Stránka 1 z 1

Prosím o vyřešení problému - pop up okno

Napsal: 15 kvě 2026 18:04
od markalous
Prosím o kontrolu logu. Vyskakuje mi okno jakoby od Windows Defender s upozorněním na trojan. Při zavření mě to odkazuje na stránky, které díkybohu Norton firewall blokuje.
Děkuji předem za pomoc.
-----------------------------------------
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 14-05-2026 01
Ran by vikto (administrator) on VIKTOROVO (LENOVO 82XX) (15-05-2026 18:59:03)
Running from C:\Users\vikto\Downloads\FRST64.exe
Loaded Profiles: vikto
Platform: Microsoft Windows 11 Home Version 25H2 26200.8457 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe
(0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe
(8F32EFB2-B494-4AEC-A27C-4B0736252363 -> Lenovo Limited Company) C:\Program Files\WindowsApps\E046963F.LenovoVoiceWorldWide_3.0.26.0_x64__k1h2ywk1493x8\GlobalPresenter\GlobalPresenter.exe
(C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\LenovoVantage-(GenericMessagingAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\LenovoVantage-(SmartPanelAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\LenovoVantage-(VantageCoreAddin).exe
(C:\Program Files\Lenovo\Lenovo Smart Appearance Components\Components\IntelligentSensingAwareService\LsaRpcServer.exe ->) (Lenovo -> Lenovo) C:\Program Files\Lenovo\Lenovo Smart Appearance Components\Components\IntelligentSensingAwareService\LsaServerPartner.exe
(C:\Program Files\Lenovo\Lenovo Smart Appearance Components\Components\IntelligentSensingAwareService\LsaRpcServer.exe ->) (Lenovo -> Lenovo) C:\Program Files\Lenovo\Lenovo Smart Appearance Components\Components\IntelligentSensingAwareService\LsaToast.exe
(C:\Program Files\Lenovo\Lenovo Smart Appearance Components\Components\SmartAppearanceAIService\SmartAppearanceSVC.exe ->) (Lenovo -> Lenovo) C:\Program Files\Lenovo\Lenovo Smart Appearance Components\Components\SmartAppearanceAIService\FaceBeautify.exe
(C:\Program Files\Microsoft Office\root\Office16\WINWORD.EXE ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\AI\ai.exe
(C:\Program Files\Norton\Suite\NortonSvc.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\aswEngSrv.exe
(C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe ->) (0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSSrcExt.exe
(C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe ->) (0A0B0503-04C2-4CCF-9BC2-4F164DC80FEE -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\cncmd.exe
(Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe
(drivers\Lenovo\udc\Service\UDClientService.exe ->) (Lenovo -> ) C:\ProgramData\Lenovo\Udc\Hosts\x64\MessagingPlugin.exe
(DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_5e21bf389d23855a\LenovoUtilityService.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_5e21bf389d23855a\FnHotkeyCapsLKNumLK.exe
(DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_5e21bf389d23855a\LenovoUtilityService.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_5e21bf389d23855a\FnHotkeyUtility.exe
(DriverStore\FileRepository\u0418731.inf_amd64_0f48de5f9a2b4190\B417132\atiesrxx.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0418731.inf_amd64_0f48de5f9a2b4190\B417132\atieclxx.exe
(explorer.exe ->) (Adobe Inc. -> Adobe Systems Incorporated) C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe <2>
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <44>
(explorer.exe ->) (Grammarly, Inc. -> Grammarly Inc.) C:\Users\vikto\AppData\Local\Grammarly\DesktopIntegrations\Grammarly.Desktop.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\26.070.0414.0001\OneDrive.Sync.Service.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe
(FMService64.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMAudioMonitor.exe
(Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\NortonUI.exe <4>
(Lenovo -> Lenovo) C:\ProgramData\Lenovo\Vantage\AddinData\LenovoBatteryGaugeAddin\x64\QSHelper.exe
(LNBITSSvc.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\AutoModeDetect.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\WINWORD.EXE
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0418731.inf_amd64_0f48de5f9a2b4190\B417132\atiesrxx.exe
(services.exe ->) (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(services.exe ->) (Dolby Laboratories, Inc. -> Dolby Laboratories) C:\Windows\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_52fab4c0c715a075\DAX3API.exe
(services.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\afwServ.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\aswidsagent.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\nllToolsSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Norton\Suite\NortonSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe
(services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\System32\drivers\Lenovo\udc\Service\UDClientService.exe
(services.exe ->) (Lenovo -> Lenovo Limited Company) C:\Program Files\Lenovo\LVA Pro Service\VoiceAssistantService.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\Smart Note\SmartNote.Service.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\LenovoVantageService.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Program Files\Lenovo\Lenovo Smart Appearance Components\Components\IntelligentSensingAwareService\LsaRpcServer.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Program Files\Lenovo\Lenovo Smart Appearance Components\Components\SmartAppearanceAIService\SmartAppearanceSVC.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_5e21bf389d23855a\LenovoUtilityService.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\LNBITSSvc.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\YMC.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncHelper.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\GameInputSvc.exe <2>
(services.exe ->) (Microsoft Corporation -> Windows (R) Win 7 DDK provider) C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe <2>
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Locator.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\DriverStore\FileRepository\amdfendr.inf_amd64_987f8cede005f427\amdfendrsr.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe
(services.exe ->) (NortonLifeLock Inc. -> NortonLifeLock Inc.) C:\Program Files\Norton\Suite\wsc_proxy.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) C:\Windows\System32\DriverStore\FileRepository\rtkbtfilter.inf_amd64_b7779c678ebb5b75\RtkBtManServ.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_1f375c301924ceef\RtkAudUService64.exe <3>
(services.exe ->) (Wacom Co., Ltd. -> Wacom Technology, Corp.) C:\Windows\System32\DriverStore\FileRepository\wtabletserviceisd.inf_amd64_915f627712ed92f8\WTabletServiceISD.exe <2>
(sihost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> WhatsApp.Root) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2616.100.0_x64__cv1g1gvanyjgm\WhatsApp.Root.exe
(sihost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2605.41181.0_x64__8wekyb3d8bbwe\M365Copilot.exe
(svchost.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner.exe
(svchost.exe ->) (Lenovo -> ) C:\Program Files (x86)\Lenovo\Smart Note\LSNUpdater.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.StorePurchaseApp_22601.1401.7.0_x64__8wekyb3d8bbwe\StoreExperienceHost.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileCoAuth.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.264.3.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\DataExchangeHost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\AppActions.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\amd64\MoUsoCoreWorker.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [LVAW] => C:\Program Files\Lenovo\LVA Pro Service\StartupHelper.exe [699680 2023-02-10] (Lenovo -> Lenovo Limited Company)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_1f375c301924ceef\RtkAudUService64.exe [3113496 2025-08-06] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [NortonUI.exe] => C:\Program Files\Norton\Suite\AvLaunch.exe [1063080 2026-05-09] (Gen Digital Inc. -> Gen Digital Inc.)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX2] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe [271496 2017-11-02] (Canon Inc. -> CANON INC.)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-3709009798-2618340189-3513383678-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4748176 2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3709009798-2618340189-3513383678-1001\...\Run: [LenovoVantageToolbar] => C:\ProgramData\Lenovo\Vantage\AddinData\LenovoBatteryGaugeAddin\x64\QSHelper.exe [87960 2025-01-23] (Lenovo -> Lenovo)
HKU\S-1-5-21-3709009798-2618340189-3513383678-1001\...\Run: [LenovoVantage] => C:\ProgramData\Lenovo\Vantage\Addins\LenovoCompanionAppAddin\1.0.0.51\LenovoVantage.exe [40928 2026-05-08] (Lenovo -> Lenovo)
HKU\S-1-5-21-3709009798-2618340189-3513383678-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [42087896 2026-04-29] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-3709009798-2618340189-3513383678-1001\...\Run: [Microsoft.Lists] => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\OneDrive.Sync.Service.exe [956264 2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3709009798-2618340189-3513383678-1001\...\Run: [Grammarly] => C:\Users\vikto\AppData\Local\Grammarly\DesktopIntegrations\Grammarly.Desktop.exe [352408 2026-05-13] (Grammarly, Inc. -> Grammarly Inc.)
HKLM\...\Windows x64\Print Processors\Canon TS6300 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDFQ.DLL [529408 2020-06-21] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor TS6300 series: C:\WINDOWS\system32\CNMLMFQ.DLL [959488 2020-06-21] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\EPSON XP-530 Series 64MonitorBE: C:\WINDOWS\system32\E_YLMBPME.DLL [187392 2018-06-15] (Seiko Epson Corporation) [File not signed]
HKLM\...\Print\Monitors\PDF-XChange Lite Port Monitor: C:\WINDOWS\system32\pxcpmL.dll [1048912 2026-02-24] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [3971224 2026-04-18] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\148.0.7778.168\Installer\chrmstp.exe [7605912 2026-05-15] (Google LLC -> Google LLC)
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{89B4C1CD-B018-4511-B0A1-5476DBF70820}] -> C:\Windows\SysWOW64\Rundll32.exe C:\Windows\SysWOW64\mscories.dll,Install
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Edge: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {E1E26F93-3600-4349-A90F-5D0CAE9EF64F} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1612800 2026-01-23] (Adobe Inc. -> Adobe Inc.)
Task: {96B03FCB-2C65-4989-A1BF-2F84E71F8E8E} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem149.0.7814.0{53EC39F3-69FB-4DC8-B8EB-C8C6B14FC5B5} => C:\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\updater.exe [8770200 2026-04-28] (Google LLC -> Google LLC)
Task: {663A6C53-0801-410E-AE41-54EB152937BC} - System32\Tasks\klcp_update => C:\Program Files (x86)\K-Lite Codec Pack\Tools\CodecTweakTool.exe [2401792 2026-03-19] () [File not signed]
Task: {76DFACBD-690C-41B7-B8C6-0D1D94DF7F3C} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\WINDOWS\system32\ImController.InfInstaller.exe [94496 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {425C05CF-0806-4BE0-AB78-F93E55198D08} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => C:\WINDOWS\system32\sc.exe [102400 2025-10-11] (Microsoft Windows -> Microsoft Corporation) -> START ImControllerService
Task: {91B8C59F-B0D6-4E5E-8084-B6A3628555E0} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => C:\WINDOWS\System32\reg.exe [110592 2025-10-11] (Microsoft Windows -> Microsoft Corporation) -> add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32
Task: {77D80773-10DE-48E4-A98F-36523BD5A5B8} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\22265a90-67f5-4370-bf1d-60992b37a81c => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {3FA195CC-3C2F-43C6-A8F9-195C83B1E9D0} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\6f8b4338-a46c-46c9-86ce-088b33dbaa97 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {DD3CDFE7-3FC5-4691-A31F-6646D514323A} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\90628bb8-5544-4ef8-aae1-70587fc07437 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {5A83DF58-F7C2-4268-BF8C-016E179C086F} - System32\Tasks\Lenovo\LenovoNowLauncher => C:\Program Files (x86)\Lenovo\LenovoNow\x86\LenovoNow.exe [468448 2026-03-10] (Lenovo -> Lenovo) -> C:\Program Files (x86)\Lenovo\LenovoNow\x86\/task
Task: {98A5DF6E-C7C3-4ABA-BF84-FCD829175E6F} - System32\Tasks\Lenovo\LenovoNowQuarterlyLaunch => C:\Program Files (x86)\Lenovo\LenovoNow\x86\LenovoNow.Task.exe [471520 2026-03-10] (Lenovo -> Lenovo)
Task: {E8122962-0E74-4AD6-8D58-A2FF48D1C17B} - System32\Tasks\Lenovo\LenovoNowTask => C:\Program Files (x86)\Lenovo\LenovoNow\x86\LenovoNow.Task.exe [471520 2026-03-10] (Lenovo -> Lenovo) -> C:\Program Files (x86)\Lenovo\LenovoNow\x86\$(EventData)
Task: {C4A56618-3ECB-434F-97D5-27DC95A25F7B} - System32\Tasks\Lenovo\UDC\Lenovo UDC Diagnostic Scan => C:\WINDOWS\system32\sc.exe [102400 2025-10-11] (Microsoft Windows -> Microsoft Corporation) -> control udcservice 210
Task: {5A053547-13FA-458A-8F23-EB5627122E4A} - System32\Tasks\Lenovo\UDC\Lenovo UDC Lazy Deployment => C:\WINDOWS\system32\sc.exe [102400 2025-10-11] (Microsoft Windows -> Microsoft Corporation) -> control udcservice 221
Task: {802EFF4C-570D-4E33-B49A-60057FCCD3B3} - System32\Tasks\Lenovo\UDC\Lenovo UDC Maintainance Task => C:\WINDOWS\system32\sc.exe [102400 2025-10-11] (Microsoft Windows -> Microsoft Corporation) -> control udcservice 220
Task: {6988B71E-3897-4341-9D2C-1885020C13F8} - System32\Tasks\Lenovo\UDC\Lenovo UDC Monitor => C:\WINDOWS\system32\drivers\lenovo\udc\data\InfBackup\UdcInfInstaller.exe [257936 2026-04-01] (Lenovo -> Lenovo Group Ltd.)
Task: {C8E8717B-7343-40F9-8224-F9E195ABB601} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServciePatch => "C:\Program Files (x86)\Lenovo\VantageService\3.13.25.0\OOBECompleteWatch.exe" (No File)
Task: {D2A50D04-C354-44D2-AD42-A1100488F75C} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServiceMaintainance => C:\WINDOWS\system32\sc.exe [102400 2025-10-11] (Microsoft Windows -> Microsoft Corporation) -> start LenovoVantageService
Task: {AD07F157-D36E-48C7-BADF-033E0C895320} - System32\Tasks\Lenovo\Vantage\Schedule\BatteryGaugeAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {0C10BCC0-764E-4101-B167-FBA1480599F9} - System32\Tasks\Lenovo\Vantage\Schedule\ConsumerAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {F4F7DF91-F7C5-4B52-A313-F87F3368B3CF} - System32\Tasks\Lenovo\Vantage\Schedule\DailyTelemetryTransmission => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {7A47D975-7EAB-49E9-810A-F2D62B643838} - System32\Tasks\Lenovo\Vantage\Schedule\GenericMessagingAddin => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {90B2CA0B-A040-4B1D-A7C5-8760C171FB04} - System32\Tasks\Lenovo\Vantage\Schedule\GenericMessagingAddin_Pulsation => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {AD111C7F-CCC9-4B8B-95AB-4DCC53BEA509} - System32\Tasks\Lenovo\Vantage\Schedule\HeartbeatAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {20618EFE-DEAC-450E-8D86-F75C8FE4A720} - System32\Tasks\Lenovo\Vantage\Schedule\IdeaNotebookAddinDailyEvent => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {1434D11A-067F-4DB5-B4DE-F9BEC70A8554} - System32\Tasks\Lenovo\Vantage\Schedule\Lenovo.Vantage.SmartPerformance.MonthlyReport => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {0A616CD8-EAFD-4A13-BD67-86DE9573A2F8} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoBoostAddin.Prompt => C:\Program Files (x86)\Lenovo\VantageService\4.0.52.0\ScheduleEventAction.exe LenovoBoostAddin.Prompt (No File)
Task: {C15006EF-86DA-434D-9340-DFF65ECAEAD0} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoCompanionAppAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {5DE0D919-2F4A-488E-9691-101456CB9027} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoSupportHealthReportSchedule => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {A753BDB6-94AF-4585-BCA6-022FEB823984} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoSystemUpdateAddin_WeeklyTask => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {C7A6538B-2074-4694-8F5A-B7F3E64B1811} - System32\Tasks\Lenovo\Vantage\Schedule\SettingsWidgetAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {1B70117A-DFA6-4D13-9118-B24044103A6A} - System32\Tasks\Lenovo\Vantage\Schedule\SmartPerformance.ExpireReminder => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {9AA911F2-DE75-4047-ABE7-5F57D8A3D73B} - System32\Tasks\Lenovo\Vantage\Schedule\VantageCoreAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {8024F7A5-C7D2-4E93-A6EE-B81DBC955E01} - System32\Tasks\Lenovo\Vantage\Schedule\VantageCoreAddinIdleScheduleTask => C:\ProgramData\Lenovo\Vantage\Addins\VantageCoreAddin\1.1.0.29\x86\IdleScheduleEventAction.exe [173536 2026-04-21] (Lenovo -> )
Task: {5D68BA85-D837-4937-AAA2-A2B1EA8F0351} - System32\Tasks\Lenovo\Vantage\Schedule\VantageCoreAddinWeekScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\ScheduleEventAction.exe [276032 2026-03-19] (Lenovo -> Lenovo)
Task: {12AD21ED-AA47-499A-9B2B-A4520770B21A} - System32\Tasks\Lenovo\Vantage\StartupFixPlan => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\\uninstall.exe /repair (No File)
Task: {6CD0093D-EC78-443F-8C6E-E1692D6308BA} - System32\Tasks\LSNUpdater => C:\Program Files (x86)\Lenovo\Smart Note\LSNUpdater.exe [33120 2021-12-10] (Lenovo -> )
Task: {BE027551-AD6B-44AD-B2CD-5A5E7C955C60} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\ActionsServer\ActionsServer.exe [17010024 2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {2D7F4F24-40A2-41E8-9D24-AE711E241067} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29024640 2025-09-12] (Microsoft Corporation -> Microsoft Corporation)
Task: {0686D202-6D11-4EA6-89C6-31060EB40830} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\OFFICE16\opushutil.exe [70528 2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {37C1F031-CDBF-4395-96E0-A0F8DDD40D85} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29024640 2025-09-12] (Microsoft Corporation -> Microsoft Corporation)
Task: {0EEE8F0A-EF86-4C2C-A98F-4F21C9B13EE1} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [313632 2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {B5ED46AC-5F70-4A60-AAAE-4F6E2A5E967E} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [313632 2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {0A43D02D-D032-4DED-AC0F-383D11B083FF} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\operfmon.exe [1365272 2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
Task: {2261976F-05EB-4120-9AF8-F7F066D7B77D} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\OS Edition Upgrade event listener created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [573440 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {2784DEF8-3FE4-4B4B-AF64-EE9D2EE6AA28} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\Passport for Work alert created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [573440 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {E6DDEE77-7D2F-469E-B072-85F24A7542D7} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\Policy Manager Login Refresh Schedule => C:\WINDOWS\system32\deviceenroller.exe [573440 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {660BE667-4037-4891-9AC9-1B89F0E5C97E} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\Provisioning initiated session => C:\WINDOWS\system32\deviceenroller.exe [573440 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {B4A615C4-5043-4E8D-8621-14CFAAFEF175} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\PushLaunch => C:\WINDOWS\system32\deviceenroller.exe [573440 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {ACDCA29D-45D6-4A08-AC12-922368C457C5} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\PushRenewal => C:\WINDOWS\system32\deviceenroller.exe [573440 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {2CF1DFEE-C1D6-40F3-A047-6684CBC31A9A} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\PushUpgrade => C:\WINDOWS\system32\deviceenroller.exe [573440 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {A2BB6F43-670E-494C-88DA-0750A31F846B} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\Schedule #1 created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [573440 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {C77591E2-36C1-4685-A68F-405471EE6DBD} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\Schedule #2 created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [573440 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {69D721E2-1AFE-4111-94A6-9F6EE8EB2669} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\Schedule #3 created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [573440 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {A2ED4D4F-79A4-43B0-8571-4CCE66042050} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\Schedule created by enrollment client for renewal of certificate warning => C:\WINDOWS\system32\deviceenroller.exe [573440 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {11EBB418-DA70-4860-8B30-E0ED72A3FBB3} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\Schedule to run OMADMClient by client => C:\WINDOWS\system32\omadmclient.exe [589824 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {3A2D25DA-4424-4230-BC8B-E5B5268BCD42} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\Schedule to run OMADMClient by server => C:\WINDOWS\system32\omadmclient.exe [589824 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {87E356B3-E2DA-4B7B-AC3F-5A8041595CB3} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\Win10 S Mode event listener created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [573440 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {55337710-CE85-4FAC-9AA4-FF0ACD1AC6A3} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\273E13B6-36F5-4608-886B-30B0E12011AF\Wsc Startup event listener created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [573440 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {0BB36A32-0D9E-4297-AFD7-6BD7B5DB4C9B} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {D620A0AF-67B8-4B94-9E17-BD428D99669C} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-3709009798-2618340189-3513383678-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [696960 2025-12-20] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {97CD22F4-BEC7-45B5-99D9-376ED31F0A31} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34944 2025-12-20] (Mozilla Corporation -> Mozilla Foundation)
Task: {A5AD9D41-EB4A-4B10-A2E8-FB8FE5B46E5A} - System32\Tasks\Norton\Norton 360 Patcher => C:\Program Files\Common Files\Norton\Icarus\norton-suite\icarus.exe [9868512 2026-04-21] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {90BEFE5B-60D9-4AE6-B3AD-979C4F9FDA45} - System32\Tasks\Norton\Overseer => C:\Program Files\Common Files\Norton\Overseer\overseer.exe [3369184 2026-04-13] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {47525D44-89C4-49C7-8EAC-C6E4967F8751} - System32\Tasks\Norton\Suite Emergency Update => C:\Program Files\Norton\Suite\AvEmUpdate.exe [5785256 2026-05-09] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {E4F36D9B-1C83-4121-B87D-A6FA41042ADB} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4428176 2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {712620F5-E1B0-4753-8CF4-B150850753F3} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3709009798-2618340189-3513383678-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4428176 2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {A3AAE1C8-4BD4-4240-B026-BCD7773AD8CD} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-3709009798-2618340189-3513383678-1002 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4428176 2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {013FE559-EE15-43DE-BCB3-FAC88FB0BE8F} - System32\Tasks\OneDrive Startup Task-S-1-5-21-3709009798-2618340189-3513383678-1001 => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\OneDriveLauncher.exe [758632 2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {DD969094-BD20-4E67-8E1A-252B1E93047E} - System32\Tasks\PDFXChangeAutoUpdate => C:\Program Files\Tracker Software\Update\TrackerUpdate.exe [6225232 2026-02-24] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
Task: {82FB9006-36DA-4CF9-A4B0-54C6274C7A5A} - System32\Tasks\Piriform\CCleaner 7 - S-1-5-21-3709009798-2618340189-3513383678-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [5598328 2026-04-27] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {76D8FB2E-BF93-4CD2-9AC4-81F7C814D246} - System32\Tasks\Piriform\CCleaner 7 - Scheduled Cleaning - default - S-1-5-21-3709009798-2618340189-3513383678-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [5598328 2026-04-27] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {ED04A5B0-A1CE-4F5C-A9F3-983DB182A8AD} - System32\Tasks\Piriform\CCleaner 7 BugReport => C:\Program Files\Piriform\CCleaner 7\CCleanerBugReport.exe [6635128 2026-04-27] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --product 234 --programpath "C:\Program Files\Piriform\CCleaner 7" --configpath "C:\Program Files\Piriform\CCleaner 7\data" --path "C:\Program Files\Piriform\CCleaner 7\log" --path "C:\Program Files\Piriform\CCleaner 7\data\dumps" --logpath "C:\Program Files\Piriform\CCleaner 7 (the data entry has 58 more characters).
Task: {8FB1580B-1615-426C-87B6-89B0A0AEAC0F} - System32\Tasks\Piriform\CCleaner 7 Update => C:\Program Files\Common Files\Piriform\Icarus\piriform-ccl\icarus.exe [9274080 2026-01-19] (Gen Digital Inc. -> Gen Digital Inc.)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{1d2790b0-25e9-4545-9751-ef9d8043ce49}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{1d2790b0-25e9-4545-9751-ef9d8043ce49}\34F607973656E6472757D6: [DhcpNameServer] 213.155.229.197 213.155.255.12
Tcpip\..\Interfaces\{1d2790b0-25e9-4545-9751-ef9d8043ce49}\3547574656E647: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{1d2790b0-25e9-4545-9751-ef9d8043ce49}\E656479637: [DhcpNameServer] 93.93.32.32 93.93.33.33 192.168.1.1

FireFox:
========
FF TaskBarID: 308046B0AF4A39CB -> C:\Program Files\Mozilla Firefox
FF DefaultProfile: 9sqsbjpb.default-release -> 308046B0AF4A39CB
FF ProfilePath: C:\Users\vikto\AppData\Roaming\Mozilla\Firefox\Profiles\ogc97p6n.default [2025-01-07]
FF ProfilePath: C:\Users\vikto\AppData\Roaming\Mozilla\Firefox\Profiles\9sqsbjpb.default-release [2026-05-15]
FF Homepage: Mozilla\Firefox\Profiles\9sqsbjpb.default-release -> www.seznam.cz
FF Extension: (New Tab) - C:\Users\vikto\AppData\Roaming\Mozilla\Firefox\Profiles\9sqsbjpb.default-release\Extensions\newtab@mozilla.org.xpi [2025-12-28]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2026-02-24] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2026-02-24] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2026-02-24] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2026-04-29] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2026-02-24] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2026-02-24] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2026-02-24] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin HKU\S-1-5-21-3709009798-2618340189-3513383678-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2026-02-24] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin HKU\S-1-5-21-3709009798-2618340189-3513383678-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2026-02-24] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
FF Plugin HKU\S-1-5-21-3709009798-2618340189-3513383678-1001: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2026-02-24] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\vikto\AppData\Local\Microsoft\Edge\User Data\Default [2026-05-15]
Edge Notifications: Default -> hxxps://d82mtginaffc73bb5dng.vhbd-adguard.co.in; hxxps://drive.google.com; hxxps://www.facebook.com; hxxps://www.instagram.com; hxxps://www.messenger.com
Edge HomePage: Default -> hxxp://www.seznam.cz/
Edge StartupUrls: Default -> "hxxp://www.seznam.cz/"
Edge Extension: (Dokumenty Google offline) - C:\Users\vikto\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-05-10]
Edge Extension: (Edge relevant text changes) - C:\Users\vikto\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]

Chrome:
=======
CHR DefaultProfile: Profile 5
CHR Profile: C:\Users\vikto\AppData\Local\Google\Chrome\User Data\Profile 5 [2026-05-15]
CHR Notifications: Profile 5 -> hxxps://cs.economy-pedia.com; hxxps://www.instagram.com; hxxps://www.messenger.com
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\vikto\AppData\Local\Google\Chrome\User Data\Profile 5\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2026-05-15]
CHR Extension: (Dokumenty Google offline) - C:\Users\vikto\AppData\Local\Google\Chrome\User Data\Profile 5\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-05-15]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\vikto\AppData\Local\Google\Chrome\User Data\Profile 5\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-04-03]
CHR Profile: C:\Users\vikto\AppData\Local\Google\Chrome\User Data\System Profile [2025-02-13]
CHR HKU\S-1-5-21-3709009798-2618340189-3513383678-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [180216 2026-01-23] (Adobe Inc. -> Adobe Inc.)
R2 CCleaner7; C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe [30293112 2026-04-27] (Gen Digital Inc. -> Gen Digital Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13287824 2025-09-12] (Microsoft Corporation -> Microsoft Corporation)
R2 DbxSvc; C:\WINDOWS\System32\DbxSvc.exe [58984 2025-10-07] (Dropbox, Inc -> Dropbox, Inc.)
R2 DolbyDAXAPI; C:\WINDOWS\System32\DriverStore\FileRepository\dax3_swc_aposvc.inf_amd64_52fab4c0c715a075\DAX3API.exe [2787920 2025-07-02] (Dolby Laboratories, Inc. -> Dolby Laboratories)
R3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncHelper.exe [3610984 2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
R2 FMAPOService; C:\WINDOWS\System32\FMService64.exe [1070624 2025-06-20] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia)
R2 GameInputRedistService; C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe [400768 2026-03-31] (Microsoft Corporation -> Windows (R) Win 7 DDK provider)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [446328 2023-09-13] (Canon Inc. -> )
R2 ImControllerService; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
R2 Lenovo Smart Appearance Intelligent Sensing Aware Service; C:\Program Files\Lenovo\Lenovo Smart Appearance Components\Components\IntelligentSensingAwareService\LsaRpcServer.exe [160552 2022-09-07] (Lenovo -> Lenovo)
R2 LenovoFnAndFunctionKeys; C:\WINDOWS\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_5e21bf389d23855a\LenovoUtilityService.exe [199744 2026-03-09] (Lenovo -> Lenovo)
R2 LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\4.2601.21.0\LenovoVantageService.exe [34368 2026-03-19] (Lenovo -> Lenovo)
R2 LITSSVC; C:\WINDOWS\System32\LNBITSSvc.exe [1872000 2025-10-23] (Lenovo -> Lenovo)
R2 LVAWService; C:\Program Files\Lenovo\LVA Pro Service\VoiceAssistantService.exe [693536 2023-02-10] (Lenovo -> Lenovo Limited Company)
S3 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\MpDefenderCoreService.exe [2009608 2025-04-14] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 nllbIDSAgent; C:\Program Files\Norton\Suite\aswidsagent.exe [8244904 2026-05-09] (Gen Digital Inc. -> Gen Digital Inc.)
R2 Norton Antivirus; C:\Program Files\Norton\Suite\NortonSvc.exe [1040040 2026-05-09] (Gen Digital Inc. -> Gen Digital Inc.)
R2 Norton Firewall; C:\Program Files\Norton\Suite\afwServ.exe [2739880 2026-05-09] (Gen Digital Inc. -> Gen Digital Inc.)
R2 Norton Tools; C:\Program Files\Norton\Suite\nllToolsSvc.exe [1093288 2026-05-09] (Gen Digital Inc. -> Gen Digital Inc.)
R2 NortonWscReporter; C:\Program Files\Norton\Suite\wsc_proxy.exe [76552 2024-10-29] (NortonLifeLock Inc. -> NortonLifeLock Inc.)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\26.070.0414.0001\OneDriveUpdaterService.exe [4018024 2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
R2 RtkBtManServ; C:\WINDOWS\System32\DriverStore\FileRepository\rtkbtfilter.inf_amd64_b7779c678ebb5b75\RtkBtManServ.exe [352392 2025-09-11] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
R2 SmartAppearanceAISVC; C:\Program Files\Lenovo\Lenovo Smart Appearance Components\Components\SmartAppearanceAIService\SmartAppearanceSVC.exe [75560 2022-09-07] (Lenovo -> Lenovo)
R2 SmartNoteService; C:\Program Files (x86)\Lenovo\Smart Note\SmartNote.Service.exe [92000 2021-12-10] (Lenovo -> Lenovo)
R2 UDCService; C:\WINDOWS\System32\drivers\Lenovo\udc\Service\UDClientService.exe [72592 2026-04-01] (Lenovo -> Lenovo Group Ltd.)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\NisSrv.exe [4538400 2025-04-14] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25030.2-0\MsMpEng.exe [278320 2025-04-14] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 YMC; C:\WINDOWS\System32\YMC.exe [927784 2025-09-07] (Lenovo -> Lenovo)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 amdfendrmgr; C:\WINDOWS\System32\DriverStore\FileRepository\amdfendr.inf_amd64_987f8cede005f427\amdfendrmgr.sys [36040 2024-05-08] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R3 amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0418731.inf_amd64_0f48de5f9a2b4190\B417132\amdkmdag.sys [106597288 2025-08-31] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
S3 amdwirelessbutton; C:\WINDOWS\System32\drivers\amdwirelessbutton.sys [42744 2022-06-06] (Advanced Micro Devices INC. -> Advanced Micro Devices, Inc)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [602112 2025-10-11] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [204800 2025-10-11] (Microsoft Corporation) [File not signed]
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [175824 2024-10-17] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R0 fse; C:\WINDOWS\System32\drivers\fse.sys [226768 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
S3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [331168 2025-04-14] (Microsoft Windows -> Microsoft Corporation)
S2 l1vhlwf; C:\WINDOWS\System32\drivers\l1vhlwf.sys [144856 2026-05-04] (Microsoft Windows -> Microsoft Corporation)
R0 nllArDisk; C:\WINDOWS\System32\drivers\nllArDisk.sys [21088 2026-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllArPot; C:\WINDOWS\System32\drivers\nllArPot.sys [259168 2026-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllbidsdriver; C:\WINDOWS\System32\drivers\nllbidsdriver.sys [451168 2026-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 nllbidsh; C:\WINDOWS\System32\drivers\nllbidsh.sys [315488 2026-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 nllbuniv; C:\WINDOWS\System32\drivers\nllbuniv.sys [87136 2026-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 nllElam; C:\WINDOWS\System32\drivers\nllElam.sys [29144 2025-07-22] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 nllKbd; C:\WINDOWS\System32\drivers\nllKbd.sys [32864 2026-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllMonFlt; C:\WINDOWS\System32\drivers\nllMonFlt.sys [289376 2026-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllNetHub; C:\WINDOWS\System32\drivers\nllNetHub.sys [633440 2026-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllRdr; C:\WINDOWS\System32\drivers\nllRdr2.sys [96864 2026-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 nllRvrt; C:\WINDOWS\System32\drivers\nllRvrt.sys [71776 2026-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllSnx; C:\WINDOWS\System32\drivers\nllSnx.sys [911456 2026-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 nllSP; C:\WINDOWS\System32\drivers\nllSP.sys [1292896 2026-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 nllStm; C:\WINDOWS\System32\drivers\nllStm.sys [250464 2026-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 nllVmm; C:\WINDOWS\System32\drivers\nllVmm.sys [466016 2026-05-09] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 RtkBtFilter2; C:\WINDOWS\System32\DriverStore\FileRepository\rtkbtfilter.inf_amd64_b7779c678ebb5b75\RtkBtFilter2.sys [334416 2025-09-11] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corporation)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174264 2024-10-17] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 vmbusproxy; C:\WINDOWS\system32\drivers\vmbusproxy.sys [98304 2025-10-11] (Microsoft Windows -> Microsoft Corporation)
R3 WacHIDRouterISDF; C:\WINDOWS\System32\drivers\WacHIDRouterISDF.sys [148616 2025-05-05] (Wacom Co., Ltd. -> Wacom Technology, Corp.)
S3 WacHIDRouterISDFV; C:\WINDOWS\System32\drivers\WacHIDRouterISDF.sys [148616 2025-05-05] (Wacom Co., Ltd. -> Wacom Technology, Corp.)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [20016 2025-04-14] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [605576 2025-04-14] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [100744 2025-04-14] (Microsoft Windows -> Microsoft Corporation)
S3 WSDPrintDevice; C:\WINDOWS\System32\DriverStore\FileRepository\wsdprint.inf_amd64_1f9e32519098c0b6\WSDPrint.sys [57344 2025-10-11] (Microsoft Windows -> Microsoft Corporation)
S3 WSDScan; C:\WINDOWS\System32\DriverStore\FileRepository\sti.inf_amd64_a6dc64e436f22951\WSDScan.sys [61440 2025-10-11] (Microsoft Windows -> Microsoft Corporation)
U3 FamilySvc; no ImagePath

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-05-15 18:59 - 2026-05-15 18:59 - 000051239 _____ C:\Users\vikto\Downloads\FRST.txt
2026-05-15 18:58 - 2026-05-15 18:59 - 000000000 ____D C:\FRST
2026-05-15 18:58 - 2026-05-15 18:58 - 002448384 _____ (Farbar) C:\Users\vikto\Downloads\FRST64.exe
2026-05-15 18:38 - 2026-05-15 18:38 - 000000000 ____D C:\AdwCleaner
2026-05-14 11:35 - 2026-05-14 11:35 - 000678362 _____ C:\WINDOWS\system32\perfh005.dat
2026-05-14 11:35 - 2026-05-14 11:35 - 000145178 _____ C:\WINDOWS\system32\perfc005.dat
2026-05-14 11:21 - 2026-05-15 13:36 - 000000000 ____D C:\WINDOWS\CbsTemp
2026-05-14 11:20 - 2026-05-14 11:20 - 000000000 ____D C:\WINDOWS\SecureBoot
2026-05-14 09:06 - 2026-05-14 09:06 - 000853888 _____ (InterPromo GMBH) C:\Users\vikto\Downloads\4kvideodownloaderplus_26.1.1_x64_online (2).exe
2026-05-14 08:45 - 2026-05-14 08:45 - 004130184 _____ () C:\Users\vikto\Downloads\OperaGXSetup.exe
2026-05-14 08:42 - 2026-05-14 08:45 - 000000000 ____D C:\Users\vikto\AppData\Roaming\Opera Software
2026-05-14 00:20 - 2026-05-14 00:20 - 002161302 _____ C:\Users\vikto\Downloads\Geronimo_ Americká legenda (1).pdf
2026-05-14 00:18 - 2026-05-14 00:18 - 002209056 _____ C:\Users\vikto\Downloads\Geronimo_ Americká legenda.pdf
2026-05-13 11:54 - 2026-05-13 11:54 - 037500899 _____ C:\Users\vikto\Downloads\16.Oborová specifika muzejní prezentace I.- úprava (2).pptx
2026-05-10 18:50 - 2026-05-10 18:50 - 000112274 _____ C:\Users\vikto\Downloads\studijní plán.pdf
2026-05-10 18:49 - 2026-05-10 18:49 - 001549364 _____ C:\Users\vikto\Downloads\uzpůsobení podmínek.pdf
2026-05-09 22:11 - 2026-05-09 22:11 - 000000000 ____D C:\Program Files\Microsoft GameInput
2026-05-09 22:09 - 2026-05-09 21:59 - 000477640 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_e.dll.0
2026-05-09 10:51 - 2026-05-09 10:51 - 000324264 _____ (Gen Digital Inc.) C:\WINDOWS\system32\nllBoot.exe
2026-05-08 17:28 - 2026-05-08 17:28 - 012511492 _____ C:\Users\vikto\Downloads\Architektura_dulnich_staveb_na_Ostravsku_a_jejich_soucasny_stav_Archive.pdf
2026-05-05 21:45 - 2026-05-05 21:47 - 037511584 _____ C:\Users\vikto\Downloads\16.Oborova_specifika_muzejni_prezentace_I.-_uprava (1).pptx
2026-05-05 21:45 - 2026-05-05 21:45 - 037500899 _____ C:\Users\vikto\Downloads\16.Oborova_specifika_muzejni_prezentace_I.-_uprava.pptx
2026-05-05 21:43 - 2026-05-05 21:43 - 028098894 _____ C:\Users\vikto\Downloads\18._Archeologicke_expozice_uprava.pptx
2026-05-05 21:42 - 2026-05-05 21:42 - 050890451 _____ C:\Users\vikto\Downloads\19.Vystava_v_archivu.pptx
2026-05-04 12:28 - 2026-05-04 12:28 - 000085913 _____ C:\WINDOWS\SysWOW64\ctac.json
2026-05-04 12:28 - 2026-05-04 12:28 - 000085913 _____ C:\WINDOWS\system32\ctac.json
2026-05-04 12:28 - 2026-05-04 12:28 - 000003872 _____ C:\WINDOWS\system32\DeviceFeatureDDF.json
2026-05-01 22:28 - 2026-05-01 22:29 - 179247111 _____ C:\Users\vikto\Downloads\4-5_Kulturne-historicke_a_etnograficke_regiony_ceskych_zemi (23).pptx
2026-05-01 22:26 - 2026-05-01 22:26 - 009596253 _____ C:\Users\vikto\Downloads\2_Kultura_a_kulturni_dedictvi (24).pptx
2026-05-01 22:24 - 2026-05-01 22:25 - 001824514 _____ C:\Users\vikto\Downloads\1_Uvod_do_studia (10).pptx
2026-05-01 22:24 - 2026-05-01 22:24 - 001824514 _____ C:\Users\vikto\Downloads\1_Uvod_do_studia (9).pptx
2026-05-01 22:23 - 2026-05-01 22:23 - 016183214 _____ C:\Users\vikto\Downloads\2-3_Uzemne-spravni_a_politicke_regiony_v_Ceske_republice (5).pptx
2026-05-01 22:22 - 2026-05-01 22:22 - 001824514 _____ C:\Users\vikto\Downloads\1_Uvod_do_studia (8).pptx
2026-04-27 21:47 - 2026-04-27 21:47 - 007106966 _____ C:\Users\vikto\Downloads\videoplayback (2) (1).mp4
2026-04-27 18:39 - 2026-04-27 18:39 - 000000000 ____D C:\WINDOWS\system32\Tasks\S-1-5-21-3709009798-2618340189-3513383678-1001
2026-04-26 22:50 - 2026-04-26 22:50 - 007106966 _____ C:\Users\vikto\Downloads\videoplayback (2).mp4
2026-04-26 14:07 - 2026-04-26 14:07 - 000000000 ___RD C:\Users\vikto\OneDrive\Documents\Viktor\CR - maturita\OneDrive\Plocha\Praxe
2026-04-25 19:22 - 2026-04-25 19:22 - 007943491 _____ C:\Users\vikto\Downloads\videoplayback (1).mp4
2026-04-25 19:00 - 2026-04-25 19:00 - 033586283 _____ C:\Users\vikto\Downloads\videoplayback.mp4
2026-04-25 11:53 - 2026-04-25 11:53 - 003717485 _____ C:\Users\vikto\OneDrive\Documents\Viktor\CR - maturita\OneDrive\Plocha\výstava obrazů.mp4
2026-04-25 11:46 - 2026-04-25 11:46 - 010907426 _____ C:\Users\vikto\OneDrive\Documents\Viktor\CR - maturita\OneDrive\Plocha\tradiční kultura.mp4
2026-04-23 09:42 - 2026-04-23 09:42 - 007713086 _____ C:\Users\vikto\Downloads\Thor Heyerdahl.pptx
2026-04-22 00:26 - 2026-04-22 00:26 - 000008133 _____ C:\Users\vikto\Downloads\export.gpx
2026-04-21 10:41 - 2026-04-21 10:41 - 000000000 ____D C:\Users\vikto\AppData\Roaming\xpdf
2026-04-20 15:05 - 2026-04-20 16:19 - 016185288 _____ C:\Users\vikto\Downloads\18. Archeologické expozice.pptx
2026-04-20 15:02 - 2026-04-20 15:03 - 020107505 _____ C:\Users\vikto\Downloads\16.Oborová specifika muzejní prezentace I.- úprava (1).pptx
2026-04-20 15:01 - 2026-04-20 15:02 - 020107505 _____ C:\Users\vikto\Downloads\16.Oborová specifika muzejní prezentace I.- úprava.pptx
2026-04-20 14:36 - 2026-04-20 15:00 - 016223039 _____ C:\Users\vikto\Downloads\18.+Archeologické+expozice.pptx
2026-04-19 11:00 - 2026-04-19 11:00 - 000000000 ____D C:\ProgramData\PDF-XChange
2026-04-19 04:51 - 2026-04-19 04:51 - 001738650 _____ C:\Users\vikto\OneDrive\Documents\Viktor\CR - maturita\OneDrive\Plocha\modrá.mhtml
2026-04-19 04:11 - 2026-04-19 04:11 - 001712767 _____ C:\Users\vikto\OneDrive\Documents\Viktor\CR - maturita\OneDrive\Plocha\Video.mhtml
2026-04-19 04:09 - 2026-04-19 04:09 - 001712742 _____ C:\Users\vikto\OneDrive\Documents\Viktor\CR - maturita\OneDrive\Plocha\Video Tugendhat 90 - Vila Tugendhat.mhtml
2026-04-17 17:55 - 2026-04-17 17:55 - 069160244 _____ C:\Users\vikto\Downloads\Josef_Petran_ed_Dejiny_hmotne_kultury_Di (3).pdf
2026-04-17 17:52 - 2026-04-17 17:52 - 073845327 _____ C:\Users\vikto\Downloads\Josef_Petran_ed_Dejiny_hmotne_kultury_Di (2).pdf
2026-04-17 17:51 - 2026-04-17 17:51 - 070509915 _____ C:\Users\vikto\Downloads\Josef_Petran_ed_Dejiny_hmotne_kultury_Di (1).pdf
2026-04-17 17:45 - 2026-04-17 17:46 - 005461990 _____ C:\Users\vikto\Downloads\Josef_Petran_ed_Dejiny_hmotne_kultury_Di (1).pdf.crdownload
2026-04-17 17:43 - 2026-04-17 17:43 - 068379007 _____ C:\Users\vikto\Downloads\Josef_Petran_ed_Dejiny_hmotne_kultury_Di.pdf
2026-04-17 00:29 - 2025-03-02 23:56 - 000017934 _____ C:\Users\vikto\OneDrive\Documents\Viktor\CR - maturita\OneDrive\Plocha\Volný čas.xlsx

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-05-15 19:00 - 2022-12-22 04:55 - 000000512 _____ C:\Users\Public\amdsfhdcd.bin
2026-05-15 18:50 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-05-15 18:36 - 2024-01-01 12:55 - 000000000 ____D C:\Users\vikto\AppData\Local\Norton
2026-05-15 18:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-05-15 18:17 - 2025-10-11 09:06 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2026-05-15 14:15 - 2023-12-27 21:23 - 000000000 ____D C:\Users\vikto\AppData\Local\Packages
2026-05-15 13:34 - 2023-12-28 23:55 - 000000000 ____D C:\Users\vikto\AppData\Roaming\Microsoft\Word
2026-05-15 13:19 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-05-15 13:17 - 2024-04-01 09:26 - 000000000 ___HD C:\Program Files\WindowsApps
2026-05-15 09:29 - 2023-12-27 21:38 - 000002258 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2026-05-14 23:31 - 2026-02-12 14:14 - 000000000 ___RD C:\Users\vikto\OneDrive\Documents\Viktor\CR - maturita\OneDrive\Plocha\FPF 2.semestr
2026-05-14 18:13 - 2023-12-27 21:23 - 000000000 ____D C:\Users\vikto\AppData\Local\D3DSCache
2026-05-14 11:35 - 2025-10-11 09:20 - 001603798 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-05-14 11:35 - 2024-04-01 09:24 - 000000000 ____D C:\WINDOWS\INF
2026-05-14 11:24 - 2025-10-11 09:18 - 000009344 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2026-05-14 11:24 - 2025-10-11 09:15 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-05-14 11:24 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ServiceState
2026-05-14 11:24 - 2023-12-27 21:40 - 000000000 ____D C:\ProgramData\Norton
2026-05-14 11:24 - 2022-05-25 21:05 - 000012288 ___SH C:\DumpStack.log.tmp
2026-05-14 11:23 - 2024-04-01 09:21 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2026-05-14 11:22 - 2025-10-11 09:06 - 000472584 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2026-05-14 11:21 - 2025-10-11 09:06 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK
2026-05-14 11:21 - 2024-04-01 18:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2026-05-14 11:21 - 2024-04-01 18:28 - 000000000 ____D C:\WINDOWS\SysWOW64\cs
2026-05-14 11:21 - 2024-04-01 18:28 - 000000000 ____D C:\WINDOWS\system32\cs
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ur-PK
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ug-CN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\tt-RU
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\te-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ta-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\sq-AL
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\quz-PE
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\qps-plocm
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\qps-ploc
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\or-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\nn-NO
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ne-NP
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mt-MT
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mr-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ml-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mk-MK
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mi-NZ
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lo-LA
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lb-LU
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kok-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kn-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\km-KH
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kk-KZ
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ka-GE
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\is-IS
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\hy-AM
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\hi-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gu-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gl-ES
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gd-GB
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ga-IE
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\fil-PH
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\fa-IR
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\eu-ES
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\cy-GB
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\be-BY
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\as-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\am-ET
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\af-ZA
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemResources
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\vi-VN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ur-PK
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ug-CN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\tt-RU
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\te-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ta-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\sq-AL
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\quz-PE
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\qps-plocm
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\qps-ploc
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\pa-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\or-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\nn-NO
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ne-NP
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mt-MT
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mr-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ml-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mk-MK
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mi-NZ
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lo-LA
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lb-LU
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kok-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kn-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\km-KH
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kk-KZ
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ka-GE
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\is-IS
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\id-ID
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\hy-AM
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\hi-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\gu-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\gl-ES
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\gd-GB
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ga-IE
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\fil-PH
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\fa-IR
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\eu-ES
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\et-EE
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\es-MX
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\cy-GB
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ca-ES
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\bn-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\be-BY
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\as-IN
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\am-ET
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\af-ZA
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2026-05-14 11:21 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2026-05-14 04:19 - 2023-12-27 21:36 - 000000000 ____D C:\Users\vikto\AppData\Roaming\Microsoft\PowerPoint
2026-05-13 23:31 - 2024-04-21 21:01 - 000001438 _____ C:\Users\vikto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Grammarly.lnk
2026-05-13 23:31 - 2024-04-21 21:01 - 000000000 ____D C:\Users\vikto\AppData\Local\Grammarly
2026-05-13 18:06 - 2025-10-11 09:11 - 003268096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2026-05-13 18:01 - 2023-12-28 00:24 - 000000000 ____D C:\WINDOWS\system32\MRT
2026-05-13 17:59 - 2023-12-28 00:24 - 220340424 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2026-05-11 12:28 - 2025-10-11 09:11 - 000000000 ____D C:\Users\vikto
2026-05-10 11:01 - 2024-04-01 09:26 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2026-05-10 11:01 - 2024-02-03 21:30 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2026-05-09 22:07 - 2024-01-16 20:07 - 004553160 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2026-05-09 22:07 - 2024-01-16 20:07 - 000154056 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe
2026-05-09 22:07 - 2024-01-16 20:07 - 000084424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe
2026-05-09 22:06 - 2024-01-16 20:07 - 000166344 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2026-05-09 21:58 - 2024-01-16 20:07 - 001141192 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2026-05-09 21:58 - 2024-01-16 20:07 - 000289224 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2026-05-09 21:58 - 2024-01-16 20:07 - 000264648 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2026-05-09 21:51 - 2022-05-25 21:06 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-05-09 21:50 - 2025-10-11 09:15 - 000003596 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-3709009798-2618340189-3513383678-1001
2026-05-09 21:50 - 2025-10-11 09:15 - 000003552 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-3709009798-2618340189-3513383678-1001
2026-05-09 21:50 - 2025-10-11 09:15 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2026-05-09 21:50 - 2024-02-01 17:54 - 000002034 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2026-05-09 10:51 - 2025-10-11 09:15 - 000000000 ____D C:\WINDOWS\system32\Tasks\Norton
2026-05-09 10:51 - 2024-10-30 00:43 - 001292896 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllSP.sys
2026-05-09 10:51 - 2024-10-30 00:43 - 000911456 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllSnx.sys
2026-05-09 10:51 - 2024-10-30 00:43 - 000633440 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllNetHub.sys
2026-05-09 10:51 - 2024-10-30 00:43 - 000466016 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllVmm.sys
2026-05-09 10:51 - 2024-10-30 00:43 - 000451168 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllbidsdriver.sys
2026-05-09 10:51 - 2024-10-30 00:43 - 000315488 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllbidsh.sys
2026-05-09 10:51 - 2024-10-30 00:43 - 000289376 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllMonFlt.sys
2026-05-09 10:51 - 2024-10-30 00:43 - 000259168 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllArPot.sys
2026-05-09 10:51 - 2024-10-30 00:43 - 000096864 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllRdr2.sys
2026-05-09 10:51 - 2024-10-30 00:43 - 000087136 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllbuniv.sys
2026-05-09 10:51 - 2024-10-30 00:43 - 000071776 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllRvrt.sys
2026-05-09 10:51 - 2024-10-30 00:43 - 000032864 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllKbd.sys
2026-05-09 10:51 - 2024-10-30 00:43 - 000021088 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\nllArDisk.sys
2026-05-08 13:43 - 2024-01-16 20:09 - 000000000 ____D C:\ProgramData\CanonIJPLM
2026-05-05 19:40 - 2025-10-11 10:02 - 000000000 ____D C:\WINDOWS\system32\ruxim
2026-05-05 19:40 - 2024-04-01 18:31 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\UUS
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemApps
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\setup
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2026-05-05 19:40 - 2024-04-01 09:26 - 000000000 ____D C:\Program Files\Common Files\System
2026-05-05 19:40 - 2024-04-01 09:21 - 000000000 ____D C:\WINDOWS\servicing
2026-05-04 12:19 - 2024-01-08 21:58 - 000002157 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2026-05-01 22:19 - 2025-10-11 09:15 - 000003638 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2026-05-01 22:19 - 2025-10-11 09:15 - 000003512 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2026-04-25 19:46 - 2023-12-28 23:55 - 000000000 ____D C:\Users\vikto\AppData\Roaming\Microsoft\Office
2026-04-24 17:15 - 2026-04-14 18:56 - 000000000 ____D C:\WINDOWS\Minidump
2026-04-24 17:15 - 2022-12-22 04:50 - 002078107 ____N C:\WINDOWS\Minidump\042426-12875-01.dmp
2026-04-24 17:14 - 2023-12-27 21:49 - 000000000 ____D C:\Users\vikto\AppData\Local\CrashDumps
2026-04-20 14:41 - 2023-12-27 21:38 - 000000000 ____D C:\Users\vikto\AppData\Local\Comms
2026-04-17 00:30 - 2024-03-28 14:31 - 000000000 ____D C:\Users\vikto\AppData\Roaming\Microsoft\Excel

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 14-05-2026 01
Ran by vikto (15-05-2026 19:00:42)
Running from C:\Users\vikto\Downloads
Microsoft Windows 11 Home Version 25H2 26200.8457 (X64) (2025-10-11 07:15:41)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-3709009798-2618340189-3513383678-500 - Administrators - Disabled)
DefaultAccount (S-1-5-21-3709009798-2618340189-3513383678-503 - Limited - Disabled)
Guest (S-1-5-21-3709009798-2618340189-3513383678-501 - Limited - Disabled)
marka (S-1-5-21-3709009798-2618340189-3513383678-1004 - Limited - Disabled)
ssuch (S-1-5-21-3709009798-2618340189-3513383678-1005 - Limited - Disabled)
vikto (S-1-5-21-3709009798-2618340189-3513383678-1001 - Administrators - Enabled) => C:\Users\vikto
WDAGUtilityAccount (S-1-5-21-3709009798-2618340189-3513383678-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Norton Security Ultra (Enabled - Up to date) {343E1860-FD6F-AB8D-96E4-A5006AA98D2C}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: Norton Security Ultra (Enabled) {0C059945-B700-AAD5-BDBB-0C35947ACA57}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1033-1033-7760-BC15014EA700}) (Version: 26.001.21529 - Adobe)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601149}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Canon IJ Network Scanner Selector EX2 (HKLM-x32\...\Canon_IJ_Network_Scanner_Selector_EX2) (Version: 2.0.10.2 - Canon Inc.)
Canon IJ Printer Assistant Tool (HKLM-x32\...\Canon IJ Printer Assistant Tool) (Version: 1.30.1.52 - Canon Inc.)
Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: 1.5.5.3 - Canon Inc.)
Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version: 6.5.2 - Canon Inc.)
Canon TS6300 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_TS6300_series) (Version: 1.02 - Canon Inc.)
Canon Wi-Fi Connection Assistant (HKLM-x32\...\Wi-Fi Connection Assistant) (Version: 1.50.0 - Canon Inc.)
CCleaner 7 (HKLM\...\CCleaner 7) (Version: 7.7.1313.1667 - Piriform)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.983.1 - Dropbox, Inc.) Hidden
FL Cloud Plugins version 1.9.6 (HKLM-x32\...\FL Cloud Plugins_is1) (Version: 1.9.6 - )
FL Studio 2025 (HKLM-x32\...\FL Studio 2025) (Version: 25.1.5.4976 - Image-Line)
FL Studio ASIO (HKLM-x32\...\FL Studio ASIO) (Version: - Image-Line)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 148.0.7778.168 - Google LLC)
Grammarly for Windows (HKU\S-1-5-21-3709009798-2618340189-3513383678-1001\...\Grammarly Desktop Integrations) (Version: 1.2.260.1887 - Grammarly Inc.)
K-Lite Codec Pack 19.6.0 Full (HKLM-x32\...\KLiteCodecPack_is1) (Version: 19.6.0 - KLCP)
Lenovo Now (HKLM-x32\...\{622FA116-13E7-4BB6-839C-A3E0E3ECDFE6}_is1) (Version: 4.6.0.44 - Lenovo)
Lenovo Smart Appearance Components (HKLM-x32\...\{13E9CBF6-6E32-40D0-874A-018DFEFB0851}_is1) (Version: 2.3.15.0 - Lenovo)
Lenovo Vantage Service (HKLM-x32\...\VantageSRV_is1) (Version: 4.2601.21.0 - Lenovo Group Ltd.)
Lenovo Voice Service (HKLM\...\{C59A85F5-DB04-4D09-BE1F-1B49B49EA9DA}_is1) (Version: 3.0.26.0 - Lenovo Group Ltd.)
Microsoft 365 - cs-cz (HKLM\...\O365HomePremRetail - cs-cz) (Version: 16.0.19029.20184 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 148.0.3967.54 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 148.0.3967.54 - Microsoft Corporation) Hidden
Microsoft GameInput (HKLM\...\{E0F8B2C9-50A7-4495-913B-AC17EF66F104}) (Version: 3.3.182.0 - Microsoft Corporation)
Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 26.070.0414.0001 - Microsoft Corporation)
Microsoft OneNote - cs-cz (HKLM\...\OneNoteFreeRetail - cs-cz) (Version: 16.0.19029.20184 - Microsoft Corporation)
Microsoft Teams Meeting Add-in for Microsoft Office (HKLM\...\{A7AB73A3-CB10-4AA5-9D38-6AEFFBDE4C91}) (Version: 1.26.08901 - Microsoft)
Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.38.33135 (HKLM-x32\...\{c649ede4-f16a-4486-a117-dcc2f2a35165}) (Version: 14.38.33135.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.38.33135 (HKLM\...\{19AFE054-CA83-45D5-A9DB-4108EF4BD391}) (Version: 14.38.33135 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.38.33135 (HKLM\...\{AA0C8AB5-7297-4D46-A0D9-08096FE59E46}) (Version: 14.38.33135 - Microsoft Corporation) Hidden
Movavi Video Editor 26 (HKU\S-1-5-21-3709009798-2618340189-3513383678-1001\...\Movavi Video Editor 26) (Version: 26.9.0 - Movavi)
Mozilla Firefox (x64 cs) (HKLM\...\Mozilla Firefox) (Version: 146.0.1 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 134.0 - Mozilla)
Norton Security Ultra (HKLM\...\Norton 360) (Version: 26.4.10932.2463 - Gen Digital Inc.)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.19029.20184 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.19029.20184 - Microsoft Corporation) Hidden
PDF-XChange Editor (HKLM\...\{4F71777D-BC2E-40B6-A7D3-8C8DB2EEA6E4}) (Version: 10.8.4.409 - PDF-XChange Co Ltd.) Hidden
PDF-XChange Editor (HKLM-x32\...\{bddb91ce-4e19-42b5-999b-19a99e2642e4}) (Version: 10.8.4.409 - PDF-XChange Co Ltd.)
Příručky společnosti EPSON (HKLM-x32\...\{84CECC1B-21EF-41B1-9A91-3E724E5D99D3}) (Version: 1.57.0.0 - Seiko Epson Corporation)
Registrace tiskárny (HKLM-x32\...\Canon EISRegistration) (Version: 1.9.1 - Canon Inc.)
Smart Note (HKLM\...\{E2715359-FAFC-4C28-8064-526EB44096AD}_is1) (Version: 1.0.13.1121 - Lenovo Group Limited)
WinRAR 7.01 (64-bit) (HKLM\...\WinRAR archiver) (Version: 7.01.0 - win.rar GmbH)

Chrome apps:
============
Google Photos (HKU\S-1-5-21-3709009798-2618340189-3513383678-1001\...\d309c1139a9ef4c16ebfda91d214451f) (Version: 1.0 - Google\Chrome)

Packages:
=========
Adobe Acrobat Reader -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Assets [2026-05-04] ()
AMD Radeon Software -> C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m [2025-08-01] (Advanced Micro Devices Inc.) [Startup Task]
Canon PRINT -> C:\Program Files\WindowsApps\34791E63.CanonInkjetSmartConnect_1.12.1.0_x64__6e5tt8cgb93ep [2026-02-27] (Canon Inc.) [Startup Task]
Dolby Access -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyAccess_3.27.9430.0_x64__rz1tebttyb220 [2026-05-11] (Dolby Laboratories)
Dolby Digital Plus decoder for PC OEMs -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyDigitalPlusDecoderOEM_1.2.588.0_x64__rz1tebttyb220 [2026-02-04] (Dolby Laboratories)
FMAPOControl2 -> C:\Program Files\WindowsApps\4505Fortemedia.FMAPOControl2_2.1.31.0_x64__4pejv7q2gmsnr [2025-09-22] (Fortemedia)
iCloud -> C:\Program Files\WindowsApps\AppleInc.iCloud_15.7.56.0_x64__nzyj5cx40ttqa [2026-01-30] (Apple Inc.) [Startup Task]
Instagram -> C:\Program Files\WindowsApps\Facebook.InstagramBeta_42.0.23.0_neutral__8xx8rvfyw5nnt [2025-09-25] (Instagram)
Lenovo Hotkeys -> C:\Program Files\WindowsApps\E0469640.LenovoUtility_4.7.18.0_x64__5grkq8ppsgwt4 [2025-06-09] (LENOVO INC) [Startup Task]
Lenovo Pen Settings -> C:\Program Files\WindowsApps\WacomTechnologyCorp.157535B83C264_8.2.8.0_neutral__ss941bf8mfs8a [2025-09-22] (Wacom Technology Corp.)
Lenovo Smart Appearance -> C:\Program Files\WindowsApps\E0469640.SmartAppearance_2.3.54.0_x64__5grkq8ppsgwt4 [2025-09-22] (LENOVO INC) [Startup Task]
Lenovo Vantage -> C:\Program Files\WindowsApps\E046963F.LenovoCompanion_10.2603.12.0_x64__k1h2ywk1493x8 [2026-04-23] (LENOVO INC.)
Lenovo Voice -> C:\Program Files\WindowsApps\E046963F.LenovoVoiceWorldWide_3.0.26.0_x64__k1h2ywk1493x8 [2025-08-01] (LENOVO INC.)
Microsoft Defender -> C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2602.23002.0_x64__8wekyb3d8bbwe [2026-03-22] (Microsoft Corporation) [Startup Task]
Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2023-12-27] (Microsoft Corp.)
Microsoft Journal -> C:\Program Files\WindowsApps\Microsoft.MicrosoftJournal_1.0.127.0_x64__8wekyb3d8bbwe [2025-12-11] (Microsoft Corporation)
Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_56.20201.588.0_x64__8wekyb3d8bbwe [2026-02-28] (Microsoft Corporation)
Microsoft.AIFabric.CBS.1.6 -> C:\WINDOWS\SystemApps\Microsoft.AIFabric.CBS.1.6_8wekyb3d8bbwe [2026-05-05] (Microsoft Corporation)
Microsoft.Office.ActionsServer -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\ActionsServer [2025-09-22] ()
Movavi Video Editor -> C:\Users\vikto\AppData\Roaming\Movavi Video Editor 26 [2026-03-01] ()
OfficePushNotificationsUtility -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16 [2025-09-22] ()
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.53.374.0_x64__dt26b99r8h8gj [2026-02-02] (Realtek Semiconductor Corp)
SpotifyAB.SpotifyMusic -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.289.539.0_x64__zpdnekdrzrea0 [2026-05-11] (Spotify AB) [Startup Task]
WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2616.100.0_x64__cv1g1gvanyjgm [2026-05-11] (WhatsApp Inc.) [Startup Task]
WinRAR -> C:\Program Files\WinRAR [2025-02-13] (win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3709009798-2618340189-3513383678-1001_Classes\CLSID\{113b8d53-e3e1-b7a2-c90a-176c40f3f722}\localserver32 -> C:\ProgramData\Lenovo\Udc\Hosts\x64\MessagingPlugin.exe (Lenovo -> )
CustomCLSID: HKU\S-1-5-21-3709009798-2618340189-3513383678-1001_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-3709009798-2618340189-3513383678-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-3709009798-2618340189-3513383678-1001_Classes\CLSID\{51694bf6-7178-71ba-ba8c-cd64aadfc7f1}\localserver32 -> "C:\ProgramData\Lenovo\Udc\Hosts\24.10.0.10\x64\MessagingPlugin.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-3709009798-2618340189-3513383678-1001_Classes\CLSID\{d4ae5d89-8f17-bc59-b756-da2f0979eaa4}\localserver32 -> C:\Users\vikto\AppData\Local\Grammarly\DesktopIntegrations\Grammarly.Desktop.exe (Grammarly, Inc. -> Grammarly Inc.)
CustomCLSID: HKU\S-1-5-21-3709009798-2618340189-3513383678-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-3709009798-2618340189-3513383678-1001_Classes\CLSID\{EABAE40C-B27C-455A-B672-F234DD780948}\InprocServer32 -> C:\Users\vikto\AppData\Local\Microsoft\TeamsMeetingAdd-in\1.26.08901\x64\Microsoft.Teams.MeetingAddin.DLL (Microsoft Corporation -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-3709009798-2618340189-3513383678-1001_Classes\CLSID\{efd4e8f5-6e0e-9405-4ec4-9c673447cfee}\localserver32 -> C:\Program Files\Lenovo\Lenovo Smart Appearance Components\Components\IntelligentSensingAwareService\LsaToast.exe (Lenovo -> Lenovo)
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [001BUOverlayProtected] -> {9C11454A-4B5C-4586-B0BB-E51BB6033668} => C:\Program Files\Norton\Suite\ashShell.dll [2026-05-09] (Gen Digital Inc. -> Gen Digital Inc.)
ShellIconOverlayIdentifiers: [002BUOverlayPending] -> {5A4597A9-CC87-4ED2-A7E5-3BC62CF54901} => C:\Program Files\Norton\Suite\ashShell.dll [2026-05-09] (Gen Digital Inc. -> Gen Digital Inc.)
ShellIconOverlayIdentifiers: [003BUOverlayExcluded] -> {42DE06EE-09E4-4808-A8AA-F63B1D3F6CE5} => C:\Program Files\Norton\Suite\ashShell.dll [2026-05-09] (Gen Digital Inc. -> Gen Digital Inc.)
ShellIconOverlayIdentifiers: [00nll] -> {472083B2-C522-11CF-8763-00608CC02F24} => C:\Program Files\Norton\Suite\ashShell.dll [2026-05-09] (Gen Digital Inc. -> Gen Digital Inc.)
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [00nll] -> {472083B2-C522-11CF-8763-00608CC02F24} => C:\Program Files\Norton\Suite\ashShell.dll [2026-05-09] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2026-04-29] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers1: [norton] -> {472083B2-C522-11CF-8763-00608CC02F24} => C:\Program Files\Norton\Suite\ashShell.dll [2026-05-09] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers1: [PDFXChange Editor Context menu] -> {2ACD35AB-F74A-4C20-AA9B-2DE80081626D} => C:\Program Files\Tracker Software\Shell Extensions\XCShellMenu.x64.dll [2026-02-24] (TRACKER SOFTWARE PRODUCTS (CANADA) LIMITED -> PDF-XChange Co Ltd.)
ContextMenuHandlers3: [00nll] -> {472083B2-C522-11CF-8763-00608CC02F24} => C:\Program Files\Norton\Suite\ashShell.dll [2026-05-09] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\26.070.0414.0001\FileSyncShell64.dll [2026-05-09] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers6: [norton] -> {472083B2-C522-11CF-8763-00608CC02F24} => C:\Program Files\Norton\Suite\ashShell.dll [2026-05-09] (Gen Digital Inc. -> Gen Digital Inc.)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\vikto\AppData\Local\Google\Chrome\User Data\Profile 5\Web Applications\_crx_ncmjhecbjeaamljdfahankockkkdmedg\Google Photos.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 5" --app-id=ncmjhecbjeaamljdfahankockkkdmedg
ShortcutWithArgument: C:\Users\vikto\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Chrome\Google Photos.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 5" --app-id=ncmjhecbjeaamljdfahankockkkdmedg
ShortcutWithArgument: C:\Users\vikto\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Google Photos.lnk -> C:\Program Files\Google\Chrome\Application\chrome_proxy.exe (Google LLC) -> --profile-directory="Profile 5" --app-id=ncmjhecbjeaamljdfahankockkkdmedg

==================== Loaded Modules (Whitelisted) =============

2022-12-22 04:54 - 2023-02-10 11:51 - 000393216 _____ () [File not signed] C:\Program Files\Lenovo\LVA Pro Service\libglog.dll
2024-01-16 20:11 - 2017-11-02 16:36 - 000008192 _____ (CANON INC.) [File not signed] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNS2_CSY.DLL
2024-01-16 20:11 - 2017-11-02 16:36 - 000104960 _____ (CANON INC.) [File not signed] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNS2_IMG.dll
2022-12-22 04:55 - 2022-12-22 04:55 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems64.dll] C:\Program Files\Microsoft Office\root\Client\AppVIsvSubsystems64.dll
2022-12-22 04:55 - 2022-12-22 04:55 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems64.dll] C:\Program Files\Microsoft Office\Root\Office16\AppVIsvSubsystems64.dll
2022-12-22 04:55 - 2022-12-22 04:55 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R64.dll] C:\Program Files\Microsoft Office\root\Client\C2R64.dll
2022-12-22 04:55 - 2022-12-22 04:55 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R64.dll] C:\Program Files\Microsoft Office\Root\Office16\c2r64.dll
2024-01-08 21:44 - 2018-06-15 05:14 - 000187392 _____ (Seiko Epson Corporation) [File not signed] C:\WINDOWS\System32\E_YLMBPME.DLL

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\nllSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\nllSP.sys => ""="Driver"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) =============

BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-09-22] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-09-22] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2022-05-07 07:24 - 2022-05-07 07:22 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Network ===========================

(Currently there is no automatic fix for this section.)

DNS Servers: 192.168.0.1
Windows Firewall is enabled.

Network Binding:
=============
Síťové připojení Bluetooth: Bluetooth Device (Personal Area Network) -> bthpan.sys
Wi-Fi: Realtek RTL8852BE WiFi 6 802.11ax PCIe Adapter -> rtwlane601.sys

vms_vsf: Hyper-V Virtual Switch Extension Filter
ms_l1vhlwf: Nested Network Virtualization
vms_vsp: Hyper-V Virtual Switch Extension Protocol

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-3709009798-2618340189-3513383678-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\vikto\AppData\Local\Packages\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\LocalCache\Microsoft\IrisService\11557233108920658582\134233190739547901.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)


==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKU\S-1-5-21-3709009798-2618340189-3513383678-1001\...\StartupApproved\Run: => "LenovoVantageToolbar"
HKU\S-1-5-21-3709009798-2618340189-3513383678-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{FD2430E6-CC06-4224-AB8C-0858F58A7EB5}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{33207493-42BE-487A-BDC7-8E2DE206405B}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{41995420-42D9-4F25-93CA-A53500FF6ABF}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{DC3D390B-0452-4615-BD02-F56E606FBF29}] => (Allow) C:\Program Files\Norton\Suite\NortonUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{10E0B064-A35D-4A88-B4EB-12B816086AB4}] => (Allow) C:\Program Files\Norton\Suite\NortonUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{E1DBD264-A50A-421D-9DF6-8482FED7BCB7}] => (Allow) C:\Program Files (x86)\Canon\Wi-Fi Connection Assistant\cnwiddsu\cnwiddsu2.exe (Canon Inc. -> CANON INC.)
FirewallRules: [{B738BFB8-9916-46FB-B6DD-F02BD2CDCBD3}] => (Allow) C:\Program Files (x86)\Canon\Wi-Fi Connection Assistant\cnwidadr2.exe (Canon Inc. -> CANON INC.)
FirewallRules: [EdgeWebView2-MDNS-In-UDP] => (Allow) C:\WINDOWS\system32\Microsoft-Edge-WebView\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{4299D57A-A15F-44F8-B2DB-D2CB2C752116}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.289.539.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{68398356-EE43-4ECF-8F97-9B4E4D43C9CE}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.289.539.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{CECB0C01-AA3B-4E97-B134-CCD05FF6AA73}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.289.539.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{94CD6DA8-B91C-46A0-AABA-4B840B1378FA}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.289.539.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{FFB1E700-FAE9-44EC-A481-34886EDAE382}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.289.539.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{FE7E262B-75B0-4BDF-A464-4E785FD00A96}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.289.539.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{B4FBFA12-6665-45F8-84C0-42CAF9BF04F2}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.289.539.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{8DC933E8-0DFE-4FCD-94EB-31D896F659B4}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.289.539.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{470E1CB3-3CC2-4954-9C0C-E85FD8516038}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.289.539.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{83EFEF02-5CA7-4655-B14A-B484F827379D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.289.539.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{F868DAB3-5D75-4510-AFEA-07D3CD2CE31A}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.289.539.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{98E3AB37-691F-434F-80F4-65AABAF59895}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.289.539.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{6BA0EFFA-23A1-4524-B792-D185CD9EB796}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.289.539.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{B085B70E-647A-4D62-AE82-BA17DDB6E4E5}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

13-05-2026 17:59:09 Windows Update

==================== Faulty Device Manager Devices ============

==================== Event log errors: ========================

Application errors:
==================
Error: (05/15/2026 04:23:26 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 31652. ID zprávy: [0x2509].

Error: (05/15/2026 09:28:10 AM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 7876. ID zprávy: [0x2509].

Error: (05/14/2026 07:40:21 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 14316. ID zprávy: [0x2509].

Error: (05/14/2026 04:32:33 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 27368. ID zprávy: [0x2509].

Error: (05/14/2026 01:17:44 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 400. ID zprávy: [0x2509].

Error: (05/14/2026 09:33:48 AM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 26436. ID zprávy: [0x2509].

Error: (05/14/2026 04:20:07 AM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 17328. ID zprávy: [0x2509].

Error: (05/14/2026 04:19:34 AM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - Došlo k chybě při inicializaci infrastruktury připojení profilovacího rozhraní API. Tento proces neumožní připojení profileru. HRESULT: 0x80004005. ID procesu (desítkově): 31172. ID zprávy: [0x2509].


System errors:
=============
Error: (05/15/2026 06:56:16 PM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3509) (User: NT AUTHORITY)
Description: Nepovedlo se přidružit zařízení – Vybrat ceremonii.

Error: (05/15/2026 06:46:15 PM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3509) (User: NT AUTHORITY)
Description: Nepovedlo se přidružit zařízení – Vybrat ceremonii.

Error: (05/15/2026 06:36:15 PM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3509) (User: NT AUTHORITY)
Description: Nepovedlo se přidružit zařízení – Vybrat ceremonii.

Error: (05/15/2026 06:21:56 PM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3509) (User: NT AUTHORITY)
Description: Nepovedlo se přidružit zařízení – Vybrat ceremonii.

Error: (05/15/2026 05:47:40 PM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3509) (User: NT AUTHORITY)
Description: Nepovedlo se přidružit zařízení – Vybrat ceremonii.

Error: (05/15/2026 05:37:40 PM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3509) (User: NT AUTHORITY)
Description: Nepovedlo se přidružit zařízení – Vybrat ceremonii.

Error: (05/15/2026 05:27:39 PM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3509) (User: NT AUTHORITY)
Description: Nepovedlo se přidružit zařízení – Vybrat ceremonii.

Error: (05/15/2026 05:17:38 PM) (Source: Microsoft-Windows-DeviceAssociationService) (EventID: 3509) (User: NT AUTHORITY)
Description: Nepovedlo se přidružit zařízení – Vybrat ceremonii.

Error: (04/25/2026 12:00:08 PM) (Source: disk) (EventID: 11) (User: )
Description: Ovladač zjistil chybu řadiče na \Device\Harddisk1\DR4.


CodeIntegrity:
===============
Date: 2026-05-11 10:24:21
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Norton\Suite\NortonSvc.exe) attempted to load \Device\HarddiskVolume3\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2026-04-24 17:12:38
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\edgehtml.dll that did not meet the Windows signing level requirements.

Date: 2026-04-24 17:12:38
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Windows\System32\UserDataPlatformHelperUtil.dll that did not meet the Windows signing level requirements.


==================== Memory info ===========================

BIOS: LENOVO L7CN26WW 05/23/2025
Motherboard: LENOVO LNVNB161216
Processor: AMD Ryzen 5 7530U with Radeon Graphics
Percentage of memory in use: 64%
Total physical RAM: 15726.31 MB
Available physical RAM: 5548.48 MB
Total Virtual: 23150.31 MB
Available Virtual: 7722.63 MB

==================== Drives ================================

Drive c: (Windows-SSD) (Fixed) (Total:951.65 GB) (Free:790.1 GB) (Model: SAMSUNG MZAL41T0HBLB-00BL2) NTFS

\\?\Volume{af26619a-bb03-4432-a8f8-8f6f62c90ff7}\ (WINRE_DRV) (Fixed) (Total:1.95 GB) (Free:1.2 GB) NTFS
\\?\Volume{2ef6a67e-32d7-40cd-a08c-4fa15342410e}\ (SYSTEM_DRV) (Fixed) (Total:0.25 GB) (Free:0.21 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 953.9 GB) (Disk ID: FE68812C)

Partition: GPT.

==================== End of Addition.txt =======================

Re: Prosím o vyřešení problému - pop up okno

Napsal: 15 kvě 2026 18:53
od Rudy
Zdravím!
Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Edge: Restriction <==== ATTENTION
Task: {12AD21ED-AA47-499A-9B2B-A4520770B21A} - System32\Tasks\Lenovo\Vantage\StartupFixPlan => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\\uninstall.exe /repair (No File)
Task: {0A616CD8-EAFD-4A13-BD67-86DE9573A2F8} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoBoostAddin.Prompt => C:\Program Files (x86)\Lenovo\VantageService\4.0.52.0\ScheduleEventAction.exe LenovoBoostAddin.Prompt (No File)
Task: {C8E8717B-7343-40F9-8224-F9E195ABB601} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServciePatch => "C:\Program Files (x86)\Lenovo\VantageService\3.13.25.0\OOBECompleteWatch.exe" (No File)
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {0BB36A32-0D9E-4297-AFD7-6BD7B5DB4C9B} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
U3 FamilySvc; no ImagePath
C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
C:\DumpStack.log.tmp

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: Prosím o vyřešení problému - pop up okno

Napsal: 15 kvě 2026 21:09
od markalous
Posílám log po fixu.
Jinak jsem vyskakovací okno bloknul v Edge v sekci oznamování. Dělala to nějaká stránka s příponou .in
Teď už nic nevyskakuje.
------------------------------------------------------------
Fix result of Farbar Recovery Scan Tool (x64) Version: 14-05-2026 01
Ran by vikto (15-05-2026 21:58:46) Run:1
Running from C:\Users\vikto\OneDrive\Documents\Viktor\CR - maturita\OneDrive\Plocha
Loaded Profiles: vikto
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Edge: Restriction <==== ATTENTION
Task: {12AD21ED-AA47-499A-9B2B-A4520770B21A} - System32\Tasks\Lenovo\Vantage\StartupFixPlan => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\\uninstall.exe /repair (No File)
Task: {0A616CD8-EAFD-4A13-BD67-86DE9573A2F8} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoBoostAddin.Prompt => C:\Program Files (x86)\Lenovo\VantageService\4.0.52.0\ScheduleEventAction.exe LenovoBoostAddin.Prompt (No File)
Task: {C8E8717B-7343-40F9-8224-F9E195ABB601} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServciePatch => "C:\Program Files (x86)\Lenovo\VantageService\3.13.25.0\OOBECompleteWatch.exe" (No File)
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {0BB36A32-0D9E-4297-AFD7-6BD7B5DB4C9B} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
U3 FamilySvc; no ImagePath
C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
C:\DumpStack.log.tmp

EmptyTemp:
End
*****************

Processes closed successfully.
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiSpyware"="0" => value restored successfully
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiVirus"="0" => value restored successfully
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender => removed successfully
HKLM\SOFTWARE\Policies\Mozilla => removed successfully
HKLM\SOFTWARE\Policies\Google => removed successfully
HKLM\SOFTWARE\Policies\Microsoft\Edge => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{12AD21ED-AA47-499A-9B2B-A4520770B21A}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{12AD21ED-AA47-499A-9B2B-A4520770B21A}" => removed successfully
C:\WINDOWS\System32\Tasks\Lenovo\Vantage\StartupFixPlan => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\Vantage\StartupFixPlan" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0A616CD8-EAFD-4A13-BD67-86DE9573A2F8}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0A616CD8-EAFD-4A13-BD67-86DE9573A2F8}" => removed successfully
C:\WINDOWS\System32\Tasks\Lenovo\Vantage\Schedule\LenovoBoostAddin.Prompt => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\Vantage\Schedule\LenovoBoostAddin.Prompt" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C8E8717B-7343-40F9-8224-F9E195ABB601}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C8E8717B-7343-40F9-8224-F9E195ABB601}" => removed successfully
C:\WINDOWS\System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServciePatch => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Lenovo\Vantage\Lenovo.Vantage.ServciePatch" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{077BA067-7C15-40F0-B22E-C9DC2A54B4A2}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{077BA067-7C15-40F0-B22E-C9DC2A54B4A2}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Location\Notifications => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Location\Notifications" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0BB36A32-0D9E-4297-AFD7-6BD7B5DB4C9B}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0BB36A32-0D9E-4297-AFD7-6BD7B5DB4C9B}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunUpdateNotificationMgr" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker" => removed successfully
HKLM\System\CurrentControlSet\Services\FamilySvc => removed successfully
FamilySvc => service removed successfully
Could not move "C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2" => Scheduled to move on reboot.
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.

=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 49722990 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B
Windows/system/drivers => 174302409 B
Edge => 771097940 B
Chrome => 3355035597 B
Firefox => 1322808 B
Opera => 0 B

Local\Temp, Local\*.tmp, LocalLow\Temp, Roaming\Temp, Roaming\*.tmp , IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 106885422 B
systemprofile32 => 0 B
LocalService => 260248 B
NetworkService => 1178 B
vikto => 389471868 B

RecycleBin => 0 B
EmptyTemp: => 4.5 GB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 15-05-2026 22:03:38)

C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2 => Is moved successfully
C:\DumpStack.log.tmp => Could not move

==== End of Fixlog 22:03:38 ====