray; C:\WINDOWS\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_6558957747ed9640\logi_lamparray.sys [89696 2025-07-22] (Logitech Inc -> Logitech, Inc.)
S3 Netaapl; C:\WINDOWS\System32\drivers\netaapl64.sys [32352 2017-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.)
R3 RzCommon; C:\WINDOWS\System32\drivers\RzCommon.sys [64880 2023-09-26] (Razer USA Ltd. -> Razer Inc)
R3 RzDev_00aa; C:\WINDOWS\System32\drivers\RzDev_00aa.sys [63200 2022-05-09] (Razer USA Ltd. -> Razer Inc)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174264 2024-10-17] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [20880 2025-12-02] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [627104 2025-12-02] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [102816 2025-12-02] (Microsoft Windows -> Microsoft Corporation)
S3 EAAntiCheat; system32\drivers\eaanticheat.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-12-21 23:24 - 2025-12-21 23:25 - 000000000 ____D C:\FRST
2025-12-19 18:31 - 2025-12-21 09:38 - 000000000 ____D C:\Program Files\Mozilla Firefox
2025-12-16 18:53 - 2025-12-21 14:07 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-12-13 11:23 - 2025-12-13 11:23 - 000000511 _____ C:\Users\Public\Desktop\Diablo IV.lnk
2025-12-13 11:23 - 2025-12-13 11:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo IV
2025-12-10 22:26 - 2025-12-10 22:26 - 000711764 _____ C:\WINDOWS\system32\perfh005.dat
2025-12-10 22:26 - 2025-12-10 22:26 - 000152978 _____ C:\WINDOWS\system32\perfc005.dat
2025-12-09 17:30 - 2025-12-09 17:30 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2025-12-08 08:28 - 2025-12-08 08:28 - 000000000 ____D C:\Users\jakub\AppData\Roaming\Microsoft\Stationery
2025-12-08 08:28 - 2025-12-08 08:28 - 000000000 ____D C:\Users\jakub\AppData\Roaming\Microsoft\Signatures
2025-12-06 20:38 - 2025-12-06 20:38 - 000000000 ____D C:\Users\jakub\Desktop\Práce A Soud
2025-12-05 17:13 - 2025-12-05 17:14 - 000000000 ____D C:\Users\jakub\Desktop\Nová složka (2)
2025-12-03 17:26 - 2025-12-03 17:26 - 000000000 ____D C:\WINDOWS\system32\NarratorMCAT
2025-12-02 18:07 - 2025-12-02 18:07 - 000035602 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2025-12-02 18:07 - 2025-12-02 18:07 - 000035602 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2025-12-02 17:48 - 2025-12-02 17:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Magician
2025-11-21 15:21 - 2025-11-21 15:21 - 000000000 ____D C:\Users\jakub\AppData\Local\Razer
2025-11-21 15:13 - 2025-11-21 15:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer
2025-11-21 15:13 - 2025-11-21 15:23 - 000000000 ____D C:\Program Files\Razer
2025-11-21 14:51 - 2025-11-23 22:25 - 000000000 ____D C:\Program Files (x86)\Razer
2025-11-21 14:51 - 2025-11-21 15:23 - 000000000 ____D C:\ProgramData\Razer
2025-11-21 14:51 - 2023-06-16 07:33 - 000161920 _____ (Razer Inc) C:\WINDOWS\system32\RazerS3CoinstallerEx.dll
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-12-21 23:26 - 2022-05-14 20:18 - 000000000 ____D C:\Users\jakub\AppData\Roaming\vlc
2025-12-21 23:22 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-12-21 23:22 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-12-21 23:18 - 2024-12-07 14:03 - 000074314 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2025-12-21 23:17 - 2024-12-07 14:04 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-12-21 23:17 - 2024-05-31 20:01 - 000000000 ____D C:\Users\jakub\Desktop\IG
2025-12-21 23:17 - 2024-04-01 08:26 - 000000000 ___HD C:\Program Files\WindowsApps
2025-12-21 23:17 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ServiceState
2025-12-21 23:17 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-12-21 23:17 - 2022-05-13 22:35 - 000000000 ____D C:\Users\jakub\AppData\Roaming\Samsung Magician
2025-12-21 23:17 - 2022-05-13 22:21 - 000000000 ____D C:\Users\jakub\AppData\Local\Packages
2025-12-21 23:17 - 2022-05-13 22:19 - 000000000 ____D C:\ProgramData\Packages
2025-12-21 23:17 - 2022-05-13 22:19 - 000000000 ____D C:\ProgramData\NVIDIA
2025-12-21 23:17 - 2022-05-13 22:11 - 000012288 ___SH C:\DumpStack.log.tmp
2025-12-21 23:16 - 2024-04-01 08:21 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2025-12-21 23:14 - 2022-05-26 17:43 - 000000000 ____D C:\Users\jakub\Documents\Soubory aplikace Outlook
2025-12-21 23:13 - 2022-05-14 12:12 - 000000000 ____D C:\Program Files (x86)\Steam
2025-12-21 23:12 - 2022-06-05 20:39 - 000000000 ____D C:\Users\jakub\AppData\Local\Battle.net
2025-12-21 20:45 - 2022-05-14 08:05 - 000000000 ____D C:\Users\jakub\AppData\Roaming\Microsoft\Excel
2025-12-21 17:27 - 2024-12-07 14:01 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-12-21 14:07 - 2022-05-13 22:21 - 000000000 ____D C:\Users\jakub\AppData\Local\D3DSCache
2025-12-21 09:44 - 2023-09-02 19:52 - 000000000 ____D C:\Program Files\Microsoft Office
2025-12-21 09:38 - 2023-10-25 19:20 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2025-12-20 23:47 - 2022-05-18 21:50 - 000000000 ____D C:\Users\jakub\AppData\Roaming\qBittorrent
2025-12-20 12:25 - 2022-10-01 19:16 - 000000000 ____D C:\Program Files (x86)\World of Warcraft
2025-12-20 10:47 - 2022-05-13 22:11 - 000002438 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-12-20 10:11 - 2025-09-23 15:50 - 000440696 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_b.dll
2025-12-20 10:11 - 2022-10-22 16:55 - 000153976 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe
2025-12-20 10:11 - 2022-10-22 16:55 - 000076152 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe
2025-12-20 10:11 - 2022-05-14 09:26 - 004606328 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2025-12-20 10:11 - 2022-05-14 09:26 - 000878968 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2025-12-20 10:11 - 2022-05-14 09:26 - 000289144 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2025-12-20 10:11 - 2022-05-14 09:26 - 000244088 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2025-12-20 10:11 - 2022-05-14 09:26 - 000166256 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2025-12-20 09:58 - 2024-12-07 14:04 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2025-12-20 09:58 - 2023-10-25 19:20 - 000001073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2025-12-16 18:42 - 2024-12-07 14:04 - 000003638 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-12-16 18:42 - 2024-12-07 14:04 - 000003512 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-12-13 14:46 - 2022-05-13 22:28 - 000000000 ____D C:\Program Files (x86)\Google
2025-12-12 21:40 - 2025-11-17 22:11 - 000001150 _____ C:\Users\Public\Desktop\DxO PhotoLab 7.lnk
2025-12-12 21:40 - 2023-11-27 20:11 - 000001162 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DxO PhotoLab 7.lnk
2025-12-10 22:26 - 2024-12-07 14:02 - 001692324 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-12-10 22:26 - 2024-04-01 08:24 - 000000000 ____D C:\WINDOWS\INF
2025-12-10 22:24 - 2024-04-01 17:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2025-12-10 22:24 - 2024-04-01 08:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2025-12-10 22:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemResources
2025-12-10 22:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2025-12-10 22:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2025-12-10 22:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2025-12-10 22:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2025-12-10 20:47 - 2022-05-18 21:50 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2025-12-10 17:26 - 2024-12-07 14:01 - 003276800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2025-12-10 17:23 - 2022-05-14 09:39 - 000000000 ____D C:\WINDOWS\system32\MRT
2025-12-10 17:22 - 2022-05-14 09:39 - 218369424 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2025-12-04 18:31 - 2022-06-05 20:38 - 000000000 ____D C:\Program Files (x86)\Battle.net
2025-12-03 21:22 - 2025-10-23 16:57 - 000000000 ____D C:\Users\jakub\AppData\Roaming\.minecraft
2025-12-03 17:27 - 2024-12-07 14:01 - 000472584 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2025-12-03 17:26 - 2025-06-27 22:09 - 000000000 ____D C:\WINDOWS\system32\ruxim
2025-12-03 17:26 - 2024-04-01 17:31 - 000000000 ____D C:\WINDOWS\InboxApps
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ___RD C:\Program Files\Windows Defender
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ___RD C:\Program Files (x86)\Windows Defender
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\WUModels
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\UUS
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\DDFs
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\setup
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\DDFs
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\Provisioning
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\DiagTrack
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\Program Files\Common Files\System
2025-12-03 17:26 - 2024-04-01 08:21 - 000000000 ____D C:\WINDOWS\servicing
2025-12-02 19:50 - 2025-11-09 22:28 - 000001231 _____ C:\Users\Public\Desktop\Luminar Neo.lnk
2025-12-02 19:50 - 2024-06-10 16:40 - 000001237 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Luminar Neo.lnk
2025-12-02 19:50 - 2024-06-10 16:35 - 000000000 ____D C:\ProgramData\Luminar Neo
2025-12-02 17:48 - 2024-12-07 14:04 - 000003378 _____ C:\WINDOWS\system32\Tasks\SamsungMagician
2025-11-26 19:44 - 2024-12-07 13:03 - 000017840 _____ (ESET) C:\WINDOWS\system32\Drivers\eelam.sys
2025-11-24 11:51 - 2024-03-08 17:57 - 000017173 _____ C:\Users\jakub\Desktop\STAHOVANÍ.txt
2025-11-24 10:37 - 2024-12-07 14:04 - 000004178 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1703177349
2025-11-24 10:37 - 2023-12-21 17:49 - 000001390 _____ C:\Users\jakub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2025-11-21 19:02 - 2022-05-14 12:02 - 000000000 ____D C:\Users\jakub\AppData\Roaming\Microsoft\Word
==================== Files in the root of some directories ========
2022-06-07 21:19 - 2022-06-07 21:19 - 000004622 _____ () C:\Users\jakub\AppData\Local\2287057899
2025-07-24 09:27 - 2025-07-24 09:27 - 000002185 _____ () C:\Users\jakub\AppData\Local\recently-used.xbel
2023-04-30 15:01 - 2023-04-30 15:01 - 000007626 _____ () C:\Users\jakub\AppData\Local\Resmon.ResmonCfg
==================== SigCheckExt =========================
2002-08-31 06:00 - 2002-08-31 06:00 - 000001959 ____H C:\WINDOWS\SysWOW64\msisl$.dll
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== BCD ================================
Firmware Boot Manager
---------------------
identifier {fwbootmgr}
displayorder {bootmgr}
timeout 1
Windows Boot Manager
--------------------
identifier {bootmgr}
device partition=\Device\HarddiskVolume1
path \EFI\MICROSOFT\BOOT\BOOTMGFW.EFI
description Windows Boot Manager
locale cs-CZ
inherit {globalsettings}
default {current}
resumeobject {70f2b94b-d309-11ec-a54d-ece3bc837e18}
displayorder {current}
toolsdisplayorder {memdiag}
timeout 30
Windows Boot Loader
-------------------
identifier {current}
device partition=C:
path \WINDOWS\system32\winload.efi
description Windows 11
locale cs-CZ
inherit {bootloadersettings}
recoverysequence {70f2b94e-d309-11ec-a54d-ece3bc837e18}
displaymessageoverride Recovery
recoveryenabled Yes
isolatedcontext Yes
allowedinmemorysettings 0x15000075
osdevice partition=C:
systemroot \WINDOWS
resumeobject {70f2b94b-d309-11ec-a54d-ece3bc837e18}
nx OptIn
bootmenupolicy Standard
Windows Boot Loader
-------------------
identifier {70f2b94e-d309-11ec-a54d-ece3bc837e18}
device ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{70f2b951-d309-11ec-a54d-ece3bc837e18}
path \windows\system32\winload.efi
description Windows Recovery Environment
locale cs-CZ
inherit {bootloadersettings}
displaymessage Recovery
osdevice ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{70f2b951-d309-11ec-a54d-ece3bc837e18}
systemroot \windows
nx OptIn
bootmenupolicy Standard
winpe Yes
Resume from Hibernate
---------------------
identifier {70f2b94b-d309-11ec-a54d-ece3bc837e18}
device partition=C:
path \WINDOWS\system32\winresume.efi
description Windows Resume Application
locale cs-CZ
inherit {resumeloadersettings}
recoverysequence {70f2b94e-d309-11ec-a54d-ece3bc837e18}
recoveryenabled Yes
isolatedcontext Yes
allowedinmemorysettings 0x15000075
filedevice partition=C:
custom:21000026 partition=C:
filepath \hiberfil.sys
bootmenupolicy Standard
debugoptionenabled No
Windows Memory Tester
---------------------
identifier {memdiag}
device partition=\Device\HarddiskVolume1
path \EFI\Microsoft\Boot\memtest.efi
description Diagnostika paměti systému Windows
locale cs-CZ
inherit {globalsettings}
badmemoryaccess Yes
EMS Settings
------------
identifier {emssettings}
bootems No
Debugger Settings
-----------------
identifier {dbgsettings}
debugtype Local
RAM Defects
-----------
identifier {badmemory}
Global Settings
---------------
identifier {globalsettings}
inherit {dbgsettings}
{emssettings}
{badmemory}
Boot Loader Settings
--------------------
identifier {bootloadersettings}
inherit {globalsettings}
{hypervisorsettings}
Hypervisor Settings
-------------------
identifier {hypervisorsettings}
hypervisordebugtype Serial
hypervisordebugport 1
hypervisorbaudrate 115200
Resume Loader Settings
----------------------
identifier {resumeloadersettings}
inherit {globalsettings}
Device options
--------------
identifier {70f2b951-d309-11ec-a54d-ece3bc837e18}
description Windows Recovery
ramdisksdidevice partition=\Device\HarddiskVolume4
ramdisksdipath \Recovery\WindowsRE\boot.sdi
==================== End of FRST.txt ========================
Zde je log
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-11-2025
Ran by jakub (administrator) on ROCKET (Micro-Star International Co., Ltd. MS-7B93) (21-12-2025 23:25:23)
Running from E:\Temp\01_Download\FRST64.exe
Loaded Profiles: jakub
Platform: Microsoft Windows 11 Pro Version 25H2 26200.7462 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(C:\Program Files\Corsair\Corsair iCUE5 Software\clink\Corsair.Service.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\Corsair iCUE5 Software\clink\Corsair.Service.CpuIdRemote64.exe
(C:\Program Files\Corsair\Corsair iCUE5 Software\iCUE.exe ->) (Corsair Memory, Inc. -> ) C:\Program Files\Corsair\Corsair iCUE5 Software\crashpad_handler.exe
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\egui.exe
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(C:\Program Files\Razer\RazerAppEngine\app-4.0.563\RazerAppEngine.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files\Razer\RazerAppEngine\app-4.0.563\CommonDLL\RzEngineMon.exe
(C:\Program Files\WindowsApps\AppleInc.AppleDevices_1.1536.29189.0_x64__nzyj5cx40ttqa\AppleMobileDeviceLauncher.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.AppleDevices_1.1536.29189.0_x64__nzyj5cx40ttqa\AppleMobileDeviceProcess.exe
(Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\Corsair iCUE5 Software\iCUE.exe
(explorer.exe ->) (Focusrite Audio Engineering Ltd -> Focusrite Audio Engineering, Ltd.) C:\Program Files\Focusrite\Drivers\Focusrite Notifier.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <13>
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE
(Razer USA Ltd. -> Razer Inc.) C:\Program Files\Razer\RazerAppEngine\app-4.0.563\RazerAppEngine.exe <9>
(services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\Corsair Device Control Service\bin\CorsairDeviceControlService.exe
(services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\Corsair iCUE5 Software\clink\Corsair.Service.exe
(services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\Corsair iCUE5 Software\CorsairCpuIdService.exe
(services.exe ->) (Corsair Memory, Inc. -> Corsair Memory, Inc.) C:\Program Files\Corsair\Corsair iCUE5 Software\iCUEUpdateService.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\efwd.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
(services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Windows\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_6558957747ed9640\logi_lamparray_service.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.) C:\Windows\System32\CorsairGamingAudioCfgService64.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_3496fbfac7a2d1ba\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Razer USA Ltd. -> Razer Inc) C:\Program Files (x86)\Razer\Razer Services\GMS3\GameManagerService3.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc) C:\Program Files\Razer\razer_elevation_service\razer_elevation_service.exe
(services.exe ->) (Samsung Electronics Co., Ltd. -> Clonix & CottonCandy) C:\Program Files (x86)\Samsung\Samsung Magician\MigrationService\MigrationService.exe
(services.exe ->) (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagicianSVC.exe
(sihost.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.AppleDevices_1.1536.29189.0_x64__nzyj5cx40ttqa\AppleMobileDeviceLauncher.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.195.0.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe <4>
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [285616 2025-11-26] (ESET, spol. s r.o. -> ESET)
HKLM\...\Run: [Corsair iCUE5 Software] => C:\Program Files\Corsair\Corsair iCUE5 Software\iCUE Launcher.exe [189480 2024-08-24] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
HKLM\...\Run: [Focusrite Notifier] => C:\Program Files\Focusrite\Drivers\Focusrite Notifier.exe [907352 2024-09-19] (Focusrite Audio Engineering Ltd -> Focusrite Audio Engineering, Ltd.)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-3823661678-3611372174-1390376250-1001\...\Run: [MicrosoftEdgeAutoLaunch_4F2B1FC128F21355E1EB1FD267A7E60E] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4228688 2025-12-18] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3823661678-3611372174-1390376250-1001\...\Run: [Opera Browser Assistant] => C:\Users\jakub\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [3996064 2024-03-04] (Opera Norway AS -> Opera Software)
HKU\S-1-5-21-3823661678-3611372174-1390376250-1001\...\Run: [RazerAppEngine] => C:\Program Files\Razer\RazerAppEngine\RazerAppEngine.exe [853640 2025-08-07] (Razer USA Ltd. -> Razer Inc.)
HKU\S-1-5-18\...\Run: [RazerAppEngine] => C:\Program Files\Razer\RazerAppEngine\RazerAppEngine.exe [853640 2025-08-07] (Razer USA Ltd. -> Razer Inc.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> "C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe" --first-run
Startup: C:\Users\jakub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Luminar Neo.lnk [2025-12-02]
ShortcutTarget: Luminar Neo.lnk -> C:\Program Files\Skylum\Luminar Neo\Luminar Neo.exe (Skylum Software USA, Inc. -> Skylum)
Startup: C:\Users\jakub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Poslat do aplikace OneNote.lnk [2023-10-22]
ShortcutTarget: Poslat do aplikace OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {4EBF6227-3BA0-41F1-AFF7-72C90E4C6ED0} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16659248 2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {4270CE07-77B9-4DDE-868F-27F163CACEA1} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28946240 2025-12-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {902D07CC-C43A-4A89-90CD-DF28F5F01D47} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe [70976 2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {FA6BC42D-14F0-479C-AB31-35B419B5929F} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28946240 2025-12-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {C542223A-7EF4-43B7-A732-6698C4714A8E} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311040 2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {7DA9B7D9-ECB6-496D-B37C-F0008D27A689} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311040 2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {53584DDE-82DB-44F2-B293-14237968D061} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [1347344 2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {0E6A2C5B-989F-4807-8C59-92576735C3C5} - System32\Tasks\Microsoft\Office\Office Startup Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16659248 2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {0523A107-B8BD-4873-9352-CFA9FA432093} - System32\Tasks\Microsoft\Windows\Setup\PITRTask => {093cb270-c282-4c22-b2ea-7d2bf1c30bbf} C:\WINDOWS\system32\oobe\PITRTask.dll [118784 2025-12-02] (Microsoft Windows -> Microsoft Corporation)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {C412C875-726F-4919-93E8-77FD4F0F59E5} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [696960 2025-12-19] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {BE4AE9C4-6067-4C95-96AB-47E1F2447032} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-3823661678-3611372174-1390376250-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [696960 2025-12-19] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {533B461D-2E7D-4F9E-BC32-56D17DC474A4} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34944 2025-12-19] (Mozilla Corporation -> Mozilla Foundation)
Task: {0BC677D4-80A3-4122-B9DE-B38683E01937} - System32\Tasks\Opera scheduled assistant Autoupdate 1703177349 => C:\Users\jakub\AppData\Local\Programs\Opera\launcher.exe -> --scheduledautoupdate --component-name=assistant --component-path="C:\Users\jakub\AppData\Local\Programs\Opera\assistant" $(Arg0)
Task: {343BFF92-4D92-4F71-951B-9104378FA1A8} - System32\Tasks\Opera scheduled Autoupdate 1703177349 => C:\Users\jakub\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [6189528 2025-11-19] (Opera Norway AS -> Opera Software)
Task: {412ADA0D-0099-48A8-B793-8688A91FF4B1} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe [154438440 2025-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) -> C:\Program Files (x86)\Samsung\Samsung Magician\\--disable-gpu-sandbox /AUTOHIDE
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.50.1
Tcpip\..\Interfaces\{2e946ed5-d0cd-4e94-a4e1-5b06e09eaf8f}: [DhcpNameServer] 192.168.50.1
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\jakub\AppData\Local\Microsoft\Edge\User Data\Default [2025-12-21]
Edge HomePage: Default -> hxxps://www.google.cz/
Edge StartupUrls: Default -> "hxxps://www.google.cz/"
Edge NewTab: Default -> Not-active:"chrome-extension://onagfgjlokaciajhjmajljcfanonbmia/index.html"
Edge DefaultSearchURL: Default -> hxxps://duckduckgo.com/?q={searchTerms}
Edge DefaultSearchKeyword: Default -> duckduckgo.com
Edge DefaultNewTabURL: Default -> hxxps://duckduckgo.com/chrome_newtab
Edge DefaultSuggestURL: Default -> hxxps://duckduckgo.com/ac/?q={searchTerms}&type=list
Edge Extension: (Edge relevant text changes) - C:\Users\jakub\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]
Edge Extension: (Privacy Badger) - C:\Users\jakub\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mkejgcgkdlddbggjhhflekkondicpnop [2025-12-12]
Edge Extension: (uBlock Origin) - C:\Users\jakub\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\odfafepnkmbhccpbejgmiehpchacaeak [2025-11-28]
Edge Extension: (Custom New Tab) - C:\Users\jakub\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\onagfgjlokaciajhjmajljcfanonbmia [2023-10-21]
FireFox:
========
FF DefaultProfile: 0ciywr5v.default
FF ProfilePath: C:\Users\jakub\AppData\Roaming\Mozilla\Firefox\Profiles\52s79vo0.default-release [2025-12-10]
FF Homepage: Mozilla\Firefox\Profiles\52s79vo0.default-release -> chrome://browser/content/blanktab.html
FF Extension: (New Tab) - C:\Users\jakub\AppData\Roaming\Mozilla\Firefox\Profiles\52s79vo0.default-release\Extensions\newtab@mozilla.org.xpi [2025-11-30]
FF Extension: (uBlock Origin) - C:\Users\jakub\AppData\Roaming\Mozilla\Firefox\Profiles\52s79vo0.default-release\Extensions\uBlock0@raymondhill.net.xpi [2025-12-07]
FF ProfilePath: C:\Users\jakub\AppData\Roaming\Mozilla\Firefox\Profiles\0ciywr5v.default [2022-05-18]
FF ProfilePath: C:\Users\jakub\AppData\Roaming\Mozilla\Firefox\Profiles\60julwhd.default-nightly [2025-08-28]
FF Extension: (Privacy Badger) - C:\Users\jakub\AppData\Roaming\Mozilla\Firefox\Profiles\60julwhd.default-nightly\Extensions\jid1-MnnxcxisBPnSXQ@jetpack.xpi [2023-09-16]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-12-21] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-12-08] (Microsoft Corporation -> Microsoft Corporation)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\eset_security_config_overlay.js [2025-12-21]
Chrome:
=======
CHR Profile: C:\Users\jakub\AppData\Local\Google\Chrome\User Data\Default [2025-12-13]
CHR DownloadDir: D:\10_General\10_Temp\01_Download
CHR HomePage: Default -> hxxps://www.google.cz/
CHR DefaultSearchURL: Default -> hxxps://duckduckgo.com/?q={searchTerms}
CHR DefaultSearchKeyword: Default -> duckduckgo.com
CHR DefaultNewTabURL: Default -> hxxps://duckduckgo.com/chrome_newtab
CHR DefaultSuggestURL: Default -> hxxps://duckduckgo.com/ac/?q={searchTerms}&type=list
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\jakub\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-05-14]
Opera:
=======
OPR DefaultProfile: Default
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 battlenet_helpersvc; C:\ProgramData\Battle.net_components\battlenet_helpersvc\AgentHelper.exe [3386064 2025-09-18] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13419408 2025-12-16] (Microsoft Corporation -> Microsoft Corporation)
R2 CMigrationService; C:\Program Files (x86)\Samsung\Samsung Magician\MigrationService\MigrationService.exe [765736 2025-11-11] (Samsung Electronics Co., Ltd. -> Clonix & CottonCandy)
R3 CorsairCpuIdService; C:\Program Files\Corsair\Corsair iCUE5 Software\CorsairCpuIdService.exe [300584 2024-08-24] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
R3 CorsairDeviceControlService; C:\Program Files\Corsair\Corsair Device Control Service\bin\CorsairDeviceControlService.exe [2368040 2024-08-02] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
S3 CorsairDeviceListerService; C:\Program Files\Corsair\Corsair iCUE5 Software\CorsairDeviceListerService.exe [175656 2024-08-24] (Corsair Memory, Inc. -> )
R2 CorsairGamingAudioConfig; C:\Windows\System32\CorsairGamingAudioCfgService64.exe [613952 2024-08-24] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.)
R2 CorsairService; C:\Program Files\Corsair\Corsair iCUE5 Software\clink\Corsair.Service.exe [84008 2024-08-24] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
S3 EAAntiCheatService; C:\Program Files\EA\AC\eaanticheat.gameservice.exe [126268152 2025-09-11] (Electronic Arts, Inc. -> Electronic Arts)
S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [19281056 2025-10-09] (Electronic Arts, Inc. -> Electronic Arts)
R2 efwd; C:\Program Files\ESET\ESET Security\efwd.exe [5543856 2025-11-26] (ESET, spol. s r.o. -> ESET)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [4980040 2025-11-26] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [4980040 2025-11-26] (ESET, spol. s r.o. -> ESET)
S3 GameInputRedistService; C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe [141680 2025-10-20] (Microsoft Corporation -> Microsoft Corporation)
R3 iCUEUpdateService; C:\Program Files\Corsair\Corsair iCUE5 Software\iCUEUpdateService.exe [459304 2024-08-24] (Corsair Memory, Inc. -> Corsair Memory, Inc.)
R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [19361616 2025-07-12] (Logitech Inc -> Logitech, Inc.)
R2 logi_lamparray_service; C:\WINDOWS\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_6558957747ed9640\logi_lamparray_service.exe [11391560 2025-07-22] (Logitech Inc -> Logitech, Inc.)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_3496fbfac7a2d1ba\Display.NvContainer\NVDisplay.Container.exe [1275584 2025-08-23] (NVIDIA Corporation -> NVIDIA Corporation)
R3 Razer Elevation Service; C:\Program Files\Razer\razer_elevation_service\razer_elevation_service.exe [1741960 2025-04-25] (Razer USA Ltd. -> Razer Inc)
R2 Razer Game Manager Service 3; C:\Program Files (x86)\Razer\Razer Services\GMS3\GameManagerService3.exe [362248 2024-06-27] (Razer USA Ltd. -> Razer Inc)
R2 SamsungMagicianSVC; C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagicianSVC.exe [497448 2025-11-11] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [803088 2025-10-29] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [4414464 2025-12-02] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [282480 2025-12-02] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 AmdTools64; C:\WINDOWS\System32\drivers\AmdTools64.sys [77240 2022-07-18] (Advanced Micro Devices Inc. -> AMD)
S3 CorsairGamingAudioService; C:\WINDOWS\system32\DRIVERS\CorsairGamingAudio64.sys [63040 2024-08-24] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.)
R2 CorsairLLAccess8F050F5E415C1A5882EB9FF7CE2BC59B7BE3A953; C:\Program Files\Corsair\Corsair iCUE5 Software\CorsairLLAccess64.sys [23728 2024-08-24] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.)
R2 CorsairLLAccessE5624B0A345A7E17A08498BFEDC2D42A7CBA71C2; C:\Program Files\Corsair\Corsair Device Control Service\bin\CorsairLLAccess64.sys [23632 2024-08-02] (Microsoft Windows Hardware Compatibility Publisher -> Corsair Memory, Inc.)
R3 CorsairVBusDriver; C:\WINDOWS\System32\drivers\CorsairVBusDriver.sys [47032 2024-08-24] (Microsoft Windows Hardware Compatibility Publisher -> Corsair)
R3 CorsairVHidDriver; C:\WINDOWS\System32\drivers\CorsairVHidDriver.sys [22968 2024-08-24] (Microsoft Windows Hardware Compatibility Publisher -> Corsair)
R3 cpuz158; C:\WINDOWS\temp\cpuz158\cpuz158_x64.sys [44592 2025-12-21] (Microsoft Windows Hardware Compatibility Publisher -> CPUID) <==== ATTENTION
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [175824 2024-10-17] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [232928 2025-10-26] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [17840 2025-11-26] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [273768 2025-10-26] (ESET, spol. s r.o. -> ESET)
S4 ekbdflt; C:\WINDOWS\system32\DRIVERS\ekbdflt.sys [57368 2025-10-26] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [86800 2025-10-26] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [126552 2025-10-26] (ESET, spol. s r.o. -> ESET)
R3 FocusritePCIeSwRoot; C:\WINDOWS\System32\drivers\FocusritePCIeSwRoot.sys [106704 2024-09-19] (Focusrite Audio Engineering Ltd -> Focusrite Audio Engineering Ltd.)
R3 FocusriteUsb; C:\WINDOWS\System32\drivers\FocusriteUsb.sys [170320 2024-09-19] (Focusrite Audio Engineering Ltd -> Focusrite Audio Engineering Ltd.)
R3 FocusriteUsbAudio; C:\WINDOWS\System32\drivers\FocusriteUsbAudio.sys [109392 2024-09-19] (Focusrite Audio Engineering Ltd -> Focusrite Audio Engineering Ltd.)
R3 FocusriteUsbSwRoot; C:\WINDOWS\System32\drivers\FocusriteUsbSwRoot.sys [112952 2024-09-19] (Focusrite Audio Engineering Ltd -> Focusrite Audio Engineering Ltd.)
R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [44880 2025-01-25] (Logitech Inc -> Logitech)
S3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [32080 2022-12-29] (Logitech Inc -> Logitech)
R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [73040 2025-01-25] (Logitech Inc -> Logitech)
R3 logi_lamparray; C:\WINDOWS\System32\DriverStore\FileRepository\logi_lamparray_usb.inf_amd64_6558957747ed9640\logi_lamparray.sys [89696 2025-07-22] (Logitech Inc -> Logitech, Inc.)
S3 Netaapl; C:\WINDOWS\System32\drivers\netaapl64.sys [32352 2017-11-28] (Microsoft Windows Hardware Compatibility Publisher -> Apple Inc.)
R3 RzCommon; C:\WINDOWS\System32\drivers\RzCommon.sys [64880 2023-09-26] (Razer USA Ltd. -> Razer Inc)
R3 RzDev_00aa; C:\WINDOWS\System32\drivers\RzDev_00aa.sys [63200 2022-05-09] (Razer USA Ltd. -> Razer Inc)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174264 2024-10-17] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [20880 2025-12-02] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [627104 2025-12-02] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [102816 2025-12-02] (Microsoft Windows -> Microsoft Corporation)
S3 EAAntiCheat; system32\drivers\eaanticheat.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-12-21 23:24 - 2025-12-21 23:25 - 000000000 ____D C:\FRST
2025-12-19 18:31 - 2025-12-21 09:38 - 000000000 ____D C:\Program Files\Mozilla Firefox
2025-12-16 18:53 - 2025-12-21 14:07 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-12-13 11:23 - 2025-12-13 11:23 - 000000511 _____ C:\Users\Public\Desktop\Diablo IV.lnk
2025-12-13 11:23 - 2025-12-13 11:23 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Diablo IV
2025-12-10 22:26 - 2025-12-10 22:26 - 000711764 _____ C:\WINDOWS\system32\perfh005.dat
2025-12-10 22:26 - 2025-12-10 22:26 - 000152978 _____ C:\WINDOWS\system32\perfc005.dat
2025-12-09 17:30 - 2025-12-09 17:30 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2025-12-08 08:28 - 2025-12-08 08:28 - 000000000 ____D C:\Users\jakub\AppData\Roaming\Microsoft\Stationery
2025-12-08 08:28 - 2025-12-08 08:28 - 000000000 ____D C:\Users\jakub\AppData\Roaming\Microsoft\Signatures
2025-12-06 20:38 - 2025-12-06 20:38 - 000000000 ____D C:\Users\jakub\Desktop\Práce A Soud
2025-12-05 17:13 - 2025-12-05 17:14 - 000000000 ____D C:\Users\jakub\Desktop\Nová složka (2)
2025-12-03 17:26 - 2025-12-03 17:26 - 000000000 ____D C:\WINDOWS\system32\NarratorMCAT
2025-12-02 18:07 - 2025-12-02 18:07 - 000035602 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2025-12-02 18:07 - 2025-12-02 18:07 - 000035602 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2025-12-02 17:48 - 2025-12-02 17:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Samsung Magician
2025-11-21 15:21 - 2025-11-21 15:21 - 000000000 ____D C:\Users\jakub\AppData\Local\Razer
2025-11-21 15:13 - 2025-11-21 15:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Razer
2025-11-21 15:13 - 2025-11-21 15:23 - 000000000 ____D C:\Program Files\Razer
2025-11-21 14:51 - 2025-11-23 22:25 - 000000000 ____D C:\Program Files (x86)\Razer
2025-11-21 14:51 - 2025-11-21 15:23 - 000000000 ____D C:\ProgramData\Razer
2025-11-21 14:51 - 2023-06-16 07:33 - 000161920 _____ (Razer Inc) C:\WINDOWS\system32\RazerS3CoinstallerEx.dll
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-12-21 23:26 - 2022-05-14 20:18 - 000000000 ____D C:\Users\jakub\AppData\Roaming\vlc
2025-12-21 23:22 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-12-21 23:22 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-12-21 23:18 - 2024-12-07 14:03 - 000074314 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2025-12-21 23:17 - 2024-12-07 14:04 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-12-21 23:17 - 2024-05-31 20:01 - 000000000 ____D C:\Users\jakub\Desktop\IG
2025-12-21 23:17 - 2024-04-01 08:26 - 000000000 ___HD C:\Program Files\WindowsApps
2025-12-21 23:17 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ServiceState
2025-12-21 23:17 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-12-21 23:17 - 2022-05-13 22:35 - 000000000 ____D C:\Users\jakub\AppData\Roaming\Samsung Magician
2025-12-21 23:17 - 2022-05-13 22:21 - 000000000 ____D C:\Users\jakub\AppData\Local\Packages
2025-12-21 23:17 - 2022-05-13 22:19 - 000000000 ____D C:\ProgramData\Packages
2025-12-21 23:17 - 2022-05-13 22:19 - 000000000 ____D C:\ProgramData\NVIDIA
2025-12-21 23:17 - 2022-05-13 22:11 - 000012288 ___SH C:\DumpStack.log.tmp
2025-12-21 23:16 - 2024-04-01 08:21 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2025-12-21 23:14 - 2022-05-26 17:43 - 000000000 ____D C:\Users\jakub\Documents\Soubory aplikace Outlook
2025-12-21 23:13 - 2022-05-14 12:12 - 000000000 ____D C:\Program Files (x86)\Steam
2025-12-21 23:12 - 2022-06-05 20:39 - 000000000 ____D C:\Users\jakub\AppData\Local\Battle.net
2025-12-21 20:45 - 2022-05-14 08:05 - 000000000 ____D C:\Users\jakub\AppData\Roaming\Microsoft\Excel
2025-12-21 17:27 - 2024-12-07 14:01 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-12-21 14:07 - 2022-05-13 22:21 - 000000000 ____D C:\Users\jakub\AppData\Local\D3DSCache
2025-12-21 09:44 - 2023-09-02 19:52 - 000000000 ____D C:\Program Files\Microsoft Office
2025-12-21 09:38 - 2023-10-25 19:20 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2025-12-20 23:47 - 2022-05-18 21:50 - 000000000 ____D C:\Users\jakub\AppData\Roaming\qBittorrent
2025-12-20 12:25 - 2022-10-01 19:16 - 000000000 ____D C:\Program Files (x86)\World of Warcraft
2025-12-20 10:47 - 2022-05-13 22:11 - 000002438 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-12-20 10:11 - 2025-09-23 15:50 - 000440696 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_b.dll
2025-12-20 10:11 - 2022-10-22 16:55 - 000153976 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe
2025-12-20 10:11 - 2022-10-22 16:55 - 000076152 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe
2025-12-20 10:11 - 2022-05-14 09:26 - 004606328 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2025-12-20 10:11 - 2022-05-14 09:26 - 000878968 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2025-12-20 10:11 - 2022-05-14 09:26 - 000289144 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2025-12-20 10:11 - 2022-05-14 09:26 - 000244088 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2025-12-20 10:11 - 2022-05-14 09:26 - 000166256 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2025-12-20 09:58 - 2024-12-07 14:04 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2025-12-20 09:58 - 2023-10-25 19:20 - 000001073 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2025-12-16 18:42 - 2024-12-07 14:04 - 000003638 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-12-16 18:42 - 2024-12-07 14:04 - 000003512 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-12-13 14:46 - 2022-05-13 22:28 - 000000000 ____D C:\Program Files (x86)\Google
2025-12-12 21:40 - 2025-11-17 22:11 - 000001150 _____ C:\Users\Public\Desktop\DxO PhotoLab 7.lnk
2025-12-12 21:40 - 2023-11-27 20:11 - 000001162 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DxO PhotoLab 7.lnk
2025-12-10 22:26 - 2024-12-07 14:02 - 001692324 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-12-10 22:26 - 2024-04-01 08:24 - 000000000 ____D C:\WINDOWS\INF
2025-12-10 22:24 - 2024-04-01 17:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2025-12-10 22:24 - 2024-04-01 08:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2025-12-10 22:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SystemResources
2025-12-10 22:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2025-12-10 22:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2025-12-10 22:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2025-12-10 22:24 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2025-12-10 20:47 - 2022-05-18 21:50 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2025-12-10 17:26 - 2024-12-07 14:01 - 003276800 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2025-12-10 17:23 - 2022-05-14 09:39 - 000000000 ____D C:\WINDOWS\system32\MRT
2025-12-10 17:22 - 2022-05-14 09:39 - 218369424 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2025-12-04 18:31 - 2022-06-05 20:38 - 000000000 ____D C:\Program Files (x86)\Battle.net
2025-12-03 21:22 - 2025-10-23 16:57 - 000000000 ____D C:\Users\jakub\AppData\Roaming\.minecraft
2025-12-03 17:27 - 2024-12-07 14:01 - 000472584 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2025-12-03 17:26 - 2025-06-27 22:09 - 000000000 ____D C:\WINDOWS\system32\ruxim
2025-12-03 17:26 - 2024-04-01 17:31 - 000000000 ____D C:\WINDOWS\InboxApps
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ___RD C:\Program Files\Windows Defender
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ___RD C:\Program Files (x86)\Windows Defender
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\WUModels
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\UUS
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\SysWOW64\DDFs
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\setup
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\DDFs
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\Provisioning
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\WINDOWS\DiagTrack
2025-12-03 17:26 - 2024-04-01 08:26 - 000000000 ____D C:\Program Files\Common Files\System
2025-12-03 17:26 - 2024-04-01 08:21 - 000000000 ____D C:\WINDOWS\servicing
2025-12-02 19:50 - 2025-11-09 22:28 - 000001231 _____ C:\Users\Public\Desktop\Luminar Neo.lnk
2025-12-02 19:50 - 2024-06-10 16:40 - 000001237 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Luminar Neo.lnk
2025-12-02 19:50 - 2024-06-10 16:35 - 000000000 ____D C:\ProgramData\Luminar Neo
2025-12-02 17:48 - 2024-12-07 14:04 - 000003378 _____ C:\WINDOWS\system32\Tasks\SamsungMagician
2025-11-26 19:44 - 2024-12-07 13:03 - 000017840 _____ (ESET) C:\WINDOWS\system32\Drivers\eelam.sys
2025-11-24 11:51 - 2024-03-08 17:57 - 000017173 _____ C:\Users\jakub\Desktop\STAHOVANÍ.txt
2025-11-24 10:37 - 2024-12-07 14:04 - 000004178 _____ C:\WINDOWS\system32\Tasks\Opera scheduled Autoupdate 1703177349
2025-11-24 10:37 - 2023-12-21 17:49 - 000001390 _____ C:\Users\jakub\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2025-11-21 19:02 - 2022-05-14 12:02 - 000000000 ____D C:\Users\jakub\AppData\Roaming\Microsoft\Word
==================== Files in the root of some directories ========
2022-06-07 21:19 - 2022-06-07 21:19 - 000004622 _____ () C:\Users\jakub\AppData\Local\2287057899
2025-07-24 09:27 - 2025-07-24 09:27 - 000002185 _____ () C:\Users\jakub\AppData\Local\recently-used.xbel
2023-04-30 15:01 - 2023-04-30 15:01 - 000007626 _____ () C:\Users\jakub\AppData\Local\Resmon.ResmonCfg
==================== SigCheckExt =========================
2002-08-31 06:00 - 2002-08-31 06:00 - 000001959 ____H C:\WINDOWS\SysWOW64\msisl$.dll
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== BCD ================================
Firmware Boot Manager
---------------------
identifier {fwbootmgr}
displayorder {bootmgr}
timeout 1
Windows Boot Manager
--------------------
identifier {bootmgr}
device partition=\Device\HarddiskVolume1
path \EFI\MICROSOFT\BOOT\BOOTMGFW.EFI
description Windows Boot Manager
locale cs-CZ
inherit {globalsettings}
default {current}
resumeobject {70f2b94b-d309-11ec-a54d-ece3bc837e18}
displayorder {current}
toolsdisplayorder {memdiag}
timeout 30
Windows Boot Loader
-------------------
identifier {current}
device partition=C:
path \WINDOWS\system32\winload.efi
description Windows 11
locale cs-CZ
inherit {bootloadersettings}
recoverysequence {70f2b94e-d309-11ec-a54d-ece3bc837e18}
displaymessageoverride Recovery
recoveryenabled Yes
isolatedcontext Yes
allowedinmemorysettings 0x15000075
osdevice partition=C:
systemroot \WINDOWS
resumeobject {70f2b94b-d309-11ec-a54d-ece3bc837e18}
nx OptIn
bootmenupolicy Standard
Windows Boot Loader
-------------------
identifier {70f2b94e-d309-11ec-a54d-ece3bc837e18}
device ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{70f2b951-d309-11ec-a54d-ece3bc837e18}
path \windows\system32\winload.efi
description Windows Recovery Environment
locale cs-CZ
inherit {bootloadersettings}
displaymessage Recovery
osdevice ramdisk=[\Device\HarddiskVolume4]\Recovery\WindowsRE\Winre.wim,{70f2b951-d309-11ec-a54d-ece3bc837e18}
systemroot \windows
nx OptIn
bootmenupolicy Standard
winpe Yes
Resume from Hibernate
---------------------
identifier {70f2b94b-d309-11ec-a54d-ece3bc837e18}
device partition=C:
path \WINDOWS\system32\winresume.efi
description Windows Resume Application
locale cs-CZ
inherit {resumeloadersettings}
recoverysequence {70f2b94e-d309-11ec-a54d-ece3bc837e18}
recoveryenabled Yes
isolatedcontext Yes
allowedinmemorysettings 0x15000075
filedevice partition=C:
custom:21000026 partition=C:
filepath \hiberfil.sys
bootmenupolicy Standard
debugoptionenabled No
Windows Memory Tester
---------------------
identifier {memdiag}
device partition=\Device\HarddiskVolume1
path \EFI\Microsoft\Boot\memtest.efi
description Diagnostika paměti systému Windows
locale cs-CZ
inherit {globalsettings}
badmemoryaccess Yes
EMS Settings
------------
identifier {emssettings}
bootems No
Debugger Settings
-----------------
identifier {dbgsettings}
debugtype Local
RAM Defects
-----------
identifier {badmemory}
Global Settings
---------------
identifier {globalsettings}
inherit {dbgsettings}
{emssettings}
{badmemory}
Boot Loader Settings
--------------------
identifier {bootloadersettings}
inherit {globalsettings}
{hypervisorsettings}
Hypervisor Settings
-------------------
identifier {hypervisorsettings}
hypervisordebugtype Serial
hypervisordebugport 1
hypervisorbaudrate 115200
Resume Loader Settings
----------------------
identifier {resumeloadersettings}
inherit {globalsettings}
Device options
--------------
identifier {70f2b951-d309-11ec-a54d-ece3bc837e18}
description Windows Recovery
ramdisksdidevice partition=\Device\HarddiskVolume4
ramdisksdipath \Recovery\WindowsRE\boot.sdi
==================== End of FRST.txt ========================