Extrémné pomalý start počítače
Napsal: 01 čer 2026 10:07
Zdravím,
před několika dny mi počítač začal startoval výrazně déle než obvykle (10+ minut).
Opravil jsem pomocí "sfc /scannow" a zdálo se, že se problém vyřešil, ale dnes se situace opakovala.
Prosím o kontrolu logu, děkuji.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 31-05-2026 01
Ran by user (administrator) on DESKTOP-TMT (MSI MS-7978) (01-06-2026 10:54:07)
Running from C:\Users\www\Desktop\FRST64.exe
Loaded Profiles: user
Platform: Microsoft Windows 10 Pro Version 22H2 19045.6456 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Inc. -> Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 2017\Acrobat\acrotray.exe
(C:\Apps\FlashFolder\FlashFolder64.exe ->) (zett42) [File not signed] C:\Apps\FlashFolder\FlashFolder.exe
(C:\Apps\Gameplay Time Tracker\GameplayTimeTracker.exe ->) (mik61 (independent software developer) -> mik61) [File not signed] [File is in use] C:\Apps\Gameplay Time Tracker\Support64.exe
(C:\Apps\Total Commander\TOTALCMD64.EXE ->) (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) C:\Apps\PDF X-Change Portable\PDFXEdit.exe
(C:\Program Files (x86)\Backblaze\bzbui.exe ->) (BACKBLAZE, INC. -> ) C:\Program Files (x86)\Backblaze\bzbuitray.exe
(C:\Program Files (x86)\Backblaze\bzserv.exe ->) (BACKBLAZE, INC. -> ) C:\Program Files (x86)\Backblaze\x64\bzfilelist64.exe
(C:\Program Files (x86)\Backblaze\bzserv.exe ->) (BACKBLAZE, INC. -> ) C:\Program Files (x86)\Backblaze\x64\bztransmit64.exe
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\Microsoft OneDrive\OneDrive.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\148.0.3967.96\msedgewebview2.exe <27>
(C:\Program Files\Mozilla Firefox\firefox.exe ->) (Mozilla Corporation -> Mozilla Foundation) C:\Program Files\Mozilla Firefox\crashhelper.exe
(C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe ->) (NVIDIA Corporation -> ) C:\Program Files\NVIDIA Corporation\FrameViewSDK\bin\PresentMon_x64.exe
(C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\FrameViewSDK\FvContainer\FvContainer.exe
(C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\FrameViewSDK\FvContainer\FvContainer.System.exe
(C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe ->) (NVIDIA Corporation -> NVIDIA) C:\Program Files\NVIDIA Corporation\FrameViewSDK\bin\nvrla.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA app\CEF\NVIDIA Overlay.exe <5>
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA app\ShadowPlay\nvsphelper64.exe
(Comodo Security Solutions, Inc. -> COMODO) C:\Program Files (x86)\COMODO\Internet Security Essentials\vkise.exe
(DriverStore\FileRepository\cui_dch.inf_amd64_38cfab2b652e4701\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_38cfab2b652e4701\igfxEM.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe <10>
(explorer.exe ->) () [File not signed] C:\Apps\Ditto\Ditto.exe
(explorer.exe ->) () [File not signed] C:\Apps\RBTray\RBTray.exe
(explorer.exe ->) (BACKBLAZE, INC. -> ) C:\Program Files (x86)\Backblaze\bzbui.exe
(explorer.exe ->) (EPIM Technologies Inc. -> Astonsoft) C:\Apps\Essential PIM\EPIMPro.exe
(explorer.exe ->) (F.lux Software LLC -> f.lux Software LLC) C:\Users\www\AppData\Local\FluxSoftware\Flux\flux.exe
(explorer.exe ->) (Ferdium Contributors) [File not signed] C:\Apps\Ferdium\Ferdium.exe <12>
(explorer.exe ->) (Ghisler Software GmbH -> Ghisler Software GmbH) C:\Apps\Total Commander\TOTALCMD64.EXE
(explorer.exe ->) (IP Izmaylov Artem Andreevich -> Artem Izmaylov) C:\Apps\AIMP\AIMP.exe
(explorer.exe ->) (KARPOLAN) [File not signed] C:\Apps\Keyboard Leds\KeyboardLeds.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\26.084.0504.0007\OneDrive.Sync.Service.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.OutlookForWindows_1.2026.520.400_x64__8wekyb3d8bbwe\olk.exe
(explorer.exe ->) (mik61 (independent software developer) -> mik61) [File not signed] C:\Apps\Gameplay Time Tracker\GameplayTimeTracker.exe
(explorer.exe ->) (Open-Shell) [File not signed] C:\Apps\Open Shell\StartMenu.exe
(explorer.exe ->) (Private Internet Access, Inc. -> Private Internet Access Incorporated) C:\Program Files\Private Internet Access\pia-client.exe
(explorer.exe ->) (SOFTPERFECT PTY. LTD. -> SoftPerfect) C:\Apps\Networx\networx.exe
(Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastUI.exe <5>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <10>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2605.59121.0_x64__8wekyb3d8bbwe\M365Copilot.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <12>
(Open Source Developer, Noriyuki Miyazaki -> Crystal Dew World) C:\Apps\CrystalDiskInfo\DiskInfo64.exe
(REALiX, s.r.o. -> REALiX s.r.o.) C:\Apps\HWiNFO64\HWiNFO64.EXE
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (BACKBLAZE, INC. -> ) C:\Program Files (x86)\Backblaze\bzserv.exe
(services.exe ->) (Broadcom Corporation -> Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(services.exe ->) (Comodo Security Solutions, Inc. -> COMODO) C:\Program Files (x86)\COMODO\Internet Security Essentials\isesrv.exe
(services.exe ->) (Comodo Security Solutions, Inc. -> COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe <2>
(services.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\afwServ.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_38cfab2b652e4701\igfxCUIService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_c2ac023763d5d3ad\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_51f685305808e3a5\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_51f685305808e3a5\IntelCpHeciSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\Microsoft Update Health Tools\uhssvc.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <4>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_fb921a73e66cc88e\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (NVIDIA Corporation -> NVIDIA) C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe
(services.exe ->) (Private Internet Access, Inc. -> ) C:\Program Files\Private Internet Access\pia-service.exe
(services.exe ->) (voidtools PTY LTD -> voidtools) C:\Apps\Everything\Everything.exe <2>
(services.exe ->) (zett42) [File not signed] C:\Apps\FlashFolder\FlashFolder64.exe <2>
(svchost.exe ->) (Alexandr Irza) [File not signed] C:\Apps\Volume2\Volume2.exe
(svchost.exe ->) (Comodo Security Solutions, Inc. -> COMODO) C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe
(svchost.exe ->) (Comodo Security Solutions, Inc. -> COMODO) C:\Program Files\COMODO\COMODO Internet Security\cis.exe <2>
(svchost.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner.exe
(svchost.exe ->) (Kazuyuki Nakayama) [File not signed] C:\Apps\HotSwap\HotSwap!.EXE
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.WindowsStore_22604.1401.8.0_x64__8wekyb3d8bbwe\StoreDesktopExtension.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.OutlookForWindows_1.2026.520.400_x64__8wekyb3d8bbwe\olkexthost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [1061544 2026-05-06] (Gen Digital Inc. -> Gen Digital Inc.)
HKLM\...\Run: [COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10}] => C:\Program Files\COMODO\COMODO Internet Security\cis.exe [13190952 2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
HKLM\...\Run: [NetWorx] => C:\Apps\Networx\networx.exe [7627080 2016-09-24] (SOFTPERFECT PTY. LTD. -> SoftPerfect)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [9501160 2025-11-12] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-10] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [Everything] => C:\Apps\Everything\Everything.exe [2272424 2026-01-23] (voidtools PTY LTD -> voidtools)
HKLM\...\Run: [MTPW] => C:\Apps\MiniTool Partition Wizard 13\updatechecker.exe [183024 2026-02-11] (MiniTool Software Limited -> )
HKLM\...\Run: [Open-Shell Start Menu] => C:\Apps\Open Shell\StartMenu.exe [279552 2026-05-12] (Open-Shell) [File not signed]
HKLM-x32\...\Run: [IseUI] => C:\Program Files (x86)\COMODO\Internet Security Essentials\vkise.exe [4187856 2019-01-29] (Comodo Security Solutions, Inc. -> COMODO)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 2017\Acrobat\Acrotray.exe [2192592 2022-07-29] (Adobe Inc. -> Adobe Systems Inc.)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [211046848 2026-05-28] (Dropbox, Inc -> Dropbox, Inc.)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4749160 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Run: [GameplayTimeTracker] => C:\Apps\Gameplay Time Tracker\GameplayTimeTracker.exe [932472 2018-09-17] (mik61 (independent software developer) -> mik61) [File not signed]
HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Run: [CCleaner Smart Cleaning] => "C:\Apps\CCleaner\CCleaner64.exe" /MONITOR (No File)
HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Run: [Backblaze] => C:\Program Files (x86)\Backblaze\bzbui.exe [1885944 2025-10-10] (BACKBLAZE, INC. -> )
HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Run: [Microsoft.Lists] => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\OneDrive.Sync.Service.exe [956304 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Run: [Ditto] => C:\Apps\Ditto\Ditto.exe [5226496 2023-04-15] () [File not signed]
HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat 2017\Acrobat\AdobeCollabSync.exe [889032 2022-07-29] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Run: [f.lux] => C:\Users\www\AppData\Local\FluxSoftware\Flux\flux.exe [1536232 2026-04-08] (F.lux Software LLC -> f.lux Software LLC)
HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Run: [Ferdium] => C:\Apps\Ferdium\Ferdium.exe [205735936 2026-04-18] (Ferdium Contributors) [File not signed]
HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Run: [KeyboardLeds.exe] => C:\Apps\Keyboard Leds\KeyboardLeds.exe [912896 2012-09-06] (KARPOLAN) [File not signed]
HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Run: [Private Internet Access] => C:\Program Files\Private Internet Access\pia-client.exe [5342008 2024-09-02] (Private Internet Access, Inc. -> Private Internet Access Incorporated)
HKU\S-1-5-21-2069861480-1445196129-2239134032-1003\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4749160 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-18\...\Run: [Backblaze] => C:\Program Files (x86)\Backblaze\bzbui.exe [1885944 2025-10-10] (BACKBLAZE, INC. -> )
HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\WINDOWS\system32\AdobePDF.dll [65192 2022-07-29] (Adobe Inc. -> Adobe Systems Inc)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\148.0.7778.179\Installer\chrmstp.exe [7621272 2026-05-22] (Google LLC -> Google LLC)
Startup: C:\Users\www\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Crystal Disk Info.lnk [2025-01-03]
ShortcutTarget: Crystal Disk Info.lnk -> C:\Apps\CrystalDiskInfo\DiskInfo64.exe (Open Source Developer, Noriyuki Miyazaki -> Crystal Dew World)
Startup: C:\Users\www\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EPIMPro.lnk [2025-09-11]
ShortcutTarget: EPIMPro.lnk -> C:\Apps\Essential PIM\EPIMPro.exe (EPIM Technologies Inc. -> Astonsoft)
Startup: C:\Users\www\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\HotSwap!.lnk [2022-11-08]
ShortcutTarget: HotSwap!.lnk -> C:\Apps\HotSwap\HotSwap!.EXE (Kazuyuki Nakayama) [File not signed]
Startup: C:\Users\www\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\HWiNFO® 64.lnk [2024-10-21]
ShortcutTarget: HWiNFO® 64.lnk -> C:\Apps\HWiNFO64\HWiNFO64.EXE (REALiX, s.r.o. -> REALiX s.r.o.)
Startup: C:\Users\www\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Poslat do aplikace OneNote.lnk [2026-05-25]
ShortcutTarget: Poslat do aplikace OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\Users\www\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\RBTray.lnk [2025-03-20]
ShortcutTarget: RBTray.lnk -> C:\Apps\RBTray\RBTray.exe () [File not signed]
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Edge: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {26C14958-9170-4B03-BACF-85D28A9301F4} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1612800 2026-01-23] (Adobe Inc. -> Adobe Inc.)
Task: {3A4B59FC-8303-4429-9691-304A9EA23575} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [9501160 2025-11-12] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {AB4FB337-D48F-43ED-8CE9-8798A80B36C7} - System32\Tasks\Adobe-Genuine-Software-Integrity-Scheduler-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [9818088 2025-11-12] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {B7A3FDCF-8FE8-4FEA-B115-249B680C2F57} - System32\Tasks\Avast Software\Avast Antivirus Patcher => C:\Program Files\Common Files\Avast Software\Icarus\avast-av\icarus.exe [9607904 2026-04-21] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {2B76BE92-C029-4E14-AF22-BB5C842C34DA} - System32\Tasks\Avast Software\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5783720 2026-05-06] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {0EAAA6DB-AEDB-4040-A18F-72E76F2093FE} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2977504 2025-10-13] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {37C38227-9931-4963-AB4A-55FD237A5062} - System32\Tasks\CCleaner 7 - Skip UAC - S-1-5-21-2069861480-1445196129-2239134032-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [5598328 2026-04-23] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {AD305F10-9FDB-40B4-A3E3-9DFA7340A61F} - System32\Tasks\CCleaner Update => C:\Apps\CCleaner\CCUpdate.exe (No File)
Task: {2D9CC3E0-D7E1-48CD-B073-88E610215BE3} - System32\Tasks\CCleanerCrashReporting => C:\Apps\CCleaner\CCleanerBugReport.exe -> --product 90 --send dumps|report --path "C:\Apps\CCleaner\LOG" --programpath "C:\Apps\CCleaner" --guid "䷠铓Ȇ" --version "6.39.0.11548" --silent
Task: {D54151F7-2C49-471C-966C-6B2B479871AD} - System32\Tasks\CCleanerSkipUAC - user => "C:\Apps\CCleaner\CCleaner.exe" $(Arg0) (No File)
Task: {157949D8-F251-4189-BB89-73F4A49545AE} - System32\Tasks\COMODO\COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10} => C:\Program Files\COMODO\COMODO Internet Security\cis.exe [13190952 2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
Task: {9BF51966-2ED5-497D-BEB3-EF65971FFB48} - System32\Tasks\COMODO\COMODO CMC {06A09C0F-DD9C-4191-A670-71115CD78627} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [5758488 2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
Task: {CA53AAE2-B1B1-4F69-A798-5BDC3DF14315} - System32\Tasks\COMODO\COMODO Maintenance {947247B5-026A-4437-9371-770782BE839D} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [5758488 2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
Task: {61706708-BB44-4701-ADCA-6EE41439829B} - System32\Tasks\COMODO\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [5758488 2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
Task: {93333CE4-6606-4565-A627-D8E4C6B8652D} - System32\Tasks\COMODO\COMODO Telemetry {18AD3DFA-30C0-4B5F-84F7-F1870B1A4921} => C:\Program Files\COMODO\COMODO Internet Security\cis.exe [13190952 2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
Task: {60D1DF64-BE79-4165-822B-F9B7903366DD} - System32\Tasks\COMODO\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [5758488 2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
Task: {EC4A22D5-0AF6-4571-A386-9A5314AA38AE} - System32\Tasks\CrystalDiskInfo => C:\Apps\CrystalDiskInfo\DiskInfo64.exe [2869744 2024-11-20] (Open Source Developer, Noriyuki Miyazaki -> Crystal Dew World)
Task: {DFDE9BDC-7AD9-47B7-ADC0-6C26D83FE30F} - System32\Tasks\DropboxSystem\DropboxUpdater\DropboxUpdaterTaskSystem123.0.6299.144{A2C761DD-5121-403A-8F07-773792436798} => C:\Program Files\Dropbox\DropboxUpdater\123.0.6299.144\updater.exe [5898168 2025-12-16] (Dropbox, Inc -> Dropbox, Inc.)
Task: {2E54D273-117D-4D51-B86F-C0BCAFB7326C} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem149.0.7814.0{7BE7CCC8-BABB-4BDD-B051-D1AC6F5528D3} => C:\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\updater.exe [8770200 2026-04-28] (Google LLC -> Google LLC)
Task: {8D4355E1-1F04-4055-9B60-2652FD86E3C7} - System32\Tasks\HotSwap! Applet => C:\Apps\HotSwap\HotSwap!.EXE [219648 2019-01-07] (Kazuyuki Nakayama) [File not signed]
Task: {6F0D0385-5659-408D-B5A2-B77FEEC96566} - System32\Tasks\HWiNFO => C:\Apps\HWiNFO64\HWiNFO64Launcher.exe [102896 2026-02-24] (REALiX, s.r.o. -> REALiX s.r.o.)
Task: {0D558DEE-D61A-4B79-A631-27C341D9C0FA} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\IntelPTTEKRecertification.exe [855664 2023-12-14] (Intel Corporation -> Intel(R) Corporation)
Task: {8C13FD14-D964-4559-B5BC-1AF39DB4C656} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16430968 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {72802AF3-14EB-44D0-BC8B-8AB6B883B87E} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28436800 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {8A1500E0-E5FC-4FA8-87DD-1C2CA3CCD517} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe [73568 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {7D66EF67-8E62-4BBA-8CA4-0D88EA7DC922} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28436800 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {F861673D-BCFD-4815-AC21-323E1F2E00F9} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [427368 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {BB42E195-7A24-4E6B-87F3-B7A7BD0F6DEA} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [427368 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {EE256AC9-109D-431D-8B38-D753BD8005DC} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [1354600 2026-05-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {2C2810BF-3E97-4AA8-BE92-5BC3F9907BF7} - System32\Tasks\Microsoft\Office\Office Serviceability Manager => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\officesvcmgr.exe [4434464 2026-05-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {E471D486-401C-4BE3-87D8-8CC4EBEEC3BC} - System32\Tasks\Microsoft\Office\Office Startup Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16430968 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {C5A02847-85A8-4397-9C6C-67398F8D9225} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\OS Edition Upgrade event listener created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {2AE4C00C-BE86-4854-BA06-0E20CD1CEFE2} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Passport for Work alert created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {90C0B8C0-0B38-47C3-8DC5-75667A27BC91} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Provisioning initiated session => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {B963D957-163E-4C30-A349-6FC8016E078F} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\PushLaunch => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {80F3DF7D-C3B8-4028-967C-3CF03A85F99C} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\PushRenewal => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {C0B714CE-460D-49EC-9427-DAB321C27366} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Refresh schedule created by Declared Configuration to refresh any settings changed on the device => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {8733935C-31D2-4B09-A0FE-B7D6D16E6615} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Schedule #1 created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {18C84DBE-D08C-4707-B228-FF155AF5E97D} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Schedule #2 created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {C8237650-C409-4634-BA9A-DDA3ABD3AA32} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Schedule #3 created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {1029CC69-3FEF-44CB-A6B2-DE963A4122E9} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Schedule created by enrollment client for renewal of certificate warning => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {0EB85016-2CF7-4A5C-BCBA-D49E8DF2D765} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Schedule to run OMADMClient by client => C:\WINDOWS\system32\omadmclient.exe [514560 2025-09-27] (Microsoft Windows -> Microsoft Corporation)
Task: {1AB7341A-CF90-4BA2-B987-570F62E0A5A7} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Schedule to run OMADMClient by server => C:\WINDOWS\system32\omadmclient.exe [514560 2025-09-27] (Microsoft Windows -> Microsoft Corporation)
Task: {B9001CA0-5609-4440-983A-8B97320CCFA0} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Win10 S Mode event listener created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {ECC7C24F-4169-4106-907E-C0C66CBE243E} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Wsc Startup event listener created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {1CDC59D6-B5E6-4AAD-BDFC-C12A9AC4FD25} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\OS Edition Upgrade event listener created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {B4CC7591-0531-439C-B1D2-A505DF164802} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\Passport for Work alert created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {8CD7F952-2FAE-4CB6-B6D7-6F0933A708E2} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\Provisioning initiated session => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {1AD32243-34B9-4171-9818-01C563436FBF} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\PushLaunch => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {514600FA-159D-4DB9-B5F6-EA46BCD0D80A} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\PushRenewal => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {7DE085CA-B10E-4F1C-A1A6-7CE4A7E663A6} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\PushUpgrade => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {A4152469-E178-426F-82AB-30C73A8DB219} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\Schedule #1 created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {44600E71-AAD0-456D-A453-39AEE8040F25} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\Schedule #2 created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {A4A4651B-F778-433E-BD20-3EBDA5038B52} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\Schedule #3 created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {92F48037-24D9-4819-AF4E-2C30233E7F60} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\Schedule created by enrollment client for renewal of certificate warning => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {6510713F-23E2-408F-8773-5D6C55510D5C} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\Schedule to run OMADMClient by client => C:\WINDOWS\system32\omadmclient.exe [514560 2025-09-27] (Microsoft Windows -> Microsoft Corporation)
Task: {E7E7B326-461B-4191-AF42-D85D0DCE94C0} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\Schedule to run OMADMClient by server => C:\WINDOWS\system32\omadmclient.exe [514560 2025-09-27] (Microsoft Windows -> Microsoft Corporation)
Task: {7BB2F584-2AA4-4824-B1B4-C52D460BEE52} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\Win10 S Mode event listener created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {2D79982E-B6ED-481A-BAA8-98AD30321480} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\Wsc Startup event listener created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {84A314B8-36E5-4090-ABED-17CAC66C90A8} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\SessionRetry\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Retry Schedule created for incomplete session {5437FFE3-ED4C-4F1A-8642-5F6EB8FDBB47} => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {BB025B7A-7651-458B-B02B-3A1BB8D4200E} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\SessionRetry\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Retry Schedule created for incomplete session {82D647CE-CB6A-487E-BBE9-4C33E712D49C} => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {89703C66-4D05-4DB1-9FAF-192B7320B7C0} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\SessionRetry\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Retry Schedule created for incomplete session {862BBF62-A6E3-3A2A-9CE7-63CE2EB9D65E} => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {2F27ADCF-A717-4152-A594-36E669CD09D2} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\SessionRetry\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Retry Schedule created for incomplete session {EB3BC420-A185-4445-AB5C-A20B48E28901} => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {A44EC5B6-37DF-44E5-85ED-ED73C3957701} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\SessionRetry\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\Retry Schedule created for incomplete session {2E62EC57-A9A6-4713-BF06-E8727525DC45} => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {DD07BC97-B30F-41F1-A7BF-5B0F46004E71} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\SessionRetry\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\Retry Schedule created for incomplete session {862BBF62-A6E3-3A2A-9CE7-63CE2EB9D65E} => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {42AD38F2-1AFA-4031-95F0-17336AD3D971} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\SessionRetry\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\Retry Schedule created for incomplete session {D43E7169-7604-4C68-B0F7-0EAE16E1B4E0} => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {298D785D-391C-4CD0-A2D7-76D0FB1CE1B4} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\SessionRetry\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\Retry Schedule created for incomplete session {F4B993D9-0198-4E43-8B6B-56D67AC9B419} => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {FFD2B1A9-F716-45FA-ADC7-D5C3814B87D7} - System32\Tasks\MiniToolPartitionWizard => C:\Apps\MiniTool Partition Wizard 13\updatechecker.exe [183024 2026-02-11] (MiniTool Software Limited -> )
Task: {F4DE88A5-93F4-4B4A-8FBB-ED4430B60D18} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-2069861480-1445196129-2239134032-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [705152 2026-05-27] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {80B036ED-1748-4770-98AC-F49B95575088} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [33920 2026-05-27] (Mozilla Corporation -> Mozilla Foundation)
Task: {19F9B03B-3BBB-429D-A74A-B06AB7528A23} - System32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA App.exe [3324528 2025-10-15] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {1617D921-AD67-4193-A262-E5C41EFFF8A8} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4428176 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {827DAA0E-FEA6-41EC-8805-95321B121743} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-2069861480-1445196129-2239134032-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4428176 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {35F65D03-DEF1-4B4F-8C33-8FDC2D89E25E} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-2069861480-1445196129-2239134032-1003 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4428176 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {F87D281B-D96C-438B-8D00-1B8519758ED1} - System32\Tasks\OneDrive Startup Task-S-1-5-21-2069861480-1445196129-2239134032-1001 => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\OneDriveLauncher.exe [758632 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {F6A593C5-9F04-4BE3-B5E6-3B21CC9185DA} - System32\Tasks\OneDrive Startup Task-S-1-5-21-2069861480-1445196129-2239134032-1003 => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\OneDriveLauncher.exe [758632 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {2E937CE0-AB45-4F58-B609-C29DD3E33727} - System32\Tasks\Patch My PC Home Updater - Check Apps => C:\Apps\Patch My PC Home Updater\PatchMyPC-HomeUpdater.exe [63969008 2026-04-08] (Patch My PC, LLC -> Patch My PC) -> C:\Apps\Patch My PC Home Updater\/c
Task: {657E3527-EDEF-4B65-9752-9FA6D4D3D1D1} - System32\Tasks\Patch My PC Home Updater - Self Updater => C:\Apps\Patch My PC Home Updater\PatchMyPC-HomeUpdater.exe [63969008 2026-04-08] (Patch My PC, LLC -> Patch My PC) -> C:\Apps\Patch My PC Home Updater\\/u
Task: {DD407729-9ECB-4B0A-920E-AA5A38EBDB27} - System32\Tasks\Patch My PC Home Updater - Update Apps => C:\Apps\Patch My PC Home Updater\PatchMyPC-HomeUpdater.exe [63969008 2026-04-08] (Patch My PC, LLC -> Patch My PC) -> C:\Apps\Patch My PC Home Updater\/silent
Task: {1C712FDB-8AC1-4AE1-95B9-9E5AEA9BDF8A} - System32\Tasks\Piriform\CCleaner 7 - S-1-5-21-2069861480-1445196129-2239134032-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [5598328 2026-04-23] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {DD20405F-9E6F-4A06-9D16-997B13970E02} - System32\Tasks\Piriform\CCleaner 7 - S-1-5-21-2069861480-1445196129-2239134032-1003 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [5598328 2026-04-23] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {51CF0EC8-9955-42A6-8FB0-934AE604CA38} - System32\Tasks\Piriform\CCleaner 7 - Scheduled Cleaning - default - S-1-5-21-2069861480-1445196129-2239134032-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [5598328 2026-04-23] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {ED7B36EC-384B-4F75-8F99-43806057013B} - System32\Tasks\Piriform\CCleaner 7 BugReport => C:\Program Files\Piriform\CCleaner 7\CCleanerBugReport.exe [6635128 2026-04-23] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --product 234 --programpath "C:\Program Files\Piriform\CCleaner 7" --configpath "C:\Program Files\Piriform\CCleaner 7\data" --path "C:\Program Files\Piriform\CCleaner 7\log" --path "C:\Program Files\Piriform\CCleaner 7\data\dumps" --logpath "C:\Program Files\Piriform\CCleaner 7 (the data entry has 58 more characters).
Task: {56508720-0A3F-4E0A-BBAB-6EB17ACF808A} - System32\Tasks\Piriform\CCleaner 7 Update => C:\Program Files\Common Files\Piriform\Icarus\piriform-ccl\icarus.exe [9274080 2026-01-19] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {6769CEA1-CD36-43E5-9856-D361F49F500E} - System32\Tasks\S-1-5-21-2069861480-1445196129-2239134032-1001\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Login Schedule created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {6C06F984-9BED-42C7-89A4-48493E9B6E2E} - System32\Tasks\Volume² Autorun => C:\Apps\Volume2\Volume2.exe [4529152 2023-09-16] (Alexandr Irza) [File not signed]
Task: {4B789D61-965E-4394-8313-C7A8762BADFD} - System32\Tasks\ZoomUpdateTaskUser-S-1-5-21-2069861480-1445196129-2239134032-1001 => C:\Users\www\AppData\Roaming\Zoom\bin\Zoom.exe [511872 2026-05-19] (Zoom Communications, Inc. -> Zoom Communications, Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Apps\CCleaner\CCleanerBugReport.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\..\Interfaces\{4a75c44a-973f-4d9e-b35b-ff630fd03690}: [NameServer] 156.154.70.22,156.154.71.22
Tcpip\..\Interfaces\{4a75c44a-973f-4d9e-b35b-ff630fd03690}: [DhcpNameServer] 62.129.50.20 85.135.32.100
FireFox:
========
FF TaskBarID: 308046B0AF4A39CB -> C:\Program Files\Mozilla Firefox
FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat 2017\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat 2017\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2019-07-31]
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat 2017\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2026-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2026-01-28] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-12-04] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 2017\Acrobat\Air\nppdf32.dll [2022-07-29] (Adobe Inc. -> Adobe Systems Inc.)
Edge:
=======
Edge Profile: C:\Users\www\AppData\Local\Microsoft\Edge\User Data\Default [2026-06-01]
Edge Notifications: Default -> hxxps://d5dvoem071bc73eq48f0.kyronbotshield.co.in
Edge Extension: (Grammarly: AI Writing and Grammar Checker App) - C:\Users\www\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\cnlefmmeadmemmdciolhbnfeacpdfbkd [2026-06-01]
Edge Extension: (Dokumenty Google offline) - C:\Users\www\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-04-16]
Edge Extension: (Edge relevant text changes) - C:\Users\www\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2025-04-05]
Edge Extension: (Zotero Connector) - C:\Users\www\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nmhdhpibnnopknkmonacoephklnflpho [2026-06-01]
Chrome:
=======
CHR Profile: C:\Users\www\AppData\Local\Google\Chrome\User Data\Default [2026-05-22]
CHR Extension: (GradeTransferer - Transfer, Scale & Sort Grades | Save Time, Reduce Errors) - C:\Users\www\AppData\Local\Google\Chrome\User Data\Default\Extensions\boapjdphamdkfjfdibbdpcemcdncfhjf [2026-04-02]
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\www\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2026-04-02]
CHR Extension: (Google Docs Offline) - C:\Users\www\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-04-02]
CHR Extension: (Grading Assistant: Grade transferer tool) - C:\Users\www\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlgjbkohnabomkgcfgihkacllbbdfoca [2026-01-09]
CHR Extension: (Chrome Web Store Payments) - C:\Users\www\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2026-01-07]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [180216 2026-01-23] (Adobe Inc. -> Adobe Inc.)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [9824744 2025-11-12] (Adobe Inc. -> Adobe Systems, Incorporated)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [7984296 2026-05-06] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [1038504 2026-05-06] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [2736296 2026-05-06] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [1091752 2026-05-06] (Gen Digital Inc. -> Gen Digital Inc.)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2025-04-05] (Avast Software s.r.o. -> AVAST Software)
R2 bzserv; C:\Program Files (x86)\Backblaze\bzserv.exe [1016056 2025-10-10] (BACKBLAZE, INC. -> )
R2 CCleaner7; C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe [30293112 2026-04-23] (Gen Digital Inc. -> Gen Digital Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13380488 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
R2 CmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [11334144 2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
R2 CmdAgentProt; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [11334144 2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
S3 cmdvirth; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2675504 2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
R2 DbxSvc; C:\WINDOWS\System32\DbxSvc.exe [59048 2026-02-03] (Dropbox, Inc -> Dropbox, Inc.)
S3 DropboxElevationService; C:\Program Files (x86)\Dropbox\Client\256.3.3676\DropboxElevationService.exe [1659336 2026-05-28] (Dropbox, Inc -> Dropbox, Inc.)
S2 DropboxUpdaterInternalService123.0.6299.144; C:\Program Files\Dropbox\DropboxUpdater\123.0.6299.144\updater.exe [5898168 2025-12-16] (Dropbox, Inc -> Dropbox, Inc.)
S2 DropboxUpdaterService123.0.6299.144; C:\Program Files\Dropbox\DropboxUpdater\123.0.6299.144\updater.exe [5898168 2025-12-16] (Dropbox, Inc -> Dropbox, Inc.)
R2 Everything; C:\Apps\Everything\Everything.exe [2272424 2026-01-23] (voidtools PTY LTD -> voidtools)
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncHelper.exe [3610984 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
R2 FlashFolder; C:\Apps\FlashFolder\FlashFolder64.exe [596992 2012-07-21] (zett42) [File not signed]
R2 isesrv; C:\Program Files (x86)\COMODO\Internet Security Essentials\isesrv.exe [1044176 2019-01-29] (Comodo Security Solutions, Inc. -> COMODO)
S3 MBAMService; C:\Apps\MBAM\MBAMService.exe [11481720 2026-05-19] (Malwarebytes Inc -> Malwarebytes)
S3 MBVpnTunnelService; C:\Apps\MBAM\MBVpnTunnelService.exe [2788304 2025-06-03] (Malwarebytes Inc. -> Malwarebytes)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_fb921a73e66cc88e\Display.NvContainer\NVDisplay.Container.exe [1275624 2026-04-28] (NVIDIA Corporation -> NVIDIA Corporation)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\26.084.0504.0007\OneDriveUpdaterService.exe [4018024 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
R2 PrivateInternetAccessService; C:\Program Files\Private Internet Access\pia-service.exe [1511752 2024-09-02] (Private Internet Access, Inc. -> )
S3 PrivateInternetAccessWireguard; C:\Program Files\Private Internet Access\pia-wgservice.exe [4152576 2024-09-02] (Private Internet Access, Inc. -> )
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [803064 2025-11-03] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [21088 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [259168 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [451168 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [315488 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [87136 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [29144 2025-07-29] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [32864 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [289376 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [633440 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [96864 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [71776 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [911456 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [1292896 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [250464 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [466016 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S0 cmdboot; C:\WINDOWS\System32\DRIVERS\cmdboot.sys [17576 2019-10-22] (Microsoft Windows Early Launch Anti-malware Publisher -> COMODO)
R1 cmderd; C:\WINDOWS\System32\DRIVERS\cmderd.sys [38880 2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
R1 cmdGuard; C:\WINDOWS\System32\DRIVERS\cmdguard.sys [844000 2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
R1 cmdhlp; C:\WINDOWS\system32\DRIVERS\cmdhlp.sys [47104 2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
S3 gKbdfltr; C:\WINDOWS\System32\drivers\gKbdfltr.sys [29576 2020-09-15] (KYE SYSTEMS CORP. -> )
R3 HWiNFO_214; C:\Users\www\AppData\Local\Temp\HWiNFO_x64_214.sys [60072 2026-05-31] (Microsoft Windows Hardware Compatibility Publisher -> REALiX) <==== ATTENTION
R1 inspect; C:\WINDOWS\system32\DRIVERS\inspect.sys [130256 2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
S3 ioFakDrv; C:\WINDOWS\System32\drivers\ioFakDrv.sys [35928 2020-09-15] (KYE Systems Corp -> KYE System Corp.)
S3 ioFakMap; C:\WINDOWS\System32\drivers\ioFakMap.sys [24664 2020-09-15] (KYE Systems Corp -> KYE System Corp.)
R1 isedrv; C:\WINDOWS\system32\drivers\isedrv.sys [63256 2018-08-29] (Comodo Security Solutions, Inc. -> COMODO)
S3 LGBusEnum; C:\WINDOWS\system32\drivers\LGBusEnum64.sys [46264 2022-05-12] (Logitech Inc -> Logitech Inc.)
S3 LGJoyHidFilter; C:\WINDOWS\System32\drivers\LGJoyHidFilter64.sys [67768 2022-05-12] (Logitech Inc -> Logitech Inc.)
S3 LGJoyHidLo; C:\WINDOWS\System32\drivers\LGJoyHidLo64.sys [54456 2022-05-12] (Logitech Inc -> Logitech Inc.)
S3 LGJoyXlCore; C:\WINDOWS\system32\drivers\LGJoyXlCore64.sys [76480 2022-05-12] (Logitech Inc -> Logitech Inc.)
S3 LGSHidFilt; C:\WINDOWS\System32\drivers\LGSHidFilt.Sys [64280 2022-05-12] (Logitech -> Logitech Inc.)
S3 LGSUsbFilt; C:\WINDOWS\System32\drivers\LGSUsbFilt.Sys [41752 2022-05-12] (Logitech -> Logitech Inc.)
S3 LGVirHid; C:\WINDOWS\system32\drivers\LGVirHid64.sys [34496 2022-05-12] (Logitech Inc -> Logitech Inc.)
R2 mbamchameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [235584 2026-05-19] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [22120 2025-06-03] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
S3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [245864 2026-02-24] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 pia-wintun; C:\WINDOWS\System32\drivers\pia-wintun.sys [40304 2025-09-28] (Private Internet Access, Inc. -> Private Internet Access, Inc.)
R3 PiaWFPCallout; C:\WINDOWS\system32\DRIVERS\PiaWFPCallout.sys [37248 2024-09-02] (Private Internet Access, Inc. -> )
R0 pwdrvio; C:\WINDOWS\System32\pwdrvio.sys [19152 2025-08-29] (MiniTool Solution Ltd -> )
S3 pwdspio; C:\WINDOWS\system32\pwdspio.sys [12504 2025-08-29] (MiniTool Solution Ltd -> )
S3 ScpVBus; C:\WINDOWS\System32\drivers\ScpVBus.sys [44080 2016-09-27] (Shaul Eizikovich -> Nefarius Software Solutions)
R1 ViGEmBus; C:\WINDOWS\System32\drivers\ViGEmBus.sys [249400 2022-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Nefarius Software Solutions e.U.)
S3 vjoy; C:\WINDOWS\System32\drivers\vjoy.sys [67448 2019-07-14] (On-site Dental Systems (Justin Shafer) -> Shaul Eizikovich)
S3 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [25704 2022-10-03] (WDKTestCert user,132375440089837053 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 HWiNFO_206; \??\C:\Users\www\AppData\Local\Temp\HWiNFO_x64_206.sys (No File) <==== ATTENTION
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-06-01 10:54 - 2026-06-01 10:55 - 000056187 _____ C:\Users\www\Desktop\FRST.txt
2026-06-01 10:53 - 2026-06-01 10:53 - 002782208 _____ (Farbar) C:\Users\www\Desktop\FRST64.exe
2026-06-01 10:31 - 2026-06-01 10:31 - 000254600 _____ C:\Users\www\Downloads\7089_John_Boncamper.pdf
2026-06-01 09:34 - 2026-06-01 10:14 - 000000030 _____ C:\Users\www\Desktop\Repair Wndows.bat
2026-05-31 16:19 - 2026-05-31 16:19 - 000000000 ___HD C:\$AV_ASW
2026-05-31 00:17 - 2026-05-31 00:17 - 000542978 _____ C:\Users\www\Downloads\BucherHelmond_SocialMediaAffordances_preprint.pdf
2026-05-31 00:13 - 2026-05-31 00:13 - 000502364 _____ C:\Users\www\Downloads\70 - Original.pdf
2026-05-30 21:55 - 2026-05-30 21:55 - 000204227 _____ C:\Users\www\Downloads\Doing educational ethnography in an online world methodological challenges choices and innovations.pdf
2026-05-30 21:27 - 2026-05-30 21:27 - 000392181 _____ C:\Users\www\Downloads\1.pdf
2026-05-30 21:14 - 2026-05-30 21:14 - 001849415 _____ C:\Users\www\Downloads\Collins-MultimodalityInvitation-2017.pdf
2026-05-30 21:12 - 2026-05-30 21:12 - 000535436 _____ C:\Users\www\Downloads\10.4324_9781315760674_previewpdf.pdf
2026-05-30 20:55 - 2026-05-30 20:55 - 002840684 _____ C:\Users\www\Downloads\Netnography-Redefined-Kozinets-R.-V.-2015.pdf
2026-05-30 20:46 - 2026-05-30 20:46 - 000229422 _____ C:\Users\www\Downloads\costello-et-al-2017-netnography.pdf
2026-05-30 20:44 - 2026-05-30 20:44 - 002262913 _____ C:\Users\www\Downloads\10.4324_9781003001430_previewpdf.pdf
2026-05-30 20:36 - 2026-05-30 20:36 - 000836041 _____ C:\Users\www\Downloads\ethics3.pdf
2026-05-30 20:35 - 2026-05-30 20:35 - 000328518 _____ C:\Users\www\Downloads\ethics.pdf
2026-05-30 16:00 - 2026-05-30 16:00 - 000117468 _____ C:\Users\www\Downloads\2025-12-02_Vyhlaska-c-489-2025-Sb.pdf
2026-05-30 14:57 - 2026-05-30 14:57 - 001343406 _____ C:\Users\www\Downloads\Our History is the Future_ Mni Wiconi and the Struggle for Native.pdf
2026-05-30 13:46 - 2026-05-30 13:46 - 000001083 _____ C:\Users\www\Desktop\Private Internet Access.lnk
2026-05-29 20:08 - 2026-05-29 20:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2026-05-27 19:40 - 2026-05-27 19:40 - 000304560 _____ C:\Users\www\Downloads\531_csr_000531_fin-0005.pdf
2026-05-27 10:44 - 2026-05-29 11:27 - 000000000 ____D C:\Program Files\Mozilla Firefox
2026-05-24 18:18 - 2026-05-24 18:18 - 000000825 _____ C:\Users\Public\Desktop\Vortex.lnk
2026-05-24 18:18 - 2026-05-24 18:18 - 000000825 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vortex.lnk
2026-05-24 09:48 - 2026-05-24 09:48 - 000000963 _____ C:\Users\Public\Desktop\Lost Records - Bloom & Rage.lnk
2026-05-23 10:10 - 2026-05-23 10:10 - 000000000 ____D C:\Users\www\Desktop\FRST-OlderVersion
2026-05-22 23:26 - 2026-05-22 23:26 - 000000000 ____D C:\Users\www\AppData\Local\COTEG
2026-05-22 17:12 - 2026-05-27 10:44 - 000392320 _____ (Mozilla Foundation) C:\Users\www\Desktop\Firefox.exe
2026-05-21 06:45 - 2026-05-21 06:45 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2026-05-20 16:53 - 2026-05-20 16:53 - 000428012 _____ C:\Users\www\Downloads\UK-15829-version1-18_opatreni_rektora_pravidla_kyberneticke_bezpecnosti_uk.pdf
2026-05-20 11:22 - 2026-05-20 11:22 - 000000000 ____D C:\Users\www\AppData\Local\VisionaireStudio
2026-05-20 11:22 - 2026-05-20 11:22 - 000000000 ____D C:\Users\www\AppData\Local\Visionaire Editor
2026-05-20 11:22 - 2026-05-20 11:22 - 000000000 ____D C:\Users\www\AppData\Local\Inklingwood Studios
2026-05-20 11:07 - 2026-05-20 11:07 - 000000579 _____ C:\Users\Public\Desktop\Foolish Mortals.lnk
2026-05-19 19:28 - 2026-05-19 19:28 - 000000000 ____D C:\Users\www\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom
2026-05-19 19:28 - 2026-05-19 19:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XMedia Recode 64bit
2026-05-19 19:27 - 2026-05-19 19:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Open-Shell
2026-05-19 19:26 - 2026-05-19 19:26 - 000000000 ____D C:\Users\www\AppData\Local\com.superhuman.web-client
2026-05-19 19:21 - 2026-04-16 08:27 - 000127208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2026-05-19 19:20 - 2026-04-28 09:53 - 002402696 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2026-05-19 19:20 - 2026-04-28 09:53 - 002402696 _____ C:\WINDOWS\system32\vulkaninfo.exe
2026-05-19 19:20 - 2026-04-28 09:53 - 001908104 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2026-05-19 19:20 - 2026-04-28 09:53 - 001908104 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2026-05-19 19:20 - 2026-04-28 09:53 - 001581968 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2026-05-19 19:20 - 2026-04-28 09:53 - 001581968 _____ C:\WINDOWS\system32\vulkan-1.dll
2026-05-19 19:20 - 2026-04-28 09:53 - 001395600 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2026-05-19 19:20 - 2026-04-28 09:53 - 001395600 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2026-05-19 19:20 - 2026-04-28 09:53 - 000478440 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2026-05-19 19:20 - 2026-04-28 09:53 - 000375016 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2026-05-19 19:20 - 2026-04-28 09:49 - 026361064 _____ C:\WINDOWS\system32\nvidia-pcc.exe
2026-05-19 19:20 - 2026-04-28 09:49 - 001616104 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2026-05-19 19:20 - 2026-04-28 09:49 - 001574120 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2026-05-19 19:20 - 2026-04-28 09:49 - 001333480 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2026-05-19 19:20 - 2026-04-28 09:49 - 001223912 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2026-05-19 19:20 - 2026-04-28 09:49 - 000676584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvofapi64.dll
2026-05-19 19:20 - 2026-04-28 09:49 - 000510184 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvofapi.dll
2026-05-19 19:20 - 2026-04-28 09:48 - 024678120 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2026-05-19 19:20 - 2026-04-28 09:48 - 021715176 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2026-05-19 19:20 - 2026-04-28 09:48 - 007683304 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2026-05-19 19:20 - 2026-04-28 09:48 - 004175080 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2026-05-19 19:20 - 2026-04-28 09:48 - 002318568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2026-05-19 19:20 - 2026-04-28 09:48 - 001716968 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2026-05-19 19:20 - 2026-04-28 09:48 - 001059560 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2026-05-19 19:20 - 2026-04-28 09:48 - 000814824 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2026-05-19 19:20 - 2026-04-28 09:48 - 000468712 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2026-05-19 19:20 - 2026-04-28 09:47 - 005919464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2026-05-19 19:20 - 2026-04-28 09:47 - 005627096 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2026-05-19 19:20 - 2026-04-28 09:47 - 005469928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll
2026-05-19 19:20 - 2026-04-28 09:47 - 004925696 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2026-05-19 19:20 - 2026-04-28 09:47 - 000853736 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2026-05-19 19:20 - 2026-04-16 08:27 - 000149181 _____ C:\WINDOWS\system32\nvinfo.pb
2026-05-16 14:48 - 2026-05-16 14:48 - 000000583 _____ C:\Users\Public\Desktop\Call of the Elder Gods.lnk
2026-05-16 14:18 - 2026-05-16 14:18 - 000000000 ____D C:\Users\www\AppData\Roaming\EPIM Pro
2026-05-13 20:15 - 2026-05-13 20:15 - 000000567 _____ C:\Users\Public\Desktop\Directive 8020.lnk
2026-05-12 20:13 - 2026-05-12 20:13 - 001034070 _____ C:\Users\www\Downloads\typographic_cheatsheet_1_1_upr.pdf
2026-05-12 19:29 - 2026-05-12 19:29 - 000375296 _____ (Open-Shell) C:\WINDOWS\SysWOW64\StartMenuHelper32.dll
2026-05-12 19:18 - 2026-05-12 19:18 - 000456192 _____ (Open-Shell) C:\WINDOWS\system32\StartMenuHelper64.dll
2026-05-12 06:12 - 2021-05-25 09:34 - 004267541 _____ C:\Users\www\Desktop\Moore and Sanders - Anthropology in Theory Issues in Epistemology.pdf
2026-05-12 06:03 - 2026-05-12 06:03 - 002188368 _____ C:\Users\www\Downloads\Tema C2 - PRO - Geertz (CZ)-1.pdf
2026-05-06 23:15 - 2026-05-06 23:15 - 000099742 _____ C:\Users\www\Downloads\online-event-ethnography-and-visual-qualitative-methods-advanced-methodology-course-collection-treatment-and-analysis-of-data.pdf
2026-05-06 21:37 - 2026-05-06 21:36 - 000324264 _____ (Gen Digital Inc.) C:\WINDOWS\system32\aswBoot.exe
2026-05-06 20:50 - 2026-05-06 20:50 - 000105184 _____ C:\Users\www\Downloads\Vyúčtování cesty pro EPK.pdf
2026-05-06 08:46 - 2026-05-06 08:46 - 000647816 _____ C:\Users\www\Downloads\FHS-3233-version1-doporuceni_hvs.pdf
2026-05-06 08:26 - 2026-05-06 08:26 - 000366463 _____ C:\Users\www\Downloads\Tema 12 - PROTI - Graeber.pdf
2026-05-06 08:25 - 2026-05-06 08:25 - 000264878 _____ C:\Users\www\Downloads\Tema 12 - PRO - Viveiros de Castro.pdf
2026-05-06 08:22 - 2026-05-06 08:22 - 000348767 _____ C:\Users\www\Downloads\Tema 11 - PROTI - Brumann.pdf
2026-05-06 08:21 - 2026-05-06 08:21 - 000369508 _____ C:\Users\www\Downloads\Tema 11 - PRO - Abu-Lughod.pdf
2026-05-06 08:19 - 2026-05-06 08:19 - 000199930 _____ C:\Users\www\Downloads\Tema 10 - PROTI - Günel and Watanabe.pdf
2026-05-06 08:16 - 2026-05-06 08:16 - 000379485 _____ C:\Users\www\Downloads\Tema 10 - PRO - Setti.pdf
2026-05-06 08:06 - 2026-05-06 08:06 - 000926126 _____ C:\Users\www\Downloads\Tema 9 - PROTI - Carneiro.pdf
2026-05-06 08:06 - 2026-05-06 08:06 - 000776493 _____ C:\Users\www\Downloads\Tema 9 - PRO - Geertz.pdf
2026-05-06 07:29 - 2026-05-06 07:29 - 000394054 _____ C:\Users\www\Downloads\Tema 8 - PROTI - Meighan.pdf
2026-05-06 07:29 - 2026-05-06 07:29 - 000390899 _____ C:\Users\www\Downloads\Tema 8 - PRO - Chasing In.pdf
2026-05-06 06:42 - 2026-05-06 06:42 - 000654867 _____ C:\Users\www\Downloads\Tema 7 - PROTI - Trask.pdf
2026-05-06 06:40 - 2026-05-06 06:40 - 000800068 _____ C:\Users\www\Downloads\Tema 7 - PRO - Keesing-1.pdf
2026-05-06 06:33 - 2026-05-06 06:33 - 000107622 _____ C:\Users\www\Downloads\Tema 6 - PROTI - DAndrade.pdf
2026-05-06 06:31 - 2026-05-06 06:31 - 000093767 _____ C:\Users\www\Downloads\Tema 6 - PRO - Scheper-Hughes.pdf
2026-05-06 06:30 - 2026-05-06 06:30 - 000841804 _____ C:\Users\www\Downloads\Tema 5 - PROTI - Skinner.pdf
2026-05-06 06:30 - 2026-05-06 06:30 - 000801837 _____ C:\Users\www\Downloads\Tema 5 - PRO - Salmon.pdf
2026-05-06 06:26 - 2026-05-06 06:26 - 000101706 _____ C:\Users\www\Downloads\lauder2003-1.pdf
2026-05-06 06:25 - 2026-05-06 06:25 - 000612987 _____ C:\Users\www\Downloads\Téma 4 - PRO - Fluehr-Lobban.pdf
2026-05-06 06:23 - 2026-05-06 06:23 - 000316755 _____ C:\Users\www\Downloads\Tema 3 - PROTI - Killcullen and McFate.pdf
2026-05-06 06:22 - 2026-05-06 06:22 - 003520357 _____ C:\Users\www\Downloads\Tema 3 - PRO - Gonzales.pdf
2026-05-06 06:11 - 2026-05-06 06:11 - 000929200 _____ C:\Users\www\Downloads\Tema 1 - PROTI - Holmes and Holmes.pdf
2026-05-06 06:10 - 2026-05-06 06:10 - 002422275 _____ C:\Users\www\Downloads\Tema 1 - PRO - Freeman-1.pdf
2026-05-06 06:03 - 2026-05-06 06:03 - 002422275 _____ C:\Users\www\Downloads\Tema 1 - PRO - Freeman.pdf
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-06-01 10:55 - 2025-05-28 16:39 - 000000000 ____D C:\FRST
2026-06-01 10:53 - 2025-04-05 20:47 - 001474832 _____ C:\WINDOWS\system32\Drivers\sfi.dat
2026-06-01 10:43 - 2025-04-05 21:12 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2026-06-01 10:00 - 2025-04-05 21:09 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-06-01 09:42 - 2025-04-05 20:37 - 000000000 ____D C:\Users\www\AppData\Local\Packages
2026-06-01 09:14 - 2025-04-05 21:42 - 000000000 ____D C:\Users\www\AppData\Local\OpenShell
2026-06-01 08:42 - 2025-04-05 21:09 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-06-01 08:41 - 2025-09-11 20:54 - 000000000 ____D C:\Users\www\AppData\Roaming\Dropbox
2026-06-01 08:41 - 2025-09-11 20:54 - 000000000 ____D C:\Users\www\AppData\Local\Dropbox
2026-06-01 08:41 - 2025-04-15 10:41 - 000000000 ____D C:\Users\www\AppData\Roaming\Ferdium
2026-06-01 08:40 - 2026-01-12 20:57 - 000000000 __SHD C:\Users\www\OneDriveCloudTemp
2026-06-01 08:40 - 2025-04-21 17:33 - 000003462 _____ C:\WINDOWS\system32\Tasks\Volume² Autorun
2026-06-01 08:40 - 2025-04-06 08:50 - 000000000 ____D C:\ProgramData\firebird
2026-06-01 08:40 - 2022-10-17 18:01 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2026-05-31 23:44 - 2025-04-13 23:21 - 000002998 _____ C:\WINDOWS\system32\Tasks\HotSwap! Applet
2026-05-31 23:44 - 2025-04-05 20:16 - 000000000 ____D C:\ProgramData\NVIDIA
2026-05-31 23:14 - 2026-03-04 16:45 - 000002446 _____ C:\WINDOWS\system32\Tasks\MiniToolPartitionWizard
2026-05-31 23:14 - 2025-10-31 19:09 - 000002406 _____ C:\WINDOWS\system32\Tasks\CCleaner 7 - Skip UAC - S-1-5-21-2069861480-1445196129-2239134032-1001
2026-05-31 23:14 - 2025-10-03 20:25 - 000003388 _____ C:\WINDOWS\system32\Tasks\Patch My PC Home Updater - Check Apps
2026-05-31 23:14 - 2025-10-02 19:00 - 000002998 _____ C:\WINDOWS\system32\Tasks\Patch My PC Home Updater - Self Updater
2026-05-31 23:14 - 2025-07-24 10:30 - 000002572 _____ C:\WINDOWS\system32\Tasks\CrystalDiskInfo
2026-05-31 23:14 - 2025-07-24 10:19 - 000002608 _____ C:\WINDOWS\system32\Tasks\HWiNFO
2026-05-31 23:14 - 2025-04-27 18:45 - 000002970 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2026-05-31 23:14 - 2025-04-08 08:58 - 000003364 _____ C:\WINDOWS\system32\Tasks\ZoomUpdateTaskUser-S-1-5-21-2069861480-1445196129-2239134032-1001
2026-05-31 23:14 - 2025-04-08 08:49 - 000002508 _____ C:\WINDOWS\system32\Tasks\Adobe-Genuine-Software-Integrity-Scheduler-1.0
2026-05-31 23:14 - 2025-04-08 08:45 - 000002596 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0
2026-05-31 23:14 - 2025-04-08 08:41 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2026-05-31 23:14 - 2025-04-06 18:33 - 000002234 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - user
2026-05-31 23:14 - 2025-04-06 18:18 - 000002838 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting
2026-05-31 23:14 - 2025-04-06 18:18 - 000000550 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job
2026-05-31 23:14 - 2025-04-05 22:00 - 000003010 _____ C:\WINDOWS\system32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2026-05-31 23:14 - 2025-04-05 21:32 - 000003076 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-2069861480-1445196129-2239134032-1003
2026-05-31 23:14 - 2025-04-05 21:32 - 000003074 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-2069861480-1445196129-2239134032-1001
2026-05-31 23:14 - 2025-04-05 21:26 - 000003070 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2069861480-1445196129-2239134032-1003
2026-05-31 23:14 - 2025-04-05 21:26 - 000002716 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2026-05-31 23:14 - 2025-04-05 20:53 - 000003220 _____ C:\WINDOWS\system32\Tasks\Intel PTT EK Recertification
2026-05-31 23:14 - 2025-04-05 20:39 - 000003070 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2069861480-1445196129-2239134032-1001
2026-05-31 23:14 - 2025-04-05 20:22 - 000003642 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{17871486-6DD9-4C3F-AFDA-EE455A9C08F1}
2026-05-31 23:14 - 2025-04-05 20:22 - 000003416 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{A7043252-555B-4159-94C9-9FB4B5B0A2CE}
2026-05-31 22:10 - 2025-04-05 20:37 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2026-05-31 20:36 - 2025-04-05 20:15 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2026-05-31 12:59 - 2025-04-05 21:10 - 000716770 _____ C:\WINDOWS\system32\perfh005.dat
2026-05-31 12:59 - 2025-04-05 21:10 - 000144948 _____ C:\WINDOWS\system32\perfc005.dat
2026-05-31 12:59 - 2025-04-05 21:08 - 000000000 ____D C:\WINDOWS\INF
2026-05-31 12:59 - 2025-04-05 20:27 - 001693140 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-05-31 12:52 - 2025-04-05 21:05 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2026-05-31 12:52 - 2025-04-05 20:40 - 000000000 ____D C:\ProgramData\Avast Software
2026-05-31 12:52 - 2025-04-05 20:21 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-05-31 12:52 - 2023-10-01 21:49 - 000000000 ____D C:\Intel
2026-05-31 12:52 - 2022-04-20 15:32 - 000008192 ___SH C:\DumpStack.log.tmp
2026-05-31 10:07 - 2025-04-05 21:09 - 000000000 ___HD C:\Program Files\WindowsApps
2026-05-31 10:07 - 2025-04-05 21:09 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-05-31 00:56 - 2025-04-05 21:31 - 000000000 ____D C:\Users\www\AppData\Roaming\Microsoft\Word
2026-05-30 14:49 - 2025-09-28 11:13 - 000000000 ____D C:\Users\www\AppData\Roaming\qBittorrent
2026-05-30 12:52 - 2025-04-05 20:16 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2026-05-30 12:52 - 2022-04-20 15:32 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-05-29 20:09 - 2025-09-11 20:54 - 000000000 ____D C:\ProgramData\Dropbox
2026-05-29 20:08 - 2025-09-11 20:54 - 000000000 ____D C:\Program Files (x86)\Dropbox
2026-05-29 11:27 - 2025-04-05 21:31 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2026-05-29 11:27 - 2025-04-05 21:12 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2026-05-28 08:40 - 2025-04-08 10:52 - 000002150 _____ C:\Users\www\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\f.lux.lnk
2026-05-27 19:20 - 2025-11-02 11:43 - 000000795 _____ C:\Users\Public\Desktop\EPIM ArchiverDR.lnk
2026-05-27 15:14 - 2026-03-24 22:35 - 000001817 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive Photos.lnk
2026-05-27 15:14 - 2025-04-05 21:26 - 000002023 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2026-05-27 11:11 - 2025-04-05 21:21 - 000000000 ____D C:\Program Files\Microsoft Office
2026-05-27 10:58 - 2025-04-05 21:12 - 000000967 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2026-05-26 12:03 - 2025-04-06 17:56 - 000000000 ____D C:\Users\www\AppData\Roaming\Microsoft\PowerPoint
2026-05-26 12:03 - 2025-04-05 21:31 - 000000000 ____D C:\Users\www\AppData\Roaming\Microsoft\Office
2026-05-25 18:12 - 2025-04-05 20:41 - 000000000 ____D C:\Users\www\AppData\Local\D3DSCache
2026-05-24 18:19 - 2025-04-16 18:57 - 000000000 ____D C:\Program Files\dotnet
2026-05-24 18:19 - 2025-04-05 22:00 - 000000000 ____D C:\ProgramData\Package Cache
2026-05-24 18:16 - 2025-07-17 20:55 - 000000000 ____D C:\Program Files\Zotero
2026-05-24 18:16 - 2025-05-28 15:51 - 000000000 ____D C:\ProgramData\PatchMyPC
2026-05-24 18:16 - 2025-05-07 10:18 - 000000934 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zotero.lnk
2026-05-24 18:16 - 2025-05-07 10:18 - 000000922 _____ C:\Users\Public\Desktop\Zotero.lnk
2026-05-24 18:12 - 2025-06-20 19:31 - 000001421 _____ C:\Users\www\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Grammarly.lnk
2026-05-24 18:12 - 2025-06-20 19:31 - 000001413 _____ C:\Users\www\Desktop\Grammarly.lnk
2026-05-24 18:12 - 2025-06-20 19:31 - 000000000 ____D C:\Users\www\AppData\Local\Grammarly
2026-05-24 11:39 - 2025-04-05 23:16 - 000000000 ____D C:\WINDOWS\SysWOW64\directx
2026-05-23 23:47 - 2025-04-05 20:18 - 000000000 ___RD C:\Users\www
2026-05-23 20:41 - 2025-04-05 20:42 - 000000000 ____D C:\Users\www\AppData\Local\Avast Software
2026-05-23 12:09 - 2025-04-05 21:04 - 000000000 ____D C:\Users\www\AppData\Local\PlaceholderTileLogoFolder
2026-05-23 00:00 - 2025-04-05 21:09 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2026-05-22 23:58 - 2025-06-03 10:09 - 000000000 ____D C:\Users\www\AppData\Local\Malwarebytes
2026-05-22 23:47 - 2025-04-05 21:06 - 000000000 ____D C:\WINDOWS\CbsTemp
2026-05-22 23:45 - 2025-04-05 21:11 - 000000000 ____D C:\WINDOWS\OCR
2026-05-22 23:42 - 2025-04-05 20:43 - 000000000 ____D C:\Users\www\AppData\Roaming\Microsoft\Spelling
2026-05-22 23:39 - 2025-11-01 22:53 - 000000000 ____D C:\Users\www\AppData\Roaming\GSE Saves
2026-05-22 23:26 - 2025-05-08 21:31 - 000000000 ____D C:\Users\www\AppData\Local\UnrealEngine
2026-05-22 17:30 - 2025-04-16 17:15 - 000000000 ____D C:\Users\www\AppData\Local\CrashDumps
2026-05-22 15:22 - 2026-01-07 15:08 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2026-05-22 15:22 - 2026-01-07 15:08 - 000002206 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2026-05-20 17:44 - 2025-04-08 17:36 - 000000000 ____D C:\Users\www\AppData\Roaming\Microsoft\Excel
2026-05-20 13:52 - 2025-04-05 22:00 - 000000000 ____D C:\Users\www\AppData\Local\NVIDIA
2026-05-19 22:12 - 2025-04-14 08:39 - 000000000 ____D C:\Users\www\AppData\Roaming\KeePass
2026-05-19 19:31 - 2026-01-26 20:29 - 000000737 _____ C:\Users\Public\Desktop\calibre 64bit - E-book management.lnk
2026-05-19 19:31 - 2024-02-01 20:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\calibre 64bit - E-book Management
2026-05-19 19:28 - 2025-09-16 17:48 - 000001945 _____ C:\Users\www\Desktop\Zoom Workplace.lnk
2026-05-19 19:28 - 2025-04-08 08:58 - 000000000 ____D C:\Users\www\AppData\Roaming\Zoom
2026-05-19 19:28 - 2024-07-23 09:40 - 000001080 _____ C:\Users\www\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MediaInfo.lnk
2026-05-19 19:27 - 2025-04-05 21:12 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2026-05-19 19:25 - 2025-04-05 20:16 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2026-05-19 19:24 - 2025-07-28 07:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HWiNFO® 64
2026-05-19 19:23 - 2025-06-03 10:09 - 000001594 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2026-05-19 19:23 - 2025-06-03 10:09 - 000001582 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2026-05-19 19:23 - 2025-04-14 08:29 - 000000000 ____D C:\Users\www\AppData\Local\Sentry
2026-05-19 19:21 - 2025-06-04 11:58 - 000159808 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae.sys
2026-05-19 19:21 - 2025-06-03 10:08 - 000000000 ____D C:\ProgramData\Malwarebytes
2026-05-16 19:09 - 2026-03-23 00:20 - 000000000 ____D C:\ProgramData\ME3TweaksModManager
2026-05-10 18:51 - 2025-04-05 21:09 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2026-05-06 21:37 - 2025-04-05 20:41 - 001292896 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswSP.sys
2026-05-06 21:36 - 2025-05-05 22:25 - 000911456 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswSnx.sys
2026-05-06 21:36 - 2025-05-05 22:25 - 000466016 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswVmm.sys
2026-05-06 21:36 - 2025-05-05 22:25 - 000451168 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2026-05-06 21:36 - 2025-05-05 22:25 - 000315488 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2026-05-06 21:36 - 2025-05-05 22:25 - 000259168 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswArPot.sys
2026-05-06 21:36 - 2025-05-05 22:25 - 000087136 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2026-05-06 21:36 - 2025-05-05 22:25 - 000032864 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswKbd.sys
2026-05-06 21:36 - 2025-04-05 20:41 - 000633440 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2026-05-06 21:36 - 2025-04-05 20:41 - 000289376 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2026-05-06 21:36 - 2025-04-05 20:41 - 000096864 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2026-05-06 21:36 - 2025-04-05 20:41 - 000071776 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2026-05-06 21:36 - 2025-04-05 20:41 - 000021088 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2026-05-06 09:06 - 2025-04-19 13:59 - 000000000 ____D C:\Users\www\AppData\Roaming\NAPS2
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 31-05-2026 01
Ran by user (01-06-2026 10:58:31)
Running from C:\Users\www\Desktop
Microsoft Windows 10 Pro Version 22H2 19045.6456 (X64) (2025-04-05 18:25:23)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
admin (S-1-5-21-2069861480-1445196129-2239134032-1003 - Administrators - Enabled) => C:\Users\admin
Administrator (S-1-5-21-2069861480-1445196129-2239134032-500 - Administrators - Disabled)
android (S-1-5-21-2069861480-1445196129-2239134032-1002 - Limited - Enabled)
DefaultAccount (S-1-5-21-2069861480-1445196129-2239134032-503 - Limited - Disabled)
Guest (S-1-5-21-2069861480-1445196129-2239134032-501 - Limited - Disabled)
user (S-1-5-21-2069861480-1445196129-2239134032-1001 - Administrators - Enabled) => C:\Users\www
WDAGUtilityAccount (S-1-5-21-2069861480-1445196129-2239134032-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: COMODO Antivirus (Disabled - Up to date) {68776303-F62A-B826-2FE9-ABF2832D7700}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: COMODO Antivirus (Enabled - Up to date) {05BC7AB5-FF0E-71EC-1054-15DA19B62DC7}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
FW: Avast Antivirus (Enabled) {D322394B-73F7-C65E-BBB0-3B81E063D6D4}
FW: COMODO Firewall (Disabled) {504CE226-BC45-B97E-04B6-02C77DFE307B}
FW: COMODO Firewall (Enabled) {3D87FB90-B561-70B4-3B0B-BCEFE7656ABC}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 26.01 (x64) (HKLM\...\7-Zip) (Version: 26.01 - Igor Pavlov)
Adobe Acrobat 2017 (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-0E1108756300}) (Version: 17.012.30262 - Adobe Systems Incorporated)
Adobe Genuine Service (HKLM-x32\...\AdobeGenuineService) (Version: 9.1.0.52 - Adobe Inc.)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601149}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Alien: Rogue Incursion EE (HKLM-x32\...\Alien: Rogue Incursion EE_is1) (Version: - )
ATLAS.ti 25 (HKLM\...\{76C6C94B-5771-4629-93CC-4F19F4CEBB1A}) (Version: 25.0.2.33323 - Scientific Software Development GmbH) Hidden
ATLAS.ti 25 (HKLM-x32\...\{7957abb7-0b6f-411c-a6cc-5ec6603a3a72}) (Version: 25.0.2.33323 - Scientific Software Development GmbH)
Audacity 3.7.7 (HKLM\...\Audacity_is1) (Version: 3.7.7 - Audacity Team)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 26.4.10932.3593 - Gen Digital Inc.)
Backblaze (HKLM-x32\...\{63654DE4-6924-4A08-BB9F-E7BA98A11BD4}) (Version: 9.2.2.897 - Backblaze, Inc)
calibre 64bit (HKLM\...\{D9417412-E160-4F57-914B-B1202D90EBF3}) (Version: 9.8.0 - Kovid Goyal)
Call of the Elder Gods (HKLM-x32\...\Call of the Elder Gods_is1) (Version: - )
CCleaner 7 (HKLM\...\CCleaner 7) (Version: 7.7.1313.1667 - Piriform)
COMODO Firewall (HKLM\...\COMODO Internet Security) (Version: 12.2.2.8012 - COMODO Security Solutions Inc.)
COMODO Internet Security Premium (HKLM\...\{529CC629-B436-4886-B322-4BE75B97783D}) (Version: 12.2.2.8012 - COMODO Security Solutions Inc.) Hidden
Copilot (HKLM-x32\...\Microsoft Copilot) (Version: 148.0.3967.70 - Microsoft Corporation)
Cronos: The New Dawn (HKLM-x32\...\Cronos: The New Dawn_is1) (Version: - )
Cthulhu: The Cosmic Abyss (HKLM-x32\...\Cthulhu: The Cosmic Abyss_is1) (Version: - )
Dead Pets: A Punk Rock Slice of Life Sim (HKLM-x32\...\1429604908_is1) (Version: 1.1.0c - GOG.com)
DG Client (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\{cz.uk.autoupdate}}_is1) (Version: 4.1 - Univerzita Karlova)
Directive 8020 (HKLM-x32\...\Directive 8020_is1) (Version: - )
Dispatch (HKLM-x32\...\Dispatch_is1) (Version: - )
Dropbox (HKLM-x32\...\Dropbox) (Version: 256.3.3676 - Dropbox, Inc.)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.983.1 - Dropbox, Inc.) Hidden
EPIM ArchiverDR (HKLM-x32\...\EPIM ArchiverDR) (Version: 26.0 - Astonsoft Ltd)
EPIM Pro (HKLM-x32\...\EPIM Pro) (Version: 26.0.1 - Astonsoft Ltd)
Everything 1.4.1.1032 (x64) (HKLM\...\Everything) (Version: 1.4.1.1032 - voidtools)
f.lux (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Flux) (Version: 4.141 - f.lux Software LLC)
Ferdium 7.1.2 (HKLM\...\a525f0a2-415e-582b-9d3e-cb67fd71446e) (Version: 7.1.2 - Ferdium Contributors)
FlashFolder (HKLM\...\{92BF7CAE-D925-4868-8875-A154BE3CB26F}) (Version: 1.11.0.0 - zett42)
FontForge verze 01-01-2023 (HKLM-x32\...\{56748B9C-19AE-4689-B8C5-5A45AE0A993A}_is1) (Version: 01-01-2023 - FontForgeBuilds)
Foolish Mortals (HKLM-x32\...\Foolish Mortals_is1) (Version: - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 148.0.7778.179 - Google LLC)
Grammarly for Windows (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Grammarly Desktop Integrations) (Version: 1.2.262.1891 - Grammarly Inc.)
HWiNFO® 64 (HKLM\...\HWiNFO® 64_is1) (Version: 8.46 - Martin Malik, REALiX s.r.o.)
Indiana Jones and the Fate of Atlantis (HKLM-x32\...\1207666293_is1) (Version: 1.0 - GOG.com)
Internet Security Essentials (HKLM-x32\...\ComodoIse) (Version: 1.6.472587.185 - Comodo)
Kathy Rain 2 - Soothsayer (HKLM-x32\...\Kathy Rain 2 - Soothsayer_is1) (Version: - )
LockHunter 3.4, 32/64 bit (HKLM\...\LockHunter_is1) (Version: 3.4.3.146 - Crystal Rich Ltd)
Lost Records: Bloom & Rage (HKLM-x32\...\Lost Records: Bloom & Rage_is1) (Version: - )
Malwarebytes version 5.5.6.254 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.5.6.254 - Malwarebytes)
MediaInfo 26.05 (HKLM\...\MediaInfo) (Version: 26.05 - MediaArea.net)
Microsoft .NET Core Host - 3.1.32 (x86) (HKLM-x32\...\{3C73457A-1A33-4DE0-B6C2-6FBA877E1FCF}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Host FX Resolver - 3.1.32 (x86) (HKLM-x32\...\{CE1A992F-4571-423D-9CAE-1184E8F29471}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Runtime - 3.1.32 (x86) (HKLM-x32\...\{841FE4B1-2C3F-4304-A686-6DF41B4CC1A1}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Host - 6.0.36 (x64) (HKLM\...\{D6932D97-36F1-40B8-9CDC-CA8365B21000}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Host - 8.0.26 (x64) (HKLM\...\{2D690786-1257-44F3-AB75-7F55B62B42E9}) (Version: 64.104.50421 - Microsoft Corporation) Hidden
Microsoft .NET Host - 9.0.16 (x64) (HKLM\...\{9452FD92-08CC-4935-BFE0-62075C1E4851}) (Version: 72.64.52183 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.36 (x64) (HKLM\...\{A9E32B25-994B-4856-A12B-0EBED3050410}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.26 (x64) (HKLM\...\{C971FC9E-5291-4C07-8E2F-96BDCBF217E2}) (Version: 64.104.50421 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 9.0.16 (x64) (HKLM\...\{33CBD71A-9813-4440-92B8-B06C04852B34}) (Version: 72.64.52183 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.36 (x64) (HKLM\...\{C912E33F-956A-4921-9F55-CC11AE8F09AF}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.26 (x64) (HKLM\...\{D303EB7E-BAFD-4A65-A520-AA388FA0BF9A}) (Version: 64.104.50421 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 9.0.16 (x64) (HKLM\...\{AB89A259-8D10-4578-B462-43AEDC4F166E}) (Version: 72.64.52183 - Microsoft Corporation) Hidden
Microsoft 365 Apps pro velké organizace - cs-cz (HKLM\...\O365ProPlusRetail - cs-cz) (Version: 16.0.20026.20112 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 148.0.3967.96 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 148.0.3967.96 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 26.084.0504.0007 - Microsoft Corporation)
Microsoft Teams Meeting Add-in for Microsoft Office (HKLM\...\{A7AB73A3-CB10-4AA5-9D38-6AEFFBDE4C91}) (Version: 1.26.11802 - Microsoft)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.51.36231 (HKLM-x32\...\{c157798c-9519-4e56-98d9-f696f78f4a61}) (Version: 14.51.36231.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.51.36231 (HKLM-x32\...\{73fd1972-7030-4d2d-9ede-dd38a78c1d52}) (Version: 14.51.36231.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.51.36231 (HKLM\...\{7AB1994C-7537-46A5-84BE-A3E090AE982C}) (Version: 14.51.36231 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.51.36231 (HKLM\...\{5937353B-6E8B-4A29-806F-366A8748E276}) (Version: 14.51.36231 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.51.36231 (HKLM-x32\...\{E293C14B-9C88-4FBE-8C5D-37386ECA2FBA}) (Version: 14.51.36231 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.51.36231 (HKLM-x32\...\{38F97F29-A722-46EE-B80B-0F36D0180E4C}) (Version: 14.51.36231 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\{C931A1C6-A7BF-3737-874A-818881A37E1B}) (Version: 10.0.60915 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.60910 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 3.1.32 (x86) (HKLM-x32\...\{25D5B94A-E3CD-44E8-9C3A-FE320B7B38FC}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 3.1.32 (x86) (HKLM-x32\...\{4f894285-fd43-43ac-8669-33e8b7c0a97d}) (Version: 3.1.32.31915 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 6.0.36 (x64) (HKLM\...\{61D4736B-3325-4D4A-BD41-8BD206C6A86E}) (Version: 48.144.23186 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.36 (x64) (HKLM-x32\...\{0532b8f2-12d7-43de-95fc-7b87006758a8}) (Version: 6.0.36.34217 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.26 (x64) (HKLM\...\{BC979F77-77D3-4599-ADFF-12D432BFF8C5}) (Version: 64.104.50433 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.26 (x64) (HKLM-x32\...\{ccb8cf0e-e9c7-4fea-add7-d5cdde656e5b}) (Version: 8.0.26.35920 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 9.0.16 (x64) (HKLM\...\{68B6EE5D-A526-4492-9481-0132A3479FD0}) (Version: 72.64.52194 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 9.0.16 (x64) (HKLM-x32\...\{b842def2-5667-4a78-8bfa-9b1df75dfa5e}) (Version: 9.0.16.36030 - Microsoft Corporation)
MiniTool Partition Wizard Free 13.6 (HKLM\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version: 13.6 - MiniTool Software Limited)
Mozilla Firefox (x64 en-US) (HKLM\...\Mozilla Firefox) (Version: 151.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 151.0 - Mozilla)
NVIDIA App 11.0.5.420 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NvApp) (Version: 11.0.5.420 - NVIDIA Corporation)
NVIDIA FrameView SDK 1.5.11504.36206172 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.5.11504.36206172 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.4.5.7 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.4.5.7 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 582.53 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 582.53 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.23.1019 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.23.1019 - NVIDIA Corporation)
Obsidian (HKLM\...\bd400747-f0c1-5638-a859-982036102edf) (Version: 1.12.4 - Obsidian)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.20026.20076 - Microsoft Corporation) Hidden
Open-Shell (HKLM\...\{E7FAF594-3859-4121-9030-EDB2880E562F}) (Version: 4.4.198 - The Open-Shell Team)
Paint.NET (HKLM\...\{C6A29A65-A91B-4F4A-A1B5-B904AC61255D}) (Version: 5.1.12 - dotPDN LLC)
Patch My PC Home Updater (HKLM\...\{747A9DF0-CB52-46FC-9709-0EF48202FB71}) (Version: 5.4.4.0 - Patch My PC)
PicPick (HKLM-x32\...\PicPick) (Version: 7.5.0 - NGWIN)
Private Internet Access (HKLM\...\{33023371-7761-4F81-BBB1-0E0D0D175ACF}) (Version: 3.6.1+08339 - Private Internet Access, Inc.)
ProWritingAid Everywhere (HKLM-x32\...\{454D9F6A-452B-459B-B811-83DA754E926B}) (Version: 3.2.4940 - Orpheus Technology Ltd) Hidden
ProWritingAid Everywhere (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\{286981AB-13A8-49D8-84B7-D230D60409C8}) (Version: 3.2.4940 - Orpheus Technology Ltd)
Puzzle Quest: Immortal Edition (HKLM-x32\...\Puzzle Quest: Immortal Edition_is1) (Version: - )
qBittorrent (HKLM-x32\...\qBittorrent) (Version: 5.1.4 - The qBittorrent project)
Resident Evil 7: Biohazard (HKLM-x32\...\Resident Evil 7: Biohazard_is1) (Version: - )
ScummVM 2.9.1 (HKLM\...\ScummVM_is1) (Version: 2.9.1 - The ScummVM Team)
Slido for Windows (HKLM\...\{9133F1CC-46B3-4F45-86D3-E41950BAE1CA}) (Version: 1.20.0 - Slido) Hidden
Slido for Windows (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\{6e652589-d762-4609-8fa6-94bc6e77102b}) (Version: 1.20.0.7308 - Slido)
SOMA (HKLM-x32\...\SOMA_is1) (Version: - )
Subtitle Edit (HKLM\...\SubtitleEdit_is1) (Version: 4.0.15.0 - Nikse)
Tesseract-OCR - open source OCR engine (HKLM\...\Tesseract-OCR) (Version: 5.5.0.20241111 - Tesseract-OCR community)
THIEF: Definitive Edition (HKLM-x32\...\THIEF: Definitive Edition_is1) (Version: - )
Total Commander 64+32-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 11.56 - Ghisler Software GmbH)
Vampire: TM - Swansong (HKLM-x32\...\Vampire: TM - Swansong_is1) (Version: - )
Vortex (HKLM\...\57979c68-f490-55b8-8fed-8b017a5af2fe) (Version: 2.0.2 - Black Tree Gaming Ltd.)
XMedia Recode 64bit (HKLM\...\{D31E6E69-4C6A-42CC-926F-CC7B186864EB}_is1) (Version: 3.6.3.0 - XMedia Recode 64bit)
YAPA2 (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\YAPA2) (Version: 2.0.190 - Šarūnas Intas)
Zoom Workplace (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\ZoomUMX) (Version: 7.0.5 (38856) - Zoom Communications, Inc.)
Zotero (HKLM\...\Zotero 9.0.4 (x64 en-US)) (Version: 9.0.4 - Corporation for Digital Scholarship)
Zotero (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Zotero 7.0.21 (x64 en-US)) (Version: 7.0.21 - Corporation for Digital Scholarship)
Packages:
=========
aTrain -> C:\Program Files\WindowsApps\26987BusinessAnalyticsand.aTrain_1.4.1.0_x64__j0q0f918hn8dc [2026-01-29] (Business Analytics and Data Science-Center)
Dropbox -> C:\Program Files (x86)\Dropbox\Client\PackageAssets [2026-05-29] (Dropbox Inc.)
Local AI Manager for Microsoft 365 -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\AI [2026-05-27] ()
Microsoft.Office.ActionsServer -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\ActionsServer [2026-05-27] ()
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.969.0_x64__56jybvy8sckqj [2025-11-06] (NVIDIA Corp.)
OfficePushNotificationsUtility -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\OFFICE16 [2026-05-27] ()
Ovládací centrum grafiky Intel® -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt [2025-10-05] (INTEL CORP) [Startup Task]
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-2069861480-1445196129-2239134032-1001_Classes\CLSID\{04271989-C4D2-31F5-953D-FA4FC07E4B40} -> [OneDrive - Univerzita Karlova] => H:\_ONE_DRIVES\OneDrive - Univerzita Karlova [2024-05-08 12:46]
CustomCLSID: HKU\S-1-5-21-2069861480-1445196129-2239134032-1001_Classes\CLSID\{4f7e2fe2-8ac5-5e0b-0104-38b894549460}\localserver32 -> C:\Apps\HandBrake\HandBrake.exe (HandBrake Team) [File not signed]
CustomCLSID: HKU\S-1-5-21-2069861480-1445196129-2239134032-1001_Classes\CLSID\{68ABB5C8-D4CA-4795-8385-DF1EC13A46C4}\InprocServer32 -> C:\Users\www\AppData\Local\Slido\Slido for Windows\SlidoAddin.dll (sli.do s. r. o. -> Slido)
CustomCLSID: HKU\S-1-5-21-2069861480-1445196129-2239134032-1001_Classes\CLSID\{86BEF3F4-DCFE-4E9A-A788-145E7CAB1CBD} -> [Dropbox] => H:\_DROPBOX\Dropbox [2025-09-11 20:58]
CustomCLSID: HKU\S-1-5-21-2069861480-1445196129-2239134032-1001_Classes\CLSID\{E17AF012-6848-454B-9DE2-2DF44C76A3EB}\InprocServer32 -> C:\Users\www\AppData\Local\Slido\Slido for Windows\SlidoAddin.dll (sli.do s. r. o. -> Slido)
CustomCLSID: HKU\S-1-5-21-2069861480-1445196129-2239134032-1001_Classes\CLSID\{EABAE40C-B27C-455A-B672-F234DD780948}\InprocServer32 -> C:\Users\www\AppData\Local\Microsoft\TeamsMeetingAdd-in\1.26.11802\x64\Microsoft.Teams.MeetingAddin.DLL (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-05-06] (Gen Digital Inc. -> Gen Digital Inc.)
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Apps\Open Shell\ClassicExplorer64.dll [2026-05-12] (Open-Shell) [File not signed]
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-05-06] (Gen Digital Inc. -> Gen Digital Inc.)
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Apps\Open Shell\ClassicExplorer64.dll [2026-05-12] (Open-Shell) [File not signed]
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Apps\7-Zip\7-zip.dll [2026-04-27] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat 2017\Acrobat Elements\ContextMenuShim64.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-05-06] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers1: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll [2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers1: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Apps\LockHunter\LHShellExt64.dll [2021-06-24] (Crystal Rich Ltd -> Crystal Rich Ltd)
ContextMenuHandlers2: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll [2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
ContextMenuHandlers2: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Apps\LockHunter\LHShellExt64.dll [2021-06-24] (Crystal Rich Ltd -> Crystal Rich Ltd)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-05-06] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Apps\MBAM\mbshlext.dll [2026-04-13] (Malwarebytes Inc -> Malwarebytes)
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Apps\7-Zip\7-zip.dll [2026-04-27] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers4: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Apps\LockHunter\LHShellExt64.dll [2021-06-24] (Crystal Rich Ltd -> Crystal Rich Ltd)
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_fb921a73e66cc88e\nvshext.dll [2026-04-28] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Apps\7-Zip\7-zip.dll [2026-04-27] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat 2017\Acrobat Elements\ContextMenuShim64.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-05-06] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers6: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll [2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Apps\MBAM\mbshlext.dll [2026-04-13] (Malwarebytes Inc -> Malwarebytes)
ContextMenuHandlers6: [StartMenuExt] -> {E595F05F-903F-4318-8B0A-7F633B520D2B} => C:\WINDOWS\system32\StartMenuHelper64.dll [2026-05-12] (Open-Shell) [File not signed]
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
==================== Loaded Modules (Whitelisted) =============
2026-06-01 08:40 - 2026-06-01 08:40 - 001851904 _____ () [File not signed] \\?\C:\Users\www\AppData\Local\Temp\4270b1d9-c3f2-4d1e-b277-eb90b1e88b37.tmp.node
2026-04-24 18:51 - 2026-04-24 18:51 - 000026624 _____ () [File not signed] C:\Apps\AIMP\Plugins\Aorta\Aorta.dll
2023-04-15 21:17 - 2023-04-15 21:17 - 000021504 _____ () [File not signed] C:\Apps\Ditto\ICU_Loader.dll
2026-04-20 21:09 - 2026-04-18 23:42 - 003039232 _____ () [File not signed] C:\Apps\Ferdium\ffmpeg.dll
2026-04-20 21:09 - 2026-04-18 23:42 - 000505344 _____ () [File not signed] C:\Apps\Ferdium\libegl.dll
2026-04-20 21:09 - 2026-04-18 23:42 - 008049664 _____ () [File not signed] C:\Apps\Ferdium\libglesv2.dll
2026-04-20 21:09 - 2026-04-18 23:42 - 005530624 _____ () [File not signed] C:\Apps\Ferdium\vk_swiftshader.dll
2022-06-05 00:18 - 2016-09-19 12:09 - 000813056 _____ () [File not signed] C:\Apps\Networx\sqlite.dll
2025-03-20 14:05 - 2011-10-30 16:02 - 000038912 _____ () [File not signed] C:\Apps\RBTray\RBHook.dll
2023-09-04 15:21 - 2025-08-19 11:56 - 000157184 _____ () [File not signed] C:\Apps\Total Commander\libdeflate64.dll
2017-04-24 12:40 - 2017-04-24 12:40 - 000010240 _____ () [File not signed] C:\Program Files (x86)\Adobe\Acrobat 2017\Acrobat\locale\cs_cz\acrotray.cze
2017-04-24 12:40 - 2017-04-24 12:40 - 000013312 _____ (Adobe Systems Inc.) [File not signed] C:\Program Files (x86)\Adobe\Acrobat 2017\Acrobat\locale\cs_cz\Acrobat Elements\ContextMenuShim64.cze
2023-04-15 21:17 - 2023-04-15 21:17 - 000051712 _____ (Ditto Utility Addin) [File not signed] C:\Apps\Ditto\Addins\DittoUtil.dll
2019-06-20 10:21 - 2019-06-20 10:21 - 005701120 _____ (Firebird Project) [File not signed] C:\Apps\Essential PIM\gds32.dll
2026-04-24 18:51 - 2026-04-24 18:51 - 000214016 _____ (Florin Ghido, florin.ghido@gmail.com) [File not signed] C:\Apps\AIMP\Plugins\OptimFROG\OptimFROG.dll
2019-06-20 10:14 - 2019-06-20 10:14 - 001558016 _____ (IBM Corporation and others) [File not signed] C:\Apps\Essential PIM\icudt30.dll
2019-06-20 10:14 - 2019-06-20 10:14 - 000935936 _____ (IBM Corporation and others) [File not signed] C:\Apps\Essential PIM\icuuc30.dll
2022-06-04 23:59 - 2026-04-27 11:00 - 000101888 _____ (Igor Pavlov) [File not signed] C:\Apps\7-Zip\7-zip.dll
2026-04-24 18:51 - 2026-04-24 18:51 - 000256000 _____ (MaresWEB) [File not signed] C:\Apps\AIMP\Plugins\bass_aac\bass_aac.dll
2025-04-22 19:24 - 2026-04-24 18:51 - 000028672 _____ (MaresWEB) [File not signed] C:\Apps\AIMP\Plugins\bass_ac3\bass_ac3.dll
2026-04-24 18:51 - 2026-04-24 18:51 - 000021112 _____ (MaresWEB) [File not signed] C:\Apps\AIMP\Plugins\bass_mpc\bass_mpc.dll
2026-04-24 18:51 - 2026-04-24 18:51 - 000036105 _____ (MaresWEB) [File not signed] C:\Apps\AIMP\Plugins\bass_spx\bass_spx.dll
2026-04-24 18:51 - 2026-04-24 18:51 - 000007910 _____ (MaresWEB) [File not signed] C:\Apps\AIMP\Plugins\bass_tta\bass_tta.dll
2025-04-05 21:24 - 2025-04-05 21:24 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems64.dll] C:\Program Files\Microsoft Office\root\Office16\AppVIsvSubsystems64.dll
2025-04-05 21:24 - 2025-04-05 21:24 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R64.dll] C:\Program Files\Microsoft Office\root\Office16\c2r64.dll
2026-02-01 18:53 - 2026-02-01 18:53 - 000000000 ____L (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\PlugIns\NVIDIA App\MessageBusRouter.dll] C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\plugins\NVIDIA Overlay\MessageBusRouter.dll
2025-04-05 22:00 - 2026-02-01 18:53 - 000000000 ____L (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA App\MessageBus\NvMessageBusBroadcast.dll] C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem\NvMessageBusBroadcast.dll
2026-05-12 19:18 - 2026-05-12 19:18 - 002801664 _____ (Open-Shell) [File not signed] C:\Apps\Open Shell\StartMenuDLL.dll
2026-05-12 19:18 - 2026-05-12 19:18 - 000456192 _____ (Open-Shell) [File not signed] C:\WINDOWS\system32\StartMenuHelper64.dll
2025-09-28 12:27 - 2024-09-02 11:41 - 000163776 _____ (Private Internet Access, Inc. -> ) [File not signed] C:\Program Files\Private Internet Access\kapps_core.dll
2025-09-28 12:27 - 2024-09-02 11:41 - 000243136 _____ (Private Internet Access, Inc. -> ) [File not signed] C:\Program Files\Private Internet Access\kapps_net.dll
2025-09-28 12:27 - 2024-09-02 11:41 - 000379840 _____ (Private Internet Access, Inc. -> ) [File not signed] C:\Program Files\Private Internet Access\kapps_regions.dll
2025-09-28 12:27 - 2024-09-02 11:41 - 000316864 _____ (Private Internet Access, Inc. -> ) [File not signed] C:\Program Files\Private Internet Access\pia-clientlib.dll
2025-09-28 12:27 - 2024-09-02 11:41 - 001192384 _____ (Private Internet Access, Inc. -> ) [File not signed] C:\Program Files\Private Internet Access\pia-commonlib.dll
2025-09-28 12:27 - 2024-09-02 11:41 - 000059328 _____ (Private Internet Access, Inc. -> ) [File not signed] C:\Program Files\Private Internet Access\pia-winrtsupport.dll
2025-09-28 12:27 - 2024-09-02 11:41 - 000274880 _____ (Private Internet Access, Inc. -> Private Internet Access, Inc.) [File not signed] C:\Program Files\Private Internet Access\pia-wintun.dll
2025-09-28 12:27 - 2024-09-02 11:41 - 006184944 _____ (Private Internet Access, Inc. -> The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Program Files\Private Internet Access\libcrypto-3-x64.dll
2022-06-19 15:18 - 2018-03-02 07:51 - 001149440 _____ (Robert Simpson, et al.) [File not signed] C:\Apps\Gameplay Time Tracker\x86\SQLite.Interop.dll
2026-04-24 18:51 - 2026-04-24 18:51 - 000112640 _____ (Thomas Becker, Osnabrueck) [File not signed] C:\Apps\AIMP\Plugins\tak_deco_lib\tak_deco_lib.dll
2026-04-24 18:51 - 2026-04-24 18:51 - 000018257 _____ (Un4seen Developments) [File not signed] C:\Apps\AIMP\Plugins\bass_wma\bass_wma.dll
2012-07-21 21:55 - 2012-08-31 22:57 - 000629248 _____ (zett42) [File not signed] C:\Apps\FlashFolder\fflib6439.dll
2012-07-21 22:05 - 2012-08-31 22:46 - 003306496 _____ (zett42) [File not signed] C:\Apps\FlashFolder\fflib6439_64.dll
==================== Alternate Data Streams (Whitelisted) ========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\Users\www\Desktop\Moore and Sanders - Anthropology in Theory Issues in Epistemology.pdf:com.dropbox.attrs [54]
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2026-05-21] (Microsoft Corporation -> Microsoft Corporation)
BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Apps\Open Shell\ClassicExplorer64.dll [2026-05-12] (Open-Shell) [File not signed]
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2017\x64\AcroIEFavStub.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2017\x64\AcroIEFavStub.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2026-05-21] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Apps\Open Shell\ClassicExplorer32.dll [2026-05-12] (Open-Shell) [File not signed]
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2017\AcroIEFavStub.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2017\AcroIEFavStub.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2017\x64\AcroIEFavStub.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Apps\Open Shell\ClassicExplorer64.dll [2026-05-12] (Open-Shell) [File not signed]
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2017\AcroIEFavStub.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Apps\Open Shell\ClassicExplorer32.dll [2026-05-12] (Open-Shell) [File not signed]
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-05-21] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-05-21] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-05-21] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-05-21] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-05-21] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-05-21] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-05-21] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-05-21] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\sharepoint.com -> hxxps://cunicz-files.sharepoint.com
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2025-04-05 21:09 - 2025-04-05 21:08 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
==================== Network ===========================
(Currently there is no automatic fix for this section.)
DNS Servers: 156.154.70.22 - 156.154.71.22
Windows Firewall is enabled.
Network Binding:
=============
PIA OpenVPN WinTUN Adapter: PIA Tunnel -> pia-wintun.sys
Síťové připojení Bluetooth: Bluetooth Device (Personal Area Network) -> bthpan.sys
Ethernet: Killer E2400 Gigabit Ethernet Controller -> e2xw10x64.sys
inspect: COMODO Internet Security Firewall Driver
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\Control Panel\Desktop\\Wallpaper -> C:\Apps\_WP\Krivoklat_okno_75A.jpg
HKU\S-1-5-21-2069861480-1445196129-2239134032-1003\Control Panel\Desktop\\Wallpaper -> C:\Users\admin\AppData\Local\Packages\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\LocalCache\Microsoft\IrisService\1354020102363009558\133883317678444188.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 2) (TamperProtectionSource: )
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
==================== MSCONFIG/TASK MANAGER disabled items ==
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{5E422DEE-BE1F-4D93-97B7-69E825144632}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{263732C1-7A01-4A29-B035-3FC22BDADBEC}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{056FE898-47A7-4377-B474-0780E6FE5935}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{98EA0517-294A-4C7F-A1D0-0095D4CD7465}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{E717A425-E0A1-4890-800C-041F5F3D2735}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{222B4380-7532-493F-ADA7-59F5A4D915B6}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{1BB3C32E-92E0-4DDC-95A4-D49E799A73F3}] => (Allow) C:\Users\www\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Communications, Inc. -> Zoom Communications, Inc.)
FirewallRules: [{64A00691-1DD0-48F5-AAB8-88E9F44615FA}] => (Allow) LPort=53317
FirewallRules: [{DE04ED4B-D3A1-48ED-BB7E-B4D551441C71}] => (Allow) LPort=53317
FirewallRules: [{AC451861-9293-457E-909F-402CCA3811E6}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{43615C21-91F6-4F14-BF00-B39C531C2864}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{CD3EF128-B2E2-45D8-9FC5-71D8547D7989}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{2D0EBF6C-B8EC-4362-99F2-E6AA300438C8}] => (Allow) C:\Apps\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{8D8E0029-C8E4-4C27-84DF-A3FD4A414E56}] => (Allow) C:\Apps\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{8B21C06F-8069-4B1B-B4EF-EF97C9DC0EB8}] => (Allow) C:\Program Files (x86)\Microsoft\Copilot\Application\mscopilot.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{BD1D72BB-2DFA-4F2E-A8E9-2E88E1C2235D}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{6A17166F-E50F-414B-8472-DCB9959BD7F1}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.)
FirewallRules: [{DAF37ACB-F030-4EC4-A6D2-50BE53A9EA6C}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.)
==================== Restore Points =========================
==================== Faulty Device Manager Devices ============
Name: Neznámé zařízení USB (požadavek popisovače zařízení selhal)
Description: Neznámé zařízení USB (požadavek popisovače zařízení selhal)
Class Guid: {36fc9e60-c465-11cf-8056-444553540000}
Manufacturer: (Standardní hostitelský řadič USB)
Service:
Problem: : Windows has stopped this device because it has reported problems. (Code 43)
Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation.
==================== Event log errors: ========================
Application errors:
==================
Error: (06/01/2026 08:49:54 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x354e0
Čas spuštění chybující aplikace: 0x01dcf192d97e1325
Cesta k chybující aplikaci: C:\WINDOWS\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\WINDOWS\system32\clipesu.exe
ID zprávy: a5691f15-5786-4711-88c7-7cc82a34f734
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (06/01/2026 08:41:18 AM) (Source: DbxSvc) (EventID: 322) (User: )
Description: Failed to get driver message: (-2147024890) Neplatný popisovač.
Error: (05/31/2026 01:03:48 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x2c14
Čas spuštění chybující aplikace: 0x01dcf0ed27c3027c
Cesta k chybující aplikaci: C:\WINDOWS\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\WINDOWS\system32\clipesu.exe
ID zprávy: da145fb7-8c3d-47ce-bca6-6ef468c4f974
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (05/31/2026 12:51:52 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.]
Error: (05/31/2026 10:16:35 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x29804
Čas spuštění chybující aplikace: 0x01dcf0d5cafd4957
Cesta k chybující aplikaci: C:\WINDOWS\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\WINDOWS\system32\clipesu.exe
ID zprávy: f649c75d-2b14-4498-b780-cde01ae4f448
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (05/31/2026 10:12:53 AM) (Source: DbxSvc) (EventID: 322) (User: )
Description: Failed to get driver message: (-2147024890) Neplatný popisovač.
Error: (05/30/2026 01:17:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x1fa78
Čas spuštění chybující aplikace: 0x01dcf025f76371eb
Cesta k chybující aplikaci: C:\WINDOWS\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\WINDOWS\system32\clipesu.exe
ID zprávy: 5a36ed63-119e-4afd-8543-0d64e8ea090f
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (05/30/2026 01:10:10 PM) (Source: DbxSvc) (EventID: 322) (User: )
Description: Failed to get driver message: (-2147024890) Neplatný popisovač.
System errors:
=============
Error: (06/01/2026 08:37:06 AM) (Source: Schannel) (EventID: 4108) (User: NT AUTHORITY)
Description: Certifikát přijatý od vzdáleného serveru nebyl správně ověřený. Kód chyby je 0x80092013. Žádost o připojení TLS selhala. Připojená data obsahují certifikát serveru.
Error: (06/01/2026 08:36:04 AM) (Source: Ntfs) (EventID: 55) (User: NT AUTHORITY)
Description: Ve struktuře systému souborů na svazku Y: bylo zjištěno poškození.
Bylo nalezeno poškození ve struktuře indexů systému souborů. Referenční číslo souboru je 0x10000000008a6. Název souboru je \.bzvol. Poškozený atribut indexu je :$I30:$INDEX_ALLOCATION.
Error: (05/31/2026 12:57:42 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:MSI;FirmwareManufacturer:American Megatrends Inc.;FirmwareVersion:A.D0;OEMModelBaseBoard:Z170A GAMING M3 (MS-7978);OEMManufacturerName:MSI;OSArchitecture:amd64;
BucketId: 4d6e1a388fa828d282e8448f2f15aa8aee64faf6e5a9332dab2f7ed72c70afc1
BucketConfidenceLevel:
UpdateType: 0
HResult: 0
Error: (05/30/2026 11:28:56 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80073d02): 9WZDNCRD29V9-MICROSOFT.MICROSOFTOFFICEHUB.
Error: (05/30/2026 05:26:59 PM) (Source: volsnap) (EventID: 36) (User: )
Description: Stínové kopie svazku C: byly přerušeny, protože z důvodu limitu stanoveného uživatelem se nepodařilo zvětšit úložiště stínové kopie.
Error: (05/30/2026 12:51:20 PM) (Source: Ntfs) (EventID: 55) (User: NT AUTHORITY)
Description: Ve struktuře systému souborů na svazku Y: bylo zjištěno poškození.
Bylo nalezeno poškození ve struktuře indexů systému souborů. Referenční číslo souboru je 0x10000000008a6. Název souboru je \.bzvol. Poškozený atribut indexu je :$I30:$INDEX_ALLOCATION.
Error: (05/29/2026 03:12:42 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:MSI;FirmwareManufacturer:American Megatrends Inc.;FirmwareVersion:A.D0;OEMModelBaseBoard:Z170A GAMING M3 (MS-7978);OEMManufacturerName:MSI;OSArchitecture:amd64;
BucketId: 4d6e1a388fa828d282e8448f2f15aa8aee64faf6e5a9332dab2f7ed72c70afc1
BucketConfidenceLevel:
UpdateType: 0
HResult: 0
Error: (05/29/2026 11:32:59 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:MSI;FirmwareManufacturer:American Megatrends Inc.;FirmwareVersion:A.D0;OEMModelBaseBoard:Z170A GAMING M3 (MS-7978);OEMManufacturerName:MSI;OSArchitecture:amd64;
BucketId: 4d6e1a388fa828d282e8448f2f15aa8aee64faf6e5a9332dab2f7ed72c70afc1
BucketConfidenceLevel:
UpdateType: 0
HResult: 0
CodeIntegrity:
===============
Date: 2026-06-01 11:00:04
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume13\Windows\System32\guard64.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
==================== Memory info ===========================
BIOS: American Megatrends Inc. A.D0 07/04/2018
Motherboard: MSI Z170A GAMING M3 (MS-7978)
Processor: Intel(R) Core(TM) i7-6700K CPU @ 4.00GHz
Percentage of memory in use: 56%
Total physical RAM: 32656.32 MB
Available physical RAM: 14365.01 MB
Total Virtual: 37520.32 MB
Available Virtual: 11579.14 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:232.26 GB) (Free:14.34 GB) (Model: WDS250G2X0C-00L350) NTFS
Drive f: (Games SSD) (Fixed) (Total:894.25 GB) (Free:9.77 GB) (Model: Patriot Burst) NTFS
Drive g: (WD4_OTHER) (Fixed) (Total:1000 GB) (Free:232.63 GB) (Model: WDC WD40EZRZ-00GXCB0) NTFS
Drive h: (SG4_AV_NEW) (Fixed) (Total:3726.02 GB) (Free:9.93 GB) (Model: ST4000DM004-2CV104) NTFS
Drive i: (WD4_WORK) (Fixed) (Total:2048 GB) (Free:1011.68 GB) (Model: WDC WD40EZRZ-00GXCB0) NTFS
Drive l: (WD4_DOWN) (Fixed) (Total:678.01 GB) (Free:208.81 GB) (Model: WDC WD40EZRZ-00GXCB0) NTFS
Drive s: (SG8_FOTO) (Fixed) (Total:2048 GB) (Free:1183.41 GB) (Model: ST8000DM004-2U9188) NTFS
Drive t: (SG8_ISO) (Fixed) (Total:5404.02 GB) (Free:11.8 GB) (Model: ST8000DM004-2U9188) NTFS
Drive w: (My Book Duo 4TB) (Fixed) (Total:3725.87 GB) (Free:131.41 GB) (Model: WD My Book Duo 25F6 USB Device) NTFS
Drive y: (My Book) (Fixed) (Total:931.5 GB) (Free:157.62 GB) (Model: WD My Book USB Device) NTFS
\\?\Volume{1b3f5fa3-0986-4d93-ab9d-587361b97754}\ (Obnovení) (Fixed) (Total:0.52 GB) (Free:0.09 GB) NTFS
\\?\Volume{729bbd59-8644-4ec8-b8af-70b727807fc9}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Size: 894.3 GB) (Disk ID: 09AE835C)
Partition 1: (Not Active) - (Size=894.3 GB) - (Type=0F Extended)
==========================================================
Disk: 1 (Protective MBR) (Size: 7452 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 2 (Protective MBR) (Size: 3726 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 3 (Size: 3726 GB) (Disk ID: 238B9290)
Partition: GPT.
==========================================================
Disk: 4 (MBR Code: Windows 7/8/10) (Size: 232.9 GB) (Disk ID: 0EA60D4B)
Partition: GPT.
==========================================================
Disk: 5 (Size: 931.5 GB) (Disk ID: ACE7F82E)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)
==========================================================
Disk: 6 (Protective MBR) (Size: 3726 GB) (Disk ID: 00000000)
Partition: GPT.
==================== End of Addition.txt =======================
před několika dny mi počítač začal startoval výrazně déle než obvykle (10+ minut).
Opravil jsem pomocí "sfc /scannow" a zdálo se, že se problém vyřešil, ale dnes se situace opakovala.
Prosím o kontrolu logu, děkuji.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 31-05-2026 01
Ran by user (administrator) on DESKTOP-TMT (MSI MS-7978) (01-06-2026 10:54:07)
Running from C:\Users\www\Desktop\FRST64.exe
Loaded Profiles: user
Platform: Microsoft Windows 10 Pro Version 22H2 19045.6456 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Adobe Inc. -> Adobe Systems Inc.) C:\Program Files (x86)\Adobe\Acrobat 2017\Acrobat\acrotray.exe
(C:\Apps\FlashFolder\FlashFolder64.exe ->) (zett42) [File not signed] C:\Apps\FlashFolder\FlashFolder.exe
(C:\Apps\Gameplay Time Tracker\GameplayTimeTracker.exe ->) (mik61 (independent software developer) -> mik61) [File not signed] [File is in use] C:\Apps\Gameplay Time Tracker\Support64.exe
(C:\Apps\Total Commander\TOTALCMD64.EXE ->) (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.) C:\Apps\PDF X-Change Portable\PDFXEdit.exe
(C:\Program Files (x86)\Backblaze\bzbui.exe ->) (BACKBLAZE, INC. -> ) C:\Program Files (x86)\Backblaze\bzbuitray.exe
(C:\Program Files (x86)\Backblaze\bzserv.exe ->) (BACKBLAZE, INC. -> ) C:\Program Files (x86)\Backblaze\x64\bzfilelist64.exe
(C:\Program Files (x86)\Backblaze\bzserv.exe ->) (BACKBLAZE, INC. -> ) C:\Program Files (x86)\Backblaze\x64\bztransmit64.exe
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\Microsoft OneDrive\OneDrive.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\148.0.3967.96\msedgewebview2.exe <27>
(C:\Program Files\Mozilla Firefox\firefox.exe ->) (Mozilla Corporation -> Mozilla Foundation) C:\Program Files\Mozilla Firefox\crashhelper.exe
(C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe ->) (NVIDIA Corporation -> ) C:\Program Files\NVIDIA Corporation\FrameViewSDK\bin\PresentMon_x64.exe
(C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\FrameViewSDK\FvContainer\FvContainer.exe
(C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\FrameViewSDK\FvContainer\FvContainer.System.exe
(C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe ->) (NVIDIA Corporation -> NVIDIA) C:\Program Files\NVIDIA Corporation\FrameViewSDK\bin\nvrla.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA app\CEF\NVIDIA Overlay.exe <5>
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA app\ShadowPlay\nvsphelper64.exe
(Comodo Security Solutions, Inc. -> COMODO) C:\Program Files (x86)\COMODO\Internet Security Essentials\vkise.exe
(DriverStore\FileRepository\cui_dch.inf_amd64_38cfab2b652e4701\igfxCUIService.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_38cfab2b652e4701\igfxEM.exe
(Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe <10>
(explorer.exe ->) () [File not signed] C:\Apps\Ditto\Ditto.exe
(explorer.exe ->) () [File not signed] C:\Apps\RBTray\RBTray.exe
(explorer.exe ->) (BACKBLAZE, INC. -> ) C:\Program Files (x86)\Backblaze\bzbui.exe
(explorer.exe ->) (EPIM Technologies Inc. -> Astonsoft) C:\Apps\Essential PIM\EPIMPro.exe
(explorer.exe ->) (F.lux Software LLC -> f.lux Software LLC) C:\Users\www\AppData\Local\FluxSoftware\Flux\flux.exe
(explorer.exe ->) (Ferdium Contributors) [File not signed] C:\Apps\Ferdium\Ferdium.exe <12>
(explorer.exe ->) (Ghisler Software GmbH -> Ghisler Software GmbH) C:\Apps\Total Commander\TOTALCMD64.EXE
(explorer.exe ->) (IP Izmaylov Artem Andreevich -> Artem Izmaylov) C:\Apps\AIMP\AIMP.exe
(explorer.exe ->) (KARPOLAN) [File not signed] C:\Apps\Keyboard Leds\KeyboardLeds.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\26.084.0504.0007\OneDrive.Sync.Service.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\OneDrive.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.OutlookForWindows_1.2026.520.400_x64__8wekyb3d8bbwe\olk.exe
(explorer.exe ->) (mik61 (independent software developer) -> mik61) [File not signed] C:\Apps\Gameplay Time Tracker\GameplayTimeTracker.exe
(explorer.exe ->) (Open-Shell) [File not signed] C:\Apps\Open Shell\StartMenu.exe
(explorer.exe ->) (Private Internet Access, Inc. -> Private Internet Access Incorporated) C:\Program Files\Private Internet Access\pia-client.exe
(explorer.exe ->) (SOFTPERFECT PTY. LTD. -> SoftPerfect) C:\Apps\Networx\networx.exe
(Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastUI.exe <5>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <10>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2605.59121.0_x64__8wekyb3d8bbwe\M365Copilot.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <12>
(Open Source Developer, Noriyuki Miyazaki -> Crystal Dew World) C:\Apps\CrystalDiskInfo\DiskInfo64.exe
(REALiX, s.r.o. -> REALiX s.r.o.) C:\Apps\HWiNFO64\HWiNFO64.EXE
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Adobe Inc. -> Adobe Systems, Incorporated) C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (BACKBLAZE, INC. -> ) C:\Program Files (x86)\Backblaze\bzserv.exe
(services.exe ->) (Broadcom Corporation -> Broadcom Corporation.) C:\Windows\System32\BtwRSupportService.exe
(services.exe ->) (Comodo Security Solutions, Inc. -> COMODO) C:\Program Files (x86)\COMODO\Internet Security Essentials\isesrv.exe
(services.exe ->) (Comodo Security Solutions, Inc. -> COMODO) C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe <2>
(services.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\afwServ.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\cui_dch.inf_amd64_38cfab2b652e4701\igfxCUIService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igcc_dch.inf_amd64_c2ac023763d5d3ad\OneApp.IGCC.WinService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_51f685305808e3a5\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_51f685305808e3a5\IntelCpHeciSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\Microsoft Update Health Tools\uhssvc.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <4>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_fb921a73e66cc88e\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (NVIDIA Corporation -> NVIDIA) C:\Program Files\NVIDIA Corporation\FrameViewSDK\nvfvsdksvc_x64.exe
(services.exe ->) (Private Internet Access, Inc. -> ) C:\Program Files\Private Internet Access\pia-service.exe
(services.exe ->) (voidtools PTY LTD -> voidtools) C:\Apps\Everything\Everything.exe <2>
(services.exe ->) (zett42) [File not signed] C:\Apps\FlashFolder\FlashFolder64.exe <2>
(svchost.exe ->) (Alexandr Irza) [File not signed] C:\Apps\Volume2\Volume2.exe
(svchost.exe ->) (Comodo Security Solutions, Inc. -> COMODO) C:\Program Files\COMODO\COMODO Internet Security\cavwp.exe
(svchost.exe ->) (Comodo Security Solutions, Inc. -> COMODO) C:\Program Files\COMODO\COMODO Internet Security\cis.exe <2>
(svchost.exe ->) (Gen Digital Inc. -> Gen Digital Inc.) C:\Program Files\Piriform\CCleaner 7\CCleaner.exe
(svchost.exe ->) (Kazuyuki Nakayama) [File not signed] C:\Apps\HotSwap\HotSwap!.EXE
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.WindowsStore_22604.1401.8.0_x64__8wekyb3d8bbwe\StoreDesktopExtension.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.OutlookForWindows_1.2026.520.400_x64__8wekyb3d8bbwe\olkexthost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [1061544 2026-05-06] (Gen Digital Inc. -> Gen Digital Inc.)
HKLM\...\Run: [COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10}] => C:\Program Files\COMODO\COMODO Internet Security\cis.exe [13190952 2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
HKLM\...\Run: [NetWorx] => C:\Apps\Networx\networx.exe [7627080 2016-09-24] (SOFTPERFECT PTY. LTD. -> SoftPerfect)
HKLM\...\Run: [AdobeGCInvoker-1.0] => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [9501160 2025-11-12] (Adobe Inc. -> Adobe Systems, Incorporated)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-10] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [Everything] => C:\Apps\Everything\Everything.exe [2272424 2026-01-23] (voidtools PTY LTD -> voidtools)
HKLM\...\Run: [MTPW] => C:\Apps\MiniTool Partition Wizard 13\updatechecker.exe [183024 2026-02-11] (MiniTool Software Limited -> )
HKLM\...\Run: [Open-Shell Start Menu] => C:\Apps\Open Shell\StartMenu.exe [279552 2026-05-12] (Open-Shell) [File not signed]
HKLM-x32\...\Run: [IseUI] => C:\Program Files (x86)\COMODO\Internet Security Essentials\vkise.exe [4187856 2019-01-29] (Comodo Security Solutions, Inc. -> COMODO)
HKLM-x32\...\Run: [Acrobat Assistant 8.0] => C:\Program Files (x86)\Adobe\Acrobat 2017\Acrobat\Acrotray.exe [2192592 2022-07-29] (Adobe Inc. -> Adobe Systems Inc.)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [211046848 2026-05-28] (Dropbox, Inc -> Dropbox, Inc.)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4749160 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Run: [GameplayTimeTracker] => C:\Apps\Gameplay Time Tracker\GameplayTimeTracker.exe [932472 2018-09-17] (mik61 (independent software developer) -> mik61) [File not signed]
HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Run: [CCleaner Smart Cleaning] => "C:\Apps\CCleaner\CCleaner64.exe" /MONITOR (No File)
HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Run: [Backblaze] => C:\Program Files (x86)\Backblaze\bzbui.exe [1885944 2025-10-10] (BACKBLAZE, INC. -> )
HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Run: [Microsoft.Lists] => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\OneDrive.Sync.Service.exe [956304 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Run: [Ditto] => C:\Apps\Ditto\Ditto.exe [5226496 2023-04-15] () [File not signed]
HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files (x86)\Adobe\Acrobat 2017\Acrobat\AdobeCollabSync.exe [889032 2022-07-29] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Run: [f.lux] => C:\Users\www\AppData\Local\FluxSoftware\Flux\flux.exe [1536232 2026-04-08] (F.lux Software LLC -> f.lux Software LLC)
HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Run: [Ferdium] => C:\Apps\Ferdium\Ferdium.exe [205735936 2026-04-18] (Ferdium Contributors) [File not signed]
HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Run: [KeyboardLeds.exe] => C:\Apps\Keyboard Leds\KeyboardLeds.exe [912896 2012-09-06] (KARPOLAN) [File not signed]
HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Run: [Private Internet Access] => C:\Program Files\Private Internet Access\pia-client.exe [5342008 2024-09-02] (Private Internet Access, Inc. -> Private Internet Access Incorporated)
HKU\S-1-5-21-2069861480-1445196129-2239134032-1003\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4749160 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-18\...\Run: [Backblaze] => C:\Program Files (x86)\Backblaze\bzbui.exe [1885944 2025-10-10] (BACKBLAZE, INC. -> )
HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\WINDOWS\system32\AdobePDF.dll [65192 2022-07-29] (Adobe Inc. -> Adobe Systems Inc)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\148.0.7778.179\Installer\chrmstp.exe [7621272 2026-05-22] (Google LLC -> Google LLC)
Startup: C:\Users\www\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Crystal Disk Info.lnk [2025-01-03]
ShortcutTarget: Crystal Disk Info.lnk -> C:\Apps\CrystalDiskInfo\DiskInfo64.exe (Open Source Developer, Noriyuki Miyazaki -> Crystal Dew World)
Startup: C:\Users\www\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\EPIMPro.lnk [2025-09-11]
ShortcutTarget: EPIMPro.lnk -> C:\Apps\Essential PIM\EPIMPro.exe (EPIM Technologies Inc. -> Astonsoft)
Startup: C:\Users\www\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\HotSwap!.lnk [2022-11-08]
ShortcutTarget: HotSwap!.lnk -> C:\Apps\HotSwap\HotSwap!.EXE (Kazuyuki Nakayama) [File not signed]
Startup: C:\Users\www\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\HWiNFO® 64.lnk [2024-10-21]
ShortcutTarget: HWiNFO® 64.lnk -> C:\Apps\HWiNFO64\HWiNFO64.EXE (REALiX, s.r.o. -> REALiX s.r.o.)
Startup: C:\Users\www\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Poslat do aplikace OneNote.lnk [2026-05-25]
ShortcutTarget: Poslat do aplikace OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\Users\www\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\RBTray.lnk [2025-03-20]
ShortcutTarget: RBTray.lnk -> C:\Apps\RBTray\RBTray.exe () [File not signed]
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Microsoft\Edge: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {26C14958-9170-4B03-BACF-85D28A9301F4} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1612800 2026-01-23] (Adobe Inc. -> Adobe Inc.)
Task: {3A4B59FC-8303-4429-9691-304A9EA23575} - System32\Tasks\AdobeGCInvoker-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGCInvokerUtility.exe [9501160 2025-11-12] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {AB4FB337-D48F-43ED-8CE9-8798A80B36C7} - System32\Tasks\Adobe-Genuine-Software-Integrity-Scheduler-1.0 => C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGSService.exe [9818088 2025-11-12] (Adobe Inc. -> Adobe Systems, Incorporated)
Task: {B7A3FDCF-8FE8-4FEA-B115-249B680C2F57} - System32\Tasks\Avast Software\Avast Antivirus Patcher => C:\Program Files\Common Files\Avast Software\Icarus\avast-av\icarus.exe [9607904 2026-04-21] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {2B76BE92-C029-4E14-AF22-BB5C842C34DA} - System32\Tasks\Avast Software\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5783720 2026-05-06] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {0EAAA6DB-AEDB-4040-A18F-72E76F2093FE} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2977504 2025-10-13] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {37C38227-9931-4963-AB4A-55FD237A5062} - System32\Tasks\CCleaner 7 - Skip UAC - S-1-5-21-2069861480-1445196129-2239134032-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [5598328 2026-04-23] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {AD305F10-9FDB-40B4-A3E3-9DFA7340A61F} - System32\Tasks\CCleaner Update => C:\Apps\CCleaner\CCUpdate.exe (No File)
Task: {2D9CC3E0-D7E1-48CD-B073-88E610215BE3} - System32\Tasks\CCleanerCrashReporting => C:\Apps\CCleaner\CCleanerBugReport.exe -> --product 90 --send dumps|report --path "C:\Apps\CCleaner\LOG" --programpath "C:\Apps\CCleaner" --guid "䷠铓Ȇ" --version "6.39.0.11548" --silent
Task: {D54151F7-2C49-471C-966C-6B2B479871AD} - System32\Tasks\CCleanerSkipUAC - user => "C:\Apps\CCleaner\CCleaner.exe" $(Arg0) (No File)
Task: {157949D8-F251-4189-BB89-73F4A49545AE} - System32\Tasks\COMODO\COMODO Autostart {D5EFF3B3-E126-4AF6-BCE9-852A72129E10} => C:\Program Files\COMODO\COMODO Internet Security\cis.exe [13190952 2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
Task: {9BF51966-2ED5-497D-BEB3-EF65971FFB48} - System32\Tasks\COMODO\COMODO CMC {06A09C0F-DD9C-4191-A670-71115CD78627} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [5758488 2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
Task: {CA53AAE2-B1B1-4F69-A798-5BDC3DF14315} - System32\Tasks\COMODO\COMODO Maintenance {947247B5-026A-4437-9371-770782BE839D} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [5758488 2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
Task: {61706708-BB44-4701-ADCA-6EE41439829B} - System32\Tasks\COMODO\COMODO Signature Update {B9D5C6F9-17D2-4917-8BD0-614BAA1C6A59} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [5758488 2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
Task: {93333CE4-6606-4565-A627-D8E4C6B8652D} - System32\Tasks\COMODO\COMODO Telemetry {18AD3DFA-30C0-4B5F-84F7-F1870B1A4921} => C:\Program Files\COMODO\COMODO Internet Security\cis.exe [13190952 2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
Task: {60D1DF64-BE79-4165-822B-F9B7903366DD} - System32\Tasks\COMODO\COMODO Update {A6D52E4F-569B-4756-B3D8-DF217313DA85} => C:\Program Files\COMODO\COMODO Internet Security\cfpconfg.exe [5758488 2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
Task: {EC4A22D5-0AF6-4571-A386-9A5314AA38AE} - System32\Tasks\CrystalDiskInfo => C:\Apps\CrystalDiskInfo\DiskInfo64.exe [2869744 2024-11-20] (Open Source Developer, Noriyuki Miyazaki -> Crystal Dew World)
Task: {DFDE9BDC-7AD9-47B7-ADC0-6C26D83FE30F} - System32\Tasks\DropboxSystem\DropboxUpdater\DropboxUpdaterTaskSystem123.0.6299.144{A2C761DD-5121-403A-8F07-773792436798} => C:\Program Files\Dropbox\DropboxUpdater\123.0.6299.144\updater.exe [5898168 2025-12-16] (Dropbox, Inc -> Dropbox, Inc.)
Task: {2E54D273-117D-4D51-B86F-C0BCAFB7326C} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem149.0.7814.0{7BE7CCC8-BABB-4BDD-B051-D1AC6F5528D3} => C:\Program Files (x86)\Google\GoogleUpdater\149.0.7814.0\updater.exe [8770200 2026-04-28] (Google LLC -> Google LLC)
Task: {8D4355E1-1F04-4055-9B60-2652FD86E3C7} - System32\Tasks\HotSwap! Applet => C:\Apps\HotSwap\HotSwap!.EXE [219648 2019-01-07] (Kazuyuki Nakayama) [File not signed]
Task: {6F0D0385-5659-408D-B5A2-B77FEEC96566} - System32\Tasks\HWiNFO => C:\Apps\HWiNFO64\HWiNFO64Launcher.exe [102896 2026-02-24] (REALiX, s.r.o. -> REALiX s.r.o.)
Task: {0D558DEE-D61A-4B79-A631-27C341D9C0FA} - System32\Tasks\Intel PTT EK Recertification => C:\WINDOWS\System32\DriverStore\FileRepository\iclsclient.inf_amd64_fc84dfa25a6a7727\lib\IntelPTTEKRecertification.exe [855664 2023-12-14] (Intel Corporation -> Intel(R) Corporation)
Task: {8C13FD14-D964-4559-B5BC-1AF39DB4C656} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16430968 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {72802AF3-14EB-44D0-BC8B-8AB6B883B87E} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28436800 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {8A1500E0-E5FC-4FA8-87DD-1C2CA3CCD517} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe [73568 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {7D66EF67-8E62-4BBA-8CA4-0D88EA7DC922} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28436800 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {F861673D-BCFD-4815-AC21-323E1F2E00F9} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [427368 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {BB42E195-7A24-4E6B-87F3-B7A7BD0F6DEA} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [427368 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {EE256AC9-109D-431D-8B38-D753BD8005DC} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [1354600 2026-05-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {2C2810BF-3E97-4AA8-BE92-5BC3F9907BF7} - System32\Tasks\Microsoft\Office\Office Serviceability Manager => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\officesvcmgr.exe [4434464 2026-05-21] (Microsoft Corporation -> Microsoft Corporation)
Task: {E471D486-401C-4BE3-87D8-8CC4EBEEC3BC} - System32\Tasks\Microsoft\Office\Office Startup Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16430968 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {C5A02847-85A8-4397-9C6C-67398F8D9225} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\OS Edition Upgrade event listener created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {2AE4C00C-BE86-4854-BA06-0E20CD1CEFE2} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Passport for Work alert created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {90C0B8C0-0B38-47C3-8DC5-75667A27BC91} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Provisioning initiated session => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {B963D957-163E-4C30-A349-6FC8016E078F} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\PushLaunch => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {80F3DF7D-C3B8-4028-967C-3CF03A85F99C} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\PushRenewal => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {C0B714CE-460D-49EC-9427-DAB321C27366} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Refresh schedule created by Declared Configuration to refresh any settings changed on the device => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {8733935C-31D2-4B09-A0FE-B7D6D16E6615} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Schedule #1 created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {18C84DBE-D08C-4707-B228-FF155AF5E97D} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Schedule #2 created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {C8237650-C409-4634-BA9A-DDA3ABD3AA32} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Schedule #3 created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {1029CC69-3FEF-44CB-A6B2-DE963A4122E9} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Schedule created by enrollment client for renewal of certificate warning => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {0EB85016-2CF7-4A5C-BCBA-D49E8DF2D765} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Schedule to run OMADMClient by client => C:\WINDOWS\system32\omadmclient.exe [514560 2025-09-27] (Microsoft Windows -> Microsoft Corporation)
Task: {1AB7341A-CF90-4BA2-B987-570F62E0A5A7} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Schedule to run OMADMClient by server => C:\WINDOWS\system32\omadmclient.exe [514560 2025-09-27] (Microsoft Windows -> Microsoft Corporation)
Task: {B9001CA0-5609-4440-983A-8B97320CCFA0} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Win10 S Mode event listener created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {ECC7C24F-4169-4106-907E-C0C66CBE243E} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Wsc Startup event listener created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {1CDC59D6-B5E6-4AAD-BDFC-C12A9AC4FD25} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\OS Edition Upgrade event listener created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {B4CC7591-0531-439C-B1D2-A505DF164802} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\Passport for Work alert created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {8CD7F952-2FAE-4CB6-B6D7-6F0933A708E2} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\Provisioning initiated session => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {1AD32243-34B9-4171-9818-01C563436FBF} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\PushLaunch => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {514600FA-159D-4DB9-B5F6-EA46BCD0D80A} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\PushRenewal => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {7DE085CA-B10E-4F1C-A1A6-7CE4A7E663A6} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\PushUpgrade => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {A4152469-E178-426F-82AB-30C73A8DB219} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\Schedule #1 created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {44600E71-AAD0-456D-A453-39AEE8040F25} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\Schedule #2 created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {A4A4651B-F778-433E-BD20-3EBDA5038B52} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\Schedule #3 created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {92F48037-24D9-4819-AF4E-2C30233E7F60} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\Schedule created by enrollment client for renewal of certificate warning => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {6510713F-23E2-408F-8773-5D6C55510D5C} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\Schedule to run OMADMClient by client => C:\WINDOWS\system32\omadmclient.exe [514560 2025-09-27] (Microsoft Windows -> Microsoft Corporation)
Task: {E7E7B326-461B-4191-AF42-D85D0DCE94C0} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\Schedule to run OMADMClient by server => C:\WINDOWS\system32\omadmclient.exe [514560 2025-09-27] (Microsoft Windows -> Microsoft Corporation)
Task: {7BB2F584-2AA4-4824-B1B4-C52D460BEE52} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\Win10 S Mode event listener created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {2D79982E-B6ED-481A-BAA8-98AD30321480} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\Wsc Startup event listener created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {84A314B8-36E5-4090-ABED-17CAC66C90A8} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\SessionRetry\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Retry Schedule created for incomplete session {5437FFE3-ED4C-4F1A-8642-5F6EB8FDBB47} => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {BB025B7A-7651-458B-B02B-3A1BB8D4200E} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\SessionRetry\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Retry Schedule created for incomplete session {82D647CE-CB6A-487E-BBE9-4C33E712D49C} => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {89703C66-4D05-4DB1-9FAF-192B7320B7C0} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\SessionRetry\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Retry Schedule created for incomplete session {862BBF62-A6E3-3A2A-9CE7-63CE2EB9D65E} => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {2F27ADCF-A717-4152-A594-36E669CD09D2} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\SessionRetry\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Retry Schedule created for incomplete session {EB3BC420-A185-4445-AB5C-A20B48E28901} => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {A44EC5B6-37DF-44E5-85ED-ED73C3957701} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\SessionRetry\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\Retry Schedule created for incomplete session {2E62EC57-A9A6-4713-BF06-E8727525DC45} => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {DD07BC97-B30F-41F1-A7BF-5B0F46004E71} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\SessionRetry\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\Retry Schedule created for incomplete session {862BBF62-A6E3-3A2A-9CE7-63CE2EB9D65E} => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {42AD38F2-1AFA-4031-95F0-17336AD3D971} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\SessionRetry\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\Retry Schedule created for incomplete session {D43E7169-7604-4C68-B0F7-0EAE16E1B4E0} => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {298D785D-391C-4CD0-A2D7-76D0FB1CE1B4} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\SessionRetry\39C60DBD-3E3D-4A46-A30F-9D3740F959C4\Retry Schedule created for incomplete session {F4B993D9-0198-4E43-8B6B-56D67AC9B419} => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {FFD2B1A9-F716-45FA-ADC7-D5C3814B87D7} - System32\Tasks\MiniToolPartitionWizard => C:\Apps\MiniTool Partition Wizard 13\updatechecker.exe [183024 2026-02-11] (MiniTool Software Limited -> )
Task: {F4DE88A5-93F4-4B4A-8FBB-ED4430B60D18} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-2069861480-1445196129-2239134032-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [705152 2026-05-27] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {80B036ED-1748-4770-98AC-F49B95575088} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [33920 2026-05-27] (Mozilla Corporation -> Mozilla Foundation)
Task: {19F9B03B-3BBB-429D-A74A-B06AB7528A23} - System32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA App.exe [3324528 2025-10-15] (NVIDIA Corporation -> NVIDIA Corporation)
Task: {1617D921-AD67-4193-A262-E5C41EFFF8A8} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4428176 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {827DAA0E-FEA6-41EC-8805-95321B121743} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-2069861480-1445196129-2239134032-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4428176 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {35F65D03-DEF1-4B4F-8C33-8FDC2D89E25E} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-2069861480-1445196129-2239134032-1003 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4428176 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {F87D281B-D96C-438B-8D00-1B8519758ED1} - System32\Tasks\OneDrive Startup Task-S-1-5-21-2069861480-1445196129-2239134032-1001 => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\OneDriveLauncher.exe [758632 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {F6A593C5-9F04-4BE3-B5E6-3B21CC9185DA} - System32\Tasks\OneDrive Startup Task-S-1-5-21-2069861480-1445196129-2239134032-1003 => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\OneDriveLauncher.exe [758632 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
Task: {2E937CE0-AB45-4F58-B609-C29DD3E33727} - System32\Tasks\Patch My PC Home Updater - Check Apps => C:\Apps\Patch My PC Home Updater\PatchMyPC-HomeUpdater.exe [63969008 2026-04-08] (Patch My PC, LLC -> Patch My PC) -> C:\Apps\Patch My PC Home Updater\/c
Task: {657E3527-EDEF-4B65-9752-9FA6D4D3D1D1} - System32\Tasks\Patch My PC Home Updater - Self Updater => C:\Apps\Patch My PC Home Updater\PatchMyPC-HomeUpdater.exe [63969008 2026-04-08] (Patch My PC, LLC -> Patch My PC) -> C:\Apps\Patch My PC Home Updater\\/u
Task: {DD407729-9ECB-4B0A-920E-AA5A38EBDB27} - System32\Tasks\Patch My PC Home Updater - Update Apps => C:\Apps\Patch My PC Home Updater\PatchMyPC-HomeUpdater.exe [63969008 2026-04-08] (Patch My PC, LLC -> Patch My PC) -> C:\Apps\Patch My PC Home Updater\/silent
Task: {1C712FDB-8AC1-4AE1-95B9-9E5AEA9BDF8A} - System32\Tasks\Piriform\CCleaner 7 - S-1-5-21-2069861480-1445196129-2239134032-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [5598328 2026-04-23] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {DD20405F-9E6F-4A06-9D16-997B13970E02} - System32\Tasks\Piriform\CCleaner 7 - S-1-5-21-2069861480-1445196129-2239134032-1003 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [5598328 2026-04-23] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {51CF0EC8-9955-42A6-8FB0-934AE604CA38} - System32\Tasks\Piriform\CCleaner 7 - Scheduled Cleaning - default - S-1-5-21-2069861480-1445196129-2239134032-1001 => C:\Program Files\Piriform\CCleaner 7\CCleaner.exe [5598328 2026-04-23] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {ED7B36EC-384B-4F75-8F99-43806057013B} - System32\Tasks\Piriform\CCleaner 7 BugReport => C:\Program Files\Piriform\CCleaner 7\CCleanerBugReport.exe [6635128 2026-04-23] (Gen Digital Inc. -> Gen Digital Inc.) -> --send "dumps|report" --product 234 --programpath "C:\Program Files\Piriform\CCleaner 7" --configpath "C:\Program Files\Piriform\CCleaner 7\data" --path "C:\Program Files\Piriform\CCleaner 7\log" --path "C:\Program Files\Piriform\CCleaner 7\data\dumps" --logpath "C:\Program Files\Piriform\CCleaner 7 (the data entry has 58 more characters).
Task: {56508720-0A3F-4E0A-BBAB-6EB17ACF808A} - System32\Tasks\Piriform\CCleaner 7 Update => C:\Program Files\Common Files\Piriform\Icarus\piriform-ccl\icarus.exe [9274080 2026-01-19] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {6769CEA1-CD36-43E5-9856-D361F49F500E} - System32\Tasks\S-1-5-21-2069861480-1445196129-2239134032-1001\EnterpriseMgmt\1DBA47C3-C6F9-49DA-8392-44AB7ACA35B0\Login Schedule created by enrollment client => C:\WINDOWS\system32\deviceenroller.exe [502784 2025-08-30] (Microsoft Windows -> Microsoft Corporation)
Task: {6C06F984-9BED-42C7-89A4-48493E9B6E2E} - System32\Tasks\Volume² Autorun => C:\Apps\Volume2\Volume2.exe [4529152 2023-09-16] (Alexandr Irza) [File not signed]
Task: {4B789D61-965E-4394-8313-C7A8762BADFD} - System32\Tasks\ZoomUpdateTaskUser-S-1-5-21-2069861480-1445196129-2239134032-1001 => C:\Users\www\AppData\Roaming\Zoom\bin\Zoom.exe [511872 2026-05-19] (Zoom Communications, Inc. -> Zoom Communications, Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Apps\CCleaner\CCleanerBugReport.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\..\Interfaces\{4a75c44a-973f-4d9e-b35b-ff630fd03690}: [NameServer] 156.154.70.22,156.154.71.22
Tcpip\..\Interfaces\{4a75c44a-973f-4d9e-b35b-ff630fd03690}: [DhcpNameServer] 62.129.50.20 85.135.32.100
FireFox:
========
FF TaskBarID: 308046B0AF4A39CB -> C:\Program Files\Mozilla Firefox
FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat 2017\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Extension: (Adobe Acrobat) - C:\Program Files (x86)\Adobe\Acrobat 2017\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2019-07-31]
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files (x86)\Adobe\Acrobat 2017\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2026-01-09] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2026-01-28] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-12-04] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Acrobat -> C:\Program Files (x86)\Adobe\Acrobat 2017\Acrobat\Air\nppdf32.dll [2022-07-29] (Adobe Inc. -> Adobe Systems Inc.)
Edge:
=======
Edge Profile: C:\Users\www\AppData\Local\Microsoft\Edge\User Data\Default [2026-06-01]
Edge Notifications: Default -> hxxps://d5dvoem071bc73eq48f0.kyronbotshield.co.in
Edge Extension: (Grammarly: AI Writing and Grammar Checker App) - C:\Users\www\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\cnlefmmeadmemmdciolhbnfeacpdfbkd [2026-06-01]
Edge Extension: (Dokumenty Google offline) - C:\Users\www\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-04-16]
Edge Extension: (Edge relevant text changes) - C:\Users\www\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2025-04-05]
Edge Extension: (Zotero Connector) - C:\Users\www\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nmhdhpibnnopknkmonacoephklnflpho [2026-06-01]
Chrome:
=======
CHR Profile: C:\Users\www\AppData\Local\Google\Chrome\User Data\Default [2026-05-22]
CHR Extension: (GradeTransferer - Transfer, Scale & Sort Grades | Save Time, Reduce Errors) - C:\Users\www\AppData\Local\Google\Chrome\User Data\Default\Extensions\boapjdphamdkfjfdibbdpcemcdncfhjf [2026-04-02]
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\www\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2026-04-02]
CHR Extension: (Google Docs Offline) - C:\Users\www\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-04-02]
CHR Extension: (Grading Assistant: Grade transferer tool) - C:\Users\www\AppData\Local\Google\Chrome\User Data\Default\Extensions\nlgjbkohnabomkgcfgihkacllbbdfoca [2026-01-09]
CHR Extension: (Chrome Web Store Payments) - C:\Users\www\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2026-01-07]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [180216 2026-01-23] (Adobe Inc. -> Adobe Inc.)
R2 AGMService; C:\Program Files (x86)\Common Files\Adobe\AdobeGCClient\AGMService.exe [9824744 2025-11-12] (Adobe Inc. -> Adobe Systems, Incorporated)
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [7984296 2026-05-06] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [1038504 2026-05-06] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [2736296 2026-05-06] (Gen Digital Inc. -> Gen Digital Inc.)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [1091752 2026-05-06] (Gen Digital Inc. -> Gen Digital Inc.)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2025-04-05] (Avast Software s.r.o. -> AVAST Software)
R2 bzserv; C:\Program Files (x86)\Backblaze\bzserv.exe [1016056 2025-10-10] (BACKBLAZE, INC. -> )
R2 CCleaner7; C:\Program Files\Piriform\CCleaner 7\CCleaner_service.exe [30293112 2026-04-23] (Gen Digital Inc. -> Gen Digital Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13380488 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
R2 CmdAgent; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [11334144 2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
R2 CmdAgentProt; C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe [11334144 2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
S3 cmdvirth; C:\Program Files\COMODO\COMODO Internet Security\cmdvirth.exe [2675504 2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
R2 DbxSvc; C:\WINDOWS\System32\DbxSvc.exe [59048 2026-02-03] (Dropbox, Inc -> Dropbox, Inc.)
S3 DropboxElevationService; C:\Program Files (x86)\Dropbox\Client\256.3.3676\DropboxElevationService.exe [1659336 2026-05-28] (Dropbox, Inc -> Dropbox, Inc.)
S2 DropboxUpdaterInternalService123.0.6299.144; C:\Program Files\Dropbox\DropboxUpdater\123.0.6299.144\updater.exe [5898168 2025-12-16] (Dropbox, Inc -> Dropbox, Inc.)
S2 DropboxUpdaterService123.0.6299.144; C:\Program Files\Dropbox\DropboxUpdater\123.0.6299.144\updater.exe [5898168 2025-12-16] (Dropbox, Inc -> Dropbox, Inc.)
R2 Everything; C:\Apps\Everything\Everything.exe [2272424 2026-01-23] (voidtools PTY LTD -> voidtools)
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncHelper.exe [3610984 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
R2 FlashFolder; C:\Apps\FlashFolder\FlashFolder64.exe [596992 2012-07-21] (zett42) [File not signed]
R2 isesrv; C:\Program Files (x86)\COMODO\Internet Security Essentials\isesrv.exe [1044176 2019-01-29] (Comodo Security Solutions, Inc. -> COMODO)
S3 MBAMService; C:\Apps\MBAM\MBAMService.exe [11481720 2026-05-19] (Malwarebytes Inc -> Malwarebytes)
S3 MBVpnTunnelService; C:\Apps\MBAM\MBVpnTunnelService.exe [2788304 2025-06-03] (Malwarebytes Inc. -> Malwarebytes)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_fb921a73e66cc88e\Display.NvContainer\NVDisplay.Container.exe [1275624 2026-04-28] (NVIDIA Corporation -> NVIDIA Corporation)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\26.084.0504.0007\OneDriveUpdaterService.exe [4018024 2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
R2 PrivateInternetAccessService; C:\Program Files\Private Internet Access\pia-service.exe [1511752 2024-09-02] (Private Internet Access, Inc. -> )
S3 PrivateInternetAccessWireguard; C:\Program Files\Private Internet Access\pia-wgservice.exe [4152576 2024-09-02] (Private Internet Access, Inc. -> )
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [803064 2025-11-03] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [21088 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [259168 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [451168 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [315488 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [87136 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [29144 2025-07-29] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [32864 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [289376 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [633440 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [96864 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [71776 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [911456 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [1292896 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [250464 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [466016 2026-05-06] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S0 cmdboot; C:\WINDOWS\System32\DRIVERS\cmdboot.sys [17576 2019-10-22] (Microsoft Windows Early Launch Anti-malware Publisher -> COMODO)
R1 cmderd; C:\WINDOWS\System32\DRIVERS\cmderd.sys [38880 2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
R1 cmdGuard; C:\WINDOWS\System32\DRIVERS\cmdguard.sys [844000 2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
R1 cmdhlp; C:\WINDOWS\system32\DRIVERS\cmdhlp.sys [47104 2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
S3 gKbdfltr; C:\WINDOWS\System32\drivers\gKbdfltr.sys [29576 2020-09-15] (KYE SYSTEMS CORP. -> )
R3 HWiNFO_214; C:\Users\www\AppData\Local\Temp\HWiNFO_x64_214.sys [60072 2026-05-31] (Microsoft Windows Hardware Compatibility Publisher -> REALiX) <==== ATTENTION
R1 inspect; C:\WINDOWS\system32\DRIVERS\inspect.sys [130256 2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
S3 ioFakDrv; C:\WINDOWS\System32\drivers\ioFakDrv.sys [35928 2020-09-15] (KYE Systems Corp -> KYE System Corp.)
S3 ioFakMap; C:\WINDOWS\System32\drivers\ioFakMap.sys [24664 2020-09-15] (KYE Systems Corp -> KYE System Corp.)
R1 isedrv; C:\WINDOWS\system32\drivers\isedrv.sys [63256 2018-08-29] (Comodo Security Solutions, Inc. -> COMODO)
S3 LGBusEnum; C:\WINDOWS\system32\drivers\LGBusEnum64.sys [46264 2022-05-12] (Logitech Inc -> Logitech Inc.)
S3 LGJoyHidFilter; C:\WINDOWS\System32\drivers\LGJoyHidFilter64.sys [67768 2022-05-12] (Logitech Inc -> Logitech Inc.)
S3 LGJoyHidLo; C:\WINDOWS\System32\drivers\LGJoyHidLo64.sys [54456 2022-05-12] (Logitech Inc -> Logitech Inc.)
S3 LGJoyXlCore; C:\WINDOWS\system32\drivers\LGJoyXlCore64.sys [76480 2022-05-12] (Logitech Inc -> Logitech Inc.)
S3 LGSHidFilt; C:\WINDOWS\System32\drivers\LGSHidFilt.Sys [64280 2022-05-12] (Logitech -> Logitech Inc.)
S3 LGSUsbFilt; C:\WINDOWS\System32\drivers\LGSUsbFilt.Sys [41752 2022-05-12] (Logitech -> Logitech Inc.)
S3 LGVirHid; C:\WINDOWS\system32\drivers\LGVirHid64.sys [34496 2022-05-12] (Logitech Inc -> Logitech Inc.)
R2 mbamchameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [235584 2026-05-19] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [22120 2025-06-03] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
S3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [245864 2026-02-24] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R3 pia-wintun; C:\WINDOWS\System32\drivers\pia-wintun.sys [40304 2025-09-28] (Private Internet Access, Inc. -> Private Internet Access, Inc.)
R3 PiaWFPCallout; C:\WINDOWS\system32\DRIVERS\PiaWFPCallout.sys [37248 2024-09-02] (Private Internet Access, Inc. -> )
R0 pwdrvio; C:\WINDOWS\System32\pwdrvio.sys [19152 2025-08-29] (MiniTool Solution Ltd -> )
S3 pwdspio; C:\WINDOWS\system32\pwdspio.sys [12504 2025-08-29] (MiniTool Solution Ltd -> )
S3 ScpVBus; C:\WINDOWS\System32\drivers\ScpVBus.sys [44080 2016-09-27] (Shaul Eizikovich -> Nefarius Software Solutions)
R1 ViGEmBus; C:\WINDOWS\System32\drivers\ViGEmBus.sys [249400 2022-08-30] (Microsoft Windows Hardware Compatibility Publisher -> Nefarius Software Solutions e.U.)
S3 vjoy; C:\WINDOWS\System32\drivers\vjoy.sys [67448 2019-07-14] (On-site Dental Systems (Justin Shafer) -> Shaul Eizikovich)
S3 WdBoot; C:\WINDOWS\System32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R3 WDC_SAM; C:\WINDOWS\System32\drivers\wdcsam64.sys [25704 2022-10-03] (WDKTestCert user,132375440089837053 -> Western Digital Technologies, Inc.)
S3 WdFilter; C:\WINDOWS\System32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 HWiNFO_206; \??\C:\Users\www\AppData\Local\Temp\HWiNFO_x64_206.sys (No File) <==== ATTENTION
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-06-01 10:54 - 2026-06-01 10:55 - 000056187 _____ C:\Users\www\Desktop\FRST.txt
2026-06-01 10:53 - 2026-06-01 10:53 - 002782208 _____ (Farbar) C:\Users\www\Desktop\FRST64.exe
2026-06-01 10:31 - 2026-06-01 10:31 - 000254600 _____ C:\Users\www\Downloads\7089_John_Boncamper.pdf
2026-06-01 09:34 - 2026-06-01 10:14 - 000000030 _____ C:\Users\www\Desktop\Repair Wndows.bat
2026-05-31 16:19 - 2026-05-31 16:19 - 000000000 ___HD C:\$AV_ASW
2026-05-31 00:17 - 2026-05-31 00:17 - 000542978 _____ C:\Users\www\Downloads\BucherHelmond_SocialMediaAffordances_preprint.pdf
2026-05-31 00:13 - 2026-05-31 00:13 - 000502364 _____ C:\Users\www\Downloads\70 - Original.pdf
2026-05-30 21:55 - 2026-05-30 21:55 - 000204227 _____ C:\Users\www\Downloads\Doing educational ethnography in an online world methodological challenges choices and innovations.pdf
2026-05-30 21:27 - 2026-05-30 21:27 - 000392181 _____ C:\Users\www\Downloads\1.pdf
2026-05-30 21:14 - 2026-05-30 21:14 - 001849415 _____ C:\Users\www\Downloads\Collins-MultimodalityInvitation-2017.pdf
2026-05-30 21:12 - 2026-05-30 21:12 - 000535436 _____ C:\Users\www\Downloads\10.4324_9781315760674_previewpdf.pdf
2026-05-30 20:55 - 2026-05-30 20:55 - 002840684 _____ C:\Users\www\Downloads\Netnography-Redefined-Kozinets-R.-V.-2015.pdf
2026-05-30 20:46 - 2026-05-30 20:46 - 000229422 _____ C:\Users\www\Downloads\costello-et-al-2017-netnography.pdf
2026-05-30 20:44 - 2026-05-30 20:44 - 002262913 _____ C:\Users\www\Downloads\10.4324_9781003001430_previewpdf.pdf
2026-05-30 20:36 - 2026-05-30 20:36 - 000836041 _____ C:\Users\www\Downloads\ethics3.pdf
2026-05-30 20:35 - 2026-05-30 20:35 - 000328518 _____ C:\Users\www\Downloads\ethics.pdf
2026-05-30 16:00 - 2026-05-30 16:00 - 000117468 _____ C:\Users\www\Downloads\2025-12-02_Vyhlaska-c-489-2025-Sb.pdf
2026-05-30 14:57 - 2026-05-30 14:57 - 001343406 _____ C:\Users\www\Downloads\Our History is the Future_ Mni Wiconi and the Struggle for Native.pdf
2026-05-30 13:46 - 2026-05-30 13:46 - 000001083 _____ C:\Users\www\Desktop\Private Internet Access.lnk
2026-05-29 20:08 - 2026-05-29 20:08 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2026-05-27 19:40 - 2026-05-27 19:40 - 000304560 _____ C:\Users\www\Downloads\531_csr_000531_fin-0005.pdf
2026-05-27 10:44 - 2026-05-29 11:27 - 000000000 ____D C:\Program Files\Mozilla Firefox
2026-05-24 18:18 - 2026-05-24 18:18 - 000000825 _____ C:\Users\Public\Desktop\Vortex.lnk
2026-05-24 18:18 - 2026-05-24 18:18 - 000000825 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Vortex.lnk
2026-05-24 09:48 - 2026-05-24 09:48 - 000000963 _____ C:\Users\Public\Desktop\Lost Records - Bloom & Rage.lnk
2026-05-23 10:10 - 2026-05-23 10:10 - 000000000 ____D C:\Users\www\Desktop\FRST-OlderVersion
2026-05-22 23:26 - 2026-05-22 23:26 - 000000000 ____D C:\Users\www\AppData\Local\COTEG
2026-05-22 17:12 - 2026-05-27 10:44 - 000392320 _____ (Mozilla Foundation) C:\Users\www\Desktop\Firefox.exe
2026-05-21 06:45 - 2026-05-21 06:45 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2026-05-20 16:53 - 2026-05-20 16:53 - 000428012 _____ C:\Users\www\Downloads\UK-15829-version1-18_opatreni_rektora_pravidla_kyberneticke_bezpecnosti_uk.pdf
2026-05-20 11:22 - 2026-05-20 11:22 - 000000000 ____D C:\Users\www\AppData\Local\VisionaireStudio
2026-05-20 11:22 - 2026-05-20 11:22 - 000000000 ____D C:\Users\www\AppData\Local\Visionaire Editor
2026-05-20 11:22 - 2026-05-20 11:22 - 000000000 ____D C:\Users\www\AppData\Local\Inklingwood Studios
2026-05-20 11:07 - 2026-05-20 11:07 - 000000579 _____ C:\Users\Public\Desktop\Foolish Mortals.lnk
2026-05-19 19:28 - 2026-05-19 19:28 - 000000000 ____D C:\Users\www\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom
2026-05-19 19:28 - 2026-05-19 19:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XMedia Recode 64bit
2026-05-19 19:27 - 2026-05-19 19:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Open-Shell
2026-05-19 19:26 - 2026-05-19 19:26 - 000000000 ____D C:\Users\www\AppData\Local\com.superhuman.web-client
2026-05-19 19:21 - 2026-04-16 08:27 - 000127208 _____ (NVIDIA Corporation) C:\WINDOWS\system32\Drivers\nvhda64v.sys
2026-05-19 19:20 - 2026-04-28 09:53 - 002402696 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2026-05-19 19:20 - 2026-04-28 09:53 - 002402696 _____ C:\WINDOWS\system32\vulkaninfo.exe
2026-05-19 19:20 - 2026-04-28 09:53 - 001908104 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2026-05-19 19:20 - 2026-04-28 09:53 - 001908104 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2026-05-19 19:20 - 2026-04-28 09:53 - 001581968 _____ C:\WINDOWS\system32\vulkan-1-999-0-0-0.dll
2026-05-19 19:20 - 2026-04-28 09:53 - 001581968 _____ C:\WINDOWS\system32\vulkan-1.dll
2026-05-19 19:20 - 2026-04-28 09:53 - 001395600 _____ C:\WINDOWS\SysWOW64\vulkan-1-999-0-0-0.dll
2026-05-19 19:20 - 2026-04-28 09:53 - 001395600 _____ C:\WINDOWS\SysWOW64\vulkan-1.dll
2026-05-19 19:20 - 2026-04-28 09:53 - 000478440 _____ (Khronos Group) C:\WINDOWS\system32\OpenCL.dll
2026-05-19 19:20 - 2026-04-28 09:53 - 000375016 _____ (Khronos Group) C:\WINDOWS\SysWOW64\OpenCL.dll
2026-05-19 19:20 - 2026-04-28 09:49 - 026361064 _____ C:\WINDOWS\system32\nvidia-pcc.exe
2026-05-19 19:20 - 2026-04-28 09:49 - 001616104 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvidia-smi.exe
2026-05-19 19:20 - 2026-04-28 09:49 - 001574120 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvIFR64.dll
2026-05-19 19:20 - 2026-04-28 09:49 - 001333480 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvml.dll
2026-05-19 19:20 - 2026-04-28 09:49 - 001223912 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvIFR.dll
2026-05-19 19:20 - 2026-04-28 09:49 - 000676584 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvofapi64.dll
2026-05-19 19:20 - 2026-04-28 09:49 - 000510184 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvofapi.dll
2026-05-19 19:20 - 2026-04-28 09:48 - 024678120 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuvid.dll
2026-05-19 19:20 - 2026-04-28 09:48 - 021715176 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuvid.dll
2026-05-19 19:20 - 2026-04-28 09:48 - 007683304 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvcuda.dll
2026-05-19 19:20 - 2026-04-28 09:48 - 004175080 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcuda.dll
2026-05-19 19:20 - 2026-04-28 09:48 - 002318568 _____ (NVIDIA Corporation) C:\WINDOWS\system32\NvFBC64.dll
2026-05-19 19:20 - 2026-04-28 09:48 - 001716968 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\NvFBC.dll
2026-05-19 19:20 - 2026-04-28 09:48 - 001059560 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvEncodeAPI64.dll
2026-05-19 19:20 - 2026-04-28 09:48 - 000814824 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvEncodeAPI.dll
2026-05-19 19:20 - 2026-04-28 09:48 - 000468712 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvdebugdump.exe
2026-05-19 19:20 - 2026-04-28 09:47 - 005919464 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcpl.dll
2026-05-19 19:20 - 2026-04-28 09:47 - 005627096 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvapi64.dll
2026-05-19 19:20 - 2026-04-28 09:47 - 005469928 _____ (NVIDIA Corporation) C:\WINDOWS\system32\nvcudadebugger.dll
2026-05-19 19:20 - 2026-04-28 09:47 - 004925696 _____ (NVIDIA Corporation) C:\WINDOWS\SysWOW64\nvapi.dll
2026-05-19 19:20 - 2026-04-28 09:47 - 000853736 _____ (NVIDIA Corporation) C:\WINDOWS\system32\MCU.exe
2026-05-19 19:20 - 2026-04-16 08:27 - 000149181 _____ C:\WINDOWS\system32\nvinfo.pb
2026-05-16 14:48 - 2026-05-16 14:48 - 000000583 _____ C:\Users\Public\Desktop\Call of the Elder Gods.lnk
2026-05-16 14:18 - 2026-05-16 14:18 - 000000000 ____D C:\Users\www\AppData\Roaming\EPIM Pro
2026-05-13 20:15 - 2026-05-13 20:15 - 000000567 _____ C:\Users\Public\Desktop\Directive 8020.lnk
2026-05-12 20:13 - 2026-05-12 20:13 - 001034070 _____ C:\Users\www\Downloads\typographic_cheatsheet_1_1_upr.pdf
2026-05-12 19:29 - 2026-05-12 19:29 - 000375296 _____ (Open-Shell) C:\WINDOWS\SysWOW64\StartMenuHelper32.dll
2026-05-12 19:18 - 2026-05-12 19:18 - 000456192 _____ (Open-Shell) C:\WINDOWS\system32\StartMenuHelper64.dll
2026-05-12 06:12 - 2021-05-25 09:34 - 004267541 _____ C:\Users\www\Desktop\Moore and Sanders - Anthropology in Theory Issues in Epistemology.pdf
2026-05-12 06:03 - 2026-05-12 06:03 - 002188368 _____ C:\Users\www\Downloads\Tema C2 - PRO - Geertz (CZ)-1.pdf
2026-05-06 23:15 - 2026-05-06 23:15 - 000099742 _____ C:\Users\www\Downloads\online-event-ethnography-and-visual-qualitative-methods-advanced-methodology-course-collection-treatment-and-analysis-of-data.pdf
2026-05-06 21:37 - 2026-05-06 21:36 - 000324264 _____ (Gen Digital Inc.) C:\WINDOWS\system32\aswBoot.exe
2026-05-06 20:50 - 2026-05-06 20:50 - 000105184 _____ C:\Users\www\Downloads\Vyúčtování cesty pro EPK.pdf
2026-05-06 08:46 - 2026-05-06 08:46 - 000647816 _____ C:\Users\www\Downloads\FHS-3233-version1-doporuceni_hvs.pdf
2026-05-06 08:26 - 2026-05-06 08:26 - 000366463 _____ C:\Users\www\Downloads\Tema 12 - PROTI - Graeber.pdf
2026-05-06 08:25 - 2026-05-06 08:25 - 000264878 _____ C:\Users\www\Downloads\Tema 12 - PRO - Viveiros de Castro.pdf
2026-05-06 08:22 - 2026-05-06 08:22 - 000348767 _____ C:\Users\www\Downloads\Tema 11 - PROTI - Brumann.pdf
2026-05-06 08:21 - 2026-05-06 08:21 - 000369508 _____ C:\Users\www\Downloads\Tema 11 - PRO - Abu-Lughod.pdf
2026-05-06 08:19 - 2026-05-06 08:19 - 000199930 _____ C:\Users\www\Downloads\Tema 10 - PROTI - Günel and Watanabe.pdf
2026-05-06 08:16 - 2026-05-06 08:16 - 000379485 _____ C:\Users\www\Downloads\Tema 10 - PRO - Setti.pdf
2026-05-06 08:06 - 2026-05-06 08:06 - 000926126 _____ C:\Users\www\Downloads\Tema 9 - PROTI - Carneiro.pdf
2026-05-06 08:06 - 2026-05-06 08:06 - 000776493 _____ C:\Users\www\Downloads\Tema 9 - PRO - Geertz.pdf
2026-05-06 07:29 - 2026-05-06 07:29 - 000394054 _____ C:\Users\www\Downloads\Tema 8 - PROTI - Meighan.pdf
2026-05-06 07:29 - 2026-05-06 07:29 - 000390899 _____ C:\Users\www\Downloads\Tema 8 - PRO - Chasing In.pdf
2026-05-06 06:42 - 2026-05-06 06:42 - 000654867 _____ C:\Users\www\Downloads\Tema 7 - PROTI - Trask.pdf
2026-05-06 06:40 - 2026-05-06 06:40 - 000800068 _____ C:\Users\www\Downloads\Tema 7 - PRO - Keesing-1.pdf
2026-05-06 06:33 - 2026-05-06 06:33 - 000107622 _____ C:\Users\www\Downloads\Tema 6 - PROTI - DAndrade.pdf
2026-05-06 06:31 - 2026-05-06 06:31 - 000093767 _____ C:\Users\www\Downloads\Tema 6 - PRO - Scheper-Hughes.pdf
2026-05-06 06:30 - 2026-05-06 06:30 - 000841804 _____ C:\Users\www\Downloads\Tema 5 - PROTI - Skinner.pdf
2026-05-06 06:30 - 2026-05-06 06:30 - 000801837 _____ C:\Users\www\Downloads\Tema 5 - PRO - Salmon.pdf
2026-05-06 06:26 - 2026-05-06 06:26 - 000101706 _____ C:\Users\www\Downloads\lauder2003-1.pdf
2026-05-06 06:25 - 2026-05-06 06:25 - 000612987 _____ C:\Users\www\Downloads\Téma 4 - PRO - Fluehr-Lobban.pdf
2026-05-06 06:23 - 2026-05-06 06:23 - 000316755 _____ C:\Users\www\Downloads\Tema 3 - PROTI - Killcullen and McFate.pdf
2026-05-06 06:22 - 2026-05-06 06:22 - 003520357 _____ C:\Users\www\Downloads\Tema 3 - PRO - Gonzales.pdf
2026-05-06 06:11 - 2026-05-06 06:11 - 000929200 _____ C:\Users\www\Downloads\Tema 1 - PROTI - Holmes and Holmes.pdf
2026-05-06 06:10 - 2026-05-06 06:10 - 002422275 _____ C:\Users\www\Downloads\Tema 1 - PRO - Freeman-1.pdf
2026-05-06 06:03 - 2026-05-06 06:03 - 002422275 _____ C:\Users\www\Downloads\Tema 1 - PRO - Freeman.pdf
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2026-06-01 10:55 - 2025-05-28 16:39 - 000000000 ____D C:\FRST
2026-06-01 10:53 - 2025-04-05 20:47 - 001474832 _____ C:\WINDOWS\system32\Drivers\sfi.dat
2026-06-01 10:43 - 2025-04-05 21:12 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2026-06-01 10:00 - 2025-04-05 21:09 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-06-01 09:42 - 2025-04-05 20:37 - 000000000 ____D C:\Users\www\AppData\Local\Packages
2026-06-01 09:14 - 2025-04-05 21:42 - 000000000 ____D C:\Users\www\AppData\Local\OpenShell
2026-06-01 08:42 - 2025-04-05 21:09 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-06-01 08:41 - 2025-09-11 20:54 - 000000000 ____D C:\Users\www\AppData\Roaming\Dropbox
2026-06-01 08:41 - 2025-09-11 20:54 - 000000000 ____D C:\Users\www\AppData\Local\Dropbox
2026-06-01 08:41 - 2025-04-15 10:41 - 000000000 ____D C:\Users\www\AppData\Roaming\Ferdium
2026-06-01 08:40 - 2026-01-12 20:57 - 000000000 __SHD C:\Users\www\OneDriveCloudTemp
2026-06-01 08:40 - 2025-04-21 17:33 - 000003462 _____ C:\WINDOWS\system32\Tasks\Volume² Autorun
2026-06-01 08:40 - 2025-04-06 08:50 - 000000000 ____D C:\ProgramData\firebird
2026-06-01 08:40 - 2022-10-17 18:01 - 000000000 ___HD C:\Users\Public\Documents\AdobeGCData
2026-05-31 23:44 - 2025-04-13 23:21 - 000002998 _____ C:\WINDOWS\system32\Tasks\HotSwap! Applet
2026-05-31 23:44 - 2025-04-05 20:16 - 000000000 ____D C:\ProgramData\NVIDIA
2026-05-31 23:14 - 2026-03-04 16:45 - 000002446 _____ C:\WINDOWS\system32\Tasks\MiniToolPartitionWizard
2026-05-31 23:14 - 2025-10-31 19:09 - 000002406 _____ C:\WINDOWS\system32\Tasks\CCleaner 7 - Skip UAC - S-1-5-21-2069861480-1445196129-2239134032-1001
2026-05-31 23:14 - 2025-10-03 20:25 - 000003388 _____ C:\WINDOWS\system32\Tasks\Patch My PC Home Updater - Check Apps
2026-05-31 23:14 - 2025-10-02 19:00 - 000002998 _____ C:\WINDOWS\system32\Tasks\Patch My PC Home Updater - Self Updater
2026-05-31 23:14 - 2025-07-24 10:30 - 000002572 _____ C:\WINDOWS\system32\Tasks\CrystalDiskInfo
2026-05-31 23:14 - 2025-07-24 10:19 - 000002608 _____ C:\WINDOWS\system32\Tasks\HWiNFO
2026-05-31 23:14 - 2025-04-27 18:45 - 000002970 _____ C:\WINDOWS\system32\Tasks\CCleaner Update
2026-05-31 23:14 - 2025-04-08 08:58 - 000003364 _____ C:\WINDOWS\system32\Tasks\ZoomUpdateTaskUser-S-1-5-21-2069861480-1445196129-2239134032-1001
2026-05-31 23:14 - 2025-04-08 08:49 - 000002508 _____ C:\WINDOWS\system32\Tasks\Adobe-Genuine-Software-Integrity-Scheduler-1.0
2026-05-31 23:14 - 2025-04-08 08:45 - 000002596 _____ C:\WINDOWS\system32\Tasks\AdobeGCInvoker-1.0
2026-05-31 23:14 - 2025-04-08 08:41 - 000003482 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2026-05-31 23:14 - 2025-04-06 18:33 - 000002234 _____ C:\WINDOWS\system32\Tasks\CCleanerSkipUAC - user
2026-05-31 23:14 - 2025-04-06 18:18 - 000002838 _____ C:\WINDOWS\system32\Tasks\CCleanerCrashReporting
2026-05-31 23:14 - 2025-04-06 18:18 - 000000550 _____ C:\WINDOWS\Tasks\CCleanerCrashReporting.job
2026-05-31 23:14 - 2025-04-05 22:00 - 000003010 _____ C:\WINDOWS\system32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2026-05-31 23:14 - 2025-04-05 21:32 - 000003076 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-2069861480-1445196129-2239134032-1003
2026-05-31 23:14 - 2025-04-05 21:32 - 000003074 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-2069861480-1445196129-2239134032-1001
2026-05-31 23:14 - 2025-04-05 21:26 - 000003070 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2069861480-1445196129-2239134032-1003
2026-05-31 23:14 - 2025-04-05 21:26 - 000002716 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2026-05-31 23:14 - 2025-04-05 20:53 - 000003220 _____ C:\WINDOWS\system32\Tasks\Intel PTT EK Recertification
2026-05-31 23:14 - 2025-04-05 20:39 - 000003070 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2069861480-1445196129-2239134032-1001
2026-05-31 23:14 - 2025-04-05 20:22 - 000003642 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{17871486-6DD9-4C3F-AFDA-EE455A9C08F1}
2026-05-31 23:14 - 2025-04-05 20:22 - 000003416 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{A7043252-555B-4159-94C9-9FB4B5B0A2CE}
2026-05-31 22:10 - 2025-04-05 20:37 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2026-05-31 20:36 - 2025-04-05 20:15 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2026-05-31 12:59 - 2025-04-05 21:10 - 000716770 _____ C:\WINDOWS\system32\perfh005.dat
2026-05-31 12:59 - 2025-04-05 21:10 - 000144948 _____ C:\WINDOWS\system32\perfc005.dat
2026-05-31 12:59 - 2025-04-05 21:08 - 000000000 ____D C:\WINDOWS\INF
2026-05-31 12:59 - 2025-04-05 20:27 - 001693140 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-05-31 12:52 - 2025-04-05 21:05 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2026-05-31 12:52 - 2025-04-05 20:40 - 000000000 ____D C:\ProgramData\Avast Software
2026-05-31 12:52 - 2025-04-05 20:21 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-05-31 12:52 - 2023-10-01 21:49 - 000000000 ____D C:\Intel
2026-05-31 12:52 - 2022-04-20 15:32 - 000008192 ___SH C:\DumpStack.log.tmp
2026-05-31 10:07 - 2025-04-05 21:09 - 000000000 ___HD C:\Program Files\WindowsApps
2026-05-31 10:07 - 2025-04-05 21:09 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-05-31 00:56 - 2025-04-05 21:31 - 000000000 ____D C:\Users\www\AppData\Roaming\Microsoft\Word
2026-05-30 14:49 - 2025-09-28 11:13 - 000000000 ____D C:\Users\www\AppData\Roaming\qBittorrent
2026-05-30 12:52 - 2025-04-05 20:16 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2026-05-30 12:52 - 2022-04-20 15:32 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-05-29 20:09 - 2025-09-11 20:54 - 000000000 ____D C:\ProgramData\Dropbox
2026-05-29 20:08 - 2025-09-11 20:54 - 000000000 ____D C:\Program Files (x86)\Dropbox
2026-05-29 11:27 - 2025-04-05 21:31 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2026-05-29 11:27 - 2025-04-05 21:12 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2026-05-28 08:40 - 2025-04-08 10:52 - 000002150 _____ C:\Users\www\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\f.lux.lnk
2026-05-27 19:20 - 2025-11-02 11:43 - 000000795 _____ C:\Users\Public\Desktop\EPIM ArchiverDR.lnk
2026-05-27 15:14 - 2026-03-24 22:35 - 000001817 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive Photos.lnk
2026-05-27 15:14 - 2025-04-05 21:26 - 000002023 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2026-05-27 11:11 - 2025-04-05 21:21 - 000000000 ____D C:\Program Files\Microsoft Office
2026-05-27 10:58 - 2025-04-05 21:12 - 000000967 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2026-05-26 12:03 - 2025-04-06 17:56 - 000000000 ____D C:\Users\www\AppData\Roaming\Microsoft\PowerPoint
2026-05-26 12:03 - 2025-04-05 21:31 - 000000000 ____D C:\Users\www\AppData\Roaming\Microsoft\Office
2026-05-25 18:12 - 2025-04-05 20:41 - 000000000 ____D C:\Users\www\AppData\Local\D3DSCache
2026-05-24 18:19 - 2025-04-16 18:57 - 000000000 ____D C:\Program Files\dotnet
2026-05-24 18:19 - 2025-04-05 22:00 - 000000000 ____D C:\ProgramData\Package Cache
2026-05-24 18:16 - 2025-07-17 20:55 - 000000000 ____D C:\Program Files\Zotero
2026-05-24 18:16 - 2025-05-28 15:51 - 000000000 ____D C:\ProgramData\PatchMyPC
2026-05-24 18:16 - 2025-05-07 10:18 - 000000934 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Zotero.lnk
2026-05-24 18:16 - 2025-05-07 10:18 - 000000922 _____ C:\Users\Public\Desktop\Zotero.lnk
2026-05-24 18:12 - 2025-06-20 19:31 - 000001421 _____ C:\Users\www\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Grammarly.lnk
2026-05-24 18:12 - 2025-06-20 19:31 - 000001413 _____ C:\Users\www\Desktop\Grammarly.lnk
2026-05-24 18:12 - 2025-06-20 19:31 - 000000000 ____D C:\Users\www\AppData\Local\Grammarly
2026-05-24 11:39 - 2025-04-05 23:16 - 000000000 ____D C:\WINDOWS\SysWOW64\directx
2026-05-23 23:47 - 2025-04-05 20:18 - 000000000 ___RD C:\Users\www
2026-05-23 20:41 - 2025-04-05 20:42 - 000000000 ____D C:\Users\www\AppData\Local\Avast Software
2026-05-23 12:09 - 2025-04-05 21:04 - 000000000 ____D C:\Users\www\AppData\Local\PlaceholderTileLogoFolder
2026-05-23 00:00 - 2025-04-05 21:09 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2026-05-22 23:58 - 2025-06-03 10:09 - 000000000 ____D C:\Users\www\AppData\Local\Malwarebytes
2026-05-22 23:47 - 2025-04-05 21:06 - 000000000 ____D C:\WINDOWS\CbsTemp
2026-05-22 23:45 - 2025-04-05 21:11 - 000000000 ____D C:\WINDOWS\OCR
2026-05-22 23:42 - 2025-04-05 20:43 - 000000000 ____D C:\Users\www\AppData\Roaming\Microsoft\Spelling
2026-05-22 23:39 - 2025-11-01 22:53 - 000000000 ____D C:\Users\www\AppData\Roaming\GSE Saves
2026-05-22 23:26 - 2025-05-08 21:31 - 000000000 ____D C:\Users\www\AppData\Local\UnrealEngine
2026-05-22 17:30 - 2025-04-16 17:15 - 000000000 ____D C:\Users\www\AppData\Local\CrashDumps
2026-05-22 15:22 - 2026-01-07 15:08 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2026-05-22 15:22 - 2026-01-07 15:08 - 000002206 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2026-05-20 17:44 - 2025-04-08 17:36 - 000000000 ____D C:\Users\www\AppData\Roaming\Microsoft\Excel
2026-05-20 13:52 - 2025-04-05 22:00 - 000000000 ____D C:\Users\www\AppData\Local\NVIDIA
2026-05-19 22:12 - 2025-04-14 08:39 - 000000000 ____D C:\Users\www\AppData\Roaming\KeePass
2026-05-19 19:31 - 2026-01-26 20:29 - 000000737 _____ C:\Users\Public\Desktop\calibre 64bit - E-book management.lnk
2026-05-19 19:31 - 2024-02-01 20:04 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\calibre 64bit - E-book Management
2026-05-19 19:28 - 2025-09-16 17:48 - 000001945 _____ C:\Users\www\Desktop\Zoom Workplace.lnk
2026-05-19 19:28 - 2025-04-08 08:58 - 000000000 ____D C:\Users\www\AppData\Roaming\Zoom
2026-05-19 19:28 - 2024-07-23 09:40 - 000001080 _____ C:\Users\www\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\MediaInfo.lnk
2026-05-19 19:27 - 2025-04-05 21:12 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2026-05-19 19:25 - 2025-04-05 20:16 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2026-05-19 19:24 - 2025-07-28 07:18 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\HWiNFO® 64
2026-05-19 19:23 - 2025-06-03 10:09 - 000001594 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2026-05-19 19:23 - 2025-06-03 10:09 - 000001582 _____ C:\Users\Public\Desktop\Malwarebytes.lnk
2026-05-19 19:23 - 2025-04-14 08:29 - 000000000 ____D C:\Users\www\AppData\Local\Sentry
2026-05-19 19:21 - 2025-06-04 11:58 - 000159808 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbae.sys
2026-05-19 19:21 - 2025-06-03 10:08 - 000000000 ____D C:\ProgramData\Malwarebytes
2026-05-16 19:09 - 2026-03-23 00:20 - 000000000 ____D C:\ProgramData\ME3TweaksModManager
2026-05-10 18:51 - 2025-04-05 21:09 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2026-05-06 21:37 - 2025-04-05 20:41 - 001292896 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswSP.sys
2026-05-06 21:36 - 2025-05-05 22:25 - 000911456 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswSnx.sys
2026-05-06 21:36 - 2025-05-05 22:25 - 000466016 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswVmm.sys
2026-05-06 21:36 - 2025-05-05 22:25 - 000451168 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2026-05-06 21:36 - 2025-05-05 22:25 - 000315488 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2026-05-06 21:36 - 2025-05-05 22:25 - 000259168 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswArPot.sys
2026-05-06 21:36 - 2025-05-05 22:25 - 000087136 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2026-05-06 21:36 - 2025-05-05 22:25 - 000032864 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswKbd.sys
2026-05-06 21:36 - 2025-04-05 20:41 - 000633440 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2026-05-06 21:36 - 2025-04-05 20:41 - 000289376 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2026-05-06 21:36 - 2025-04-05 20:41 - 000096864 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2026-05-06 21:36 - 2025-04-05 20:41 - 000071776 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2026-05-06 21:36 - 2025-04-05 20:41 - 000021088 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2026-05-06 09:06 - 2025-04-19 13:59 - 000000000 ____D C:\Users\www\AppData\Roaming\NAPS2
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 31-05-2026 01
Ran by user (01-06-2026 10:58:31)
Running from C:\Users\www\Desktop
Microsoft Windows 10 Pro Version 22H2 19045.6456 (X64) (2025-04-05 18:25:23)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
admin (S-1-5-21-2069861480-1445196129-2239134032-1003 - Administrators - Enabled) => C:\Users\admin
Administrator (S-1-5-21-2069861480-1445196129-2239134032-500 - Administrators - Disabled)
android (S-1-5-21-2069861480-1445196129-2239134032-1002 - Limited - Enabled)
DefaultAccount (S-1-5-21-2069861480-1445196129-2239134032-503 - Limited - Disabled)
Guest (S-1-5-21-2069861480-1445196129-2239134032-501 - Limited - Disabled)
user (S-1-5-21-2069861480-1445196129-2239134032-1001 - Administrators - Enabled) => C:\Users\www
WDAGUtilityAccount (S-1-5-21-2069861480-1445196129-2239134032-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: COMODO Antivirus (Disabled - Up to date) {68776303-F62A-B826-2FE9-ABF2832D7700}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: COMODO Antivirus (Enabled - Up to date) {05BC7AB5-FF0E-71EC-1054-15DA19B62DC7}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
FW: Avast Antivirus (Enabled) {D322394B-73F7-C65E-BBB0-3B81E063D6D4}
FW: COMODO Firewall (Disabled) {504CE226-BC45-B97E-04B6-02C77DFE307B}
FW: COMODO Firewall (Enabled) {3D87FB90-B561-70B4-3B0B-BCEFE7656ABC}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 26.01 (x64) (HKLM\...\7-Zip) (Version: 26.01 - Igor Pavlov)
Adobe Acrobat 2017 (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-0E1108756300}) (Version: 17.012.30262 - Adobe Systems Incorporated)
Adobe Genuine Service (HKLM-x32\...\AdobeGenuineService) (Version: 9.1.0.52 - Adobe Inc.)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601149}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Alien: Rogue Incursion EE (HKLM-x32\...\Alien: Rogue Incursion EE_is1) (Version: - )
ATLAS.ti 25 (HKLM\...\{76C6C94B-5771-4629-93CC-4F19F4CEBB1A}) (Version: 25.0.2.33323 - Scientific Software Development GmbH) Hidden
ATLAS.ti 25 (HKLM-x32\...\{7957abb7-0b6f-411c-a6cc-5ec6603a3a72}) (Version: 25.0.2.33323 - Scientific Software Development GmbH)
Audacity 3.7.7 (HKLM\...\Audacity_is1) (Version: 3.7.7 - Audacity Team)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 26.4.10932.3593 - Gen Digital Inc.)
Backblaze (HKLM-x32\...\{63654DE4-6924-4A08-BB9F-E7BA98A11BD4}) (Version: 9.2.2.897 - Backblaze, Inc)
calibre 64bit (HKLM\...\{D9417412-E160-4F57-914B-B1202D90EBF3}) (Version: 9.8.0 - Kovid Goyal)
Call of the Elder Gods (HKLM-x32\...\Call of the Elder Gods_is1) (Version: - )
CCleaner 7 (HKLM\...\CCleaner 7) (Version: 7.7.1313.1667 - Piriform)
COMODO Firewall (HKLM\...\COMODO Internet Security) (Version: 12.2.2.8012 - COMODO Security Solutions Inc.)
COMODO Internet Security Premium (HKLM\...\{529CC629-B436-4886-B322-4BE75B97783D}) (Version: 12.2.2.8012 - COMODO Security Solutions Inc.) Hidden
Copilot (HKLM-x32\...\Microsoft Copilot) (Version: 148.0.3967.70 - Microsoft Corporation)
Cronos: The New Dawn (HKLM-x32\...\Cronos: The New Dawn_is1) (Version: - )
Cthulhu: The Cosmic Abyss (HKLM-x32\...\Cthulhu: The Cosmic Abyss_is1) (Version: - )
Dead Pets: A Punk Rock Slice of Life Sim (HKLM-x32\...\1429604908_is1) (Version: 1.1.0c - GOG.com)
DG Client (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\{cz.uk.autoupdate}}_is1) (Version: 4.1 - Univerzita Karlova)
Directive 8020 (HKLM-x32\...\Directive 8020_is1) (Version: - )
Dispatch (HKLM-x32\...\Dispatch_is1) (Version: - )
Dropbox (HKLM-x32\...\Dropbox) (Version: 256.3.3676 - Dropbox, Inc.)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.983.1 - Dropbox, Inc.) Hidden
EPIM ArchiverDR (HKLM-x32\...\EPIM ArchiverDR) (Version: 26.0 - Astonsoft Ltd)
EPIM Pro (HKLM-x32\...\EPIM Pro) (Version: 26.0.1 - Astonsoft Ltd)
Everything 1.4.1.1032 (x64) (HKLM\...\Everything) (Version: 1.4.1.1032 - voidtools)
f.lux (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Flux) (Version: 4.141 - f.lux Software LLC)
Ferdium 7.1.2 (HKLM\...\a525f0a2-415e-582b-9d3e-cb67fd71446e) (Version: 7.1.2 - Ferdium Contributors)
FlashFolder (HKLM\...\{92BF7CAE-D925-4868-8875-A154BE3CB26F}) (Version: 1.11.0.0 - zett42)
FontForge verze 01-01-2023 (HKLM-x32\...\{56748B9C-19AE-4689-B8C5-5A45AE0A993A}_is1) (Version: 01-01-2023 - FontForgeBuilds)
Foolish Mortals (HKLM-x32\...\Foolish Mortals_is1) (Version: - )
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 148.0.7778.179 - Google LLC)
Grammarly for Windows (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Grammarly Desktop Integrations) (Version: 1.2.262.1891 - Grammarly Inc.)
HWiNFO® 64 (HKLM\...\HWiNFO® 64_is1) (Version: 8.46 - Martin Malik, REALiX s.r.o.)
Indiana Jones and the Fate of Atlantis (HKLM-x32\...\1207666293_is1) (Version: 1.0 - GOG.com)
Internet Security Essentials (HKLM-x32\...\ComodoIse) (Version: 1.6.472587.185 - Comodo)
Kathy Rain 2 - Soothsayer (HKLM-x32\...\Kathy Rain 2 - Soothsayer_is1) (Version: - )
LockHunter 3.4, 32/64 bit (HKLM\...\LockHunter_is1) (Version: 3.4.3.146 - Crystal Rich Ltd)
Lost Records: Bloom & Rage (HKLM-x32\...\Lost Records: Bloom & Rage_is1) (Version: - )
Malwarebytes version 5.5.6.254 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.5.6.254 - Malwarebytes)
MediaInfo 26.05 (HKLM\...\MediaInfo) (Version: 26.05 - MediaArea.net)
Microsoft .NET Core Host - 3.1.32 (x86) (HKLM-x32\...\{3C73457A-1A33-4DE0-B6C2-6FBA877E1FCF}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Host FX Resolver - 3.1.32 (x86) (HKLM-x32\...\{CE1A992F-4571-423D-9CAE-1184E8F29471}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Core Runtime - 3.1.32 (x86) (HKLM-x32\...\{841FE4B1-2C3F-4304-A686-6DF41B4CC1A1}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft .NET Host - 6.0.36 (x64) (HKLM\...\{D6932D97-36F1-40B8-9CDC-CA8365B21000}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Host - 8.0.26 (x64) (HKLM\...\{2D690786-1257-44F3-AB75-7F55B62B42E9}) (Version: 64.104.50421 - Microsoft Corporation) Hidden
Microsoft .NET Host - 9.0.16 (x64) (HKLM\...\{9452FD92-08CC-4935-BFE0-62075C1E4851}) (Version: 72.64.52183 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.36 (x64) (HKLM\...\{A9E32B25-994B-4856-A12B-0EBED3050410}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.26 (x64) (HKLM\...\{C971FC9E-5291-4C07-8E2F-96BDCBF217E2}) (Version: 64.104.50421 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 9.0.16 (x64) (HKLM\...\{33CBD71A-9813-4440-92B8-B06C04852B34}) (Version: 72.64.52183 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.36 (x64) (HKLM\...\{C912E33F-956A-4921-9F55-CC11AE8F09AF}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.26 (x64) (HKLM\...\{D303EB7E-BAFD-4A65-A520-AA388FA0BF9A}) (Version: 64.104.50421 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 9.0.16 (x64) (HKLM\...\{AB89A259-8D10-4578-B462-43AEDC4F166E}) (Version: 72.64.52183 - Microsoft Corporation) Hidden
Microsoft 365 Apps pro velké organizace - cs-cz (HKLM\...\O365ProPlusRetail - cs-cz) (Version: 16.0.20026.20112 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 148.0.3967.96 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 148.0.3967.96 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 26.084.0504.0007 - Microsoft Corporation)
Microsoft Teams Meeting Add-in for Microsoft Office (HKLM\...\{A7AB73A3-CB10-4AA5-9D38-6AEFFBDE4C91}) (Version: 1.26.11802 - Microsoft)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.51.36231 (HKLM-x32\...\{c157798c-9519-4e56-98d9-f696f78f4a61}) (Version: 14.51.36231.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.51.36231 (HKLM-x32\...\{73fd1972-7030-4d2d-9ede-dd38a78c1d52}) (Version: 14.51.36231.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.51.36231 (HKLM\...\{7AB1994C-7537-46A5-84BE-A3E090AE982C}) (Version: 14.51.36231 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.51.36231 (HKLM\...\{5937353B-6E8B-4A29-806F-366A8748E276}) (Version: 14.51.36231 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.51.36231 (HKLM-x32\...\{E293C14B-9C88-4FBE-8C5D-37386ECA2FBA}) (Version: 14.51.36231 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.51.36231 (HKLM-x32\...\{38F97F29-A722-46EE-B80B-0F36D0180E4C}) (Version: 14.51.36231 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\{C931A1C6-A7BF-3737-874A-818881A37E1B}) (Version: 10.0.60915 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.60910 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 3.1.32 (x86) (HKLM-x32\...\{25D5B94A-E3CD-44E8-9C3A-FE320B7B38FC}) (Version: 24.192.31915 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 3.1.32 (x86) (HKLM-x32\...\{4f894285-fd43-43ac-8669-33e8b7c0a97d}) (Version: 3.1.32.31915 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 6.0.36 (x64) (HKLM\...\{61D4736B-3325-4D4A-BD41-8BD206C6A86E}) (Version: 48.144.23186 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.36 (x64) (HKLM-x32\...\{0532b8f2-12d7-43de-95fc-7b87006758a8}) (Version: 6.0.36.34217 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.26 (x64) (HKLM\...\{BC979F77-77D3-4599-ADFF-12D432BFF8C5}) (Version: 64.104.50433 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.26 (x64) (HKLM-x32\...\{ccb8cf0e-e9c7-4fea-add7-d5cdde656e5b}) (Version: 8.0.26.35920 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 9.0.16 (x64) (HKLM\...\{68B6EE5D-A526-4492-9481-0132A3479FD0}) (Version: 72.64.52194 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 9.0.16 (x64) (HKLM-x32\...\{b842def2-5667-4a78-8bfa-9b1df75dfa5e}) (Version: 9.0.16.36030 - Microsoft Corporation)
MiniTool Partition Wizard Free 13.6 (HKLM\...\{05D996FA-ADCB-4D23-BA3C-A7C184A8FAC6}_is1) (Version: 13.6 - MiniTool Software Limited)
Mozilla Firefox (x64 en-US) (HKLM\...\Mozilla Firefox) (Version: 151.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 151.0 - Mozilla)
NVIDIA App 11.0.5.420 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NvApp) (Version: 11.0.5.420 - NVIDIA Corporation)
NVIDIA FrameView SDK 1.5.11504.36206172 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.5.11504.36206172 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.4.5.7 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.4.5.7 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 582.53 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 582.53 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.23.1019 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.23.1019 - NVIDIA Corporation)
Obsidian (HKLM\...\bd400747-f0c1-5638-a859-982036102edf) (Version: 1.12.4 - Obsidian)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.20026.20076 - Microsoft Corporation) Hidden
Open-Shell (HKLM\...\{E7FAF594-3859-4121-9030-EDB2880E562F}) (Version: 4.4.198 - The Open-Shell Team)
Paint.NET (HKLM\...\{C6A29A65-A91B-4F4A-A1B5-B904AC61255D}) (Version: 5.1.12 - dotPDN LLC)
Patch My PC Home Updater (HKLM\...\{747A9DF0-CB52-46FC-9709-0EF48202FB71}) (Version: 5.4.4.0 - Patch My PC)
PicPick (HKLM-x32\...\PicPick) (Version: 7.5.0 - NGWIN)
Private Internet Access (HKLM\...\{33023371-7761-4F81-BBB1-0E0D0D175ACF}) (Version: 3.6.1+08339 - Private Internet Access, Inc.)
ProWritingAid Everywhere (HKLM-x32\...\{454D9F6A-452B-459B-B811-83DA754E926B}) (Version: 3.2.4940 - Orpheus Technology Ltd) Hidden
ProWritingAid Everywhere (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\{286981AB-13A8-49D8-84B7-D230D60409C8}) (Version: 3.2.4940 - Orpheus Technology Ltd)
Puzzle Quest: Immortal Edition (HKLM-x32\...\Puzzle Quest: Immortal Edition_is1) (Version: - )
qBittorrent (HKLM-x32\...\qBittorrent) (Version: 5.1.4 - The qBittorrent project)
Resident Evil 7: Biohazard (HKLM-x32\...\Resident Evil 7: Biohazard_is1) (Version: - )
ScummVM 2.9.1 (HKLM\...\ScummVM_is1) (Version: 2.9.1 - The ScummVM Team)
Slido for Windows (HKLM\...\{9133F1CC-46B3-4F45-86D3-E41950BAE1CA}) (Version: 1.20.0 - Slido) Hidden
Slido for Windows (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\{6e652589-d762-4609-8fa6-94bc6e77102b}) (Version: 1.20.0.7308 - Slido)
SOMA (HKLM-x32\...\SOMA_is1) (Version: - )
Subtitle Edit (HKLM\...\SubtitleEdit_is1) (Version: 4.0.15.0 - Nikse)
Tesseract-OCR - open source OCR engine (HKLM\...\Tesseract-OCR) (Version: 5.5.0.20241111 - Tesseract-OCR community)
THIEF: Definitive Edition (HKLM-x32\...\THIEF: Definitive Edition_is1) (Version: - )
Total Commander 64+32-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 11.56 - Ghisler Software GmbH)
Vampire: TM - Swansong (HKLM-x32\...\Vampire: TM - Swansong_is1) (Version: - )
Vortex (HKLM\...\57979c68-f490-55b8-8fed-8b017a5af2fe) (Version: 2.0.2 - Black Tree Gaming Ltd.)
XMedia Recode 64bit (HKLM\...\{D31E6E69-4C6A-42CC-926F-CC7B186864EB}_is1) (Version: 3.6.3.0 - XMedia Recode 64bit)
YAPA2 (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\YAPA2) (Version: 2.0.190 - Šarūnas Intas)
Zoom Workplace (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\ZoomUMX) (Version: 7.0.5 (38856) - Zoom Communications, Inc.)
Zotero (HKLM\...\Zotero 9.0.4 (x64 en-US)) (Version: 9.0.4 - Corporation for Digital Scholarship)
Zotero (HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\Zotero 7.0.21 (x64 en-US)) (Version: 7.0.21 - Corporation for Digital Scholarship)
Packages:
=========
aTrain -> C:\Program Files\WindowsApps\26987BusinessAnalyticsand.aTrain_1.4.1.0_x64__j0q0f918hn8dc [2026-01-29] (Business Analytics and Data Science-Center)
Dropbox -> C:\Program Files (x86)\Dropbox\Client\PackageAssets [2026-05-29] (Dropbox Inc.)
Local AI Manager for Microsoft 365 -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\AI [2026-05-27] ()
Microsoft.Office.ActionsServer -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\ActionsServer [2026-05-27] ()
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.969.0_x64__56jybvy8sckqj [2025-11-06] (NVIDIA Corp.)
OfficePushNotificationsUtility -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\OFFICE16 [2026-05-27] ()
Ovládací centrum grafiky Intel® -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt [2025-10-05] (INTEL CORP) [Startup Task]
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-2069861480-1445196129-2239134032-1001_Classes\CLSID\{04271989-C4D2-31F5-953D-FA4FC07E4B40} -> [OneDrive - Univerzita Karlova] => H:\_ONE_DRIVES\OneDrive - Univerzita Karlova [2024-05-08 12:46]
CustomCLSID: HKU\S-1-5-21-2069861480-1445196129-2239134032-1001_Classes\CLSID\{4f7e2fe2-8ac5-5e0b-0104-38b894549460}\localserver32 -> C:\Apps\HandBrake\HandBrake.exe (HandBrake Team) [File not signed]
CustomCLSID: HKU\S-1-5-21-2069861480-1445196129-2239134032-1001_Classes\CLSID\{68ABB5C8-D4CA-4795-8385-DF1EC13A46C4}\InprocServer32 -> C:\Users\www\AppData\Local\Slido\Slido for Windows\SlidoAddin.dll (sli.do s. r. o. -> Slido)
CustomCLSID: HKU\S-1-5-21-2069861480-1445196129-2239134032-1001_Classes\CLSID\{86BEF3F4-DCFE-4E9A-A788-145E7CAB1CBD} -> [Dropbox] => H:\_DROPBOX\Dropbox [2025-09-11 20:58]
CustomCLSID: HKU\S-1-5-21-2069861480-1445196129-2239134032-1001_Classes\CLSID\{E17AF012-6848-454B-9DE2-2DF44C76A3EB}\InprocServer32 -> C:\Users\www\AppData\Local\Slido\Slido for Windows\SlidoAddin.dll (sli.do s. r. o. -> Slido)
CustomCLSID: HKU\S-1-5-21-2069861480-1445196129-2239134032-1001_Classes\CLSID\{EABAE40C-B27C-455A-B672-F234DD780948}\InprocServer32 -> C:\Users\www\AppData\Local\Microsoft\TeamsMeetingAdd-in\1.26.11802\x64\Microsoft.Teams.MeetingAddin.DLL (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-05-06] (Gen Digital Inc. -> Gen Digital Inc.)
ShellIconOverlayIdentifiers: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Apps\Open Shell\ClassicExplorer64.dll [2026-05-12] (Open-Shell) [File not signed]
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-05-06] (Gen Digital Inc. -> Gen Digital Inc.)
ShellIconOverlayIdentifiers-x32: [ShareOverlay] -> {594D4122-1F87-41E2-96C7-825FB4796516} => C:\Apps\Open Shell\ClassicExplorer64.dll [2026-05-12] (Open-Shell) [File not signed]
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Apps\7-Zip\7-zip.dll [2026-04-27] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat 2017\Acrobat Elements\ContextMenuShim64.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-05-06] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers1: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll [2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers1: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Apps\LockHunter\LHShellExt64.dll [2021-06-24] (Crystal Rich Ltd -> Crystal Rich Ltd)
ContextMenuHandlers2: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll [2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
ContextMenuHandlers2: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Apps\LockHunter\LHShellExt64.dll [2021-06-24] (Crystal Rich Ltd -> Crystal Rich Ltd)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-05-06] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Apps\MBAM\mbshlext.dll [2026-04-13] (Malwarebytes Inc -> Malwarebytes)
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Apps\7-Zip\7-zip.dll [2026-04-27] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers4: [LockHunterShellExt] -> {0BB27CDA-7029-4C0E-9C56-D922B229F0EB} => C:\Apps\LockHunter\LHShellExt64.dll [2021-06-24] (Crystal Rich Ltd -> Crystal Rich Ltd)
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\26.084.0504.0007\FileSyncShell64.dll [2026-05-27] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.95.0.dll [2026-05-27] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_fb921a73e66cc88e\nvshext.dll [2026-04-28] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Apps\7-Zip\7-zip.dll [2026-04-27] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat 2017\Acrobat Elements\ContextMenuShim64.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Inc.)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2026-05-06] (Gen Digital Inc. -> Gen Digital Inc.)
ContextMenuHandlers6: [Comodo Antivirus] -> {4255A182-CAD9-4214-A19B-7BA7FB633BBD} => C:\Program Files\COMODO\COMODO Internet Security\cavshell.dll [2021-01-22] (Comodo Security Solutions, Inc. -> COMODO)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Apps\MBAM\mbshlext.dll [2026-04-13] (Malwarebytes Inc -> Malwarebytes)
ContextMenuHandlers6: [StartMenuExt] -> {E595F05F-903F-4318-8B0A-7F633B520D2B} => C:\WINDOWS\system32\StartMenuHelper64.dll [2026-05-12] (Open-Shell) [File not signed]
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
==================== Loaded Modules (Whitelisted) =============
2026-06-01 08:40 - 2026-06-01 08:40 - 001851904 _____ () [File not signed] \\?\C:\Users\www\AppData\Local\Temp\4270b1d9-c3f2-4d1e-b277-eb90b1e88b37.tmp.node
2026-04-24 18:51 - 2026-04-24 18:51 - 000026624 _____ () [File not signed] C:\Apps\AIMP\Plugins\Aorta\Aorta.dll
2023-04-15 21:17 - 2023-04-15 21:17 - 000021504 _____ () [File not signed] C:\Apps\Ditto\ICU_Loader.dll
2026-04-20 21:09 - 2026-04-18 23:42 - 003039232 _____ () [File not signed] C:\Apps\Ferdium\ffmpeg.dll
2026-04-20 21:09 - 2026-04-18 23:42 - 000505344 _____ () [File not signed] C:\Apps\Ferdium\libegl.dll
2026-04-20 21:09 - 2026-04-18 23:42 - 008049664 _____ () [File not signed] C:\Apps\Ferdium\libglesv2.dll
2026-04-20 21:09 - 2026-04-18 23:42 - 005530624 _____ () [File not signed] C:\Apps\Ferdium\vk_swiftshader.dll
2022-06-05 00:18 - 2016-09-19 12:09 - 000813056 _____ () [File not signed] C:\Apps\Networx\sqlite.dll
2025-03-20 14:05 - 2011-10-30 16:02 - 000038912 _____ () [File not signed] C:\Apps\RBTray\RBHook.dll
2023-09-04 15:21 - 2025-08-19 11:56 - 000157184 _____ () [File not signed] C:\Apps\Total Commander\libdeflate64.dll
2017-04-24 12:40 - 2017-04-24 12:40 - 000010240 _____ () [File not signed] C:\Program Files (x86)\Adobe\Acrobat 2017\Acrobat\locale\cs_cz\acrotray.cze
2017-04-24 12:40 - 2017-04-24 12:40 - 000013312 _____ (Adobe Systems Inc.) [File not signed] C:\Program Files (x86)\Adobe\Acrobat 2017\Acrobat\locale\cs_cz\Acrobat Elements\ContextMenuShim64.cze
2023-04-15 21:17 - 2023-04-15 21:17 - 000051712 _____ (Ditto Utility Addin) [File not signed] C:\Apps\Ditto\Addins\DittoUtil.dll
2019-06-20 10:21 - 2019-06-20 10:21 - 005701120 _____ (Firebird Project) [File not signed] C:\Apps\Essential PIM\gds32.dll
2026-04-24 18:51 - 2026-04-24 18:51 - 000214016 _____ (Florin Ghido, florin.ghido@gmail.com) [File not signed] C:\Apps\AIMP\Plugins\OptimFROG\OptimFROG.dll
2019-06-20 10:14 - 2019-06-20 10:14 - 001558016 _____ (IBM Corporation and others) [File not signed] C:\Apps\Essential PIM\icudt30.dll
2019-06-20 10:14 - 2019-06-20 10:14 - 000935936 _____ (IBM Corporation and others) [File not signed] C:\Apps\Essential PIM\icuuc30.dll
2022-06-04 23:59 - 2026-04-27 11:00 - 000101888 _____ (Igor Pavlov) [File not signed] C:\Apps\7-Zip\7-zip.dll
2026-04-24 18:51 - 2026-04-24 18:51 - 000256000 _____ (MaresWEB) [File not signed] C:\Apps\AIMP\Plugins\bass_aac\bass_aac.dll
2025-04-22 19:24 - 2026-04-24 18:51 - 000028672 _____ (MaresWEB) [File not signed] C:\Apps\AIMP\Plugins\bass_ac3\bass_ac3.dll
2026-04-24 18:51 - 2026-04-24 18:51 - 000021112 _____ (MaresWEB) [File not signed] C:\Apps\AIMP\Plugins\bass_mpc\bass_mpc.dll
2026-04-24 18:51 - 2026-04-24 18:51 - 000036105 _____ (MaresWEB) [File not signed] C:\Apps\AIMP\Plugins\bass_spx\bass_spx.dll
2026-04-24 18:51 - 2026-04-24 18:51 - 000007910 _____ (MaresWEB) [File not signed] C:\Apps\AIMP\Plugins\bass_tta\bass_tta.dll
2025-04-05 21:24 - 2025-04-05 21:24 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems64.dll] C:\Program Files\Microsoft Office\root\Office16\AppVIsvSubsystems64.dll
2025-04-05 21:24 - 2025-04-05 21:24 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R64.dll] C:\Program Files\Microsoft Office\root\Office16\c2r64.dll
2026-02-01 18:53 - 2026-02-01 18:53 - 000000000 ____L (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\PlugIns\NVIDIA App\MessageBusRouter.dll] C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\plugins\NVIDIA Overlay\MessageBusRouter.dll
2025-04-05 22:00 - 2026-02-01 18:53 - 000000000 ____L (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA App\MessageBus\NvMessageBusBroadcast.dll] C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem\NvMessageBusBroadcast.dll
2026-05-12 19:18 - 2026-05-12 19:18 - 002801664 _____ (Open-Shell) [File not signed] C:\Apps\Open Shell\StartMenuDLL.dll
2026-05-12 19:18 - 2026-05-12 19:18 - 000456192 _____ (Open-Shell) [File not signed] C:\WINDOWS\system32\StartMenuHelper64.dll
2025-09-28 12:27 - 2024-09-02 11:41 - 000163776 _____ (Private Internet Access, Inc. -> ) [File not signed] C:\Program Files\Private Internet Access\kapps_core.dll
2025-09-28 12:27 - 2024-09-02 11:41 - 000243136 _____ (Private Internet Access, Inc. -> ) [File not signed] C:\Program Files\Private Internet Access\kapps_net.dll
2025-09-28 12:27 - 2024-09-02 11:41 - 000379840 _____ (Private Internet Access, Inc. -> ) [File not signed] C:\Program Files\Private Internet Access\kapps_regions.dll
2025-09-28 12:27 - 2024-09-02 11:41 - 000316864 _____ (Private Internet Access, Inc. -> ) [File not signed] C:\Program Files\Private Internet Access\pia-clientlib.dll
2025-09-28 12:27 - 2024-09-02 11:41 - 001192384 _____ (Private Internet Access, Inc. -> ) [File not signed] C:\Program Files\Private Internet Access\pia-commonlib.dll
2025-09-28 12:27 - 2024-09-02 11:41 - 000059328 _____ (Private Internet Access, Inc. -> ) [File not signed] C:\Program Files\Private Internet Access\pia-winrtsupport.dll
2025-09-28 12:27 - 2024-09-02 11:41 - 000274880 _____ (Private Internet Access, Inc. -> Private Internet Access, Inc.) [File not signed] C:\Program Files\Private Internet Access\pia-wintun.dll
2025-09-28 12:27 - 2024-09-02 11:41 - 006184944 _____ (Private Internet Access, Inc. -> The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Program Files\Private Internet Access\libcrypto-3-x64.dll
2022-06-19 15:18 - 2018-03-02 07:51 - 001149440 _____ (Robert Simpson, et al.) [File not signed] C:\Apps\Gameplay Time Tracker\x86\SQLite.Interop.dll
2026-04-24 18:51 - 2026-04-24 18:51 - 000112640 _____ (Thomas Becker, Osnabrueck) [File not signed] C:\Apps\AIMP\Plugins\tak_deco_lib\tak_deco_lib.dll
2026-04-24 18:51 - 2026-04-24 18:51 - 000018257 _____ (Un4seen Developments) [File not signed] C:\Apps\AIMP\Plugins\bass_wma\bass_wma.dll
2012-07-21 21:55 - 2012-08-31 22:57 - 000629248 _____ (zett42) [File not signed] C:\Apps\FlashFolder\fflib6439.dll
2012-07-21 22:05 - 2012-08-31 22:46 - 003306496 _____ (zett42) [File not signed] C:\Apps\FlashFolder\fflib6439_64.dll
==================== Alternate Data Streams (Whitelisted) ========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\Users\www\Desktop\Moore and Sanders - Anthropology in Theory Issues in Epistemology.pdf:com.dropbox.attrs [54]
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2026-05-21] (Microsoft Corporation -> Microsoft Corporation)
BHO: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Apps\Open Shell\ClassicExplorer64.dll [2026-05-12] (Open-Shell) [File not signed]
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2017\x64\AcroIEFavStub.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2017\x64\AcroIEFavStub.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2026-05-21] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: ExplorerBHO Class -> {449D0D6E-2412-4E61-B68F-1CB625CD9E52} -> C:\Apps\Open Shell\ClassicExplorer32.dll [2026-05-12] (Open-Shell) [File not signed]
BHO-x32: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2017\AcroIEFavStub.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO-x32: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2017\AcroIEFavStub.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2017\x64\AcroIEFavStub.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Apps\Open Shell\ClassicExplorer64.dll [2026-05-12] (Open-Shell) [File not signed]
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\2017\AcroIEFavStub.dll [2017-04-24] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Classic Explorer Bar - {553891B7-A0D5-4526-BE18-D3CE461D6310} - C:\Apps\Open Shell\ClassicExplorer32.dll [2026-05-12] (Open-Shell) [File not signed]
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-05-21] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-05-21] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-05-21] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-05-21] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-05-21] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-05-21] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-05-21] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-05-21] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\...\sharepoint.com -> hxxps://cunicz-files.sharepoint.com
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2025-04-05 21:09 - 2025-04-05 21:08 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
==================== Network ===========================
(Currently there is no automatic fix for this section.)
DNS Servers: 156.154.70.22 - 156.154.71.22
Windows Firewall is enabled.
Network Binding:
=============
PIA OpenVPN WinTUN Adapter: PIA Tunnel -> pia-wintun.sys
Síťové připojení Bluetooth: Bluetooth Device (Personal Area Network) -> bthpan.sys
Ethernet: Killer E2400 Gigabit Ethernet Controller -> e2xw10x64.sys
inspect: COMODO Internet Security Firewall Driver
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-2069861480-1445196129-2239134032-1001\Control Panel\Desktop\\Wallpaper -> C:\Apps\_WP\Krivoklat_okno_75A.jpg
HKU\S-1-5-21-2069861480-1445196129-2239134032-1003\Control Panel\Desktop\\Wallpaper -> C:\Users\admin\AppData\Local\Packages\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\LocalCache\Microsoft\IrisService\1354020102363009558\133883317678444188.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 2) (TamperProtectionSource: )
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
==================== MSCONFIG/TASK MANAGER disabled items ==
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{5E422DEE-BE1F-4D93-97B7-69E825144632}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{263732C1-7A01-4A29-B035-3FC22BDADBEC}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Gen Digital Inc. -> Gen Digital Inc.)
FirewallRules: [{056FE898-47A7-4377-B474-0780E6FE5935}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{98EA0517-294A-4C7F-A1D0-0095D4CD7465}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{E717A425-E0A1-4890-800C-041F5F3D2735}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{222B4380-7532-493F-ADA7-59F5A4D915B6}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{1BB3C32E-92E0-4DDC-95A4-D49E799A73F3}] => (Allow) C:\Users\www\AppData\Roaming\Zoom\bin\Zoom.exe (Zoom Communications, Inc. -> Zoom Communications, Inc.)
FirewallRules: [{64A00691-1DD0-48F5-AAB8-88E9F44615FA}] => (Allow) LPort=53317
FirewallRules: [{DE04ED4B-D3A1-48ED-BB7E-B4D551441C71}] => (Allow) LPort=53317
FirewallRules: [{AC451861-9293-457E-909F-402CCA3811E6}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{43615C21-91F6-4F14-BF00-B39C531C2864}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{CD3EF128-B2E2-45D8-9FC5-71D8547D7989}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{2D0EBF6C-B8EC-4362-99F2-E6AA300438C8}] => (Allow) C:\Apps\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{8D8E0029-C8E4-4C27-84DF-A3FD4A414E56}] => (Allow) C:\Apps\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{8B21C06F-8069-4B1B-B4EF-EF97C9DC0EB8}] => (Allow) C:\Program Files (x86)\Microsoft\Copilot\Application\mscopilot.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{BD1D72BB-2DFA-4F2E-A8E9-2E88E1C2235D}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{6A17166F-E50F-414B-8472-DCB9959BD7F1}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.)
FirewallRules: [{DAF37ACB-F030-4EC4-A6D2-50BE53A9EA6C}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.)
==================== Restore Points =========================
==================== Faulty Device Manager Devices ============
Name: Neznámé zařízení USB (požadavek popisovače zařízení selhal)
Description: Neznámé zařízení USB (požadavek popisovače zařízení selhal)
Class Guid: {36fc9e60-c465-11cf-8056-444553540000}
Manufacturer: (Standardní hostitelský řadič USB)
Service:
Problem: : Windows has stopped this device because it has reported problems. (Code 43)
Resolution: One of the drivers controlling the device notified the operating system that the device failed in some manner. For more information about how to diagnose the problem, see the hardware documentation.
==================== Event log errors: ========================
Application errors:
==================
Error: (06/01/2026 08:49:54 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x354e0
Čas spuštění chybující aplikace: 0x01dcf192d97e1325
Cesta k chybující aplikaci: C:\WINDOWS\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\WINDOWS\system32\clipesu.exe
ID zprávy: a5691f15-5786-4711-88c7-7cc82a34f734
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (06/01/2026 08:41:18 AM) (Source: DbxSvc) (EventID: 322) (User: )
Description: Failed to get driver message: (-2147024890) Neplatný popisovač.
Error: (05/31/2026 01:03:48 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x2c14
Čas spuštění chybující aplikace: 0x01dcf0ed27c3027c
Cesta k chybující aplikaci: C:\WINDOWS\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\WINDOWS\system32\clipesu.exe
ID zprávy: da145fb7-8c3d-47ce-bca6-6ef468c4f974
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (05/31/2026 12:51:52 PM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.]
Error: (05/31/2026 10:16:35 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x29804
Čas spuštění chybující aplikace: 0x01dcf0d5cafd4957
Cesta k chybující aplikaci: C:\WINDOWS\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\WINDOWS\system32\clipesu.exe
ID zprávy: f649c75d-2b14-4498-b780-cde01ae4f448
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (05/31/2026 10:12:53 AM) (Source: DbxSvc) (EventID: 322) (User: )
Description: Failed to get driver message: (-2147024890) Neplatný popisovač.
Error: (05/30/2026 01:17:57 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Název chybujícího modulu: clipesu.exe, verze: 10.0.19041.6392, časové razítko: 0x22d5d34a
Kód výjimky: 0xc0000005
Posun chyby: 0x000000000001dfae
ID chybujícího procesu: 0x1fa78
Čas spuštění chybující aplikace: 0x01dcf025f76371eb
Cesta k chybující aplikaci: C:\WINDOWS\system32\clipesu.exe
Cesta k chybujícímu modulu: C:\WINDOWS\system32\clipesu.exe
ID zprávy: 5a36ed63-119e-4afd-8543-0d64e8ea090f
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (05/30/2026 01:10:10 PM) (Source: DbxSvc) (EventID: 322) (User: )
Description: Failed to get driver message: (-2147024890) Neplatný popisovač.
System errors:
=============
Error: (06/01/2026 08:37:06 AM) (Source: Schannel) (EventID: 4108) (User: NT AUTHORITY)
Description: Certifikát přijatý od vzdáleného serveru nebyl správně ověřený. Kód chyby je 0x80092013. Žádost o připojení TLS selhala. Připojená data obsahují certifikát serveru.
Error: (06/01/2026 08:36:04 AM) (Source: Ntfs) (EventID: 55) (User: NT AUTHORITY)
Description: Ve struktuře systému souborů na svazku Y: bylo zjištěno poškození.
Bylo nalezeno poškození ve struktuře indexů systému souborů. Referenční číslo souboru je 0x10000000008a6. Název souboru je \.bzvol. Poškozený atribut indexu je :$I30:$INDEX_ALLOCATION.
Error: (05/31/2026 12:57:42 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:MSI;FirmwareManufacturer:American Megatrends Inc.;FirmwareVersion:A.D0;OEMModelBaseBoard:Z170A GAMING M3 (MS-7978);OEMManufacturerName:MSI;OSArchitecture:amd64;
BucketId: 4d6e1a388fa828d282e8448f2f15aa8aee64faf6e5a9332dab2f7ed72c70afc1
BucketConfidenceLevel:
UpdateType: 0
HResult: 0
Error: (05/30/2026 11:28:56 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80073d02): 9WZDNCRD29V9-MICROSOFT.MICROSOFTOFFICEHUB.
Error: (05/30/2026 05:26:59 PM) (Source: volsnap) (EventID: 36) (User: )
Description: Stínové kopie svazku C: byly přerušeny, protože z důvodu limitu stanoveného uživatelem se nepodařilo zvětšit úložiště stínové kopie.
Error: (05/30/2026 12:51:20 PM) (Source: Ntfs) (EventID: 55) (User: NT AUTHORITY)
Description: Ve struktuře systému souborů na svazku Y: bylo zjištěno poškození.
Bylo nalezeno poškození ve struktuře indexů systému souborů. Referenční číslo souboru je 0x10000000008a6. Název souboru je \.bzvol. Poškozený atribut indexu je :$I30:$INDEX_ALLOCATION.
Error: (05/29/2026 03:12:42 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:MSI;FirmwareManufacturer:American Megatrends Inc.;FirmwareVersion:A.D0;OEMModelBaseBoard:Z170A GAMING M3 (MS-7978);OEMManufacturerName:MSI;OSArchitecture:amd64;
BucketId: 4d6e1a388fa828d282e8448f2f15aa8aee64faf6e5a9332dab2f7ed72c70afc1
BucketConfidenceLevel:
UpdateType: 0
HResult: 0
Error: (05/29/2026 11:32:59 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:MSI;FirmwareManufacturer:American Megatrends Inc.;FirmwareVersion:A.D0;OEMModelBaseBoard:Z170A GAMING M3 (MS-7978);OEMManufacturerName:MSI;OSArchitecture:amd64;
BucketId: 4d6e1a388fa828d282e8448f2f15aa8aee64faf6e5a9332dab2f7ed72c70afc1
BucketConfidenceLevel:
UpdateType: 0
HResult: 0
CodeIntegrity:
===============
Date: 2026-06-01 11:00:04
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume13\Windows\System32\guard64.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.
==================== Memory info ===========================
BIOS: American Megatrends Inc. A.D0 07/04/2018
Motherboard: MSI Z170A GAMING M3 (MS-7978)
Processor: Intel(R) Core(TM) i7-6700K CPU @ 4.00GHz
Percentage of memory in use: 56%
Total physical RAM: 32656.32 MB
Available physical RAM: 14365.01 MB
Total Virtual: 37520.32 MB
Available Virtual: 11579.14 MB
==================== Drives ================================
Drive c: () (Fixed) (Total:232.26 GB) (Free:14.34 GB) (Model: WDS250G2X0C-00L350) NTFS
Drive f: (Games SSD) (Fixed) (Total:894.25 GB) (Free:9.77 GB) (Model: Patriot Burst) NTFS
Drive g: (WD4_OTHER) (Fixed) (Total:1000 GB) (Free:232.63 GB) (Model: WDC WD40EZRZ-00GXCB0) NTFS
Drive h: (SG4_AV_NEW) (Fixed) (Total:3726.02 GB) (Free:9.93 GB) (Model: ST4000DM004-2CV104) NTFS
Drive i: (WD4_WORK) (Fixed) (Total:2048 GB) (Free:1011.68 GB) (Model: WDC WD40EZRZ-00GXCB0) NTFS
Drive l: (WD4_DOWN) (Fixed) (Total:678.01 GB) (Free:208.81 GB) (Model: WDC WD40EZRZ-00GXCB0) NTFS
Drive s: (SG8_FOTO) (Fixed) (Total:2048 GB) (Free:1183.41 GB) (Model: ST8000DM004-2U9188) NTFS
Drive t: (SG8_ISO) (Fixed) (Total:5404.02 GB) (Free:11.8 GB) (Model: ST8000DM004-2U9188) NTFS
Drive w: (My Book Duo 4TB) (Fixed) (Total:3725.87 GB) (Free:131.41 GB) (Model: WD My Book Duo 25F6 USB Device) NTFS
Drive y: (My Book) (Fixed) (Total:931.5 GB) (Free:157.62 GB) (Model: WD My Book USB Device) NTFS
\\?\Volume{1b3f5fa3-0986-4d93-ab9d-587361b97754}\ (Obnovení) (Fixed) (Total:0.52 GB) (Free:0.09 GB) NTFS
\\?\Volume{729bbd59-8644-4ec8-b8af-70b727807fc9}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Size: 894.3 GB) (Disk ID: 09AE835C)
Partition 1: (Not Active) - (Size=894.3 GB) - (Type=0F Extended)
==========================================================
Disk: 1 (Protective MBR) (Size: 7452 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 2 (Protective MBR) (Size: 3726 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 3 (Size: 3726 GB) (Disk ID: 238B9290)
Partition: GPT.
==========================================================
Disk: 4 (MBR Code: Windows 7/8/10) (Size: 232.9 GB) (Disk ID: 0EA60D4B)
Partition: GPT.
==========================================================
Disk: 5 (Size: 931.5 GB) (Disk ID: ACE7F82E)
Partition 1: (Not Active) - (Size=931.5 GB) - (Type=07 NTFS)
==========================================================
Disk: 6 (Protective MBR) (Size: 3726 GB) (Disk ID: 00000000)
Partition: GPT.
==================== End of Addition.txt =======================