Stránka 11

Prosím o kontrolu logu z důvodu úbytku místa na SSD

Odeslal: 21 Črv 2026 11:00
od pitrisin
Dobrý den, cca. 4 dny se mi začal zaplňovat SSD měl jsem tam cca 25gb volného místa a najednou jsem tam měl 800mb, tak jsem zkusil zase uvolnit místo cca. 10gb, zašel jsem si udělat oběd, přijdu k pc a je tam zase 500-800mb. Děkuji za pomoc.

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-06-2026
Ran by micha (administrator) on PETR (ASUS System Product Name) (21-06-2026 11:48:33)
Running from C:\Users\micha\OneDrive\Plocha\FRST64.exe
Loaded Profiles: micha
Platform: Microsoft Windows 11 Home Version 25H2 26200.8655 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Users\micha\AppData\Local\CZManager\czmanager-agent.exe
(ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe <5>
(ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe
(Brave Software, Inc. -> Brave Software, Inc.) C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe <47>
(Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe
(C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe ->) (ASUSTeK COMPUTER INC. -> ) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\SwAgent\ArmourySwAgent.exe
(C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe
(C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe ->) (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler.exe
(C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe ->) (Brave Software, Inc. -> BraveSoftware Inc.) C:\Program Files (x86)\BraveSoftware\Update\1.3.361.151\BraveCrashHandler64.exe
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzAppManager
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzBTLEManager
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzDeviceManager
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzDiagnostic
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzChromaConnectManager
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzChromaConnectServer
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzIoTDeviceManager
(C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSmartlightingDeviceManager
(C:\Program Files (x86)\Razer\Razer Services\Razer Central\Razer Central.exe ->) (Razer USA Ltd. -> The CefSharp Authors) C:\Program Files (x86)\Razer\Razer Services\Razer Central\CefSharp.BrowserSubprocess.exe <5>
(C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Services\Razer Central\Razer Central.exe
(C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe ->) (Razer USA Ltd. -> ) C:\Program Files (x86)\Razer\Synapse3\UserProcess\Razer Synapse Service Process.exe
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\gameoverlayui64.exe
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve) C:\Program Files (x86)\Steam\steamapps\common\Half-Life\hl.exe
(C:\Program Files\ASUS\Armoury Crate Service\ArmouryCrate.Service.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\Armoury Crate Service\ArmouryCrate.UserSessionHelper.exe
(C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe ->) () [File not signed] C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmw.exe
(C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe ->) () [File not signed] C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmwj.exe
(C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(C:\Program Files\LGHUB\lghub_agent.exe ->) (Logitech Inc -> Sentry and Logitech, Inc.) C:\Program Files\LGHUB\logi_crashpad_handler.exe
(C:\Program Files\LGHUB\lghub_updater.exe ->) (Logitech Inc -> Sentry and Logitech, Inc.) C:\Program Files\LGHUB\logi_crashpad_handler.exe
(C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_agent.exe
(C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\Malwarebytes.exe
(C:\Program Files\Softdeluxe\Free Download Manager\wenativehost.exe ->) (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe
(C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_526.11701.50.0_x64__cw5n1h2txyewy\WidgetBoard.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\149.0.4022.80\msedgewebview2.exe
(cmd.exe ->) (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\wenativehost.exe
(DriverStore\FileRepository\u0420529.inf_amd64_94ad5a6c4d1a04e2\B419765\atiesrxx.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0420529.inf_amd64_94ad5a6c4d1a04e2\B419765\atieclxx.exe
(explorer.exe ->) (Brave Software, Inc. -> Brave Software, Inc.) C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe
(explorer.exe ->) (Gen Digital Inc. -> Privax Limited) C:\Program Files\Privax\HMA VPN\Vpn.exe
(explorer.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe
(explorer.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe
(explorer.exe ->) (Riot Games, Inc. -> Riot Games, Inc.) C:\Program Files\Riot Vanguard\vgtray.exe
(explorer.exe ->) (SocialChain Inc -> Socialchain Inc.) C:\Users\micha\AppData\Local\Programs\pi-network-desktop\Pi Network.exe
(explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe
(Gen Digital Inc. -> Privax Limited) C:\Program Files\Privax\HMA VPN\Vpn.exe <2>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <9>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\149.0.4022.80\msedgewebview2.exe <10>
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\GameInputSvc.exe
(Microsoft Corporation -> Windows (R) Win 7 DDK provider) C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe
(services.exe ->) () [File not signed] C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0420529.inf_amd64_94ad5a6c4d1a04e2\B419765\atiesrxx.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUS Inc.) C:\Program Files (x86)\ASUS\GameSDK Service\GameSDK.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.) C:\Program Files (x86)\ASUS\AsusCertService\1.3.2\AsusCertService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files (x86)\ASUS\AXSP\4.08.06\atkexComSvc.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files (x86)\LightingService\LightingService.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.) C:\Program Files\ASUS\Armoury Crate Service\ArmouryCrate.Service.exe
(services.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe
(services.exe ->) (Gen Digital Inc. -> Privax Limited) C:\Program Files\Privax\HMA VPN\VpnSvc.exe
(services.exe ->) (INPLERON LTD -> ) C:\Program Files (x86)\GameGuard\acsvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_5aab0cb93cd60e87\RstMwService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe
(services.exe ->) (Logitech Inc -> Logitech, Inc.) C:\Program Files\LGHUB\lghub_updater.exe
(services.exe ->) (LogMeIn, Inc. -> LogMeIn Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe
(services.exe ->) (LogMeIn, Inc. -> LogMeIn, Inc.) C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe
(services.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WSL\wslservice.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\GameInputSvc.exe
(services.exe ->) (Microsoft Corporation -> Windows (R) Win 7 DDK provider) C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\DriverStore\FileRepository\amdfendr.inf_amd64_1aafc0a9b0693712\amdfendrsr.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster®) C:\Program Files\Thrustmaster\FFB Racing wheel\drivers\amd64\tmInstall.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\NisSrv.exe
(services.exe ->) (nordvpn s.a. -> nordvpn S.A.) C:\Program Files\NordUpdater\NordUpdateService.exe
(services.exe ->) (nordvpn s.a. -> nordvpn S.A.) C:\Program Files\NordVPN\nordvpn-service.exe
(services.exe ->) (Novabench Inc. -> Novabench Inc.) C:\Program Files\Novabench\resources\NovabenchService.exe
(services.exe ->) (PALTALK, INC. -> AVM Software) C:\Program Files (x86)\Paltalk\update\pt_update_service.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc) C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzChromaStreamServer.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe
(services.exe ->) (Razer USA Ltd. -> Razer Inc.) C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe
(services.exe ->) (Surfshark B.V. -> Surfshark.Service) C:\Program Files\Surfshark\Surfshark.Service.exe
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe
(SocialChain Inc -> Socialchain Inc.) C:\Users\micha\AppData\Local\Programs\pi-network-desktop\Pi Network.exe <5>
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ) C:\Program Files\ASUS\KINGSTON_Aac_DRAM\AacKingstonDramHal_x64.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ) C:\Program Files\ASUS\KINGSTON_Aac_DRAM\AacKingstonDramHal_x86.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUS) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AcPowerNotification\AcPowerNotification.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUS) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\MBLedSDK\NoiseCancelingEngine.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTek Compputer Inc.) C:\Program Files\ASUS\AacMB\Aac3572MbHal_x86.exe <2>
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\AacExtCard\extensionCardHal_x86.exe
(svchost.exe ->) (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.) C:\Program Files\ASUS\ASUS_Aac_DRAM\Aac3572DramHal_x86.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.Edge.GameAssist_1.0.4019.0_x64__8wekyb3d8bbwe\EdgeGameAssist.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2606.1001.27.0_x64__8wekyb3d8bbwe\XboxGameBarWidgets.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.GamingApp_2606.1001.27.0_x64__8wekyb3d8bbwe\XboxPcAppFT.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.302.5.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_7.326.6011.0_x64__8wekyb3d8bbwe\GameBar.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.XboxGamingOverlay_7.326.6011.0_x64__8wekyb3d8bbwe\GameBarFTServer.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\GameBarPresenceWriter.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\rundll32.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
(svchost.exe ->) (ORANGE VIEW LIMITED -> iTop Inc.) C:\Program Files (x86)\iTop Screenshot\iScrShot.exe
(svchost.exe ->) (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\helperservice.exe
(svchost.exe ->) (Spotify AB -> ) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\XboxGameBarSpotify.exe
(Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe <6>
(Wondershare Technology Co.,Ltd -> Wondershare) C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe

==================== Registry (Whitelisted) ===================

HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [4148120 2026-05-01] (Riot Games, Inc. -> Riot Games, Inc.)
HKLM-x32\...\Run: [Launcher6015B] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\Launcher\xrlaunch.exe [2569728 2011-04-28] (Xerox) [File not signed]
HKLM-x32\...\Run: [6015B RUN] => C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmRun.exe [355840 2012-07-16] () [File not signed]
HKLM-x32\...\Run: [YKB 3400 PANZER] => C:\Program Files\FAST\PANZER\YKB 3400 PANZER.exe [1828864 2019-08-01] (TODO: <Company name>) [File not signed]
HKLM-x32\...\Run: [LogMeIn Hamachi Ui] => C:\Program Files (x86)\LogMeIn Hamachi\hamachi-2-ui.exe [7811960 2024-03-25] (LogMeIn, Inc. -> LogMeIn Inc.)
HKLM-x32\...\Run: [PC Suite Tray] => C:\Program Files (x86)\Nokia\Nokia PC Suite 7\PCSuite.exe [1516632 2012-06-26] (Nokia -> Nokia)
HKLM-x32\...\Run: [Wondershare Helper Compact.exe] => C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\WSHelper.exe [2133728 2024-09-29] (Wondershare Technology Co.,Ltd -> Wondershare)
HKLM-x32\...\Run: [VideoPlayTool] => C:\Program Files (x86)\VideoPlayTool\Bin\VideoPlayTool.exe [912384 2025-11-03] () [File not signed]
HKLM-x32\...\Run: [mo_pc_offical_soc] => E:\FunPlus\Sea of Conquest\Launcher.exe (No File)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [5776024 2026-06-09] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Opera GX Stable] => "C:\Users\micha\AppData\Local\Programs\Opera GX\opera.exe" --autostart [2980808 2026-06-15] (Opera Norway AS -> Opera Software)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [51722680 2026-05-11] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Discord] => C:\Users\micha\AppData\Local\Discord\Update.exe [1512608 2021-09-21] (Discord Inc. -> GitHub)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [G-Menu] => C:\G-Menu\G-Menu.exe [110791560 2024-12-27] (TOP VICTORY ELECTRONICS (TAIWAN) CO., LTD. -> AOC)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Free Download Manager] => C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe [10551296 2026-03-24] (Softdeluxe) [File not signed]
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [RiotClient] => C:\Riot Games\Riot Client\RiotClientServices.exe [75647752 2026-06-11] (Riot Games, Inc. -> Riot Games, Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [com.blitz.app] => C:\Users\micha\AppData\Local\Programs\Blitz\Blitz.exe [180674520 2026-06-04] (Swift Media Entertainment, Inc. -> Blitz, Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [PaltalkLauncher] => C:\Program Files (x86)\Paltalk\PaltalkLauncher.exe [1310288 2023-12-29] (PALTALK, INC. -> Paltalk, Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [NordVPN] => C:\Program Files\NordVPN\NordVPN.exe [263256 2023-09-25] (nordvpn s.a. -> nordvpn S.A.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Synapse3] => C:\Program Files (x86)\Razer\Synapse3\WPFUI\Framework\Razer Synapse 3 Host\Razer Synapse 3.exe [3599496 2025-03-11] (Razer USA Ltd. -> Razer Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Battle.net] => D:\Battle.net\Battle.net.exe [981632 2025-05-16] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [EADM] => C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALauncher.exe [3393184 2026-04-15] (Electronic Arts, Inc. -> Electronic Arts)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Wargaming.net Game Center] => D:\Wargaming.net\GameCenter\wgc.exe [2580728 2026-01-24] (Wargaming Group Limited -> Wargaming.net)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [IO Auto Clicker] => C:\Users\micha\Programs\IO Auto Clicker\IO-Auto-Clicker.exe [38201072 2023-08-08] (Massive Computing, Inc. -> Wonkru Media (OPC) Private Limited)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [PlanetVPN] => C:\Program Files (x86)\PlanetVPN\PlanetVPN.exe [28895528 2025-03-18] (FREE VPN PLANET S.R.L. -> )
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45741280 2025-07-18] (Gen Digital Inc. -> Gen Digital Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [NokiaSuite.exe] => C:\Program Files (x86)\Nokia\Nokia Suite\NokiaSuite.exe [1090912 2013-04-19] (Nokia -> Nokia)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [VoicemodV3] => C:\Program Files\Voicemod V3\Voicemod.exe [6302096 2024-11-21] (VOICEMOD, INC. SUCURSAL EN ESPAÑA -> Voicemod Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [LGHUB] => C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe [26286744 2026-05-01] (Logitech Inc -> Logitech, Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [electron.app.Pi Network] => C:\Users\micha\AppData\Local\Programs\pi-network-desktop\Pi Network.exe [199201592 2025-10-22] (SocialChain Inc -> Socialchain Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [Surfshark] => C:\Program Files\Surfshark\Surfshark.exe [258752 2025-05-21] (Surfshark B.V. -> Surfshark)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [AMDNoiseSuppression] => C:\Windows\system32\AMD\ANR\AMDNoiseSuppression.exe [164840 2024-06-24] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [ut] => C:\Users\micha\AppData\Roaming\uTorrent\uTorrent.exe [3680688 2025-10-09] (BitTorrent Inc -> BitTorrent Limited)
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Run: [MicrosoftEdgeAutoLaunch_ED02E366447D09E4F124EF89B233D989] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [5304648 2026-06-17] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\Windows x64\Print Processors\xrhk1apps: C:\Windows\System32\spool\prtprocs\x64\xrhk1apps.dll [33280 2012-03-15] (Microsoft Windows Hardware Compatibility Publisher -> Xerox)
HKLM\...\Print\Monitors\Xerox WorkCentre 6015B Language Monitor: C:\Windows\system32\xrhk1alm.dll [22528 2012-03-09] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\Software\...\AppCompatFlags\Custom\Game.exe: [{481dc351-bab0-4f86-b085-87a5626fe6dc}.sdb] -> Mafia Compatibility Database
HKLM\Software\...\AppCompatFlags\InstalledSDB\{481dc351-bab0-4f86-b085-87a5626fe6dc}: [DatabasePath] -> C:\WINDOWS\AppPatch\CustomSDB\{481dc351-bab0-4f86-b085-87a5626fe6dc}.sdb [2017-10-31]
HKLM\Software\Microsoft\Active Setup\Installed Components: [>OpenVPN_UserSetup] -> reg delete HKCU\Software\Microsoft\Windows\CurrentVersion\Run /v OPENVPN-GUI /f
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4044440 2026-06-06] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\149.0.7827.114\Installer\chrmstp.exe [7662744 2026-06-13] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{AFE6A462-C574-4B8A-AF43-4CC60DF4563B}] -> C:\Program Files\BraveSoftware\Brave-Browser\Application\149.1.91.175\Installer\chrmstp.exe [6180432 2026-06-17] (Brave Software, Inc. -> Brave Software, Inc.)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\HMA VPN.lnk [2026-06-12]
ShortcutTarget: HMA VPN.lnk -> C:\Program Files\Privax\HMA VPN\Vpn.exe (Gen Digital Inc. -> Privax Limited)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {07383BA5-AC71-4542-A27D-0B1365A76DC5} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1612800 2026-01-23] (Adobe Inc. -> Adobe Inc.)
Task: {58598953-64C1-498A-969D-7E530D78BD35} - System32\Tasks\ASUS\AcPowerNotification => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\AcPowerNotification\AcPowerNotification.exe [401304 2026-03-09] (ASUSTeK COMPUTER INC. -> ASUS)
Task: {4B79E43A-0A8C-4450-85D7-92F1259546C0} - System32\Tasks\ASUS\ArmourySocketServer => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\TaskSchedulerTool_ArmourySocketServer.exe [120728 2026-03-09] (ASUSTeK COMPUTER INC. -> TODO: <公司名稱>)
Task: {BA57A88A-1A4D-4745-868C-8343AC7BB574} - System32\Tasks\ASUS\ASUSUpdateTaskMachineCore1dc8b0f8264b10e => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [253848 2026-01-21] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
Task: {A82E61FC-C1C2-4BB6-8045-424DEB3F411C} - System32\Tasks\ASUS\ASUSUpdateTaskMachineUA => C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [253848 2026-01-21] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
Task: {0BBB9D13-8182-43EA-9D70-A341B104C8D5} - System32\Tasks\ASUS\NoiseCancelingEngine => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\MBLedSDK\NoiseCancelingEngine.exe [1261464 2025-09-02] (ASUSTeK COMPUTER INC. -> ASUS)
Task: {91EA2448-4E55-4FAD-BC70-DAB9590D29B9} - System32\Tasks\ASUS\P508PowerAgent_sdk => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ShareFromArmouryIII\Mouse\ROG STRIX CARRY\P508PowerAgent.exe (No File)
Task: {1CC508F2-2CEA-4175-B350-1A3E8EF97637} - System32\Tasks\AVG\AVG Driver Updater BugReport => C:\Program Files\AVG\Driver Updater\AvBugReport.exe -> --send "dumps|report" --silent --product 149 --programpath "C:\Program Files\AVG\Driver Updater\Setup\.." --configpath "C:\Program Files\AVG\Driver Updater\Setup" --path "C:\ProgramData\AVG\Driver Updater\log" --path "C:\ProgramData\AVG\Icarus\Logs" --logpath "C:\ProgramData\AVG\Driver Updater\log" (the data entry has 44 more characters).
Task: {4A23D69E-5CF9-42ED-A89C-293693D2BCFB} - System32\Tasks\AVG\AVG Driver Updater Update => C:\Program Files\Common Files\AVG\Icarus\avg-du\icarus.exe /update:avg-du /silent (No File)
Task: {96849D15-173B-45F8-BC00-2CF4DB8197EC} - System32\Tasks\CZManagerAgent => C:\Windows\system32\WindowsPowerShell\v1.0\powershell.exe [454656 2025-09-09] (Microsoft Windows -> Microsoft Corporation) -> -WindowStyle Hidden -Command Start-Process -FilePath 'C:\Users\micha\AppData\Local\CZManager\czmanager-agent.exe' -WindowStyle Hidden
Task: {0E2AFA7F-E936-4DF1-9D3B-26ACEFDFF1E1} - System32\Tasks\FreeDownloadManagerHelperService => C:\Program Files\Softdeluxe\Free Download Manager\helperservice.exe [139776 2026-03-24] (Softdeluxe) [File not signed]
Task: {BFAF617D-C894-46EF-9F24-5A2448C7D7B1} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem150.0.7863.0{9A1F49F2-B9A2-4FF8-8274-F7B59D04E8BD} => C:\Program Files (x86)\Google\GoogleUpdater\150.0.7863.0\updater.exe [8728216 2026-05-28] (Google LLC -> Google LLC)
Task: {0CAA4159-CBA2-429E-8515-CEBCE0710748} - System32\Tasks\GoogleUserPEH\RunPlatformExperienceHelper_Daily => C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4044440 2026-06-06] (Google LLC -> Google LLC)
Task: {289F1DC7-9AC7-41B2-B1CD-527C67F9E505} - System32\Tasks\GoogleUserPEH\RunPlatformExperienceHelper_Metrics => C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4044440 2026-06-06] (Google LLC -> Google LLC)
Task: {CADB948C-124D-458F-9DF4-02DB8693A495} - System32\Tasks\iTop Screen Recorder SkipUAC (micha) => C:\Program Files\iTop Screen Recorder\iScrRec.exe [15769656 2025-09-26] (ORANGE VIEW LIMITED -> iTop Inc.) -> C:\Program Files\iTop Screen Recorder\\/skipuac
Task: {4B96F151-97A7-4594-9114-042B455D99DC} - System32\Tasks\iTop Screen Recorder Startup => C:\Program Files\iTop Screen Recorder\iScrRec.exe [15769656 2025-09-26] (ORANGE VIEW LIMITED -> iTop Inc.) -> C:\Program Files\iTop Screen Recorder\\/autorun
Task: {1E2EF058-B5AD-4EB7-B196-EA895CDC061C} - System32\Tasks\iTop Screen Recorder Update => C:\Program Files\iTop Screen Recorder\AutoUpdate.exe [3570232 2025-07-29] (ORANGE VIEW LIMITED -> iTop Inc.) -> C:\Program Files\iTop Screen Recorder\\/auto
Task: {DC9705A8-88CC-4154-B39B-0D45A1C2C611} - System32\Tasks\iTop Screenshot SkipUAC (micha) => C:\Program Files (x86)\iTop Screenshot\iScrShot.exe [7622400 2023-05-11] (ORANGE VIEW LIMITED -> iTop Inc.) -> C:\Program Files (x86)\iTop Screenshot\\/skipuac
Task: {E3EAD2AC-F085-4A38-BD75-637B32BF1C9E} - System32\Tasks\iTop Screenshot Startup => C:\Program Files (x86)\iTop Screenshot\iScrShot.exe [7622400 2023-05-11] (ORANGE VIEW LIMITED -> iTop Inc.) -> C:\Program Files (x86)\iTop Screenshot\\/autorun
Task: {08038785-058A-4615-B290-9B987C6330AF} - System32\Tasks\iTop Screenshot Update => C:\Program Files (x86)\iTop Screenshot\AutoUpdate.exe [3081472 2023-05-17] (ORANGE VIEW LIMITED -> iTop Inc.) -> C:\Program Files (x86)\iTop Screenshot\\/auto
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {ABC7034D-3937-4B4A-82C7-95D2D3AE5D97} - System32\Tasks\Microsoft\Windows\Setup\SnapshotCleanupTask => C:\Windows\System32\OOBE\SetupPlatform\SetupPlatform.exe -removesnapshot (No File)
Task: {0BB36A32-0D9E-4297-AFD7-6BD7B5DB4C9B} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {262840F9-0B02-4A64-95E7-7F7352AFE986} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpCmdRun.exe [1906320 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {F1BCDA2D-2EBA-4EDC-A515-F495BC7699E8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpCmdRun.exe [1906320 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {DCA45B5B-8512-402E-B3BE-FF892EB05B32} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpCmdRun.exe [1906320 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {BE1B17B4-5C4D-4095-9E5F-623D408A95E8} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpCmdRun.exe [1906320 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {261C748D-8E6F-4711-9D47-7E084864C474} - System32\Tasks\Opera GX scheduled assistant Autoupdate 1704714885 => C:\Users\micha\AppData\Local\Programs\Opera GX\autoupdate\opera_autoupdate.exe [7636936 2026-06-10] (Opera Norway AS -> Opera Software) -> --scheduledtask --productiscomponent --installdir="C:\Users\micha\AppData\Local\Programs\Opera GX\assistant" --producttype=assistant $(Arg0)
Task: {E5CEE4AE-386B-4109-82E3-9BD53F078E92} - System32\Tasks\Opera GX scheduled Autoupdate 1704393290 => C:\Users\micha\AppData\Local\Programs\Opera GX\autoupdate\opera_autoupdate.exe [7636936 2026-06-10] (Opera Norway AS -> Opera Software)
Task: {487CFED9-2C96-424D-8868-096D1A0408C1} - System32\Tasks\Privax\HMA VPN Bug Report => C:\Program Files\Privax\HMA VPN\AvBugReport.exe [6605536 2026-06-11] (Gen Digital Inc. -> Privax Limited) -> --filter "*.dmp;*.mdmp;icarus.log" --send "dumps|report" --silent --product 78 --programpath "C:\Program Files\Privax\HMA VPN" --configpath "C:\ProgramData\Privax\HMA VPN" --path "C:\ProgramData\Privax\HMA VPN\log" --path "C:\ProgramData\Privax\Icarus\Logs" --logpath "C:\ProgramData\Privax\HMA VPN\l (the data entry has 47 more characters).
Task: {838A083D-1997-4EBC-88D2-B0122E6E3A13} - System32\Tasks\Privax\HMA VPN Emergency Update => C:\Program Files\Privax\HMA VPN\VpnUpdate.exe [4037856 2026-06-11] (Gen Digital Inc. -> Privax Limited)
Task: {E092C7B3-915D-490F-8252-1684233C029B} - System32\Tasks\Privax\HMA VPN Update => C:\Program Files\Common Files\Privax\Icarus\privax-vpn\icarus.exe [9715424 2026-05-21] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {353900EC-C8D8-4D46-9EAB-9123A2D37F51} - System32\Tasks\Privax\IcarusPrivaxVpnUpgrade => C:\Program Files\Privax\HMA VPN\setup\privax_vpn_online_setup.exe -> /silent /ShowVpnGui=0 /RestartUpdaterTaskName=IcarusPrivaxVpnUpgrade /RestartUpdaterAppExe="C:\Program Files\Privax\HMA VPN\setup\privax_vpn_online_setup.exe"
Task: {26BD7906-16E7-4328-B7CF-BAD752531406} - System32\Tasks\Ubisoft\Ubisoft Connect Background Update => C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\upc.exe [17246392 2026-01-24] (UBISOFT ENTERTAINMENT INC. -> Ubisoft)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\BlueStacksHelper_nxt.job => C:\Program Files\BlueStacks_nxt\BlueStacksHelper.exe
Task: C:\WINDOWS\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
Task: C:\WINDOWS\Tasks\Driver Booster SkipUAC (micha).job => C:\Program Files (x86)\IObit\Driver Booster\12.1.0\DriverBooster.exe
Task: C:\WINDOWS\Tasks\Driver Booster Update.job => C:\Program Files (x86)\IObit\Driver Booster\12.1.0\AutoUpdate.exe
Task: C:\WINDOWS\Tasks\npcapwatchdog.job => C:\Program Files\Npcap\CheckStatus.bat <==== ATTENTION
Task: C:\WINDOWS\Tasks\Overwolf Updater Task.job => C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe
Task: C:\WINDOWS\Tasks\RunOW.job => C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{8e9b2ac2-45d0-4e62-8d4f-db8b6bd7671c}: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{8e9b2ac2-45d0-4e62-8d4f-db8b6bd7671c}\055647277237027416C616879702143323: [DhcpNameServer] 10.40.221.78
Tcpip\..\Interfaces\{8e9b2ac2-45d0-4e62-8d4f-db8b6bd7671c}\44F6D61684F627E696: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{8e9b2ac2-45d0-4e62-8d4f-db8b6bd7671c}\4505D2C496E6B6F5F4574746F6F627F53353834325F657475627: [DhcpNameServer] 192.168.1.1 192.168.1.1
Tcpip\..\Interfaces\{8e9b2ac2-45d0-4e62-8d4f-db8b6bd7671c}\75966696F5352535550574D4C42384: [DhcpNameServer] 192.168.10.10
Tcpip\..\Interfaces\{f6fbe2a6-9f33-45e3-955e-6f0c3fd9a8db}: [DhcpNameServer] 192.168.1.1 192.168.1.1

FireFox:
========
FF DefaultProfile: 3iwgnaym.default-release -> 308046B0AF4A39CB
FF ProfilePath: C:\Users\micha\AppData\Roaming\Mozilla\Firefox\Profiles\duwbd8eu.default [2025-05-26]
FF ProfilePath: C:\Users\micha\AppData\Roaming\Mozilla\Firefox\Profiles\3iwgnaym.default-release [2025-08-08]
FF Extension: (Language: English (GB)) - C:\Users\micha\AppData\Roaming\Mozilla\Firefox\Profiles\3iwgnaym.default-release\Extensions\langpack-en-GB@firefox.mozilla.org.xpi [2025-05-26]
FF Plugin: @videolan.org/vlc,version=3.0.21 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2026-06-08] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @nokia.com/EnablerPlugin -> C:\Program Files (x86)\Nokia\Nokia Suite\npNokiaSuiteEnabler.dll [2013-04-19] (Nokia -> )

Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default [2026-06-21]
Edge Extension: (7TV) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ammjkodgmmoknidbanneddgankgfejfh [2026-05-22]
Edge Extension: (YouTube Shorts Extractor) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bcbngjmjfkdnmpfdmdkpggkcahimnbhh [2025-10-28]
Edge Extension: (AHA Music - Song Finder for Browser) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ejfccgmelcclnoadalcepdmnpgcnglfc [2026-05-08]
Edge Extension: (Dokumenty Google offline) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-06-05]
Edge Extension: (Tampermonkey) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\iikmkjmpaadaobahmlepeloendndfphd [2026-05-25]
Edge Extension: (Show YouTube Video Tags (Advanced)) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jlimlbghmhifobdaampfgllomdldpmeg [2025-10-28]
Edge Extension: (Edge relevant text changes) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]
Edge Extension: (Video DownloadHelper) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmkaglaafmhbcpleggkmaliipiilhldn [2026-06-04]
Edge Extension: (Adblocker plus pro Twitch ™) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\kdiaieegfcpclpalpkmjgfkkggfenamf [2025-05-21]
Edge Extension: (Zdarma VPN pro Chrome – VPN Proxy VeePN) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\majdfhpaihoncoakbjgbdhglocklcgno [2026-05-18]
Edge Extension: (Shazam: Find song names from your browser) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\mmioliijnhnoblpgimnlajmefafdfilb [2025-04-22]
Edge Extension: (Urban VPN Proxy) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nimlmejbmnecnaghgmbahmbaddhjbecg [2026-06-10]
Edge Extension: (MetaMask) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\nkbihfbeogaeaoehlefnkodbefgpgknn [2026-06-18]
Edge Extension: (vidIQ Vision for YouTube) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\pachckjkecffpdphbpmfolblodfkgbhl [2026-06-17]

Chrome:
=======
CHR Profile: C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default [2026-01-27]
CHR StartupUrls: Default -> "hxxp://mystart.incredibar.com/?a=6R906EYcyS&loc=skw","hxxp://www2.delta-search.com/?babsrc=HP_ss&mntrId=3C0D0025225507B2&affID=120007&tt=160913_c3&tsp=5011","hxxp://www.search.ask.com/?tpid=ATU3-SAT&o=APN ... g=EN&cc=CZ"
CHR DefaultSearchURL: Default -> hxxps://search.brave.com/search?q={searchTerms}
CHR DefaultSearchKeyword: Default -> search.brave.com
CHR DefaultSuggestURL: Default -> hxxps://search.brave.com/api/suggest?q={searchTerms}
CHR Extension: (The FFZ Add-On Pack) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\aiimboljphncldaakcnapfolgnjonlea [2024-01-04]
CHR Extension: (BetterTTV) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2026-01-27]
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2025-12-15]
CHR Extension: (Steam Inventory Helper) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmeakgjggjdlcpncigglobpjbkabhmjl [2025-12-15]
CHR Extension: (Black green shards) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\cojkleigdijnbfecdhjigpgalhfhkdee [2024-01-04]
CHR Extension: (FrankerFaceZ) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\fadndhdgpmmaapbmfcknlfgcflmmmieb [2025-12-15]
CHR Extension: (Dokumenty Google offline) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-12-15]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2025-12-15]
CHR Extension: (Repeek (formerly FACEIT Enhancer)) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\mokknliiomknodkdmpcellamkopbdmao [2025-12-15]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-01-04]
CHR Profile: C:\Users\micha\AppData\Local\Google\Chrome\User Data\System Profile [2024-01-04]
CHR HKU\S-1-5-21-756127909-4058986209-260929036-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [kadaohckdkghfaclhjmkmplebcdcnfnp] - <no Path/update_url>

Opera:
=======
StartMenuInternet: (HKU\S-1-5-21-756127909-4058986209-260929036-1001) Opera GXStable - "C:\Users\micha\AppData\Local\Programs\Opera GX\opera.exe"

Brave:
=======
BRA Profile: C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2026-06-21]
BRA Notifications: Default -> hxxps://cs2.fastcup.net
BRA Extension: (Překladač Google) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2025-02-14]
BRA Extension: (Free Download Manager) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ahmpjcflkgiildlgicmcieglgoilbfdp [2026-05-12]
BRA Extension: (The FFZ Add-On Pack) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\aiimboljphncldaakcnapfolgnjonlea [2024-01-04]
BRA Extension: (Surfshark VPN Extension) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ailoabdmgclmfmhdagmlohpjlbpffblp [2026-05-25]
BRA Extension: (VPN Mexico - Planet VPN lite Proxy) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\anojflfckeghbodjglfogdpgkmfinloi [2026-05-27]
BRA Extension: (PureVPN Proxy - Best VPN for Chrome) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\bfidboloedlamgdmenmlbipfnccokknp [2026-04-09]
BRA Extension: (Touch VPN - Secure and unlimited VPN proxy) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\bihmplhobchoageeokmgbdihknkjbknd [2024-09-30]
BRA Extension: (change-language) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\cofdbpoegempjloogbagkncekinflcnj [2026-06-16]
BRA Extension: (Tipli: Cashback odměny a kupóny) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\dbnfnbehhjknomdbfhcobpgpphnlnikp [2026-04-30]
BRA Extension: (AHA Music - Song Finder for Browser) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\dpacanjfikmhoddligfbehkpomnbgblf [2026-05-07]
BRA Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2026-06-15]
BRA Extension: (Video Downloader Professional) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\elicpjhcidhpjomhibiffojpinpmmpil [2026-03-12]
BRA Extension: (Urban VPN Proxy) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\eppiocemhmnlbhjplcgkofciiegomcon [2026-06-10]
BRA Extension: (FrankerFaceZ) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\fadndhdgpmmaapbmfcknlfgcflmmmieb [2026-02-10]
BRA Extension: (Fastcup.net Helper) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\fafpkjpdfmhkhicmhhaokkbcbhielpjh [2024-08-08]
BRA Extension: (VPN Free - Betternet Unlimited VPN Proxy) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\gjknjjomckknofjidppipffbpoekiipm [2024-11-05]
BRA Extension: (Bezplatná VPN pro Chrome a blokátor reklam - Planet VPN) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\hipncndjamdcmphkgngojegjblibadbe [2026-05-22]
BRA Extension: (Bezplatný VPN Proxy - VPN pro Chrome uVPN) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\jaoafpkngncfpfggjefnekilbkcpjdgp [2026-04-05]
BRA Extension: (Free VPN - Bezplatná VPN pro Chrome) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\jcbiifklmgnkppebelchllpdbnibihel [2026-02-06]
BRA Extension: (CSFloat Market Checker) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\jjicbefpemnphinccgikpdaagjebbnhg [2026-05-07]
BRA Extension: (Turbo Download Manager (Classic)) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\kemfccojgjoilhfmcblgimbggikekjip [2024-03-16]
BRA Extension: (Video DownloadHelper) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\lmjnegcaeklhafolokijcfjliaokphfk [2026-06-05]
BRA Extension: (Zdarma VPN pro Chrome – VPN Proxy VeePN) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\majdfhpaihoncoakbjgbdhglocklcgno [2026-05-17]
BRA Extension: (Video Downloader PLUS) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\njgehaondchbmjmajphnhlojfnbfokng [2025-10-07]
BRA Extension: (VPN Bridge) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\ogbcbagecoekhkhedecneoeebjidplfn [2025-07-10]
BRA Extension: (Waxpeer Extension) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\pmfjgkjalfcnnipmgfkeipkbehecpjbk [2025-12-15]
BRA Extension: (Brave Ad Block Updater (Brave First Party Adblock Filters (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\adcocjohghhfpidemphmcmlmhnfgikei [2026-06-20]
BRA Extension: (Brave Local Data Files Updater) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2026-06-21]
BRA Extension: (Brave NTP background images) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2026-04-16]
BRA Extension: (Brave Ad Block Updater (Mobile app promo blocker (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\bfpgedeaaibpoidldhjcknekahbikncb [2026-06-16]
BRA Extension: (Wallet Data Files Updater) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\BraveWallet [2026-06-15]
BRA Extension: (Brave Ad Block Updater (Cookie notice blocker (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\cdbbhgbmjhfnhnmgeddbliobbofkgdhe [2026-06-21]
BRA Extension: (Brave Tor Client Updater (Windows)) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\cpoalefficncklhjfpglfiplenlpccdb [2025-02-23]
BRA Extension: (Brave NTP sponsored images) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\efkihffiamafhbhefjaljejgdpkelpal [2026-06-21]
BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2026-06-10]
BRA Extension: (Brave Ads Resources) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\iejekkikpddbbockoldagmfcdbffomfc [2026-02-21]
BRA Extension: (Brave Ad Block Updater (Brave Default Adblock Filters (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2026-06-21]
BRA Extension: (Brave Ad Block Updater (Brave Default Privacy Filters (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\kihnoaefogbkmblfimmibknnmkllbhlf [2026-06-21]
BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2026-06-21]
BRA Extension: (Brave Ad Block Updater (Brave Twitch Adblock Rules (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\mhccgcegedfkhdbfbgllfkkcjhgkoinc [2024-09-19]
BRA Extension: (Brave User Agent) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\nlpaeekllejnmhoonlpcefpfnpbajbpe [2026-06-21]
BRA Extension: (Brave Ad Block Updater (Czech and Slovak website ad blocker (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\oegebjahecghlckbhkmojgnpcgdeajdi [2026-05-28]
BRA Extension: (Brave HTTPS Everywhere Updater) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\oofiananboodjbbmdelgdommihjbkfag [2024-01-04]
BRA Extension: (P3A Configuration) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\P3AConfig [2025-09-27]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [180216 2026-01-23] (Adobe Inc. -> Adobe Inc.)
S3 AntiCheatExpert Protection; C:\Program Files\AntiCheatExpert\ACE-Service64.exe [3493272 2025-05-01] (ACEVILLE PTE LTD -> ANTICHEATEXPERT.COM)
S3 AntiCheatExpert Service; C:\Program Files\AntiCheatExpert\SGuard\x64\SGuardSvc64.exe [2098080 2025-05-01] (ACEVILLE PTE LTD -> ANTICHEATEXPERT.COM)
R2 ArmouryCrateService; C:\Program Files\ASUS\Armoury Crate Service\ArmouryCrate.Service.exe [507296 2026-05-17] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\4.08.06\atkexComSvc.exe [1142168 2026-04-02] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
S2 asus; C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [253848 2026-01-21] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
R2 AsusCertService; C:\Program Files (x86)\ASUS\AsusCertService\1.3.2\AsusCertService.exe [497560 2026-04-08] (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.)
S2 AsusFanControlService; C:\Program Files (x86)\ASUS\AsusFanControlService\2.03.54\AsusFanControlService.exe [1879960 2026-04-02] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
S3 asusm; C:\Program Files (x86)\ASUS\Update\AsusUpdate.exe [253848 2026-01-21] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
S2 AsusROGLSLService; C:\Program Files (x86)\ASUS\AsusROGLSLService\AsusROGLSLService.exe [682904 2026-01-21] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
S2 AsusUpdateCheck; C:\WINDOWS\System32\AsusUpdateCheck.exe [842128 2026-06-21] (ASUSTeK Computer Inc. -> )
S3 battlenet_helpersvc; C:\ProgramData\Battle.net_components\battlenet_helpersvc\AgentHelper.exe [3384464 2025-05-16] (Blizzard Entertainment, Inc. -> Blizzard Entertainment)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [20352680 2026-04-09] (BattlEye Innovations e.K. -> )
S2 brave; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-01-01] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 BraveElevationService; C:\Program Files\BraveSoftware\Brave-Browser\Application\149.1.91.175\elevation_service.exe [4805200 2026-06-17] (Brave Software, Inc. -> Brave Software, Inc.)
S3 bravem; C:\Program Files (x86)\BraveSoftware\Update\BraveUpdate.exe [167440 2025-01-01] (Brave Software, Inc. -> BraveSoftware Inc.)
S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1080544 2025-07-18] (Gen Digital Inc. -> Gen Digital Inc.)
S3 Denuvo Anti-Cheat Update Service; C:\Program Files\Denuvo Anti-Cheat\denuvo-anti-cheat-update-service.exe [1220760 2025-11-24] (DENUVO GmbH -> Denuvo GmbH)
S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [20690592 2026-04-15] (Electronic Arts, Inc. -> Electronic Arts)
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [1137576 2024-02-01] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 EasyAntiCheat_EOS; C:\Program Files (x86)\EasyAntiCheat_EOS\EasyAntiCheat_EOS.exe [1048360 2026-04-29] (EasyAntiCheat Oy -> Epic Games, Inc.)
S3 EpicGamesUpdater; C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesUpdater.exe [3407800 2026-05-11] (Epic Games Inc. -> Epic Games, Inc.)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [2607032 2026-04-29] (Epic Games Inc. -> Epic Games, Inc.)
S3 FACEITService; C:\Program Files\FACEIT AC\faceitservice.exe [116503048 2026-06-01] (ESL FACEIT Group Ltd. -> )
R2 GameInputRedistService; C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe [401792 2026-05-14] (Microsoft Corporation -> Windows (R) Win 7 DDK provider)
R2 GameSDK Service; C:\Program Files (x86)\ASUS\GameSDK Service\GameSDK.exe [397544 2022-05-31] (ASUSTeK COMPUTER INC. -> ASUS Inc.)
R2 ggsvc; C:\Program Files (x86)\GameGuard\acsvc.exe [424416 2025-01-26] (INPLERON LTD -> )
R2 Hamachi2Svc; C:\Program Files (x86)\LogMeIn Hamachi\x64\hamachi-2.exe [4920184 2024-03-25] (LogMeIn, Inc. -> LogMeIn Inc.)
R2 HmaProVpn; C:\Program Files\Privax\HMA VPN\VpnSvc.exe [15282400 2026-06-11] (Gen Digital Inc. -> Privax Limited)
R2 LGHUBUpdaterService; C:\Program Files\LGHUB\lghub_updater.exe [20769432 2026-05-01] (Logitech Inc -> Logitech, Inc.)
R2 LightingService; C:\Program Files (x86)\LightingService\LightingService.exe [5059480 2026-04-09] (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
R2 LMIGuardianSvc; C:\Program Files (x86)\LogMeIn Hamachi\x64\LMIGuardianSvc.exe [419248 2016-05-27] (LogMeIn, Inc. -> LogMeIn, Inc.)
R2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [11506480 2026-06-14] (Malwarebytes Inc -> Malwarebytes)
S3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe [4291576 2026-06-14] (Malwarebytes Inc -> Malwarebytes)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpDefenderCoreService.exe [2150144 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 NGS; C:\ProgramData\Nexon\NGS\NGService.exe [3189352 2024-03-20] (NEXON Korea Corporation. -> NEXON Korea Corporation)
S3 nordsec-threatprotection-service; C:\Program Files\NordVPN\NordSec ThreatProtection\nordsec-threatprotection-service.exe [320088 2023-09-25] (nordvpn s.a. -> nordvpn S.A.)
R2 NordUpdaterService; C:\Program Files\NordUpdater\NordUpdateService.exe [297848 2022-12-21] (nordvpn s.a. -> nordvpn S.A.)
R2 nordvpn-service; C:\Program Files\NordVPN\nordvpn-service.exe [263256 2023-09-25] (nordvpn s.a. -> nordvpn S.A.)
R2 NovabenchService5; C:\Program Files\Novabench\resources\NovabenchService.exe [41979096 2023-12-09] (Novabench Inc. -> Novabench Inc.)
S3 OverwolfUpdater; C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2398016 2026-01-01] (Overwolf Ltd -> Overwolf LTD)
R2 paltalk_update_service; C:\Program Files (x86)\Paltalk\update\pt_update_service.exe [1336624 2023-04-25] (PALTALK, INC. -> AVM Software)
R2 Razer Chroma SDK Server; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKServer.exe [1882024 2024-10-18] (Razer USA Ltd. -> Razer Inc.)
R2 Razer Chroma SDK Service; C:\Program Files (x86)\Razer Chroma SDK\bin\RzSDKService.exe [232360 2024-10-18] (Razer USA Ltd. -> Razer Inc.)
R2 Razer Chroma Stream Server; C:\Program Files (x86)\Razer Chroma SDK\bin\RzChromaStreamServer.exe [1268176 2024-07-18] (Razer USA Ltd. -> Razer Inc.)
R2 Razer Game Manager Service; C:\Program Files (x86)\Razer\Razer Services\GMS\GameManagerService.exe [256256 2024-10-15] (Razer USA Ltd. -> Razer Inc)
R2 Razer Synapse Service; C:\Program Files (x86)\Razer\Synapse3\Service\Razer Synapse Service.exe [300168 2025-03-11] (Razer USA Ltd. -> Razer Inc.)
S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [1523832 2026-04-29] (Rockstar Games, Inc. -> Rockstar Games)
R2 ROG Live Service; C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe [2852768 2026-04-29] (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
R2 RzActionSvc; C:\Program Files (x86)\Razer\Razer Services\Razer Central\RazerCentralService.exe [513672 2025-03-06] (Razer USA Ltd. -> Razer Inc.)
R2 Surfshark Service; C:\Program Files\Surfshark\Surfshark.Service.exe [150720 2025-05-21] (Surfshark B.V. -> Surfshark.Service)
R2 tmInstall; C:\Program Files\Thrustmaster\FFB Racing wheel\drivers\amd64\tmInstall.EXE [295592 2024-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster®)
S3 ucldr_battlegrounds_gl; C:\Program Files\Common Files\Wellbia.com\ucldr_battlegrounds_gl.exe [5084200 2024-05-01] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
S3 UpcElevationService; C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher Core\UpcElevationService.exe [351928 2026-01-24] (UBISOFT ENTERTAINMENT INC. -> Ubisoft)
S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [66393768 2026-05-01] (Riot Games, Inc. -> Riot Games, Inc.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\NisSrv.exe [4608640 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MsMpEng.exe [290744 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 XRNADB; C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmdb.exe [96768 2012-07-16] () [File not signed]
S3 zksvc; C:\Program Files\Common Files\PUBG\zksvc.exe [12458336 2024-05-01] (KRAFTON, Inc. -> KRAFTON, Inc)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 ACE-BASE; C:\Windows\system32\drivers\ACE-BASE.sys [4323992 2025-05-03] (Microsoft Windows Hardware Compatibility Publisher -> ANTICHEATEXPERT.COM)
S3 ace-game; C:\WINDOWS\System32\drivers\ace-game.sys [3281160 2025-05-03] (Tencent Technology (Shenzhen) Company Limited -> ANTICHEATEXPERT.COM)
S3 ACE-SSC-DRV64; C:\Program Files\AntiCheatExpert\SGuard\x64\plugins\ACE-SSC-DRV64.sys [236136 2025-05-01] (Microsoft Windows Hardware Compatibility Publisher -> ANTICHEATEXPERT.COM)
R3 amdfendrmgr; C:\WINDOWS\System32\DriverStore\FileRepository\amdfendr.inf_amd64_1aafc0a9b0693712\amdfendrmgr.sys [37208 2025-02-06] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
R3 AMDSAFD; C:\WINDOWS\System32\DriverStore\FileRepository\amdsafd.inf_amd64_d4de13a10f2586d0\amdsafd.sys [112952 2024-06-15] (AMD Test Build -> Advanced Micro Devices)
S3 amduw23g-417878-33000e3f; C:\WINDOWS\System32\DriverStore\FileRepository\u0417878.inf_amd64_cf56f0cbce08e931\B417693\amdkmdag.sys [101637624 2025-08-01] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
R3 amduw23g-420529-5f0fe368; C:\WINDOWS\System32\DriverStore\FileRepository\u0420529.inf_amd64_94ad5a6c4d1a04e2\B419765\amdkmdag.sys [101819840 2025-10-27] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [63008 2024-05-16] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R1 Asusgio3; C:\WINDOWS\system32\drivers\AsIO3.sys [69768 2026-04-08] (ASUSTeK COMPUTER INC. -> Asustek Computer Inc.)
S3 atvi-brynhildr; C:\ProgramData\Battle.net_components\brynhildr_odin\brynhildr.sys [2336008 2024-03-30] (Activision Publishing Inc -> Activision Blizzard, Inc.)
S3 atvi-randgrid; C:\ProgramData\Battle.net_components\randgridauks\randgrid.sys [9055040 2025-02-05] (Activision Publishing Inc -> Activision Blizzard, Inc.)
S3 atvi-randgrid_sr; E:\SteamLibrary\steamapps\common\Call of Duty HQ\randgrid.sys [9109880 2025-11-21] (Activision Publishing Inc -> Activision Blizzard, Inc.)
R1 avpndriver; C:\WINDOWS\System32\drivers\avpndriver.sys [116760 2024-12-16] (GZ Systems Limited -> Windows (R) Win 7 DDK provider)
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [110592 2025-08-11] (Microsoft Corporation) [File not signed]
R3 cpuz158; C:\WINDOWS\temp\cpuz158\cpuz158_x64.sys [44576 2026-06-21] (Microsoft Windows Hardware Compatibility Publisher -> CPUID) <==== ATTENTION
R1 CTIAIO; C:\WINDOWS\system32\drivers\CtiAIo64.sys [39672 2026-01-21] (Microsoft Windows Hardware Compatibility Publisher -> Creative Technology Innovation Co., LTd.)
S3 Denuvo Anti-Cheat; C:\Program Files\Denuvo Anti-Cheat\denuvo-anti-cheat.sys [3819200 2025-11-24] (Microsoft Windows Hardware Compatibility Publisher -> Denuvo GmbH)
R1 FACEIT; C:\Program Files\FACEIT AC\FACEIT_AC.sys [87378120 2026-06-20] (Microsoft Windows Hardware Compatibility Publisher -> )
R0 fse; C:\WINDOWS\System32\drivers\fse.sys [230896 2026-06-10] (Microsoft Windows -> Microsoft Corporation)
R3 iaLPSS2_GPIO2_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_gpio2_tgl.inf_amd64_4fcff055ed32f652\iaLPSS2_GPIO2_TGL.sys [132072 2024-12-04] (Intel Corporation -> Intel Corporation)
R3 iaLPSS2_I2C_TGL; C:\WINDOWS\System32\DriverStore\FileRepository\ialpss2_i2c_tgl.inf_amd64_bd1c0a60b9594248\iaLPSS2_I2C_TGL.sys [205400 2024-12-04] (Intel Corporation -> Intel Corporation)
R4 IOMap; C:\WINDOWS\system32\drivers\IOMap64.sys [55416 2024-12-02] (ASUSTeK COMPUTER INC. -> ASUSTeK Computer Inc.)
R3 iriuna0; C:\WINDOWS\system32\drivers\iriuna0.sys [46976 2021-04-06] (Iriun Oy -> Windows (R) Win 7 DDK provider)
S3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [82312 2026-05-20] (Microsoft Windows -> Microsoft Corporation)
S2 l1vhlwf; C:\WINDOWS\System32\drivers\l1vhlwf.sys [144872 2026-06-10] (Microsoft Windows -> Microsoft Corporation)
R3 logi_audio_surround; C:\WINDOWS\System32\DriverStore\FileRepository\logi_audio.inf_amd64_affafe6e263c4f51\logi_audio_surround.sys [44112 2025-02-14] (Microsoft Windows Hardware Compatibility Publisher -> Logitech, Inc.)
R3 logi_joy_bus_enum; C:\WINDOWS\System32\drivers\logi_joy_bus_enum.x64.sys [45448 2026-04-04] (Logitech Inc -> Logitech)
R3 logi_joy_vir_hid; C:\WINDOWS\System32\drivers\logi_joy_vir_hid.x64.sys [32648 2026-04-04] (Logitech Inc -> Logitech)
R3 logi_joy_xlcore; C:\WINDOWS\System32\drivers\logi_joy_xlcore.x64.sys [74632 2026-04-04] (Logitech Inc -> Logitech)
S3 ManyCam; C:\WINDOWS\system32\DRIVERS\mcvidrv.sys [65448 2023-01-17] (ManyCam ULC -> ManyCam ULC)
R2 mbamchameleon; C:\WINDOWS\System32\Drivers\MbamChameleon.sys [235624 2026-06-21] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S0 MbamElam; C:\WINDOWS\System32\DRIVERS\MbamElam.sys [22120 2025-03-14] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
R3 MBAMSwissArmy; C:\WINDOWS\System32\Drivers\mbamswissarmy.sys [245864 2026-06-14] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
S3 mcaudrv_simple; C:\WINDOWS\system32\drivers\mcaudrv_x64.sys [35960 2014-12-29] (ManyCam -> Visicom Media Inc.)
R1 MSIO; C:\WINDOWS\system32\drivers\MsIo64.sys [19672 2023-12-10] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd)
R2 NDivert; C:\Program Files\NordVPN\7.31.8.0\Drivers\NDivert.sys [131472 2024-10-31] (nordvpn s.a. -> Nordvpn S.A.)
R1 networx; C:\WINDOWS\System32\drivers\networx.sys [103496 2022-05-03] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
R1 nordlwf; C:\WINDOWS\system32\DRIVERS\nordlwf.sys [44928 2024-01-18] (nordvpn s.a. -> TEFINCOM S.A.)
R1 npcap; C:\WINDOWS\system32\DRIVERS\npcap.sys [69984 2024-01-18] (WDKTestCert Nmap,133147429230506937 -> Insecure.Com LLC.)
R3 ovpn-dco; C:\WINDOWS\System32\drivers\ovpn-dco.sys [104600 2024-10-30] (WDKTestCert lev,133391533294737317 -> OpenVPN, Inc)
S3 pccsmcfd; C:\WINDOWS\system32\DRIVERS\pccsmcfdx64.sys [26112 2012-10-17] (Microsoft Windows Hardware Compatibility Publisher -> Nokia)
S3 pvxVpnRdr; C:\WINDOWS\System32\drivers\pvxVpnRdr.sys [87800 2026-05-10] (Microsoft Windows Hardware Compatibility Publisher -> Privax Limited)
S3 pvxWireGuard; C:\WINDOWS\System32\drivers\pvxWireguard.sys [174872 2026-05-10] (Microsoft Windows Hardware Compatibility Publisher -> Privax Limited)
R3 rt25cx21; C:\WINDOWS\System32\DriverStore\FileRepository\rt25cx21x64.inf_amd64_7a47c3c01d4b9cab\rt25cx21x64.sys [897472 2024-12-04] (Realtek Semiconductor Corp. -> Realtek)
S3 RzCommon; C:\WINDOWS\System32\drivers\RzCommon.sys [64168 2022-08-18] (Razer USA Ltd. -> Razer Inc)
S3 RzDev_0084; C:\WINDOWS\System32\drivers\RzDev_0084.sys [54152 2020-08-24] (Razer USA Ltd. -> Razer Inc)
R3 SteamStreamingMicrophone; C:\WINDOWS\system32\drivers\SteamStreamingMicrophone.sys [40736 2020-06-01] (Valve Corp. -> )
R3 SteamStreamingSpeakers; C:\WINDOWS\system32\drivers\SteamStreamingSpeakers.sys [40736 2020-06-01] (Valve Corp. -> )
S3 SurfsharkBypasser; C:\Program Files\Surfshark\Resources\x64\SurfsharkBypasser.sys [128672 2025-04-04] (Microsoft Windows Hardware Compatibility Publisher -> Surfshark)
R3 tapnordvpn; C:\WINDOWS\System32\drivers\tapnordvpn.sys [41120 2024-08-29] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
S3 tmhidusb; C:\WINDOWS\system32\DRIVERS\tmhidusb.sys [568488 2024-02-09] (Microsoft Windows Hardware Compatibility Publisher -> Thrustmaster)
S3 tmwbulk; C:\WINDOWS\System32\Drivers\tmwbulk.sys [383008 2022-09-08] (Microsoft Windows Hardware Compatibility Publisher -> © Guillemot R&D, 2022. All rights reserved.)
R1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [53793336 2026-05-01] (Riot Games, Inc. -> Riot Games, Inc.)
S3 vmbusproxy; C:\WINDOWS\system32\drivers\vmbusproxy.sys [98304 2025-08-11] (Microsoft Windows -> Microsoft Corporation)
R3 VOICEMOD_Driver; C:\WINDOWS\system32\drivers\mvvad.sys [51840 2024-11-11] (VOICEMOD, INC. SUCURSAL EN ESPAÑA -> Windows (R) Win 7 DDK provider)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [21888 2026-06-09] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [646536 2026-06-09] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [115120 2026-06-09] (Microsoft Windows -> Microsoft Corporation)
S3 wintun; C:\WINDOWS\System32\drivers\wintun.sys [38176 2024-07-29] (WireGuard LLC -> WireGuard LLC)
R3 WireGuard; C:\WINDOWS\System32\drivers\wireguard.sys [489368 2026-01-24] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
S3 xhunter1; C:\Windows\xhunter1.sys [215864 2024-05-21] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
S3 cpuz159; \??\C:\WINDOWS\temp\cpuz159\cpuz159_x64.sys (No File) <==== ATTENTION

==================== SvcHost (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-06-21 11:48 - 2026-06-21 11:49 - 000067803 _____ C:\Users\micha\OneDrive\Plocha\FRST.txt
2026-06-21 11:47 - 2026-06-21 11:49 - 000000000 ____D C:\FRST
2026-06-21 11:47 - 2026-06-21 11:47 - 002449920 _____ (Farbar) C:\Users\micha\OneDrive\Plocha\FRST64.exe
2026-06-21 10:42 - 2026-06-21 10:42 - 000711764 _____ C:\WINDOWS\system32\perfh005.dat
2026-06-21 10:42 - 2026-06-21 10:42 - 000152978 _____ C:\WINDOWS\system32\perfc005.dat
2026-06-20 23:52 - 2026-06-20 23:54 - 000000000 ____D C:\KVRT2020_Data
2026-06-14 00:44 - 2026-06-14 00:43 - 000481736 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy_11.dll.0
2026-06-13 18:00 - 2026-06-20 23:38 - 000000000 ____D C:\WINDOWS\CbsTemp
2026-06-12 12:32 - 2026-06-12 12:32 - 000000000 _____ C:\Users\micha\OneDrive\Plocha\copypastas.txt
2026-06-10 13:04 - 2026-06-10 13:04 - 000000000 ___HD C:\$WinREAgent
2026-06-10 11:00 - 2026-06-10 11:00 - 000037366 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2026-06-10 11:00 - 2026-06-10 11:00 - 000037366 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2026-06-10 11:00 - 2026-06-10 11:00 - 000004066 _____ C:\WINDOWS\system32\DeviceFeatureDDF.json
2026-06-05 19:27 - 2026-06-05 19:46 - 2236456448 _____ C:\Users\micha\OneDrive\Plocha\Elite+Squad+(2007)+[Elitní+jednotka]+[114+min,+FHD-x265,+5.1]+[cs,+sk,+pt].mkv
2026-05-30 22:49 - 2026-05-31 13:24 - 000000000 ____D C:\Users\micha\AppData\Local\BET
2026-05-30 22:26 - 2026-05-30 22:26 - 000000223 _____ C:\Users\micha\OneDrive\Plocha\Backrooms Escape Together.url

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-06-21 11:50 - 2025-03-14 18:13 - 000000000 ____D C:\Users\micha\AppData\Local\Malwarebytes
2026-06-21 11:47 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-06-21 11:37 - 2024-01-04 20:26 - 000000000 ____D C:\Program Files (x86)\Steam
2026-06-21 11:18 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-06-21 10:45 - 2024-06-08 19:08 - 000000000 ____D C:\Users\micha\AppData\Local\Ubisoft Game Launcher
2026-06-21 10:45 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-06-21 10:42 - 2025-08-11 15:55 - 001692332 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-06-21 10:42 - 2024-04-01 09:24 - 000000000 ____D C:\WINDOWS\INF
2026-06-21 10:38 - 2025-08-07 17:04 - 000000000 ____D C:\Users\micha\AppData\Local\D3DSCache
2026-06-21 10:37 - 2025-02-23 12:46 - 000000000 ____D C:\Users\micha\AppData\Roaming\Pi Network
2026-06-21 10:37 - 2024-01-15 22:02 - 000000001 _____ C:\WINDOWS\vgkbootstatus.dat
2026-06-21 10:36 - 2025-11-14 18:48 - 000003868 _____ C:\WINDOWS\system32\Tasks\iTop Screen Recorder Update
2026-06-21 10:36 - 2024-01-05 14:05 - 000000000 ____D C:\ProgramData\iTop
2026-06-21 10:35 - 2026-05-10 12:31 - 000000000 ____D C:\WINDOWS\system32\Tasks\Privax
2026-06-21 10:35 - 2026-05-10 12:31 - 000000000 ____D C:\ProgramData\Privax
2026-06-21 10:35 - 2026-01-21 22:08 - 000000000 ____D C:\Users\micha\AppData\Roaming\asus_framework
2026-06-21 10:35 - 2025-08-11 15:50 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-06-21 10:35 - 2025-08-11 15:48 - 000067598 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2026-06-21 10:35 - 2024-04-01 09:26 - 000000000 ___HD C:\Program Files\WindowsApps
2026-06-21 10:35 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ServiceState
2026-06-21 10:35 - 2024-01-04 19:39 - 000000000 ____D C:\Users\micha\AppData\Local\Packages
2026-06-21 10:35 - 2024-01-04 19:21 - 000842128 _____ C:\WINDOWS\system32\AsusUpdateCheck.exe
2026-06-21 10:34 - 2024-01-04 19:21 - 000880672 _____ C:\WINDOWS\system32\wpbbin.exe
2026-06-21 02:00 - 2024-04-01 09:21 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2026-06-21 00:53 - 2025-04-08 10:14 - 000000000 ____D C:\ProgramData\PackerCrashCanary
2026-06-21 00:03 - 2026-02-21 14:59 - 000000000 ____D C:\Program Files\Upscayl
2026-06-20 23:56 - 2024-01-04 23:44 - 000000000 ____D C:\Program Files\FACEIT AC
2026-06-20 22:41 - 2024-03-16 18:57 - 000000000 ____D C:\Users\micha\AppData\Roaming\Movavi Video Converter 22 Premium
2026-06-20 22:38 - 2024-09-07 17:00 - 000000000 ____D C:\Users\micha\AppData\Roaming\BitTorrent Web
2026-06-20 21:20 - 2025-03-01 15:24 - 000000000 ____D C:\Users\micha\.docker
2026-06-20 21:20 - 2025-03-01 15:17 - 000000000 ____D C:\Users\micha\AppData\Roaming\Docker
2026-06-20 21:20 - 2025-03-01 15:17 - 000000000 ____D C:\ProgramData\DockerDesktop
2026-06-20 11:27 - 2025-08-11 15:50 - 000003640 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2026-06-20 11:27 - 2025-08-11 15:50 - 000003514 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2026-06-20 11:18 - 2025-03-05 12:25 - 000000498 _____ C:\WINDOWS\system32\Drivers\etc\hosts.ics
2026-06-20 00:00 - 2024-01-04 20:28 - 000000000 ____D C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2026-06-19 23:41 - 2024-01-04 23:59 - 000000000 ____D C:\Users\micha\AppData\Local\CrashDumps
2026-06-19 02:12 - 2025-08-11 15:47 - 000000000 ____D C:\Users\micha
2026-06-18 23:33 - 2025-12-16 00:07 - 000000000 ____D C:\WINDOWS\system32\Tasks\GoogleUserPEH
2026-06-18 21:53 - 2024-01-04 19:22 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-06-18 17:16 - 2025-08-11 15:45 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2026-06-17 21:58 - 2025-01-01 17:37 - 000002364 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Brave.lnk
2026-06-16 12:38 - 2025-08-11 15:50 - 000003584 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-756127909-4058986209-260929036-1001
2026-06-16 12:38 - 2025-08-11 15:50 - 000003564 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-756127909-4058986209-260929036-1001
2026-06-16 12:38 - 2025-08-11 15:50 - 000003354 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-756127909-4058986209-260929036-1001
2026-06-16 12:38 - 2024-01-04 19:41 - 000002377 _____ C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2026-06-15 10:38 - 2025-08-11 15:50 - 000004466 _____ C:\WINDOWS\system32\Tasks\Opera GX scheduled assistant Autoupdate 1704714885
2026-06-15 10:38 - 2025-08-11 15:50 - 000004178 _____ C:\WINDOWS\system32\Tasks\Opera GX scheduled Autoupdate 1704393290
2026-06-15 10:38 - 2024-01-04 20:34 - 000001415 _____ C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera GX.lnk
2026-06-15 10:32 - 2024-11-10 22:37 - 134222904 _____ C:\WINDOWS\392667600.dat
2026-06-14 14:33 - 2024-01-15 20:52 - 000000000 ____D C:\ProgramData\Riot Games
2026-06-14 14:32 - 2026-01-22 20:54 - 000000000 ____D C:\Users\micha\AppData\Roaming\Riot Client
2026-06-14 14:32 - 2024-02-17 20:15 - 000000000 ____D C:\Users\micha\AppData\Roaming\riot-client-ux
2026-06-14 10:14 - 2025-03-14 18:13 - 000245864 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2026-06-14 00:44 - 2024-08-30 16:18 - 004561352 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2026-06-14 00:44 - 2024-08-30 16:18 - 000158152 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamehelper.exe
2026-06-14 00:44 - 2024-08-30 16:18 - 000084424 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgamecontrol.exe
2026-06-14 00:43 - 2024-08-30 16:18 - 001182152 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2026-06-14 00:43 - 2024-08-30 16:18 - 000338376 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2026-06-14 00:43 - 2024-08-30 16:18 - 000268744 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2026-06-14 00:43 - 2024-08-30 16:18 - 000166344 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2026-06-13 17:40 - 2024-01-12 19:11 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2026-06-12 20:10 - 2025-03-15 12:08 - 000002146 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2026-06-10 21:48 - 2025-08-11 15:45 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK
2026-06-10 21:45 - 2025-08-11 15:45 - 000306744 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2026-06-10 21:44 - 2025-08-11 16:36 - 000000000 ____D C:\WINDOWS\system32\Drivers\en-GB
2026-06-10 21:44 - 2024-04-01 18:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\UUS
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\quz-PE
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mi-NZ
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemResources
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ta-IN
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\quz-PE
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mt-MT
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mk-MK
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mi-NZ
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\es-MX
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2026-06-10 21:44 - 2024-04-01 09:26 - 000000000 ____D C:\Program Files\Common Files\System
2026-06-10 21:44 - 2024-04-01 09:21 - 000000000 ____D C:\WINDOWS\servicing
2026-06-10 11:02 - 2024-01-04 20:09 - 000000000 ____D C:\WINDOWS\system32\MRT
2026-06-10 11:00 - 2025-08-11 15:48 - 003261440 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2026-06-10 10:54 - 2024-01-04 20:09 - 222431176 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2026-06-10 00:06 - 2026-02-07 19:24 - 000000000 ____D C:\WINDOWS\Minidump
2026-06-10 00:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2026-06-09 11:57 - 2024-01-04 19:22 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2026-06-08 20:39 - 2024-01-15 23:56 - 000000000 ____D C:\Users\micha\AppData\Roaming\Blitz
2026-06-08 13:58 - 2024-01-15 23:56 - 000002213 _____ C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blitz.lnk
2026-06-08 13:58 - 2024-01-15 23:56 - 000000032 _____ C:\Users\micha\AppData\Roaming\.machineId
2026-06-06 10:43 - 2024-01-15 20:54 - 000000000 ____D C:\Program Files\Riot Vanguard
2026-06-03 00:42 - 2024-01-04 19:23 - 000000000 ____D C:\ProgramData\Packages
2026-05-23 20:16 - 2024-01-04 20:27 - 000000000 ____D C:\Users\micha\AppData\Local\Steam

==================== Files in the root of some directories ========

2024-01-15 23:56 - 2026-06-08 13:58 - 000000032 _____ () C:\Users\micha\AppData\Roaming\.machineId
2024-01-14 20:36 - 2024-01-14 20:36 - 000000016 _____ () C:\Users\micha\AppData\Roaming\obs-virtualcam.txt
2024-01-08 15:30 - 2024-01-08 15:30 - 000000044 _____ () C:\Users\micha\AppData\Roaming\Screen+.data
2025-11-27 21:04 - 2025-11-27 21:04 - 000000048 ____R () C:\Users\micha\AppData\Local\0119AC2FC90D95AC063B177717B7B3B6
2025-04-19 23:11 - 2025-04-19 23:11 - 000000048 ____R () C:\Users\micha\AppData\Local\66302C3ABCF0203701B7744560199EA1
2024-12-15 11:05 - 2024-12-15 11:05 - 000000048 ____R () C:\Users\micha\AppData\Local\8B1D271A9281777F9A783A29EC6394D2
2025-10-19 16:48 - 2026-04-30 00:43 - 000000003 _____ () C:\Users\micha\AppData\Local\Autosofted License.txt
2025-03-11 13:19 - 2025-06-03 08:12 - 000007630 _____ () C:\Users\micha\AppData\Local\resmon.resmoncfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Re: Prosím o kontrolu logu z důvodu úbytku místa na SSD

Odeslal: 21 Črv 2026 11:01
od pitrisin
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20-06-2026
Ran by micha (21-06-2026 11:50:50)
Running from C:\Users\micha\OneDrive\Plocha
Microsoft Windows 11 Home Version 25H2 26200.8655 (X64) (2025-08-11 13:50:35)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-756127909-4058986209-260929036-500 - Administrators - Disabled)
Black (S-1-5-21-756127909-4058986209-260929036-1004 - Limited - Disabled)
DefaultAccount (S-1-5-21-756127909-4058986209-260929036-503 - Limited - Disabled)
Guest (S-1-5-21-756127909-4058986209-260929036-501 - Limited - Disabled)
kolom (S-1-5-21-756127909-4058986209-260929036-1003 - Limited - Disabled)
micha (S-1-5-21-756127909-4058986209-260929036-1001 - Administrators - Enabled) => C:\Users\micha
Shoot (S-1-5-21-756127909-4058986209-260929036-1002 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-756127909-4058986209-260929036-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

µTorrent (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\uTorrent) (Version: 3.6.0.47224 - BitTorrent Limited)
Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1029-1033-7760-BC15014EA700}) (Version: 26.001.21662 - Adobe)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601149}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
AMD Install Manager (HKLM\...\{45E3ACCD-D14E-412E-82D7-F65278ACD8EE}) (Version: 25.10.25205.2240 - Advanced Micro Devices, Inc.)
AMD Privacy View (HKLM\...\{D8E24EA6-807B-48D0-86D6-A9C5E74B8F2C}) (Version: 1.02.0001 - Eyeware Tech SA)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 25.8.1 - Advanced Micro Devices, Inc.)
AniMeVisionFont_MB (HKLM\...\{93E38BA3-9745-4D67-91BC-F65F81523D0A}) (Version: 1.0.1 - ASUSTek Computer Inc.) Hidden
Antidote by Sekg 1.18.3 (HKLM\...\3e510627-0501-5809-9ff3-e0dcca6cef0e) (Version: 1.18.3 - Sekg)
AntiCheatExpert (HKLM\...\AntiCheatExpert) (Version: 15.0.2405.347 - )
Armoury Crate Service (HKLM\...\Armoury Crate Service) (Version: 6.5.7.0 - ASUSTeK COMPUTER INC.)
ASUS AIOFan HAL (HKLM\...\{EAE80DED-1A39-41C5-9F60-87CC947F6454}) (Version: 1.5.5.0 - ASUSTeK COMPUTER INC.) Hidden
ASUS AIOFan HAL (HKLM-x32\...\{7c790d87-e250-4c7e-ad7f-e921dab6777d}) (Version: 1.5.5.0 - ASUSTeK COMPUTER INC.) Hidden
ASUS Ambient HAL (HKLM\...\{158AC6D1-5591-4BA5-AE57-50B66F1055AA}) (Version: 7.20.0.0 - ASUSTeK COMPUTER INC.) Hidden
ASUS Ambient HAL (HKLM-x32\...\{5f21a988-01f3-468f-a06e-0b13304d11cb}) (Version: 7.20.0.0 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Extension Card HAL (HKLM\...\{237E1CAC-1708-4940-AC34-DF15C079AB70}) (Version: 1.1.0.20 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Extension Card HAL (HKLM-x32\...\{49c4358d-054e-4cf1-9ec1-dca3487f304a}) (Version: 1.1.0.20 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Motherboard HAL (HKLM\...\{359B9A9D-A289-4962-BCE2-13EBFD50D532}) (Version: 1.6.1.5 - ASUSTeK COMPUTER INC.) Hidden
ASUS AURA Motherboard HAL (HKLM-x32\...\{f88c8031-a585-43ae-969c-43a196cbebf1}) (Version: 1.6.1.5 - ASUSTeK COMPUTER INC.) Hidden
ASUS Aura SDK (HKLM\...\{CF8E6E00-9C03-4440-81C0-21FACB921A6B}) (Version: 3.07.05 - ASUSTeK COMPUTER INC.) Hidden
ASUS Framework Service (HKLM-x32\...\{339A6383-7862-46DA-8A9D-E84180EF9424}) (Version: 4.2.4.13 - ASUSTeK Computer Inc.)
ASUS Motherboard (HKLM-x32\...\{93795eb8-bd86-4d4d-ab27-ff80f9467b37}) (Version: 5.02.06 - ASUSTek Computer Inc.)
ASUS Update Helper (HKLM-x32\...\{A92DAB39-4E2C-4304-9AB6-BC44E68B55E2}) (Version: 1.3.107.159 - ASUSTeK Computer Inc.) Hidden
AURA DRAM Component (HKLM\...\{86D4C8A2-DB22-4948-950D-28DD5145F91C}) (Version: 1.1.29 - ASUS) Hidden
AURA DRAM Component (HKLM-x32\...\{f70a8a88-540d-485d-9aa8-001486fb050e}) (Version: 1.1.29 - ASUS) Hidden
AURA lighting effect add-on (HKLM-x32\...\{1E2EA04B-FCA7-457E-B6F4-F33E1858E859}) (Version: 0.0.55 - ASUSTek COMPUTER INC.)
AURA lighting effect add-on x64 (HKLM\...\{C5A4A164-4428-4931-B728-96EEF0FA3C44}) (Version: 0.0.55 - ASUSTek COMPUTER INC.)
AURA Service (HKLM-x32\...\{56EEEF7D-0AE3-401A-898B-581719D005AE}) (Version: 3.10.10 - ASUSTeK COMPUTER INC.) Hidden
AURA Service (HKLM-x32\...\{c74e7336-6fc2-472d-b921-ba6f5e58bd59}) (Version: 3.10.10 - ASUSTeK COMPUTER INC.)
Auto Keyboard by MurGee.com v10.6.1 (HKLM-x32\...\{71E16EE4-BBED-44A8-8724-9E68D05EE945}_is1) (Version: 10.6.1 - MurGee.com)
Auto Keyboard Presser 2.1.1.8 (HKLM-x32\...\{8A64FE75-FD59-40C9-93C5-9F6C47106F4B}_is1) (Version: - AutoMacroRecorder.com, Inc.)
Balíček ovladače systému Windows - Nokia Modem (02/25/2011 4.7) (HKLM\...\E0AC723A3DE3A04256288CADBBB011B112AED454) (Version: 02/25/2011 4.7 - Nokia)
Balíček ovladače systému Windows - Nokia Modem (02/25/2011 7.01.0.9) (HKLM\...\72A50F48CC5601190B9C4E74D81161693133E7F7) (Version: 02/25/2011 7.01.0.9 - Nokia)
Balíček ovladače systému Windows - Nokia pccsmcfd LegacyDriver (05/31/2012 7.1.2.0) (HKLM\...\62BBD193ADFDBB228C7E1ADB56463F5732FF7F6F) (Version: 05/31/2012 7.1.2.0 - Nokia)
Battle.net (HKLM-x32\...\Battle.net) (Version: - Blizzard Entertainment)
Battlefield™ 6 (HKLM-x32\...\{c508544b-57bd-4c6c-96ed-8f57235285b4}) (Version: 1.0.397.41940 - Electronic Arts)
BitTorrent Web (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\btweb) (Version: 1.5.0 - BitTorrent Limited)
Blackmagic RAW Common Components (HKLM\...\{EB1F744F-B900-4BAD-82E8-5350C910AB38}) (Version: 4.1 - Blackmagic Design)
Blitz (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\153f8ce0-b97a-575b-ba12-4ff8b1481894) (Version: 2.1.582 - Blitz, Inc.)
Bolt Food (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\0fcc5bccdcfb99592c6ff73083a4eb00) (Version: 1.0 - BraveSoftware\Brave-Browser)
Branding64 (HKLM\...\{492AEFBE-1B81-4C20-A111-E6974BB98EC5}) (Version: 1.00.0009 - Advanced Micro Devices, Inc.) Hidden
Brave (HKLM-x32\...\BraveSoftware Brave-Browser) (Version: 149.1.91.175 - Autoři prohlížeče Brave)
BUFF (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Overwolf_caboggillkkpgkiokbjmgldfkedbfnpkgadakcdl) (Version: 0.9.36.0 - Overwolf app)
Call of Duty (HKLM-x32\...\Call of Duty) (Version: - Blizzard Entertainment)
Call of Duty Modern Warfare (HKLM-x32\...\Call of Duty Modern Warfare) (Version: - Blizzard Entertainment)
Call of Duty(R) 2 (HKLM-x32\...\InstallShield_{D0A05794-48C2-4424-A15A-9F20FCFDD374}) (Version: 1.00.0000 - Activision)
CapCut (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\CapCut) (Version: 6.2.0.2385 - Bytedance Pte. Ltd.)
CCleaner (HKLM\...\CCleaner) (Version: 6.38 - Piriform)
CoD 2 čeština (HKLM-x32\...\CoD 2 čeština_is1) (Version: - #'Pan[S]al!er!)
CPUID CPU-Z 2.08 (HKLM\...\CPUID CPU-Z_is1) (Version: 2.08 - CPUID, Inc.)
CPUID HWMonitor 1.52 (HKLM\...\CPUID HWMonitor_is1) (Version: 1.52 - CPUID, Inc.)
CrystalDiskMark 8.0.4c (HKLM\...\CrystalDiskMark8_is1) (Version: 8.0.4c - Crystal Dew World)
CurseForge (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Overwolf_cchhcaiapeikjbdbpfplgmpobbcdkdaphclbmkbj) (Version: 1.296.1.364 - Overwolf app)
DaVinci Resolve (HKLM\...\{A42AD466-8352-466F-B920-67F54C4F8679}) (Version: 19.0.00051 - Blackmagic Design)
DaVinci Resolve Control Panels (HKLM\...\{3739CA49-792F-4F1F-9B76-42DFBBBED27E}) (Version: 2.3.0.0 - Blackmagic Design)
DaVinci Resolve Renderer (HKLM\...\{953AAFB1-E9E3-4FED-9E35-575B960236CC}) (Version: 19.0.00051 - Blackmagic Design)
Denuvo Anti-Cheat (HKLM\...\Denuvo Anti-Cheat) (Version: 6.7.0.6846 - Denuvo GmbH)
Discord (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Discord) (Version: 1.0.9228 - Discord Inc.)
DownloadHelper CoApp (HKLM-x32\...\DownloadHelper CoApp) (Version: 2.0.19.0 - ACLAP)
Dynamic Application Loader Host Interface Service (HKLM\...\{439E5170-CFC8-4944-8119-746ECF219399}) (Version: 1.0.0.0 - Intel Corporation) Hidden
EA app (HKLM\...\{C2622085-ABD2-49E5-8AB9-D3D6A642C091}) (Version: 13.680.0.6193 - Electronic Arts) Hidden
EA app (HKLM-x32\...\{d473ca0c-6e51-4386-a9d8-0458f243b271}) (Version: 13.680.0.6193 - Electronic Arts)
ENE RGB HAL (HKLM\...\{E050E98C-5524-4AFB-9E53-97700BEF2C02}) (Version: 1.1.62.5 - Ene Tech.) Hidden
ENE RGB HAL (HKLM-x32\...\{cc8ca0dc-1a3a-4f92-ae52-0f35ca2d2ec5}) (Version: 1.1.62.5 - Ene Tech.) Hidden
ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
ENE_EHD_M2_HAL (HKLM-x32\...\{c1d017c2-8846-4000-9254-5689eccd462e}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
Epic Games Launcher (HKLM-x32\...\{FAC47927-1A6A-4C6E-AD7D-E9756794A4BC}) (Version: 1.3.23.0 - Epic Games, Inc.)
Epic Online Services (HKLM-x32\...\{758842D2-1538-4008-A8E3-66F65A061C52}) (Version: 2.0.33.0 - Epic Games, Inc.)
FACEIT (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\FACEIT) (Version: 2.0.26 - FACEIT Ltd.)
FACEIT Anti-Cheat (HKLM\...\{1419E44C-0EF4-4822-9194-9F1A4D43973D}_is1) (Version: 2.1 - FACEIT LTD)
Fairlight Audio Accelerator Utility (HKLM\...\FairlightAudioAccelerator_is1) (Version: 1.0.15 - Blackmagic Design)
FFB Racing Wheel drivers (HKLM-x32\...\{28B758EA-5C83-48B1-B352-C70F12C73F5A}) (Version: 1.TTRS.2024 - Thrustmaster)
FiveM (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\CitizenFX_FiveM) (Version: - Cfx.re)
Free Download Manager (HKLM\...\{0C1D4CF2-5575-4786-834C-B0FC977E9714}}_is1) (Version: 6.33.2.6656 - Softdeluxe)
GameGuard (HKLM-x32\...\{DB58A440-02BB-433B-AE99-D0B8AF31A839}) (Version: 1.0.0.0 - GameGuard AntiCheat, OnMoon Company LLC)
GameSDK Service (HKLM-x32\...\{021d69c3-d686-4a94-8fb5-fd1ee782fb14}) (Version: 1.0.5.0 - ASUSTek COMPUTER INC.)
GameSDK Service (HKLM-x32\...\{7160DA8D-3F25-4F6E-ABC8-F693551D82FA}) (Version: 1.0.5.0 - ASUSTek COMPUTER INC.) Hidden
GMenu (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\4ac46a8d-c0d4-56ee-87f3-9abd4ce22e7f) (Version: 3.28.0 - AOC)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 149.0.7827.114 - Google LLC)
GTA San Andreas (HKLM-x32\...\{D417C96A-FCC7-4590-A1BB-FAF73F5BC98E}) (Version: 1.00.00001 - Rockstar Games)
Hamachi (HKLM-x32\...\{C00E2143-38F2-49BA-AB8A-03F22F02F0A4}) (Version: 2.3.0.111 - LogMeIn, Inc.) Hidden
Hamachi (HKLM-x32\...\LogMeIn Hamachi) (Version: 2.3.0.111 - LogMeIn, Inc.)
Hextech Repair Tool (HKLM-x32\...\{7F9A97E6-E666-11E5-B582-B88687E82322}) (Version: 1.1.176 - Riot Games, Inc.)
HMA VPN (HKLM\...\Privax HMA) (Version: 26.5.12311.16202 - Privax)
Intel(R) Chipset Device Software (HKLM\...\{2EE411D3-03C6-4647-81F5-A3C13F25FDC5}) (Version: 10.1.18838.8284 - Intel Corporation) Hidden
Intel(R) Chipset Device Software (HKLM-x32\...\{2d8d3782-0c02-4681-87f4-e004b3d4a8f6}) (Version: 10.1.18838.8284 - Intel(R) Corporation)
Intel(R) LMS (HKLM\...\{DFFC9992-3A41-4155-A834-9831C6E58D98}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 2130.16.0.2387 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{FA6E1882-F6C1-47E1-A6CB-FC1F5460E311}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Driver (HKLM\...\{38F0D70E-8F07-4BF9-A5E0-6946C3D614D8}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Serial IO (HKLM\...\{9FD91C5C-44AE-4D9D-85BE-AE52816B0294}) (Version: 30.100.2129.8 - Intel Corporation)
Intel(R) Serial IO (HKLM\...\{A5530342-3F3E-4C02-9ECA-20DC35944BFD}) (Version: 30.100.2129.8 - Intel Corporation) Hidden
INUI (C) (HKLM\...\INUI) (Version: 1.0.0 - INUI GAMING FZ LLC)
IO Auto Clicker version 1.2.0 (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\IO Auto Clicker_is1) (Version: 1.2.0 - Wonkru Media (OPC) Private Limited)
Iriun Webcam version 2.8.4 (HKLM-x32\...\IriunWebcam_is1) (Version: 2.8.4 - Iriun)
iTop Screen Recorder (HKLM-x32\...\iTop Screen Recorder_is1) (Version: 6.2.0.3488 - iTop Inc.)
iTop Screenshot (HKLM-x32\...\iTop Screenshot_is1) (Version: 1.2.3.544 - iTop Inc.)
Kinect for Windows Speech Recognition Language Pack (en-AU) (HKLM-x32\...\{48CEC0A3-AE10-4EE3-AC62-76D3D58792E5}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-CA) (HKLM-x32\...\{9C5505DA-F9C1-46CB-9F8F-AC38F8EA518A}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-GB) (HKLM-x32\...\{A0186231-0A8B-455A-8A25-B64AABCC11A6}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kinect for Windows Speech Recognition Language Pack (en-US) (HKLM-x32\...\{8AAA44BB-487E-4D01-AF76-484ACB90DBFE}) (Version: 11.0.7400.336 - Microsoft Corporation)
Kingston AURA DRAM Component (HKLM\...\{965CDF5F-901C-476F-B3A8-7396701B1129}) (Version: 1.1.44 - KINGSTON COMPONENTS INC.) Hidden
Kingston AURA DRAM Component (HKLM-x32\...\{9cfd6488-af6d-4b35-9df3-e16b0c6b791b}) (Version: 1.1.44 - KINGSTON COMPONENTS INC.) Hidden
KMPlayer (remove only) (HKLM-x32\...\The KMPlayer) (Version: 4.2.3.7 - PandoraTV)
Kodi (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Kodi) (Version: 21.1.0.0 - XBMC Foundation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
League of Legends (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Riot Game league_of_legends.live) (Version: - Riot Games, Inc)
Logitech G HUB (HKLM\...\{521c89be-637f-4274-a840-baaf7460c2b2}) (Version: 2026.3.880543 - Logitech)
LSC_Battletron 2.0.17 (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\4682e427-f1d4-58e9-ae92-7249f6aeeff5) (Version: 2.0.17 - )
Mafia (HKLM-x32\...\1595659240_is1) (Version: 1.3 - GOG.com)
Mafia Compatibility Database (HKLM\...\{481dc351-bab0-4f86-b085-87a5626fe6dc}.sdb) (Version: - )
Mafia II Definitive Edition (HKLM-x32\...\1449710114_is1) (Version: 1.0 - GOG.com)
Malwarebytes version 5.5.7.255 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.5.7.255 - Malwarebytes)
Massive (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\{07F54E47-DE08-486E-921C-D09624774BB6}_is1) (Version: 0.19.2 - Massive Computing, Inc.) <==== ATTENTION
Microsoft .NET 9.0 Templates 9.0.312 (x64) (HKLM\...\{CC355296-727E-4588-B4BE-F019FCBBE942}) (Version: 36.11.56644 - Microsoft Corporation) Hidden
Microsoft .NET AppHost Pack - 9.0.14 (x64) (HKLM\...\{7755F4D3-1735-4CD7-B1B8-293F1822CD96}) (Version: 72.56.48826 - Microsoft Corporation) Hidden
Microsoft .NET AppHost Pack - 9.0.14 (x64_arm64) (HKLM\...\{DD425E5F-3B08-4EFB-B0E7-999FE0A11545}) (Version: 72.56.48826 - Microsoft Corporation) Hidden
Microsoft .NET AppHost Pack - 9.0.14 (x64_x86) (HKLM\...\{A8EBAB5C-7A03-4C95-BCDC-979E5D1C8D68}) (Version: 72.56.48826 - Microsoft Corporation) Hidden
Microsoft .NET Host - 6.0.14 (x86) (HKLM-x32\...\{364225D5-48A0-4CF2-9BDF-F72872EE07FF}) (Version: 48.59.55225 - Microsoft Corporation) Hidden
Microsoft .NET Host - 6.0.5 (x64) (HKLM\...\{F3B3A61B-DC16-429A-A260-DBAFE66741A9}) (Version: 48.23.40665 - Microsoft Corporation) Hidden
Microsoft .NET Host - 7.0.7 (x64) (HKLM\...\{E914E975-A0B1-49F7-AB71-28DACD495C44}) (Version: 56.31.61636 - Microsoft Corporation) Hidden
Microsoft .NET Host - 8.0.21 (x64) (HKLM\...\{72357746-B194-485C-A161-FB80F419DC20}) (Version: 64.84.40925 - Microsoft Corporation) Hidden
Microsoft .NET Host - 9.0.14 (x64) (HKLM\...\{1BDBCEB3-9590-47AF-91CA-C0F467760A5A}) (Version: 72.56.48826 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.14 (x86) (HKLM-x32\...\{C20F1D07-10B7-4B92-8FA0-DF8E58D6467F}) (Version: 48.59.55225 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.5 (x64) (HKLM\...\{3E6CCD41-6B96-47BD-8E1E-D7B593CEE976}) (Version: 48.23.40665 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 7.0.7 (x64) (HKLM\...\{62A9DE14-DB7A-41D9-9D7E-ED494E6FCBAF}) (Version: 56.31.61636 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.21 (x64) (HKLM\...\{B382D796-20D3-45DA-AB94-E98D99668B10}) (Version: 64.84.40925 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.8 (x64) (HKLM\...\{7FE24458-0796-4428-99C2-9A0F8DAB93CC}) (Version: 64.32.18380 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 9.0.14 (x64) (HKLM\...\{A5622318-9DBD-4A19-808D-CDA0929CA1DF}) (Version: 72.56.48826 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.14 (x86) (HKLM-x32\...\{101779FE-3FE4-420A-94DD-01B3ED37DE84}) (Version: 48.59.55225 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.5 (x64) (HKLM\...\{089A177D-98AE-4195-A115-D3C45613B875}) (Version: 48.23.40665 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 7.0.7 (x64) (HKLM\...\{ECCA3DB0-6DEF-42CD-A21A-F2F7B918FB59}) (Version: 56.31.61636 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.21 (x64) (HKLM\...\{EEFB29A5-3E62-4DCE-8527-0DF45D780126}) (Version: 64.84.40925 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 8.0.21 (x64) (HKLM-x32\...\{cf83f56a-4c10-4d97-9594-0764dfeb96e3}) (Version: 8.0.21.35325 - Microsoft Corporation)
Microsoft .NET Runtime - 8.0.8 (x64) (HKLM\...\{9ACB23DB-4D32-49ED-A5E3-F4E2F8D9D2AA}) (Version: 64.32.18380 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 9.0.14 (x64) (HKLM\...\{7D8CA9A1-03AD-4726-8FAD-91DE906279DE}) (Version: 72.56.48826 - Microsoft Corporation) Hidden
Microsoft .NET SDK 9.0.312 (x64) (HKLM-x32\...\{2bc246c1-704c-455e-b2be-a51402659f2a}) (Version: 9.3.1226.12004 - Microsoft Corporation)
Microsoft .NET Standard Targeting Pack - 2.1.0 (x64) (HKLM\...\{A7036CFB-B403-4598-85FF-D397ABB88173}) (Version: 24.0.28113 - Microsoft Corporation) Hidden
Microsoft .NET Targeting Pack - 9.0.14 (x64) (HKLM\...\{F51EFB18-E243-4626-966E-11E0847B3877}) (Version: 72.56.48826 - Microsoft Corporation) Hidden
Microsoft .NET Toolset 9.0.312 (x64) (HKLM\...\{AB20E512-EB28-4AF1-B055-3E6E2AF9C45B}) (Version: 36.11.56644 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 9.0.14 Shared Framework (x64) (HKLM\...\{05C6BB69-26B0-3DDE-94A6-E8EE704DC45A}) (Version: 9.0.14.26119 - Microsoft Corporation) Hidden
Microsoft ASP.NET Core 9.0.14 Targeting Pack (x64) (HKLM\...\{93AA5DC3-A927-3582-BADC-071D914460DB}) (Version: 9.0.14.26119 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 149.0.4022.80 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 149.0.4022.80 - Microsoft Corporation) Hidden
Microsoft GameInput (HKLM\...\{14EDF950-06B9-415F-862C-1D5DEC321AE6}) (Version: 3.3.221.0 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\OneDriveSetup.exe) (Version: 26.095.0519.0003 - Microsoft Corporation)
Microsoft Server Speech Platform Runtime (x64) (HKLM\...\{3B433087-E62E-4BF5-97F9-4AF6E1C2409C}) (Version: 11.0.7400.345 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.4148 (HKLM\...\{4B6C7001-C7D6-3710-913E-5BC23FCE91E6}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.44.35211 (HKLM-x32\...\{d8bbe9f9-7c5b-42c6-b715-9ee898a2e515}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.44.35211 (HKLM-x32\...\{0b5169e3-39da-4313-808e-1f9c0407f3bf}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.44.35211 (HKLM\...\{86AB2CC9-08BD-4643-B0F9-F82D006D72FF}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.44.35211 (HKLM\...\{43B0D101-A022-48F4-9D04-BA404CEB1D53}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.44.35211 (HKLM-x32\...\{C18FB403-1E88-43C8-AD8A-CED50F23DE8B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.44.35211 (HKLM-x32\...\{922480B5-CAEB-4B1B-AAA4-9716EFDCE26B}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.14 (x86) (HKLM-x32\...\{0CA8F91E-EE14-4ED7-94A4-BAD16EA67D2F}) (Version: 48.59.55235 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.14 (x86) (HKLM-x32\...\{c31ad3df-16b7-41b3-81fa-7658cb450781}) (Version: 6.0.14.32124 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 6.0.5 (x64) (HKLM\...\{DE578B32-084A-49E7-8E55-6F58A37578C0}) (Version: 48.23.40699 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.5 (x64) (HKLM-x32\...\{0f711ee3-eb88-456d-acb4-c2ee31add211}) (Version: 6.0.5.31215 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 7.0.7 (x64) (HKLM\...\{593F16DC-C2D3-4740-ABD4-A171B4E32B06}) (Version: 56.31.61651 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 7.0.7 (x64) (HKLM-x32\...\{e875fc20-9a37-4344-b046-0bb037cb2d57}) (Version: 7.0.7.32525 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 8.0.8 (x64) (HKLM\...\{663E7053-3B36-4AE5-8223-234867FAEAE6}) (Version: 64.32.18376 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.8 (x64) (HKLM-x32\...\{33832ff3-5583-4b81-b270-d9fd42760e1a}) (Version: 8.0.8.33916 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 9.0.14 (x64) (HKLM\...\{8CE06646-49A6-427F-9155-5E1F50190E08}) (Version: 72.56.48819 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Targeting Pack - 9.0.14 (x64) (HKLM\...\{701F71AE-5DE0-410F-A621-55A232BC8E24}) (Version: 72.56.48819 - Microsoft Corporation) Hidden
Microsoft XNA Framework Redistributable 4.0 Refresh (HKLM-x32\...\{D69C8EDE-BBC5-436B-8E0E-C5A6D311CF4F}) (Version: 4.0.30901.0 - Microsoft Corporation)
Microsoft.NET.Sdk.Android.Manifest-9.0.100 (x64) (HKLM\...\{76737228-5B3F-4431-9C02-BC3C1B25198B}) (Version: 35.0.7 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.Aspire.Manifest-8.0.100 (x64) (HKLM\...\{2E5C5364-621F-4F22-8B81-18524D6F0361}) (Version: 64.136.23253 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.iOS.Manifest-9.0.100 (x64) (HKLM\...\{736FFE9E-6571-4059-B73D-F97F07E9F98D}) (Version: 18.0.9617 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.MacCatalyst.Manifest-9.0.100 (x64) (HKLM\...\{393886C4-81D0-4CB7-BE11-B2B974BAE978}) (Version: 18.0.9617 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.macOS.Manifest-9.0.100 (x64) (HKLM\...\{16C48C75-42D8-4E6A-845B-233207524190}) (Version: 15.0.9617 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.Maui.Manifest-9.0.100 (x64) (HKLM\...\{3214CADE-AAED-4B9A-8927-49D866E2A758}) (Version: 9.0.0 - Microsoft Corporation) Hidden
Microsoft.NET.Sdk.tvOS.Manifest-9.0.100 (x64) (HKLM\...\{CF59BE56-B314-4B17-B3C2-8B7197681D56}) (Version: 18.0.9617 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Emscripten.Current.Manifest (x64) (HKLM\...\{AB59D4BA-BE3B-4C22-B984-AA9E065842D0}) (Version: 72.56.48675 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Emscripten.net6.Manifest (x64) (HKLM\...\{DA29E54E-9E8C-4DA4-9D78-A9024BE5876C}) (Version: 72.56.48675 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Emscripten.net7.Manifest (x64) (HKLM\...\{C6644939-33AC-4395-B668-402FD42BA3D7}) (Version: 72.56.48675 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Emscripten.net8.Manifest (x64) (HKLM\...\{1B9AD5AC-6636-4611-AFDD-E4FE9EC3B885}) (Version: 72.56.48675 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Mono.Toolchain.Current.Manifest (x64) (HKLM\...\{65ADB65C-239A-4B43-9580-4F3F5564E91C}) (Version: 72.0.48826 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Mono.Toolchain.net6.Manifest (x64) (HKLM\...\{2C405A91-A1AB-4A47-AC40-CD35C632E4CD}) (Version: 72.0.48826 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Mono.Toolchain.net7.Manifest (x64) (HKLM\...\{55DFE7C5-961B-4685-9561-ECA6E3C2ADB7}) (Version: 72.0.48826 - Microsoft Corporation) Hidden
Microsoft.NET.Workload.Mono.Toolchain.net8.Manifest (x64) (HKLM\...\{0EDAC286-5E7D-46E0-BCE5-8D71CBC0C1A0}) (Version: 72.0.48826 - Microsoft Corporation) Hidden
Microsoft_VC100_CRT_SP1_x64 (HKLM\...\{680EDA59-9266-44B4-949E-0C24F65DFF82}) (Version: 10.0.40219.1 - Nokia) Hidden
Microsoft_VC100_CRT_SP1_x86 (HKLM-x32\...\{E3B64CC5-C011-40C0-92BC-7316CD5E5688}) (Version: 10.0.40219.1 - Nokia) Hidden
Minecraft Launcher (HKLM-x32\...\{A26EF561-5945-46FD-8094-FA34E44D460F}) (Version: 2.0.0.0 - Mojang)
MKVcleaver 64 bit (HKLM\...\{2C9ACE67-EEDB-4DE6-8C62-11B4AC037D50}) (Version: 6.0.2 - Ilia Bakhmoutski (sheck))
MKVCleaver 64 bit (HKLM\...\{32886311-ABB4-45BE-8274-1F53641B2AC7}_is1) (Version: 0.8.0.0 - Ilia Bakhmoutski)
MKVToolNix 82.0.0 (64-bit) (HKLM-x32\...\MKVToolNix) (Version: 82.0.0 - Moritz Bunkus)
Movavi Video Converter 22 Premium (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Movavi Video Converter 22 Premium) (Version: 22.5.0 - Movavi)
MSI Afterburner 4.6.5 (HKLM-x32\...\Afterburner) (Version: 4.6.5 - MSI Co., LTD)
MSVC80_x64_v2 (HKLM\...\{4D668D4F-FAA2-4726-834C-31F4614F312E}) (Version: 1.0.3.0 - Nokia) Hidden
MSVC80_x86_v2 (HKLM-x32\...\{6D3245B1-8DB8-4A23-9CD2-2C90F40ABAF6}) (Version: 1.0.3.0 - Nokia) Hidden
MSVC90_x64 (HKLM\...\{AB071C8B-873C-459F-ACA9-9EBE03C3E89B}) (Version: 1.0.1.2 - Nokia) Hidden
MSVC90_x86 (HKLM-x32\...\{AF111648-99A1-453E-81DD-80DBBF6DAD0D}) (Version: 1.0.1.2 - Nokia) Hidden
Nmap 7.95 (HKLM-x32\...\Nmap) (Version: 7.95 - Nmap Project)
Nokia Connectivity Cable Driver (HKLM-x32\...\{29373274-977E-413C-A4DE-DC0F8E80C429}) (Version: 7.1.172.0 - Nokia)
Nokia PC Suite (HKLM-x32\...\{866C4563-ED53-43F3-A29D-8BEE2BD1BA3C}) (Version: 7.1.180.94 - Nokia) Hidden
Nokia PC Suite (HKLM-x32\...\Nokia PC Suite) (Version: 7.1.180.94 - Nokia)
Nokia Suite (HKLM-x32\...\{0C808377-8C23-44ED-9016-05F42E6D4900}) (Version: 3.8.30.0 - Nokia) Hidden
Nokia Suite (HKLM-x32\...\Nokia Suite) (Version: 3.8.30.0 - Nokia)
NordUpdater (HKLM\...\{6E35DB82-3D19-4DD6-B8CB-F082815FDE18}_is1) (Version: 1.5.0.1028 - Nord Security)
NordVPN (HKLM\...\{19465C24-3D5D-4327-B99F-3CC0A1D38151}_is1) (Version: 7.31.8.0 - Nord Security)
Novabench (HKLM\...\{33CB129E-2220-4858-AA71-4CE4CD7792CA}) (Version: 5.4.1 - Novabench Inc.)
Npcap (HKLM-x32\...\NpcapInst) (Version: 1.79 - Nmap Project)
NVIDIA PhysX (HKLM-x32\...\{B455E95A-B804-439F-B533-336B1635AE97}) (Version: 9.14.0702 - NVIDIA Corporation)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Opera GX Stable 132.0.5905.43 (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Opera GX 132.0.5905.43) (Version: 132.0.5905.43 - Opera Software)
Overwolf (HKLM-x32\...\Overwolf) (Version: 0.292.1.1 - Overwolf Ltd.)
Paltalk (HKLM-x32\...\Paltalk) (Version: - )
Patriot Viper DRAM RGB (HKLM\...\{1F9C282E-CCB4-4D8E-A5CB-7B74DFCD8C95}) (Version: 1.0.9.8 - Patriot Memory) Hidden
Patriot Viper DRAM RGB (HKLM-x32\...\{55993b50-5bec-47c8-8b2b-1aecad927e48}) (Version: 1.0.9.8 - Patriot Memory) Hidden
Patriot Viper M2 SSD RGB (HKLM\...\{8B4C0A3D-C135-4E1F-98D8-3926494B4D61}) (Version: 1.1.0.3 - Patriot Memory) Hidden
Patriot Viper M2 SSD RGB (HKLM-x32\...\{6e0eff60-c502-43bb-8f56-360ca07e73d9}) (Version: 1.1.0.3 - Patriot Memory) Hidden
PC Building Simulator 2 MULTi10 - ElAmigos version 1.14.02 (HKLM-x32\...\{DE7FDD1D-071F-4771-B811-95A48B3072FB}_is1) (Version: 1.14.02 - Spiral House)
PC Connectivity Solution (HKLM-x32\...\{6D01D1B1-17BD-4F10-BB11-F08F0C47D42B}) (Version: 12.0.109.0 - Nokia)
Pi Network 0.5.4 (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\375fce00-6280-59a8-8dfe-c557d5fd3e90) (Version: 0.5.4 - Socialchain Inc.)
Plane Arcade (HKLM-x32\...\Plane Arcade) (Version: - 3D Games Development)
PlanetVPN-2.10.30.68 (HKLM-x32\...\{33eecf4f-167f-4fa6-9e3e-5a4be965965c}_is1) (Version: 2.10.30.68 - PlanetVPN)
PlaytestCloud (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\PlaytestCloud) (Version: 3.16.0 - PlaytestCloud)
PSPad editor (HKLM\...\PSPad editor 64bit_is1) (Version: 5.0.7.775 - Jan Fiala)
PureVPN (HKLM-x32\...\{c017a6e5-ca99-4e7e-b23d-66fb702e4fbf}) (Version: 14.7.0.13 - ) Hidden
Python 3.13.1 (64-bit) (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\{1abbd55d-059a-4d1e-bdf1-35bb74697f5a}) (Version: 3.13.1150.0 - Python Software Foundation)
Python 3.13.1 Add to Path (64-bit) (HKLM\...\{95338D2D-2A7C-4C57-ABC4-39FF8568C2FF}) (Version: 3.13.1150.0 - Python Software Foundation) Hidden
Python 3.13.1 Core Interpreter (64-bit) (HKLM\...\{B7C30E07-E007-43ED-A9E1-EEDA7F57C8BC}) (Version: 3.13.1150.0 - Python Software Foundation) Hidden
Python 3.13.1 Development Libraries (64-bit) (HKLM\...\{FE9B3181-7FDD-4F6A-855A-305940D9A6E8}) (Version: 3.13.1150.0 - Python Software Foundation) Hidden
Python 3.13.1 Documentation (64-bit) (HKLM\...\{29EEEBD6-F97B-4274-A640-FD8715025124}) (Version: 3.13.1150.0 - Python Software Foundation) Hidden
Python 3.13.1 Executables (64-bit) (HKLM\...\{8AFC9846-E7A8-4817-93FD-3542456A3E52}) (Version: 3.13.1150.0 - Python Software Foundation) Hidden
Python 3.13.1 pip Bootstrap (64-bit) (HKLM\...\{2BB3559A-6DFD-453E-8B7B-E6166958D099}) (Version: 3.13.1150.0 - Python Software Foundation) Hidden
Python 3.13.1 Standard Library (64-bit) (HKLM\...\{29A3DBE6-A3D3-42C9-9338-A321F61C897A}) (Version: 3.13.1150.0 - Python Software Foundation) Hidden
Python 3.13.1 Tcl/Tk Support (64-bit) (HKLM\...\{C6718DB8-8965-4EE7-A056-1AA8F3836208}) (Version: 3.13.1150.0 - Python Software Foundation) Hidden
Python 3.13.1 Test Suite (64-bit) (HKLM\...\{7A5D8A6D-A0A9-4459-88EF-33C91DAFB0C2}) (Version: 3.13.1150.0 - Python Software Foundation) Hidden
Python Launcher (HKLM-x32\...\{7102CAE5-270C-4E81-AC25-27699156D8AE}) (Version: 3.13.1150.0 - Python Software Foundation)
r2modman 3.1.57 (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\ac231ef6-6414-5f8d-b36f-3b57705721dd) (Version: 3.1.57 - ebkr)
Razer Synapse (HKLM-x32\...\Razer Synapse) (Version: 3.10.0315.031117 - Razer Inc.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.50.511.2021 - Realtek)
Riot Client (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Riot Game Riot_Client.) (Version: - Riot Games, Inc)
Riot Vanguard (HKLM\...\Riot Vanguard) (Version: - Riot Games, Inc.)
RivaTuner Statistics Server 7.3.4 (HKLM-x32\...\RTSS) (Version: 7.3.4 - Unwinder)
Roblox Player for micha (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\roblox-player) (Version: - Roblox Corporation)
Roblox Studio for micha (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\roblox-studio) (Version: - Roblox Corporation)
Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.106.2874 - Rockstar Games)
Rockstar Games SDK (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.4.0.194 - Rockstar Games)
ROG Live Service (HKLM\...\{2D87BFB6-C184-4A59-9BBE-3E20CE797631}) (Version: 3.5.6.0 - ASUSTek COMPUTER INC.)
ROGFontInstaller (HKLM\...\{605108C1-153E-43D8-8A67-7CE326B00ECA}) (Version: 1.0.0 - ASUS)
Rollercoin (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\4966a9b04c347a68a3da48fb5fae3aee) (Version: 1.0 - BraveSoftware\Brave-Browser)
STAR WARS™ Battlefront™ II (HKLM-x32\...\{8a882ce0-0c0b-4eb2-850c-28ebadab4f50}) (Version: 1.1.8.16162 - Electronic Arts)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Steel Hunters (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\4219147420) (Version: - Wargaming.net)
Streamlabs Desktop 1.15.1 (HKLM\...\029c4619-0385-5543-9426-46f9987161d9) (Version: 1.15.1 - General Workings, Inc.)
Subtitle Edit (HKLM\...\SubtitleEdit_is1) (Version: 4.0.11.0 - Nikse)
Surfshark (HKLM\...\{46E0D35D-2D6C-4585-A1F3-7EB73DCC6AF6}) (Version: 5.16.0999 - Surfshark) Hidden
Surfshark (HKLM\...\Surfshark 5.16.0999) (Version: 5.16.0999 - Surfshark)
TeamSpeak (HKLM\...\{EE883F28-D7AF-48E5-87B6-1F59D856362F}) (Version: 5.0.0 - TeamSpeak)
TeamSpeak 3 Client (HKLM\...\TeamSpeak 3 Client) (Version: 3.6.2 - TeamSpeak Systems GmbH)
Telegram Desktop (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 6.8.2 - Telegram FZ-LLC)
Time Adjuster STANDARD 3.1 (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\TimeAdjuster) (Version: - IrekSoftware.com)
TurtleWoW (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\TurtleWoW) (Version: 2.2.7 - turtle-wow)
Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 153.1.11069 - Ubisoft)
UE Prerequisites (x64) (HKLM\...\{C4175120-313E-467B-AAA7-825979CBAEE7}) (Version: 1.0.20.0 - Epic Games, Inc.) Hidden
UE Prerequisites (x64) (HKLM-x32\...\{b24cae82-bb64-4ad2-820a-dc2c4031c914}) (Version: 1.0.20.0 - Epic Games, Inc.) Hidden
Universal Holtek RGB DRAM (HKLM\...\{826388E4-E31F-4514-948B-3BB954FB3EAF}) (Version: 1.0.0.7 - PD) Hidden
Universal Holtek RGB DRAM (HKLM-x32\...\{9a732423-e2f4-47d0-87ab-ef745c7dba69}) (Version: 1.0.0.7 - PD) Hidden
V380 (HKLM-x32\...\{09BA00ED-4332-42BA-BCC7-2B00563A36E5}_is1) (Version: 2.0.4 - M@cro-video Technologies Co.)
VALORANT (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Riot Game valorant.live) (Version: - Riot Games, Inc)
VideoPlayTool 4.0.3.1 (HKLM-x32\...\VideoPlayTool) (Version: 4.0.3.1 - )
VLC media player (HKLM\...\VLC media player) (Version: 3.0.21 - VideoLAN)
Voicemod (HKLM\...\{FE519A29-8B15-47C4-BCD6-A513277DC26F}_is1) (Version: 1.3.0 - Voicemod Inc., Sucursal en España)
VPNGame 4.0.9 (HKLM-x32\...\3aaf459b-cb56-5f30-8941-e520cc78ea0a) (Version: 4.0.9 - VPNGame)
Wargaming.net Game Center (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Wargaming.net Game Center) (Version: 25.7.0.1174 - Wargaming.net)
WD_BLACK AN1500 (HKLM\...\{085E2365-0A70-4230-B664-02D5E4FE7E9C}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
WD_BLACK AN1500 (HKLM-x32\...\{e42c5874-37b0-4977-9e8d-70bf006e1f76}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
webOS Dev Manager (HKLM\...\{BB9B508F-6C9C-4F28-9534-499BA22B632F}) (Version: 1.13.3 - webosbrew)
Windows Subsystem for Linux (HKLM\...\{4D1F0C57-B154-4968-81B8-C8CA343B7998}) (Version: 2.4.11.0 - Microsoft Corporation) Hidden
WinRAR 6.24 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.24.0 - win.rar GmbH)
Wondershare Filmora 14(Build 14.3.14.11421) (HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\Wondershare Filmora 14_is1) (Version: - Wondershare Software)
Wondershare Helper Compact 2.6.0 (HKLM-x32\...\{5363CE84-5F09-48A1-8B6C-6BB590FFEDF2}_is1) (Version: 2.6.0 - Wondershare)
Xerox WorkCentre 6015B (HKLM-x32\...\{E16CF080-B932-4BA1-93FF-4021096F006C}) (Version: 1.009.00 - Xerox) Hidden
Xerox WorkCentre 6015B (HKLM-x32\...\InstallShield_{E16CF080-B932-4BA1-93FF-4021096F006C}) (Version: 1.009.00 - Xerox)
YKB 3400 PANZER (HKLM-x32\...\YKB 3400 PANZER) (Version: V1.05n - FAST CR a.s.)

Packages:
=========
Adobe Acrobat Reader -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Assets [2026-06-12] ()
AMD Radeon Software -> C:\Program Files\AMD\CNext\CNext [2025-08-07] (Advanced Micro Devices Inc.)
Armoury Crate -> C:\Program Files\ASUS\AacAmbientHal [2026-06-21] (Sparse Package)
Armoury Crate -> C:\Program Files\WindowsApps\B9ECED6F.ArmouryCrate_6.5.7.0_x64__qmba6cd70vzyy [2026-05-17] (ASUSTeK COMPUTER INC.)
AURA Creator -> C:\Program Files\WindowsApps\B9ECED6F.AURACreator_4.5.4.0_x64__qmba6cd70vzyy [2026-05-19] (ASUSTeK COMPUTER INC.)
Auto Clicker for Windows -> C:\Program Files\WindowsApps\2420ShazApp.AutoClickerforWindows_1.2.2.0_x64__1c69h7y6sr26m [2025-10-19] (ShazApp)
ChatGPT -> C:\Program Files\WindowsApps\OpenAI.ChatGPT-Desktop_1.2026.133.0_x64__2p2nqsd0c76g0 [2026-05-17] (OpenAI) [Startup Task]
Malwarebytes Anti-Malware -> C:\Program Files\Malwarebytes\Anti-Malware [2026-06-14] ()
Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2024-01-11] (Microsoft Corp.)
Microsoft.AIFabric.CBS.1.6 -> C:\WINDOWS\SystemApps\Microsoft.AIFabric.CBS.1.6_8wekyb3d8bbwe [2026-06-10] (Microsoft Corporation)
Minecraft Launcher -> C:\Program Files\WindowsApps\Microsoft.4297127D64EC6_2.6.2.0_x64__8wekyb3d8bbwe [2026-05-08] (Microsoft Studios)
Movie Maker - FREE -> C:\Program Files\WindowsApps\21336V3TApps.MovieMaker-FREE_3.11.1.0_x64__bzg06mxvgh4fa [2026-06-19] (AI Photo Editor Lab)
MyASUS -> C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.66.0_x64__qmba6cd70vzyy [2026-05-01] (ASUSTeK COMPUTER INC.) [Startup Task]
Record Screen - Video & Audio Recorder -> C:\Program Files\WindowsApps\21336V3TApps.ScreenRecorder-FREE_1.3.1.0_x64__bzg06mxvgh4fa [2026-04-01] (AI Photo Editor Lab)
SpotifyAB.SpotifyMusic -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0 [2026-06-16] (Spotify AB) [Startup Task]
WinAppRuntime.Singleton -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Singleton_8002.2.0.0_x64__8wekyb3d8bbwe [2026-06-19] (Microsoft Corp.)
Windows App Runtime DDLM 4000.1049.117.0-x6 -> C:\Program Files\WindowsApps\Microsoft.WinAppRuntime.DDLM.4000.1049.117.0-x6_4000.1049.117.0_x64__8wekyb3d8bbwe [2026-02-23] (Microsoft Corporation)
WinRAR -> C:\Program Files\WinRAR [2024-01-05] (win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{13357088-9834-0409-1600-134951500000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{14100442-9664-1407-2647-000000000000}\localserver32 -> "C:\Users\micha\AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{4e6f7264-5650-4e00-0000-000000000000}\localserver32 -> C:\Program Files\NordVPN\NordVPN.exe (nordvpn s.a. -> nordvpn S.A.)
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{73F8144D-FFD8-4496-B65E-4D756FF689FE}\localserver32 -> "c:\program files (x86)\bytedance\douyin\7.3.0\tray\douyin_tray.exe" ----AppNotificationActivated: => No File
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{BEA218D2-6950-497B-9434-61683EC065FE}\InprocServer32 -> C:\Users\micha\AppData\Local\Programs\Python\Launcher\pyshellext.amd64.dll (Python Software Foundation -> Python Software Foundation)
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{ED90173A-3B4C-4E7E-B9CF-79714425D4B5}\InprocServer32 -> C:\Program Files\PSPad editor\pspshellx64.dll () [File not signed]
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2026-06-08] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers1: [ContextMenuHandlerFilmora] -> {5F542218-AF8A-4CF8-8ACA-DF63B73C528D} => C:\Windows\system32\FilmoraContextMenu.dll [2025-02-07] () [File not signed]
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2026-06-06] (Malwarebytes Inc -> Malwarebytes)
ContextMenuHandlers4: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => -> No File
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2026-06-06] (Malwarebytes Inc -> Malwarebytes)
ContextMenuHandlers6: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => -> No File
ContextMenuHandlers1_S-1-5-21-756127909-4058986209-260929036-1001: [EditWithPSPad] -> {ED90173A-3B4C-4E7E-B9CF-79714425D4B5} => C:\Program Files\PSPad editor\pspshellx64.dll [2014-11-02] () [File not signed]

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\system32\rtvcvfw64.dll [246272 2012-09-28] () [File not signed]
HKLM\...\Drivers32: [VIDC.RTV1] => C:\Windows\SysWOW64\rtvcvfw32.dll [247296 2012-09-28] () [File not signed]
HKLM\...\Drivers32-x32: [vidc.XVID] => xvidvfw.dll
HKLM\...\Drivers32-x32: [VIDC.VP80] => vp8vfw.dll

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

Shortcut: C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Massive\Massive.lnk -> C:\Users\micha\Programs\Massive\RunMassiveStartMenuScript.bat ()
ShortcutWithArgument: C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Web Applications\_crx_mpbdhnpafnokpojekbkdnbfchkjahdnf\Bolt Food.lnk -> C:\Program Files\BraveSoftware\Brave-Browser\Application\chrome_proxy.exe (Brave Software, Inc.) -> --profile-directory=Default --app-id=mpbdhnpafnokpojekbkdnbfchkjahdnf
ShortcutWithArgument: C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Brave\Bolt Food.lnk -> C:\Program Files\BraveSoftware\Brave-Browser\Application\chrome_proxy.exe (Brave Software, Inc.) -> --profile-directory=Default --app-id=mpbdhnpafnokpojekbkdnbfchkjahdnf
ShortcutWithArgument: C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Aplikace Brave\Rollercoin.lnk -> C:\Program Files\BraveSoftware\Brave-Browser\Application\chrome_proxy.exe (Brave Software, Inc.) -> --profile-directory=Default --app-id=mckfidonbdljlhdmdakihaildpbgbplb

==================== Loaded Modules (Whitelisted) =============

2026-05-17 17:14 - 2025-12-31 10:23 - 000367616 _____ () [File not signed] \\?\C:\Program Files (x86)\ASUS\ArmouryDevice\resources\app.asar.unpacked\node_modules\@img\sharp-win32-ia32\lib\sharp-win32-ia32.node
2025-02-15 23:10 - 2024-09-29 15:45 - 000137728 _____ () [File not signed] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\CBSCreateVC.dll
2025-02-15 23:10 - 2024-09-29 15:45 - 001506304 _____ () [File not signed] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\DAQExp.dll
2024-08-05 14:46 - 2024-08-05 14:46 - 000874496 _____ () [File not signed] C:\Program Files (x86)\Steam\steamapps\common\Half-Life\chromehtml.dll
2024-08-05 14:47 - 2024-08-05 14:47 - 000071680 _____ () [File not signed] C:\Program Files (x86)\Steam\steamapps\common\Half-Life\mssmp3.asi
2024-08-05 14:47 - 2024-08-05 14:47 - 000153088 _____ () [File not signed] C:\Program Files (x86)\Steam\steamapps\common\Half-Life\mssvoice.asi
2024-12-01 12:27 - 2024-12-01 12:27 - 002024448 _____ () [File not signed] C:\Program Files (x86)\Steam\steamapps\common\Half-Life\SDL2.dll
2024-12-01 12:28 - 2024-12-01 12:28 - 000027136 _____ () [File not signed] c:\program files (x86)\steam\steamapps\common\half-life\valve\cl_dlls\particleman.dll
2025-02-23 12:46 - 2025-10-22 20:09 - 003001344 _____ () [File not signed] C:\Users\micha\AppData\Local\Programs\pi-network-desktop\ffmpeg.dll
2025-02-23 12:46 - 2025-10-22 20:09 - 000493056 _____ () [File not signed] C:\Users\micha\AppData\Local\Programs\pi-network-desktop\libegl.dll
2025-02-23 12:46 - 2025-10-22 20:09 - 008019968 _____ () [File not signed] C:\Users\micha\AppData\Local\Programs\pi-network-desktop\libglesv2.dll
2025-02-23 12:46 - 2025-10-22 20:09 - 005577728 _____ () [File not signed] C:\Users\micha\AppData\Local\Programs\pi-network-desktop\vk_swiftshader.dll
2023-04-07 16:49 - 2023-04-07 16:49 - 000061928 _____ (Eyeware Tech SA -> ) [File not signed] C:\Program Files\AMD\AMD Privacy View\ewvcam\APV\x64\eyeware_vcam.dll
2012-06-26 14:08 - 2012-06-26 14:08 - 000026624 _____ (Nokia) [File not signed] C:\Program Files (x86)\Nokia\Nokia PC Suite 7\Lang\PhoneBrowser_cze.nlr
2012-06-26 12:58 - 2012-06-26 12:58 - 001262592 _____ (Nokia) [File not signed] C:\Program Files (x86)\Nokia\Nokia PC Suite 7\NGSCM64.DLL
2012-06-26 14:08 - 2012-06-26 14:08 - 000572928 _____ (Nokia) [File not signed] C:\Program Files (x86)\Nokia\Nokia PC Suite 7\Resource\PhoneBrowser_Nokia.ngr
2024-08-05 14:46 - 2024-08-05 14:46 - 000446976 _____ (RAD Game Tools, Inc.) [File not signed] C:\Program Files (x86)\Steam\steamapps\common\Half-Life\mss32.dll
2024-01-12 16:05 - 2026-03-24 14:58 - 000139776 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\downloadsbatch.dll
2024-01-12 16:05 - 2026-03-24 15:00 - 004432384 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\downloadsbt.dll
2026-05-10 12:32 - 2026-03-24 14:59 - 000138752 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\downloadsfragments.dll
2024-01-12 16:05 - 2026-03-24 15:00 - 000119808 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\downloadsjsp.dll
2024-01-12 16:05 - 2026-03-24 15:00 - 000249344 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\downloadsm3u.dll
2024-01-12 16:05 - 2026-03-24 15:00 - 000718336 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\downloadsms.dll
2024-01-12 16:05 - 2026-03-24 14:59 - 001174528 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\downloadswww.dll
2024-01-12 16:05 - 2026-03-24 14:38 - 000044544 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\logger.dll
2024-01-12 16:05 - 2026-03-24 14:41 - 000249344 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\quazip.dll
2024-01-12 16:05 - 2026-03-24 14:57 - 000822272 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\vmsclshared.dll
2024-01-12 16:05 - 2026-03-24 14:44 - 000038400 _____ (Softdeluxe) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\winunivappfeatures.dll
2026-05-10 12:32 - 2021-10-06 16:30 - 000029696 _____ (The ICU Project) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\icuuc.dll
2026-05-10 12:32 - 2025-06-11 13:54 - 004853760 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\libcrypto-3-x64.dll
2026-05-10 12:32 - 2025-06-11 13:54 - 001173504 _____ (The OpenSSL Project, hxxps://www.openssl.org/) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\libssl-3-x64.DLL
2025-02-15 23:10 - 2024-09-29 15:45 - 000708096 _____ (Wondershare) [File not signed] C:\Program Files (x86)\Common Files\Wondershare\Wondershare Helper Compact\CBSProducstInfo.dll
2011-03-23 12:20 - 2011-03-23 12:20 - 000285696 _____ (Xerox) [File not signed] C:\Program Files (x86)\Xerox Office Printing\WorkCentre SSW\PrintingScout\xrksmnet.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\mntemp:8EAD8B3507 [3442]
AlternateDataStreams: C:\ProgramData\tyvfcquz.wxt:B63721167D [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk:BE32D07BC5 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FACEIT AC.lnk:550995E265 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Novabench 5.lnk:B68549C808 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Streamlabs Desktop.lnk:578370639A [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk:F208FC6732 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak.lnk:DBB58A0286 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\V380.lnk:942A4CABE6 [3442]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [5646]

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) =============


==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2022-05-07 07:24 - 2026-06-20 21:20 - 000000318 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1 localhost
109.94.209.70 fitgirlrepacks.in # Fake FitGirl site
109.94.209.70 www.fitgirlrepacks.in # Fake FitGirl site
109.94.209.70 fitgirlrepacks.co # Fake FitGirl site
109.94.209.70 fitgirl-repacks.cc # Fake FitGirl site

2025-03-05 12:25 - 2026-06-20 11:18 - 000000498 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics
172.26.32.1 Petr.mshome.net # 2031 6 4 19 9 18 41 271
41
172.26.32.1 Petr.mshome.net # 2031 5 4 1 8 50 46 460

==================== Network ===========================

(Currently there is no automatic fix for this section.)

DNS Servers: 192.168.1.1
Windows Firewall is enabled.

Network Binding:
=============
NordLynx: NordLynx Tunnel -> wireguard.sys
Ethernet: Realtek Gaming 2.5GbE Family Controller -> rt25cx21x64.sys
Síťové připojení Bluetooth: Bluetooth Device (Personal Area Network) -> bthpan.sys
Wi-Fi: Intel(R) Wi-Fi 6 AX201 160MHz -> Netwtw10.sys
Připojení k místní síti: TAP-NordVPN Windows Adapter V9 -> tapnordvpn.sys
OpenVPN Data Channel Offload for NordVPN: OpenVPN Data Channel Offload -> ovpn-dco.sys

vms_vsf: Hyper-V Virtual Switch Extension Filter
INSECURE_NPCAP: Npcap Packet Driver (NPCAP)
NordLwf: NordVPN LightWeight Firewall
ms_l1vhlwf: Nested Network Virtualization
vms_vsp: Hyper-V Virtual Switch Extension Protocol

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\PC Connectivity Solution\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files (x86)\Razer Chroma SDK\bin;C:\Program Files\Razer Chroma SDK\bin;C:\Program Files (x86)\Razer\ChromaBroadcast\bin;C:\Program Files\Razer\ChromaBroadcast\bin;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;C:\Program Files\dotnet\;C:\Users\micha\AppData\Local\Microsoft\WindowsApps;C:\Windows\system32\config\systemprofile\AppData\Local\Microsoft\WindowsApps;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-756127909-4058986209-260929036-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\micha\AppData\Local\Packages\Microsoft.Windows.Photos_8wekyb3d8bbwe\LocalState\PhotosAppBackground\d1a6750c-8dea-4869-9654-1d409979ee88.png
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 5) (TamperProtectionSource: 2)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
HKLM\SOFTWARE\Microsoft\Windows Defender\Exclusions\Paths|E:\24122024\24122024\dControl.exe


==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\StartupFolder: => "Perfect Privacy.lnk"
HKLM\...\StartupApproved\Run: => "DriverUpdUI.exe"
HKLM\...\StartupApproved\Run32: => "Launcher6015B"
HKLM\...\StartupApproved\Run32: => "YKB 3400 PANZER"
HKLM\...\StartupApproved\Run32: => "LogMeIn Hamachi Ui"
HKLM\...\StartupApproved\Run32: => "PC Suite Tray"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\StartupFolder: => "hide.me VPN.lnk"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "BraveSoftware Update"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "Opera GX Stable"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_ED02E366447D09E4F124EF89B233D989"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "Discord"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "G-Menu"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "com.blitz.app"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "Free Download Manager"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "RiotClient"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "uTorrent"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "PaltalkLauncher"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "Windscribe"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "ProtonVPN"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "CyberGhost"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "PlanetVPN"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "NordVPN"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "Battle.net"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "EADM"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "Wargaming.net Game Center"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "IO Auto Clicker"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "Surfshark"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "btweb"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "VoicemodV3"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "NokiaSuite.exe"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "Overwolf"
HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\StartupApproved\Run: => "ut"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{279F621A-B779-4DA7-AD46-AE5C76540507}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25198.1001.3811.7774_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{E08F3F1A-D227-4D4A-8788-75F27DE1128D}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25198.1001.3811.7774_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{BA606EBB-ACA7-464E-89D4-A356F7D7E95F}E:\battlefield 6 event\bf6event.exe] => (Allow) E:\battlefield 6 event\bf6event.exe => No File
FirewallRules: [TCP Query User{FBD4AD8B-A72E-4FAE-9B92-BA605D0FB6D9}E:\battlefield 6 event\bf6event.exe] => (Allow) E:\battlefield 6 event\bf6event.exe => No File
FirewallRules: [TCP Query User{88CF7637-1DFA-4F16-9D7B-3630ED57359E}C:\riot games\riot client\riotclientelectron\riot client.exe] => (Allow) C:\riot games\riot client\riotclientelectron\riot client.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [UDP Query User{9CA9FB52-5F7B-4127-A4A2-7D648BC290A9}C:\riot games\riot client\riotclientelectron\riot client.exe] => (Allow) C:\riot games\riot client\riotclientelectron\riot client.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [TCP Query User{A46B875F-A28C-460F-B7CE-1292E42C20CB}C:\g-menu\g-menu.exe] => (Block) C:\g-menu\g-menu.exe (TOP VICTORY ELECTRONICS (TAIWAN) CO., LTD. -> AOC)
FirewallRules: [UDP Query User{7A623E78-2293-48B8-8349-8122267F97F8}C:\g-menu\g-menu.exe] => (Block) C:\g-menu\g-menu.exe (TOP VICTORY ELECTRONICS (TAIWAN) CO., LTD. -> AOC)
FirewallRules: [TCP Query User{386E5117-D7C3-4CF5-9032-017E7B423828}C:\users\micha\appdata\roaming\bittorrent web\btweb.exe] => (Block) C:\users\micha\appdata\roaming\bittorrent web\btweb.exe => No File
FirewallRules: [UDP Query User{CAF064AD-F740-4F3A-BD93-254EBDBBA0A5}C:\users\micha\appdata\roaming\bittorrent web\btweb.exe] => (Block) C:\users\micha\appdata\roaming\bittorrent web\btweb.exe => No File
FirewallRules: [TCP Query User{5CB43197-7789-4AF5-8B61-EF54339BE0C1}C:\g-menu\resources\bin\g_menu.exe] => (Block) C:\g-menu\resources\bin\g_menu.exe (TOP VICTORY ELECTRONICS (TAIWAN) CO., LTD. -> Zeasn)
FirewallRules: [UDP Query User{07799B0B-368D-435F-96F4-CE14BEED5076}C:\g-menu\resources\bin\g_menu.exe] => (Block) C:\g-menu\resources\bin\g_menu.exe (TOP VICTORY ELECTRONICS (TAIWAN) CO., LTD. -> Zeasn)
FirewallRules: [TCP Query User{46A23AA3-D0C2-4102-A562-50A014E9590C}C:\users\micha\appdata\local\voicemodv3\app\last\voicemod.exe] => (Block) C:\users\micha\appdata\local\voicemodv3\app\last\voicemod.exe (VOICEMOD, INC. SUCURSAL EN ESPAÑA -> Voicemod Inc., Sucursal en España)
FirewallRules: [UDP Query User{FE8D1458-4D31-4C06-9EF2-01FD78BD1EF0}C:\users\micha\appdata\local\voicemodv3\app\last\voicemod.exe] => (Block) C:\users\micha\appdata\local\voicemodv3\app\last\voicemod.exe (VOICEMOD, INC. SUCURSAL EN ESPAÑA -> Voicemod Inc., Sucursal en España)
FirewallRules: [TCP Query User{FB891921-9AC7-454B-AEB3-C270990F8C40}C:\program files\bravesoftware\brave-browser\application\brave.exe] => (Allow) C:\program files\bravesoftware\brave-browser\application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [UDP Query User{E7D841BD-B7A2-414E-AA1D-BD6358E45FE0}C:\program files\bravesoftware\brave-browser\application\brave.exe] => (Allow) C:\program files\bravesoftware\brave-browser\application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [TCP Query User{15475545-4979-4595-B803-073922E0D13F}E:\sea of thieves\call of duty\content\cod.exe] => (Allow) E:\sea of thieves\call of duty\content\cod.exe => No File
FirewallRules: [UDP Query User{71031F81-EE69-4A14-8C9C-5AE66C0E3C42}E:\sea of thieves\call of duty\content\cod.exe] => (Allow) E:\sea of thieves\call of duty\content\cod.exe => No File
FirewallRules: [TCP Query User{8EDE6D18-C435-431A-8552-E7855E62A2C7}E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe] => (Allow) E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe => No File
FirewallRules: [UDP Query User{8D18AAD1-B496-4F5D-97BE-8DF5127BAF68}E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe] => (Allow) E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe => No File
FirewallRules: [TCP Query User{29CFFE07-C69D-4B38-8B37-CDA8FC3442B1}C:\program files (x86)\microsoft\edge\application\msedge.exe] => (Block) C:\program files (x86)\microsoft\edge\application\msedge.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [UDP Query User{4EFCF67B-1FCA-418D-AAD6-8AFCE3EA947E}C:\program files (x86)\microsoft\edge\application\msedge.exe] => (Block) C:\program files (x86)\microsoft\edge\application\msedge.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{40D59B36-0865-495E-9708-710CA50F68DA}C:\users\micha\appdata\local\programs\opera gx\opera.exe] => (Block) C:\users\micha\appdata\local\programs\opera gx\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [UDP Query User{86BB23A4-F681-43BD-B3F1-D90F038E5E24}C:\users\micha\appdata\local\programs\opera gx\opera.exe] => (Block) C:\users\micha\appdata\local\programs\opera gx\opera.exe (Opera Norway AS -> Opera Software)
FirewallRules: [{35A3ADD7-D167-4BEA-B3F1-0A88EF891CCC}] => (Allow) C:\Program Files (x86)\Steam\steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{D0EAF2A7-C8F1-4E9B-A2AD-A9C0C282D3CE}] => (Allow) C:\Program Files (x86)\Steam\steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{131E5D88-F4CC-4A8C-ADD0-88EAAF24FCB9}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{1E7BE9C4-0658-45E4-B65F-A85929E8B901}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [TCP Query User{1020EA32-7A2C-4C37-9D71-963B86C936F7}E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe] => (Block) E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe => No File
FirewallRules: [UDP Query User{C0D520F0-B762-490B-873D-D151DA181329}E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe] => (Block) E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe => No File
FirewallRules: [TCP Query User{974B5E9C-F3DC-49BB-955A-C2994803E1B1}C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe => No File
FirewallRules: [UDP Query User{3C8F5FBB-6F9F-464B-90C3-234A1ED944ED}C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe => No File
FirewallRules: [{E84C56EB-0377-4BF3-9DB9-785A2DAF4798}] => (Allow) C:\Users\micha\AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe => No File
FirewallRules: [{AADE2BAA-EF44-476F-A06C-BEBFAE7925FB}] => (Allow) D:\Call of duty modern warfare\Call of Duty\_retail_\cod22\cod22-cod.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{A53181A9-A488-48FD-BDCA-071B528DBD36}] => (Allow) D:\Call of duty modern warfare\Call of Duty\_retail_\cod22\codCrashHandler.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{97C5755C-F1E2-4C53-ACE9-DC5EA3147480}] => (Allow) D:\Call of duty modern warfare\Call of Duty\_retail_\cod23\cod23-cod.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{B0E47C93-CA7C-46A3-9C01-DE97B0BD7483}] => (Allow) D:\Call of duty modern warfare\Call of Duty\_retail_\cod23\codCrashHandler.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{36229AC4-5E75-4EE6-9F8D-8699B7F09557}] => (Allow) D:\Call of duty modern warfare\Call of Duty\_retail_\bootstrapper.exe (Activision Publishing Inc -> )
FirewallRules: [{8DEE1472-7D76-4D51-86AD-1EF4D31A030D}] => (Allow) D:\Call of duty modern warfare\Call of Duty\_retail_\bootstrapperCrashHandler.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{E34F81E8-BDBF-4123-B255-306D52378E80}] => (Allow) D:\Call of duty modern warfare\Call of Duty\_retail_\codCrashHandler.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{54664C03-C429-49DD-A4ED-7F9C33F4BBF2}] => (Allow) D:\Call of duty modern warfare\Call of Duty\_retail_\cod.exe (Activision Publishing Inc -> Activision)
FirewallRules: [TCP Query User{0670EDD1-9B02-4342-8360-761EB4B60763}D:\davinci\resolve.exe] => (Block) D:\davinci\resolve.exe => No File
FirewallRules: [UDP Query User{A9281C5A-67BA-44EE-91CD-3F30EF7C880B}D:\davinci\resolve.exe] => (Block) D:\davinci\resolve.exe => No File
FirewallRules: [TCP Query User{496800E3-14CC-453D-94F8-35DCDEB485D5}C:\program files (x86)\steam\steamapps\common\half-life\hl.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\half-life\hl.exe (Valve Corp. -> Valve)
FirewallRules: [UDP Query User{0682F5D5-5803-421F-AF0B-843A4659ABE7}C:\program files (x86)\steam\steamapps\common\half-life\hl.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\half-life\hl.exe (Valve Corp. -> Valve)
FirewallRules: [TCP Query User{077A134E-F3AF-4502-94BF-6F3A75AC063A}D:\worldwarz\en_us\client\bin\pc\wwzretailegs.exe] => (Allow) D:\worldwarz\en_us\client\bin\pc\wwzretailegs.exe (Saber Interactive) [File not signed]
FirewallRules: [UDP Query User{417C93BE-2AA9-4207-8614-49D83E8737C3}D:\worldwarz\en_us\client\bin\pc\wwzretailegs.exe] => (Allow) D:\worldwarz\en_us\client\bin\pc\wwzretailegs.exe (Saber Interactive) [File not signed]
FirewallRules: [{F873D22A-8197-497F-9730-3C660A093C3E}] => (Allow) D:\SteamLibrary\steamapps\common\Ready Or Not\Engine\Binaries\Win64\CrashReporter.exe => No File
FirewallRules: [{2E7AB9CD-A6C1-4429-86C0-62665E93CDE7}] => (Allow) D:\SteamLibrary\steamapps\common\Ready Or Not\Engine\Binaries\Win64\CrashReporter.exe => No File
FirewallRules: [TCP Query User{9E1C92D4-8B6C-47A5-98B0-9E6AC6B6E4AC}D:\wargaming.net\gamecenter\wgc.exe] => (Block) D:\wargaming.net\gamecenter\wgc.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [UDP Query User{789E23F4-9E7B-4C07-A5AC-5918455BB4BD}D:\wargaming.net\gamecenter\wgc.exe] => (Block) D:\wargaming.net\gamecenter\wgc.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [TCP Query User{B0F4BB22-0085-4901-B98F-B9F91693D452}D:\world_of_tanks_eu\win64\worldoftanks.exe] => (Block) D:\world_of_tanks_eu\win64\worldoftanks.exe => No File
FirewallRules: [UDP Query User{8BCC2B64-0E9C-4DF8-8046-3FFCDBF0DAE2}D:\world_of_tanks_eu\win64\worldoftanks.exe] => (Block) D:\world_of_tanks_eu\win64\worldoftanks.exe => No File
FirewallRules: [TCP Query User{020F479B-87E5-41C7-8447-D18C7F33A816}C:\program files\docker\docker\resources\com.docker.backend.exe] => (Allow) C:\program files\docker\docker\resources\com.docker.backend.exe => No File
FirewallRules: [UDP Query User{67B178AB-6448-49E0-BD89-D98101310F87}C:\program files\docker\docker\resources\com.docker.backend.exe] => (Allow) C:\program files\docker\docker\resources\com.docker.backend.exe => No File
FirewallRules: [TCP Query User{2EB13A60-1C78-40C4-9334-6298A013F7B0}C:\program files (x86)\gz systems\purevpn\purevpn.exe] => (Allow) C:\program files (x86)\gz systems\purevpn\purevpn.exe => No File
FirewallRules: [UDP Query User{6ED330CC-49FF-4524-B76C-E896E6D1B180}C:\program files (x86)\gz systems\purevpn\purevpn.exe] => (Allow) C:\program files (x86)\gz systems\purevpn\purevpn.exe => No File
FirewallRules: [{C098C10D-814B-4648-ADF7-9954388CC4EA}] => (Allow) LPort=31400
FirewallRules: [{1378EC31-F890-4B50-A6F8-82A762159FC9}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{2E6B8883-7DC3-492F-B7FF-55CDD663DC27}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{EE3F9BB2-6DA4-4DD3-92A5-CFE207EA9607}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{90AE84E6-AF25-48FF-8E87-CD9E51CE0C4D}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{E096663F-65FE-456F-8B8A-EFEE0C8A550C}] => (Allow) LPort=31401
FirewallRules: [{3AB4AC46-6E28-4F74-8692-ABC7BA295EBD}] => (Allow) LPort=31402
FirewallRules: [{BC434F6A-2664-41EE-B1A2-2E203C9435F3}] => (Allow) %ProgramFiles%\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{455F0D1D-A5E5-4115-B4A0-996B6C61C2D2}] => (Allow) LPort=31404
FirewallRules: [{1B37CC3B-0B21-46E1-95E8-FFEEB3585984}] => (Allow) LPort=31405
FirewallRules: [{36755F0E-BCD4-4EFE-98DA-3844CD2BEBAF}] => (Allow) LPort=31406
FirewallRules: [{DFA4CA03-6BB5-461A-A808-415652FF7198}] => (Allow) LPort=31407
FirewallRules: [{FE017E8C-0E1B-4BC9-B06B-09F4175203C5}] => (Allow) LPort=31408
FirewallRules: [{08B16306-7A96-4237-8B9F-AD84E2500744}] => (Allow) LPort=31409
FirewallRules: [TCP Query User{485C1239-0A7D-447F-89F0-5A6B7D077CAE}C:\users\micha\downloads\anydesk.exe] => (Allow) C:\users\micha\downloads\anydesk.exe => No File
FirewallRules: [UDP Query User{AD38CA56-2A23-4F12-96D6-A761894A58A3}C:\users\micha\downloads\anydesk.exe] => (Allow) C:\users\micha\downloads\anydesk.exe => No File
FirewallRules: [{F9E94027-57D5-48B7-A1DB-3F654D5989B6}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\Resolve.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [{FE8AB767-946E-4967-B4AA-60EE540B489F}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\bmdpaneld.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{6D4E5261-9947-4D17-840E-B1847B8BCC5F}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\DaVinciPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{A06E5BC3-6E5D-437F-8B44-283B7A96C3E3}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\JLCooperPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{A0F72178-EE18-49B2-BD02-2B6C0CEE8CAC}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\EuphonixPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{9E0B93F2-0DCA-48F9-AAE5-D47E2F251AEF}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\TangentPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{6245B822-0F08-47AD-8269-E0B68C04BC14}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\ElementsPanelDaemon.exe => No File
FirewallRules: [{899A0ADC-2443-481D-9918-85CE4365F64C}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\fuscript.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.)
FirewallRules: [TCP Query User{5105BEB2-54E5-40FC-AC1D-DC96B66C314D}C:\program files\blackmagic design\davinci resolve\resolve.exe] => (Block) C:\program files\blackmagic design\davinci resolve\resolve.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [UDP Query User{C5D6E8D9-0DAE-4D37-872D-B8B332970AA0}C:\program files\blackmagic design\davinci resolve\resolve.exe] => (Block) C:\program files\blackmagic design\davinci resolve\resolve.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [TCP Query User{90DEBF62-31CA-451B-ACC3-599A9BF3FA4F}C:\program files\blackmagic design\davinci resolve\fuscript.exe] => (Block) C:\program files\blackmagic design\davinci resolve\fuscript.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.)
FirewallRules: [UDP Query User{93EB184E-B075-471E-A677-4EB9F8E3688B}C:\program files\blackmagic design\davinci resolve\fuscript.exe] => (Block) C:\program files\blackmagic design\davinci resolve\fuscript.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.)
FirewallRules: [TCP Query User{C7AB7D83-23F3-4C95-A332-DA511934682A}C:\program files (x86)\steam\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe (Valve Corp. -> )
FirewallRules: [UDP Query User{6C35FEB8-A590-40F0-832D-04790D5ED2E2}C:\program files (x86)\steam\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe (Valve Corp. -> )
FirewallRules: [TCP Query User{DBB65758-0417-464E-899A-DAFF52017D76}C:\users\micha\appdata\local\programs\lsc_battletron\lsc_battletron.exe] => (Block) C:\users\micha\appdata\local\programs\lsc_battletron\lsc_battletron.exe (GitHub, Inc.) [File not signed]
FirewallRules: [UDP Query User{0A7C0E8F-4613-49C1-B4D4-80CBD936B8D5}C:\users\micha\appdata\local\programs\lsc_battletron\lsc_battletron.exe] => (Block) C:\users\micha\appdata\local\programs\lsc_battletron\lsc_battletron.exe (GitHub, Inc.) [File not signed]
FirewallRules: [TCP Query User{7D178FD3-D0E3-41B2-BF3B-AF5F6C7ED1D5}C:\users\micha\appdata\local\programs\blitz\blitz.exe] => (Block) C:\users\micha\appdata\local\programs\blitz\blitz.exe (Swift Media Entertainment, Inc. -> Blitz, Inc.)
FirewallRules: [UDP Query User{9DEFC1F0-A822-4C53-82FA-3386D4F012D2}C:\users\micha\appdata\local\programs\blitz\blitz.exe] => (Block) C:\users\micha\appdata\local\programs\blitz\blitz.exe (Swift Media Entertainment, Inc. -> Blitz, Inc.)
FirewallRules: [TCP Query User{7DAB56FD-A2C8-4E7E-8B25-2759214023E0}D:\schedule.i.v0.3.3f13\schedule i.exe] => (Block) D:\schedule.i.v0.3.3f13\schedule i.exe () [File not signed]
FirewallRules: [UDP Query User{ADA90415-CDAE-467F-A790-FD745E05CF77}D:\schedule.i.v0.3.3f13\schedule i.exe] => (Block) D:\schedule.i.v0.3.3f13\schedule i.exe () [File not signed]
FirewallRules: [TCP Query User{9366605A-B99A-4644-81D7-D1CE6FFFA14B}C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe] => (Allow) C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe => No File
FirewallRules: [UDP Query User{B1BD089E-C939-4484-9373-6473763A148B}C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe] => (Allow) C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe => No File
FirewallRules: [TCP Query User{6303E824-75A0-4962-981A-122A4D93EE1B}C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe] => (Block) C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe => No File
FirewallRules: [UDP Query User{9F7EB77E-BED0-493E-84C0-C44F9AC8D0E1}C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe] => (Block) C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe => No File
FirewallRules: [{43786D7A-2D09-4490-A4DF-84EBF56CFAC3}] => (Allow) E:\SteamLibrary\steamapps\common\Ghost Watchers\Ghost Watchers.exe () [File not signed]
FirewallRules: [{A0598503-B89F-470D-9894-765794B9A7BA}] => (Allow) E:\SteamLibrary\steamapps\common\Ghost Watchers\Ghost Watchers.exe () [File not signed]
FirewallRules: [TCP Query User{0003EB38-44C6-468A-B7AE-65025471798A}C:\program files (x86)\iriun webcam\iriunwebcam.exe] => (Allow) C:\program files (x86)\iriun webcam\iriunwebcam.exe (IriunWebcam) [File not signed]
FirewallRules: [UDP Query User{35B494A7-2C90-4D2B-A9C9-9E5084C547AF}C:\program files (x86)\iriun webcam\iriunwebcam.exe] => (Allow) C:\program files (x86)\iriun webcam\iriunwebcam.exe (IriunWebcam) [File not signed]
FirewallRules: [TCP Query User{D31EDD4E-6F1F-48F7-BF04-70624D5CD859}D:\football.life.simulator.early.access\football life simulator.exe] => (Block) D:\football.life.simulator.early.access\football life simulator.exe => No File
FirewallRules: [UDP Query User{415A3AFA-7F76-4442-B9A4-C3D630C920A9}D:\football.life.simulator.early.access\football life simulator.exe] => (Block) D:\football.life.simulator.early.access\football life simulator.exe => No File
FirewallRules: [TCP Query User{FC88C696-51DA-4C64-8193-66421996A2FE}D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe] => (Block) D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe => No File
FirewallRules: [UDP Query User{0C368F59-947E-43F0-8801-48D67EAEA95C}D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe] => (Block) D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe => No File
FirewallRules: [TCP Query User{1B413620-1991-4B9C-A665-08DE87CC761F}D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe] => (Block) D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe => No File
FirewallRules: [UDP Query User{78BE4651-1CCF-4BDB-B782-56D461028DA6}D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe] => (Block) D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe => No File
FirewallRules: [TCP Query User{9863FE5E-073C-4741-9835-2AF7609F2286}D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe] => (Block) D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe => No File
FirewallRules: [UDP Query User{3D1A32C3-C4B8-4BCB-918A-B1F55C7E3BA4}D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe] => (Block) D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe => No File
FirewallRules: [{E79F17D6-ED1E-4DE4-A3B2-4784365B01F1}] => (Allow) D:\SteamLibrary\steamapps\common\Delta Force\Launcher\df_launcher.exe => No File
FirewallRules: [{9EECD3EB-4F9B-46A7-975A-A6E28031CEA0}] => (Allow) D:\SteamLibrary\steamapps\common\Delta Force\Launcher\df_launcher.exe => No File
FirewallRules: [TCP Query User{27BA6085-CFC9-4437-9507-DA440ED57636}E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe] => (Allow) E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe => No File
FirewallRules: [UDP Query User{261BA844-0209-455B-8C8F-EDF6C567C0A0}E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe] => (Allow) E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe => No File
FirewallRules: [{619366B2-C57B-40E0-A55E-730090104413}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe => No File
FirewallRules: [TCP Query User{E66BF433-B841-40DD-B35F-2B0901D71BAE}C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe] => (Block) C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe => No File
FirewallRules: [UDP Query User{E26E2408-5876-4D03-941E-E996B41B9BFC}C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe] => (Block) C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe => No File
FirewallRules: [{17D4C8B3-53E8-4E4A-B51F-6221C67467A5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Phasmophobia\Phasmophobia.exe => No File
FirewallRules: [{BC8EFC50-5F78-4B9E-AEC7-F41F139F5A19}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Phasmophobia\Phasmophobia.exe => No File
FirewallRules: [TCP Query User{3AD948F4-1D6A-4220-9236-6B4A136B9F60}D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe] => (Block) D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe => No File
FirewallRules: [UDP Query User{78CA9D04-A3CD-4C1F-A96C-D66A66373624}D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe] => (Block) D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe => No File
FirewallRules: [{CDAD4C8E-D429-4F51-8219-15326AA59615}] => (Allow) E:\SteamLibrary\steamapps\common\Mafia The Old Country\MafiaTheOldCountry\Binaries\Win64\MafiaTheOldCountry.exe => No File
FirewallRules: [{5B2A4E1C-3EBA-4790-9E81-8F698209F775}] => (Allow) E:\SteamLibrary\steamapps\common\Mafia The Old Country\MafiaTheOldCountry\Binaries\Win64\MafiaTheOldCountry.exe => No File
FirewallRules: [{E455DDA3-6B10-4CD8-9B15-79F27AEF118A}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25198.1001.3811.7774_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{57D82175-B1D2-436F-9E26-BD181D301C9D}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_25198.1001.3811.7774_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{CD70C673-7818-49C6-9CF9-EEEB637006D3}D:\minecraft launcher\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Block) D:\minecraft launcher\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe
FirewallRules: [UDP Query User{E1ACE06F-603F-45AA-8A44-1CF6F61404C5}D:\minecraft launcher\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Block) D:\minecraft launcher\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe
FirewallRules: [TCP Query User{57703199-0D81-4544-8510-A0E7198FA739}C:\users\micha\curseforge\minecraft\install\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe] => (Block) C:\users\micha\curseforge\minecraft\install\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe
FirewallRules: [UDP Query User{9F4EA80C-EE30-4386-B29F-5DF34F93393B}C:\users\micha\curseforge\minecraft\install\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe] => (Block) C:\users\micha\curseforge\minecraft\install\runtime\jre-legacy\windows-x64\jre-legacy\bin\javaw.exe
FirewallRules: [TCP Query User{A4A2232E-09B6-4B68-ABFE-21D3D92500EE}C:\users\micha\curseforge\minecraft\install\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Block) C:\users\micha\curseforge\minecraft\install\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe
FirewallRules: [UDP Query User{C987D179-564D-4AD9-A726-C11ADE807F71}C:\users\micha\curseforge\minecraft\install\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe] => (Block) C:\users\micha\curseforge\minecraft\install\runtime\java-runtime-delta\windows-x64\java-runtime-delta\bin\javaw.exe
FirewallRules: [{165EB7D2-AD07-4002-B6C4-899C7EE2460C}] => (Allow) C:\Riot Games\League of Legends\LeagueClient.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [{57805A5F-ADFC-487B-A528-EDFF0AC84FA2}] => (Allow) C:\Riot Games\League of Legends\LeagueClient.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [TCP Query User{D1E473FD-B060-488F-80C3-D6D8193264AA}D:\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{5823A439-B0A8-4EA9-B8E5-32EF320B5FC6}D:\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe] => (Allow) D:\fortnite\fortnitegame\binaries\win64\fortniteclient-win64-shipping.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{07EF1D75-68FC-41DB-A091-6DF10AC0A70F}] => (Allow) E:\SteamLibrary\steamapps\common\Prologue Go Wayback! Open Beta\PrologueSteam.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{F7E1D146-A242-4AEA-B926-50DE2EB4DC95}] => (Allow) E:\SteamLibrary\steamapps\common\Prologue Go Wayback! Open Beta\PrologueSteam.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [TCP Query User{8A6879D1-1164-4F68-A485-E3F4E414578A}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{2FE76676-6D0D-420D-B6AA-67B9E850E335}C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe] => (Allow) C:\program files (x86)\epic games\launcher\portal\binaries\win64\epicgameslauncher.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [TCP Query User{EEA2D371-5330-4CD6-B706-8CF0D7FCE019}D:\dying light the beast\dying.light.the.beast.v1.2.0c-ofme\dying light the beast\ph_ft\work\bin\x64\dyinglightgame_thebeast_x64_rwdi.exe] => (Allow) D:\dying light the beast\dying.light.the.beast.v1.2.0c-ofme\dying light the beast\ph_ft\work\bin\x64\dyinglightgame_thebeast_x64_rwdi.exe (Techland S.A. -> Techland)
FirewallRules: [UDP Query User{79B95E69-31AB-4C1C-8196-CAAF2589F8FF}D:\dying light the beast\dying.light.the.beast.v1.2.0c-ofme\dying light the beast\ph_ft\work\bin\x64\dyinglightgame_thebeast_x64_rwdi.exe] => (Allow) D:\dying light the beast\dying.light.the.beast.v1.2.0c-ofme\dying light the beast\ph_ft\work\bin\x64\dyinglightgame_thebeast_x64_rwdi.exe (Techland S.A. -> Techland)
FirewallRules: [{4AC0DE93-9B8D-4C4E-A973-A067B23B40D7}] => (Allow) D:\SteamLibrary\steamapps\common\SILENT HILL f\SHf.exe (KONAMI) [File not signed]
FirewallRules: [{82440F4F-3F87-4376-8259-8E834A948ADE}] => (Allow) D:\SteamLibrary\steamapps\common\SILENT HILL f\SHf.exe (KONAMI) [File not signed]
FirewallRules: [{3C13005D-7C22-460E-9F11-B24FF973D611}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{4EE8469D-7EC0-448F-A8C0-8501C0B9D0A3}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{7BEE4023-F291-4C99-B33A-01E24EBC1C51}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{6C005D06-0310-443E-BBCD-75CAF18843C7}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{290704D3-0CC2-4D71-979B-F1CA9F506395}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{22C45E53-7783-457D-8631-9B93E843EA04}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{9B685567-0BD8-493F-8A7A-B69C753F4D67}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{E120767C-69AA-48C9-B7CE-F0DF19BDA670}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{54F3931C-F36B-4967-B571-3055503070DD}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{1436BFDB-005A-4492-86E6-33C854814629}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{55840764-D8F0-4244-AA08-6171D6F775B0}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALaunchHelper.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [TCP Query User{AE9FA2BF-853A-41E0-81CE-7A6044D0DF95}E:\battlefield 6\bf6.exe] => (Allow) E:\battlefield 6\bf6.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [UDP Query User{EB6FF99C-D4DE-4BA5-BC07-664149D323AE}E:\battlefield 6\bf6.exe] => (Allow) E:\battlefield 6\bf6.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [TCP Query User{ED1B53EB-1F37-4865-9AF7-DC72E73392D9}E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe] => (Allow) E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe => No File
FirewallRules: [UDP Query User{0D02FAD8-020B-4609-A000-1DEC57347CF5}E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe] => (Allow) E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe => No File
FirewallRules: [{690B7FE9-C96F-428E-9BB9-C59B68BEF82C}] => (Allow) E:\SteamLibrary\steamapps\common\Call of Duty HQ\bootstrapper.exe (Activision Publishing Inc -> )
FirewallRules: [{6D84AE58-667D-4B8E-9371-3C131F9ABB48}] => (Allow) E:\SteamLibrary\steamapps\common\Call of Duty HQ\bootstrapper.exe (Activision Publishing Inc -> )
FirewallRules: [{16D6A08B-937B-4708-8AB4-4E4C9E00E333}] => (Allow) E:\SteamLibrary\steamapps\common\Call of Duty HQ\cod.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{AFFE680B-51CC-4D7C-92F8-54A2B67D0988}] => (Allow) E:\SteamLibrary\steamapps\common\Call of Duty HQ\cod.exe (Activision Publishing Inc -> Activision)
FirewallRules: [{58B00E54-E93F-458C-956D-2BF97A36628B}] => (Allow) E:\SteamLibrary\steamapps\common\The Finals\Discovery.exe (Embark Studios AB -> Embark Studios AB)
FirewallRules: [{6E979216-C250-497B-B4A4-6E8BF02F1501}] => (Allow) E:\SteamLibrary\steamapps\common\The Finals\Discovery.exe (Embark Studios AB -> Embark Studios AB)
FirewallRules: [TCP Query User{D1F56D54-D841-4DFF-86B5-B8D2ACA86627}C:\users\micha\curseforge\minecraft\install\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe] => (Block) C:\users\micha\curseforge\minecraft\install\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe
FirewallRules: [UDP Query User{CAB7C7E0-B5E0-4C2E-A155-1CEF8298E01B}C:\users\micha\curseforge\minecraft\install\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe] => (Block) C:\users\micha\curseforge\minecraft\install\runtime\java-runtime-gamma\windows-x64\java-runtime-gamma\bin\javaw.exe
FirewallRules: [TCP Query User{87F04713-64C8-4079-ADE0-F7F3C85A72F8}E:\steamlibrary\steamapps\common\the finals\discovery\binaries\win64\discovery-d.exe] => (Allow) E:\steamlibrary\steamapps\common\the finals\discovery\binaries\win64\discovery-d.exe (Embark Studios AB -> Embark Studios AB)
FirewallRules: [UDP Query User{B9442780-716E-486A-9A3A-186A3D90D6AF}E:\steamlibrary\steamapps\common\the finals\discovery\binaries\win64\discovery-d.exe] => (Allow) E:\steamlibrary\steamapps\common\the finals\discovery\binaries\win64\discovery-d.exe (Embark Studios AB -> Embark Studios AB)
FirewallRules: [{E5E67892-710C-4DA6-BA79-6849AF11F890}] => (Allow) E:\SteamLibrary\steamapps\common\Shift At Midnight Demo\ShiftAtMidnight.exe () [File not signed]
FirewallRules: [{A76C8F88-AFD4-4A99-8102-CC8FB9B52398}] => (Allow) E:\SteamLibrary\steamapps\common\Shift At Midnight Demo\ShiftAtMidnight.exe () [File not signed]
FirewallRules: [{93C65364-076B-4653-93BA-3F74DB7B1E63}] => (Allow) E:\Battlefield 6\EAAntiCheat.GameServiceLauncher.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{271EF77A-EF22-4EA7-8EB4-95F10C8EDA3C}] => (Allow) E:\Battlefield 6\EAAntiCheat.GameServiceLauncher.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{ECDF86DE-6320-4383-A606-DBE79C07110D}] => (Allow) E:\Battlefield 6\SP\bf6.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [{05F47C7B-D6A0-409B-A307-9A964DB72EB2}] => (Allow) E:\Battlefield 6\SP\bf6.exe (Electronic Arts, Inc. -> EA Digital Illusions CE AB)
FirewallRules: [TCP Query User{49223C06-B8A3-408F-9F6D-73A2C0C54603}D:\geo.political.simulator.5.build.21132820\_start.exe] => (Block) D:\geo.political.simulator.5.build.21132820\_start.exe => No File
FirewallRules: [UDP Query User{651650A5-6458-41C0-8FC7-6D16FE172277}D:\geo.political.simulator.5.build.21132820\_start.exe] => (Block) D:\geo.political.simulator.5.build.21132820\_start.exe => No File
FirewallRules: [TCP Query User{8768545B-4649-4DF0-925E-893EA772158D}D:\bank.simulator.build.20501759\bank simulator.exe] => (Block) D:\bank.simulator.build.20501759\bank simulator.exe => No File
FirewallRules: [UDP Query User{52D4F417-1589-49BA-9BC6-DFB9B5B36477}D:\bank.simulator.build.20501759\bank simulator.exe] => (Block) D:\bank.simulator.build.20501759\bank simulator.exe => No File
FirewallRules: [{63542FC3-E15E-4ED1-AF10-E862EF306301}] => (Allow) E:\SteamLibrary\steamapps\common\MarvelRivals\MarvelRivals_Launcher.exe => No File
FirewallRules: [{F8AC2413-BE69-4BD4-99C7-7BE6F6E47E99}] => (Allow) E:\SteamLibrary\steamapps\common\MarvelRivals\MarvelRivals_Launcher.exe => No File
FirewallRules: [{EAD70F97-3314-4A03-B251-458142EE1BC2}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{D84589F5-EA0B-4652-AFA6-9C10743D3DBF}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{E28274D6-78F1-4F22-829D-045CBF96F166}] => (Allow) C:\Users\micha\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Limited)
FirewallRules: [{4FA36512-8925-4325-BBC4-7AC239BB5963}] => (Allow) C:\Users\micha\AppData\Roaming\uTorrent\uTorrent.exe (BitTorrent Inc -> BitTorrent Limited)
FirewallRules: [TCP Query User{D7566707-6ACB-473F-8391-D06B97EDC2FE}D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe] => (Block) D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe => No File
FirewallRules: [UDP Query User{A21FAB12-608A-4C75-B6B7-F758ADAD27F2}D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe] => (Block) D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe => No File
FirewallRules: [{5FB88A17-74A6-413E-8F69-A3C0F52C724F}] => (Allow) D:\SteamLibrary\steamapps\common\Detroit Become Human\DetroitBecomeHuman.exe () [File not signed]
FirewallRules: [{E1ED6E99-E359-4A96-A024-3F662BDBA916}] => (Allow) D:\SteamLibrary\steamapps\common\Detroit Become Human\DetroitBecomeHuman.exe () [File not signed]
FirewallRules: [TCP Query User{717727EE-545A-4CBC-B830-E15494BA6714}C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe] => (Block) C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe => No File
FirewallRules: [UDP Query User{67C34866-CEBB-45AA-9493-945586A2E767}C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe] => (Block) C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe => No File
FirewallRules: [TCP Query User{A302FDF6-D4FB-4BD2-93D3-D20A7581706D}D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe] => (Block) D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe => No File
FirewallRules: [UDP Query User{A24B9A21-36B4-4BE5-846C-0C355D0CD68A}D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe] => (Block) D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe => No File
FirewallRules: [{9FAA9656-B894-4090-9C6C-1E1744836F80}] => (Allow) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [{56E477B2-F75E-45A3-B06A-DC0A7E425435}] => (Allow) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [{F0A0F709-9870-4B3A-86CF-E8E51B01274F}] => (Block) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [{D7FACDDF-8015-4085-A0FE-A1AC3CD68917}] => (Block) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [{4CD29641-FCF1-4EF7-BB6E-5B469239B83F}] => (Allow) C:\Program Files (x86)\Overwolf\0.292.1.1\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [{E1527F55-0A34-4D19-BFFB-591DF3B7DE56}] => (Allow) C:\Program Files (x86)\Overwolf\0.292.1.1\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [TCP Query User{EE57F4D8-EDA0-4015-AEFE-D5A211453CA8}D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe] => (Block) D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe => No File
FirewallRules: [UDP Query User{666BAD15-61A2-4216-938C-19D73595FABD}D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe] => (Block) D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe => No File
FirewallRules: [TCP Query User{8699C09C-28F1-4DB2-B22C-212E9E46B919}C:\program files (x86)\videoplaytool\bin\videoplaytool.exe] => (Allow) C:\program files (x86)\videoplaytool\bin\videoplaytool.exe () [File not signed]
FirewallRules: [UDP Query User{60D2B5D5-0317-4BF3-B962-24B94372FA28}C:\program files (x86)\videoplaytool\bin\videoplaytool.exe] => (Allow) C:\program files (x86)\videoplaytool\bin\videoplaytool.exe () [File not signed]
FirewallRules: [TCP Query User{0496F097-5D63-4809-BF91-EDC96AB124F1}C:\program files (x86)\videoplaytool\bin\videoplugin_x64.exe] => (Allow) C:\program files (x86)\videoplaytool\bin\videoplugin_x64.exe () [File not signed]
FirewallRules: [UDP Query User{20CFB431-3DA9-45C4-A6CA-B89F919912C3}C:\program files (x86)\videoplaytool\bin\videoplugin_x64.exe] => (Allow) C:\program files (x86)\videoplaytool\bin\videoplugin_x64.exe () [File not signed]
FirewallRules: [{19D6DC51-B5BF-43CB-854E-A30D84219EB2}] => (Allow) C:\Users\micha\AppData\Local\Temp\ACFL20260121205229\ACSetup\ACSetup.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{E4CF1FE5-22ED-43C1-AFC9-056A586EFC4E}] => (Allow) C:\Users\micha\AppData\Local\Temp\ACFL20260121205229\ACSetup\ACSetup.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{146C8DB4-165B-4BC5-9907-608592F7876F}] => (Allow) D:\SteamLibrary\steamapps\common\Golf With Your Friends\Golf With Your Friends.exe () [File not signed]
FirewallRules: [{FEB8EF87-6EB2-4A0F-9C03-B7792FA0D9C9}] => (Allow) D:\SteamLibrary\steamapps\common\Golf With Your Friends\Golf With Your Friends.exe () [File not signed]
FirewallRules: [{9B4A50DB-9C53-4049-A0F2-B8DD70E3FE08}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\REANIMAL Demo\Everholm\Binaries\Win64\REANIMAL.exe => No File
FirewallRules: [{44F12B77-E7D7-4713-AFF8-BC2DBEAB7CBC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\REANIMAL Demo\Everholm\Binaries\Win64\REANIMAL.exe => No File
FirewallRules: [{3CA21691-C81D-4758-9924-E637F3559D95}] => (Allow) D:\SteamLibrary\steamapps\common\Gang of Frogs Playtest\NebulaCoopProject.exe (Error3: CryptCATAdminCalcHashFromFileHandle failed to return cbHash, #2 -> Epic Games, Inc.) [File not signed]
FirewallRules: [{61F4D655-3CFE-4EA4-8379-907DDB42742C}] => (Allow) D:\SteamLibrary\steamapps\common\Gang of Frogs Playtest\NebulaCoopProject.exe (Error3: CryptCATAdminCalcHashFromFileHandle failed to return cbHash, #2 -> Epic Games, Inc.) [File not signed]
FirewallRules: [{96AA32D3-6739-463F-A451-DEF1FCA517C2}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\We Were Here Expeditions - The FriendShip\We Were Here Expeditions The FriendShip.exe () [File not signed]
FirewallRules: [{D47C780E-CD69-4E33-AEEC-75555232547B}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\We Were Here Expeditions - The FriendShip\We Were Here Expeditions The FriendShip.exe () [File not signed]
FirewallRules: [{7BC07D96-D236-4452-92E6-0F1929373823}] => (Allow) E:\SteamLibrary\steamapps\common\RESIDENT EVIL requiem BIOHAZARD requiem\re9.exe => No File
FirewallRules: [{6040D1B2-7EF1-4EF1-822F-9BE469363A7F}] => (Allow) E:\SteamLibrary\steamapps\common\RESIDENT EVIL requiem BIOHAZARD requiem\re9.exe => No File
FirewallRules: [{6FA219E2-F406-4C00-9992-8CEF586972CB}] => (Allow) D:\SteamLibrary\steamapps\common\Exit8\Exit8.exe (Error3: CryptCATAdminCalcHashFromFileHandle failed to return cbHash, #2 -> Epic Games, Inc.) [File not signed]
FirewallRules: [{CBCA7707-CA20-44C0-A34E-277C79CEFEA0}] => (Allow) D:\SteamLibrary\steamapps\common\Exit8\Exit8.exe (Error3: CryptCATAdminCalcHashFromFileHandle failed to return cbHash, #2 -> Epic Games, Inc.) [File not signed]
FirewallRules: [{35304E9A-B2ED-4F13-AAD9-8F46BCF7A163}] => (Allow) E:\SteamLibrary\steamapps\common\Level Unknown Backrooms Demo\LevelUnknown.exe (Error3: CryptCATAdminCalcHashFromFileHandle failed to return cbHash, #2 -> Epic Games, Inc.) [File not signed]
FirewallRules: [{88A68A1E-7B0D-4E58-AD3B-2EB8EABC70B8}] => (Allow) E:\SteamLibrary\steamapps\common\Level Unknown Backrooms Demo\LevelUnknown.exe (Error3: CryptCATAdminCalcHashFromFileHandle failed to return cbHash, #2 -> Epic Games, Inc.) [File not signed]
FirewallRules: [{082D4619-647F-4FE8-B6C7-FE4007E611D3}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Platform8\Platform8.exe (Error3: CryptCATAdminCalcHashFromFileHandle failed to return cbHash, #2 -> Epic Games, Inc.) [File not signed]
FirewallRules: [{829E5420-356B-4BFC-B5F1-FE7529652D4E}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Platform8\Platform8.exe (Error3: CryptCATAdminCalcHashFromFileHandle failed to return cbHash, #2 -> Epic Games, Inc.) [File not signed]
FirewallRules: [{4C1530A4-CA3D-497A-8AF6-423960B9BF68}] => (Allow) E:\SteamLibrary\steamapps\common\Subliminal Demo\Subliminal.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{743C4C50-FCA2-44E0-AC09-42094C5F6F8A}] => (Allow) E:\SteamLibrary\steamapps\common\Subliminal Demo\Subliminal.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [TCP Query User{F8EC5A97-19AA-43E3-BF64-7C02F1191CFA}C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe] => (Allow) C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe => No File
FirewallRules: [UDP Query User{9BCD94D3-2983-4669-B8F2-9151CD414C11}C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe] => (Allow) C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe => No File
FirewallRules: [TCP Query User{7E688C0D-7EEB-4001-9398-F57B5D64D7C9}E:\steamlibrary\steamapps\common\level unknown backrooms demo\levelunknown\binaries\win64\levelunknown-win64-shipping.exe] => (Allow) E:\steamlibrary\steamapps\common\level unknown backrooms demo\levelunknown\binaries\win64\levelunknown-win64-shipping.exe (Podarge Visions) [File not signed]
FirewallRules: [UDP Query User{044B0236-0A23-4B93-BB39-D44871FE6BDA}E:\steamlibrary\steamapps\common\level unknown backrooms demo\levelunknown\binaries\win64\levelunknown-win64-shipping.exe] => (Allow) E:\steamlibrary\steamapps\common\level unknown backrooms demo\levelunknown\binaries\win64\levelunknown-win64-shipping.exe (Podarge Visions) [File not signed]
FirewallRules: [{7332F137-2FCB-45A3-BA27-13258A6D7B5B}] => (Allow) C:\Users\micha\AppData\Local\Temp\ACFL\ACSetup\ACSetup.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{90E0F42C-78E7-4B45-B55E-3E2ED7E46E77}] => (Allow) C:\Users\micha\AppData\Local\Temp\ACFL\ACSetup\ACSetup.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [TCP Query User{57487E1A-1D38-4C31-A43B-DBF09551A900}D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe] => (Allow) D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe => No File
FirewallRules: [UDP Query User{D2A7A198-93F4-4B0C-8F85-FBD7DA39AFEF}D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe] => (Allow) D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe => No File
FirewallRules: [{2BB9BD6C-1901-4EAB-8634-33EE71AC9580}] => (Allow) E:\FunPlus\Sea of Conquest\Launcher.exe => No File
FirewallRules: [{FE0DAA54-F25E-470E-83C5-26D33F9186FF}] => (Allow) E:\FunPlus\Sea of Conquest\Launcher.exe => No File
FirewallRules: [{949E6E87-2E32-4425-8171-D7017509969C}] => (Allow) E:\FunPlus\Sea of Conquest\ngame\1.1.680.396679\seaofconquest.exe => No File
FirewallRules: [{DE20E273-C14E-439A-9D8E-A9A832E100EC}] => (Allow) E:\FunPlus\Sea of Conquest\ngame\1.1.680.396679\seaofconquest.exe => No File
FirewallRules: [TCP Query User{2B04CB50-BE19-4CB7-9B09-03A690B45333}E:\gtavenhanced\gta5_enhanced.exe] => (Allow) E:\gtavenhanced\gta5_enhanced.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [UDP Query User{67FEAA56-EB72-440E-BF0D-60313942F931}E:\gtavenhanced\gta5_enhanced.exe] => (Allow) E:\gtavenhanced\gta5_enhanced.exe (Rockstar Games, Inc. -> Rockstar Games)
FirewallRules: [{333037B7-FB5D-4900-9127-0F529CDBD1A3}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.66.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.)
FirewallRules: [{D1DA1D65-284C-414D-B2D1-C993B0F72080}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.66.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.)
FirewallRules: [{F0607026-FCA8-4DAD-9402-3B9433AE4F9A}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.66.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.)
FirewallRules: [{43C2F16A-A753-48F6-8640-5C28FA83A09A}] => (Allow) C:\Program Files\WindowsApps\B9ECED6F.ASUSPCAssistant_4.0.66.0_x64__qmba6cd70vzyy\MyASUS\AsusMyASUS.exe (38BC0208-0916-4E44-909B-E6832F47CDE7 -> ASUSTeK COMPUTER INC.)
FirewallRules: [{F15517AF-7E6A-49B3-84E7-736301632822}] => (Allow) C:\Program Files\Privax\HMA VPN\Vpn.exe (Gen Digital Inc. -> Privax Limited)
FirewallRules: [{EBB68865-94CA-4452-A493-338B487F5C3A}] => (Allow) C:\Program Files\Privax\HMA VPN\Vpn.exe (Gen Digital Inc. -> Privax Limited)
FirewallRules: [{DF997B85-A5CC-4AB0-BB8C-EE82AD0AE664}] => (Allow) C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe (Softdeluxe) [File not signed]
FirewallRules: [{47FE176A-C4F5-4E03-AC63-80AF09276403}] => (Allow) C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe (Softdeluxe) [File not signed]
FirewallRules: [{1465E95C-70DF-436D-970C-2ED8E1EBEADD}] => (Allow) C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe (Softdeluxe) [File not signed]
FirewallRules: [{FF77FF0C-D2A5-4CD2-B895-BB5F4D3BAF18}] => (Allow) C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe (Softdeluxe) [File not signed]
FirewallRules: [TCP Query User{1EF11284-B2A4-4E46-8C6B-444CE104883A}C:\program files\softdeluxe\free download manager\fdm.exe] => (Allow) C:\program files\softdeluxe\free download manager\fdm.exe (Softdeluxe) [File not signed]
FirewallRules: [UDP Query User{C9FF6B2D-3762-4546-85D5-0D68AB554FB5}C:\program files\softdeluxe\free download manager\fdm.exe] => (Allow) C:\program files\softdeluxe\free download manager\fdm.exe (Softdeluxe) [File not signed]
FirewallRules: [EdgeWebView2-MDNS-In-UDP] => (Allow) C:\WINDOWS\system32\Microsoft-Edge-WebView\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{6F21CB09-6C5A-4344-BF1C-EA741EE3B92D}] => (Allow) C:\Program Files\WindowsApps\OpenAI.ChatGPT-Desktop_1.2026.133.0_x64__2p2nqsd0c76g0\app\ChatGPT.exe (50BDFD77-8903-4850-9FFE-6E8522F64D5B -> OpenAI)
FirewallRules: [{03C266D7-323C-41E2-AD3F-3971CAA19AB1}] => (Allow) C:\Program Files\WindowsApps\OpenAI.ChatGPT-Desktop_1.2026.133.0_x64__2p2nqsd0c76g0\app\ChatGPT.exe (50BDFD77-8903-4850-9FFE-6E8522F64D5B -> OpenAI)
FirewallRules: [{D7B68C98-87B6-48F2-871E-FE32B67993C0}] => (Allow) C:\Program Files\WindowsApps\OpenAI.ChatGPT-Desktop_1.2026.133.0_x64__2p2nqsd0c76g0\app\ChatGPT.exe (50BDFD77-8903-4850-9FFE-6E8522F64D5B -> OpenAI)
FirewallRules: [{C35A8C71-8852-4CEE-9DAE-EA5F6F6A580C}] => (Allow) C:\Program Files\WindowsApps\OpenAI.ChatGPT-Desktop_1.2026.133.0_x64__2p2nqsd0c76g0\app\ChatGPT.exe (50BDFD77-8903-4850-9FFE-6E8522F64D5B -> OpenAI)
FirewallRules: [{4DC02301-DA0B-4DAE-AB59-3699104C05CE}] => (Allow) C:\ProgramData\ASUS\ARMOURY CRATE One Package\ACFL20260517171130\ACSetup\ACSetup.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{3EFE7AEF-9E5C-4F3B-981E-1ECCF674AAC9}] => (Allow) C:\ProgramData\ASUS\ARMOURY CRATE One Package\ACFL20260517171130\ACSetup\ACSetup.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{18D6E95F-C817-4DDF-A7AD-75F1A1024F26}] => (Allow) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{7D672467-152E-4E17-ADF7-702086E5BA44}] => (Allow) C:\Program Files\ASUS\ROG Live Service\ROGLiveService.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{6309903D-B4E8-4C24-ABBC-CA028065F7D0}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\asus_framework.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
FirewallRules: [{BBA197BB-FB8A-4BC1-98E9-481813356EFB}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmourySocketServer.exe (ASUSTeK COMPUTER INC. -> ASUSTeK COMPUTER INC.)
FirewallRules: [{22E3668F-9299-46E7-AABA-01FEA6879199}] => (Allow) C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ArmourySocketServer\ArmouryHtmlDebugServer.exe (ASUSTeK COMPUTER INC. -> ASUS)
FirewallRules: [{3CB0E3CE-F152-45D8-A271-808DC286E94B}] => (Allow) C:\Program Files\ASUS\AacAmbientHal\AacAmbientLighting.exe (ASUSTeK COMPUTER INC. -> ASUSTek COMPUTER INC.)
FirewallRules: [{034AEB15-A6D9-4568-BFF4-99901C333BFF}] => (Allow) E:\SteamLibrary\steamapps\common\Backrooms_Escape_Together\BetGame.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{F0613130-3034-4F4E-8EE9-2FFDF29313CC}] => (Allow) E:\SteamLibrary\steamapps\common\Backrooms_Escape_Together\BetGame.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [TCP Query User{C122A2E0-9886-492C-825D-00F0A7E6D756}E:\steamlibrary\steamapps\common\backrooms_escape_together\bet\binaries\win64\betgamesteam-win64-shipping.exe] => (Allow) E:\steamlibrary\steamapps\common\backrooms_escape_together\bet\binaries\win64\betgamesteam-win64-shipping.exe (Triiodide Studios) [File not signed]
FirewallRules: [UDP Query User{FDE49F1B-B44D-4364-902D-491F9A233287}E:\steamlibrary\steamapps\common\backrooms_escape_together\bet\binaries\win64\betgamesteam-win64-shipping.exe] => (Allow) E:\steamlibrary\steamapps\common\backrooms_escape_together\bet\binaries\win64\betgamesteam-win64-shipping.exe (Triiodide Studios) [File not signed]
FirewallRules: [{B3D95749-8863-44F3-9A92-A2809FAEAD2F}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{77049CD5-31A3-4D3C-B1CE-207C5042C5E8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{1933BDA0-EDA5-4662-9B21-D512D2277A7C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{FE46AFBB-E31B-4F9D-B191-D8664A730E43}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{C655455A-8894-4943-93F1-2D8E081F9FC8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{0C527AD0-60DC-459B-AA95-D0FF117D8465}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{9CC825B3-1F12-4727-9278-97F94D62E3BA}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{3F6529FC-847A-4882-8580-7EF9FB57904B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{BC7326F4-57FA-42BB-8F6C-713C750D3DF5}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{4C4CD58B-85FE-4E9D-8518-F85C6039CBA1}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{7ED28EB1-88AC-4327-A468-FBEDA0DA2C2B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\Spotify.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{2AEB9F72-9141-4948-9F4A-C01174204E2B}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{601E84BF-9F26-4650-9600-C897288DDB54}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{2E06499D-ABC8-4531-92D4-D4F7E302821D}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.292.148.0_x64__zpdnekdrzrea0\SpotifyLauncher.exe (Spotify AB -> Spotify Ltd)
FirewallRules: [{5D13A91D-5432-4E2E-8B13-9D99DCD909C7}] => (Allow) C:\Program Files\BraveSoftware\Brave-Browser\Application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [{E170FAF8-A3A9-46FC-8D1B-C8C6ACE89920}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2606.48051.0_x64__8wekyb3d8bbwe\M365Copilot.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{E24BE7EB-31F9-4AED-9D96-1EC6F0F1CFE3}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2606.48051.0_x64__8wekyb3d8bbwe\M365Copilot.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{AED4305C-00AC-4312-B1E8-81DE7EDD367B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2606.48051.0_x64__8wekyb3d8bbwe\M365Copilot.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{71E7097B-407E-4047-93DF-39853D944C65}] => (Allow) C:\Program Files\WindowsApps\Microsoft.MicrosoftOfficeHub_19.2606.48051.0_x64__8wekyb3d8bbwe\M365Copilot.exe (Microsoft Corporation -> Microsoft Corporation)

==================== Restore Points =========================


==================== Faulty Device Manager Devices ============

==================== Event log errors: ========================

Application errors:
==================
Error: (06/20/2026 11:39:14 PM) (Source: System Restore) (EventID: 8193) (User: )
Description: Vytvoření bodu obnovení se nezdařilo (Proces = C:\WINDOWS\system32\svchost.exe -k netsvcs -p -s wuauserv; Popis = Windows Update; Chyba = 0x8004231f).

Error: (06/19/2026 11:41:45 PM) (Source: Application Error) (EventID: 1005) (User: PETR)
Description: C:\Users\micha\AppData\Local\Microsoft\OneDrive\logs\Common\telemetryCache.otc-shmMicrosoft OneDriveFile Co-Authoring Executable0xc000007f0x3

Error: (06/19/2026 11:41:45 PM) (Source: Application Error) (EventID: 1000) (User: PETR)
Description: Název chybující aplikace: FileCoAuth.exe, verze: 26.95.519.3, časové razítko: 0x8dace483
Název chybujícího modulu: OneDriveTelemetryStable.dll, verze: 26.95.519.3, časové razítko: 0xe02a4d5f
Kód výjimky: 0xc0000006
Posun chyby: 0x000000000015df56
ID chybujícího procesu: 0x3a70
Čas spuštění chybující aplikace: 0x1dd00346ca4172e
Cesta k chybující aplikaci: C:\Users\micha\AppData\Local\Microsoft\OneDrive\26.095.0519.0003\FileCoAuth.exe
Cesta k chybujícímu modulu: C:\Users\micha\AppData\Local\Microsoft\OneDrive\26.095.0519.0003\OneDriveTelemetryStable.dll
ID sestavy: 60d5ffc0-9f68-428c-96bb-f56306f452b9
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:

Error: (06/19/2026 02:12:54 AM) (Source: Application Error) (EventID: 1000) (User: NT AUTHORITY)
Description: Název chybující aplikace: nordvpn-service.exe, verze: 1.1.0.34, časové razítko: 0x65112d57
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.26100.8655, časové razítko: 0x9e0ffa42
Kód výjimky: 0xe0434352
Posun chyby: 0x00000000000c1b6a
ID chybujícího procesu: 0x145c
Čas spuštění chybující aplikace: 0x1dcff13f490d600
Cesta k chybující aplikaci: C:\Program Files\NordVPN\nordvpn-service.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\KERNELBASE.dll
ID sestavy: ab358147-833f-40ac-98fc-257bfbadce68
Celý název chybujícího balíčku:
ID chybující aplikace relativní vzhledem k balíčku:

Error: (06/19/2026 02:12:50 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému..

Error: (06/19/2026 02:12:50 AM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.]

Error: (06/19/2026 02:12:50 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Chyba služby Stínová kopie svazků: Při volání rutiny CoCreateInstance došlo k neočekávané chybě. hr= 0x8007045b, Probíhá vypnutí systému..

Error: (06/19/2026 02:12:50 AM) (Source: VSS) (EventID: 13) (User: )
Description: Informace služby Stínová kopie svazku: Server COM s identifikátorem CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} a názvem CEventSystem nelze spustit. [0x8007045b, Probíhá vypnutí systému.]


System errors:
=============
Error: (06/21/2026 11:02:04 AM) (Source: Netwtw10) (EventID: 5010) (User: )
Description: Intel(R) Wi-Fi 6 AX201 160MHz : Síťový adaptér vrátil ovladači neplatnou hodnotu.
5010 - Driver DBG_ASSERT - instead of BSOD

Error: (06/21/2026 11:02:04 AM) (Source: Netwtw10) (EventID: 5010) (User: )
Description: Intel(R) Wi-Fi 6 AX201 160MHz : Síťový adaptér vrátil ovladači neplatnou hodnotu.
5010 - Driver DBG_ASSERT - instead of BSOD

Error: (06/21/2026 10:37:14 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Aktualizace Google (gupdate) neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (06/21/2026 10:37:14 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Služba Aktualizace Google (gupdate) bylo dosaženo časového limitu (90000 ms).

Error: (06/21/2026 10:35:21 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba AsusFanControlService neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (06/21/2026 10:35:21 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby AsusFanControlService bylo dosaženo časového limitu (90000 ms).

Error: (06/21/2026 10:35:21 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba AsusFanControlService neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (06/21/2026 10:35:21 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby AsusFanControlService bylo dosaženo časového limitu (90000 ms).


Windows Defender:
================
Date: 2026-06-16 12:42:13
Description:
Antivirová ochrana v programu Microsoft Defender šçαń ħãś ьёэй šţθρφεð ьĕƒõяė ¢οмφŀèтіõⁿ.%ń %ţŠĉдń ÍÐ:%ъ{2E25A665-9029-46F9-9F59-575E560C61AB}%й %ťŞçäη Τурè:%ъAntimalwarový program%ń %τЅĉăņ Рǻřǻмĕτзřş:%вRychlé prohledávání%л %ťЏŝèŗ:%вNT AUTHORITY\SYSTEM%л %ŧŞţор Ŕëάŝσŋ:%вЯРČ çőпήзćťíσп гŭⁿđŏщи

Date: 2026-06-14 11:18:25
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: PUADlManager:Win32/InstallCore
Závažnost: Nízké
Kategorie: Potenciálně nežádoucí software
Cesta: file:_E:\GTA SAN ANDREAS\HOODLUM\hlm-intro.exe; file:_E:\HOODLUM\hlm-intro.exe
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Ochrana v reálném čase
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: C:\Program Files\Malwarebytes\Anti-Malware\DDSHelper.exe
Verze bezpečnostních informací: AV: 1.453.86.0, AS: 1.453.86.0, NIS: 1.453.86.0
Verze modulu: AM: 1.1.26050.11, NIS: 1.1.26050.11

Date: 2026-06-14 11:17:17
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=0
Název: PUADlManager:Win32/InstallCore
Závažnost: Nízké
Kategorie: Potenciálně nežádoucí software
Cesta: file:_E:\GTA SAN ANDREAS\HOODLUM\hlm-intro.exe
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Ochrana v reálném čase
Uživatel: NT AUTHORITY\SYSTEM
Název procesu: C:\Program Files\Malwarebytes\Anti-Malware\DDSHelper.exe
Verze bezpečnostních informací: AV: 1.453.86.0, AS: 1.453.86.0, NIS: 1.453.86.0
Verze modulu: AM: 1.1.26050.11, NIS: 1.1.26050.11

Date: 2026-06-10 13:06:21
Description:
Antivirová ochrana v programu Microsoft Defender šçαń ħãś ьёэй šţθρφεð ьĕƒõяė ¢οмφŀèтіõⁿ.%ń %ţŠĉдń ÍÐ:%ъ{58D99B81-2179-4234-BC4E-8E54A9B95BC1}%й %ťŞçäη Τурè:%ъAntimalwarový program%ń %τЅĉăņ Рǻřǻмĕτзřş:%вRychlé prohledávání%л %ťЏŝèŗ:%вNT AUTHORITY\SYSTEM%л %ŧŞţор Ŕëάŝσŋ:%вЯРČ çőпήзćťíσп гŭⁿđŏщи

Date: 2026-06-07 13:32:57
Description:
Antivirová ochrana v programu Microsoft Defender šçαń ħãś ьёэй šţθρφεð ьĕƒõяė ¢οмφŀèтіõⁿ.%ń %ţŠĉдń ÍÐ:%ъ{AE61C05C-DD09-4863-8B9F-01157A764EDE}%й %ťŞçäη Τурè:%ъAntimalwarový program%ń %τЅĉăņ Рǻřǻмĕτзřş:%вRychlé prohledávání%л %ťЏŝèŗ:%вNT AUTHORITY\SYSTEM%л %ŧŞţор Ŕëάŝσŋ:%вŜčћêďŭľëđ ś¢ăп ŵâŝ śκΐφρèð вєćąűśë τћ℮ ļâѕт ŝűċčэşšƒµℓ ŝċаπ щàś ẃīτнĩñ тђë ľâşτ 7 ðαўş
Event[0]

Date: 2026-06-21 02:00:37
Description:
Služba Antivirová ochrana v programu Microsoft Defender zřejmě během vypnutí neodpovídá.
Timout (sekundy): 0
Součást: UninitializeServiceWppTracing
Ukončeno: 0

Date: 2026-04-15 10:10:35
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.449.106.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.26030.3008
Kód chyby: 0x8024402c
Popis chyby: Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.

Date: 2026-04-07 14:23:18
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.447.204.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.26020.3
Kód chyby: 0x8024402c
Popis chyby: Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.

Date: 2026-04-05 12:05:50
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.447.168.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.26020.3
Kód chyby: 0x8024402c
Popis chyby: Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.

Date: 2026-03-25 15:42:34
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.445.744.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.26010.1
Kód chyby: 0x8024402c
Popis chyby: Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.

CodeIntegrity:
===============
Date: 2026-04-09 21:33:58
Description:
Code Integrity determined that a process (\Device\HarddiskVolume8\Users\micha\AppData\Local\Discord\app-1.0.9228\Discord.exe) attempted to load \Device\HarddiskVolume8\Program Files (x86)\Overwolf\0.292.1.1\OWClient.dll that did not meet the Microsoft signing level requirements.

Date: 2026-04-09 21:33:58
Description:
Code Integrity determined that a process (\Device\HarddiskVolume8\Users\micha\AppData\Local\Discord\app-1.0.9228\Discord.exe) attempted to load \Device\HarddiskVolume8\Program Files (x86)\Overwolf\0.292.1.1\ow-graphics-vulkan.dll that did not meet the Microsoft signing level requirements.

Date: 2026-04-09 21:33:58
Description:
Code Integrity determined that a process (\Device\HarddiskVolume8\Users\micha\AppData\Local\Discord\app-1.0.9228\Discord.exe) attempted to load \Device\HarddiskVolume8\ProgramData\obs-studio-hook\graphics-hook64.dll that did not meet the Microsoft signing level requirements.


==================== Memory info ===========================

BIOS: American Megatrends Inc. 1203 10/28/2021
Motherboard: ASUSTeK COMPUTER INC. TUF GAMING B560M-PLUS WIFI
Processor: 11th Gen Intel(R) Core(TM) i5-11400F @ 2.60GHz
Percentage of memory in use: 72%
Total physical RAM: 16217.73 MB
Available physical RAM: 4397.11 MB
Total Virtual: 35673.73 MB
Available Virtual: 16655.8 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:464.22 GB) (Free:0.48 GB) (Model: WDS500G1X0E-00AFY0) NTFS
Drive d: () (Fixed) (Total:931.07 GB) (Free:64.94 GB) (Model: ST1000DM003-1CH162) NTFS
Drive e: () (Fixed) (Total:930.38 GB) (Free:196.33 GB) (Model: WDC WD10EZRZ-00HTKB0) NTFS

\\?\Volume{46029b4d-50e3-4957-bc8f-c0b2a31dc2bc}\ (Obnovení) (Fixed) (Total:0.52 GB) (Free:0.09 GB) NTFS
\\?\Volume{4b280e1e-daf8-44f3-842e-2a7f1ce8ec12}\ () (Fixed) (Total:0.51 GB) (Free:0.49 GB) NTFS
\\?\Volume{264207f5-8b5b-4217-b1e6-8dd2e0f04815}\ () (Fixed) (Total:0.85 GB) (Free:0.07 GB) NTFS
\\?\Volume{08ab3d1f-4e35-4487-85f6-dbaed34b5da3}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32
\\?\Volume{0cd24771-04e1-47f0-9f7a-3b9a182df020}\ () (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Protective MBR) (Size: 931.5 GB) (Disk ID: 00000000)

Partition: GPT.

==========================================================
Disk: 1 (Size: 931.5 GB) (Disk ID: 7D324914)
Partition 1: (Not Active) - (Size=931.1 GB) - (Type=07 NTFS)

==========================================================
Disk: 2 (Protective MBR) (Size: 465.8 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt =======================

Re: Prosím o kontrolu logu z důvodu úbytku místa na SSD

Odeslal: 21 Črv 2026 12:29
od Rudy
Zdravím!
Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
(HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\{07F54E47-DE08-486E-921C-D09624774BB6}_is1)<==== ATTENTION
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{14100442-9664-1407-2647-000000000000}\localserver32 -> "C:\Users\micha\AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{73F8144D-FFD8-4496-B65E-4D756FF689FE}\localserver32 -> "c:\program files (x86)\bytedance\douyin\7.3.0\tray\douyin_tray.exe" ----AppNotificationActivated: => No File
ContextMenuHandlers4: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => -> No File
ContextMenuHandlers6: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => -> No File
AlternateDataStreams: C:\ProgramData\mntemp:8EAD8B3507 [3442]
AlternateDataStreams: C:\ProgramData\tyvfcquz.wxt:B63721167D [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk:BE32D07BC5 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FACEIT AC.lnk:550995E265 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Novabench 5.lnk:B68549C808 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Streamlabs Desktop.lnk:578370639A [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk:F208FC6732 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak.lnk:DBB58A0286 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\V380.lnk:942A4CABE6 [3442]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [5646]
FirewallRules: [UDP Query User{BA606EBB-ACA7-464E-89D4-A356F7D7E95F}E:\battlefield 6 event\bf6event.exe] => (Allow) E:\battlefield 6 event\bf6event.exe => No File
FirewallRules: [TCP Query User{FBD4AD8B-A72E-4FAE-9B92-BA605D0FB6D9}E:\battlefield 6 event\bf6event.exe] => (Allow) E:\battlefield 6 event\bf6event.exe => No File
FirewallRules: [TCP Query User{386E5117-D7C3-4CF5-9032-017E7B423828}C:\users\micha\appdata\roaming\bittorrent web\btweb.exe] => (Block) C:\users\micha\appdata\roaming\bittorrent web\btweb.exe => No File
FirewallRules: [UDP Query User{CAF064AD-F740-4F3A-BD93-254EBDBBA0A5}C:\users\micha\appdata\roaming\bittorrent web\btweb.exe] => (Block) C:\users\micha\appdata\roaming\bittorrent web\btweb.exe => No File
FirewallRules: [UDP Query User{E7D841BD-B7A2-414E-AA1D-BD6358E45FE0}C:\program files\bravesoftware\brave-browser\application\brave.exe] => (Allow) C:\program files\bravesoftware\brave-browser\application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [TCP Query User{15475545-4979-4595-B803-073922E0D13F}E:\sea of thieves\call of duty\content\cod.exe] => (Allow) E:\sea of thieves\call of duty\content\cod.exe => No File
FirewallRules: [UDP Query User{71031F81-EE69-4A14-8C9C-5AE66C0E3C42}E:\sea of thieves\call of duty\content\cod.exe] => (Allow) E:\sea of thieves\call of duty\content\cod.exe => No File
FirewallRules: [TCP Query User{8EDE6D18-C435-431A-8552-E7855E62A2C7}E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe] => (Allow) E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe => No File
FirewallRules: [UDP Query User{8D18AAD1-B496-4F5D-97BE-8DF5127BAF68}E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe] => (Allow) E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe => No File
FirewallRules: [{131E5D88-F4CC-4A8C-ADD0-88EAAF24FCB9}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{1E7BE9C4-0658-45E4-B65F-A85929E8B901}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [TCP Query User{1020EA32-7A2C-4C37-9D71-963B86C936F7}E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe] => (Block) E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe => No File
FirewallRules: [UDP Query User{C0D520F0-B762-490B-873D-D151DA181329}E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe] => (Block) E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe => No File
FirewallRules: [TCP Query User{974B5E9C-F3DC-49BB-955A-C2994803E1B1}C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe => No File
FirewallRules: [UDP Query User{3C8F5FBB-6F9F-464B-90C3-234A1ED944ED}C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe => No File
FirewallRules: [{E84C56EB-0377-4BF3-9DB9-785A2DAF4798}] => (Allow) C:\Users\micha\AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe => No File
FirewallRules: [TCP Query User{0670EDD1-9B02-4342-8360-761EB4B60763}D:\davinci\resolve.exe] => (Block) D:\davinci\resolve.exe => No File
FirewallRules: [UDP Query User{A9281C5A-67BA-44EE-91CD-3F30EF7C880B}D:\davinci\resolve.exe] => (Block) D:\davinci\resolve.exe => No File
FirewallRules: [{F873D22A-8197-497F-9730-3C660A093C3E}] => (Allow) D:\SteamLibrary\steamapps\common\Ready Or Not\Engine\Binaries\Win64\CrashReporter.exe => No File
FirewallRules: [{2E7AB9CD-A6C1-4429-86C0-62665E93CDE7}] => (Allow) D:\SteamLibrary\steamapps\common\Ready Or Not\Engine\Binaries\Win64\CrashReporter.exe => No File
FirewallRules: [UDP Query User{8BCC2B64-0E9C-4DF8-8046-3FFCDBF0DAE2}D:\world_of_tanks_eu\win64\worldoftanks.exe] => (Block) D:\world_of_tanks_eu\win64\worldoftanks.exe => No File
FirewallRules: [TCP Query User{020F479B-87E5-41C7-8447-D18C7F33A816}C:\program files\docker\docker\resources\com.docker.backend.exe] => (Allow) C:\program files\docker\docker\resources\com.docker.backend.exe => No File
FirewallRules: [UDP Query User{67B178AB-6448-49E0-BD89-D98101310F87}C:\program files\docker\docker\resources\com.docker.backend.exe] => (Allow) C:\program files\docker\docker\resources\com.docker.backend.exe => No File
FirewallRules: [TCP Query User{2EB13A60-1C78-40C4-9334-6298A013F7B0}C:\program files (x86)\gz systems\purevpn\purevpn.exe] => (Allow) C:\program files (x86)\gz systems\purevpn\purevpn.exe => No File
FirewallRules: [UDP Query User{6ED330CC-49FF-4524-B76C-E896E6D1B180}C:\program files (x86)\gz systems\purevpn\purevpn.exe] => (Allow) C:\program files (x86)\gz systems\purevpn\purevpn.exe => No File
FirewallRules: [{1378EC31-F890-4B50-A6F8-82A762159FC9}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{2E6B8883-7DC3-492F-B7FF-55CDD663DC27}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{EE3F9BB2-6DA4-4DD3-92A5-CFE207EA9607}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{90AE84E6-AF25-48FF-8E87-CD9E51CE0C4D}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{BC434F6A-2664-41EE-B1A2-2E203C9435F3}] => (Allow) %ProgramFiles%\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [TCP Query User{485C1239-0A7D-447F-89F0-5A6B7D077CAE}C:\users\micha\downloads\anydesk.exe] => (Allow) C:\users\micha\downloads\anydesk.exe => No File
FirewallRules: [UDP Query User{AD38CA56-2A23-4F12-96D6-A761894A58A3}C:\users\micha\downloads\anydesk.exe] => (Allow) C:\users\micha\downloads\anydesk.exe => No File
FirewallRules: [{6245B822-0F08-47AD-8269-E0B68C04BC14}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\ElementsPanelDaemon.exe => No File
FirewallRules: [TCP Query User{9366605A-B99A-4644-81D7-D1CE6FFFA14B}C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe] => (Allow) C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe => No File
FirewallRules: [UDP Query User{B1BD089E-C939-4484-9373-6473763A148B}C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe] => (Allow) C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe => No File
FirewallRules: [TCP Query User{6303E824-75A0-4962-981A-122A4D93EE1B}C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe] => (Block) C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe => No File
FirewallRules: [UDP Query User{9F7EB77E-BED0-493E-84C0-C44F9AC8D0E1}C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe] => (Block) C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe => No File
FirewallRules: [TCP Query User{D31EDD4E-6F1F-48F7-BF04-70624D5CD859}D:\football.life.simulator.early.access\football life simulator.exe] => (Block) D:\football.life.simulator.early.access\football life simulator.exe => No File
FirewallRules: [UDP Query User{415A3AFA-7F76-4442-B9A4-C3D630C920A9}D:\football.life.simulator.early.access\football life simulator.exe] => (Block) D:\football.life.simulator.early.access\football life simulator.exe => No File
FirewallRules: [TCP Query User{FC88C696-51DA-4C64-8193-66421996A2FE}D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe] => (Block) D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe => No File
FirewallRules: [UDP Query User{0C368F59-947E-43F0-8801-48D67EAEA95C}D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe] => (Block) D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe => No File
FirewallRules: [TCP Query User{1B413620-1991-4B9C-A665-08DE87CC761F}D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe] => (Block) D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe => No File
FirewallRules: [UDP Query User{78BE4651-1CCF-4BDB-B782-56D461028DA6}D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe] => (Block) D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe => No File
FirewallRules: [TCP Query User{9863FE5E-073C-4741-9835-2AF7609F2286}D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe] => (Block) D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe => No File
FirewallRules: [UDP Query User{3D1A32C3-C4B8-4BCB-918A-B1F55C7E3BA4}D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe] => (Block) D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe => No File
FirewallRules: [{E79F17D6-ED1E-4DE4-A3B2-4784365B01F1}] => (Allow) D:\SteamLibrary\steamapps\common\Delta Force\Launcher\df_launcher.exe => No File
FirewallRules: [{9EECD3EB-4F9B-46A7-975A-A6E28031CEA0}] => (Allow) D:\SteamLibrary\steamapps\common\Delta Force\Launcher\df_launcher.exe => No File
FirewallRules: [TCP Query User{27BA6085-CFC9-4437-9507-DA440ED57636}E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe] => (Allow) E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe => No File
FirewallRules: [UDP Query User{261BA844-0209-455B-8C8F-EDF6C567C0A0}E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe] => (Allow) E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe => No File
FirewallRules: [{619366B2-C57B-40E0-A55E-730090104413}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe => No File
FirewallRules: [TCP Query User{E66BF433-B841-40DD-B35F-2B0901D71BAE}C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe] => (Block) C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe => No File
FirewallRules: [UDP Query User{E26E2408-5876-4D03-941E-E996B41B9BFC}C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe] => (Block) C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe => No File
FirewallRules: [{17D4C8B3-53E8-4E4A-B51F-6221C67467A5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Phasmophobia\Phasmophobia.exe => No File
FirewallRules: [{BC8EFC50-5F78-4B9E-AEC7-F41F139F5A19}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Phasmophobia\Phasmophobia.exe => No File
FirewallRules: [TCP Query User{3AD948F4-1D6A-4220-9236-6B4A136B9F60}D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe] => (Block) D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe => No File
FirewallRules: [UDP Query User{78CA9D04-A3CD-4C1F-A96C-D66A66373624}D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe] => (Block) D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe => No File
FirewallRules: [{CDAD4C8E-D429-4F51-8219-15326AA59615}] => (Allow) E:\SteamLibrary\steamapps\common\Mafia The Old Country\MafiaTheOldCountry\Binaries\Win64\MafiaTheOldCountry.exe => No File
FirewallRules: [{5B2A4E1C-3EBA-4790-9E81-8F698209F775}] => (Allow) E:\SteamLibrary\steamapps\common\Mafia The Old Country\MafiaTheOldCountry\Binaries\Win64\MafiaTheOldCountry.exe => No File
FirewallRules: [TCP Query User{ED1B53EB-1F37-4865-9AF7-DC72E73392D9}E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe] => (Allow) E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe => No File
FirewallRules: [UDP Query User{0D02FAD8-020B-4609-A000-1DEC57347CF5}E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe] => (Allow) E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe => No File
FirewallRules: [TCP Query User{49223C06-B8A3-408F-9F6D-73A2C0C54603}D:\geo.political.simulator.5.build.21132820\_start.exe] => (Block) D:\geo.political.simulator.5.build.21132820\_start.exe => No File
FirewallRules: [UDP Query User{651650A5-6458-41C0-8FC7-6D16FE172277}D:\geo.political.simulator.5.build.21132820\_start.exe] => (Block) D:\geo.political.simulator.5.build.21132820\_start.exe => No File
FirewallRules: [TCP Query User{8768545B-4649-4DF0-925E-893EA772158D}D:\bank.simulator.build.20501759\bank simulator.exe] => (Block) D:\bank.simulator.build.20501759\bank simulator.exe => No File
FirewallRules: [UDP Query User{52D4F417-1589-49BA-9BC6-DFB9B5B36477}D:\bank.simulator.build.20501759\bank simulator.exe] => (Block) D:\bank.simulator.build.20501759\bank simulator.exe => No File
FirewallRules: [{63542FC3-E15E-4ED1-AF10-E862EF306301}] => (Allow) E:\SteamLibrary\steamapps\common\MarvelRivals\MarvelRivals_Launcher.exe => No File
FirewallRules: [{F8AC2413-BE69-4BD4-99C7-7BE6F6E47E99}] => (Allow) E:\SteamLibrary\steamapps\common\MarvelRivals\MarvelRivals_Launcher.exe => No File
FirewallRules: [TCP Query User{D7566707-6ACB-473F-8391-D06B97EDC2FE}D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe] => (Block) D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe => No File
FirewallRules: [UDP Query User{A21FAB12-608A-4C75-B6B7-F758ADAD27F2}D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe] => (Block) D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe => No File
FirewallRules: [TCP Query User{717727EE-545A-4CBC-B830-E15494BA6714}C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe] => (Block) C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe => No File
FirewallRules: [UDP Query User{67C34866-CEBB-45AA-9493-945586A2E767}C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe] => (Block) C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe => No File
FirewallRules: [TCP Query User{A302FDF6-D4FB-4BD2-93D3-D20A7581706D}D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe] => (Block) D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe => No File
FirewallRules: [UDP Query User{A24B9A21-36B4-4BE5-846C-0C355D0CD68A}D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe] => (Block) D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe => No File
FirewallRules: [{9FAA9656-B894-4090-9C6C-1E1744836F80}] => (Allow) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [{56E477B2-F75E-45A3-B06A-DC0A7E425435}] => (Allow) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [{F0A0F709-9870-4B3A-86CF-E8E51B01274F}] => (Block) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [{D7FACDDF-8015-4085-A0FE-A1AC3CD68917}] => (Block) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [TCP Query User{EE57F4D8-EDA0-4015-AEFE-D5A211453CA8}D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe] => (Block) D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe => No File
FirewallRules: [UDP Query User{666BAD15-61A2-4216-938C-19D73595FABD}D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe] => (Block) D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe => No File
FirewallRules: [{9B4A50DB-9C53-4049-A0F2-B8DD70E3FE08}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\REANIMAL Demo\Everholm\Binaries\Win64\REANIMAL.exe => No File
FirewallRules: [{44F12B77-E7D7-4713-AFF8-BC2DBEAB7CBC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\REANIMAL Demo\Everholm\Binaries\Win64\REANIMAL.exe => No File
FirewallRules: [{7BC07D96-D236-4452-92E6-0F1929373823}] => (Allow) E:\SteamLibrary\steamapps\common\RESIDENT EVIL requiem BIOHAZARD requiem\re9.exe => No File
FirewallRules: [{6040D1B2-7EF1-4EF1-822F-9BE469363A7F}] => (Allow) E:\SteamLibrary\steamapps\common\RESIDENT EVIL requiem BIOHAZARD requiem\re9.exe => No File
FirewallRules: [TCP Query User{F8EC5A97-19AA-43E3-BF64-7C02F1191CFA}C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe] => (Allow) C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe => No File
FirewallRules: [UDP Query User{9BCD94D3-2983-4669-B8F2-9151CD414C11}C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe] => (Allow) C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe => No File
FirewallRules: [TCP Query User{57487E1A-1D38-4C31-A43B-DBF09551A900}D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe] => (Allow) D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe => No File
FirewallRules: [UDP Query User{D2A7A198-93F4-4B0C-8F85-FBD7DA39AFEF}D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe] => (Allow) D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe => No File
FirewallRules: [{2BB9BD6C-1901-4EAB-8634-33EE71AC9580}] => (Allow) E:\FunPlus\Sea of Conquest\Launcher.exe => No File
FirewallRules: [{FE0DAA54-F25E-470E-83C5-26D33F9186FF}] => (Allow) E:\FunPlus\Sea of Conquest\Launcher.exe => No File
FirewallRules: [{949E6E87-2E32-4425-8171-D7017509969C}] => (Allow) E:\FunPlus\Sea of Conquest\ngame\1.1.680.396679\seaofconquest.exe => No File
FirewallRules: [{DE20E273-C14E-439A-9D8E-A9A832E100EC}] => (Allow) E:\FunPlus\Sea of Conquest\ngame\1.1.680.396679\seaofconquest.exe => No File
E:\GTA SAN ANDREAS\HOODLUM\hlm-intro.exe
E:\HOODLUM\hlm-intro.exe
E:\GTA SAN ANDREAS\HOODLUM\hlm-intro.exe
HKLM-x32\...\Run: [mo_pc_offical_soc] => E:\FunPlus\Sea of Conquest\Launcher.exe (No File)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
Task: {4A23D69E-5CF9-42ED-A89C-293693D2BCFB} - System32\Tasks\AVG\AVG Driver Updater Update => C:\Program Files\Common Files\AVG\Icarus\avg-du\icarus.exe /update:avg-du /silent (No File)
Task: {91EA2448-4E55-4FAD-BC70-DAB9590D29B9} - System32\Tasks\ASUS\P508PowerAgent_sdk => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ShareFromArmouryIII\Mouse\ROG STRIX CARRY\P508PowerAgent.exe (No File)
Task: {ABC7034D-3937-4B4A-82C7-95D2D3AE5D97} - System32\Tasks\Microsoft\Windows\Setup\SnapshotCleanupTask => C:\Windows\System32\OOBE\SetupPlatform\SetupPlatform.exe -removesnapshot (No File)
Task: {0BB36A32-0D9E-4297-AFD7-6BD7B5DB4C9B} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: C:\WINDOWS\Tasks\npcapwatchdog.job => C:\Program Files\Npcap\CheckStatus.bat <==== ATTENTION
CHR HKLM-x32\...\Chrome\Extension: [kadaohckdkghfaclhjmkmplebcdcnfnp] - <no Path/update_url>
R3 cpuz158; C:\WINDOWS\temp\cpuz158\cpuz158_x64.sys [44576 2026-06-21] (Microsoft Windows Hardware Compatibility Publisher -> CPUID) <==== ATTENTION
S3 cpuz159; \??\C:\WINDOWS\temp\cpuz159\cpuz159_x64.sys (No File) <==== ATTENTION
C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
C:\Users\micha\AppData\Local\0119AC2FC90D95AC063B177717B7B3B6
C:\Users\micha\AppData\Local\66302C3ABCF0203701B7744560199EA1
C:\Users\micha\AppData\Local\8B1D271A9281777F9A783A29EC6394D2

EmptyTemp:
Hosts:
End
Uložte do C:\Users\micha\OneDrive\Plocha jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: Prosím o kontrolu logu z důvodu úbytku místa na SSD

Odeslal: 21 Črv 2026 12:50
od pitrisin
Fix result of Farbar Recovery Scan Tool (x64) Version: 20-06-2026
Ran by micha (21-06-2026 13:39:19) Run:1
Running from C:\Users\micha\OneDrive\Plocha
Loaded Profiles: micha
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
(HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\{07F54E47-DE08-486E-921C-D09624774BB6}_is1)<==== ATTENTION
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{14100442-9664-1407-2647-000000000000}\localserver32 -> "C:\Users\micha\AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe" -ToastActivated => No File
CustomCLSID: HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{73F8144D-FFD8-4496-B65E-4D756FF689FE}\localserver32 -> "c:\program files (x86)\bytedance\douyin\7.3.0\tray\douyin_tray.exe" ----AppNotificationActivated: => No File
ContextMenuHandlers4: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => -> No File
ContextMenuHandlers6: [PowerISO] -> {967B2D40-8B7D-4127-9049-61EA0C2C6DCE} => -> No File
AlternateDataStreams: C:\ProgramData\mntemp:8EAD8B3507 [3442]
AlternateDataStreams: C:\ProgramData\tyvfcquz.wxt:B63721167D [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk:BE32D07BC5 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FACEIT AC.lnk:550995E265 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Novabench 5.lnk:B68549C808 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Streamlabs Desktop.lnk:578370639A [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk:F208FC6732 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak.lnk:DBB58A0286 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\V380.lnk:942A4CABE6 [3442]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [5646]
FirewallRules: [UDP Query User{BA606EBB-ACA7-464E-89D4-A356F7D7E95F}E:\battlefield 6 event\bf6event.exe] => (Allow) E:\battlefield 6 event\bf6event.exe => No File
FirewallRules: [TCP Query User{FBD4AD8B-A72E-4FAE-9B92-BA605D0FB6D9}E:\battlefield 6 event\bf6event.exe] => (Allow) E:\battlefield 6 event\bf6event.exe => No File
FirewallRules: [TCP Query User{386E5117-D7C3-4CF5-9032-017E7B423828}C:\users\micha\appdata\roaming\bittorrent web\btweb.exe] => (Block) C:\users\micha\appdata\roaming\bittorrent web\btweb.exe => No File
FirewallRules: [UDP Query User{CAF064AD-F740-4F3A-BD93-254EBDBBA0A5}C:\users\micha\appdata\roaming\bittorrent web\btweb.exe] => (Block) C:\users\micha\appdata\roaming\bittorrent web\btweb.exe => No File
FirewallRules: [UDP Query User{E7D841BD-B7A2-414E-AA1D-BD6358E45FE0}C:\program files\bravesoftware\brave-browser\application\brave.exe] => (Allow) C:\program files\bravesoftware\brave-browser\application\brave.exe (Brave Software, Inc. -> Brave Software, Inc.)
FirewallRules: [TCP Query User{15475545-4979-4595-B803-073922E0D13F}E:\sea of thieves\call of duty\content\cod.exe] => (Allow) E:\sea of thieves\call of duty\content\cod.exe => No File
FirewallRules: [UDP Query User{71031F81-EE69-4A14-8C9C-5AE66C0E3C42}E:\sea of thieves\call of duty\content\cod.exe] => (Allow) E:\sea of thieves\call of duty\content\cod.exe => No File
FirewallRules: [TCP Query User{8EDE6D18-C435-431A-8552-E7855E62A2C7}E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe] => (Allow) E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe => No File
FirewallRules: [UDP Query User{8D18AAD1-B496-4F5D-97BE-8DF5127BAF68}E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe] => (Allow) E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe => No File
FirewallRules: [{131E5D88-F4CC-4A8C-ADD0-88EAAF24FCB9}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{1E7BE9C4-0658-45E4-B65F-A85929E8B901}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [TCP Query User{1020EA32-7A2C-4C37-9D71-963B86C936F7}E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe] => (Block) E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe => No File
FirewallRules: [UDP Query User{C0D520F0-B762-490B-873D-D151DA181329}E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe] => (Block) E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe => No File
FirewallRules: [TCP Query User{974B5E9C-F3DC-49BB-955A-C2994803E1B1}C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe => No File
FirewallRules: [UDP Query User{3C8F5FBB-6F9F-464B-90C3-234A1ED944ED}C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe] => (Allow) C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe => No File
FirewallRules: [{E84C56EB-0377-4BF3-9DB9-785A2DAF4798}] => (Allow) C:\Users\micha\AppData\Local\Wondershare\Wondershare NativePush\WsToastNotification.exe => No File
FirewallRules: [TCP Query User{0670EDD1-9B02-4342-8360-761EB4B60763}D:\davinci\resolve.exe] => (Block) D:\davinci\resolve.exe => No File
FirewallRules: [UDP Query User{A9281C5A-67BA-44EE-91CD-3F30EF7C880B}D:\davinci\resolve.exe] => (Block) D:\davinci\resolve.exe => No File
FirewallRules: [{F873D22A-8197-497F-9730-3C660A093C3E}] => (Allow) D:\SteamLibrary\steamapps\common\Ready Or Not\Engine\Binaries\Win64\CrashReporter.exe => No File
FirewallRules: [{2E7AB9CD-A6C1-4429-86C0-62665E93CDE7}] => (Allow) D:\SteamLibrary\steamapps\common\Ready Or Not\Engine\Binaries\Win64\CrashReporter.exe => No File
FirewallRules: [UDP Query User{8BCC2B64-0E9C-4DF8-8046-3FFCDBF0DAE2}D:\world_of_tanks_eu\win64\worldoftanks.exe] => (Block) D:\world_of_tanks_eu\win64\worldoftanks.exe => No File
FirewallRules: [TCP Query User{020F479B-87E5-41C7-8447-D18C7F33A816}C:\program files\docker\docker\resources\com.docker.backend.exe] => (Allow) C:\program files\docker\docker\resources\com.docker.backend.exe => No File
FirewallRules: [UDP Query User{67B178AB-6448-49E0-BD89-D98101310F87}C:\program files\docker\docker\resources\com.docker.backend.exe] => (Allow) C:\program files\docker\docker\resources\com.docker.backend.exe => No File
FirewallRules: [TCP Query User{2EB13A60-1C78-40C4-9334-6298A013F7B0}C:\program files (x86)\gz systems\purevpn\purevpn.exe] => (Allow) C:\program files (x86)\gz systems\purevpn\purevpn.exe => No File
FirewallRules: [UDP Query User{6ED330CC-49FF-4524-B76C-E896E6D1B180}C:\program files (x86)\gz systems\purevpn\purevpn.exe] => (Allow) C:\program files (x86)\gz systems\purevpn\purevpn.exe => No File
FirewallRules: [{1378EC31-F890-4B50-A6F8-82A762159FC9}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{2E6B8883-7DC3-492F-B7FF-55CDD663DC27}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{EE3F9BB2-6DA4-4DD3-92A5-CFE207EA9607}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{90AE84E6-AF25-48FF-8E87-CD9E51CE0C4D}] => (Allow) C:\Program Files\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [{BC434F6A-2664-41EE-B1A2-2E203C9435F3}] => (Allow) %ProgramFiles%\Docker\Docker\Docker Desktop.exe => No File
FirewallRules: [TCP Query User{485C1239-0A7D-447F-89F0-5A6B7D077CAE}C:\users\micha\downloads\anydesk.exe] => (Allow) C:\users\micha\downloads\anydesk.exe => No File
FirewallRules: [UDP Query User{AD38CA56-2A23-4F12-96D6-A761894A58A3}C:\users\micha\downloads\anydesk.exe] => (Allow) C:\users\micha\downloads\anydesk.exe => No File
FirewallRules: [{6245B822-0F08-47AD-8269-E0B68C04BC14}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\ElementsPanelDaemon.exe => No File
FirewallRules: [TCP Query User{9366605A-B99A-4644-81D7-D1CE6FFFA14B}C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe] => (Allow) C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe => No File
FirewallRules: [UDP Query User{B1BD089E-C939-4484-9373-6473763A148B}C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe] => (Allow) C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe => No File
FirewallRules: [TCP Query User{6303E824-75A0-4962-981A-122A4D93EE1B}C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe] => (Block) C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe => No File
FirewallRules: [UDP Query User{9F7EB77E-BED0-493E-84C0-C44F9AC8D0E1}C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe] => (Block) C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe => No File
FirewallRules: [TCP Query User{D31EDD4E-6F1F-48F7-BF04-70624D5CD859}D:\football.life.simulator.early.access\football life simulator.exe] => (Block) D:\football.life.simulator.early.access\football life simulator.exe => No File
FirewallRules: [UDP Query User{415A3AFA-7F76-4442-B9A4-C3D630C920A9}D:\football.life.simulator.early.access\football life simulator.exe] => (Block) D:\football.life.simulator.early.access\football life simulator.exe => No File
FirewallRules: [TCP Query User{FC88C696-51DA-4C64-8193-66421996A2FE}D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe] => (Block) D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe => No File
FirewallRules: [UDP Query User{0C368F59-947E-43F0-8801-48D67EAEA95C}D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe] => (Block) D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe => No File
FirewallRules: [TCP Query User{1B413620-1991-4B9C-A665-08DE87CC761F}D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe] => (Block) D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe => No File
FirewallRules: [UDP Query User{78BE4651-1CCF-4BDB-B782-56D461028DA6}D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe] => (Block) D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe => No File
FirewallRules: [TCP Query User{9863FE5E-073C-4741-9835-2AF7609F2286}D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe] => (Block) D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe => No File
FirewallRules: [UDP Query User{3D1A32C3-C4B8-4BCB-918A-B1F55C7E3BA4}D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe] => (Block) D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe => No File
FirewallRules: [{E79F17D6-ED1E-4DE4-A3B2-4784365B01F1}] => (Allow) D:\SteamLibrary\steamapps\common\Delta Force\Launcher\df_launcher.exe => No File
FirewallRules: [{9EECD3EB-4F9B-46A7-975A-A6E28031CEA0}] => (Allow) D:\SteamLibrary\steamapps\common\Delta Force\Launcher\df_launcher.exe => No File
FirewallRules: [TCP Query User{27BA6085-CFC9-4437-9507-DA440ED57636}E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe] => (Allow) E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe => No File
FirewallRules: [UDP Query User{261BA844-0209-455B-8C8F-EDF6C567C0A0}E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe] => (Allow) E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe => No File
FirewallRules: [{619366B2-C57B-40E0-A55E-730090104413}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe => No File
FirewallRules: [TCP Query User{E66BF433-B841-40DD-B35F-2B0901D71BAE}C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe] => (Block) C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe => No File
FirewallRules: [UDP Query User{E26E2408-5876-4D03-941E-E996B41B9BFC}C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe] => (Block) C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe => No File
FirewallRules: [{17D4C8B3-53E8-4E4A-B51F-6221C67467A5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Phasmophobia\Phasmophobia.exe => No File
FirewallRules: [{BC8EFC50-5F78-4B9E-AEC7-F41F139F5A19}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Phasmophobia\Phasmophobia.exe => No File
FirewallRules: [TCP Query User{3AD948F4-1D6A-4220-9236-6B4A136B9F60}D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe] => (Block) D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe => No File
FirewallRules: [UDP Query User{78CA9D04-A3CD-4C1F-A96C-D66A66373624}D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe] => (Block) D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe => No File
FirewallRules: [{CDAD4C8E-D429-4F51-8219-15326AA59615}] => (Allow) E:\SteamLibrary\steamapps\common\Mafia The Old Country\MafiaTheOldCountry\Binaries\Win64\MafiaTheOldCountry.exe => No File
FirewallRules: [{5B2A4E1C-3EBA-4790-9E81-8F698209F775}] => (Allow) E:\SteamLibrary\steamapps\common\Mafia The Old Country\MafiaTheOldCountry\Binaries\Win64\MafiaTheOldCountry.exe => No File
FirewallRules: [TCP Query User{ED1B53EB-1F37-4865-9AF7-DC72E73392D9}E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe] => (Allow) E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe => No File
FirewallRules: [UDP Query User{0D02FAD8-020B-4609-A000-1DEC57347CF5}E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe] => (Allow) E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe => No File
FirewallRules: [TCP Query User{49223C06-B8A3-408F-9F6D-73A2C0C54603}D:\geo.political.simulator.5.build.21132820\_start.exe] => (Block) D:\geo.political.simulator.5.build.21132820\_start.exe => No File
FirewallRules: [UDP Query User{651650A5-6458-41C0-8FC7-6D16FE172277}D:\geo.political.simulator.5.build.21132820\_start.exe] => (Block) D:\geo.political.simulator.5.build.21132820\_start.exe => No File
FirewallRules: [TCP Query User{8768545B-4649-4DF0-925E-893EA772158D}D:\bank.simulator.build.20501759\bank simulator.exe] => (Block) D:\bank.simulator.build.20501759\bank simulator.exe => No File
FirewallRules: [UDP Query User{52D4F417-1589-49BA-9BC6-DFB9B5B36477}D:\bank.simulator.build.20501759\bank simulator.exe] => (Block) D:\bank.simulator.build.20501759\bank simulator.exe => No File
FirewallRules: [{63542FC3-E15E-4ED1-AF10-E862EF306301}] => (Allow) E:\SteamLibrary\steamapps\common\MarvelRivals\MarvelRivals_Launcher.exe => No File
FirewallRules: [{F8AC2413-BE69-4BD4-99C7-7BE6F6E47E99}] => (Allow) E:\SteamLibrary\steamapps\common\MarvelRivals\MarvelRivals_Launcher.exe => No File
FirewallRules: [TCP Query User{D7566707-6ACB-473F-8391-D06B97EDC2FE}D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe] => (Block) D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe => No File
FirewallRules: [UDP Query User{A21FAB12-608A-4C75-B6B7-F758ADAD27F2}D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe] => (Block) D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe => No File
FirewallRules: [TCP Query User{717727EE-545A-4CBC-B830-E15494BA6714}C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe] => (Block) C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe => No File
FirewallRules: [UDP Query User{67C34866-CEBB-45AA-9493-945586A2E767}C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe] => (Block) C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe => No File
FirewallRules: [TCP Query User{A302FDF6-D4FB-4BD2-93D3-D20A7581706D}D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe] => (Block) D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe => No File
FirewallRules: [UDP Query User{A24B9A21-36B4-4BE5-846C-0C355D0CD68A}D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe] => (Block) D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe => No File
FirewallRules: [{9FAA9656-B894-4090-9C6C-1E1744836F80}] => (Allow) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [{56E477B2-F75E-45A3-B06A-DC0A7E425435}] => (Allow) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [{F0A0F709-9870-4B3A-86CF-E8E51B01274F}] => (Block) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [{D7FACDDF-8015-4085-A0FE-A1AC3CD68917}] => (Block) C:\Program Files (x86)\Overwolf\0.291.0.2\OverwolfBrowser.exe => No File
FirewallRules: [TCP Query User{EE57F4D8-EDA0-4015-AEFE-D5A211453CA8}D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe] => (Block) D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe => No File
FirewallRules: [UDP Query User{666BAD15-61A2-4216-938C-19D73595FABD}D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe] => (Block) D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe => No File
FirewallRules: [{9B4A50DB-9C53-4049-A0F2-B8DD70E3FE08}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\REANIMAL Demo\Everholm\Binaries\Win64\REANIMAL.exe => No File
FirewallRules: [{44F12B77-E7D7-4713-AFF8-BC2DBEAB7CBC}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\REANIMAL Demo\Everholm\Binaries\Win64\REANIMAL.exe => No File
FirewallRules: [{7BC07D96-D236-4452-92E6-0F1929373823}] => (Allow) E:\SteamLibrary\steamapps\common\RESIDENT EVIL requiem BIOHAZARD requiem\re9.exe => No File
FirewallRules: [{6040D1B2-7EF1-4EF1-822F-9BE469363A7F}] => (Allow) E:\SteamLibrary\steamapps\common\RESIDENT EVIL requiem BIOHAZARD requiem\re9.exe => No File
FirewallRules: [TCP Query User{F8EC5A97-19AA-43E3-BF64-7C02F1191CFA}C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe] => (Allow) C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe => No File
FirewallRules: [UDP Query User{9BCD94D3-2983-4669-B8F2-9151CD414C11}C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe] => (Allow) C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe => No File
FirewallRules: [TCP Query User{57487E1A-1D38-4C31-A43B-DBF09551A900}D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe] => (Allow) D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe => No File
FirewallRules: [UDP Query User{D2A7A198-93F4-4B0C-8F85-FBD7DA39AFEF}D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe] => (Allow) D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe => No File
FirewallRules: [{2BB9BD6C-1901-4EAB-8634-33EE71AC9580}] => (Allow) E:\FunPlus\Sea of Conquest\Launcher.exe => No File
FirewallRules: [{FE0DAA54-F25E-470E-83C5-26D33F9186FF}] => (Allow) E:\FunPlus\Sea of Conquest\Launcher.exe => No File
FirewallRules: [{949E6E87-2E32-4425-8171-D7017509969C}] => (Allow) E:\FunPlus\Sea of Conquest\ngame\1.1.680.396679\seaofconquest.exe => No File
FirewallRules: [{DE20E273-C14E-439A-9D8E-A9A832E100EC}] => (Allow) E:\FunPlus\Sea of Conquest\ngame\1.1.680.396679\seaofconquest.exe => No File
E:\GTA SAN ANDREAS\HOODLUM\hlm-intro.exe
E:\HOODLUM\hlm-intro.exe
E:\GTA SAN ANDREAS\HOODLUM\hlm-intro.exe
HKLM-x32\...\Run: [mo_pc_offical_soc] => E:\FunPlus\Sea of Conquest\Launcher.exe (No File)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION
Task: {4A23D69E-5CF9-42ED-A89C-293693D2BCFB} - System32\Tasks\AVG\AVG Driver Updater Update => C:\Program Files\Common Files\AVG\Icarus\avg-du\icarus.exe /update:avg-du /silent (No File)
Task: {91EA2448-4E55-4FAD-BC70-DAB9590D29B9} - System32\Tasks\ASUS\P508PowerAgent_sdk => C:\Program Files (x86)\ASUS\ArmouryDevice\dll\ShareFromArmouryIII\Mouse\ROG STRIX CARRY\P508PowerAgent.exe (No File)
Task: {ABC7034D-3937-4B4A-82C7-95D2D3AE5D97} - System32\Tasks\Microsoft\Windows\Setup\SnapshotCleanupTask => C:\Windows\System32\OOBE\SetupPlatform\SetupPlatform.exe -removesnapshot (No File)
Task: {0BB36A32-0D9E-4297-AFD7-6BD7B5DB4C9B} - System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => %windir%\System32\UNP\UpdateNotificationMgr.exe (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: C:\WINDOWS\Tasks\npcapwatchdog.job => C:\Program Files\Npcap\CheckStatus.bat <==== ATTENTION
CHR HKLM-x32\...\Chrome\Extension: [kadaohckdkghfaclhjmkmplebcdcnfnp] - <no Path/update_url>
R3 cpuz158; C:\WINDOWS\temp\cpuz158\cpuz158_x64.sys [44576 2026-06-21] (Microsoft Windows Hardware Compatibility Publisher -> CPUID) <==== ATTENTION
S3 cpuz159; \??\C:\WINDOWS\temp\cpuz159\cpuz159_x64.sys (No File) <==== ATTENTION
C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
C:\Users\micha\AppData\Local\0119AC2FC90D95AC063B177717B7B3B6
C:\Users\micha\AppData\Local\66302C3ABCF0203701B7744560199EA1
C:\Users\micha\AppData\Local\8B1D271A9281777F9A783A29EC6394D2

EmptyTemp:
Hosts:
End
*****************

Processes closed successfully.
(HKU\S-1-5-21-756127909-4058986209-260929036-1001\...\{07F54E47-DE08-486E-921C-D09624774BB6}_is1)<==== ATTENTION => Error: No automatic fix found for this entry.
HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{14100442-9664-1407-2647-000000000000} => removed successfully
HKU\S-1-5-21-756127909-4058986209-260929036-1001_Classes\CLSID\{73F8144D-FFD8-4496-B65E-4D756FF689FE} => removed successfully
HKLM\Software\Classes\Directory\ShellEx\ContextMenuHandlers\PowerISO => removed successfully
HKLM\Software\Classes\Folder\ShellEx\ContextMenuHandlers\PowerISO => removed successfully
C:\ProgramData\mntemp => ":8EAD8B3507" ADS removed successfully
C:\ProgramData\tyvfcquz.wxt => ":B63721167D" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Epic Games Launcher.lnk => ":BE32D07BC5" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FACEIT AC.lnk => ":550995E265" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Novabench 5.lnk => ":B68549C808" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Streamlabs Desktop.lnk => ":578370639A" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client.lnk => ":F208FC6732" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak.lnk => ":DBB58A0286" ADS removed successfully
C:\ProgramData\Microsoft\Windows\Start Menu\Programs\V380.lnk => ":942A4CABE6" ADS removed successfully
C:\Users\Public\Shared Files => ":VersionCache" ADS removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{BA606EBB-ACA7-464E-89D4-A356F7D7E95F}E:\battlefield 6 event\bf6event.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{FBD4AD8B-A72E-4FAE-9B92-BA605D0FB6D9}E:\battlefield 6 event\bf6event.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{386E5117-D7C3-4CF5-9032-017E7B423828}C:\users\micha\appdata\roaming\bittorrent web\btweb.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{CAF064AD-F740-4F3A-BD93-254EBDBBA0A5}C:\users\micha\appdata\roaming\bittorrent web\btweb.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{E7D841BD-B7A2-414E-AA1D-BD6358E45FE0}C:\program files\bravesoftware\brave-browser\application\brave.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{15475545-4979-4595-B803-073922E0D13F}E:\sea of thieves\call of duty\content\cod.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{71031F81-EE69-4A14-8C9C-5AE66C0E3C42}E:\sea of thieves\call of duty\content\cod.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{8EDE6D18-C435-431A-8552-E7855E62A2C7}E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{8D18AAD1-B496-4F5D-97BE-8DF5127BAF68}E:\sea of thieves\sea of thieves\content\athena\binaries\wingdk\sotgame.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{131E5D88-F4CC-4A8C-ADD0-88EAAF24FCB9}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1E7BE9C4-0658-45E4-B65F-A85929E8B901}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{1020EA32-7A2C-4C37-9D71-963B86C936F7}E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{C0D520F0-B762-490B-873D-D151DA181329}E:\kingdom.come.deliverance.ii.gold.edition-insaneramzes\bin\win64mastermastersteampgo\kingdomcome.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{974B5E9C-F3DC-49BB-955A-C2994803E1B1}C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{3C8F5FBB-6F9F-464B-90C3-234A1ED944ED}C:\program files (x86)\steam\steamapps\common\marvelrivals\marvelgame\marvel\binaries\win64\marvel-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E84C56EB-0377-4BF3-9DB9-785A2DAF4798}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{0670EDD1-9B02-4342-8360-761EB4B60763}D:\davinci\resolve.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{A9281C5A-67BA-44EE-91CD-3F30EF7C880B}D:\davinci\resolve.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F873D22A-8197-497F-9730-3C660A093C3E}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2E7AB9CD-A6C1-4429-86C0-62665E93CDE7}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{8BCC2B64-0E9C-4DF8-8046-3FFCDBF0DAE2}D:\world_of_tanks_eu\win64\worldoftanks.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{020F479B-87E5-41C7-8447-D18C7F33A816}C:\program files\docker\docker\resources\com.docker.backend.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{67B178AB-6448-49E0-BD89-D98101310F87}C:\program files\docker\docker\resources\com.docker.backend.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{2EB13A60-1C78-40C4-9334-6298A013F7B0}C:\program files (x86)\gz systems\purevpn\purevpn.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{6ED330CC-49FF-4524-B76C-E896E6D1B180}C:\program files (x86)\gz systems\purevpn\purevpn.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1378EC31-F890-4B50-A6F8-82A762159FC9}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2E6B8883-7DC3-492F-B7FF-55CDD663DC27}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{EE3F9BB2-6DA4-4DD3-92A5-CFE207EA9607}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{90AE84E6-AF25-48FF-8E87-CD9E51CE0C4D}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BC434F6A-2664-41EE-B1A2-2E203C9435F3}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{485C1239-0A7D-447F-89F0-5A6B7D077CAE}C:\users\micha\downloads\anydesk.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{AD38CA56-2A23-4F12-96D6-A761894A58A3}C:\users\micha\downloads\anydesk.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6245B822-0F08-47AD-8269-E0B68C04BC14}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{9366605A-B99A-4644-81D7-D1CE6FFFA14B}C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{B1BD089E-C939-4484-9373-6473763A148B}C:\program files\tiktok live studio\0.54.0\tiktok live studio.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{6303E824-75A0-4962-981A-122A4D93EE1B}C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{9F7EB77E-BED0-493E-84C0-C44F9AC8D0E1}C:\program files\tiktok live studio\0.63.0\tiktok live studio.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{D31EDD4E-6F1F-48F7-BF04-70624D5CD859}D:\football.life.simulator.early.access\football life simulator.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{415A3AFA-7F76-4442-B9A4-C3D630C920A9}D:\football.life.simulator.early.access\football life simulator.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{FC88C696-51DA-4C64-8193-66421996A2FE}D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{0C368F59-947E-43F0-8801-48D67EAEA95C}D:\steamlibrary\steamapps\common\deceit 2\deceit2\binaries\win64\deceit2game-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{1B413620-1991-4B9C-A665-08DE87CC761F}D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{78BE4651-1CCF-4BDB-B782-56D461028DA6}D:\steamlibrary\steamapps\common\fragpunk\fragpunk\binaries\win64\fragpunk.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{9863FE5E-073C-4741-9835-2AF7609F2286}D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{3D1A32C3-C4B8-4BCB-918A-B1F55C7E3BA4}D:\inzoi (early access)\inzoi\blueclient\binaries\win64\inzoi-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E79F17D6-ED1E-4DE4-A3B2-4784365B01F1}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9EECD3EB-4F9B-46A7-975A-A6E28031CEA0}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{27BA6085-CFC9-4437-9507-DA440ED57636}E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{261BA844-0209-455B-8C8F-EDF6C567C0A0}E:\deadisland2\deadisland\binaries\win64\deadisland-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{619366B2-C57B-40E0-A55E-730090104413}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{E66BF433-B841-40DD-B35F-2B0901D71BAE}C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{E26E2408-5876-4D03-941E-E996B41B9BFC}C:\program files (x86)\steam\steamapps\common\rematch playtest\runtime\binaries\win64\runtimeclient-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{17D4C8B3-53E8-4E4A-B51F-6221C67467A5}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BC8EFC50-5F78-4B9E-AEC7-F41F139F5A19}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{3AD948F4-1D6A-4220-9236-6B4A136B9F60}D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{78CA9D04-A3CD-4C1F-A96C-D66A66373624}D:\prison.escape.simulator.dig.out.build.19290522\game\prison escape simulator\prison escape simulator.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{CDAD4C8E-D429-4F51-8219-15326AA59615}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{5B2A4E1C-3EBA-4790-9E81-8F698209F775}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{ED1B53EB-1F37-4865-9AF7-DC72E73392D9}E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{0D02FAD8-020B-4609-A000-1DEC57347CF5}E:\steamlibrary\steamapps\common\battlefield 6\bf6.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{49223C06-B8A3-408F-9F6D-73A2C0C54603}D:\geo.political.simulator.5.build.21132820\_start.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{651650A5-6458-41C0-8FC7-6D16FE172277}D:\geo.political.simulator.5.build.21132820\_start.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{8768545B-4649-4DF0-925E-893EA772158D}D:\bank.simulator.build.20501759\bank simulator.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{52D4F417-1589-49BA-9BC6-DFB9B5B36477}D:\bank.simulator.build.20501759\bank simulator.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{63542FC3-E15E-4ED1-AF10-E862EF306301}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F8AC2413-BE69-4BD4-99C7-7BE6F6E47E99}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{D7566707-6ACB-473F-8391-D06B97EDC2FE}D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{A21FAB12-608A-4C75-B6B7-F758ADAD27F2}D:\deconstruction.simulator.build.21165092\deconstructionsim\binaries\win64\deconstructionsim-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{717727EE-545A-4CBC-B830-E15494BA6714}C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{67C34866-CEBB-45AA-9493-945586A2E767}C:\users\micha\downloads\fireworks.mania.v2025.12.8\fireworks.mania.v2025.12.8\fireworks mania.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{A302FDF6-D4FB-4BD2-93D3-D20A7581706D}D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{A24B9A21-36B4-4BE5-846C-0C355D0CD68A}D:\ultimate.theater.simulator.v1.3.7\ultimate.theater.simulator.v1.3.7\ultimatetheatersimulator.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9FAA9656-B894-4090-9C6C-1E1744836F80}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{56E477B2-F75E-45A3-B06A-DC0A7E425435}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F0A0F709-9870-4B3A-86CF-E8E51B01274F}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D7FACDDF-8015-4085-A0FE-A1AC3CD68917}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{EE57F4D8-EDA0-4015-AEFE-D5A211453CA8}D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{666BAD15-61A2-4216-938C-19D73595FABD}D:\games\quarantine zone the last check\qzsim\binaries\win64\qzsim-win64-shipping.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9B4A50DB-9C53-4049-A0F2-B8DD70E3FE08}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{44F12B77-E7D7-4713-AFF8-BC2DBEAB7CBC}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7BC07D96-D236-4452-92E6-0F1929373823}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6040D1B2-7EF1-4EF1-822F-9BE469363A7F}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{F8EC5A97-19AA-43E3-BF64-7C02F1191CFA}C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{9BCD94D3-2983-4669-B8F2-9151CD414C11}C:\users\micha\onedrive\plocha\mimesis\mimesis.v0.2.8-ofme\mimesis\mimesis.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{57487E1A-1D38-4C31-A43B-DBF09551A900}D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{D2A7A198-93F4-4B0C-8F85-FBD7DA39AFEF}D:\steamlibrary\steamapps\common\counter-strike global offensive\game\bin\win64\cs2.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2BB9BD6C-1901-4EAB-8634-33EE71AC9580}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{FE0DAA54-F25E-470E-83C5-26D33F9186FF}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{949E6E87-2E32-4425-8171-D7017509969C}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{DE20E273-C14E-439A-9D8E-A9A832E100EC}" => removed successfully
E:\GTA SAN ANDREAS\HOODLUM\hlm-intro.exe => moved successfully
E:\HOODLUM\hlm-intro.exe => moved successfully
"E:\GTA SAN ANDREAS\HOODLUM\hlm-intro.exe" => not found
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\mo_pc_offical_soc" => removed successfully

"C:\WINDOWS\system32\GroupPolicy\Machine" Folder move:

C:\WINDOWS\system32\GroupPolicy\Machine => moved successfully
C:\WINDOWS\system32\GroupPolicy\GPT.ini => moved successfully
C:\WINDOWS\SysWOW64\GroupPolicy\GPT.ini => moved successfully
C:\ProgramData\NTUSER.pol => moved successfully
HKLM\SOFTWARE\Policies\Google => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Boot\{4A23D69E-5CF9-42ED-A89C-293693D2BCFB}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{4A23D69E-5CF9-42ED-A89C-293693D2BCFB}" => removed successfully
C:\WINDOWS\System32\Tasks\AVG\AVG Driver Updater Update => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\AVG\AVG Driver Updater Update" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{91EA2448-4E55-4FAD-BC70-DAB9590D29B9}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{91EA2448-4E55-4FAD-BC70-DAB9590D29B9}" => removed successfully
C:\WINDOWS\System32\Tasks\ASUS\P508PowerAgent_sdk => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\ASUS\P508PowerAgent_sdk" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{ABC7034D-3937-4B4A-82C7-95D2D3AE5D97}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{ABC7034D-3937-4B4A-82C7-95D2D3AE5D97}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Setup\SnapshotCleanupTask => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Setup\SnapshotCleanupTask" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{0BB36A32-0D9E-4297-AFD7-6BD7B5DB4C9B}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0BB36A32-0D9E-4297-AFD7-6BD7B5DB4C9B}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UNP\RunUpdateNotificationMgr => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UNP\RunUpdateNotificationMgr" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker" => removed successfully
C:\WINDOWS\Tasks\npcapwatchdog.job => moved successfully
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\kadaohckdkghfaclhjmkmplebcdcnfnp => removed successfully
cpuz158 => Service stopped successfully.
HKLM\System\CurrentControlSet\Services\cpuz158 => removed successfully
cpuz158 => service removed successfully
HKLM\System\CurrentControlSet\Services\cpuz159 => removed successfully
cpuz159 => service removed successfully
Could not move "C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2" => Scheduled to move on reboot.
C:\Users\micha\AppData\Local\0119AC2FC90D95AC063B177717B7B3B6 => moved successfully
C:\Users\micha\AppData\Local\66302C3ABCF0203701B7744560199EA1 => moved successfully
C:\Users\micha\AppData\Local\8B1D271A9281777F9A783A29EC6394D2 => moved successfully
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.

=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 189563174 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 471771544 B
Windows/system/drivers => 135007285 B
Edge => 117706374 B
Chrome => 235332767 B
Brave => 487844641 B
Firefox => 56820878 B
Opera => 0 B

Local\Temp, Local\*.tmp, LocalLow\Temp, Roaming\Temp, Roaming\*.tmp , IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 252 B
systemprofile32 => 698138 B
LocalService => 5754 B
NetworkService => 170856 B
micha => 24706178365 B

RecycleBin => 13560774059 B
EmptyTemp: => 37.2 GB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 21-06-2026 13:47:43)

C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2 => Could not move

==== End of Fixlog 13:47:43 ====

Re: Prosím o kontrolu logu z důvodu úbytku místa na SSD

Odeslal: 21 Črv 2026 13:43
od Rudy
Smazáno. Nastala nějaká změna?

Re: Prosím o kontrolu logu z důvodu úbytku místa na SSD

Odeslal: 21 Črv 2026 14:00
od pitrisin
Uvolnilo se místo. Teď čekám jestli se to zase nezaplní. Zatím děkuji.

Re: Prosím o kontrolu logu z důvodu úbytku místa na SSD

Odeslal: 21 Črv 2026 15:28
od Rudy
OK. Zařtím není zač. :)