Útok hackera
Napsal: 30 pro 2025 10:25
Zdravím,
včera večer mi hacker uzamčel obrazovku, vypnul antivir a snažil se získat údaje k PayPal. Rychle jsem vypnul PC a naštěstí se mu to nepovedlo.
Rád bych se ujistil, že nemám po něm v PC nějakou havěť.
Prosím Vás o kontrolu logu.
Moc díky!
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
Platform: Microsoft Windows 10 Home Version 22H2 19045.6456 (X64) Language: Čeština (Česko)
Default browser: Brave
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler.exe
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler64.exe
(C:\Program Files (x86)\Windows MV\ScreenConnect.ClientService.exe ->) (Connectwise, LLC -> ScreenConnect Software) C:\Program Files (x86)\Windows MV\ScreenConnect.WindowsClient.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA app\CEF\NVIDIA Overlay.exe <5>
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA app\ShadowPlay\nvsphelper64.exe
(C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe ->) (Plex, Inc. -> ) C:\Program Files\Plex\Plex Media Server\Plex Tuner Service.exe
(C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe ->) (Plex, Inc. -> ) C:\Program Files\Plex\Plex Media Server\PlexScriptHost.exe
(CyberLink Corp. -> CyberLink) C:\Program Files (x86)\CyberLink\Power2Go13\CLMLSvc_P2G13.exe
(explorer.exe ->) (EnTech Taiwan -> EnTech Taiwan) C:\Program Files (x86)\Dell\Dell Display Manager\ddm.exe
(explorer.exe ->) (Plex, Inc. -> Plex, Inc.) C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe
(explorer.exe ->) (Samsung Electronics CO., LTD. -> ) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\AddInProcess32.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\InstallUtil.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
(services.exe ->) () [File not signed] C:\Program Files\Serviio\bin\ServiioService.exe <2>
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(services.exe ->) (Connectwise, LLC -> ) C:\Program Files (x86)\Windows MV\ScreenConnect.ClientService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\NisSrv.exe
(services.exe ->) (ND_Apps -> Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <4>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_20ae8f14a487d5db\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Plex, Inc. -> Plex, Inc.) C:\Program Files\Plex\Plex Media Server\Plex Update Service.exe
(services.exe ->) (Sony Imaging Products & Solutions Inc. -> Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
(Sony Imaging Products & Solutions Inc. -> Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
(svchost.exe ->) (ALCPU -> ALCPU) C:\Program Files\Core Temp\Core Temp.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.DesktopAppInstaller_1.27.350.0_x64__8wekyb3d8bbwe\WindowsPackageManagerServer.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [462712 2012-03-09] (Samsung Electronics CO., LTD. -> )
HKLM-x32\...\Run: [CLMLServer_For_P2G13] => C:\Program Files (x86)\CyberLink\Power2Go13\CLMLSvc_P2G13.exe [154296 2019-05-23] (CyberLink Corp. -> CyberLink)
HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [868328 2018-12-21] (Sony Imaging Products & Solutions Inc. -> Sony Corporation)
HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> )
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> )
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [MicrosoftEdgeAutoLaunch_D1548DDA36BFF9FBCE51AAEDDC45F532] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4228688 2025-12-18] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [Tableauup] => cmd.exe /C start "" /D "C:\Users\Zbyse\SystemRootDoc" "C:\Users\Zbyse\SystemRootDoc\Tableauup.exe" [2060144 2025-05-13] (Unity Technologies SF -> Unity Technologies) <==== ATTENTION
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [C:\Users\Zbyse\AppData\Roaming\InRLiM3dED\VSGhhCP0.exe] => C:\Users\Zbyse\AppData\Roaming\InRLiM3dED\VSGhhCP0.exe (No File)
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\RunOnce: [Application Restart #1] => C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe [3262544 2025-12-19] (Brave Software, Inc. -> Brave Software, Inc.)
HKLM\...\Windows x64\Print Processors\sxj2mPC: C:\Windows\System32\spool\prtprocs\x64\sxj2mpc.dll [43520 2018-04-15] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Codename Longhorn DDK provider)
HKLM\...\Print\Monitors\sxj2m Langmon: C:\Windows\system32\sxj2mlm.dll [34304 2018-04-15] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\143.1.85.118\Installer\chrmstp.exe [2025-12-19] (Brave Software, Inc. -> Brave Software, Inc.)
HKLM\Software\...\Authentication\Credential Providers: [{6FF59A85-BC37-4CD4-BD8E-5AE965B838AB}] -> C:\Program Files (x86)\Windows MV\ScreenConnect.WindowsCredentialProvider.dll [2024-12-18] (Connectwise, LLC -> ) <==== ATTENTION
Lsa: [Authentication Packages] msv1_0 SshdPinAuthLsa C:\Program Files (x86)\Windows MV\ScreenConnect.WindowsAuthenticationPackage.dll
Startup: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Odeslat do OneNote.lnk [2021-12-18]
ShortcutTarget: Odeslat do OneNote.lnk -> C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Dell Display Manager.lnk [2022-09-28]
ShortcutTarget: Dell Display Manager.lnk -> C:\Program Files (x86)\Dell\Dell Display Manager\ddm.exe (EnTech Taiwan -> EnTech Taiwan)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\PHOTOfunSTUDIO 10.1 PE.lnk [2023-02-17]
ShortcutTarget: PHOTOfunSTUDIO 10.1 PE.lnk -> C:\Program Files (x86)\Common Files\Panasonic\PHOTOfunSTUDIO AutoStart\AutoStartupService.exe (No File)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Plex Media Server.lnk [2024-05-28]
ShortcutTarget: Plex Media Server.lnk -> C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe (Plex, Inc. -> Plex, Inc.)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {A3F0E515-D00C-48C2-89B0-715693E52D3F} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore{524091D7-79CD-4EC6-ACEE-3A96C533DC99} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-07-15] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {65145879-3B11-4418-878C-05DA6E55CCCB} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA{3AB8B24C-DD96-4B7B-AA06-29E9DF14F0F9} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-07-15] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {5128BEE9-CD94-456A-AFF5-09657D0AF5D8} - System32\Tasks\Core Temp Autostart Zbyse => C:\Program Files\Core Temp\Core Temp.exe [1040136 2023-09-24] (ALCPU -> ALCPU)
Task: {EDAFCDA4-3059-4A7C-AB06-CCDC9ECB0F3B} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [1626328 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {6B4FC2FB-2BD7-40DF-8A11-9C3D8BBCE6DD} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {87CB47E6-CF67-4F0D-A66F-3DE528D96E92} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {17EE1452-2655-4BE7-B36D-27A403FF39ED} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\OS Edition Upgrade event listener created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {5FCA7120-EDAF-4604-A5B6-3F0A950ECBB5} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Passport for Work alert created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {F3759799-946F-40CD-9C95-EA0102DE427D} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Provisioning initiated session => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {E71B1803-88C5-4CAD-9C42-33C181421445} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\PushLaunch => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {1591C48E-A16F-4239-A096-3C4C0E864261} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\PushRenewal => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {AE76A1CB-94F8-44DD-8148-D1CE1EFFD1AB} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\PushUpgrade => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {D9A66EBA-9DB0-4D6C-A5E9-5A5AAFC1CDB4} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Refresh schedule created by Declared Configuration to refresh any settings changed on the device => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {7A232ED9-892C-487B-88CE-2874CABC019C} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule #1 created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {6864080D-6420-4F38-B5CB-9DC78A312D93} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule #2 created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {A66DA2BE-997B-4D79-BC65-0ABD1215F87C} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule #3 created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {9880D39A-9D03-4287-A4C7-E1D78F36FC9B} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule created by enrollment client for renewal of certificate warning => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {4CC4D2BB-C4E4-4C2C-9B3E-EED9693328D7} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule to run OMADMClient by client => C:\Windows\system32\omadmclient.exe [514560 2025-08-29] (Microsoft Windows -> Microsoft Corporation)
Task: {4F6E6597-4448-49BD-92B9-0EE79D2246FD} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule to run OMADMClient by server => C:\Windows\system32\omadmclient.exe [514560 2025-08-29] (Microsoft Windows -> Microsoft Corporation)
Task: {F80F1DBB-BA78-4CCA-9518-51676197E1EF} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Win10 S Mode event listener created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {06F36A67-8330-4077-94AD-8731E01DDE5C} - System32\Tasks\Microsoft\Windows\Maintenance\SystemSoundsService3Zbyse => C:\Windows\System32\InteL\Microsoft\spoof.vbs [160 2024-12-22] () [File not signed]
Task: {E2478AFC-E69E-4139-8B25-4F32FB33CDE5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {D43CF5E2-240A-4891-8DFA-45A2424C3EB1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {A47571AB-4E3F-4B00-9450-0CCC87813688} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {4E94FD48-ABA3-4CF2-BDE9-C220A1355F35} - System32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA App.exe [3324528 2025-10-15] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4E1EA117-9BB5-443E-95BB-567D65061E44} - System32\Tasks\Updater => C:\Users\Public\Updater.vbs [370 2025-12-30] () [File not signed] <==== ATTENTION
Task: {CE41E6BA-FF24-46FD-A4AE-BE8039F9EAAE} - System32\Tasks\WindowsDefenderUpdate => C:\Windows\system32\wscript.exe [181760 2025-04-23] (Microsoft Windows -> Microsoft Corporation) -> "C:\Users\Public\Microsoft\3608.vbs"
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.50.1
Tcpip\..\Interfaces\{4e58779c-2187-4f7d-bb47-ae29454122d3}: [DhcpNameServer] 192.168.50.1
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default [2025-12-28]
Edge DownloadDir: Default -> E:\Download
Edge Notifications: Default -> hxxps://aukro.cz; hxxps://tinder.com; hxxps://www.facebook.com
Edge Extension: (Plasma Integration) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\cimiefiiaegbelhefglklhhakcgmhkai [2025-10-21]
Edge Extension: (Dokumenty Google offline) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-12-19]
Edge Extension: (Adblock Plus - free ad blocker) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmgoamodcdcjnbaobigkjelfplakmdhh [2025-12-19]
Edge Extension: (Edge relevant text changes) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-29]
Edge Extension: (Authenticator: 2FA Client) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ocglkepbibnalbgmbachknglpdipeoio [2024-08-31]
FireFox:
========
FF DefaultProfile: chbnxbjz.default
FF ProfilePath: C:\Users\Zbyse\AppData\Roaming\Mozilla\Firefox\Profiles\chbnxbjz.default [2024-01-14]
FF ProfilePath: C:\Users\Zbyse\AppData\Roaming\Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467 [2025-06-24]
FF Homepage: Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467 -> hxxps://www.seznam.cz/
FF Notifications: Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467 -> hxxps://tinder.com; hxxps://www.facebook.com
FF Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\Zbyse\AppData\Roaming\Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467\Extensions\jid1-NIfFY2CA8fy1tg@jetpack.xpi [2025-06-01]
FF Extension: (Colorful nebulae) - C:\Users\Zbyse\AppData\Roaming\Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467\Extensions\{4429fed7-beb8-4aeb-ae18-199130d957e4}.xpi [2024-11-29]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.21 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin-x32: @java.com/DTPlugin,version=11.421.2 -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\dtplugin\npDeployJava1.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.421.2 -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\plugin2\npjp2.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-06-25] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
Brave:
=======
BRA Profile: C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2025-12-30]
BRA DownloadDir: E:\Download
BRA Notifications: Default -> hxxps://fastshare.cz; hxxps://www.facebook.com
BRA Extension: (Authenticator) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\bhghoamapcdpbohphigoooaddinpkbai [2025-07-15]
BRA Extension: (Adblock Plus - free ad blocker) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2025-12-18]
BRA Extension: (Plasma Integration) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\cimiefiiaegbelhefglklhhakcgmhkai [2025-10-15]
BRA Extension: (Brave Ad Block Updater (Brave First Party Adblock Filters (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\adcocjohghhfpidemphmcmlmhnfgikei [2025-12-23]
BRA Extension: (Brave Local Data Files Updater) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2025-12-23]
BRA Extension: (Brave NTP background images) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2025-09-04]
BRA Extension: (Brave Ad Block Updater (Fanboy's Mobile Notifications (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\bfpgedeaaibpoidldhjcknekahbikncb [2025-12-29]
BRA Extension: (Brave Ad Block Updater (EasyList Cookie (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\cdbbhgbmjhfnhnmgeddbliobbofkgdhe [2025-12-30]
BRA Extension: (Brave NTP sponsored images) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\efkihffiamafhbhefjaljejgdpkelpal [2025-12-30]
BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2025-12-16]
BRA Extension: (Brave Ads Resources) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\iejekkikpddbbockoldagmfcdbffomfc [2025-07-15]
BRA Extension: (Brave Ad Block Updater (Brave Default Adblock Filters (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2025-12-30]
BRA Extension: (Brave Ad Block Updater (Brave Default Privacy Filters (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\kihnoaefogbkmblfimmibknnmkllbhlf [2025-12-30]
BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2025-11-22]
BRA Extension: (Brave User Agent) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\nlpaeekllejnmhoonlpcefpfnpbajbpe [2025-12-29]
BRA Extension: (Brave Ad Block Updater (EasyList Czech and Slovak (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\oegebjahecghlckbhkmojgnpcgdeajdi [2025-12-23]
BRA Extension: (P3A Configuration) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\P3AConfig [2025-09-27]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-07-15] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 BraveElevationService; C:\Program Files\BraveSoftware\Brave-Browser\Application\143.1.85.118\elevation_service.exe [3244624 2025-12-19] (Brave Software, Inc. -> Brave Software, Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-07-15] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 GameInputRedistService; C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe [141680 2025-10-20] (Microsoft Corporation -> Microsoft Corporation)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpDefenderCoreService.exe [2063376 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 Microsoft; C:\Program Files (x86)\Windows MV\ScreenConnect.ClientService.exe [95512 2024-12-18] (Connectwise, LLC -> ) <==== ATTENTION
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_20ae8f14a487d5db\Display.NvContainer\NVDisplay.Container.exe [1275624 2025-10-30] (NVIDIA Corporation -> NVIDIA Corporation)
R2 PlexUpdateService; C:\Program Files\Plex\Plex Media Server\Plex Update Service.exe [899408 2025-09-18] (Plex, Inc. -> Plex, Inc.)
R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [493544 2018-12-21] (Sony Imaging Products & Solutions Inc. -> Sony Corporation)
R2 Serviio; C:\Program Files\Serviio\bin\ServiioService.exe [413696 2022-10-22] () [File not signed]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\NisSrv.exe [4426832 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MsMpEng.exe [290704 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X]
S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X]
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 ALSysIO; C:\Temp\ALSysIO64.sys [43528 2025-12-30] (Microsoft Windows Hardware Compatibility Publisher -> Arthur Liberman)
S3 AudioQuestFilter; C:\Windows\system32\drivers\AqFilter.sys [32088 2017-04-17] (WDKTestCert djsis,131351358102549638 -> Windows (R) Win 7 DDK provider)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\Windows\System32\drivers\bthmodem.sys [76800 2019-12-07] (Microsoft Corporation) [File not signed]
S3 causbaudio; C:\Windows\System32\drivers\causbaudio.sys [381496 2020-07-14] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 causbaudioks; C:\Windows\system32\DRIVERS\causbaudioks.sys [53816 2020-07-14] (Microsoft Windows Hardware Compatibility Publisher -> )
R3 CLVirtualBus01; C:\Windows\System32\drivers\CLVirtualBus01.sys [113888 2018-05-02] (CyberLink Corp. -> CyberLink)
S3 DE_USBAUDIO; C:\Windows\system32\drivers\de_usbaudio.sys [144896 2013-05-20] (D&M Holdings Inc.) [File not signed]
S3 ds2waudio; C:\Windows\System32\drivers\ds2waudio.sys [431312 2024-02-13] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 ds2waudioks; C:\Windows\System32\drivers\ds2waudioks.sys [55504 2024-02-13] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 iFiUsbAudio; C:\Windows\System32\drivers\iFiUsbAudio.sys [404480 2021-07-25] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 iFiUsbAudioks; C:\Windows\System32\drivers\iFiUsbAudioks.sys [53752 2021-07-25] (Microsoft Windows Hardware Compatibility Publisher -> )
R3 KslD; C:\Windows\System32\drivers\wd\KslD.sys [333192 2025-11-18] (Microsoft Windows -> Microsoft Corporation)
S3 RtlWlanu; C:\Windows\System32\drivers\rtwlanu.sys [12435144 2024-10-14] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
R2 SSPORT; C:\WINDOWS\system32\Drivers\SSPORT.sys [14224 2021-06-07] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 usbrndis6; C:\Windows\System32\drivers\usb80236.sys [24064 2023-11-15] (Microsoft Corporation) [File not signed]
S3 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [246200 2024-10-10] (Oracle America, Inc. -> Oracle and/or its affiliates)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [21928 2025-12-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [635272 2025-12-18] (Microsoft Windows -> Microsoft Corporation)
S3 wdm_usb; C:\Windows\system32\DRIVERS\usb2ser.sys [151184 2016-07-15] (NGO -> MBB)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [102792 2025-12-18] (Microsoft Windows -> Microsoft Corporation)
S3 wsftprm; C:\Windows\System32\Drivers\wsftprm.sys [38816 2025-10-11] (TPZ SOLUCOES DIGITAIS LTDA -> Topaz OFD)
S3 XduooUsbAudio; C:\Windows\System32\drivers\XduooUsbAudio.sys [400952 2020-12-18] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 XduooUsbAudioks; C:\Windows\System32\drivers\XduooUsbAudioks.sys [53816 2020-12-18] (Microsoft Windows Hardware Compatibility Publisher -> )
S4 NvModuleTracker; \SystemRoot\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_ea6cec41fc5b2a8b\NvModuleTracker.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
Error Reading file: "C:\ProgramData\Desktop\WinSCP.lnk"
Error Reading file: "C:\ProgramData\Desktop\VLC media player.lnk"
Error Reading file: "C:\ProgramData\Desktop\Topaz Photo AI.lnk"
Error Reading file: "C:\ProgramData\Desktop\Steam.lnk"
Error Reading file: "C:\ProgramData\Desktop\SOMA.lnk"
Error Reading file: "C:\ProgramData\Desktop\Salamander (x64).lnk"
Error Reading file: "C:\ProgramData\Desktop\PotPlayer.lnk"
Error Reading file: "C:\ProgramData\Desktop\PlayMemories Home.lnk"
Error Reading file: "C:\ProgramData\Desktop\Play Ferocious.lnk"
Error Reading file: "C:\ProgramData\Desktop\ONLYOFFICE Editors.lnk"
Error Reading file: "C:\ProgramData\Desktop\Microsoft Edge.lnk"
Error Reading file: "C:\ProgramData\Desktop\Krita.lnk"
Error Reading file: "C:\ProgramData\Desktop\ImgBurn.lnk"
Error Reading file: "C:\ProgramData\Desktop\Hybrid.lnk"
Error Reading file: "C:\ProgramData\Desktop\GraphPad Prism 8.lnk"
Error Reading file: "C:\ProgramData\Desktop\foobar2000.lnk"
Error Reading file: "C:\ProgramData\Desktop\desktop.ini"
Error Reading file: "C:\ProgramData\Desktop\Dell Display Manager.lnk"
Error Reading file: "C:\ProgramData\Desktop\CyberLink Power2Go 13.lnk"
Error Reading file: "C:\ProgramData\Desktop\CPUID CPU-Z.lnk"
Error Reading file: "C:\ProgramData\Desktop\Brave.lnk"
Error Reading file: "C:\ProgramData\Desktop\Bandizip.lnk"
Error Reading file: "C:\ProgramData\Desktop\Audacity.lnk"
Error Reading file: "C:\ProgramData\Desktop\Affinity.lnk"
2025-12-30 10:16 - 2025-12-30 10:17 - 000028988 _____ C:\Users\Zbyse\Desktop\FRST.txt
2025-12-30 10:16 - 2025-12-30 10:16 - 002444288 _____ (Farbar) C:\Users\Zbyse\Desktop\FRST64.exe
2025-12-30 10:13 - 2025-12-30 10:13 - 000000000 ____D C:\AdwCleaner
2025-12-26 19:04 - 2025-12-26 19:04 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Minecraft Bedrock
2025-12-14 09:50 - 2025-12-30 10:17 - 000003642 _____ C:\Windows\system32\Tasks\WindowsDefenderUpdate
2025-12-14 09:50 - 2025-12-29 16:19 - 000000000 ___HD C:\Users\Zbyse\AppData\Roaming\Keyboard
2025-12-13 18:34 - 2025-12-13 18:34 - 000000000 ____D C:\Users\Zbyse\AppData\LocalLow\Omeletteandyogurt
2025-12-13 18:17 - 2025-12-13 18:17 - 000000443 _____ C:\Users\Public\Desktop\Play Ferocious.lnk
2025-12-13 18:17 - 2025-12-13 18:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ferocious
2025-12-08 22:32 - 2025-12-08 22:32 - 000000000 ____D C:\ProgramData\Roming
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-12-30 10:17 - 2025-08-28 19:56 - 000003698 _____ C:\Windows\system32\Tasks\Updater
2025-12-30 10:17 - 2025-08-28 19:56 - 000000370 _____ C:\Users\Public\Updater.vbs
2025-12-30 10:17 - 2025-06-23 14:33 - 000000000 ____D C:\FRST
2025-12-30 10:17 - 2025-02-12 11:29 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-12-30 10:17 - 2019-10-29 20:50 - 000000000 ____D C:\Temp
2025-12-30 10:05 - 2025-06-20 14:48 - 000000000 ____D C:\Users\Zbyse\SystemRootDoc
2025-12-30 09:48 - 2021-12-16 00:54 - 000000000 ____D C:\Windows\SystemTemp
2025-12-30 09:23 - 2020-06-24 17:15 - 001693140 _____ C:\Windows\system32\PerfStringBackup.INI
2025-12-30 09:23 - 2019-12-07 15:41 - 000716770 _____ C:\Windows\system32\perfh005.dat
2025-12-30 09:23 - 2019-12-07 15:41 - 000144948 _____ C:\Windows\system32\perfc005.dat
2025-12-30 09:23 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF
2025-12-30 09:18 - 2019-10-29 20:56 - 000000000 ____D C:\Program Files\Core Temp
2025-12-30 09:17 - 2020-06-24 17:16 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2025-12-30 09:17 - 2020-06-24 17:11 - 000008192 ___SH C:\DumpStack.log.tmp
2025-12-30 09:17 - 2019-10-29 20:43 - 000000000 ____D C:\ProgramData\NVIDIA
2025-12-30 03:05 - 2020-06-24 16:18 - 000000000 ____D C:\Users\Zbyse
2025-12-30 03:05 - 2019-12-07 10:03 - 000786432 _____ C:\Windows\system32\config\BBI
2025-12-30 03:01 - 2020-06-24 17:11 - 000000000 ____D C:\Windows\system32\SleepStudy
2025-12-30 01:53 - 2025-06-20 14:48 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\17HD
2025-12-29 21:40 - 2019-12-01 12:40 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\qBittorrent
2025-12-29 16:28 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness
2025-12-27 20:32 - 2019-10-29 21:18 - 000000000 ____D C:\Users\Zbyse\AppData\Local\CrashDumps
2025-12-27 07:58 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-12-26 19:04 - 2019-10-29 23:36 - 000000000 ____D C:\Users\Zbyse\AppData\Local\D3DSCache
2025-12-26 19:04 - 2019-10-29 20:42 - 000000000 ____D C:\Users\Zbyse\AppData\Local\Packages
2025-12-25 13:03 - 2019-10-29 21:46 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\foobar2000
2025-12-24 14:14 - 2019-11-06 17:12 - 000000000 ____D C:\Users\Zbyse\Documents\Euro Truck Simulator 2
2025-12-22 18:53 - 2024-12-22 16:11 - 000003714 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{79595118-642A-4AC0-B04E-8643ACE96630}
2025-12-22 18:53 - 2024-12-22 16:11 - 000003588 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{94B3EFB1-D529-4688-A6F9-74A65238CEC0}
2025-12-21 14:33 - 2019-10-29 23:12 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Microsoft\Word
2025-12-20 14:05 - 2019-11-22 00:16 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Microsoft\Excel
2025-12-20 11:23 - 2021-05-31 14:34 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Audacity
2025-12-20 10:55 - 2019-10-31 20:12 - 000000000 ____D C:\Users\Zbyse\AppData\Local\HQPlayer
2025-12-20 10:03 - 2025-09-21 06:58 - 000440696 _____ (Microsoft Corporation) C:\Windows\system32\gamingservicesproxy_b.dll
2025-12-20 10:03 - 2022-10-21 18:19 - 000153976 _____ (Microsoft Corporation) C:\Windows\system32\xgamehelper.exe
2025-12-20 10:03 - 2022-10-21 18:19 - 000076152 _____ (Microsoft Corporation) C:\Windows\system32\xgamecontrol.exe
2025-12-20 10:03 - 2021-11-20 22:13 - 000289144 _____ (Microsoft Corporation) C:\Windows\system32\gamelaunchhelper.dll
2025-12-20 10:03 - 2020-04-22 20:37 - 000166256 _____ (Microsoft Corporation) C:\Windows\system32\gamingtcuihelpers.dll
2025-12-20 10:03 - 2020-01-02 15:33 - 004606328 _____ (Microsoft Corporation) C:\Windows\system32\xgameruntime.dll
2025-12-20 10:03 - 2020-01-02 15:33 - 000878968 _____ (Microsoft Corporation) C:\Windows\system32\gameplatformservices.dll
2025-12-20 10:03 - 2020-01-02 15:33 - 000244088 _____ (Microsoft Corporation) C:\Windows\system32\gameconfighelper.dll
2025-12-20 01:54 - 2020-08-28 01:47 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-12-20 01:54 - 2020-08-28 01:47 - 000002285 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2025-12-19 20:05 - 2025-07-15 13:43 - 000002335 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk
2025-12-19 20:05 - 2025-07-15 13:43 - 000002294 _____ C:\Users\Public\Desktop\Brave.lnk
2025-12-18 15:47 - 2019-10-29 20:36 - 000000000 ____D C:\Windows\system32\Drivers\wd
2025-12-16 08:08 - 2024-07-16 16:30 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Adobe
2025-12-15 19:39 - 2025-07-16 07:36 - 000000000 ____D C:\XboxGames
2025-12-15 19:39 - 2019-10-29 20:43 - 000000000 ____D C:\ProgramData\Packages
2025-12-10 16:00 - 2019-10-29 21:18 - 000000000 ____D C:\Windows\system32\MRT
2025-12-10 15:58 - 2019-10-29 21:18 - 218369424 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2025-12-07 19:32 - 2019-11-07 16:51 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Microsoft\PowerPoint
2025-12-02 21:01 - 2023-12-30 13:01 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\vlc
2025-12-01 17:49 - 2019-10-29 23:12 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Microsoft\Office
==================== Files in the root of some directories ========
2025-11-02 10:08 - 2025-11-20 17:29 - 000015872 _____ () C:\Users\Public\update.ip.86.exe
2025-08-28 19:56 - 2025-12-30 10:17 - 000000370 _____ () C:\Users\Public\Updater.vbs
2025-11-22 10:58 - 2025-11-22 11:51 - 000000132 _____ () C:\Users\Zbyse\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2025-08-15 17:40 - 2025-09-19 18:59 - 000000128 _____ () C:\Users\Zbyse\AppData\Roaming\winscp.rnd
2025-08-20 09:22 - 2025-08-20 09:23 - 000101668 _____ () C:\Users\Zbyse\AppData\Local\dxdiag.log
2024-12-23 16:32 - 2025-11-17 18:24 - 000007849 _____ () C:\Users\Zbyse\AppData\Local\krita-sysinfo.log
2024-12-23 16:32 - 2025-11-17 18:31 - 000095068 _____ () C:\Users\Zbyse\AppData\Local\krita.log
2025-11-17 18:31 - 2025-11-17 18:31 - 000000039 _____ () C:\Users\Zbyse\AppData\Local\kritadisplayrc
2024-04-12 13:13 - 2025-11-17 18:31 - 000025002 _____ () C:\Users\Zbyse\AppData\Local\kritarc
2025-06-30 15:36 - 2025-06-30 15:36 - 398406584 _____ (Atlassian) C:\Users\Zbyse\AppData\Local\output_01b59bab6a1a44e6af3d3bfe1687b486_Standaloneup.exe
2025-06-30 15:29 - 2025-06-30 15:29 - 872484864 _____ () C:\Users\Zbyse\AppData\Local\TopazPhotoAI-4.0.0.msi
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Microsoft Windows 10 Home Version 22H2 19045.6456 (X64) (2020-06-24 16:16:49)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-3686431232-4186227985-1175276304-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3686431232-4186227985-1175276304-503 - Limited - Disabled)
Guest (S-1-5-21-3686431232-4186227985-1175276304-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3686431232-4186227985-1175276304-504 - Limited - Disabled)
Zbyse (S-1-5-21-3686431232-4186227985-1175276304-1001 - Administrator - Enabled) => C:\Users\Zbyse
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 24.07 (x64 edition) (HKLM\...\{23170F69-40C1-2702-2407-000001000000}) (Version: 24.07.00.0 - Igor Pavlov)
Affinity (HKLM\...\{8B40374A-6A89-451A-B709-63159CC09808}) (Version: 3.0.0.3791 - Serif Europe Ltd)
Altap Salamander 4.0 (x64) (HKLM\...\Altap Salamander 4.0 (x64)) (Version: 4.0 - ALTAP)
AMD GPIO2 Driver (HKLM-x32\...\{E9DD399F-21A3-479E-A7DF-D6CF4B2ADBF3}) (Version: 2.2.0.130 - Advanced Micro Devices, Inc.) Hidden
AMD Chipset Software (HKLM-x32\...\AMD_Chipset_IODrivers) (Version: 2.13.27.501 - Advanced Micro Devices, Inc.)
AMD I2C Driver (HKLM-x32\...\{B31D92D9-2914-46B0-9738-F668A563DE73}) (Version: 1.2.0.117 - Advanced Micro Devices, Inc.) Hidden
AMD PCI Driver (HKLM-x32\...\{80EC3CEE-2940-42A1-A776-B5D810D39F1E}) (Version: 1.0.0.82 - Advanced Micro Devices, Inc.) Hidden
AMD PSP Driver (HKLM-x32\...\{988F14B8-79A8-475D-BAC7-83F96AD3D821}) (Version: 4.13.0.0 - Advanced Micro Devices, Inc.) Hidden
AMD Ryzen Balanced Driver (HKLM-x32\...\{A171D320-C42C-4F3B-A2D8-C6A09F6788CC}) (Version: 6.0.0.9 - Advanced Micro Devices, Inc.) Hidden
AMD SBxxx SMBus Driver Alpha (HKLM-x32\...\{AAE0E27D-C88A-49BA-8715-77ADCD4286A3}) (Version: 5.12.0.38 - Advanced Micro Devices, Inc.) Hidden
AMD_Chipset_Drivers (HKLM-x32\...\{40c19864-e557-4855-95ee-075689dfcf8e}) (Version: 2.13.27.501 - Advanced Micro Devices, Inc.) Hidden
Aperio ImageScope (HKLM-x32\...\{A5856584-F090-4FD3-BA95-34E6D85546B1}) (Version: 9.01 - )
Atdega Mod Pack 7.6 Fin (HKLM-x32\...\{5C758480-BC02-4E19-8E3D-FC5747E0D777}_is1) (Version: 7.6 Fin - Atdega Company, Inc.)
Audacity 3.7.3 (HKLM\...\Audacity_is1) (Version: 3.7.3 - Audacity Team)
AviSynth 2.6 (HKLM-x32\...\AviSynth) (Version: 2.6.0.6 - GPL Public release.)
Bandizip (HKLM\...\Bandizip) (Version: 7.32 - Bandisoft.com)
Blackmagic RAW Common Components (HKLM\...\{D89568C5-2607-4EB9-8173-3F032A0E6F16}) (Version: 4.5 - Blackmagic Design)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Brave (HKLM-x32\...\BraveSoftware Brave-Browser) (Version: 143.1.85.118 - Autoři prohlížeče Brave)
Common Desktop Agent (HKLM\...\{A38002C3-BA08-466A-A813-7F9D578B13A1}) (Version: 1.62.0 - OEM) Hidden
Core Temp 1.18.1 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.18.1 - ALCPU)
CPUID CPU-Z 2.04 (HKLM\...\CPUID CPU-Z_is1) (Version: 2.04 - CPUID, Inc.)
CyberLink LabelPrint 2.5 (HKLM-x32\...\{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.0.12508 - CyberLink Corp.) Hidden
CyberLink LabelPrint 2.5 (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.0.12508 - CyberLink Corp.)
CyberLink Power2Go 13 (HKLM-x32\...\{7BB5FFC9-EC40-47c7-B10A-E0E6A296074D}) (Version: 13.0.0523.0 - CyberLink Corp.)
CyberLink WaveEditor 2 (HKLM-x32\...\{324F76CC-D8DD-4D87-B77D-D4AF5E1AA7B3}) (Version: 2.1.9529.0 - CyberLink Corp.)
DaVinci Resolve (HKLM\...\{AD710780-C70E-47A9-93A0-65450C9B221E}) (Version: 20.0.00049 - Blackmagic Design)
DaVinci Resolve Control Panels (HKLM\...\{07A5B5D9-8D8E-4330-B352-1B1038273B1D}) (Version: 2.3.2.0 - Blackmagic Design)
DaVinci Resolve Renderer (HKLM\...\{C2C9A9F5-AFA7-4A20-BA6D-46E8A19A3A44}) (Version: 20.0.00049 - Blackmagic Design)
Dell Display Manager (HKLM-x32\...\{AC50C05D-9D57-40F5-B2EF-AC402F14312B}_is1) (Version: 1.56.2109 - EnTech Taiwan)
Excel (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\1fc5b090eab9aa41f8a2f5987367e6da) (Version: 1.0 - Excel)
Fairlight Audio Accelerator Utility (HKLM\...\FairlightAudioAccelerator_is1) (Version: 1.0.15 - Blackmagic Design)
Far Cry Primal (HKLM-x32\...\{80BD47AF-CF13-49B2-99BF-7E78FBA26124}_is1) (Version: - Ubisoft)
Ferocious (HKLM-x32\...\Ferocious_is1) (Version: 0.0.0 - DODI-Repacks)
ffdshow v1.3.4533 [2014-09-29] (HKLM-x32\...\ffdshow_is1) (Version: 1.3.4533.0 - )
foobar2000 v1.6.16 (HKLM-x32\...\foobar2000) (Version: 1.6.16 - Peter Pawlowski)
GraphPad Prism 8.0.1.244 (HKLM\...\{1D0625E1-610F-499E-BA99-CAF230096AE1}) (Version: 8.1.244 - GraphPad Software Inc.)
Haali Media Splitter (HKLM-x32\...\HaaliMkx) (Version: - )
Hard Disk Sentinel Pro (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\{A559093D-FCCB-1B3D-5504-74D07E48A7FB}) (Version: v.5.61.8 - libbi)
HD Tune Pro 5.70 (HKLM-x32\...\HD Tune Pro_is1) (Version: - EFD Software)
Hybrid verze 0.2.6 (HKLM\...\{CE16C5A3-F700-4B35-A58C-99429D7E3240}}_is1) (Version: 0.2.6 - Selurs Software)
ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!)
Intel(R) Network Connections 25.6.0.4 (HKLM\...\{8DB3497D-41AF-423B-9027-D885A28857AB}) (Version: 25.6.0.4 - Intel) Hidden
Intel(R) Network Connections 25.6.0.4 (HKLM\...\PROSetDX) (Version: 25.6.0.4 - Intel)
IrfanView 4.67 (32-bit) (HKLM-x32\...\IrfanView) (Version: 4.67 - Irfan Skiljan)
IrfanView 4.67 (64-bit) (HKLM\...\IrfanView64) (Version: 4.67 - Irfan Skiljan)
Java 8 Update 421 (HKLM-x32\...\{77924AE4-039E-4CA4-87B4-2F32180421F0}) (Version: 8.0.4210.9 - Oracle Corporation)
JDownloader 2 (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
Krita (x64) 5.2.2 (HKLM\...\Krita_x64) (Version: 5.2.2.100 - Krita Foundation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
MergeModule_x64 (HKLM\...\{8B591A6B-253E-4E62-B2A8-3668CDA0A907}) (Version: 11.0.00 - Sony Corporation) Hidden
MergeModule_x86 (HKLM-x32\...\{51B45206-47B1-4B51-B46A-330B9156D6C1}) (Version: 11.0.00 - Sony Corporation) Hidden
Microsoft .NET Host - 8.0.22 (x64) (HKLM\...\{872CDB4B-5DDE-4297-BD19-C93B6C93E386}) (Version: 64.88.42551 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.22 (x64) (HKLM\...\{7A046DD7-9D61-4C5D-8F5E-24EE192B1B6A}) (Version: 64.88.42551 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.22 (x64) (HKLM\...\{C43A1A89-0CA5-43FD-BDC4-3B85DAD06A41}) (Version: 64.88.42551 - Microsoft Corporation) Hidden
Microsoft Access MUI (Czech) 2013 (HKLM\...\{90150000-0015-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Access MUI (English) 2013 (HKLM\...\{90150000-0015-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Access Setup Metadata MUI (English) 2013 (HKLM\...\{90150000-0117-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft DCF MUI (Czech) 2013 (HKLM\...\{90150000-0090-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft DCF MUI (English) 2013 (HKLM\...\{90150000-0090-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 143.0.3650.96 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 143.0.3650.96 - Microsoft Corporation) Hidden
Microsoft Excel MUI (Czech) 2013 (HKLM\...\{90150000-0016-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Excel MUI (English) 2013 (HKLM\...\{90150000-0016-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft GameInput (HKLM\...\{ECB4BDD1-984C-9F25-299C-A9EF75C14197}) (Version: 10.1.26100.6879 - Microsoft Corporation)
Microsoft Groove MUI (Czech) 2013 (HKLM\...\{90150000-00BA-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Groove MUI (English) 2013 (HKLM\...\{90150000-00BA-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft InfoPath MUI (Czech) 2013 (HKLM\...\{90150000-0044-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft InfoPath MUI (English) 2013 (HKLM\...\{90150000-0044-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Lync MUI (Czech) 2013 (HKLM\...\{90150000-012B-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Lync MUI (English) 2013 (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office 32-bit Components 2013 (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Korrekturhilfen 2013 - Deutsch (HKLM\...\{90150000-001F-0407-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Language Pack 2013 - Czech/čeština (HKLM\...\Office15.OMUI.cs-cz) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office O MUI (Czech) 2013 (HKLM\...\{90150000-0100-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (Czech) 2013 (HKLM\...\{90150000-00E1-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (English) 2013 (HKLM\...\{90150000-00E1-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM UX MUI (Czech) 2013 (HKLM\...\{90150000-00E2-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM UX MUI (English) 2013 (HKLM\...\{90150000-00E2-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUSR) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office Proofing (Czech) 2013 (HKLM\...\{90150000-002C-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing (English) 2013 (HKLM\...\{90150000-002C-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - English (HKLM\...\{90150000-001F-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - Español (HKLM\...\{90150000-001F-0C0A-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared 32-bit MUI (Czech) 2013 (HKLM\...\{90150000-00C1-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared 32-bit MUI (English) 2013 (HKLM\...\{90150000-00C1-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Czech) 2013 (HKLM\...\{90150000-006E-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (English) 2013 (HKLM\...\{90150000-006E-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared Setup Metadata MUI (English) 2013 (HKLM\...\{90150000-0115-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft OneNote MUI (Czech) 2013 (HKLM\...\{90150000-00A1-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft OneNote MUI (English) 2013 (HKLM\...\{90150000-00A1-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Outlook MUI (Czech) 2013 (HKLM\...\{90150000-001A-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Outlook MUI (English) 2013 (HKLM\...\{90150000-001A-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft PowerPoint MUI (Czech) 2013 (HKLM\...\{90150000-0018-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft PowerPoint MUI (English) 2013 (HKLM\...\{90150000-0018-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Publisher MUI (Czech) 2013 (HKLM\...\{90150000-0019-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Publisher MUI (English) 2013 (HKLM\...\{90150000-0019-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft SharePoint Designer MUI (Czech) 2013 (HKLM\...\{90150000-0017-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.42.34438 (HKLM-x32\...\{b49c10dd-4d54-45f8-ad13-fa25704456a4}) (Version: 14.42.34438.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.42.34438 (HKLM-x32\...\{ba10fda9-f731-441f-a999-000bbb7ceec2}) (Version: 14.42.34438.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.42.34438 (HKLM\...\{E528AD94-12D7-42C4-91A3-908BE28E9BD2}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.42.34438 (HKLM\...\{2E15F519-4FDA-4834-B4EE-7EFCE7D8D4EE}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.42.34438 (HKLM-x32\...\{A5592FEF-F948-4BA6-A066-8BBFC2DC7EE1}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.42.34438 (HKLM-x32\...\{5D0C4511-3CA1-4FF8-A4BA-C0E1957ABEEA}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022-2024 Redistributable (x64) - 14.36.32532 (HKLM-x32\...\{048E023D-08A9-065B-896C-A5B31DE30A40}) (Version: 24.4.4.9118 - Microsoft)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}) (Version: 10.0.50908 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.22 (x64) (HKLM\...\{4CCC1CCD-6FA3-4DD5-A06B-E94EA90094CF}) (Version: 64.88.42561 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.22 (x64) (HKLM-x32\...\{a3899eef-6164-4d42-b8c3-95ae6a844821}) (Version: 8.0.22.35428 - Microsoft Corporation)
Microsoft Word MUI (Czech) 2013 (HKLM\...\{90150000-001B-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Word MUI (English) 2013 (HKLM\...\{90150000-001B-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft X MUI (Czech) 2013 (HKLM\...\{90150000-0101-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
MKVToolNix 91.0.0 (64-bit) (HKLM-x32\...\MKVToolNix) (Version: 91.0.0 - Moritz Bunkus)
Monkey's Audio x64 (HKLM-x32\...\Monkey's Audio x64_is1) (Version: 10.25 - Matthew Todd Ashland)
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština (HKLM\...\{90150000-001F-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina (HKLM\...\{90150000-001F-041B-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
NVIDIA App 11.0.5.420 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NvApp) (Version: 11.0.5.420 - NVIDIA Corporation)
NVIDIA FrameView SDK 1.5.11504.36206172 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.5.11504.36206172 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.4.5.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.4.5.0 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 581.80 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 581.80 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.23.1019 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.23.1019 - NVIDIA Corporation)
ONLYOFFICE Desktop Editors (HKLM\...\{85C98361-DDBF-490D-81DA-04298A44D5C4}) (Version: 8.0.1.31 - Ascensio System SIA) Hidden
ONLYOFFICE Desktop Editors 8.0 (x64) (HKLM\...\ONLYOFFICE Desktop Editors) (Version: 8.0.1.31 - Ascensio System SIA)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
OpenVINO AI Plugins for Audacity version v3.7.1-R4.2 (HKLM\...\{944D0498-C914-46E9-97E0-813B726CB0B0}_is1) (Version: v3.7.1-R4.2 - Intel Corporation)
Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Outlook (1) (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\f42c72521bca47863b0c6b497cb01342) (Version: 1.0 - Outlook (1))
Outlook (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\6b0f23e57a39ebfbf2814acb1a24293d) (Version: 1.0 - Outlook)
PlayMemories Home (HKLM-x32\...\{AEB04E0E-0A28-4014-A96A-282E43B7227B}) (Version: 6.0.00.12211 - Sony Corporation)
Plex Media Server 1.42.2.10156 (x64) (HKLM\...\{688e1d8f-188e-49cd-83ca-2669a7e3f8cc}_is1) (Version: 1.42.2.10156 - Plex, Inc.)
PMB_ModeEditor (HKLM-x32\...\{F8063714-BD75-42DC-8FAA-D0E1EED92519}) (Version: 11.0.00 - Sony Corporation) Hidden
PMB_ServiceUploader (HKLM-x32\...\{CF081855-ED80-445A-BF63-025584939230}) (Version: 11.0.00 - Sony Corporation) Hidden
PotPlayer (HKLM-x32\...\PotPlayer) (Version: 25.09.09.0 - Kakao Corp.)
PowerPoint (1) (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\1f6d7c2045d0e984f46a5779d00bd03f) (Version: 1.0 - PowerPoint (1))
PowerPoint (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\319814cb56b667dff88f54e08be8f51f) (Version: 1.0 - PowerPoint)
Promontory_GPIO Driver (HKLM-x32\...\{B5512BCC-F4CD-4159-86A4-B2AD7D38FFA9}) (Version: 2.0.1.0 - Advanced Micro Devices, Inc.) Hidden
qBittorrent (HKLM-x32\...\qBittorrent) (Version: 5.1.0 - The qBittorrent project)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0015-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0015-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0016-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0016-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0017-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{85EB11C5-7793-4386-8F93-3D15494EC269}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0018-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0018-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0019-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0019-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001A-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001A-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001B-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{1E8252A7-D489-4BB6-9694-93799FFD33ED}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0407-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{DABB9E2A-F054-4F97-9EB2-6992316C6EC7}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0409-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{835E4BED-E265-4103-AE14-0B4C70CF3FE8}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{835E4BED-E265-4103-AE14-0B4C70CF3FE8}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}_Office15.PROPLUSR_{1F7000D3-A917-4AD2-BA55-59E6FDAF062A}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-041B-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{4601BD00-BC9B-4CA2-940C-2552782C7347}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0C0A-1000-0000000FF1CE}_Office15.PROPLUSR_{4BF13B26-3A95-4E42-900A-DEB16FDA75A0}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-002C-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{EC915383-0457-4D83-BE7A-009D7841E9C5}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-002C-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{C5D14A1B-6E3E-491A-96C6-ABDEEEC4E97D}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0044-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0044-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-006E-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{3F685A71-DF4A-4AC0-A110-0FA0B7FFD86C}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-006E-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{D7E879E6-B505-4DA2-BFEE-53A55E7C8E38}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0090-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0090-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00A1-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00A1-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00BA-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00BA-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{1931508C-C004-4983-81E3-70BE6252904B}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00C1-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{6E88843F-58F2-45EB-8C4A-0DDFE45366E1}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00C1-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{E4F470B2-3601-4E1C-B291-D6B580F53136}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E1-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E1-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E2-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E2-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0100-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0101-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0115-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{D7E879E6-B505-4DA2-BFEE-53A55E7C8E38}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0117-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-012B-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft)
Serviio (HKLM\...\Serviio) (Version: 2.3 - Six Lines Ltd)
Signalyst HQPlayer Desktop 3 (HKLM-x32\...\HQPlayer Desktop 3) (Version: - Signalyst)
SOMA (CZ Dabing) (HKLM-x32\...\FPD_SOMA_is1) (Version: 1.0 - Fénix ProDabing)
SOMA (HKLM\...\U09NQQ==_is1) (Version: 1 - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TIDAL (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\TIDAL) (Version: 2.38.6 - TIDAL Music AS)
Topaz Photo AI (HKLM\...\{46DE1251-ACBD-498F-8DDC-17AAC7588EFE}) (Version: 4.1.0 - Topaz Labs LLC)
Topaz Video AI (HKLM\...\{4965FA3A-1EF0-4A7B-9640-A6901C51BEAB}) (Version: 3.2.2 - Topaz Labs LLC)
UE Prerequisites (x64) (HKLM\...\{7A117EE9-1DCA-4DF2-816B-6810A95D67C5}) (Version: 1.0.22.0 - Epic Games, Inc.) Hidden
UE Prerequisites (x64) (HKLM-x32\...\{7675c6c6-b4bd-4206-855e-5e39d89ea708}) (Version: 1.0.22.0 - Epic Games, Inc.) Hidden
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{90150000-012B-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{B8D93870-98D1-4980-AFCA-E26563CDFB79}) (Version: 8.94.0.0 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.21 - VideoLAN)
WinSCP 6.5.3 (HKLM-x32\...\winscp3_is1) (Version: 6.5.3 - Martin Prikryl)
Word (1) (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\f3599346063c9afede925c6eb5c87f5c) (Version: 1.0 - Word (1))
Word (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\1b837d0bf93d01407352736c91b7bf50) (Version: 1.0 - Word)
Xerox Easy Printer Manager (HKLM-x32\...\Xerox Easy Printer Manager) (Version: 1.03.97.02(06.06.2021) - Xerox Corporation.)
Xerox Easy Wireless Setup (HKLM-x32\...\Xerox Easy Wireless Setup) (Version: 3.70.18.0 - Xerox Corporation)
Xerox Phaser 3020 (HKLM-x32\...\Xerox Phaser 3020) (Version: V1.06 (06.07.2021) - Xerox Corporation)
Packages:
=========
CUE Splitter -> C:\Program Files\WindowsApps\38812MedievalSoftware.CUESplitter_2.0.8.0_x64__qfb5004rcjhse [2025-06-18] (Medieval Software)
Dolby Vision Extensions -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyVisionAccess_2.20501.518.0_x64__rz1tebttyb220 [2025-07-26] (Dolby Laboratories)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2022-03-23] (Microsoft Corporation)
Doplněk pro Fotky -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2021.39122.10110.0_x64__8wekyb3d8bbwe [2022-03-23] (Microsoft Corporation)
HEVC Video Extensions -> C:\Program Files\WindowsApps\Microsoft.HEVCVideoExtensions_2.4.37.0_x64__8wekyb3d8bbwe [2025-12-06] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-10-29] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-10-29] (Microsoft Corporation) [MS Ad]
Minecraft for Windows -> C:\Program Files\WindowsApps\MICROSOFT.MINECRAFTUWP_1.21.13101.0_x64__8wekyb3d8bbwe [2025-12-18] (Microsoft Studios)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.969.0_x64__56jybvy8sckqj [2025-11-08] (NVIDIA Corp.)
TvMate IPTV Player -> C:\Program Files\WindowsApps\2242VelocityAppsTeam.TiviMate_7.5.4.0_x64__v313ts49xh8we [2025-02-23] (Velocity Apps Team)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001_Classes\CLSID\{5B69A6B4-393B-459C-8EBB-214237A9E7AC}\InprocServer32 -> C:\Program Files\Bandizip\bdzshl.x64.dll (Bandisoft International Inc. -> Bandisoft International Inc.)
CustomCLSID: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001_Classes\CLSID\{86ca1aa0-34aa-4e8b-a509-50c905bae2a2}\InprocServer32 -> => No File
CustomCLSID: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001_Classes\CLSID\{C78B614C-F3EA-11D2-94A1-00E0292A01E3}\InprocServer32 -> C:\Supgam\Altap Salamander 3.06 (x86 x64) 2015 CZ (Ml) Portable\utils\salextx64.dll (ALTAP) [File not signed]
CustomCLSID: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001_Classes\CLSID\{C78B614F-F3EA-11D2-94A1-00E0292A01E3}\InprocServer32 -> C:\Program Files\Altap Salamander\utils\salextx64.dll (Fine spol. s r.o. -> ALTAP)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ContextMenuHandlers1: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP\System\aimp_menu64.dll -> No File
ContextMenuHandlers1: [CLVDShellExt13] -> {19476CE9-8B19-4EA5-A6FD-5BB11832C0EA} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt13.dll [2019-05-23] (CyberLink Corp. -> Cyberlink)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Supgam\WinRAR 5.90 Beta 1 CZ (x64) Portable\rarext.dll [2020-01-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Supgam\WinRAR 5.90 Beta 1 CZ (x64) Portable\rarext32.dll [2020-01-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers2: [CLVDShellExt13] -> {19476CE9-8B19-4EA5-A6FD-5BB11832C0EA} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt13.dll [2019-05-23] (CyberLink Corp. -> Cyberlink)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers4: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP\System\aimp_menu64.dll -> No File
ContextMenuHandlers5: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_20ae8f14a487d5db\nvshext.dll [2025-10-30] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Supgam\WinRAR 5.90 Beta 1 CZ (x64) Portable\rarext.dll [2020-01-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Supgam\WinRAR 5.90 Beta 1 CZ (x64) Portable\rarext32.dll [2020-01-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1_S-1-5-21-3686431232-4186227985-1175276304-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers2_S-1-5-21-3686431232-4186227985-1175276304-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers4_S-1-5-21-3686431232-4186227985-1175276304-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers5_S-1-5-21-3686431232-4186227985-1175276304-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
==================== Codecs (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Drivers32: [VIDC.FFDS] => C:\Windows\SysWOW64\ff_vfw.dll [112640 2014-09-29] () [File not signed]
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Excel.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=leffmjdabcgaflkikcefahmlgpodjkdm --app-url=hxxps://excel.office.com/
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Outlook (1).lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=bjhmmnoficofgoiacjaajpkfndojknpb --app-url=hxxps://outlook.com/
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Outlook.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=bjhmmnoficofgoiacjaajpkfndojknpb
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PowerPoint (1).lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=opfacbhaojodjaojgocnibmklknchehf --app-url=hxxps://powerpoint.office.com/
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=opfacbhaojodjaojgocnibmklknchehf
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Word (1).lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=hikhggiobiflkdfdgdajcfklmcibbopi --app-url=hxxps://word.office.com/
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Word.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=hikhggiobiflkdfdgdajcfklmcibbopi
==================== Loaded Modules (Whitelisted) =============
2025-05-27 21:58 - 2025-05-27 21:58 - 000498176 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\aac_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000461824 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\aac_encoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000366592 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\ac3_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000378368 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\ac3_encoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000314880 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\ape_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000523776 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\dca_decoder.dll
2025-06-15 01:47 - 2025-06-15 01:47 - 000279040 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\dsd_lsbf_planar_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000396288 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\dvvideo_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001773568 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\h264_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001709056 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\hevc_decoder.dll
2025-09-20 21:50 - 2025-09-20 21:50 - 000454656 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\libmp3lame_encoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 002021376 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\libx264_encoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000360448 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mp2_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000360448 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mp3_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000585728 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mpeg1video_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000596480 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mpeg2video_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000784896 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mpeg4_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000697344 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\msmpeg4v2_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000697344 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\msmpeg4v3_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000330240 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\prores_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001193472 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\vc1_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000735232 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\vp8_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001878528 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\vp9_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000326656 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\wavpack_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000356352 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\wmav2_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001193472 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\wmv3_decoder.dll
2024-06-19 11:00 - 2024-06-19 11:00 - 000101376 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2025-10-28 17:57 - 2025-10-28 17:57 - 000000000 ___JL (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\PlugIns\NVIDIA App\MessageBusRouter.dll] C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\plugins\NVIDIA Overlay\MessageBusRouter.dll
2024-07-26 13:10 - 2025-10-28 17:57 - 000000000 ___JL (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA App\MessageBus\NvMessageBusBroadcast.dll] C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem\NvMessageBusBroadcast.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Microsoft => ""="Service"
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2020-04-14] (Microsoft Corporation -> Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2020-04-14] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\ssv.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\jp2ssv.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2019-06-12] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\sharepoint.com -> hxxps://mendelu-files.sharepoint.com
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2019-03-19 05:49 - 2025-06-24 14:06 - 000000027 _____ C:\Windows\system32\drivers\etc\hosts
127.0.0.1 localhost
==================== Network ===========================
(Currently there is no automatic fix for this section.)
DNS Servers: 192.168.50.1
Windows Firewall is enabled.
Network Binding:
=============
Ethernet: Intel(R) I211 Gigabit Network Connection -> e1r65x64.sys
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\java8path;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\Bandizip\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA app\NvDLISR;C:\Program Files\dotnet\
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\Control Panel\Desktop\\Wallpaper -> e:\download\01-wallpaper_soma_1920x1080.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 5) (TamperProtectionSource: )
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Program Files\qBittorrent
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Users\Public
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\ProgramData
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\AudioService
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Windows\system32\config\systemprofile\AppData\Local\Temp
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Windows\system32\config\systemprofile\AppData\Roaming
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Windows\system32\config\systemprofile\AppData\Local
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|cmd.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|wscript.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|cscript.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|Nano.js
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|Nano.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|ssd.vbs
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|xx.vbs
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|sd.vbs
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|powershell.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Windows\explorer.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|explorer.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|conhost.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|jsc.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\AudioService\AudioService.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|schtasks.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|vbc.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|Font.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|proquota.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|RegAsm.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\TemporaryPaths|\\?\C:\Supgam\Total Commander\10.51 Portable\App\totalcmd\tcrun.exe
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "ACUW16EN"
HKLM\...\StartupApproved\Run32: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run32: => "Adobe CCXProcess"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\StartupFolder: => "Odeslat do OneNote.lnk"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "CCXProcess"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "ACDSeeCommanderUltimate16"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_D1548DDA36BFF9FBCE51AAEDDC45F532"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "C:\Users\Zbyse\AppData\Roaming\InRLiM3dED\VSGhhCP0.exe"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [UDP Query User{E32466DC-1CDB-4C56-AB27-1F5C93AE7543}C:\program files (x86)\daum\potplayer\potplayermini.exe] => (Allow) C:\program files (x86)\daum\potplayer\potplayermini.exe (Kakao Corp. -> Kakao)
FirewallRules: [TCP Query User{9B67F7AE-9C21-46A5-9924-E72B2E980C7A}C:\program files (x86)\daum\potplayer\potplayermini.exe] => (Allow) C:\program files (x86)\daum\potplayer\potplayermini.exe (Kakao Corp. -> Kakao)
FirewallRules: [{FC19A5E0-2A31-4E41-A5FA-DB7D85ADF21E}] => (Allow) C:\Program Files\foobar2000\foobar2000 Shell Associations Updater.exe (Peter Pawlowski) [File not signed]
FirewallRules: [{AC54F273-F824-489E-9365-48AFD1CBFB68}] => (Allow) C:\Program Files\foobar2000\foobar2000 Shell Associations Updater.exe (Peter Pawlowski) [File not signed]
FirewallRules: [{462C0772-BE15-4BBD-8479-2712EF944985}] => (Allow) C:\Program Files\foobar2000\foobar2000 Shell Associations Updater.exe (Peter Pawlowski) [File not signed]
FirewallRules: [{321F3267-42ED-4AB7-B6FF-911E0B85B892}] => (Allow) C:\Program Files\foobar2000\foobar2000 Shell Associations Updater.exe (Peter Pawlowski) [File not signed]
FirewallRules: [{9C9D195A-9A27-453E-9268-215248E6F82C}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{2C6563FF-4F5B-4F40-A144-E1CBA0433B51}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{98E12835-66D8-452D-AA75-6B650BC77783}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{D123163A-AA64-434D-98E9-284F09669A37}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{37B6311C-7047-4B33-B16F-6C5FB38DDD61}] => (Allow) D:\Programy\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{BD3A8A7E-23BA-4979-88B1-6967B6278BE5}] => (Allow) D:\Programy\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{985B5949-28D7-42D8-AB4B-7AB98D507FEF}] => (Allow) D:\Programy\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{2F8DEF43-7244-48D9-9EC2-D90A44775377}] => (Allow) D:\Programy\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{744C4FC9-36BB-4E86-A4ED-3AD349CC14A2}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{19A9441B-845B-4BA8-AF25-9E8E5E64BD13}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{037DAC84-EE78-47C2-BF8D-D99E91361DD4}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{598F75DA-D9B4-4A7C-808A-5AEA606AFD56}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{E7C1E876-BE5A-4181-A511-C539FD9FB27A}E:\threadr\programy\imagej\imagej.exe] => (Allow) E:\threadr\programy\imagej\imagej.exe () [File not signed]
FirewallRules: [UDP Query User{2FC6EF2E-02F0-44BB-9553-3FAE6FC16EAC}E:\threadr\programy\imagej\imagej.exe] => (Allow) E:\threadr\programy\imagej\imagej.exe () [File not signed]
FirewallRules: [TCP Query User{F3B50D36-5D6F-4F61-AFE5-A0F96BF1D1C5}C:\program files\serviio\jre\bin\javaw.exe] => (Allow) C:\program files\serviio\jre\bin\javaw.exe
FirewallRules: [UDP Query User{500ADCEF-8D0D-46E3-9371-C5F2719564CC}C:\program files\serviio\jre\bin\javaw.exe] => (Allow) C:\program files\serviio\jre\bin\javaw.exe
FirewallRules: [TCP Query User{BA4BC774-E288-4469-BD75-E5947E54E53A}C:\windows\system32\mmc.exe] => (Block) C:\windows\system32\mmc.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [UDP Query User{BF98DFCE-7F61-49DA-96DA-74DBA2829F8C}C:\windows\system32\mmc.exe] => (Block) C:\windows\system32\mmc.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{7F42F493-EA9A-4A82-B4D4-66CA4A016701}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{9BBFF569-E849-486B-BCE5-1827C3216B18}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{84E5BFD6-2268-432B-BB52-2565E561FE8E}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x86\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{C6B48179-8EE8-48E9-B2DE-C89272FA68A3}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x86\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{660F6C9F-6DB3-4DFC-8EB3-33067852DD6A}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{4FD5C8D6-F540-4A25-9C43-42072C0893D6}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{205A4AF2-B6AD-4213-A10E-7D3D3C077F18}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.Application.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{CE2FBB4C-87DD-4CC4-BD54-445934484D8B}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.Application.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{8856DDFF-F55B-4CE5-B6A5-43D6ECEB2548}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.OrderSupplies.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{D7A1BED2-BD47-44F7-8ED5-80F9185FB072}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.OrderSupplies.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{EA5BB2FE-3BEB-4C4D-A815-C78D63FB65F3}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.Alert.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{45FF35D8-426D-48D5-B8E1-4962D1DECDD3}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.Alert.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{29FCC465-91DA-4E12-867F-C12DECF3DF74}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\uninstall.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{0606697C-1674-4D6D-B11B-0CBD8E73296D}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\uninstall.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{89893EB7-261D-417F-A13C-1CA9CE97DF9A}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\CDAS2PC\Xerox.CDAS2PC.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{28E04AA6-E620-4722-9FCF-DC3A3F9DA57F}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\CDAS2PC\Xerox.CDAS2PC.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{67342818-AC12-4673-B0CE-06502E13DC83}] => (Allow) C:\Program Files (x86)\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{B4C9243D-3FCB-4CB9-AB43-7235CE1E00AD}] => (Allow) C:\Program Files (x86)\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{9E304A31-C775-4DF5-AF6E-C00D42036297}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{0ECB00BD-00EB-473A-8287-D863B0C7963C}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [TCP Query User{CFDDB72A-1106-4DFF-9B88-2DB5A7D675AB}D:\games\far cry primal\bin\fcprimal.exe] => (Allow) D:\games\far cry primal\bin\fcprimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [UDP Query User{E4318DCE-C953-4571-AC13-A59C943FE0D8}D:\games\far cry primal\bin\fcprimal.exe] => (Allow) D:\games\far cry primal\bin\fcprimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [{7322048D-2BF8-419E-8FC2-5BA8E32B8332}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 2013\FarmingSimulator2013Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{6FC70668-1502-436E-8F79-D4A32F76372B}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 2013\FarmingSimulator2013Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [TCP Query User{132966CA-DC70-4AEF-9615-AD1667783CBB}C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe] => (Block) C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe (Signalyst -> )
FirewallRules: [UDP Query User{FC7E21C2-9B73-4173-8C72-29B6670B7428}C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe] => (Block) C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe (Signalyst -> )
FirewallRules: [TCP Query User{DCB80824-F17F-41A7-A927-F90FA394B619}C:\supgam\madvr\madhcctrl.exe] => (Allow) C:\supgam\madvr\madhcctrl.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [UDP Query User{B7C1A0D0-AEAD-4635-83B2-99B32B76F909}C:\supgam\madvr\madhcctrl.exe] => (Allow) C:\supgam\madvr\madhcctrl.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [TCP Query User{8F37554C-1F8C-49BE-9F0C-45C4B55E2710}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [UDP Query User{A54EE6AD-65C5-453B-B37B-E863C1EF1126}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [TCP Query User{85180EA5-89BC-4636-ABAF-9F0A6AAE878F}D:\games\quake 3 arena\quake3e.ded.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.ded.x64.exe () [File not signed]
FirewallRules: [UDP Query User{8172CB24-6AA8-4050-9A29-B2C59ABC7EFF}D:\games\quake 3 arena\quake3e.ded.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.ded.x64.exe () [File not signed]
FirewallRules: [TCP Query User{63439F03-50B7-4DB4-974F-993E8DABBCCE}D:\games\quake 3 arena\quake3e.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.x64.exe () [File not signed]
FirewallRules: [UDP Query User{135A4E52-D499-4E55-8C36-1B32A3D595A1}D:\games\quake 3 arena\quake3e.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.x64.exe () [File not signed]
FirewallRules: [TCP Query User{FF557E77-D694-4C85-89D7-1FCDECF6D760}D:\games\quake 3 arena\quake3e-vulkan.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e-vulkan.x64.exe () [File not signed]
FirewallRules: [UDP Query User{516BD6C5-3834-42DA-ADAC-5EC207EF91D1}D:\games\quake 3 arena\quake3e-vulkan.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e-vulkan.x64.exe () [File not signed]
FirewallRules: [{8DA9E566-FE41-4EC1-9D11-368A93546C7B}] => (Allow) C:\Program Files\Serviio\bin\ServiioService.exe () [File not signed]
FirewallRules: [{A4DD15D8-F0BE-44B6-917F-AEB46B4FDA1C}] => (Allow) C:\Program Files\Serviio\bin\ServiioService.exe () [File not signed]
FirewallRules: [{628EBF91-9179-4DA9-AD98-1ABEE4C5C149}] => (Allow) C:\Program Files\Serviio\console\ServiioConsole.exe (Six Lines Ltd) [File not signed]
FirewallRules: [TCP Query User{7881C914-5F13-4D2B-8B4F-C9D5EB6692E1}C:\users\zbyse\appdata\local\tidal\app-2.37.8\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.37.8\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{C55F880F-8AFA-482B-89B9-C6DA984E9EE9}C:\users\zbyse\appdata\local\tidal\app-2.37.8\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.37.8\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [{020247A5-E152-456F-8BE7-DDECF7A1F8BF}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{DCABA4B8-135D-49AB-B2E3-20A4CB9FD413}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\tpai.exe (Topaz Labs) [File not signed]
FirewallRules: [{3C09EF2B-1E6C-4E77-AB69-C9C9DC2656BF}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Crashpad\crashpad_handler.exe (Topaz Labs LLC -> )
FirewallRules: [{5EBC67DF-6486-4F15-B7D6-BA321E5B204E}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{E6077F40-7F25-441D-AC34-877A6636BB7C}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\tpai.exe (Topaz Labs) [File not signed]
FirewallRules: [{D3D80FFC-404F-486E-95A2-81BF89888B38}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Crashpad\crashpad_handler.exe (Topaz Labs LLC -> )
FirewallRules: [{F3DEA6D3-66F8-4C44-9C01-0BC77811186D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{423B1DE2-2BDE-49C0-8175-4AEFBF9F25B9}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{D8481CEE-1918-486D-92F6-78723D778BB1}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{84AAB800-052D-4A0A-B24C-C46D418140E4}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [TCP Query User{FD9E9572-DC56-4BBC-BCDA-99183488A9F4}C:\users\zbyse\appdata\local\tidal\app-2.38.5\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.5\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{0BDC7DA0-7C66-406A-BA7E-954F7C9ACDD6}C:\users\zbyse\appdata\local\tidal\app-2.38.5\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.5\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [TCP Query User{968635CE-F91F-48B4-BF4F-FC49CD6DD9E5}C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{19BB8701-9045-4F9F-8CE1-7E9211B87E04}C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [TCP Query User{F740FD17-BD9D-469D-9E9D-46ED713E4DC9}C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe] => (Allow) C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe (Signalyst -> )
FirewallRules: [UDP Query User{8CF50986-CFB7-4834-AB40-5B28969DB337}C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe] => (Allow) C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe (Signalyst -> )
FirewallRules: [TCP Query User{6A0D2880-A7B4-40C8-AF3C-213E690A8685}D:\games\quake 3 arena\quake3e-vulkan.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e-vulkan.x64.exe () [File not signed]
FirewallRules: [UDP Query User{82953214-E452-4F40-8B76-C34D9B6F9189}D:\games\quake 3 arena\quake3e-vulkan.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e-vulkan.x64.exe () [File not signed]
FirewallRules: [TCP Query User{D3270D45-9FA0-4187-8037-D14EC151AE90}D:\games\far cry primal\bin\fcprimal.exe] => (Block) D:\games\far cry primal\bin\fcprimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [UDP Query User{C71DF38B-A671-4DC4-884E-33A0E6B4D16A}D:\games\far cry primal\bin\fcprimal.exe] => (Block) D:\games\far cry primal\bin\fcprimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [TCP Query User{5218893C-4B0A-42E1-8C5B-4D687F8AD099}C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{37A34BB2-1BB4-4362-AD2E-B0A728FD6A84}C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [TCP Query User{F0A876E0-00B9-470A-AD8C-ACB3AFFECEA0}C:\supgam\madvr\madhcctrl.exe] => (Allow) C:\supgam\madvr\madhcctrl.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [UDP Query User{1CDB89F1-09BA-4A5F-AD6B-2B57E43D89A1}C:\supgam\madvr\madhcctrl.exe] => (Allow) C:\supgam\madvr\madhcctrl.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [TCP Query User{C3EAC7BE-9BA9-4A9E-B21D-A7EC2EB5016E}C:\supgam\madvr\madtpg.exe] => (Allow) C:\supgam\madvr\madtpg.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [UDP Query User{D9B85A7C-89EB-478B-9899-F742520E598F}C:\supgam\madvr\madtpg.exe] => (Allow) C:\supgam\madvr\madtpg.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [{0D5A6AAC-69FF-4C0C-A7CB-5A46426881D9}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{FE326115-18DD-446C-AE7E-0E40C38601C1}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{7476D19A-9DC5-4446-A6B7-7196D5A5C6AE}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{251E5DA9-6AA3-4156-B668-2638BE101D8D}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{BB07CDA0-2EE8-4669-AF49-FF0AB1265CAA}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{166FD721-FE9D-463D-BB20-EE8BA8556678}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{58BB1D07-6C10-45E7-9539-EBCF80E8D878}] => (Allow) D:\Programy\Steam\steamapps\common\MudRunner\MudRunner.exe (Focus Home Interactive) [File not signed]
FirewallRules: [{97DC0F46-E716-4854-82A1-F6A3669E1587}] => (Allow) D:\Programy\Steam\steamapps\common\MudRunner\MudRunner.exe (Focus Home Interactive) [File not signed]
FirewallRules: [TCP Query User{03EF1AF0-2568-4015-AA6A-A93F8EEE16A3}D:\games\wrap.house.simulator.v1.03\wraphousesimulator\binaries\win64\wraphousesimulator-win64-shipping.exe] => (Allow) D:\games\wrap.house.simulator.v1.03\wraphousesimulator\binaries\win64\wraphousesimulator-win64-shipping.exe => No File
FirewallRules: [UDP Query User{1D313E4E-1DBE-4CA8-AED5-A61EEFD1A602}D:\games\wrap.house.simulator.v1.03\wraphousesimulator\binaries\win64\wraphousesimulator-win64-shipping.exe] => (Allow) D:\games\wrap.house.simulator.v1.03\wraphousesimulator\binaries\win64\wraphousesimulator-win64-shipping.exe => No File
FirewallRules: [{6FD1CB1E-05E6-433B-B344-A6018EFF10D2}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\Resolve.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [{F96F21D5-D679-47B4-965A-BD678BF6AD04}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\bmdpaneld.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{B65869E1-8F27-4781-BF1E-7FAA0F705915}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\DaVinciPanelDaemon.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{2A63E66B-E562-411A-BC88-3B4700A7E841}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\JLCooperPanelDaemon.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{F7F60410-73FB-43C7-BFE5-6FE68FCCD95E}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\EuphonixPanelDaemon.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{01FA5378-A64F-42D5-8833-6C4FD8705C65}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\TangentPanelDaemon.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{E1B2C289-639B-4BC8-A987-F77E0A1065DF}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\fuscript.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.)
FirewallRules: [TCP Query User{6E481EAA-073E-4669-BD6F-BBED6E2F88CD}D:\programy\blackmagic design\davinci resolve\resolve.exe] => (Allow) D:\programy\blackmagic design\davinci resolve\resolve.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [UDP Query User{A9D7F2A5-7EA7-4FBB-8035-A1CE492DB874}D:\programy\blackmagic design\davinci resolve\resolve.exe] => (Allow) D:\programy\blackmagic design\davinci resolve\resolve.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [TCP Query User{5476236E-1986-4773-8A99-006E2540D83F}D:\programy\blackmagic design\davinci resolve\fuscript.exe] => (Allow) D:\programy\blackmagic design\davinci resolve\fuscript.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.)
FirewallRules: [UDP Query User{3B3E95C2-ACAD-46EA-9F14-273484505AB7}D:\programy\blackmagic design\davinci resolve\fuscript.exe] => (Allow) D:\programy\blackmagic design\davinci resolve\fuscript.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.)
FirewallRules: [{6008AE44-5ADA-4F53-A10E-A398EFD4822D}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{54751F50-17A6-49D5-A170-132200E7BAEB}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{7E40A32C-9B6D-4CF4-9880-D548760019A0}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{1844259D-9699-4D97-8E68-B055EF040257}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [TCP Query User{5573FB03-6338-46C4-A328-F01BCCCE5D05}E:\download\quake 3 arena cd\quake3\quake3.exe] => (Allow) E:\download\quake 3 arena cd\quake3\quake3.exe => No File
FirewallRules: [UDP Query User{E7F68961-AC4B-4DD6-AD7B-B006EFEFBD1B}E:\download\quake 3 arena cd\quake3\quake3.exe] => (Allow) E:\download\quake 3 arena cd\quake3\quake3.exe => No File
FirewallRules: [TCP Query User{AF422FDE-75A1-478C-BCB0-A8875A4D32CD}E:\download\quake 3 - arena (full pc game)\quake3\quake3.exe] => (Allow) E:\download\quake 3 - arena (full pc game)\quake3\quake3.exe => No File
FirewallRules: [UDP Query User{D89133EC-3C79-4D1D-9F22-5D74B2808582}E:\download\quake 3 - arena (full pc game)\quake3\quake3.exe] => (Allow) E:\download\quake 3 - arena (full pc game)\quake3\quake3.exe => No File
FirewallRules: [TCP Query User{08C3D308-1E24-49B4-8D23-ACA494360EBE}D:\games\quake 3 arena cd\quake3\quake3.exe] => (Allow) D:\games\quake 3 arena cd\quake3\quake3.exe => No File
FirewallRules: [UDP Query User{4C604D5D-DD86-4E9B-A6B8-3C57B1A250E7}D:\games\quake 3 arena cd\quake3\quake3.exe] => (Allow) D:\games\quake 3 arena cd\quake3\quake3.exe => No File
FirewallRules: [TCP Query User{FD82BB1F-46EB-4E6B-989D-191EB69D9C59}D:\games\quake 3 arena\quake3e.ded.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.ded.x64.exe () [File not signed]
FirewallRules: [UDP Query User{F2922157-EC4D-473B-97B0-8FB7A2020063}D:\games\quake 3 arena\quake3e.ded.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.ded.x64.exe () [File not signed]
FirewallRules: [TCP Query User{E70D7C19-70EB-44E6-9722-DFD7BDB160EC}D:\games\quake 3 arena\quake3e.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.x64.exe () [File not signed]
FirewallRules: [UDP Query User{3D98C8DB-75CD-4813-897A-28F34DE610AC}D:\games\quake 3 arena\quake3e.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.x64.exe () [File not signed]
FirewallRules: [TCP Query User{ABA22196-39BF-47DB-BA76-A47156656E2A}H:\quake3\quake3.exe] => (Allow) H:\quake3\quake3.exe => No File
FirewallRules: [UDP Query User{95FAAA71-0B30-402C-BE82-D7658A4CB409}H:\quake3\quake3.exe] => (Allow) H:\quake3\quake3.exe => No File
FirewallRules: [{2AD14314-01FB-42DA-8AFA-0D83C246AA7C}] => (Allow) D:\Programy\Steam\steamapps\common\IAmFish\IAmFish.exe () [File not signed]
FirewallRules: [{E425320A-B889-4647-A676-228EB39C3139}] => (Allow) D:\Programy\Steam\steamapps\common\IAmFish\IAmFish.exe () [File not signed]
FirewallRules: [{8199879E-6CF9-4A05-940D-FEB5EA8C968B}] => (Allow) C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe (Plex, Inc. -> Plex, Inc.)
FirewallRules: [{AF61006C-844A-4EEE-8C32-13DB60FA5894}] => (Allow) C:\Program Files\Plex\Plex Media Server\PlexScriptHost.exe (Plex, Inc. -> )
FirewallRules: [{B20197E6-4710-4377-959B-4D2D07E70BBE}] => (Allow) C:\Program Files\Plex\Plex Media Server\Plex DLNA Server.exe (Plex, Inc. -> Plex, Inc.)
FirewallRules: [{33C1B103-0674-4D03-85A9-C6A5D9B456DB}] => (Allow) C:\Program Files\Plex\Plex Media Server\Plex Tuner Service.exe (Plex, Inc. -> )
FirewallRules: [TCP Query User{E3F46AC2-F578-44FB-A822-F371F9EDE1F2}D:\games\ferocious\ferocious.exe] => (Allow) D:\games\ferocious\ferocious.exe () [File not signed]
FirewallRules: [UDP Query User{8FA3FD18-0B4B-44C4-95DD-80798C2D0EBB}D:\games\ferocious\ferocious.exe] => (Allow) D:\games\ferocious\ferocious.exe () [File not signed]
FirewallRules: [{564B2144-FA36-45FD-B22A-C21B59263167}] => (Allow) C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [{D4BD3629-5FC3-4A27-8999-A8BBF76BF514}] => (Allow) D:\Programy\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{0893CE84-101A-43E6-B413-AB57C6759C7F}] => (Allow) D:\Programy\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [TCP Query User{8AB2F1DC-EDA6-4502-AE6C-C87524EA4B1F}C:\xboxgames\minecraft for windows\content\minecraft.windows.exe] => (Allow) C:\xboxgames\minecraft for windows\content\minecraft.windows.exe (Access Denied) [File not signed?]
FirewallRules: [UDP Query User{DF885C9B-08B1-490B-9ABD-A20C949CB493}C:\xboxgames\minecraft for windows\content\minecraft.windows.exe] => (Allow) C:\xboxgames\minecraft for windows\content\minecraft.windows.exe (Access Denied) [File not signed?]
==================== Restore Points =========================
ATTENTION: System Restore is disabled (Total:238.37 GB) (Free:46.69 GB) (20%)
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (12/30/2025 09:28:10 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x33e8
Čas spuštění chybující aplikace: 0x01dc79663b9e788a
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: 20981919-17a3-4409-aa20-2240c5f44726
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/30/2025 02:06:07 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x18d0
Čas spuštění chybující aplikace: 0x01dc79287a3fe5ae
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: 4eb10140-3bb6-4084-be41-0b2276ba9716
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/30/2025 01:57:21 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ScreenConnect.WindowsFileManager.exe, verze: 24.4.4.9118, časové razítko: 0xc9d5f63e
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.19041.6280, časové razítko: 0x56511854
Kód výjimky: 0xc0020001
Posun chyby: 0x0000000000025369
ID chybujícího procesu: 0x36b0
Čas spuštění chybující aplikace: 0x01dc7927314934fc
Cesta k chybující aplikaci: C:\Program Files (x86)\Windows MV\ScreenConnect.WindowsFileManager.exe
Cesta k chybujícímu modulu: C:\Windows\System32\KERNELBASE.dll
ID zprávy: 7b84ebed-ff7b-4f23-a424-ab0879b3e706
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/29/2025 04:23:53 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x2bd0
Čas spuštění chybující aplikace: 0x01dc78d723d901fa
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: cd180515-a20a-40e0-b7e2-ad3d074a0a70
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/29/2025 08:18:49 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x3f78
Čas spuštění chybující aplikace: 0x01dc7893609f1278
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: dbf79009-db6c-4c5b-9ea8-c903517e2303
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/28/2025 04:09:18 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0xa4c
Čas spuštění chybující aplikace: 0x01dc780befe548f4
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: 2ce96442-cae8-4fe8-8b3e-66ea2edf87a9
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/28/2025 08:26:39 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x24d8
Čas spuštění chybující aplikace: 0x01dc77cb4eae4fd1
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: a17815c1-2d31-4cc8-ae52-a346a10cf71c
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/27/2025 08:31:07 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AddInProcess32.exe, verze: 4.8.9037.0, časové razítko: 0x68472eac
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.19041.6456, časové razítko: 0xbf208242
Kód výjimky: 0xc000041d
Posun chyby: 0x0013b702
ID chybujícího procesu: 0x3ebc
Čas spuštění chybující aplikace: 0x01dc76fe238fcb29
Cesta k chybující aplikaci: C:\Windows\Microsoft.NET\Framework\v4.0.30319\AddInProcess32.exe
Cesta k chybujícímu modulu: C:\Windows\System32\KERNELBASE.dll
ID zprávy: 0fa618c2-772a-42a5-a7ee-bf96575ba70a
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
System errors:
=============
Error: (12/30/2025 09:22:57 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:ASUSTeK COMPUTER INC.;FirmwareManufacturer:American Megatrends Inc.;FirmwareVersion:1002;OEMModelNumber:System Product Name;OEMModelBaseBoard:PRIME X399-A;OEMModelSystemFamily:To be filled by O.E.M.;OEMManufacturerName:System manufacturer;OEMModelSKU:SKU;OSArchitecture:amd64;
BucketId: 5dac1deb4530c707339bd863477fc6a685587bcc6606ae2d4931a702a12770e6
BucketConfidenceLevel:
UpdateType: 0
HResult: 0
Error: (12/30/2025 09:20:02 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Aktualizace Google (gupdate) neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.
Error: (12/30/2025 09:18:30 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80246007): Aktualizace bezpečnostních informací pro Microsoft Defender Antivirus – KB2267602 (verze 1.443.393.0) – Aktuální kanál (široká distribuce).
Error: (12/30/2025 09:18:29 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80246007): Aktualizace bezpečnostních informací pro Microsoft Defender Antivirus – KB2267602 (verze 1.443.393.0) – Aktuální kanál (široká distribuce).
Error: (12/30/2025 09:18:28 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80246007): Aktualizace bezpečnostních informací pro Microsoft Defender Antivirus – KB2267602 (verze 1.443.393.0) – Aktuální kanál (široká distribuce).
Error: (12/30/2025 09:18:27 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80246007): Aktualizace bezpečnostních informací pro Microsoft Defender Antivirus – KB2267602 (verze 1.443.393.0) – Aktuální kanál (široká distribuce).
Error: (12/30/2025 09:18:26 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80246007): Aktualizace bezpečnostních informací pro Microsoft Defender Antivirus – KB2267602 (verze 1.443.393.0) – Aktuální kanál (široká distribuce).
Error: (12/30/2025 09:17:46 AM) (Source: Application Popup) (EventID: 56) (User: )
Description: ACPI15
Windows Defender:
================
Date: 2025-12-30 10:05:18
Description:
Antivirová ochrana v programu Microsoft Defender śсǻη ħдѕ ъэεή šтőρρéδ ьëƒόѓë ςσмрļєťíőň.%л %τŞčąη ĮÐ:%в{6F88C2B0-731B-4527-B61D-57CEB013B91E}%й %ŧŚčâń Τỳφε:%вAntimalwarový program%ń %ŧŜċăņ Ρдѓámĕťëяš:%ъÚplné prohledávání%π %ţÚѕêґ:%ьDESKTOP-ZS\Zbyse%ń %тŠŧõρ Ŕéāşôň:%ьǺъŏřťєď ъŷ ŧħέ ¢łîęñт
Date: 2025-12-30 10:05:18
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Trojan:Win64/DLLHijack.ARR!MTB
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\Zbyse\SystemRootDoc\tbb.dll
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Uživatel
Uživatel: DESKTOP-ZS\Zbyse
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.443.399.0, AS: 1.443.399.0, NIS: 1.443.399.0
Verze modulu: AM: 1.1.25110.1, NIS: 1.1.25110.1
Date: 2025-12-30 10:05:18
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Trojan:Win32/Malgent!AMTB
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Supgam\Total Commander\10.51 Portable\App\totalcmd\tcrun.exe
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Uživatel
Uživatel: DESKTOP-ZS\Zbyse
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.443.399.0, AS: 1.443.399.0, NIS: 1.443.399.0
Verze modulu: AM: 1.1.25110.1, NIS: 1.1.25110.1
Date: 2025-12-30 10:05:18
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Trojan:Win32/Wacatac.A!rfn
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\FRST\Quarantine\D\GAMES\SOMA\steam_api64.dll.xBAD
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Uživatel
Uživatel: DESKTOP-ZS\Zbyse
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.443.399.0, AS: 1.443.399.0, NIS: 1.443.399.0
Verze modulu: AM: 1.1.25110.1, NIS: 1.1.25110.1
Date: 2025-12-30 10:05:18
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Trojan:VBS/Valyria.RP!MTB
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Windows\System32\InteL\Microsoft\xx.vbs
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Uživatel
Uživatel: DESKTOP-ZS\Zbyse
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.443.399.0, AS: 1.443.399.0, NIS: 1.443.399.0
Verze modulu: AM: 1.1.25110.1, NIS: 1.1.25110.1
Event[0]:
Date: 2025-12-30 02:01:23
Description:
Funkce Ochrana v reálném čase u prohledávání Antivirová ochrana v programu Microsoft Defender zjistila chybu a došlo k jejímu selhání.
Funkce: Systém kontroly sítě
Kód chyby: 0x80004005
Popis chyby: Nespecifikovaná chyba
Důvod: V systému chybí aktualizace potřebné ke spuštění systému kontroly sítě. Nainstalujte potřebné aktualizace a restartujte zařízení.
Date: 2025-12-30 01:57:58
Description:
Funkce Ochrana v reálném čase u prohledávání Antivirová ochrana v programu Microsoft Defender zjistila chybu a došlo k jejímu selhání.
Funkce: Systém kontroly sítě
Kód chyby: 0x80004005
Popis chyby: Nespecifikovaná chyba
Důvod: V systému chybí aktualizace potřebné ke spuštění systému kontroly sítě. Nainstalujte potřebné aktualizace a restartujte zařízení.
Date: 2025-07-11 18:18:19
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o obnovení položky z karantény.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Program:Win32/Wacapew.C!ml
Závažnost: Vysoké
Kategorie: Program měnící nastavení
Uživatel: DESKTOP-ZS\Zbyse
Kód chyby: 0x80508014
Popis chyby: Položku v karanténě nelze obnovit.
Verze bezpečnostních informací: AV: 1.431.551.0, AS: 1.431.551.0
Verze modulu: 1.1.25050.6
Date: 2025-07-11 18:18:06
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o obnovení položky z karantény.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Program:Win32/Wacapew.C!ml
Závažnost: Vysoké
Kategorie: Program měnící nastavení
Uživatel: DESKTOP-ZS\Zbyse
Kód chyby: 0x80508014
Popis chyby: Položku v karanténě nelze obnovit.
Verze bezpečnostních informací: AV: 1.431.551.0, AS: 1.431.551.0
Verze modulu: 1.1.25050.6
Date: 2025-07-11 18:17:52
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o obnovení položky z karantény.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: HackTool:Win32/Keygen!rfn
Závažnost: Vysoké
Kategorie: Nástroj
Uživatel: DESKTOP-ZS\Zbyse
Kód chyby: 0x80508014
Popis chyby: Položku v karanténě nelze obnovit.
Verze bezpečnostních informací: AV: 1.431.551.0, AS: 1.431.551.0
Verze modulu: 1.1.25050.6
CodeIntegrity:
===============
Date: 2025-12-30 10:16:39
Description:
Code Integrity determined that a process (\Device\HarddiskVolume8\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume8\Program Files\Bonjour\mdnsNSP.dll that did not meet the Windows signing level requirements.
Date: 2025-12-30 09:49:11
Description:
Code Integrity determined that a process (\Device\HarddiskVolume8\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpDefenderCoreService.exe) attempted to load \Device\HarddiskVolume8\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends Inc. 1002 02/15/2019
Motherboard: ASUSTeK COMPUTER INC. PRIME X399-A
Processor: AMD Ryzen Threadripper 1920X 12-Core Processor
Percentage of memory in use: 27%
Total physical RAM: 32642.79 MB
Available physical RAM: 23769.96 MB
Total Virtual: 37506.79 MB
Available Virtual: 28946.68 MB
==================== Drives ================================
Drive c: (System Disc) (Fixed) (Total:238.37 GB) (Free:46.69 GB) (Model: SanDisk SD8SN8U-256G-1006) NTFS
Drive d: (Dokumenty) (Fixed) (Total:3726.01 GB) (Free:1736.13 GB) (Model: WDC WD40EFPX-68C6CN0) NTFS
Drive e: (Download) (Fixed) (Total:3726.01 GB) (Free:1265.83 GB) (Model: ST4000NE001-2MA101) NTFS
Drive f: (FILMY) (Fixed) (Total:7452.02 GB) (Free:2295.94 GB) (Model: ST8000DM004-2CX188) NTFS
\\?\Volume{371553a5-3062-4984-b44c-57096001beaf}\ (WINTOHDD) (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Protective MBR) (Size: 3726 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 1 (Protective MBR) (Size: 3726 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 2 (Protective MBR) (Size: 7452 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 3 (Protective MBR) (Size: 238.5 GB) (Disk ID: 00000000)
Partition: GPT.
==================== End of Addition.txt =======================
včera večer mi hacker uzamčel obrazovku, vypnul antivir a snažil se získat údaje k PayPal. Rychle jsem vypnul PC a naštěstí se mu to nepovedlo.
Rád bych se ujistil, že nemám po něm v PC nějakou havěť.
Prosím Vás o kontrolu logu.
Moc díky!
----------------------------------------------------------------------------------------------------------------------------------------------------------------------------------
Platform: Microsoft Windows 10 Home Version 22H2 19045.6456 (X64) Language: Čeština (Česko)
Default browser: Brave
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler.exe
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler64.exe
(C:\Program Files (x86)\Windows MV\ScreenConnect.ClientService.exe ->) (Connectwise, LLC -> ScreenConnect Software) C:\Program Files (x86)\Windows MV\ScreenConnect.WindowsClient.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA app\CEF\NVIDIA Overlay.exe <5>
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA app\ShadowPlay\nvsphelper64.exe
(C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe ->) (Plex, Inc. -> ) C:\Program Files\Plex\Plex Media Server\Plex Tuner Service.exe
(C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe ->) (Plex, Inc. -> ) C:\Program Files\Plex\Plex Media Server\PlexScriptHost.exe
(CyberLink Corp. -> CyberLink) C:\Program Files (x86)\CyberLink\Power2Go13\CLMLSvc_P2G13.exe
(explorer.exe ->) (EnTech Taiwan -> EnTech Taiwan) C:\Program Files (x86)\Dell\Dell Display Manager\ddm.exe
(explorer.exe ->) (Plex, Inc. -> Plex, Inc.) C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe
(explorer.exe ->) (Samsung Electronics CO., LTD. -> ) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\AddInProcess32.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\InstallUtil.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework\v4.0.30319\RegAsm.exe
(services.exe ->) () [File not signed] C:\Program Files\Serviio\bin\ServiioService.exe <2>
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(services.exe ->) (Connectwise, LLC -> ) C:\Program Files (x86)\Windows MV\ScreenConnect.ClientService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\NisSrv.exe
(services.exe ->) (ND_Apps -> Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <4>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_20ae8f14a487d5db\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Plex, Inc. -> Plex, Inc.) C:\Program Files\Plex\Plex Media Server\Plex Update Service.exe
(services.exe ->) (Sony Imaging Products & Solutions Inc. -> Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
(Sony Imaging Products & Solutions Inc. -> Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
(svchost.exe ->) (ALCPU -> ALCPU) C:\Program Files\Core Temp\Core Temp.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.DesktopAppInstaller_1.27.350.0_x64__8wekyb3d8bbwe\WindowsPackageManagerServer.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [462712 2012-03-09] (Samsung Electronics CO., LTD. -> )
HKLM-x32\...\Run: [CLMLServer_For_P2G13] => C:\Program Files (x86)\CyberLink\Power2Go13\CLMLSvc_P2G13.exe [154296 2019-05-23] (CyberLink Corp. -> CyberLink)
HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [868328 2018-12-21] (Sony Imaging Products & Solutions Inc. -> Sony Corporation)
HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> )
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> )
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [MicrosoftEdgeAutoLaunch_D1548DDA36BFF9FBCE51AAEDDC45F532] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4228688 2025-12-18] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [Tableauup] => cmd.exe /C start "" /D "C:\Users\Zbyse\SystemRootDoc" "C:\Users\Zbyse\SystemRootDoc\Tableauup.exe" [2060144 2025-05-13] (Unity Technologies SF -> Unity Technologies) <==== ATTENTION
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [C:\Users\Zbyse\AppData\Roaming\InRLiM3dED\VSGhhCP0.exe] => C:\Users\Zbyse\AppData\Roaming\InRLiM3dED\VSGhhCP0.exe (No File)
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\RunOnce: [Application Restart #1] => C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe [3262544 2025-12-19] (Brave Software, Inc. -> Brave Software, Inc.)
HKLM\...\Windows x64\Print Processors\sxj2mPC: C:\Windows\System32\spool\prtprocs\x64\sxj2mpc.dll [43520 2018-04-15] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Codename Longhorn DDK provider)
HKLM\...\Print\Monitors\sxj2m Langmon: C:\Windows\system32\sxj2mlm.dll [34304 2018-04-15] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\143.1.85.118\Installer\chrmstp.exe [2025-12-19] (Brave Software, Inc. -> Brave Software, Inc.)
HKLM\Software\...\Authentication\Credential Providers: [{6FF59A85-BC37-4CD4-BD8E-5AE965B838AB}] -> C:\Program Files (x86)\Windows MV\ScreenConnect.WindowsCredentialProvider.dll [2024-12-18] (Connectwise, LLC -> ) <==== ATTENTION
Lsa: [Authentication Packages] msv1_0 SshdPinAuthLsa C:\Program Files (x86)\Windows MV\ScreenConnect.WindowsAuthenticationPackage.dll
Startup: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Odeslat do OneNote.lnk [2021-12-18]
ShortcutTarget: Odeslat do OneNote.lnk -> C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Dell Display Manager.lnk [2022-09-28]
ShortcutTarget: Dell Display Manager.lnk -> C:\Program Files (x86)\Dell\Dell Display Manager\ddm.exe (EnTech Taiwan -> EnTech Taiwan)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\PHOTOfunSTUDIO 10.1 PE.lnk [2023-02-17]
ShortcutTarget: PHOTOfunSTUDIO 10.1 PE.lnk -> C:\Program Files (x86)\Common Files\Panasonic\PHOTOfunSTUDIO AutoStart\AutoStartupService.exe (No File)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Plex Media Server.lnk [2024-05-28]
ShortcutTarget: Plex Media Server.lnk -> C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe (Plex, Inc. -> Plex, Inc.)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {A3F0E515-D00C-48C2-89B0-715693E52D3F} - System32\Tasks\BraveSoftwareUpdateTaskMachineCore{524091D7-79CD-4EC6-ACEE-3A96C533DC99} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-07-15] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {65145879-3B11-4418-878C-05DA6E55CCCB} - System32\Tasks\BraveSoftwareUpdateTaskMachineUA{3AB8B24C-DD96-4B7B-AA06-29E9DF14F0F9} => C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-07-15] (Brave Software, Inc. -> BraveSoftware Inc.)
Task: {5128BEE9-CD94-456A-AFF5-09657D0AF5D8} - System32\Tasks\Core Temp Autostart Zbyse => C:\Program Files\Core Temp\Core Temp.exe [1040136 2023-09-24] (ALCPU -> ALCPU)
Task: {EDAFCDA4-3059-4A7C-AB06-CCDC9ECB0F3B} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [1626328 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {6B4FC2FB-2BD7-40DF-8A11-9C3D8BBCE6DD} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {87CB47E6-CF67-4F0D-A66F-3DE528D96E92} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {17EE1452-2655-4BE7-B36D-27A403FF39ED} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\OS Edition Upgrade event listener created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {5FCA7120-EDAF-4604-A5B6-3F0A950ECBB5} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Passport for Work alert created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {F3759799-946F-40CD-9C95-EA0102DE427D} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Provisioning initiated session => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {E71B1803-88C5-4CAD-9C42-33C181421445} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\PushLaunch => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {1591C48E-A16F-4239-A096-3C4C0E864261} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\PushRenewal => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {AE76A1CB-94F8-44DD-8148-D1CE1EFFD1AB} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\PushUpgrade => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {D9A66EBA-9DB0-4D6C-A5E9-5A5AAFC1CDB4} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Refresh schedule created by Declared Configuration to refresh any settings changed on the device => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {7A232ED9-892C-487B-88CE-2874CABC019C} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule #1 created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {6864080D-6420-4F38-B5CB-9DC78A312D93} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule #2 created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {A66DA2BE-997B-4D79-BC65-0ABD1215F87C} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule #3 created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {9880D39A-9D03-4287-A4C7-E1D78F36FC9B} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule created by enrollment client for renewal of certificate warning => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {4CC4D2BB-C4E4-4C2C-9B3E-EED9693328D7} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule to run OMADMClient by client => C:\Windows\system32\omadmclient.exe [514560 2025-08-29] (Microsoft Windows -> Microsoft Corporation)
Task: {4F6E6597-4448-49BD-92B9-0EE79D2246FD} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule to run OMADMClient by server => C:\Windows\system32\omadmclient.exe [514560 2025-08-29] (Microsoft Windows -> Microsoft Corporation)
Task: {F80F1DBB-BA78-4CCA-9518-51676197E1EF} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Win10 S Mode event listener created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2025-07-23] (Microsoft Windows -> Microsoft Corporation)
Task: {06F36A67-8330-4077-94AD-8731E01DDE5C} - System32\Tasks\Microsoft\Windows\Maintenance\SystemSoundsService3Zbyse => C:\Windows\System32\InteL\Microsoft\spoof.vbs [160 2024-12-22] () [File not signed]
Task: {E2478AFC-E69E-4139-8B25-4F32FB33CDE5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {D43CF5E2-240A-4891-8DFA-45A2424C3EB1} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {A47571AB-4E3F-4B00-9450-0CCC87813688} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpCmdRun.exe [1803016 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {4E94FD48-ABA3-4CF2-BDE9-C220A1355F35} - System32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA App.exe [3324528 2025-10-15] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {4E1EA117-9BB5-443E-95BB-567D65061E44} - System32\Tasks\Updater => C:\Users\Public\Updater.vbs [370 2025-12-30] () [File not signed] <==== ATTENTION
Task: {CE41E6BA-FF24-46FD-A4AE-BE8039F9EAAE} - System32\Tasks\WindowsDefenderUpdate => C:\Windows\system32\wscript.exe [181760 2025-04-23] (Microsoft Windows -> Microsoft Corporation) -> "C:\Users\Public\Microsoft\3608.vbs"
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Tcpip\Parameters: [DhcpNameServer] 192.168.50.1
Tcpip\..\Interfaces\{4e58779c-2187-4f7d-bb47-ae29454122d3}: [DhcpNameServer] 192.168.50.1
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default [2025-12-28]
Edge DownloadDir: Default -> E:\Download
Edge Notifications: Default -> hxxps://aukro.cz; hxxps://tinder.com; hxxps://www.facebook.com
Edge Extension: (Plasma Integration) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\cimiefiiaegbelhefglklhhakcgmhkai [2025-10-21]
Edge Extension: (Dokumenty Google offline) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-12-19]
Edge Extension: (Adblock Plus - free ad blocker) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmgoamodcdcjnbaobigkjelfplakmdhh [2025-12-19]
Edge Extension: (Edge relevant text changes) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-29]
Edge Extension: (Authenticator: 2FA Client) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ocglkepbibnalbgmbachknglpdipeoio [2024-08-31]
FireFox:
========
FF DefaultProfile: chbnxbjz.default
FF ProfilePath: C:\Users\Zbyse\AppData\Roaming\Mozilla\Firefox\Profiles\chbnxbjz.default [2024-01-14]
FF ProfilePath: C:\Users\Zbyse\AppData\Roaming\Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467 [2025-06-24]
FF Homepage: Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467 -> hxxps://www.seznam.cz/
FF Notifications: Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467 -> hxxps://tinder.com; hxxps://www.facebook.com
FF Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\Zbyse\AppData\Roaming\Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467\Extensions\jid1-NIfFY2CA8fy1tg@jetpack.xpi [2025-06-01]
FF Extension: (Colorful nebulae) - C:\Users\Zbyse\AppData\Roaming\Mozilla\Firefox\Profiles\kk2dtnnc.default-release-1729690953467\Extensions\{4429fed7-beb8-4aeb-ae18-199130d957e4}.xpi [2024-11-29]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.21 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin-x32: @java.com/DTPlugin,version=11.421.2 -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\dtplugin\npDeployJava1.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.421.2 -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\plugin2\npjp2.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-06-25] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
Brave:
=======
BRA Profile: C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2025-12-30]
BRA DownloadDir: E:\Download
BRA Notifications: Default -> hxxps://fastshare.cz; hxxps://www.facebook.com
BRA Extension: (Authenticator) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\bhghoamapcdpbohphigoooaddinpkbai [2025-07-15]
BRA Extension: (Adblock Plus - free ad blocker) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2025-12-18]
BRA Extension: (Plasma Integration) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\cimiefiiaegbelhefglklhhakcgmhkai [2025-10-15]
BRA Extension: (Brave Ad Block Updater (Brave First Party Adblock Filters (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\adcocjohghhfpidemphmcmlmhnfgikei [2025-12-23]
BRA Extension: (Brave Local Data Files Updater) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2025-12-23]
BRA Extension: (Brave NTP background images) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2025-09-04]
BRA Extension: (Brave Ad Block Updater (Fanboy's Mobile Notifications (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\bfpgedeaaibpoidldhjcknekahbikncb [2025-12-29]
BRA Extension: (Brave Ad Block Updater (EasyList Cookie (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\cdbbhgbmjhfnhnmgeddbliobbofkgdhe [2025-12-30]
BRA Extension: (Brave NTP sponsored images) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\efkihffiamafhbhefjaljejgdpkelpal [2025-12-30]
BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2025-12-16]
BRA Extension: (Brave Ads Resources) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\iejekkikpddbbockoldagmfcdbffomfc [2025-07-15]
BRA Extension: (Brave Ad Block Updater (Brave Default Adblock Filters (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2025-12-30]
BRA Extension: (Brave Ad Block Updater (Brave Default Privacy Filters (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\kihnoaefogbkmblfimmibknnmkllbhlf [2025-12-30]
BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2025-11-22]
BRA Extension: (Brave User Agent) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\nlpaeekllejnmhoonlpcefpfnpbajbpe [2025-12-29]
BRA Extension: (Brave Ad Block Updater (EasyList Czech and Slovak (plaintext))) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\oegebjahecghlckbhkmojgnpcgdeajdi [2025-12-23]
BRA Extension: (P3A Configuration) - C:\Users\Zbyse\AppData\Local\BraveSoftware\Brave-Browser\User Data\P3AConfig [2025-09-27]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-07-15] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 BraveElevationService; C:\Program Files\BraveSoftware\Brave-Browser\Application\143.1.85.118\elevation_service.exe [3244624 2025-12-19] (Brave Software, Inc. -> Brave Software, Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-07-15] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 GameInputRedistService; C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe [141680 2025-10-20] (Microsoft Corporation -> Microsoft Corporation)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpDefenderCoreService.exe [2063376 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 Microsoft; C:\Program Files (x86)\Windows MV\ScreenConnect.ClientService.exe [95512 2024-12-18] (Connectwise, LLC -> ) <==== ATTENTION
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_20ae8f14a487d5db\Display.NvContainer\NVDisplay.Container.exe [1275624 2025-10-30] (NVIDIA Corporation -> NVIDIA Corporation)
R2 PlexUpdateService; C:\Program Files\Plex\Plex Media Server\Plex Update Service.exe [899408 2025-09-18] (Plex, Inc. -> Plex, Inc.)
R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [493544 2018-12-21] (Sony Imaging Products & Solutions Inc. -> Sony Corporation)
R2 Serviio; C:\Program Files\Serviio\bin\ServiioService.exe [413696 2022-10-22] () [File not signed]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\NisSrv.exe [4426832 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MsMpEng.exe [290704 2025-12-18] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 gupdate; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /svc [X]
S3 gupdatem; "C:\Program Files (x86)\Google\Update\GoogleUpdate.exe" /medsvc [X]
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 ALSysIO; C:\Temp\ALSysIO64.sys [43528 2025-12-30] (Microsoft Windows Hardware Compatibility Publisher -> Arthur Liberman)
S3 AudioQuestFilter; C:\Windows\system32\drivers\AqFilter.sys [32088 2017-04-17] (WDKTestCert djsis,131351358102549638 -> Windows (R) Win 7 DDK provider)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\Windows\System32\drivers\bthmodem.sys [76800 2019-12-07] (Microsoft Corporation) [File not signed]
S3 causbaudio; C:\Windows\System32\drivers\causbaudio.sys [381496 2020-07-14] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 causbaudioks; C:\Windows\system32\DRIVERS\causbaudioks.sys [53816 2020-07-14] (Microsoft Windows Hardware Compatibility Publisher -> )
R3 CLVirtualBus01; C:\Windows\System32\drivers\CLVirtualBus01.sys [113888 2018-05-02] (CyberLink Corp. -> CyberLink)
S3 DE_USBAUDIO; C:\Windows\system32\drivers\de_usbaudio.sys [144896 2013-05-20] (D&M Holdings Inc.) [File not signed]
S3 ds2waudio; C:\Windows\System32\drivers\ds2waudio.sys [431312 2024-02-13] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 ds2waudioks; C:\Windows\System32\drivers\ds2waudioks.sys [55504 2024-02-13] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 iFiUsbAudio; C:\Windows\System32\drivers\iFiUsbAudio.sys [404480 2021-07-25] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 iFiUsbAudioks; C:\Windows\System32\drivers\iFiUsbAudioks.sys [53752 2021-07-25] (Microsoft Windows Hardware Compatibility Publisher -> )
R3 KslD; C:\Windows\System32\drivers\wd\KslD.sys [333192 2025-11-18] (Microsoft Windows -> Microsoft Corporation)
S3 RtlWlanu; C:\Windows\System32\drivers\rtwlanu.sys [12435144 2024-10-14] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
R2 SSPORT; C:\WINDOWS\system32\Drivers\SSPORT.sys [14224 2021-06-07] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 usbrndis6; C:\Windows\System32\drivers\usb80236.sys [24064 2023-11-15] (Microsoft Corporation) [File not signed]
S3 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [246200 2024-10-10] (Oracle America, Inc. -> Oracle and/or its affiliates)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [21928 2025-12-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [635272 2025-12-18] (Microsoft Windows -> Microsoft Corporation)
S3 wdm_usb; C:\Windows\system32\DRIVERS\usb2ser.sys [151184 2016-07-15] (NGO -> MBB)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [102792 2025-12-18] (Microsoft Windows -> Microsoft Corporation)
S3 wsftprm; C:\Windows\System32\Drivers\wsftprm.sys [38816 2025-10-11] (TPZ SOLUCOES DIGITAIS LTDA -> Topaz OFD)
S3 XduooUsbAudio; C:\Windows\System32\drivers\XduooUsbAudio.sys [400952 2020-12-18] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 XduooUsbAudioks; C:\Windows\System32\drivers\XduooUsbAudioks.sys [53816 2020-12-18] (Microsoft Windows Hardware Compatibility Publisher -> )
S4 NvModuleTracker; \SystemRoot\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_ea6cec41fc5b2a8b\NvModuleTracker.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
Error Reading file: "C:\ProgramData\Desktop\WinSCP.lnk"
Error Reading file: "C:\ProgramData\Desktop\VLC media player.lnk"
Error Reading file: "C:\ProgramData\Desktop\Topaz Photo AI.lnk"
Error Reading file: "C:\ProgramData\Desktop\Steam.lnk"
Error Reading file: "C:\ProgramData\Desktop\SOMA.lnk"
Error Reading file: "C:\ProgramData\Desktop\Salamander (x64).lnk"
Error Reading file: "C:\ProgramData\Desktop\PotPlayer.lnk"
Error Reading file: "C:\ProgramData\Desktop\PlayMemories Home.lnk"
Error Reading file: "C:\ProgramData\Desktop\Play Ferocious.lnk"
Error Reading file: "C:\ProgramData\Desktop\ONLYOFFICE Editors.lnk"
Error Reading file: "C:\ProgramData\Desktop\Microsoft Edge.lnk"
Error Reading file: "C:\ProgramData\Desktop\Krita.lnk"
Error Reading file: "C:\ProgramData\Desktop\ImgBurn.lnk"
Error Reading file: "C:\ProgramData\Desktop\Hybrid.lnk"
Error Reading file: "C:\ProgramData\Desktop\GraphPad Prism 8.lnk"
Error Reading file: "C:\ProgramData\Desktop\foobar2000.lnk"
Error Reading file: "C:\ProgramData\Desktop\desktop.ini"
Error Reading file: "C:\ProgramData\Desktop\Dell Display Manager.lnk"
Error Reading file: "C:\ProgramData\Desktop\CyberLink Power2Go 13.lnk"
Error Reading file: "C:\ProgramData\Desktop\CPUID CPU-Z.lnk"
Error Reading file: "C:\ProgramData\Desktop\Brave.lnk"
Error Reading file: "C:\ProgramData\Desktop\Bandizip.lnk"
Error Reading file: "C:\ProgramData\Desktop\Audacity.lnk"
Error Reading file: "C:\ProgramData\Desktop\Affinity.lnk"
2025-12-30 10:16 - 2025-12-30 10:17 - 000028988 _____ C:\Users\Zbyse\Desktop\FRST.txt
2025-12-30 10:16 - 2025-12-30 10:16 - 002444288 _____ (Farbar) C:\Users\Zbyse\Desktop\FRST64.exe
2025-12-30 10:13 - 2025-12-30 10:13 - 000000000 ____D C:\AdwCleaner
2025-12-26 19:04 - 2025-12-26 19:04 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Minecraft Bedrock
2025-12-14 09:50 - 2025-12-30 10:17 - 000003642 _____ C:\Windows\system32\Tasks\WindowsDefenderUpdate
2025-12-14 09:50 - 2025-12-29 16:19 - 000000000 ___HD C:\Users\Zbyse\AppData\Roaming\Keyboard
2025-12-13 18:34 - 2025-12-13 18:34 - 000000000 ____D C:\Users\Zbyse\AppData\LocalLow\Omeletteandyogurt
2025-12-13 18:17 - 2025-12-13 18:17 - 000000443 _____ C:\Users\Public\Desktop\Play Ferocious.lnk
2025-12-13 18:17 - 2025-12-13 18:17 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Ferocious
2025-12-08 22:32 - 2025-12-08 22:32 - 000000000 ____D C:\ProgramData\Roming
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-12-30 10:17 - 2025-08-28 19:56 - 000003698 _____ C:\Windows\system32\Tasks\Updater
2025-12-30 10:17 - 2025-08-28 19:56 - 000000370 _____ C:\Users\Public\Updater.vbs
2025-12-30 10:17 - 2025-06-23 14:33 - 000000000 ____D C:\FRST
2025-12-30 10:17 - 2025-02-12 11:29 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-12-30 10:17 - 2019-10-29 20:50 - 000000000 ____D C:\Temp
2025-12-30 10:05 - 2025-06-20 14:48 - 000000000 ____D C:\Users\Zbyse\SystemRootDoc
2025-12-30 09:48 - 2021-12-16 00:54 - 000000000 ____D C:\Windows\SystemTemp
2025-12-30 09:23 - 2020-06-24 17:15 - 001693140 _____ C:\Windows\system32\PerfStringBackup.INI
2025-12-30 09:23 - 2019-12-07 15:41 - 000716770 _____ C:\Windows\system32\perfh005.dat
2025-12-30 09:23 - 2019-12-07 15:41 - 000144948 _____ C:\Windows\system32\perfc005.dat
2025-12-30 09:23 - 2019-12-07 10:13 - 000000000 ____D C:\Windows\INF
2025-12-30 09:18 - 2019-10-29 20:56 - 000000000 ____D C:\Program Files\Core Temp
2025-12-30 09:17 - 2020-06-24 17:16 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2025-12-30 09:17 - 2020-06-24 17:11 - 000008192 ___SH C:\DumpStack.log.tmp
2025-12-30 09:17 - 2019-10-29 20:43 - 000000000 ____D C:\ProgramData\NVIDIA
2025-12-30 03:05 - 2020-06-24 16:18 - 000000000 ____D C:\Users\Zbyse
2025-12-30 03:05 - 2019-12-07 10:03 - 000786432 _____ C:\Windows\system32\config\BBI
2025-12-30 03:01 - 2020-06-24 17:11 - 000000000 ____D C:\Windows\system32\SleepStudy
2025-12-30 01:53 - 2025-06-20 14:48 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\17HD
2025-12-29 21:40 - 2019-12-01 12:40 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\qBittorrent
2025-12-29 16:28 - 2019-12-07 10:14 - 000000000 ____D C:\Windows\AppReadiness
2025-12-27 20:32 - 2019-10-29 21:18 - 000000000 ____D C:\Users\Zbyse\AppData\Local\CrashDumps
2025-12-27 07:58 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-12-26 19:04 - 2019-10-29 23:36 - 000000000 ____D C:\Users\Zbyse\AppData\Local\D3DSCache
2025-12-26 19:04 - 2019-10-29 20:42 - 000000000 ____D C:\Users\Zbyse\AppData\Local\Packages
2025-12-25 13:03 - 2019-10-29 21:46 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\foobar2000
2025-12-24 14:14 - 2019-11-06 17:12 - 000000000 ____D C:\Users\Zbyse\Documents\Euro Truck Simulator 2
2025-12-22 18:53 - 2024-12-22 16:11 - 000003714 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{79595118-642A-4AC0-B04E-8643ACE96630}
2025-12-22 18:53 - 2024-12-22 16:11 - 000003588 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{94B3EFB1-D529-4688-A6F9-74A65238CEC0}
2025-12-21 14:33 - 2019-10-29 23:12 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Microsoft\Word
2025-12-20 14:05 - 2019-11-22 00:16 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Microsoft\Excel
2025-12-20 11:23 - 2021-05-31 14:34 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Audacity
2025-12-20 10:55 - 2019-10-31 20:12 - 000000000 ____D C:\Users\Zbyse\AppData\Local\HQPlayer
2025-12-20 10:03 - 2025-09-21 06:58 - 000440696 _____ (Microsoft Corporation) C:\Windows\system32\gamingservicesproxy_b.dll
2025-12-20 10:03 - 2022-10-21 18:19 - 000153976 _____ (Microsoft Corporation) C:\Windows\system32\xgamehelper.exe
2025-12-20 10:03 - 2022-10-21 18:19 - 000076152 _____ (Microsoft Corporation) C:\Windows\system32\xgamecontrol.exe
2025-12-20 10:03 - 2021-11-20 22:13 - 000289144 _____ (Microsoft Corporation) C:\Windows\system32\gamelaunchhelper.dll
2025-12-20 10:03 - 2020-04-22 20:37 - 000166256 _____ (Microsoft Corporation) C:\Windows\system32\gamingtcuihelpers.dll
2025-12-20 10:03 - 2020-01-02 15:33 - 004606328 _____ (Microsoft Corporation) C:\Windows\system32\xgameruntime.dll
2025-12-20 10:03 - 2020-01-02 15:33 - 000878968 _____ (Microsoft Corporation) C:\Windows\system32\gameplatformservices.dll
2025-12-20 10:03 - 2020-01-02 15:33 - 000244088 _____ (Microsoft Corporation) C:\Windows\system32\gameconfighelper.dll
2025-12-20 01:54 - 2020-08-28 01:47 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-12-20 01:54 - 2020-08-28 01:47 - 000002285 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2025-12-19 20:05 - 2025-07-15 13:43 - 000002335 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk
2025-12-19 20:05 - 2025-07-15 13:43 - 000002294 _____ C:\Users\Public\Desktop\Brave.lnk
2025-12-18 15:47 - 2019-10-29 20:36 - 000000000 ____D C:\Windows\system32\Drivers\wd
2025-12-16 08:08 - 2024-07-16 16:30 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Adobe
2025-12-15 19:39 - 2025-07-16 07:36 - 000000000 ____D C:\XboxGames
2025-12-15 19:39 - 2019-10-29 20:43 - 000000000 ____D C:\ProgramData\Packages
2025-12-10 16:00 - 2019-10-29 21:18 - 000000000 ____D C:\Windows\system32\MRT
2025-12-10 15:58 - 2019-10-29 21:18 - 218369424 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2025-12-07 19:32 - 2019-11-07 16:51 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Microsoft\PowerPoint
2025-12-02 21:01 - 2023-12-30 13:01 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\vlc
2025-12-01 17:49 - 2019-10-29 23:12 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Microsoft\Office
==================== Files in the root of some directories ========
2025-11-02 10:08 - 2025-11-20 17:29 - 000015872 _____ () C:\Users\Public\update.ip.86.exe
2025-08-28 19:56 - 2025-12-30 10:17 - 000000370 _____ () C:\Users\Public\Updater.vbs
2025-11-22 10:58 - 2025-11-22 11:51 - 000000132 _____ () C:\Users\Zbyse\AppData\Roaming\Adobe Formát PNG CS6 – předvolby
2025-08-15 17:40 - 2025-09-19 18:59 - 000000128 _____ () C:\Users\Zbyse\AppData\Roaming\winscp.rnd
2025-08-20 09:22 - 2025-08-20 09:23 - 000101668 _____ () C:\Users\Zbyse\AppData\Local\dxdiag.log
2024-12-23 16:32 - 2025-11-17 18:24 - 000007849 _____ () C:\Users\Zbyse\AppData\Local\krita-sysinfo.log
2024-12-23 16:32 - 2025-11-17 18:31 - 000095068 _____ () C:\Users\Zbyse\AppData\Local\krita.log
2025-11-17 18:31 - 2025-11-17 18:31 - 000000039 _____ () C:\Users\Zbyse\AppData\Local\kritadisplayrc
2024-04-12 13:13 - 2025-11-17 18:31 - 000025002 _____ () C:\Users\Zbyse\AppData\Local\kritarc
2025-06-30 15:36 - 2025-06-30 15:36 - 398406584 _____ (Atlassian) C:\Users\Zbyse\AppData\Local\output_01b59bab6a1a44e6af3d3bfe1687b486_Standaloneup.exe
2025-06-30 15:29 - 2025-06-30 15:29 - 872484864 _____ () C:\Users\Zbyse\AppData\Local\TopazPhotoAI-4.0.0.msi
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Microsoft Windows 10 Home Version 22H2 19045.6456 (X64) (2020-06-24 16:16:49)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-3686431232-4186227985-1175276304-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3686431232-4186227985-1175276304-503 - Limited - Disabled)
Guest (S-1-5-21-3686431232-4186227985-1175276304-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3686431232-4186227985-1175276304-504 - Limited - Disabled)
Zbyse (S-1-5-21-3686431232-4186227985-1175276304-1001 - Administrator - Enabled) => C:\Users\Zbyse
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 24.07 (x64 edition) (HKLM\...\{23170F69-40C1-2702-2407-000001000000}) (Version: 24.07.00.0 - Igor Pavlov)
Affinity (HKLM\...\{8B40374A-6A89-451A-B709-63159CC09808}) (Version: 3.0.0.3791 - Serif Europe Ltd)
Altap Salamander 4.0 (x64) (HKLM\...\Altap Salamander 4.0 (x64)) (Version: 4.0 - ALTAP)
AMD GPIO2 Driver (HKLM-x32\...\{E9DD399F-21A3-479E-A7DF-D6CF4B2ADBF3}) (Version: 2.2.0.130 - Advanced Micro Devices, Inc.) Hidden
AMD Chipset Software (HKLM-x32\...\AMD_Chipset_IODrivers) (Version: 2.13.27.501 - Advanced Micro Devices, Inc.)
AMD I2C Driver (HKLM-x32\...\{B31D92D9-2914-46B0-9738-F668A563DE73}) (Version: 1.2.0.117 - Advanced Micro Devices, Inc.) Hidden
AMD PCI Driver (HKLM-x32\...\{80EC3CEE-2940-42A1-A776-B5D810D39F1E}) (Version: 1.0.0.82 - Advanced Micro Devices, Inc.) Hidden
AMD PSP Driver (HKLM-x32\...\{988F14B8-79A8-475D-BAC7-83F96AD3D821}) (Version: 4.13.0.0 - Advanced Micro Devices, Inc.) Hidden
AMD Ryzen Balanced Driver (HKLM-x32\...\{A171D320-C42C-4F3B-A2D8-C6A09F6788CC}) (Version: 6.0.0.9 - Advanced Micro Devices, Inc.) Hidden
AMD SBxxx SMBus Driver Alpha (HKLM-x32\...\{AAE0E27D-C88A-49BA-8715-77ADCD4286A3}) (Version: 5.12.0.38 - Advanced Micro Devices, Inc.) Hidden
AMD_Chipset_Drivers (HKLM-x32\...\{40c19864-e557-4855-95ee-075689dfcf8e}) (Version: 2.13.27.501 - Advanced Micro Devices, Inc.) Hidden
Aperio ImageScope (HKLM-x32\...\{A5856584-F090-4FD3-BA95-34E6D85546B1}) (Version: 9.01 - )
Atdega Mod Pack 7.6 Fin (HKLM-x32\...\{5C758480-BC02-4E19-8E3D-FC5747E0D777}_is1) (Version: 7.6 Fin - Atdega Company, Inc.)
Audacity 3.7.3 (HKLM\...\Audacity_is1) (Version: 3.7.3 - Audacity Team)
AviSynth 2.6 (HKLM-x32\...\AviSynth) (Version: 2.6.0.6 - GPL Public release.)
Bandizip (HKLM\...\Bandizip) (Version: 7.32 - Bandisoft.com)
Blackmagic RAW Common Components (HKLM\...\{D89568C5-2607-4EB9-8173-3F032A0E6F16}) (Version: 4.5 - Blackmagic Design)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Brave (HKLM-x32\...\BraveSoftware Brave-Browser) (Version: 143.1.85.118 - Autoři prohlížeče Brave)
Common Desktop Agent (HKLM\...\{A38002C3-BA08-466A-A813-7F9D578B13A1}) (Version: 1.62.0 - OEM) Hidden
Core Temp 1.18.1 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.18.1 - ALCPU)
CPUID CPU-Z 2.04 (HKLM\...\CPUID CPU-Z_is1) (Version: 2.04 - CPUID, Inc.)
CyberLink LabelPrint 2.5 (HKLM-x32\...\{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.0.12508 - CyberLink Corp.) Hidden
CyberLink LabelPrint 2.5 (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.0.12508 - CyberLink Corp.)
CyberLink Power2Go 13 (HKLM-x32\...\{7BB5FFC9-EC40-47c7-B10A-E0E6A296074D}) (Version: 13.0.0523.0 - CyberLink Corp.)
CyberLink WaveEditor 2 (HKLM-x32\...\{324F76CC-D8DD-4D87-B77D-D4AF5E1AA7B3}) (Version: 2.1.9529.0 - CyberLink Corp.)
DaVinci Resolve (HKLM\...\{AD710780-C70E-47A9-93A0-65450C9B221E}) (Version: 20.0.00049 - Blackmagic Design)
DaVinci Resolve Control Panels (HKLM\...\{07A5B5D9-8D8E-4330-B352-1B1038273B1D}) (Version: 2.3.2.0 - Blackmagic Design)
DaVinci Resolve Renderer (HKLM\...\{C2C9A9F5-AFA7-4A20-BA6D-46E8A19A3A44}) (Version: 20.0.00049 - Blackmagic Design)
Dell Display Manager (HKLM-x32\...\{AC50C05D-9D57-40F5-B2EF-AC402F14312B}_is1) (Version: 1.56.2109 - EnTech Taiwan)
Excel (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\1fc5b090eab9aa41f8a2f5987367e6da) (Version: 1.0 - Excel)
Fairlight Audio Accelerator Utility (HKLM\...\FairlightAudioAccelerator_is1) (Version: 1.0.15 - Blackmagic Design)
Far Cry Primal (HKLM-x32\...\{80BD47AF-CF13-49B2-99BF-7E78FBA26124}_is1) (Version: - Ubisoft)
Ferocious (HKLM-x32\...\Ferocious_is1) (Version: 0.0.0 - DODI-Repacks)
ffdshow v1.3.4533 [2014-09-29] (HKLM-x32\...\ffdshow_is1) (Version: 1.3.4533.0 - )
foobar2000 v1.6.16 (HKLM-x32\...\foobar2000) (Version: 1.6.16 - Peter Pawlowski)
GraphPad Prism 8.0.1.244 (HKLM\...\{1D0625E1-610F-499E-BA99-CAF230096AE1}) (Version: 8.1.244 - GraphPad Software Inc.)
Haali Media Splitter (HKLM-x32\...\HaaliMkx) (Version: - )
Hard Disk Sentinel Pro (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\{A559093D-FCCB-1B3D-5504-74D07E48A7FB}) (Version: v.5.61.8 - libbi)
HD Tune Pro 5.70 (HKLM-x32\...\HD Tune Pro_is1) (Version: - EFD Software)
Hybrid verze 0.2.6 (HKLM\...\{CE16C5A3-F700-4B35-A58C-99429D7E3240}}_is1) (Version: 0.2.6 - Selurs Software)
ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!)
Intel(R) Network Connections 25.6.0.4 (HKLM\...\{8DB3497D-41AF-423B-9027-D885A28857AB}) (Version: 25.6.0.4 - Intel) Hidden
Intel(R) Network Connections 25.6.0.4 (HKLM\...\PROSetDX) (Version: 25.6.0.4 - Intel)
IrfanView 4.67 (32-bit) (HKLM-x32\...\IrfanView) (Version: 4.67 - Irfan Skiljan)
IrfanView 4.67 (64-bit) (HKLM\...\IrfanView64) (Version: 4.67 - Irfan Skiljan)
Java 8 Update 421 (HKLM-x32\...\{77924AE4-039E-4CA4-87B4-2F32180421F0}) (Version: 8.0.4210.9 - Oracle Corporation)
JDownloader 2 (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
Krita (x64) 5.2.2 (HKLM\...\Krita_x64) (Version: 5.2.2.100 - Krita Foundation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
MergeModule_x64 (HKLM\...\{8B591A6B-253E-4E62-B2A8-3668CDA0A907}) (Version: 11.0.00 - Sony Corporation) Hidden
MergeModule_x86 (HKLM-x32\...\{51B45206-47B1-4B51-B46A-330B9156D6C1}) (Version: 11.0.00 - Sony Corporation) Hidden
Microsoft .NET Host - 8.0.22 (x64) (HKLM\...\{872CDB4B-5DDE-4297-BD19-C93B6C93E386}) (Version: 64.88.42551 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.22 (x64) (HKLM\...\{7A046DD7-9D61-4C5D-8F5E-24EE192B1B6A}) (Version: 64.88.42551 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.22 (x64) (HKLM\...\{C43A1A89-0CA5-43FD-BDC4-3B85DAD06A41}) (Version: 64.88.42551 - Microsoft Corporation) Hidden
Microsoft Access MUI (Czech) 2013 (HKLM\...\{90150000-0015-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Access MUI (English) 2013 (HKLM\...\{90150000-0015-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Access Setup Metadata MUI (English) 2013 (HKLM\...\{90150000-0117-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft DCF MUI (Czech) 2013 (HKLM\...\{90150000-0090-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft DCF MUI (English) 2013 (HKLM\...\{90150000-0090-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 143.0.3650.96 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 143.0.3650.96 - Microsoft Corporation) Hidden
Microsoft Excel MUI (Czech) 2013 (HKLM\...\{90150000-0016-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Excel MUI (English) 2013 (HKLM\...\{90150000-0016-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft GameInput (HKLM\...\{ECB4BDD1-984C-9F25-299C-A9EF75C14197}) (Version: 10.1.26100.6879 - Microsoft Corporation)
Microsoft Groove MUI (Czech) 2013 (HKLM\...\{90150000-00BA-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Groove MUI (English) 2013 (HKLM\...\{90150000-00BA-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft InfoPath MUI (Czech) 2013 (HKLM\...\{90150000-0044-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft InfoPath MUI (English) 2013 (HKLM\...\{90150000-0044-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Lync MUI (Czech) 2013 (HKLM\...\{90150000-012B-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Lync MUI (English) 2013 (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office 32-bit Components 2013 (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Korrekturhilfen 2013 - Deutsch (HKLM\...\{90150000-001F-0407-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Language Pack 2013 - Czech/čeština (HKLM\...\Office15.OMUI.cs-cz) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office O MUI (Czech) 2013 (HKLM\...\{90150000-0100-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (Czech) 2013 (HKLM\...\{90150000-00E1-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (English) 2013 (HKLM\...\{90150000-00E1-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM UX MUI (Czech) 2013 (HKLM\...\{90150000-00E2-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM UX MUI (English) 2013 (HKLM\...\{90150000-00E2-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUSR) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office Proofing (Czech) 2013 (HKLM\...\{90150000-002C-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing (English) 2013 (HKLM\...\{90150000-002C-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - English (HKLM\...\{90150000-001F-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - Español (HKLM\...\{90150000-001F-0C0A-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared 32-bit MUI (Czech) 2013 (HKLM\...\{90150000-00C1-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared 32-bit MUI (English) 2013 (HKLM\...\{90150000-00C1-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Czech) 2013 (HKLM\...\{90150000-006E-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (English) 2013 (HKLM\...\{90150000-006E-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared Setup Metadata MUI (English) 2013 (HKLM\...\{90150000-0115-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft OneNote MUI (Czech) 2013 (HKLM\...\{90150000-00A1-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft OneNote MUI (English) 2013 (HKLM\...\{90150000-00A1-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Outlook MUI (Czech) 2013 (HKLM\...\{90150000-001A-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Outlook MUI (English) 2013 (HKLM\...\{90150000-001A-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft PowerPoint MUI (Czech) 2013 (HKLM\...\{90150000-0018-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft PowerPoint MUI (English) 2013 (HKLM\...\{90150000-0018-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Publisher MUI (Czech) 2013 (HKLM\...\{90150000-0019-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Publisher MUI (English) 2013 (HKLM\...\{90150000-0019-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft SharePoint Designer MUI (Czech) 2013 (HKLM\...\{90150000-0017-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.42.34438 (HKLM-x32\...\{b49c10dd-4d54-45f8-ad13-fa25704456a4}) (Version: 14.42.34438.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.42.34438 (HKLM-x32\...\{ba10fda9-f731-441f-a999-000bbb7ceec2}) (Version: 14.42.34438.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.42.34438 (HKLM\...\{E528AD94-12D7-42C4-91A3-908BE28E9BD2}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.42.34438 (HKLM\...\{2E15F519-4FDA-4834-B4EE-7EFCE7D8D4EE}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.42.34438 (HKLM-x32\...\{A5592FEF-F948-4BA6-A066-8BBFC2DC7EE1}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.42.34438 (HKLM-x32\...\{5D0C4511-3CA1-4FF8-A4BA-C0E1957ABEEA}) (Version: 14.42.34438 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022-2024 Redistributable (x64) - 14.36.32532 (HKLM-x32\...\{048E023D-08A9-065B-896C-A5B31DE30A40}) (Version: 24.4.4.9118 - Microsoft)
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}) (Version: 10.0.50908 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.22 (x64) (HKLM\...\{4CCC1CCD-6FA3-4DD5-A06B-E94EA90094CF}) (Version: 64.88.42561 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.22 (x64) (HKLM-x32\...\{a3899eef-6164-4d42-b8c3-95ae6a844821}) (Version: 8.0.22.35428 - Microsoft Corporation)
Microsoft Word MUI (Czech) 2013 (HKLM\...\{90150000-001B-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Word MUI (English) 2013 (HKLM\...\{90150000-001B-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft X MUI (Czech) 2013 (HKLM\...\{90150000-0101-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
MKVToolNix 91.0.0 (64-bit) (HKLM-x32\...\MKVToolNix) (Version: 91.0.0 - Moritz Bunkus)
Monkey's Audio x64 (HKLM-x32\...\Monkey's Audio x64_is1) (Version: 10.25 - Matthew Todd Ashland)
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština (HKLM\...\{90150000-001F-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina (HKLM\...\{90150000-001F-041B-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
NVIDIA App 11.0.5.420 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NvApp) (Version: 11.0.5.420 - NVIDIA Corporation)
NVIDIA FrameView SDK 1.5.11504.36206172 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.5.11504.36206172 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.4.5.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.4.5.0 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 581.80 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 581.80 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.23.1019 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.23.1019 - NVIDIA Corporation)
ONLYOFFICE Desktop Editors (HKLM\...\{85C98361-DDBF-490D-81DA-04298A44D5C4}) (Version: 8.0.1.31 - Ascensio System SIA) Hidden
ONLYOFFICE Desktop Editors 8.0 (x64) (HKLM\...\ONLYOFFICE Desktop Editors) (Version: 8.0.1.31 - Ascensio System SIA)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
OpenVINO AI Plugins for Audacity version v3.7.1-R4.2 (HKLM\...\{944D0498-C914-46E9-97E0-813B726CB0B0}_is1) (Version: v3.7.1-R4.2 - Intel Corporation)
Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Outlook (1) (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\f42c72521bca47863b0c6b497cb01342) (Version: 1.0 - Outlook (1))
Outlook (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\6b0f23e57a39ebfbf2814acb1a24293d) (Version: 1.0 - Outlook)
PlayMemories Home (HKLM-x32\...\{AEB04E0E-0A28-4014-A96A-282E43B7227B}) (Version: 6.0.00.12211 - Sony Corporation)
Plex Media Server 1.42.2.10156 (x64) (HKLM\...\{688e1d8f-188e-49cd-83ca-2669a7e3f8cc}_is1) (Version: 1.42.2.10156 - Plex, Inc.)
PMB_ModeEditor (HKLM-x32\...\{F8063714-BD75-42DC-8FAA-D0E1EED92519}) (Version: 11.0.00 - Sony Corporation) Hidden
PMB_ServiceUploader (HKLM-x32\...\{CF081855-ED80-445A-BF63-025584939230}) (Version: 11.0.00 - Sony Corporation) Hidden
PotPlayer (HKLM-x32\...\PotPlayer) (Version: 25.09.09.0 - Kakao Corp.)
PowerPoint (1) (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\1f6d7c2045d0e984f46a5779d00bd03f) (Version: 1.0 - PowerPoint (1))
PowerPoint (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\319814cb56b667dff88f54e08be8f51f) (Version: 1.0 - PowerPoint)
Promontory_GPIO Driver (HKLM-x32\...\{B5512BCC-F4CD-4159-86A4-B2AD7D38FFA9}) (Version: 2.0.1.0 - Advanced Micro Devices, Inc.) Hidden
qBittorrent (HKLM-x32\...\qBittorrent) (Version: 5.1.0 - The qBittorrent project)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0015-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0015-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0016-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0016-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0017-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{85EB11C5-7793-4386-8F93-3D15494EC269}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0018-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0018-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0019-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0019-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001A-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001A-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001B-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{1E8252A7-D489-4BB6-9694-93799FFD33ED}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0407-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{DABB9E2A-F054-4F97-9EB2-6992316C6EC7}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0409-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{835E4BED-E265-4103-AE14-0B4C70CF3FE8}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{835E4BED-E265-4103-AE14-0B4C70CF3FE8}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}_Office15.PROPLUSR_{1F7000D3-A917-4AD2-BA55-59E6FDAF062A}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-041B-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{4601BD00-BC9B-4CA2-940C-2552782C7347}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0C0A-1000-0000000FF1CE}_Office15.PROPLUSR_{4BF13B26-3A95-4E42-900A-DEB16FDA75A0}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-002C-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{EC915383-0457-4D83-BE7A-009D7841E9C5}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-002C-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{C5D14A1B-6E3E-491A-96C6-ABDEEEC4E97D}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0044-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0044-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-006E-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{3F685A71-DF4A-4AC0-A110-0FA0B7FFD86C}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-006E-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{D7E879E6-B505-4DA2-BFEE-53A55E7C8E38}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0090-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0090-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00A1-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00A1-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00BA-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00BA-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{1931508C-C004-4983-81E3-70BE6252904B}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00C1-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{6E88843F-58F2-45EB-8C4A-0DDFE45366E1}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00C1-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{E4F470B2-3601-4E1C-B291-D6B580F53136}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E1-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E1-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E2-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E2-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0100-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0101-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0115-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{D7E879E6-B505-4DA2-BFEE-53A55E7C8E38}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0117-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-012B-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft)
Serviio (HKLM\...\Serviio) (Version: 2.3 - Six Lines Ltd)
Signalyst HQPlayer Desktop 3 (HKLM-x32\...\HQPlayer Desktop 3) (Version: - Signalyst)
SOMA (CZ Dabing) (HKLM-x32\...\FPD_SOMA_is1) (Version: 1.0 - Fénix ProDabing)
SOMA (HKLM\...\U09NQQ==_is1) (Version: 1 - )
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TIDAL (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\TIDAL) (Version: 2.38.6 - TIDAL Music AS)
Topaz Photo AI (HKLM\...\{46DE1251-ACBD-498F-8DDC-17AAC7588EFE}) (Version: 4.1.0 - Topaz Labs LLC)
Topaz Video AI (HKLM\...\{4965FA3A-1EF0-4A7B-9640-A6901C51BEAB}) (Version: 3.2.2 - Topaz Labs LLC)
UE Prerequisites (x64) (HKLM\...\{7A117EE9-1DCA-4DF2-816B-6810A95D67C5}) (Version: 1.0.22.0 - Epic Games, Inc.) Hidden
UE Prerequisites (x64) (HKLM-x32\...\{7675c6c6-b4bd-4206-855e-5e39d89ea708}) (Version: 1.0.22.0 - Epic Games, Inc.) Hidden
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{90150000-012B-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{B8D93870-98D1-4980-AFCA-E26563CDFB79}) (Version: 8.94.0.0 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.21 - VideoLAN)
WinSCP 6.5.3 (HKLM-x32\...\winscp3_is1) (Version: 6.5.3 - Martin Prikryl)
Word (1) (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\f3599346063c9afede925c6eb5c87f5c) (Version: 1.0 - Word (1))
Word (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\1b837d0bf93d01407352736c91b7bf50) (Version: 1.0 - Word)
Xerox Easy Printer Manager (HKLM-x32\...\Xerox Easy Printer Manager) (Version: 1.03.97.02(06.06.2021) - Xerox Corporation.)
Xerox Easy Wireless Setup (HKLM-x32\...\Xerox Easy Wireless Setup) (Version: 3.70.18.0 - Xerox Corporation)
Xerox Phaser 3020 (HKLM-x32\...\Xerox Phaser 3020) (Version: V1.06 (06.07.2021) - Xerox Corporation)
Packages:
=========
CUE Splitter -> C:\Program Files\WindowsApps\38812MedievalSoftware.CUESplitter_2.0.8.0_x64__qfb5004rcjhse [2025-06-18] (Medieval Software)
Dolby Vision Extensions -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyVisionAccess_2.20501.518.0_x64__rz1tebttyb220 [2025-07-26] (Dolby Laboratories)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2022-03-23] (Microsoft Corporation)
Doplněk pro Fotky -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2021.39122.10110.0_x64__8wekyb3d8bbwe [2022-03-23] (Microsoft Corporation)
HEVC Video Extensions -> C:\Program Files\WindowsApps\Microsoft.HEVCVideoExtensions_2.4.37.0_x64__8wekyb3d8bbwe [2025-12-06] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-10-29] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-10-29] (Microsoft Corporation) [MS Ad]
Minecraft for Windows -> C:\Program Files\WindowsApps\MICROSOFT.MINECRAFTUWP_1.21.13101.0_x64__8wekyb3d8bbwe [2025-12-18] (Microsoft Studios)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.969.0_x64__56jybvy8sckqj [2025-11-08] (NVIDIA Corp.)
TvMate IPTV Player -> C:\Program Files\WindowsApps\2242VelocityAppsTeam.TiviMate_7.5.4.0_x64__v313ts49xh8we [2025-02-23] (Velocity Apps Team)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001_Classes\CLSID\{5B69A6B4-393B-459C-8EBB-214237A9E7AC}\InprocServer32 -> C:\Program Files\Bandizip\bdzshl.x64.dll (Bandisoft International Inc. -> Bandisoft International Inc.)
CustomCLSID: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001_Classes\CLSID\{86ca1aa0-34aa-4e8b-a509-50c905bae2a2}\InprocServer32 -> => No File
CustomCLSID: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001_Classes\CLSID\{C78B614C-F3EA-11D2-94A1-00E0292A01E3}\InprocServer32 -> C:\Supgam\Altap Salamander 3.06 (x86 x64) 2015 CZ (Ml) Portable\utils\salextx64.dll (ALTAP) [File not signed]
CustomCLSID: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001_Classes\CLSID\{C78B614F-F3EA-11D2-94A1-00E0292A01E3}\InprocServer32 -> C:\Program Files\Altap Salamander\utils\salextx64.dll (Fine spol. s r.o. -> ALTAP)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ContextMenuHandlers1: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP\System\aimp_menu64.dll -> No File
ContextMenuHandlers1: [CLVDShellExt13] -> {19476CE9-8B19-4EA5-A6FD-5BB11832C0EA} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt13.dll [2019-05-23] (CyberLink Corp. -> Cyberlink)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Supgam\WinRAR 5.90 Beta 1 CZ (x64) Portable\rarext.dll [2020-01-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Supgam\WinRAR 5.90 Beta 1 CZ (x64) Portable\rarext32.dll [2020-01-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers2: [CLVDShellExt13] -> {19476CE9-8B19-4EA5-A6FD-5BB11832C0EA} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt13.dll [2019-05-23] (CyberLink Corp. -> Cyberlink)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers4: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP\System\aimp_menu64.dll -> No File
ContextMenuHandlers5: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_20ae8f14a487d5db\nvshext.dll [2025-10-30] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Supgam\WinRAR 5.90 Beta 1 CZ (x64) Portable\rarext.dll [2020-01-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Supgam\WinRAR 5.90 Beta 1 CZ (x64) Portable\rarext32.dll [2020-01-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1_S-1-5-21-3686431232-4186227985-1175276304-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers2_S-1-5-21-3686431232-4186227985-1175276304-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers4_S-1-5-21-3686431232-4186227985-1175276304-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers5_S-1-5-21-3686431232-4186227985-1175276304-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
==================== Codecs (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Drivers32: [VIDC.FFDS] => C:\Windows\SysWOW64\ff_vfw.dll [112640 2014-09-29] () [File not signed]
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Excel.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=leffmjdabcgaflkikcefahmlgpodjkdm --app-url=hxxps://excel.office.com/
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Outlook (1).lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=bjhmmnoficofgoiacjaajpkfndojknpb --app-url=hxxps://outlook.com/
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Outlook.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=bjhmmnoficofgoiacjaajpkfndojknpb
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PowerPoint (1).lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=opfacbhaojodjaojgocnibmklknchehf --app-url=hxxps://powerpoint.office.com/
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=opfacbhaojodjaojgocnibmklknchehf
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Word (1).lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=hikhggiobiflkdfdgdajcfklmcibbopi --app-url=hxxps://word.office.com/
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Word.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=hikhggiobiflkdfdgdajcfklmcibbopi
==================== Loaded Modules (Whitelisted) =============
2025-05-27 21:58 - 2025-05-27 21:58 - 000498176 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\aac_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000461824 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\aac_encoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000366592 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\ac3_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000378368 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\ac3_encoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000314880 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\ape_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000523776 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\dca_decoder.dll
2025-06-15 01:47 - 2025-06-15 01:47 - 000279040 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\dsd_lsbf_planar_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000396288 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\dvvideo_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001773568 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\h264_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001709056 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\hevc_decoder.dll
2025-09-20 21:50 - 2025-09-20 21:50 - 000454656 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\libmp3lame_encoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 002021376 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\libx264_encoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000360448 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mp2_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000360448 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mp3_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000585728 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mpeg1video_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000596480 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mpeg2video_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000784896 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\mpeg4_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000697344 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\msmpeg4v2_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000697344 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\msmpeg4v3_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000330240 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\prores_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001193472 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\vc1_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000735232 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\vp8_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001878528 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\vp9_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000326656 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\wavpack_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 000356352 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\wmav2_decoder.dll
2025-05-27 21:58 - 2025-05-27 21:58 - 001193472 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\46f74ab-560174306fe167a5978a79dd-windows-x86_64\wmv3_decoder.dll
2024-06-19 11:00 - 2024-06-19 11:00 - 000101376 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2025-10-28 17:57 - 2025-10-28 17:57 - 000000000 ___JL (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\PlugIns\NVIDIA App\MessageBusRouter.dll] C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\plugins\NVIDIA Overlay\MessageBusRouter.dll
2024-07-26 13:10 - 2025-10-28 17:57 - 000000000 ___JL (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA App\MessageBus\NvMessageBusBroadcast.dll] C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem\NvMessageBusBroadcast.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\Microsoft => ""="Service"
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2020-04-14] (Microsoft Corporation -> Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2020-04-14] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\ssv.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\jp2ssv.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2019-06-12] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\sharepoint.com -> hxxps://mendelu-files.sharepoint.com
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2019-03-19 05:49 - 2025-06-24 14:06 - 000000027 _____ C:\Windows\system32\drivers\etc\hosts
127.0.0.1 localhost
==================== Network ===========================
(Currently there is no automatic fix for this section.)
DNS Servers: 192.168.50.1
Windows Firewall is enabled.
Network Binding:
=============
Ethernet: Intel(R) I211 Gigabit Network Connection -> e1r65x64.sys
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\java8path;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\Bandizip\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA app\NvDLISR;C:\Program Files\dotnet\
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\Control Panel\Desktop\\Wallpaper -> e:\download\01-wallpaper_soma_1920x1080.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 5) (TamperProtectionSource: )
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Program Files\qBittorrent
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Users\Public
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\ProgramData
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\AudioService
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Windows\system32\config\systemprofile\AppData\Local\Temp
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Windows\system32\config\systemprofile\AppData\Roaming
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|C:\Windows\system32\config\systemprofile\AppData\Local
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|cmd.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|wscript.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|cscript.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|Nano.js
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|Nano.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|ssd.vbs
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|xx.vbs
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|sd.vbs
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|powershell.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Windows\explorer.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|explorer.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|conhost.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|jsc.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|C:\Windows\system32\config\systemprofile\AppData\Roaming\Microsoft\Windows\AudioService\AudioService.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|schtasks.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|vbc.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|Font.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|proquota.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Processes|RegAsm.exe
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\TemporaryPaths|\\?\C:\Supgam\Total Commander\10.51 Portable\App\totalcmd\tcrun.exe
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "ACUW16EN"
HKLM\...\StartupApproved\Run32: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run32: => "Adobe CCXProcess"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\StartupFolder: => "Odeslat do OneNote.lnk"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "CCXProcess"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "ACDSeeCommanderUltimate16"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_D1548DDA36BFF9FBCE51AAEDDC45F532"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "C:\Users\Zbyse\AppData\Roaming\InRLiM3dED\VSGhhCP0.exe"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [UDP Query User{E32466DC-1CDB-4C56-AB27-1F5C93AE7543}C:\program files (x86)\daum\potplayer\potplayermini.exe] => (Allow) C:\program files (x86)\daum\potplayer\potplayermini.exe (Kakao Corp. -> Kakao)
FirewallRules: [TCP Query User{9B67F7AE-9C21-46A5-9924-E72B2E980C7A}C:\program files (x86)\daum\potplayer\potplayermini.exe] => (Allow) C:\program files (x86)\daum\potplayer\potplayermini.exe (Kakao Corp. -> Kakao)
FirewallRules: [{FC19A5E0-2A31-4E41-A5FA-DB7D85ADF21E}] => (Allow) C:\Program Files\foobar2000\foobar2000 Shell Associations Updater.exe (Peter Pawlowski) [File not signed]
FirewallRules: [{AC54F273-F824-489E-9365-48AFD1CBFB68}] => (Allow) C:\Program Files\foobar2000\foobar2000 Shell Associations Updater.exe (Peter Pawlowski) [File not signed]
FirewallRules: [{462C0772-BE15-4BBD-8479-2712EF944985}] => (Allow) C:\Program Files\foobar2000\foobar2000 Shell Associations Updater.exe (Peter Pawlowski) [File not signed]
FirewallRules: [{321F3267-42ED-4AB7-B6FF-911E0B85B892}] => (Allow) C:\Program Files\foobar2000\foobar2000 Shell Associations Updater.exe (Peter Pawlowski) [File not signed]
FirewallRules: [{9C9D195A-9A27-453E-9268-215248E6F82C}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{2C6563FF-4F5B-4F40-A144-E1CBA0433B51}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{98E12835-66D8-452D-AA75-6B650BC77783}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{D123163A-AA64-434D-98E9-284F09669A37}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{37B6311C-7047-4B33-B16F-6C5FB38DDD61}] => (Allow) D:\Programy\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{BD3A8A7E-23BA-4979-88B1-6967B6278BE5}] => (Allow) D:\Programy\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{985B5949-28D7-42D8-AB4B-7AB98D507FEF}] => (Allow) D:\Programy\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{2F8DEF43-7244-48D9-9EC2-D90A44775377}] => (Allow) D:\Programy\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{744C4FC9-36BB-4E86-A4ED-3AD349CC14A2}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{19A9441B-845B-4BA8-AF25-9E8E5E64BD13}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{037DAC84-EE78-47C2-BF8D-D99E91361DD4}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{598F75DA-D9B4-4A7C-808A-5AEA606AFD56}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{E7C1E876-BE5A-4181-A511-C539FD9FB27A}E:\threadr\programy\imagej\imagej.exe] => (Allow) E:\threadr\programy\imagej\imagej.exe () [File not signed]
FirewallRules: [UDP Query User{2FC6EF2E-02F0-44BB-9553-3FAE6FC16EAC}E:\threadr\programy\imagej\imagej.exe] => (Allow) E:\threadr\programy\imagej\imagej.exe () [File not signed]
FirewallRules: [TCP Query User{F3B50D36-5D6F-4F61-AFE5-A0F96BF1D1C5}C:\program files\serviio\jre\bin\javaw.exe] => (Allow) C:\program files\serviio\jre\bin\javaw.exe
FirewallRules: [UDP Query User{500ADCEF-8D0D-46E3-9371-C5F2719564CC}C:\program files\serviio\jre\bin\javaw.exe] => (Allow) C:\program files\serviio\jre\bin\javaw.exe
FirewallRules: [TCP Query User{BA4BC774-E288-4469-BD75-E5947E54E53A}C:\windows\system32\mmc.exe] => (Block) C:\windows\system32\mmc.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [UDP Query User{BF98DFCE-7F61-49DA-96DA-74DBA2829F8C}C:\windows\system32\mmc.exe] => (Block) C:\windows\system32\mmc.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{7F42F493-EA9A-4A82-B4D4-66CA4A016701}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{9BBFF569-E849-486B-BCE5-1827C3216B18}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{84E5BFD6-2268-432B-BB52-2565E561FE8E}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x86\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{C6B48179-8EE8-48E9-B2DE-C89272FA68A3}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x86\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{660F6C9F-6DB3-4DFC-8EB3-33067852DD6A}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{4FD5C8D6-F540-4A25-9C43-42072C0893D6}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{205A4AF2-B6AD-4213-A10E-7D3D3C077F18}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.Application.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{CE2FBB4C-87DD-4CC4-BD54-445934484D8B}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.Application.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{8856DDFF-F55B-4CE5-B6A5-43D6ECEB2548}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.OrderSupplies.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{D7A1BED2-BD47-44F7-8ED5-80F9185FB072}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.OrderSupplies.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{EA5BB2FE-3BEB-4C4D-A815-C78D63FB65F3}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.Alert.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{45FF35D8-426D-48D5-B8E1-4962D1DECDD3}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.Alert.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{29FCC465-91DA-4E12-867F-C12DECF3DF74}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\uninstall.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{0606697C-1674-4D6D-B11B-0CBD8E73296D}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\uninstall.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{89893EB7-261D-417F-A13C-1CA9CE97DF9A}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\CDAS2PC\Xerox.CDAS2PC.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{28E04AA6-E620-4722-9FCF-DC3A3F9DA57F}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\CDAS2PC\Xerox.CDAS2PC.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{67342818-AC12-4673-B0CE-06502E13DC83}] => (Allow) C:\Program Files (x86)\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{B4C9243D-3FCB-4CB9-AB43-7235CE1E00AD}] => (Allow) C:\Program Files (x86)\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{9E304A31-C775-4DF5-AF6E-C00D42036297}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{0ECB00BD-00EB-473A-8287-D863B0C7963C}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [TCP Query User{CFDDB72A-1106-4DFF-9B88-2DB5A7D675AB}D:\games\far cry primal\bin\fcprimal.exe] => (Allow) D:\games\far cry primal\bin\fcprimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [UDP Query User{E4318DCE-C953-4571-AC13-A59C943FE0D8}D:\games\far cry primal\bin\fcprimal.exe] => (Allow) D:\games\far cry primal\bin\fcprimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [{7322048D-2BF8-419E-8FC2-5BA8E32B8332}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 2013\FarmingSimulator2013Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{6FC70668-1502-436E-8F79-D4A32F76372B}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 2013\FarmingSimulator2013Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [TCP Query User{132966CA-DC70-4AEF-9615-AD1667783CBB}C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe] => (Block) C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe (Signalyst -> )
FirewallRules: [UDP Query User{FC7E21C2-9B73-4173-8C72-29B6670B7428}C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe] => (Block) C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe (Signalyst -> )
FirewallRules: [TCP Query User{DCB80824-F17F-41A7-A927-F90FA394B619}C:\supgam\madvr\madhcctrl.exe] => (Allow) C:\supgam\madvr\madhcctrl.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [UDP Query User{B7C1A0D0-AEAD-4635-83B2-99B32B76F909}C:\supgam\madvr\madhcctrl.exe] => (Allow) C:\supgam\madvr\madhcctrl.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [TCP Query User{8F37554C-1F8C-49BE-9F0C-45C4B55E2710}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [UDP Query User{A54EE6AD-65C5-453B-B37B-E863C1EF1126}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [TCP Query User{85180EA5-89BC-4636-ABAF-9F0A6AAE878F}D:\games\quake 3 arena\quake3e.ded.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.ded.x64.exe () [File not signed]
FirewallRules: [UDP Query User{8172CB24-6AA8-4050-9A29-B2C59ABC7EFF}D:\games\quake 3 arena\quake3e.ded.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.ded.x64.exe () [File not signed]
FirewallRules: [TCP Query User{63439F03-50B7-4DB4-974F-993E8DABBCCE}D:\games\quake 3 arena\quake3e.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.x64.exe () [File not signed]
FirewallRules: [UDP Query User{135A4E52-D499-4E55-8C36-1B32A3D595A1}D:\games\quake 3 arena\quake3e.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.x64.exe () [File not signed]
FirewallRules: [TCP Query User{FF557E77-D694-4C85-89D7-1FCDECF6D760}D:\games\quake 3 arena\quake3e-vulkan.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e-vulkan.x64.exe () [File not signed]
FirewallRules: [UDP Query User{516BD6C5-3834-42DA-ADAC-5EC207EF91D1}D:\games\quake 3 arena\quake3e-vulkan.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e-vulkan.x64.exe () [File not signed]
FirewallRules: [{8DA9E566-FE41-4EC1-9D11-368A93546C7B}] => (Allow) C:\Program Files\Serviio\bin\ServiioService.exe () [File not signed]
FirewallRules: [{A4DD15D8-F0BE-44B6-917F-AEB46B4FDA1C}] => (Allow) C:\Program Files\Serviio\bin\ServiioService.exe () [File not signed]
FirewallRules: [{628EBF91-9179-4DA9-AD98-1ABEE4C5C149}] => (Allow) C:\Program Files\Serviio\console\ServiioConsole.exe (Six Lines Ltd) [File not signed]
FirewallRules: [TCP Query User{7881C914-5F13-4D2B-8B4F-C9D5EB6692E1}C:\users\zbyse\appdata\local\tidal\app-2.37.8\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.37.8\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{C55F880F-8AFA-482B-89B9-C6DA984E9EE9}C:\users\zbyse\appdata\local\tidal\app-2.37.8\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.37.8\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [{020247A5-E152-456F-8BE7-DDECF7A1F8BF}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{DCABA4B8-135D-49AB-B2E3-20A4CB9FD413}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\tpai.exe (Topaz Labs) [File not signed]
FirewallRules: [{3C09EF2B-1E6C-4E77-AB69-C9C9DC2656BF}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Crashpad\crashpad_handler.exe (Topaz Labs LLC -> )
FirewallRules: [{5EBC67DF-6486-4F15-B7D6-BA321E5B204E}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{E6077F40-7F25-441D-AC34-877A6636BB7C}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\tpai.exe (Topaz Labs) [File not signed]
FirewallRules: [{D3D80FFC-404F-486E-95A2-81BF89888B38}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Crashpad\crashpad_handler.exe (Topaz Labs LLC -> )
FirewallRules: [{F3DEA6D3-66F8-4C44-9C01-0BC77811186D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{423B1DE2-2BDE-49C0-8175-4AEFBF9F25B9}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{D8481CEE-1918-486D-92F6-78723D778BB1}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{84AAB800-052D-4A0A-B24C-C46D418140E4}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [TCP Query User{FD9E9572-DC56-4BBC-BCDA-99183488A9F4}C:\users\zbyse\appdata\local\tidal\app-2.38.5\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.5\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{0BDC7DA0-7C66-406A-BA7E-954F7C9ACDD6}C:\users\zbyse\appdata\local\tidal\app-2.38.5\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.5\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [TCP Query User{968635CE-F91F-48B4-BF4F-FC49CD6DD9E5}C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{19BB8701-9045-4F9F-8CE1-7E9211B87E04}C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [TCP Query User{F740FD17-BD9D-469D-9E9D-46ED713E4DC9}C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe] => (Allow) C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe (Signalyst -> )
FirewallRules: [UDP Query User{8CF50986-CFB7-4834-AB40-5B28969DB337}C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe] => (Allow) C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe (Signalyst -> )
FirewallRules: [TCP Query User{6A0D2880-A7B4-40C8-AF3C-213E690A8685}D:\games\quake 3 arena\quake3e-vulkan.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e-vulkan.x64.exe () [File not signed]
FirewallRules: [UDP Query User{82953214-E452-4F40-8B76-C34D9B6F9189}D:\games\quake 3 arena\quake3e-vulkan.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e-vulkan.x64.exe () [File not signed]
FirewallRules: [TCP Query User{D3270D45-9FA0-4187-8037-D14EC151AE90}D:\games\far cry primal\bin\fcprimal.exe] => (Block) D:\games\far cry primal\bin\fcprimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [UDP Query User{C71DF38B-A671-4DC4-884E-33A0E6B4D16A}D:\games\far cry primal\bin\fcprimal.exe] => (Block) D:\games\far cry primal\bin\fcprimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [TCP Query User{5218893C-4B0A-42E1-8C5B-4D687F8AD099}C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{37A34BB2-1BB4-4362-AD2E-B0A728FD6A84}C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.38.6\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [TCP Query User{F0A876E0-00B9-470A-AD8C-ACB3AFFECEA0}C:\supgam\madvr\madhcctrl.exe] => (Allow) C:\supgam\madvr\madhcctrl.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [UDP Query User{1CDB89F1-09BA-4A5F-AD6B-2B57E43D89A1}C:\supgam\madvr\madhcctrl.exe] => (Allow) C:\supgam\madvr\madhcctrl.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [TCP Query User{C3EAC7BE-9BA9-4A9E-B21D-A7EC2EB5016E}C:\supgam\madvr\madtpg.exe] => (Allow) C:\supgam\madvr\madtpg.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [UDP Query User{D9B85A7C-89EB-478B-9899-F742520E598F}C:\supgam\madvr\madtpg.exe] => (Allow) C:\supgam\madvr\madtpg.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [{0D5A6AAC-69FF-4C0C-A7CB-5A46426881D9}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{FE326115-18DD-446C-AE7E-0E40C38601C1}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{7476D19A-9DC5-4446-A6B7-7196D5A5C6AE}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{251E5DA9-6AA3-4156-B668-2638BE101D8D}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{BB07CDA0-2EE8-4669-AF49-FF0AB1265CAA}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{166FD721-FE9D-463D-BB20-EE8BA8556678}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{58BB1D07-6C10-45E7-9539-EBCF80E8D878}] => (Allow) D:\Programy\Steam\steamapps\common\MudRunner\MudRunner.exe (Focus Home Interactive) [File not signed]
FirewallRules: [{97DC0F46-E716-4854-82A1-F6A3669E1587}] => (Allow) D:\Programy\Steam\steamapps\common\MudRunner\MudRunner.exe (Focus Home Interactive) [File not signed]
FirewallRules: [TCP Query User{03EF1AF0-2568-4015-AA6A-A93F8EEE16A3}D:\games\wrap.house.simulator.v1.03\wraphousesimulator\binaries\win64\wraphousesimulator-win64-shipping.exe] => (Allow) D:\games\wrap.house.simulator.v1.03\wraphousesimulator\binaries\win64\wraphousesimulator-win64-shipping.exe => No File
FirewallRules: [UDP Query User{1D313E4E-1DBE-4CA8-AED5-A61EEFD1A602}D:\games\wrap.house.simulator.v1.03\wraphousesimulator\binaries\win64\wraphousesimulator-win64-shipping.exe] => (Allow) D:\games\wrap.house.simulator.v1.03\wraphousesimulator\binaries\win64\wraphousesimulator-win64-shipping.exe => No File
FirewallRules: [{6FD1CB1E-05E6-433B-B344-A6018EFF10D2}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\Resolve.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [{F96F21D5-D679-47B4-965A-BD678BF6AD04}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\bmdpaneld.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{B65869E1-8F27-4781-BF1E-7FAA0F705915}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\DaVinciPanelDaemon.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{2A63E66B-E562-411A-BC88-3B4700A7E841}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\JLCooperPanelDaemon.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{F7F60410-73FB-43C7-BFE5-6FE68FCCD95E}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\EuphonixPanelDaemon.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{01FA5378-A64F-42D5-8833-6C4FD8705C65}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\TangentPanelDaemon.exe (Blackmagic Design Pty Ltd. -> )
FirewallRules: [{E1B2C289-639B-4BC8-A987-F77E0A1065DF}] => (Allow) D:\Programy\Blackmagic Design\DaVinci Resolve\fuscript.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.)
FirewallRules: [TCP Query User{6E481EAA-073E-4669-BD6F-BBED6E2F88CD}D:\programy\blackmagic design\davinci resolve\resolve.exe] => (Allow) D:\programy\blackmagic design\davinci resolve\resolve.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [UDP Query User{A9D7F2A5-7EA7-4FBB-8035-A1CE492DB874}D:\programy\blackmagic design\davinci resolve\resolve.exe] => (Allow) D:\programy\blackmagic design\davinci resolve\resolve.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [TCP Query User{5476236E-1986-4773-8A99-006E2540D83F}D:\programy\blackmagic design\davinci resolve\fuscript.exe] => (Allow) D:\programy\blackmagic design\davinci resolve\fuscript.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.)
FirewallRules: [UDP Query User{3B3E95C2-ACAD-46EA-9F14-273484505AB7}D:\programy\blackmagic design\davinci resolve\fuscript.exe] => (Allow) D:\programy\blackmagic design\davinci resolve\fuscript.exe (Blackmagic Design Pty Ltd. -> Blackmagic Design Pty. Ltd.)
FirewallRules: [{6008AE44-5ADA-4F53-A10E-A398EFD4822D}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{54751F50-17A6-49D5-A170-132200E7BAEB}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{7E40A32C-9B6D-4CF4-9880-D548760019A0}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [{1844259D-9699-4D97-8E68-B055EF040257}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs) [File not signed]
FirewallRules: [TCP Query User{5573FB03-6338-46C4-A328-F01BCCCE5D05}E:\download\quake 3 arena cd\quake3\quake3.exe] => (Allow) E:\download\quake 3 arena cd\quake3\quake3.exe => No File
FirewallRules: [UDP Query User{E7F68961-AC4B-4DD6-AD7B-B006EFEFBD1B}E:\download\quake 3 arena cd\quake3\quake3.exe] => (Allow) E:\download\quake 3 arena cd\quake3\quake3.exe => No File
FirewallRules: [TCP Query User{AF422FDE-75A1-478C-BCB0-A8875A4D32CD}E:\download\quake 3 - arena (full pc game)\quake3\quake3.exe] => (Allow) E:\download\quake 3 - arena (full pc game)\quake3\quake3.exe => No File
FirewallRules: [UDP Query User{D89133EC-3C79-4D1D-9F22-5D74B2808582}E:\download\quake 3 - arena (full pc game)\quake3\quake3.exe] => (Allow) E:\download\quake 3 - arena (full pc game)\quake3\quake3.exe => No File
FirewallRules: [TCP Query User{08C3D308-1E24-49B4-8D23-ACA494360EBE}D:\games\quake 3 arena cd\quake3\quake3.exe] => (Allow) D:\games\quake 3 arena cd\quake3\quake3.exe => No File
FirewallRules: [UDP Query User{4C604D5D-DD86-4E9B-A6B8-3C57B1A250E7}D:\games\quake 3 arena cd\quake3\quake3.exe] => (Allow) D:\games\quake 3 arena cd\quake3\quake3.exe => No File
FirewallRules: [TCP Query User{FD82BB1F-46EB-4E6B-989D-191EB69D9C59}D:\games\quake 3 arena\quake3e.ded.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.ded.x64.exe () [File not signed]
FirewallRules: [UDP Query User{F2922157-EC4D-473B-97B0-8FB7A2020063}D:\games\quake 3 arena\quake3e.ded.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.ded.x64.exe () [File not signed]
FirewallRules: [TCP Query User{E70D7C19-70EB-44E6-9722-DFD7BDB160EC}D:\games\quake 3 arena\quake3e.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.x64.exe () [File not signed]
FirewallRules: [UDP Query User{3D98C8DB-75CD-4813-897A-28F34DE610AC}D:\games\quake 3 arena\quake3e.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.x64.exe () [File not signed]
FirewallRules: [TCP Query User{ABA22196-39BF-47DB-BA76-A47156656E2A}H:\quake3\quake3.exe] => (Allow) H:\quake3\quake3.exe => No File
FirewallRules: [UDP Query User{95FAAA71-0B30-402C-BE82-D7658A4CB409}H:\quake3\quake3.exe] => (Allow) H:\quake3\quake3.exe => No File
FirewallRules: [{2AD14314-01FB-42DA-8AFA-0D83C246AA7C}] => (Allow) D:\Programy\Steam\steamapps\common\IAmFish\IAmFish.exe () [File not signed]
FirewallRules: [{E425320A-B889-4647-A676-228EB39C3139}] => (Allow) D:\Programy\Steam\steamapps\common\IAmFish\IAmFish.exe () [File not signed]
FirewallRules: [{8199879E-6CF9-4A05-940D-FEB5EA8C968B}] => (Allow) C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe (Plex, Inc. -> Plex, Inc.)
FirewallRules: [{AF61006C-844A-4EEE-8C32-13DB60FA5894}] => (Allow) C:\Program Files\Plex\Plex Media Server\PlexScriptHost.exe (Plex, Inc. -> )
FirewallRules: [{B20197E6-4710-4377-959B-4D2D07E70BBE}] => (Allow) C:\Program Files\Plex\Plex Media Server\Plex DLNA Server.exe (Plex, Inc. -> Plex, Inc.)
FirewallRules: [{33C1B103-0674-4D03-85A9-C6A5D9B456DB}] => (Allow) C:\Program Files\Plex\Plex Media Server\Plex Tuner Service.exe (Plex, Inc. -> )
FirewallRules: [TCP Query User{E3F46AC2-F578-44FB-A822-F371F9EDE1F2}D:\games\ferocious\ferocious.exe] => (Allow) D:\games\ferocious\ferocious.exe () [File not signed]
FirewallRules: [UDP Query User{8FA3FD18-0B4B-44C4-95DD-80798C2D0EBB}D:\games\ferocious\ferocious.exe] => (Allow) D:\games\ferocious\ferocious.exe () [File not signed]
FirewallRules: [{564B2144-FA36-45FD-B22A-C21B59263167}] => (Allow) C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [{D4BD3629-5FC3-4A27-8999-A8BBF76BF514}] => (Allow) D:\Programy\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{0893CE84-101A-43E6-B413-AB57C6759C7F}] => (Allow) D:\Programy\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [TCP Query User{8AB2F1DC-EDA6-4502-AE6C-C87524EA4B1F}C:\xboxgames\minecraft for windows\content\minecraft.windows.exe] => (Allow) C:\xboxgames\minecraft for windows\content\minecraft.windows.exe (Access Denied) [File not signed?]
FirewallRules: [UDP Query User{DF885C9B-08B1-490B-9ABD-A20C949CB493}C:\xboxgames\minecraft for windows\content\minecraft.windows.exe] => (Allow) C:\xboxgames\minecraft for windows\content\minecraft.windows.exe (Access Denied) [File not signed?]
==================== Restore Points =========================
ATTENTION: System Restore is disabled (Total:238.37 GB) (Free:46.69 GB) (20%)
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (12/30/2025 09:28:10 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x33e8
Čas spuštění chybující aplikace: 0x01dc79663b9e788a
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: 20981919-17a3-4409-aa20-2240c5f44726
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/30/2025 02:06:07 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x18d0
Čas spuštění chybující aplikace: 0x01dc79287a3fe5ae
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: 4eb10140-3bb6-4084-be41-0b2276ba9716
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/30/2025 01:57:21 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: ScreenConnect.WindowsFileManager.exe, verze: 24.4.4.9118, časové razítko: 0xc9d5f63e
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.19041.6280, časové razítko: 0x56511854
Kód výjimky: 0xc0020001
Posun chyby: 0x0000000000025369
ID chybujícího procesu: 0x36b0
Čas spuštění chybující aplikace: 0x01dc7927314934fc
Cesta k chybující aplikaci: C:\Program Files (x86)\Windows MV\ScreenConnect.WindowsFileManager.exe
Cesta k chybujícímu modulu: C:\Windows\System32\KERNELBASE.dll
ID zprávy: 7b84ebed-ff7b-4f23-a424-ab0879b3e706
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/29/2025 04:23:53 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x2bd0
Čas spuštění chybující aplikace: 0x01dc78d723d901fa
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: cd180515-a20a-40e0-b7e2-ad3d074a0a70
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/29/2025 08:18:49 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x3f78
Čas spuštění chybující aplikace: 0x01dc7893609f1278
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: dbf79009-db6c-4c5b-9ea8-c903517e2303
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/28/2025 04:09:18 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0xa4c
Čas spuštění chybující aplikace: 0x01dc780befe548f4
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: 2ce96442-cae8-4fe8-8b3e-66ea2edf87a9
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/28/2025 08:26:39 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x24d8
Čas spuštění chybující aplikace: 0x01dc77cb4eae4fd1
Cesta k chybující aplikaci: C:\Windows\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\Windows\system32\clipesu.exe
ID zprávy: a17815c1-2d31-4cc8-ae52-a346a10cf71c
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/27/2025 08:31:07 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: AddInProcess32.exe, verze: 4.8.9037.0, časové razítko: 0x68472eac
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.19041.6456, časové razítko: 0xbf208242
Kód výjimky: 0xc000041d
Posun chyby: 0x0013b702
ID chybujícího procesu: 0x3ebc
Čas spuštění chybující aplikace: 0x01dc76fe238fcb29
Cesta k chybující aplikaci: C:\Windows\Microsoft.NET\Framework\v4.0.30319\AddInProcess32.exe
Cesta k chybujícímu modulu: C:\Windows\System32\KERNELBASE.dll
ID zprávy: 0fa618c2-772a-42a5-a7ee-bf96575ba70a
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
System errors:
=============
Error: (12/30/2025 09:22:57 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:ASUSTeK COMPUTER INC.;FirmwareManufacturer:American Megatrends Inc.;FirmwareVersion:1002;OEMModelNumber:System Product Name;OEMModelBaseBoard:PRIME X399-A;OEMModelSystemFamily:To be filled by O.E.M.;OEMManufacturerName:System manufacturer;OEMModelSKU:SKU;OSArchitecture:amd64;
BucketId: 5dac1deb4530c707339bd863477fc6a685587bcc6606ae2d4931a702a12770e6
BucketConfidenceLevel:
UpdateType: 0
HResult: 0
Error: (12/30/2025 09:20:02 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Aktualizace Google (gupdate) neuspěla při spuštění v důsledku následující chyby:
Systém nemůže nalézt uvedený soubor.
Error: (12/30/2025 09:18:30 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80246007): Aktualizace bezpečnostních informací pro Microsoft Defender Antivirus – KB2267602 (verze 1.443.393.0) – Aktuální kanál (široká distribuce).
Error: (12/30/2025 09:18:29 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80246007): Aktualizace bezpečnostních informací pro Microsoft Defender Antivirus – KB2267602 (verze 1.443.393.0) – Aktuální kanál (široká distribuce).
Error: (12/30/2025 09:18:28 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80246007): Aktualizace bezpečnostních informací pro Microsoft Defender Antivirus – KB2267602 (verze 1.443.393.0) – Aktuální kanál (široká distribuce).
Error: (12/30/2025 09:18:27 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80246007): Aktualizace bezpečnostních informací pro Microsoft Defender Antivirus – KB2267602 (verze 1.443.393.0) – Aktuální kanál (široká distribuce).
Error: (12/30/2025 09:18:26 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80246007): Aktualizace bezpečnostních informací pro Microsoft Defender Antivirus – KB2267602 (verze 1.443.393.0) – Aktuální kanál (široká distribuce).
Error: (12/30/2025 09:17:46 AM) (Source: Application Popup) (EventID: 56) (User: )
Description: ACPI15
Windows Defender:
================
Date: 2025-12-30 10:05:18
Description:
Antivirová ochrana v programu Microsoft Defender śсǻη ħдѕ ъэεή šтőρρéδ ьëƒόѓë ςσмрļєťíőň.%л %τŞčąη ĮÐ:%в{6F88C2B0-731B-4527-B61D-57CEB013B91E}%й %ŧŚčâń Τỳφε:%вAntimalwarový program%ń %ŧŜċăņ Ρдѓámĕťëяš:%ъÚplné prohledávání%π %ţÚѕêґ:%ьDESKTOP-ZS\Zbyse%ń %тŠŧõρ Ŕéāşôň:%ьǺъŏřťєď ъŷ ŧħέ ¢łîęñт
Date: 2025-12-30 10:05:18
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Trojan:Win64/DLLHijack.ARR!MTB
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Users\Zbyse\SystemRootDoc\tbb.dll
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Uživatel
Uživatel: DESKTOP-ZS\Zbyse
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.443.399.0, AS: 1.443.399.0, NIS: 1.443.399.0
Verze modulu: AM: 1.1.25110.1, NIS: 1.1.25110.1
Date: 2025-12-30 10:05:18
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Trojan:Win32/Malgent!AMTB
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Supgam\Total Commander\10.51 Portable\App\totalcmd\tcrun.exe
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Uživatel
Uživatel: DESKTOP-ZS\Zbyse
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.443.399.0, AS: 1.443.399.0, NIS: 1.443.399.0
Verze modulu: AM: 1.1.25110.1, NIS: 1.1.25110.1
Date: 2025-12-30 10:05:18
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Trojan:Win32/Wacatac.A!rfn
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\FRST\Quarantine\D\GAMES\SOMA\steam_api64.dll.xBAD
Původ detekce: Místní počítač
Typ detekce: FastPath
Zdroj detekce: Uživatel
Uživatel: DESKTOP-ZS\Zbyse
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.443.399.0, AS: 1.443.399.0, NIS: 1.443.399.0
Verze modulu: AM: 1.1.25110.1, NIS: 1.1.25110.1
Date: 2025-12-30 10:05:18
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Trojan:VBS/Valyria.RP!MTB
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_C:\Windows\System32\InteL\Microsoft\xx.vbs
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Uživatel
Uživatel: DESKTOP-ZS\Zbyse
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.443.399.0, AS: 1.443.399.0, NIS: 1.443.399.0
Verze modulu: AM: 1.1.25110.1, NIS: 1.1.25110.1
Event[0]:
Date: 2025-12-30 02:01:23
Description:
Funkce Ochrana v reálném čase u prohledávání Antivirová ochrana v programu Microsoft Defender zjistila chybu a došlo k jejímu selhání.
Funkce: Systém kontroly sítě
Kód chyby: 0x80004005
Popis chyby: Nespecifikovaná chyba
Důvod: V systému chybí aktualizace potřebné ke spuštění systému kontroly sítě. Nainstalujte potřebné aktualizace a restartujte zařízení.
Date: 2025-12-30 01:57:58
Description:
Funkce Ochrana v reálném čase u prohledávání Antivirová ochrana v programu Microsoft Defender zjistila chybu a došlo k jejímu selhání.
Funkce: Systém kontroly sítě
Kód chyby: 0x80004005
Popis chyby: Nespecifikovaná chyba
Důvod: V systému chybí aktualizace potřebné ke spuštění systému kontroly sítě. Nainstalujte potřebné aktualizace a restartujte zařízení.
Date: 2025-07-11 18:18:19
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o obnovení položky z karantény.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Program:Win32/Wacapew.C!ml
Závažnost: Vysoké
Kategorie: Program měnící nastavení
Uživatel: DESKTOP-ZS\Zbyse
Kód chyby: 0x80508014
Popis chyby: Položku v karanténě nelze obnovit.
Verze bezpečnostních informací: AV: 1.431.551.0, AS: 1.431.551.0
Verze modulu: 1.1.25050.6
Date: 2025-07-11 18:18:06
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o obnovení položky z karantény.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Program:Win32/Wacapew.C!ml
Závažnost: Vysoké
Kategorie: Program měnící nastavení
Uživatel: DESKTOP-ZS\Zbyse
Kód chyby: 0x80508014
Popis chyby: Položku v karanténě nelze obnovit.
Verze bezpečnostních informací: AV: 1.431.551.0, AS: 1.431.551.0
Verze modulu: 1.1.25050.6
Date: 2025-07-11 18:17:52
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o obnovení položky z karantény.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: HackTool:Win32/Keygen!rfn
Závažnost: Vysoké
Kategorie: Nástroj
Uživatel: DESKTOP-ZS\Zbyse
Kód chyby: 0x80508014
Popis chyby: Položku v karanténě nelze obnovit.
Verze bezpečnostních informací: AV: 1.431.551.0, AS: 1.431.551.0
Verze modulu: 1.1.25050.6
CodeIntegrity:
===============
Date: 2025-12-30 10:16:39
Description:
Code Integrity determined that a process (\Device\HarddiskVolume8\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume8\Program Files\Bonjour\mdnsNSP.dll that did not meet the Windows signing level requirements.
Date: 2025-12-30 09:49:11
Description:
Code Integrity determined that a process (\Device\HarddiskVolume8\ProgramData\Microsoft\Windows Defender\Platform\4.18.25110.6-0\MpDefenderCoreService.exe) attempted to load \Device\HarddiskVolume8\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends Inc. 1002 02/15/2019
Motherboard: ASUSTeK COMPUTER INC. PRIME X399-A
Processor: AMD Ryzen Threadripper 1920X 12-Core Processor
Percentage of memory in use: 27%
Total physical RAM: 32642.79 MB
Available physical RAM: 23769.96 MB
Total Virtual: 37506.79 MB
Available Virtual: 28946.68 MB
==================== Drives ================================
Drive c: (System Disc) (Fixed) (Total:238.37 GB) (Free:46.69 GB) (Model: SanDisk SD8SN8U-256G-1006) NTFS
Drive d: (Dokumenty) (Fixed) (Total:3726.01 GB) (Free:1736.13 GB) (Model: WDC WD40EFPX-68C6CN0) NTFS
Drive e: (Download) (Fixed) (Total:3726.01 GB) (Free:1265.83 GB) (Model: ST4000NE001-2MA101) NTFS
Drive f: (FILMY) (Fixed) (Total:7452.02 GB) (Free:2295.94 GB) (Model: ST8000DM004-2CX188) NTFS
\\?\Volume{371553a5-3062-4984-b44c-57096001beaf}\ (WINTOHDD) (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Protective MBR) (Size: 3726 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 1 (Protective MBR) (Size: 3726 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 2 (Protective MBR) (Size: 7452 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 3 (Protective MBR) (Size: 238.5 GB) (Disk ID: 00000000)
Partition: GPT.
==================== End of Addition.txt =======================