Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

kontrola pre istotu

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
5manager5
Návštěvník
Návštěvník
Příspěvky: 287
Registrován: 10 led 2009 21:21

kontrola pre istotu

#1 Příspěvek od 5manager5 »

poprosím a dakujem

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 28-03-2026
Ran by igorv (administrator) on SAUL (HP HP ProBook 455 15.6 inch G10 Notebook PC) (01-04-2026 08:48:55)
Running from C:\Users\igorv\Downloads\FRST64.exe
Loaded Profiles: igorv
Platform: Microsoft Windows 11 Home Version 25H2 26200.8116 (X64) Language: Slovenčina (Slovensko)
Default browser: Edge
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe
(0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe
(C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe ->) (HP Inc. -> Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\HPTouchpointManagerTray.exe
(C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Providers\Hewlett-Packard\CoreProvider\CoreProvider.exe
(C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Providers\Hewlett-Packard\Software Package Manager\SoftwarePackageManager.exe
(C:\Program Files\Google\Drive File Stream\123.0.1.0\GoogleDriveFS.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive File Stream\123.0.1.0\crashpad_handler.exe
(C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe ->) (0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\cncmd.exe
(DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\NetworkCap.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\BridgeCommunication.exe
(DriverStore\FileRepository\snapo64.inf_amd64_fd4aaa60454ea9da\SNAPOSS64.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Sonitude Corporation) C:\Windows\System32\DriverStore\FileRepository\snapo64.inf_amd64_fd4aaa60454ea9da\SNAPOS64.exe
(DriverStore\FileRepository\u0416624.inf_amd64_1eae707b82df6d48\B416495\atiesrxx.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0416624.inf_amd64_1eae707b82df6d48\B416495\atieclxx.exe
(ED346674-0FA1-4272-85CE-3187C9C86E26 -> DesktopExtension) C:\Program Files\WindowsApps\AD2F1837.myHP_54.52610.3208.0_x64__v10z8vjag6ke6\win32\DesktopExtension.exe
(ED346674-0FA1-4272-85CE-3187C9C86E26 -> HP Inc) C:\Program Files\WindowsApps\AD2F1837.myHP_54.52610.3208.0_x64__v10z8vjag6ke6\win32\HP.ContextAware.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <24>
(explorer.exe ->) (Google LLC -> Google LLC.) C:\Program Files\Google\Drive File Stream\123.0.1.0\GoogleDriveFS.exe <2>
(explorer.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMToastNotification.exe
(FMService64.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMAudioMonitor.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(services.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0416624.inf_amd64_1eae707b82df6d48\B416495\atiesrxx.exe
(services.exe ->) (Bromium UK Limited -> HP) C:\Program Files\HP\Security Update Service\4.4.29.1443\SecurityUpdateService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Tools\WatchDogService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\Poly\Lens Control Service\LensService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_b532962506597d3d\x64\TouchpointAnalyticsClientService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\AppHelperCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\DiagsCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\NetworkCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\SysInfoCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_1445f3380129b4b6\HotKeyServiceUWP.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_1445f3380129b4b6\HPAudioAnalytics.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_1445f3380129b4b6\LanWlanWwanSwitchingServiceUWP.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpsvcsscancomp.inf_amd64_af1aa699aae8adfb\x64\hpsvcsscan.exe
(services.exe ->) (HP Inc. -> HP) C:\Program Files (x86)\HP\Shared\hpqwmiex.exe
(services.exe ->) (MEDIATEK INC. -> MediaTek Inc.) C:\Windows\System32\mtkbtsvc.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Windows (R) Win 7 DDK provider) C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe <2>
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\DriverStore\FileRepository\amdfendr.inf_amd64_5f2cd636dbc40dd2\amdfendrsr.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Sonitude Corporation) C:\Windows\System32\DriverStore\FileRepository\snapo64.inf_amd64_fd4aaa60454ea9da\SNAPOSS64.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\NisSrv.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_464be4340fa51d6a\RtkAudUService64.exe <3>
(sihost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2511.3002.0_x64__8wekyb3d8bbwe\MicrosoftSecurityApp\MicrosoftSecurityApp.exe
(svchost.exe ->) (ED346674-0FA1-4272-85CE-3187C9C86E26 -> ) C:\Program Files\WindowsApps\AD2F1837.myHP_54.52610.3208.0_x64__v10z8vjag6ke6\HP.HPX.exe
(svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Client Security Manager\HP.ClientSecurityManager.exe
(svchost.exe ->) (HP Inc. -> HP) C:\Program Files (x86)\HP\HP ICS\ICS.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_464be4340fa51d6a\RtkAudUService64.exe [3245608 2025-12-08] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\123.0.1.0\GoogleDriveFS.exe [77137048 2026-03-30] (Google LLC -> Google LLC.)
HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\123.0.1.0\GoogleDriveFS.exe [77137048 2026-03-30] (Google LLC -> Google LLC.)
HKU\S-1-5-21-2384847340-952867437-1279697988-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\123.0.1.0\GoogleDriveFS.exe [77137048 2026-03-30] (Google LLC -> Google LLC.)
HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\123.0.1.0\GoogleDriveFS.exe [77137048 2026-03-30] (Google LLC -> Google LLC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [3101848 2026-03-18] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\146.0.7680.165\Installer\chrmstp.exe [7359128 2026-03-25] (Google LLC -> Google LLC)
Startup: C:\Users\igorv\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Odoslanie do aplikácie OneNote.lnk [2026-02-22]
ShortcutTarget: Odoslanie do aplikácie OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\LensDesktop1xUninstaller.lnk [2025-10-28]
ShortcutTarget: LensDesktop1xUninstaller.lnk -> C:\Program Files\Poly\Poly Lens Desktop\LensDesktop1xUninstaller\LensDesktop1xUninstaller.exe (HP Inc. -> HP Inc.)

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {463206D8-8236-47D7-9D90-DD678745B403} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem148.0.7730.0{34D9D644-B19A-4B39-AD46-E8C68CF00E1D} => C:\Program Files (x86)\Google\GoogleUpdater\148.0.7730.0\updater.exe [8459416 2026-03-12] (Google LLC -> Google LLC)
Task: {63F9F686-0E6F-47E0-8341-5D149B3E46F5} - System32\Tasks\Hewlett-Packard\HP Diagnostics\ABO => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://ABO
Task: {AC70CF3B-3AC0-475D-B90F-22DC329AD2BB} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BatteryStatusError => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BatteryStatusError
Task: {E0BE6772-64CD-4EAC-A32F-3650AC09FEA9} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BatteryStatusTest => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BatteryStatusTest
Task: {2B064F5A-B560-440C-9C66-C1C4B53287EE} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BCF => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BCF
Task: {55FAE072-517B-4643-BA26-1D1999823548} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BHM1 => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BHM1
Task: {67ECA950-491C-4B84-9953-2BA7326C4102} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BHM2 => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BHM2
Task: {6A03296A-2E0F-494B-BE39-9F2938217981} - System32\Tasks\Hewlett-Packard\HP Diagnostics\LaunchUI => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://LaunchUI
Task: {834780AF-6E13-41CF-B49D-5F8ECF7D6563} - System32\Tasks\Hewlett-Packard\HP Diagnostics\ShowUI => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags:
Task: {A4AA8AD6-B839-439E-B20B-0AA689337C9D} - System32\Tasks\Hewlett-Packard\HP Diagnostics\SmartCheckError => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://SmartCheckError
Task: {59A3FDEA-F9F2-4E14-9182-597D9A9B920D} - System32\Tasks\Hewlett-Packard\HP Diagnostics\SmartCheckTest => C:\windows\system32\cmd.exe [339968 2026-03-26] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://SmartCheckTest
Task: {4B815F81-D760-4C6F-975D-FFCC98D9CA98} - System32\Tasks\Hewlett-Packard\HP Diagnostics\Uninstall-BatteryStatusTest => c:\Windows\System32\schtasks.exe [253952 2025-10-01] (Microsoft Windows -> Microsoft Corporation) -> /Change /Disable /tn "\Hewlett-Packard\HP Diagnostics\BatteryStatusTest"
Task: {2485C39A-E871-4B62-87F9-F7E02C2A2B7B} - System32\Tasks\Hewlett-Packard\HP Diagnostics\Uninstall-SmartCheckTest => c:\Windows\System32\schtasks.exe [253952 2025-10-01] (Microsoft Windows -> Microsoft Corporation) -> /Change /Disable /tn "\Hewlett-Packard\HP Diagnostics\SmartCheckTest"
Task: {AEBCEBED-5604-41E5-8AE1-BFF391752753} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Assistant Update Notice => C:\Program Files (x86)\HP\HP Support Framework\Resources\BingPopup\BingPopup.exe [1015880 2025-12-15] (HP Inc. -> HP Inc.) -> C:\Program Files (x86)\HP\HP Support Framework\\/show
Task: {48A211BF-3686-480D-8C89-571A6BCD2308} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [480264 2025-12-15] (HP Inc. -> HP Inc.)
Task: {BFC52B0A-81AF-4D96-8F05-E912F68A0227} - System32\Tasks\HP\Consent Manager Launcher => C:\windows\system32\sc.exe [102400 2025-07-10] (Microsoft Windows -> Microsoft Corporation) -> start hptouchpointanalyticsservice
Task: {DA847129-1FBC-49A8-95F1-9AB56F0DADCB} - System32\Tasks\HP\HP ICS\ICS => C:\Program Files (x86)\HP\HP ICS\ICS.exe [78979088 2024-07-31] (HP Inc. -> HP)
Task: {9C0BE82C-E4B0-46CD-835A-647A94AD9F3A} - System32\Tasks\HP\HP Wolf Security\Launch Console => C:\Program Files\HP\HP Client Security Manager\HP.ClientSecurityManager.exe [263752 2025-10-22] (HP Inc. -> HP Inc.)
Task: {67F09B4E-DBF1-4A32-A14B-10A83D743C8D} - System32\Tasks\HPInsightsUpdater => C:\Program Files (x86)\HP\HP Touchpoint Analytics Client Installer\TAInstaller.exe [3170056 2026-03-19] (HP Inc. -> )
Task: {1AC9AC68-A9ED-474A-9EE3-DB35AD5C4615} - System32\Tasks\HPOneAgentRepairTask => C:\ProgramData\Package Cache\{D3913CAA-0A30-494D-AE06-F79A68997FAB}\HPOneAgent.exe [1169760 2025-10-29] (HP Inc. -> HP Inc; HP Development Company, L.P.)
Task: {4E96B2D1-F910-461A-9CBD-3F1A75D4CA13} - System32\Tasks\HPSupportTool => C:\ProgramData\HP\Telemetry\collectors\hp-telemetry-iolo-collector_ver_4.675.11370\HPSupportAssistant1.exe (No File)
Task: {09266611-4E1B-407E-B37A-49E5E4A3756C} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16404784 2026-03-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {C811E1E0-FE52-4414-AC5E-83A408D28648} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28533568 2026-03-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {CEF74F71-41D9-4CC6-9805-4C38B1AB8EB7} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe [73560 2026-03-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {34C4AFD3-52F5-4ABA-BAE4-062CD8141D46} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28533568 2026-03-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {1E9C9E61-39EA-4DDF-9D1A-F9F9D64812E0} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [426776 2026-03-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {6F2F3465-554C-48D4-BE27-2454E728665E} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [426776 2026-03-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {30BA9ABB-68A1-450A-876E-AFBC04D38FAC} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [1349920 2026-03-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {45BB6910-11EB-47F8-99A2-8E4B9060240B} - System32\Tasks\Microsoft\Office\Office Startup Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16404784 2026-03-28] (Microsoft Corporation -> Microsoft Corporation)
Task: {7F6DBB90-924B-48D2-98A4-38A2683806F8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\MpCmdRun.exe [1786528 2026-03-26] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {5A6F3D01-843B-4E31-8C51-2C63FC2AC7F2} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\MpCmdRun.exe [1786528 2026-03-26] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {080CA3D9-5261-4BCE-B281-E12A8E62860C} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\MpCmdRun.exe [1786528 2026-03-26] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {5FE16F27-71DE-4569-889C-7670BF6077E2} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\MpCmdRun.exe [1786528 2026-03-26] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C3E4451E-7955-479C-AB09-1F3B63639060} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1030864 2024-10-14] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.31.248 1.1.1.1
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}: [DhcpNameServer] 192.168.31.248 1.1.1.1
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}: [DhcpDomain] localdomain
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}\4505D2C496E6B6F554874756E6465627: [DhcpNameServer] 192.168.0.254
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}\859616F6D696F553638383F55374: [DhcpNameServer] 192.168.31.248 1.1.1.1
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}\859616F6D696F553638383F55374: [DhcpDomain] localdomain
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}\859616F6D696F553638383F5548545: [DhcpNameServer] 192.168.31.234
Tcpip\..\Interfaces\{fd5113a5-1b8e-46a9-95ec-2869bb75496f}: [NameServer] 1.1.1.1,8.8.8.8
Tcpip\..\Interfaces\{fd5113a5-1b8e-46a9-95ec-2869bb75496f}: [DhcpNameServer] 192.168.31.248 1.1.1.1
Tcpip\..\Interfaces\{fd5113a5-1b8e-46a9-95ec-2869bb75496f}: [DhcpDomain] localdomain

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2026-01-21] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-12-05] (Microsoft Corporation -> Microsoft Corporation)

Edge:
=======
Edge DefaultProfile: Profile 1
Edge Profile: C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Profile 1 [2026-03-28]
Edge Extension: (Dokumenty Google v režime offline) - C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-02-22]
Edge Extension: (Edge relevant text changes) - C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2025-07-26]

Chrome:
=======
CHR Profile: C:\Users\igorv\AppData\Local\Google\Chrome\User Data\Default [2026-04-01]
CHR HomePage: Default -> hxxp://www.google.com/
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\igorv\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-03-18]
CHR Extension: (Spúšťač aplikácie pre Disk (od Googlu)) - C:\Users\igorv\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2025-08-31]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\igorv\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2025-08-31]
CHR HKU\S-1-5-21-2384847340-952867437-1279697988-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]

Opera:
=======
OPR DefaultProfile: Default

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 brlapi; C:\WINDOWS\brltty\bin\brltty.exe [1067072 2026-03-26] (Microsoft 3rd Party Application Component -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13233464 2026-03-22] (Microsoft Corporation -> Microsoft Corporation)
R2 FMAPOService; C:\WINDOWS\System32\FMService64.exe [1107496 2025-10-08] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia)
R2 GameInputRedistService; C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe [385960 2026-03-09] (Microsoft Corporation -> Windows (R) Win 7 DDK provider)
R2 HotKeyServiceUWP; C:\WINDOWS\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_1445f3380129b4b6\HotKeyServiceUWP.exe [1516200 2025-12-17] (HP Inc. -> HP Inc.)
R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [475680 2023-04-14] (HP Inc. -> HP Inc.)
S2 hp-one-agent-service; C:\Program Files\HP\HP One Agent\hp-one-agent-service.exe [2445408 2025-09-11] (HP Inc. -> HP Inc; HP Development Company, L.P.)
R2 HPAppHelperCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\AppHelperCap.exe [909464 2025-09-30] (HP Inc. -> HP Inc.)
R2 HPAudioAnalytics; C:\WINDOWS\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_1445f3380129b4b6\HPAudioAnalytics.exe [503976 2025-12-17] (HP Inc. -> HP Inc.)
R2 HPDiagsCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\DiagsCap.exe [907936 2025-09-30] (HP Inc. -> HP Inc.)
R2 hpLHAgent; C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe [7664328 2026-03-20] (HP Inc. -> HP Inc.)
R2 hpLHWatchdog; C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Tools\WatchDogService.exe [1526984 2026-03-20] (HP Inc. -> HP Inc.)
R2 HPNetworkCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\NetworkCap.exe [903840 2025-09-30] (HP Inc. -> HP Inc.)
R3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1149480 2018-06-07] (HP Inc. -> HP)
R2 hpsvcsscan; C:\WINDOWS\System32\DriverStore\FileRepository\hpsvcsscancomp.inf_amd64_af1aa699aae8adfb\x64\hpsvcsscan.exe [7124768 2025-10-07] (HP Inc. -> HP Inc.)
R2 HPSysInfoCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\SysInfoCap.exe [909464 2025-09-30] (HP Inc. -> HP Inc.)
R2 HpTouchpointAnalyticsService; C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_b532962506597d3d\x64\TouchpointAnalyticsClientService.exe [639776 2025-10-01] (HP Inc. -> HP Inc.)
R2 LanWlanWwanSwitchingServiceUWP; C:\WINDOWS\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_1445f3380129b4b6\LanWlanWwanSwitchingServiceUWP.exe [608424 2025-12-17] (HP Inc. -> HP Inc.)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\MpDefenderCoreService.exe [2088128 2026-03-26] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 MTKBTSVC; C:\WINDOWS\System32\mtkbtsvc.exe [545208 2025-10-02] (MEDIATEK INC. -> MediaTek Inc.)
R2 Poly Lens Control Service; C:\Program Files\Poly\Lens Control Service\LensService.exe [150024 2025-06-09] (HP Inc. -> HP Inc.)
S3 ProtonVPN Service; C:\Program Files\Proton\VPN\v4.3.12\ProtonVPNService.exe [477424 2026-02-02] (Proton AG -> ProtonVPN)
S3 ProtonVPN WireGuard; C:\Program Files\Proton\VPN\v4.3.12\ProtonVPN.WireGuardService.exe [476912 2026-02-02] (Proton AG -> ProtonVPN)
R2 SecurityUpdateService; C:\Program Files\HP\Security Update Service\4.4.29.1443\SecurityUpdateService.exe [5080392 2026-01-20] (Bromium UK Limited -> HP)
R2 SNAPOService; C:\WINDOWS\System32\DriverStore\FileRepository\snapo64.inf_amd64_fd4aaa60454ea9da\SNAPOSS64.exe [369408 2025-07-10] (Microsoft Windows Hardware Compatibility Publisher -> Sonitude Corporation)
S2 WbfPolicyService110; C:\WINDOWS\System32\DriverStore\FileRepository\synawudfbiousbuwpsvc.inf_amd64_b12a1111c8064a8a\WbfPolicyService110.exe [715784 2025-05-22] (Synaptics Incorporated -> Synaptics Incorporated.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\NisSrv.exe [4451664 2026-03-26] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26020.6-0\MsMpEng.exe [290704 2026-03-26] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AIDA64Driver; C:\Program Files\FinalWire\AIDA64 Extreme\kerneld-x64.sys [81296 2025-12-09] (FinalWire Kft. -> FinalWire Ltd.)
R3 amdfendrmgr; C:\WINDOWS\System32\DriverStore\FileRepository\amdfendr.inf_amd64_5f2cd636dbc40dd2\amdfendrmgr.sys [25672 2024-04-24] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R3 amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0416624.inf_amd64_1eae707b82df6d48\B416495\amdkmdag.sys [106595800 2025-06-18] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
R3 amdwirelessbutton; C:\WINDOWS\System32\drivers\amdwirelessbutton.sys [49448 2025-09-10] (Advanced Micro Devices -> Advanced Micro Devices, Inc)
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [110592 2024-12-12] (Microsoft Corporation) [File not signed]
R0 fse; C:\WINDOWS\System32\drivers\fse.sys [226688 2025-12-04] (Microsoft Windows -> Microsoft Corporation)
R2 googledrivefs31931; C:\Program Files\Google\Drive File Stream\Drivers\31931\googledrivefs31931.sys [386256 2025-05-12] (Microsoft Windows Hardware Compatibility Publisher -> Google, Inc.)
R3 HPCustomCapDriver; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_1421dec2010cc057\x64\hpcustomcapdriver.sys [18984 2024-05-07] (Microsoft Windows Hardware Compatibility Publisher -> HP Inc.)
R0 HpPair; C:\WINDOWS\System32\drivers\HpPair.sys [69912 2025-06-09] (HP Inc. -> HP Inc.)
R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [82352 2026-02-10] (Microsoft Windows -> Microsoft Corporation)
S2 l1vhlwf; C:\WINDOWS\System32\drivers\l1vhlwf.sys [144872 2026-03-26] (Microsoft Windows -> Microsoft Corporation)
R3 mtkbtacx; C:\WINDOWS\System32\DriverStore\FileRepository\mtkbtacx.inf_amd64_83b672d8fe91251d\mtkbtacx.sys [289184 2025-10-02] (MEDIATEK INC. -> MediaTek Inc.)
R3 MTKBTFilterx64; C:\WINDOWS\System32\DriverStore\FileRepository\mtkbtfilter.inf_amd64_04e48cf0e2222a28\mtkbtfilterx.sys [611264 2025-10-02] (MEDIATEK INC. -> MediaTek Inc.)
R3 mtkwlex; C:\WINDOWS\System32\DriverStore\FileRepository\mtkwl6ex.inf_amd64_731ab61f1805181e\mtkwl6ex.sys [2115608 2026-02-05] (MEDIATEK INC. -> MediaTek Inc.)
S3 ProtonVPNCallout; C:\Program Files\Proton\VPN\v4.3.12\Resources\ProtonVPN.CalloutDriver.sys [41416 2025-12-05] (Proton AG -> Proton AG)
R3 rt68cx21; C:\WINDOWS\System32\DriverStore\FileRepository\rt68cx21x64.inf_amd64_9aa8fb2bbee4c5e5\rt68cx21x64.sys [921128 2026-01-15] (Realtek Semiconductor Corp. -> Realtek)
S3 vmbusproxy; C:\WINDOWS\system32\drivers\vmbusproxy.sys [98304 2025-06-14] (Microsoft Windows -> Microsoft Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [21888 2026-03-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [641416 2026-03-26] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [103816 2026-03-26] (Microsoft Windows -> Microsoft Corporation)
S3 wintun; C:\WINDOWS\System32\drivers\wintun.sys [29592 2026-02-15] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
S3 WireGuard; C:\WINDOWS\System32\drivers\wireguard.sys [489368 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

Error Reading file: "C:\ProgramData\Desktop\desktop.ini"
2026-04-01 08:48 - 2026-04-01 08:49 - 000031066 _____ C:\Users\igorv\Downloads\FRST.txt
2026-04-01 08:48 - 2026-04-01 08:49 - 000000000 ____D C:\FRST
2026-04-01 08:48 - 2026-04-01 08:48 - 002445824 _____ (Farbar) C:\Users\igorv\Downloads\FRST64.exe
2026-03-29 18:27 - 2026-03-31 18:02 - 000000000 ____D C:\WINDOWS\CbsTemp
2026-03-28 12:02 - 2026-03-28 12:02 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2026-03-27 09:34 - 2026-03-27 09:34 - 000000000 ____D C:\WINDOWS\brltty
2026-03-26 23:54 - 2026-03-26 23:54 - 000036843 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2026-03-26 23:54 - 2026-03-26 23:54 - 000036843 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2026-03-26 23:54 - 2026-03-26 23:54 - 000004575 _____ C:\WINDOWS\system32\ResPriUHMImageList
2026-03-26 23:54 - 2026-03-26 23:54 - 000004575 _____ C:\WINDOWS\system32\ResPriLMImageList
2026-03-26 23:54 - 2026-03-26 23:54 - 000004575 _____ C:\WINDOWS\system32\ResPriImageList
2026-03-26 23:54 - 2026-03-26 23:54 - 000004575 _____ C:\WINDOWS\system32\ResPriHMImageList
2026-03-18 18:41 - 2026-03-18 18:41 - 000000000 ____D C:\Program Files\Microsoft GameInput

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-04-01 08:44 - 2024-05-18 10:19 - 000000000 ___SD C:\Users\igorv\AppData\Roaming\Microsoft\Credentials
2026-04-01 08:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-04-01 08:43 - 2024-04-01 09:26 - 000000000 ___HD C:\Program Files\WindowsApps
2026-04-01 08:43 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-04-01 08:43 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-03-31 10:54 - 2024-05-23 22:48 - 000000000 ____D C:\ProgramData\Package Cache
2026-03-30 19:48 - 2024-05-21 08:47 - 000002181 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk
2026-03-29 18:20 - 2024-05-18 10:41 - 000000000 ____D C:\Users\igorv\AppData\Local\D3DSCache
2026-03-28 16:25 - 2024-12-12 17:55 - 000791266 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-03-28 16:25 - 2024-04-01 09:24 - 000000000 ____D C:\WINDOWS\INF
2026-03-28 16:21 - 2024-05-21 08:56 - 000000000 ____D C:\3
2026-03-28 16:19 - 2025-09-16 22:04 - 000010512 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2026-03-28 16:19 - 2024-12-12 17:56 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-03-28 16:19 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ServiceState
2026-03-28 16:19 - 2024-04-01 09:21 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2026-03-28 16:19 - 2023-09-05 13:19 - 000012288 ___SH C:\DumpStack.log.tmp
2026-03-28 12:01 - 2024-01-26 15:41 - 000000000 ____D C:\Program Files\Microsoft Office
2026-03-28 10:13 - 2023-09-05 13:19 - 000002452 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-03-27 09:37 - 2024-12-12 17:54 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK
2026-03-27 09:36 - 2024-12-12 17:54 - 000630808 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2026-03-27 09:34 - 2025-07-10 12:47 - 000000000 ____D C:\WINDOWS\system32\ruxim
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\qps-plocm
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\qps-ploc
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\PerceptionSimulation
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemResources
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\te-IN
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ta-IN
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\setup
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\qps-plocm
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\qps-ploc
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\or-IN
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mt-MT
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ml-IN
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mk-MK
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mi-NZ
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kok-IN
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\hy-AM
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ga-IE
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\et-EE
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\es-MX
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\as-IN
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\Provisioning
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\DiagTrack
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2026-03-27 09:34 - 2024-04-01 09:26 - 000000000 ____D C:\Program Files\Common Files\System
2026-03-27 09:34 - 2024-04-01 09:21 - 000000000 ____D C:\WINDOWS\servicing
2026-03-27 09:19 - 2024-04-01 09:26 - 000282624 _____ (Microsoft Corporation) C:\WINDOWS\system32\msclmd.dll
2026-03-27 09:19 - 2024-04-01 09:26 - 000235520 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\msclmd.dll
2026-03-26 23:53 - 2024-12-12 17:55 - 003268096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2026-03-26 11:40 - 2023-09-05 13:19 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2026-03-25 20:35 - 2025-08-31 10:58 - 000002267 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2026-03-22 11:29 - 2024-05-23 15:14 - 000000000 ____D C:\Users\igorv\AppData\Local\CrashDumps
2026-03-21 21:56 - 2026-02-28 13:38 - 000453064 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_d.dll.0
2026-03-21 21:56 - 2026-02-28 13:38 - 000453064 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_d.dll
2026-03-21 21:56 - 2024-05-24 09:37 - 004590024 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2026-03-21 21:56 - 2024-05-24 09:37 - 000911816 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2026-03-21 21:56 - 2024-05-24 09:37 - 000289224 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2026-03-21 21:56 - 2024-05-24 09:37 - 000260552 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2026-03-21 21:56 - 2024-05-24 09:37 - 000166344 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2026-03-21 21:56 - 2024-05-24 09:37 - 000154056 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe
2026-03-21 21:56 - 2024-05-24 09:37 - 000084424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe
2026-03-21 13:19 - 2024-05-18 10:43 - 000000000 ____D C:\Users\igorv\AppData\Local\PlaceholderTileLogoFolder
2026-03-21 13:19 - 2024-05-18 10:19 - 000000000 ____D C:\Users\igorv\AppData\Local\Packages
2026-03-21 13:19 - 2023-09-05 13:28 - 000000000 ____D C:\ProgramData\Packages
2026-03-18 18:54 - 2024-01-26 15:44 - 000000000 ____D C:\Program Files\AMD
2026-03-18 13:04 - 2024-12-12 17:38 - 000000000 ____D C:\WINDOWS\Firmware
2026-03-18 11:58 - 2024-12-12 17:54 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2026-03-16 21:58 - 2024-05-21 13:22 - 000000000 ____D C:\SWSetup
2026-03-12 00:39 - 2024-12-12 17:39 - 000000000 ____D C:\Users\igorv
2026-03-10 22:53 - 2024-04-01 18:34 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2026-03-10 22:45 - 2025-04-19 16:23 - 000000000 ____D C:\Program Files\dotnet
2026-03-10 15:45 - 2024-05-23 10:04 - 000000000 ____D C:\Users\igorv\AppData\Roaming\Microsoft\Word
2026-03-09 23:48 - 2025-09-21 11:19 - 001154472 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\GameInputRedist.dll
2026-03-09 23:48 - 2025-09-21 11:19 - 000013736 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\SysWOW64\GameInputRedist.dll
2026-03-07 10:30 - 2024-12-12 17:56 - 000003630 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2026-03-07 10:30 - 2024-12-12 17:56 - 000003504 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore

==================== Files in the root of some directories ========

2024-06-22 21:39 - 2024-06-22 21:39 - 000000017 _____ () C:\Users\igorv\AppData\Local\resmon.resmoncfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

5manager5
Návštěvník
Návštěvník
Příspěvky: 287
Registrován: 10 led 2009 21:21

Re: kontrola pre istotu

#2 Příspěvek od 5manager5 »

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 28-03-2026
Ran by igorv (01-04-2026 08:50:55)
Running from C:\Users\igorv\Downloads
Microsoft Windows 11 Home Version 25H2 26200.8116 (X64) (2024-12-12 15:56:28)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-2384847340-952867437-1279697988-500 - Administrators - Disabled)
DefaultAccount (S-1-5-21-2384847340-952867437-1279697988-503 - Limited - Disabled)
Guest (S-1-5-21-2384847340-952867437-1279697988-501 - Limited - Disabled)
igorv (S-1-5-21-2384847340-952867437-1279697988-1001 - Administrators - Enabled) => C:\Users\igorv
WDAGUtilityAccount (S-1-5-21-2384847340-952867437-1279697988-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

AIDA64 Extreme v7.70 (HKLM-x32\...\AIDA64 Extreme_is1) (Version: 7.70 - FinalWire Ltd.)
AIDA64 Extreme v8.20 (HKLM\...\AIDA64 Extreme_is1) (Version: 8.20 - FinalWire Ltd.)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 23.19.18.03 - Advanced Micro Devices, Inc.)
Google Drive (HKLM\...\{6BBAE539-2232-434A-A4E5-9A33560C6283}) (Version: 123.0.1.0 - Google LLC)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 146.0.7680.165 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.36.51 - Google LLC) Hidden
HP Client Management Script Library (HKLM-x32\...\{5A1AECCB-E0CE-4D2C-833C-29CCEA959448}_is1) (Version: 1.7.1 - HP Development Company, L.P.)
HP Connection Optimizer (HKLM-x32\...\{6468C4A5-E47E-405F-B675-A70A70983EA6}) (Version: 2.0.20.0 - HP Inc)
HP Documentation (HKLM\...\HP_Documentation) (Version: 1.0.0.1 - HP Inc.)
HP Insights (HKLM-x32\...\{54468C63-428C-4F6D-90A1-EC46741980C0}) (Version: 5.26.35 - HP Inc.)
HP Notifications (HKLM-x32\...\{19F557DE-662A-4FEA-B635-1CACD56CC483}) (Version: 1.1.29.12 - HP)
HP One Agent (HKLM\...\{7CCB7DE7-C121-478D-B4EB-F5C186DEF5D7}) (Version: 1.2.7.1708 - HP Inc.) Hidden
HP One Agent (HKLM\...\{D3913CAA-0A30-494D-AE06-F79A68997FAB}) (Version: 1.2.007.1708 - HP Inc.)
HP Security Update Service (HKLM\...\{66FE1245-15D4-4F9E-A4A6-56A5030B46D8}) (Version: 4.4.29.1443 - HP Inc.)
HP Software Framework (HKLM-x32\...\{71E18A14-1BDB-4B58-A67F-1BCDA12462FD}) (Version: 7.1.15.1 - HP)
HP Sure Recover (HKLM\...\{E75295F5-5A70-4C3A-9D5F-E1D67F55403B}) (Version: 10.1.29.275 - HP Inc.)
HP Sure Run Module (HKLM\...\{75B0993A-9D9F-4F9F-A7F5-B0F3AC4C6FE1}) (Version: 5.0.5.85 - HP Inc.)
HP System Default Settings (HKLM-x32\...\{D530265D-C486-4A7F-8FC0-79CE82BB5F6B}) (Version: 1.5.9.1 - HP Inc.) Hidden
HP Wolf Security - Console (HKLM\...\{82ABA7EF-4F33-4A31-8E13-2AD71A3B8ACF}) (Version: 11.1.6.1024 - HP Inc.)
HP Wolf Security Application Support for Chrome 132.0.6834.111 (HKLM\...\{894CA93E-47E9-4DE6-B6D4-A3A8AFD97DBB}) (Version: 4.4.23.315 - HP Inc.) Hidden
HP Wolf Security Application Support for Chrome 132.0.6834.210 (HKLM\...\{387845A8-02D1-4A17-A609-4CDD3A25C284}) (Version: 4.4.23.324 - HP Inc.) Hidden
HP Wolf Security Application Support for Chrome 132.0.6834.211 (HKLM\...\{77F1131C-54B1-47D2-A355-F760BF314FA7}) (Version: 4.4.23.327 - HP Inc.) Hidden
HP Wolf Security Application Support for Chrome 134.0.6998.178 (HKLM\...\{1DE23EA0-7E93-4166-AADE-55B9F23B7D43}) (Version: 4.4.24.3261 - HP Inc.) Hidden
HP Wolf Security Application Support for Chrome 134.0.6998.207 (HKLM\...\{3A6B2680-2A97-4DB1-BB67-4AA89E86F18D}) (Version: 4.4.24.3274 - HP Inc.) Hidden
HP Wolf Security Application Support for Chrome 136.0.7103.178 (HKLM\...\{86764B96-8E32-485D-A337-5B546909E865}) (Version: 4.4.25.2040 - HP Inc.) Hidden
HP Wolf Security Application Support for Chrome 138.0.7204.170 (HKLM\...\{6C174EDA-F80B-4926-B659-F08E5C7BBC59}) (Version: 4.4.26.1406 - HP Inc.) Hidden
HP Wolf Security Application Support for Chrome 140.0.7339.208 (HKLM\...\{BF150435-22FF-4CC9-A0F0-5F562AC6991D}) (Version: 4.4.27.1787 - HP Inc.) Hidden
HP Wolf Security Application Support for Chrome 142.0.7444.176 (HKLM\...\{9F7980D3-0390-4AD6-9E91-92857E1140EA}) (Version: 4.4.28.1607 - HP Inc.) Hidden
HP Wolf Security Application Support for Chrome 144.0.7559.220 (HKLM\...\{35062B2B-9810-4003-8D50-22238653C538}) (Version: 4.4.29.1478 - HP Inc.) Hidden
HP Wolf Security Application Support for Chrome 144.0.7559.236 (HKLM\...\{0E4C12F2-719A-4DCE-B789-DCC4F30689E6}) (Version: 4.4.29.1485 - HP Inc.) Hidden
ICS (HKLM-x32\...\{5CD25FCD-D218-46D0-B405-E5A488969BDF}) (Version: 3.1.18.25 - HP Inc.)
Microsoft .NET Host - 8.0.25 (x64) (HKLM\...\{55218133-14C8-4372-A748-614DE61D6AAA}) (Version: 64.100.48707 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.25 (x64) (HKLM\...\{D0E1D031-D6BB-43A5-BD42-175C0C4EE245}) (Version: 64.100.48707 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.25 (x64) (HKLM\...\{99B0C384-9362-4D4E-8DAF-23CA44E306E8}) (Version: 64.100.48707 - Microsoft Corporation) Hidden
Microsoft 365 - sk-sk (HKLM\...\O365HomePremRetail - sk-sk) (Version: 16.0.19822.20114 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 146.0.3856.84 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 146.0.3856.84 - Microsoft Corporation) Hidden
Microsoft GameInput (HKLM\...\{A9E31119-18D8-4BF7-8B63-3CFE78CA0ABD}) (Version: 3.3.163.0 - Microsoft Corporation)
Microsoft OneNote - sk-sk (HKLM\...\OneNoteFreeRetail - sk-sk) (Version: 16.0.19822.20114 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.44.35211 (HKLM-x32\...\{0b5169e3-39da-4313-808e-1f9c0407f3bf}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.50.35719 (HKLM\...\{AECD4ED0-8A3B-41E9-92D1-6BEE0374CCAF}) (Version: 14.50.35719 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.50.35719 (HKLM\...\{61B44572-8722-4DAF-8ACF-8E742D30BCC5}) (Version: 14.50.35719 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.44.35211 (HKLM-x32\...\{C18FB403-1E88-43C8-AD8A-CED50F23DE8B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.44.35211 (HKLM-x32\...\{922480B5-CAEB-4B1B-AAA4-9716EFDCE26B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ v14 Redistributable (x64) - 14.50.35719 (HKLM-x32\...\{91ee571b-0e8a-4c65-9eaf-2e2f5fc60c00}) (Version: 14.50.35719.0 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.25 (x64) (HKLM\...\{C5343D9A-9640-4351-90D2-F6CF157C208E}) (Version: 64.100.48707 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.25 (x64) (HKLM-x32\...\{64c75e04-ef03-4544-b153-24860eac8d23}) (Version: 8.0.25.35812 - Microsoft Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.19822.20104 - Microsoft Corporation) Hidden
Poly Lens Control Service (HKLM\...\{92FB562B-E9B2-405B-A1CB-E33FD758A9A4}) (Version: 1.11.793 - HP Inc.)
Poly Lens Desktop (HKLM\...\{5625A841-9FDE-4149-8243-C08FAB2B5639}) (Version: 2.2.0.3547 - HP Inc.)
Proton VPN (HKLM\...\Proton VPN_is1) (Version: 4.3.12 - Proton AG)

Packages:
=========
@{MicrosoftWindows.55182690.Taskbar_1000.26100.3775.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-06-14] ()
@{MicrosoftWindows.55182690.Taskbar_1000.26100.3912.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-06-14] ()
AMD Radeon Software -> C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m [2025-07-29] (Advanced Micro Devices Inc.) [Startup Task]
HP -> C:\Program Files\WindowsApps\AD2F1837.myHP_54.52610.3208.0_x64__v10z8vjag6ke6 [2026-03-18] (HP Inc.) [Startup Task]
HP Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.HPAudioControl_2.53.364.0_x64__dt26b99r8h8gj [2025-08-23] (Realtek Semiconductor Corp)
HP PC Hardware Diagnostics Windows -> C:\Program Files\WindowsApps\AD2F1837.HPPCHardwareDiagnosticsWindows_3.0.0.0_x64__v10z8vjag6ke6 [2026-01-27] (HP Inc.)
HP Power Manager -> C:\Program Files\WindowsApps\AD2F1837.HPPowerManager_3.1.18.0_x64__v10z8vjag6ke6 [2024-10-31] (HP Inc.)
HP Privacy Settings -> C:\Program Files\WindowsApps\AD2F1837.HPPrivacySettings_1.4.17.0_x64__v10z8vjag6ke6 [2025-08-22] (HP Inc.)
HP Support Assistant -> C:\Program Files\WindowsApps\AD2F1837.HPSupportAssistant_9.51.14.0_x64__v10z8vjag6ke6 [2026-02-05] (HP Inc.)
HP System Information -> C:\Program Files\WindowsApps\AD2F1837.HPSystemInformation_8.10.49.0_x64__v10z8vjag6ke6 [2025-11-22] (HP Inc.)
Local AI Manager for Microsoft 365 -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\AI [2026-03-28] ()
Microsoft Defender -> C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2511.3002.0_x64__8wekyb3d8bbwe [2026-01-08] (Microsoft Corporation) [Startup Task]
Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2024-05-19] (Microsoft Corp.)
Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_56.20201.588.0_x64__8wekyb3d8bbwe [2026-02-16] (Microsoft Corporation)
Microsoft.HEVCVideoExtensions -> C:\Program Files\WindowsApps\Microsoft.HEVCVideoExtensions_2.4.42.0_x64__8wekyb3d8bbwe [2026-01-28] (Microsoft Corporation)
Microsoft.Office.ActionsServer -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\ActionsServer [2026-03-28] ()
OfficePushNotificationsUtility -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16 [2026-03-28] ()
OneNote Virtual Printer -> C:\Program Files\WindowsApps\Microsoft.Office.OneNoteVirtualPrinter_1.0.0.0_x64__8wekyb3d8bbwe [2026-02-18] (Microsoft Corporation)
Telegram Desktop -> C:\Program Files\WindowsApps\TelegramMessengerLLP.TelegramDesktop_6.6.1.0_x64__t4vj0pshhgkwm [2026-03-21] (Telegram Messenger LLP) [Startup Task]
WinAppRuntime.Main.1.5 -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Main.1.5_5001.373.1736.0_x64__8wekyb3d8bbwe [2025-01-29] (Microsoft Corp.)
WinAppRuntime.Main.1.8 -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Main.1.8_8000.770.947.0_x64__8wekyb3d8bbwe [2026-03-11] (Microsoft Corp.)
WinAppRuntime.Singleton -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Singleton_8000.770.947.0_x64__8wekyb3d8bbwe [2026-02-18] (Microsoft Corp.)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2384847340-952867437-1279697988-1001_Classes\CLSID\{11487812-8821-0862-6182-000000000000}\localserver32 -> C:\WINDOWS\system32\FMToastNotification.exe (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia)
CustomCLSID: HKU\S-1-5-21-2384847340-952867437-1279697988-1001_Classes\CLSID\{50726f74-6f6e-2e56-504e-000000000000}\localserver32 -> C:\Program Files\Proton\VPN\v4.3.12\ProtonVPN.Client.exe (Proton AG -> ProtonVPN)
CustomCLSID: HKU\S-1-5-21-2384847340-952867437-1279697988-1001_Classes\CLSID\{65574321-d3fb-e7db-e83e-38fe55a80c4a}\localserver32 -> C:\Program Files\HP\HP Client Security Manager\HP.ClientSecurityManager.exe (HP Inc. -> HP Inc.)
CustomCLSID: HKU\S-1-5-21-2384847340-952867437-1279697988-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC)
ShellIconOverlayIdentifiers: [ GoogleDriveCloudOverlayIconHandler] -> {A8E52322-8734-481D-A7E2-27B309EF8D56} => C:\Program Files\Google\Drive File Stream\123.0.1.0\drivefsext.dll [2026-03-30] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers: [ GoogleDriveMirrorBlacklistedOverlayIconHandler] -> {51EF1569-67EE-4AD6-9646-E726C3FFC8A2} => C:\Program Files\Google\Drive File Stream\123.0.1.0\drivefsext.dll [2026-03-30] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers: [ GoogleDrivePinnedOverlayIconHandler] -> {CFE8B367-77A7-41D7-9C90-75D16D7DC6B6} => C:\Program Files\Google\Drive File Stream\123.0.1.0\drivefsext.dll [2026-03-30] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers: [ GoogleDriveProgressOverlayIconHandler] -> {C973DA94-CBDF-4E77-81D1-E5B794FBD146} => C:\Program Files\Google\Drive File Stream\123.0.1.0\drivefsext.dll [2026-03-30] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers-x32: [ GoogleDriveCloudOverlayIconHandler] -> {A8E52322-8734-481D-A7E2-27B309EF8D56} => C:\Program Files\Google\Drive File Stream\123.0.1.0\drivefsext.dll [2026-03-30] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers-x32: [ GoogleDriveMirrorBlacklistedOverlayIconHandler] -> {51EF1569-67EE-4AD6-9646-E726C3FFC8A2} => C:\Program Files\Google\Drive File Stream\123.0.1.0\drivefsext.dll [2026-03-30] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers-x32: [ GoogleDrivePinnedOverlayIconHandler] -> {CFE8B367-77A7-41D7-9C90-75D16D7DC6B6} => C:\Program Files\Google\Drive File Stream\123.0.1.0\drivefsext.dll [2026-03-30] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers-x32: [ GoogleDriveProgressOverlayIconHandler] -> {C973DA94-CBDF-4E77-81D1-E5B794FBD146} => C:\Program Files\Google\Drive File Stream\123.0.1.0\drivefsext.dll [2026-03-30] (Google LLC -> Google LLC.)
ContextMenuHandlers1: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\123.0.1.0\drivefsext.dll [2026-03-30] (Google LLC -> Google LLC.)
ContextMenuHandlers4: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\123.0.1.0\drivefsext.dll [2026-03-30] (Google LLC -> Google LLC.)
ContextMenuHandlers5: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\123.0.1.0\drivefsext.dll [2026-03-30] (Google LLC -> Google LLC.)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [MidisrvTransferComplete] => 1
HKLM\...\Drivers32: [midi1] => C:\windows\system32\wdmaud2.drv [143360 2026-03-26] (Microsoft Windows -> Microsoft Corporation)
HKLM\...\Drivers32: [midi1] => C:\Windows\SysWOW64\wdmaud2.drv [94720 2026-03-26] (Microsoft Windows -> Microsoft Corporation)

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Amazon.com.lnk -> C:\Program Files (x86)\Online Services\Amazon\WizLink.exe () -> hxxp://www.amazon.com/gp/ubp/oneButton/config/ ... inesspc-hp

==================== Loaded Modules (Whitelisted) =============

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\camsvc => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{75416E63-5912-4DFA-AE8F-3EFACCAFFB14} => ""="NvmeDisk"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\{75416E63-5912-4DFA-AE8F-3EFACCAFFB14} => ""="NvmeDisk"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) =============

BHO: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPluginx64.dll [2025-12-15] (HP Inc. -> HP Inc.)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2026-01-31] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: HP Network Check Helper -> {E76FD755-C1BA-4DCB-9F13-99BD91223ADE} -> C:\Program Files (x86)\HP\HP Support Framework\Resources\HPNetworkCheck\HPNetworkCheckPlugin.dll [2025-12-15] (HP Inc. -> HP Inc.)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-03-28] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-03-28] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-03-28] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-03-28] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-03-28] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-03-28] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-03-28] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-03-28] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2022-05-07 07:24 - 2022-05-07 07:22 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Network ===========================

(Currently there is no automatic fix for this section.)

DNS Servers: 1.1.1.1 - 8.8.8.8
Windows Firewall is enabled.

Network Binding:
=============
Wi-Fi: MediaTek Wi-Fi 6E MT7922 (RZ616) 160MHz PCIe Adapter -> mtkwl6ex.sys
Ethernet: Realtek PCIe GbE Family Controller -> rt68cx21x64.sys

vms_vsf: Hyper-V Virtual Switch Extension Filter
ms_l1vhlwf: Nested Network Virtualization
vms_vsp: Hyper-V Virtual Switch Extension Protocol

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2384847340-952867437-1279697988-1001\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)


==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKU\S-1-5-21-2384847340-952867437-1279697988-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [UDP Query User{B13C712E-5F3B-4D50-BED8-AC0C67867E0E}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe => No File
FirewallRules: [TCP Query User{46FF5546-920D-4A82-892F-3D1F0A1914B6}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe => No File
FirewallRules: [{207FF0BA-4D00-447D-8427-9CBDA098563E}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_24137.2402.2884.4157_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{47893453-764F-4172-B4F4-3449E65B050C}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_24137.2402.2884.4157_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{F9CB4754-D72F-4074-BFF1-41A5C05ED25A}] => (Allow) C:\Program Files\HP\Sure Click\ApplicationSupport\chrome\4.4.23.315\brchromium\132.0.6834.111\BrChrome.exe (Bromium UK Limited -> HP)
FirewallRules: [{90A096DD-BD6E-4FF3-AD8C-5C7F433D8B3F}] => (Allow) C:\Program Files\HP\Sure Click\ApplicationSupport\chrome\4.4.23.324\brchromium\132.0.6834.210\BrChrome.exe (Bromium UK Limited -> HP)
FirewallRules: [{8D13A839-6D46-47E3-A189-28819CFED710}] => (Allow) C:\Program Files\HP\Sure Click\ApplicationSupport\chrome\4.4.23.327\brchromium\132.0.6834.211\BrChrome.exe (Bromium UK Limited -> HP)
FirewallRules: [{0C5932D2-72CF-41A4-8961-EE65DD365147}] => (Allow) C:\Program Files\HP\Sure Click\ApplicationSupport\chrome\4.4.24.3261\brchromium\134.0.6998.178\BrChrome.exe (Bromium UK Limited -> HP)
FirewallRules: [{AE98E059-4FB4-45D4-8980-CE29376371F8}] => (Allow) C:\Program Files\HP\Sure Click\ApplicationSupport\chrome\4.4.24.3274\brchromium\134.0.6998.207\BrChrome.exe (Bromium UK Limited -> HP)
FirewallRules: [{603AC0B2-FDFF-4909-ACCF-F5C9B781366D}] => (Allow) C:\Program Files\HP\Sure Click\ApplicationSupport\chrome\4.4.25.2040\brchromium\136.0.7103.178\BrChrome.exe (Bromium UK Limited -> HP)
FirewallRules: [{1A1290B9-65E7-41E4-9A94-569607171AD4}] => (Allow) C:\Program Files\HP\Sure Click\ApplicationSupport\chrome\4.4.26.1406\brchromium\138.0.7204.170\BrChrome.exe (Bromium UK Limited -> HP)
FirewallRules: [{EFF40D77-84A2-419C-88FE-F8F8A6B867A7}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{C21DFBE9-EAE0-449E-B18A-2729175C5A47}] => (Allow) C:\Program Files\HP\Sure Click\ApplicationSupport\chrome\4.4.27.1787\brchromium\140.0.7339.208\BrChrome.exe (Bromium UK Limited -> HP)
FirewallRules: [{8B75FCB2-D3C3-4FC6-8F9E-628970E53DE8}] => (Allow) C:\Program Files\HP\Sure Click\ApplicationSupport\chrome\4.4.28.1607\brchromium\142.0.7444.176\BrChrome.exe (Bromium UK Limited -> HP)
FirewallRules: [{D416813D-FF29-4790-B050-183B1D15872E}] => (Allow) C:\Program Files\HP\Sure Click\ApplicationSupport\chrome\4.4.29.1478\brchromium\144.0.7559.220\BrChrome.exe (Bromium UK Limited -> HP)
FirewallRules: [{CA3F524F-33D9-4B9D-B33E-42A937D194B4}] => (Allow) C:\Program Files\HP\Sure Click\ApplicationSupport\chrome\4.4.29.1485\brchromium\144.0.7559.236\BrChrome.exe (Bromium UK Limited -> HP)
FirewallRules: [{2E94B696-A8AA-4C57-BF9F-39027E9B554F}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

15-03-2026 18:27:33 Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.44.35211
16-03-2026 21:58:03 HPSF Applying updates
20-03-2026 17:45:42 Windows Update
21-03-2026 21:58:20 Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.44.35211
24-03-2026 23:20:57 Windows Update
24-03-2026 23:20:59 Windows Update
24-03-2026 23:20:59 Windows Update
26-03-2026 23:50:26 Inštalátor modulov systému Windows
28-03-2026 12:01:35 Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.44.35211
31-03-2026 14:54:26 Windows Update
31-03-2026 14:54:27 Windows Update
31-03-2026 14:54:32 Windows Update

==================== Faulty Device Manager Devices ============

==================== Event log errors: ========================

Application errors:
==================
Error: (03/31/2026 08:48:44 AM) (Source: Application Error) (EventID: 1000) (User: NT AUTHORITY)
Description: Názov chybnej aplikácie: HotKeyServiceUWP.exe, verzia: 8.10.50.393, časová značka: 0x69390c94
Názov modulu s poruchou: ntdll.dll, verzia: 10.0.26100.8115, časová značka: 0xa571fe98
Kód výnimky: 0xc0000005
Odchýlka poruchy: 0x000000000000aa73
Id poruchového procesu: 0x1770
Čas spustenia poruchovej aplikácie: 0x1dcbebde978439b
Cesta k poruchovej aplikácii: C:\WINDOWS\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_1445f3380129b4b6\HotKeyServiceUWP.exe
Cesta k poruchovému modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
Id správy: 849692c0-31e1-483b-ae19-50906fdc77e8
Plný názov chybného balíka:
Identifikátor poruchovej aplikácie vzťahujúci sa na balík:

Error: (03/31/2026 08:48:44 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Application: HotKeyServiceUWP.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: exception code c0000005, exception address 00007FFC5574AA73

Error: (03/28/2026 04:19:09 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, A system shutdown is in progress.]

Error: (03/27/2026 09:37:19 AM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Application: HotKeyServiceUWP.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: exception code c0000005, exception address 00007FF8339EAA73

Error: (03/22/2026 12:24:24 PM) (Source: Service1) (EventID: 0) (User: )
Description: Failed to process session change. System.NullReferenceException: Object reference not set to an instance of an object.
at HP.Watcher.WatcherEngine.FireEnrollmentCheckIfPresent()
at hptpsmarthealthservice.hptpsmarthealthservice.OnSessionChange(SessionChangeDescription changeDescription)
at System.ServiceProcess.ServiceBase.DeferredSessionChange(Int32 eventType, Int32 sessionId)

Error: (03/22/2026 11:29:49 AM) (Source: Application Error) (EventID: 1000) (User: SAUL)
Description: Názov chybnej aplikácie: FMAudioMonitor.exe, verzia: 1.0.0.24, časová značka: 0x68629748
Názov modulu s poruchou: FMAPOCTLAPI.dll_unloaded, verzia: 1.0.0.30, časová značka: 0x68b1b4c5
Kód výnimky: 0xc0000005
Odchýlka poruchy: 0x00000000000055c5
Id poruchového procesu: 0x2808
Čas spustenia poruchovej aplikácie: 0x1dcb9de6ae50221
Cesta k poruchovej aplikácii: C:\WINDOWS\system32\FMAudioMonitor.exe
Cesta k poruchovému modulu: FMAPOCTLAPI.dll
Id správy: 7a670176-6f4e-49cc-8c19-5d2c25980de7
Plný názov chybného balíka:
Identifikátor poruchovej aplikácie vzťahujúci sa na balík:

Error: (03/20/2026 02:24:08 PM) (Source: Application Error) (EventID: 1000) (User: NT AUTHORITY)
Description: Názov chybnej aplikácie: HotKeyServiceUWP.exe, verzia: 8.10.50.393, časová značka: 0x69390c94
Názov modulu s poruchou: ntdll.dll, verzia: 10.0.26100.7920, časová značka: 0x5ffc11eb
Kód výnimky: 0xc0000005
Odchýlka poruchy: 0x000000000000d84d
Id poruchového procesu: 0xc38
Čas spustenia poruchovej aplikácie: 0x1dcb6f7e3e682c8
Cesta k poruchovej aplikácii: C:\WINDOWS\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_1445f3380129b4b6\HotKeyServiceUWP.exe
Cesta k poruchovému modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
Id správy: 182f8971-6a5f-4db3-971d-15b39c8a954b
Plný názov chybného balíka:
Identifikátor poruchovej aplikácie vzťahujúci sa na balík:

Error: (03/20/2026 02:24:07 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Application: HotKeyServiceUWP.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: exception code c0000005, exception address 00007FF9EAD0D84D


System errors:
=============
Error: (04/01/2026 08:44:00 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT AUTHORITY)
Description: The Secure Boot update failed to update SBAT with error -1878589247. For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931

Error: (03/31/2026 10:59:18 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: The server {9BA05972-F6A8-11CF-A442-00A0C90A8F39} did not register with DCOM within the required timeout.

Error: (03/31/2026 10:59:16 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: The server {9BA05972-F6A8-11CF-A442-00A0C90A8F39} did not register with DCOM within the required timeout.

Error: (03/31/2026 04:24:38 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT AUTHORITY)
Description: The Secure Boot update failed to update SBAT with error -1878589247. For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931

Error: (03/31/2026 02:54:57 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Zlyhanie inštalácie: Systému Windows sa nepodarilo nainštalovať nasledujúcu aktualizáciu. Vyskytla sa chyba (0x80073d02 = The package could not be installed because resources it modifies are currently in use.): 9NTXGKQ8P7N0-MicrosoftWindows.CrossDevice.

Error: (03/31/2026 08:48:45 AM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba HP Hotkey UWP Service sa neočakávane ukončila. Služba sa týmto spôsobom ukončila už 1 krát. O 120000 ms bude vykonaná nasledujúca opravná akcia: Reštartovať službu.

Error: (03/31/2026 08:43:32 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT AUTHORITY)
Description: The Secure Boot update failed to update SBAT with error -1878589247. For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931

Error: (03/30/2026 11:07:50 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: The server {9BA05972-F6A8-11CF-A442-00A0C90A8F39} did not register with DCOM within the required timeout.


Windows Defender:
================
Date: 2026-03-31 12:23:25
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days

Date: 2026-03-30 13:52:45
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days

Date: 2026-03-28 10:57:47
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days

Date: 2026-03-25 11:01:07
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days

Date: 2026-03-24 10:32:21
Description:
Microsoft Defender Antivirus scan has been stopped before completion.
Scan Type: Antimalware
Scan Parameters: Quick Scan
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days
Event[0]

Date: 2025-10-15 08:42:59
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version:
Previous security intelligence Version: 1.439.170.0
Update Source: Microsoft Update Server
Security intelligence Type: AntiVirus
Update Type: Full
Current Engine Version:
Previous Engine Version: 1.1.25090.3001
Error code: 0x80240016
Error description: Počas vyhľadávania aktualizácií sa vyskytol neočakávaný problém. Informácie o inštalácii aktualizácií a riešení problémov s aktualizáciami nájdete v Pomoci a technickej podpore.

CodeIntegrity:
===============
Date: 2025-02-07 21:27:45
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\Malwarebytes\Anti-Malware\mbamsi64.dll that did not meet the Windows signing level requirements.


==================== Memory info ===========================

BIOS: HP V78 Ver. 01.12.00 10/31/2025
Motherboard: HP 8B5C
Processor: AMD Ryzen 3 7330U with Radeon Graphics
Percentage of memory in use: 52%
Total physical RAM: 15681.06 MB
Available physical RAM: 7508.26 MB
Total Virtual: 16705.06 MB
Available Virtual: 5698.72 MB

==================== Drives ================================

Drive c: (Windows ) (Fixed) (Total:475.81 GB) (Free:307.28 GB) (Model: KBG50ZNV512G KIOXIA) NTFS
Drive g: (Google Drive) (Fixed) (Total:19 GB) (Free:17.43 GB) (Model: KBG50ZNV512G KIOXIA) FAT32

\\?\Volume{c42a7235-279c-4e77-ab2f-9f572c3caec3}\ (Windows RE Tools) (Fixed) (Total:0.85 GB) (Free:0.13 GB) NTFS
\\?\Volume{0ab8e5a7-bce4-4bbf-9a28-5943b9189e90}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.16 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 476.9 GB) (Disk ID: 04C4C758)

Partition: GPT.

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119829
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: kontrola pre istotu

#3 Příspěvek od Rudy »

Zdravím!
Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
FirewallRules: [UDP Query User{B13C712E-5F3B-4D50-BED8-AC0C67867E0E}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe => No File
FirewallRules: [TCP Query User{46FF5546-920D-4A82-892F-3D1F0A1914B6}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe => No File
Task: {4E96B2D1-F910-461A-9CBD-3F1A75D4CA13} - System32\Tasks\HPSupportTool => C:\ProgramData\HP\Telemetry\collectors\hp-telemetry-iolo-collector_ver_4.675.11370\HPSupportAssistant1.exe (No File)
C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
C:\DumpStack.log.tmp

EmptyTemp:
End
Uložte do C:\Users\igorv\Downloads jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět