Stránka 11

kontrola frst so zameranim

Odeslal: 14 Zář 2026 20:09
od 5manager5
zdravím,

na keylogger a špehovací program v pc, dakujem

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 09-09-2026
Ran by igorv (administrator) on SAUL (HP HP ProBook 455 15.6 inch G10 Notebook PC) (14-09-2026 21:02:10)
Running from C:\Users\igorv\Downloads\FRST64.exe
Loaded Profiles: igorv
Platform: Microsoft Windows 11 Home Version 25H2 26200.9445 (X64) Language: Slovenčina (Slovensko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe
(Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe
(C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe ->) (HP Inc. -> Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\HPTouchpointManagerTray.exe
(C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Providers\Hewlett-Packard\CoreProvider\CoreProvider.exe
(C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Providers\Hewlett-Packard\Software Package Manager\SoftwarePackageManager.exe
(C:\Program Files\Google\Drive File Stream\131.0.2.0\GoogleDriveFS.exe ->) (Google LLC -> ) C:\Program Files\Google\Drive File Stream\131.0.2.0\crashpad_handler.exe
(C:\Program Files\Google\Drive File Stream\131.0.2.0\GoogleDriveFS.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\152.0.4191.66\msedgewebview2.exe
(C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSServ.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\AMDRSSrcExt.exe
(C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\RadeonSoftware.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m\radeonsoftware\cncmd.exe
(DriverStore\FileRepository\snapo64.inf_amd64_33d62b688b005396\SNAPOSS64.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Sonitude Corporation) C:\Windows\System32\DriverStore\FileRepository\snapo64.inf_amd64_33d62b688b005396\SNAPOS64.exe
(DriverStore\FileRepository\u0202308.inf_amd64_76ac7eae7a1a50fa\B025980\atiesrxx.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0202308.inf_amd64_76ac7eae7a1a50fa\B025980\atieclxx.exe
(explorer.exe ->) (Google LLC -> Google LLC.) C:\Program Files\Google\Drive File Stream\131.0.2.0\GoogleDriveFS.exe
(explorer.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.WindowsNotepad_11.2607.14.0_x64__8wekyb3d8bbwe\Notepad\Notepad.exe
(explorer.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMToastNotification.exe
(explorer.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_e80b0ba89d6747cf\RtkAudUService64.exe
(Google LLC -> Google LLC.) C:\Program Files\Google\Drive File Stream\131.0.2.0\GoogleDriveFS.exe
(HP Inc. -> ) C:\Program Files\WindowsApps\AD2F1837.myHP_60.52634.13225.0_x64__v10z8vjag6ke6\win32\DesktopExtension.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\152.0.4191.66\msedgewebview2.exe <11>
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\GameInputSvc.exe
(Microsoft Corporation -> Windows (R) Win 7 DDK provider) C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_e80b0ba89d6747cf\RtkAudUService64.exe
(services.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Windows\System32\DriverStore\FileRepository\amdfendr.inf_amd64_47725f5567f931ee\amdfendrsr.exe
(services.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0202308.inf_amd64_76ac7eae7a1a50fa\B025980\atiesrxx.exe
(services.exe ->) (Bromium UK Limited -> HP) C:\Program Files\HP\Security Update Service\4.4.33.1019\SecurityUpdateService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Tools\WatchDogService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HPCommRecovery\HPCommRecovery.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\Poly\Lens Control Service\LensService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_b532962506597d3d\x64\TouchpointAnalyticsClientService.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\AppHelperCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\DiagsCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\NetworkCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\SysInfoCap.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_0d182501a33019e2\HotKeyServiceUWP.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_0d182501a33019e2\HPAudioAnalytics.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_0d182501a33019e2\LanWlanWwanSwitchingServiceUWP.exe
(services.exe ->) (HP Inc. -> HP Inc.) C:\Windows\System32\DriverStore\FileRepository\hpsvcsscancomp.inf_amd64_df5bc9f22dc3c742\x64\hpsvcsscan.exe
(services.exe ->) (HP Inc. -> HP) C:\Program Files (x86)\HP\Shared\hpqwmiex.exe
(services.exe ->) (MEDIATEK INC. -> MediaTek Inc.) C:\Windows\System32\mtkbtsvc.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\System32\GameInputSvc.exe
(services.exe ->) (Microsoft Corporation -> Windows (R) Win 7 DDK provider) C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia) C:\Windows\System32\FMService64.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Sonitude Corporation) C:\Windows\System32\DriverStore\FileRepository\snapo64.inf_amd64_33d62b688b005396\SNAPOSS64.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26080.3-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26080.3-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26080.3-0\NisSrv.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_e80b0ba89d6747cf\RtkAudUService64.exe
(sihost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2602.23002.0_x64__8wekyb3d8bbwe\MicrosoftSecurityApp\MicrosoftSecurityApp.exe
(svchost.exe ->) (HP Inc. -> HP Inc.) C:\Program Files\HP\HP Client Security Manager\HP.ClientSecurityManager.exe
(svchost.exe ->) (HP Inc. -> HP) C:\Program Files (x86)\HP\HP ICS\ICS.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\SDXHelper.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\NgcIso.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\AppActions.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_e80b0ba89d6747cf\RtkAudUService64.exe [3495976 2026-07-16] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKU\S-1-5-19\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\131.0.2.0\GoogleDriveFS.exe [105726104 2026-09-10] (Google LLC -> Google LLC.)
HKU\S-1-5-20\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\131.0.2.0\GoogleDriveFS.exe [105726104 2026-09-10] (Google LLC -> Google LLC.)
HKU\S-1-5-21-2384847340-952867437-1279697988-1001\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\131.0.2.0\GoogleDriveFS.exe [105726104 2026-09-10] (Google LLC -> Google LLC.)
HKU\S-1-5-21-2384847340-952867437-1279697988-1001\...\Run: [MicrosoftEdgeAutoLaunch_12DCDEA817FD98234F2AB1F8B100D4B7] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [5417288 2026-09-10] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\131.0.2.0\GoogleDriveFS.exe [105726104 2026-09-10] (Google LLC -> Google LLC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4924568 2026-08-11] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\153.0.8010.37\Installer\chrmstp.exe [8019608 2026-09-09] (Google LLC -> Google LLC)
Startup: C:\Users\igorv\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Odoslanie do aplikácie OneNote.lnk [2026-02-22]
ShortcutTarget: Odoslanie do aplikácie OneNote.lnk -> C:\Program Files\Microsoft Office\root\Office16\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\LensDesktop1xUninstaller.lnk [2025-10-28]
ShortcutTarget: LensDesktop1xUninstaller.lnk -> C:\Program Files\Poly\Poly Lens Desktop\LensDesktop1xUninstaller\LensDesktop1xUninstaller.exe (HP Inc. -> HP Inc.)

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {2662C635-38EE-4472-959F-847ED9C4C666} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem152.0.7933.0{49FCBC61-F9D4-4C27-ABB8-14300C38488D} => C:\Program Files (x86)\Google\GoogleUpdater\152.0.7933.0\updater.exe [9512088 2026-07-05] (Google LLC -> Google LLC)
Task: {70C6C139-06FE-4D97-8EAD-C723706443CE} - System32\Tasks\GoogleUserPEH\RunPlatformExperienceHelper_Daily => C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4924568 2026-08-11] (Google LLC -> Google LLC)
Task: {9DFDDD76-0D77-4947-BD4F-1B699ACCEE85} - System32\Tasks\GoogleUserPEH\RunPlatformExperienceHelper_Metrics => C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4924568 2026-08-11] (Google LLC -> Google LLC)
Task: {6ACA97AB-2916-4516-96FC-F66A9642D77F} - System32\Tasks\GoogleUserPEH\RunPlatformExperienceHelperOnUnlock => C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [4924568 2026-08-11] (Google LLC -> Google LLC)
Task: {63F9F686-0E6F-47E0-8341-5D149B3E46F5} - System32\Tasks\Hewlett-Packard\HP Diagnostics\ABO => C:\windows\system32\cmd.exe [344064 2026-08-27] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://ABO
Task: {AC70CF3B-3AC0-475D-B90F-22DC329AD2BB} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BatteryStatusError => C:\windows\system32\cmd.exe [344064 2026-08-27] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BatteryStatusError
Task: {E0BE6772-64CD-4EAC-A32F-3650AC09FEA9} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BatteryStatusTest => C:\windows\system32\cmd.exe [344064 2026-08-27] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BatteryStatusTest
Task: {2B064F5A-B560-440C-9C66-C1C4B53287EE} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BCF => C:\windows\system32\cmd.exe [344064 2026-08-27] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BCF
Task: {55FAE072-517B-4643-BA26-1D1999823548} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BHM1 => C:\windows\system32\cmd.exe [344064 2026-08-27] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BHM1
Task: {67ECA950-491C-4B84-9953-2BA7326C4102} - System32\Tasks\Hewlett-Packard\HP Diagnostics\BHM2 => C:\windows\system32\cmd.exe [344064 2026-08-27] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://BHM2
Task: {6A03296A-2E0F-494B-BE39-9F2938217981} - System32\Tasks\Hewlett-Packard\HP Diagnostics\LaunchUI => C:\windows\system32\cmd.exe [344064 2026-08-27] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://LaunchUI
Task: {834780AF-6E13-41CF-B49D-5F8ECF7D6563} - System32\Tasks\Hewlett-Packard\HP Diagnostics\ShowUI => C:\windows\system32\cmd.exe [344064 2026-08-27] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags:
Task: {A4AA8AD6-B839-439E-B20B-0AA689337C9D} - System32\Tasks\Hewlett-Packard\HP Diagnostics\SmartCheckError => C:\windows\system32\cmd.exe [344064 2026-08-27] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://SmartCheckError
Task: {59A3FDEA-F9F2-4E14-9182-597D9A9B920D} - System32\Tasks\Hewlett-Packard\HP Diagnostics\SmartCheckTest => C:\windows\system32\cmd.exe [344064 2026-08-27] (Microsoft Windows -> Microsoft Corporation) -> /c start hpdiags://SmartCheckTest
Task: {4B815F81-D760-4C6F-975D-FFCC98D9CA98} - System32\Tasks\Hewlett-Packard\HP Diagnostics\Uninstall-BatteryStatusTest => c:\Windows\System32\schtasks.exe [253952 2025-10-01] (Microsoft Windows -> Microsoft Corporation) -> /Change /Disable /tn "\Hewlett-Packard\HP Diagnostics\BatteryStatusTest"
Task: {2485C39A-E871-4B62-87F9-F7E02C2A2B7B} - System32\Tasks\Hewlett-Packard\HP Diagnostics\Uninstall-SmartCheckTest => c:\Windows\System32\schtasks.exe [253952 2025-10-01] (Microsoft Windows -> Microsoft Corporation) -> /Change /Disable /tn "\Hewlett-Packard\HP Diagnostics\SmartCheckTest"
Task: {D6FF20DD-8234-4544-B55A-ECF4878D363A} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Report => C:\Program Files (x86)\HP\HP Support Framework\Resources\HPSFReport.exe [480264 2026-06-16] (HP Inc. -> HP Inc.)
Task: {BFC52B0A-81AF-4D96-8F05-E912F68A0227} - System32\Tasks\HP\Consent Manager Launcher => C:\windows\system32\sc.exe [102400 2025-07-10] (Microsoft Windows -> Microsoft Corporation) -> start hptouchpointanalyticsservice
Task: {DA847129-1FBC-49A8-95F1-9AB56F0DADCB} - System32\Tasks\HP\HP ICS\ICS => C:\Program Files (x86)\HP\HP ICS\ICS.exe [78979088 2024-07-31] (HP Inc. -> HP)
Task: {EF646171-92E5-4817-95EA-0F878D45E045} - System32\Tasks\HP\HP Wolf Security\Launch Console => C:\Program Files\HP\HP Client Security Manager\HP.ClientSecurityManager.exe [263752 2026-07-13] (HP Inc. -> HP Inc.)
Task: {1AC9AC68-A9ED-474A-9EE3-DB35AD5C4615} - System32\Tasks\HPOneAgentRepairTask => C:\ProgramData\Package Cache\{D3913CAA-0A30-494D-AE06-F79A68997FAB}\HPOneAgent.exe [1169760 2025-10-29] (HP Inc. -> HP Inc; HP Development Company, L.P.)
Task: {F6593CAA-7C46-45D4-B30B-E8A6EB850A10} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16470320 2026-09-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {02BDBCEE-C7C2-49BE-B635-613564F1DE01} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28440896 2026-09-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {DD5E29E1-3C64-4750-BB2A-E6C71E675B0F} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe [70064 2026-09-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {38B2DBDB-E9A9-4213-807C-242E906A0215} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28440896 2026-09-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {5ABC3212-1AF9-49F5-847C-E2E48483E556} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [426264 2026-09-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {681C337C-DBDC-401C-99A3-FEEC10403456} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [426264 2026-09-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {58479B79-16B5-4566-8682-CBC6A96CAD0C} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [1328920 2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
Task: {329B373E-B8A0-4020-9D38-02502DC9DE08} - System32\Tasks\Microsoft\Office\Office Startup Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [16470320 2026-09-13] (Microsoft Corporation -> Microsoft Corporation)
Task: {57B966C3-F4E6-4842-AF05-0AF2678FB132} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26080.3-0\MpCmdRun.exe [1902840 2026-09-03] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {D7025FCC-90CD-4A5D-B830-10EBB213EC06} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26080.3-0\MpCmdRun.exe [1902840 2026-09-03] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {E28B7643-5DAA-45DC-BFC5-3D5BAC28F036} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26080.3-0\MpCmdRun.exe [1902840 2026-09-03] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {C3AE49EE-3FFC-4EA2-83B7-F2E463E4FA50} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26080.3-0\MpCmdRun.exe [1902840 2026-09-03] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {E04758FD-0037-4887-BDAB-907525C82902} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1030928 2025-12-12] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
Task: {6E93A63C-5D59-4156-87EE-D04780A580AB} - System32\Tasks\WXPInsightsUpdater => C:\Program Files (x86)\HP\HP Touchpoint Analytics Client Installer\TAInstaller.exe [4061448 2026-08-25] (HP Inc. -> )

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.31.248 1.1.1.1
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}: [DhcpNameServer] 192.168.31.248 1.1.1.1
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}: [DhcpDomain] localdomain
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}\4505D2C496E6B6F554874756E6465627: [DhcpNameServer] 192.168.0.254
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}\859616F6D696F553638383F55374: [DhcpNameServer] 192.168.31.248 1.1.1.1
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}\859616F6D696F553638383F55374: [DhcpDomain] localdomain
Tcpip\..\Interfaces\{4ddb69af-f8ec-43b0-a00d-fa4771a09735}\859616F6D696F553638383F5548545: [DhcpNameServer] 192.168.31.234
Tcpip\..\Interfaces\{fd5113a5-1b8e-46a9-95ec-2869bb75496f}: [NameServer] 1.1.1.1,8.8.8.8
Tcpip\..\Interfaces\{fd5113a5-1b8e-46a9-95ec-2869bb75496f}: [DhcpNameServer] 192.168.31.248 1.1.1.1
Tcpip\..\Interfaces\{fd5113a5-1b8e-46a9-95ec-2869bb75496f}: [DhcpDomain] localdomain

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)

Edge:
=======
Edge DefaultProfile: Profile 1
Edge Profile: C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Profile 1 [2026-09-14]
Edge HomePage: Profile 1 -> hxxp://www.google.sk/
Edge Extension: (Dokumenty Google v režime offline) - C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-08-24]
Edge Extension: (Edge relevant text changes) - C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Profile 1\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2026-05-30]
Edge Profile: C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Profile 2 [2026-05-23]
Edge Extension: (Dokumenty Google v režime offline) - C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Profile 2\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-05-08]
Edge Extension: (Edge relevant text changes) - C:\Users\igorv\AppData\Local\Microsoft\Edge\User Data\Profile 2\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2026-05-08]

Chrome:
=======
CHR Profile: C:\Users\igorv\AppData\Local\Google\Chrome\User Data\Default [2026-09-14]
CHR HomePage: Default -> hxxp://www.google.sk/
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\igorv\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-09-11]
CHR Extension: (Spúšťač aplikácie pre Disk (od Googlu)) - C:\Users\igorv\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2026-05-05]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\igorv\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2026-05-05]
CHR HKU\S-1-5-21-2384847340-952867437-1279697988-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13365136 2026-09-07] (Microsoft Corporation -> Microsoft Corporation)
R2 FMAPOService; C:\WINDOWS\System32\FMService64.exe [1164368 2026-03-06] (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia)
R2 GameInputRedistService; C:\Program Files\Microsoft GameInput\x64\GameInputRedistService.exe [401792 2026-05-14] (Microsoft Corporation -> Windows (R) Win 7 DDK provider)
R2 HotKeyServiceUWP; C:\WINDOWS\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_0d182501a33019e2\HotKeyServiceUWP.exe [1487016 2026-03-13] (HP Inc. -> HP Inc.)
R2 HP Comm Recover; C:\Program Files\HPCommRecovery\HPCommRecovery.exe [475680 2023-04-14] (HP Inc. -> HP Inc.)
S2 hp-one-agent-service; C:\Program Files\HP\HP One Agent\hp-one-agent-service.exe [2445408 2025-09-11] (HP Inc. -> HP Inc; HP Development Company, L.P.)
R2 HPAppHelperCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\AppHelperCap.exe [909464 2025-09-30] (HP Inc. -> HP Inc.)
R2 HPAudioAnalytics; C:\WINDOWS\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_0d182501a33019e2\HPAudioAnalytics.exe [496808 2026-03-13] (HP Inc. -> HP Inc.)
R2 HPDiagsCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\DiagsCap.exe [907936 2025-09-30] (HP Inc. -> HP Inc.)
R2 hpLHAgent; C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Agent\LHAgent.exe [8022216 2026-08-03] (HP Inc. -> HP Inc.)
R2 hpLHWatchdog; C:\Program Files (x86)\Hewlett-Packard\HP Touchpoint Manager\Tools\WatchDogService.exe [1547976 2026-08-03] (HP Inc. -> HP Inc.)
R2 HPNetworkCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\NetworkCap.exe [903840 2025-09-30] (HP Inc. -> HP Inc.)
R3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1149480 2018-06-07] (HP Inc. -> HP)
R2 hpsvcsscan; C:\WINDOWS\System32\DriverStore\FileRepository\hpsvcsscancomp.inf_amd64_df5bc9f22dc3c742\x64\hpsvcsscan.exe [7142248 2026-02-18] (HP Inc. -> HP Inc.)
R2 HPSysInfoCap; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapcomp.inf_amd64_bac3c2b2a2c0d811\x64\SysInfoCap.exe [909464 2025-09-30] (HP Inc. -> HP Inc.)
R2 HpTouchpointAnalyticsService; C:\WINDOWS\System32\DriverStore\FileRepository\hpanalyticscomp.inf_amd64_b532962506597d3d\x64\TouchpointAnalyticsClientService.exe [639776 2025-10-01] (HP Inc. -> HP Inc.)
R2 LanWlanWwanSwitchingServiceUWP; C:\WINDOWS\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_0d182501a33019e2\LanWlanWwanSwitchingServiceUWP.exe [594600 2026-03-13] (HP Inc. -> HP Inc.)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26080.3-0\MpDefenderCoreService.exe [2307816 2026-09-03] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 MTKBTSVC; C:\WINDOWS\System32\mtkbtsvc.exe [545208 2025-10-02] (MEDIATEK INC. -> MediaTek Inc.)
R2 Poly Lens Control Service; C:\Program Files\Poly\Lens Control Service\LensService.exe [150024 2025-06-09] (HP Inc. -> HP Inc.)
S3 ProtonVPN Service; C:\Program Files\Proton\VPN\v4.4.1\ProtonVPNService.exe [477424 2026-06-03] (Proton AG -> ProtonVPN)
S3 ProtonVPN WireGuard; C:\Program Files\Proton\VPN\v4.4.1\ProtonVPN.WireGuardService.exe [476912 2026-06-03] (Proton AG -> ProtonVPN)
R2 SecurityUpdateService; C:\Program Files\HP\Security Update Service\4.4.33.1019\SecurityUpdateService.exe [5179720 2026-07-27] (Bromium UK Limited -> HP)
R2 SNAPOService; C:\WINDOWS\System32\DriverStore\FileRepository\snapo64.inf_amd64_33d62b688b005396\SNAPOSS64.exe [830232 2025-12-18] (Microsoft Windows Hardware Compatibility Publisher -> Sonitude Corporation)
S2 WbfPolicyService110; C:\WINDOWS\System32\DriverStore\FileRepository\synawudfbiousbuwpsvc.inf_amd64_b12a1111c8064a8a\WbfPolicyService110.exe [715784 2025-05-22] (Synaptics Incorporated -> Synaptics Incorporated.)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26080.3-0\NisSrv.exe [5311736 2026-09-03] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26080.3-0\MsMpEng.exe [291360 2026-09-03] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 AIDA64Driver; \??\C:\Program Files\FinalWire\AIDA64 Extreme\kerneld-x64.sys [81296 2026-04-28] (FinalWire Kft. -> )
R3 amdfendrmgr; C:\WINDOWS\System32\DriverStore\FileRepository\amdfendr.inf_amd64_47725f5567f931ee\amdfendrmgr.sys [37232 2026-03-31] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
R3 amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0202308.inf_amd64_76ac7eae7a1a50fa\B025980\amdkmdag.sys [106666512 2026-07-08] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
R3 amdwirelessbutton; C:\WINDOWS\System32\drivers\amdwirelessbutton.sys [49448 2025-09-10] (Advanced Micro Devices -> Advanced Micro Devices, Inc)
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [110592 2024-12-12] (Microsoft Corporation) [File not signed]
R0 fse; C:\WINDOWS\System32\drivers\fse.sys [230888 2026-08-27] (Microsoft Windows -> Microsoft Corporation)
R2 googledrivefs31931; \??\C:\Program Files\Google\Drive File Stream\Drivers\31931\googledrivefs31931.sys [386256 2026-06-04] (Microsoft Windows Hardware Compatibility Publisher -> )
R3 HPCustomCapDriver; C:\WINDOWS\System32\DriverStore\FileRepository\hpcustomcapdriver.inf_amd64_1421dec2010cc057\x64\hpcustomcapdriver.sys [18984 2024-05-07] (Microsoft Windows Hardware Compatibility Publisher -> HP Inc.)
R0 HpPair; C:\WINDOWS\System32\drivers\HpPair.sys [69912 2025-06-09] (HP Inc. -> HP Inc.)
R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [83008 2026-09-03] (Microsoft Windows -> Microsoft Corporation)
S2 l1vhlwf; C:\WINDOWS\System32\drivers\l1vhlwf.sys [144864 2026-08-27] (Microsoft Windows -> Microsoft Corporation)
R3 mtkbtacx; C:\WINDOWS\System32\DriverStore\FileRepository\mtkbtacx.inf_amd64_83b672d8fe91251d\mtkbtacx.sys [289184 2025-10-02] (MEDIATEK INC. -> MediaTek Inc.)
R3 MTKBTFilterx64; C:\WINDOWS\System32\DriverStore\FileRepository\mtkbtfilter.inf_amd64_04e48cf0e2222a28\mtkbtfilterx.sys [611264 2025-10-02] (MEDIATEK INC. -> MediaTek Inc.)
R3 mtkwlex; C:\WINDOWS\System32\DriverStore\FileRepository\mtkwl6ex.inf_amd64_d9268befd11ebf7f\mtkwl6ex.sys [2127384 2026-06-23] (MEDIATEK INC. -> MediaTek Inc.)
S3 ProtonVPNCallout; \??\C:\Program Files\Proton\VPN\v4.4.1\Resources\ProtonVPN.CalloutDriver.sys [41416 2026-04-30] (Proton AG -> )
R3 rt68cx21; C:\WINDOWS\System32\DriverStore\FileRepository\rt68cx21x64.inf_amd64_9aa8fb2bbee4c5e5\rt68cx21x64.sys [921128 2026-01-15] (Realtek Semiconductor Corp. -> Realtek)
S3 vmbusproxy; C:\WINDOWS\system32\drivers\vmbusproxy.sys [98304 2025-06-14] (Microsoft Windows -> Microsoft Corporation)
S4 WdAiNisDrv; C:\WINDOWS\System32\drivers\wd\WdAiNisDrv.sys [51224 2026-09-03] (Microsoft Windows -> Microsoft Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [21672 2026-09-03] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [660504 2026-09-03] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [137240 2026-09-03] (Microsoft Windows -> Microsoft Corporation)
S3 wintun; C:\WINDOWS\System32\drivers\wintun.sys [29592 2026-02-15] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
S3 WireGuard; C:\WINDOWS\System32\drivers\wireguard.sys [489368 2026-02-09] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)

==================== SvcHost (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-09-14 21:02 - 2026-09-14 21:02 - 000032832 _____ C:\Users\igorv\Downloads\FRST.txt
2026-09-14 21:02 - 2026-09-14 21:02 - 000000000 ____D C:\FRST
2026-09-14 21:01 - 2026-09-14 21:01 - 002455552 _____ (Farbar) C:\Users\igorv\Downloads\FRST64.exe
2026-09-14 14:27 - 2026-09-14 14:27 - 000000000 _____ C:\Users\igorv\Desktop\Nová položka Textový dokument.txt
2026-09-13 18:14 - 2026-09-14 18:13 - 000000000 ____D C:\WINDOWS\CbsTemp
2026-08-31 10:42 - 2026-07-08 11:18 - 011757440 _____ C:\WINDOWS\system32\amdsmi.exe
2026-08-31 10:42 - 2026-07-08 11:18 - 004374544 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdadlx64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 004179984 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdadlx32.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 002245648 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdsasrv64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 002100240 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atiadlxx.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 001717792 _____ (AMD) C:\WINDOWS\system32\amf-mft-mjpeg-decoder64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 001617936 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxy.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 001617936 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\atiadlxx.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 001395256 _____ (AMD) C:\WINDOWS\SysWOW64\amf-mft-mjpeg-decoder32.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 001059856 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdsacli32.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000978448 _____ (AMD) C:\WINDOWS\system32\atieclxx.exe
2026-08-31 10:42 - 2026-07-08 11:18 - 000944144 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdlvr64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000857104 _____ C:\WINDOWS\system32\vulkaninfo-1-999-0-0-0.exe
2026-08-31 10:42 - 2026-07-08 11:18 - 000857104 _____ C:\WINDOWS\system32\vulkaninfo.exe
2026-08-31 10:42 - 2026-07-08 11:18 - 000801808 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\Rapidfire64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000771600 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdlvr32.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000737808 _____ C:\WINDOWS\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2026-08-31 10:42 - 2026-07-08 11:18 - 000737808 _____ C:\WINDOWS\SysWOW64\vulkaninfo.exe
2026-08-31 10:42 - 2026-07-08 11:18 - 000678928 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\Rapidfire.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000610832 _____ C:\WINDOWS\system32\GameManager64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000570384 _____ C:\WINDOWS\system32\amdgfxinfo64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000549392 _____ C:\WINDOWS\system32\libsmi_guest.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000537616 _____ C:\WINDOWS\system32\atieah64.exe
2026-08-31 10:42 - 2026-07-08 11:18 - 000524816 _____ C:\WINDOWS\system32\libsmi_host.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000504336 _____ C:\WINDOWS\system32\EEURestart.exe
2026-08-31 10:42 - 2026-07-08 11:18 - 000473616 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\atidemgy.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000464400 _____ C:\WINDOWS\SysWOW64\GameManager32.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000434184 _____ C:\WINDOWS\SysWOW64\amdgfxinfo32.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000406544 _____ C:\WINDOWS\SysWOW64\atieah32.exe
2026-08-31 10:42 - 2026-07-08 11:18 - 000267280 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atig6txx.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000229392 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atigktxx.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000207888 _____ C:\WINDOWS\system32\mantle64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000201232 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\aticfx64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000196624 _____ (AMD) C:\WINDOWS\system32\atimuixx.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000186896 _____ C:\WINDOWS\system32\mantleaxl64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000184848 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atisamu64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000178192 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amdihk32.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000165904 _____ C:\WINDOWS\SysWOW64\mantle32.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000165392 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\aticfx32.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000157864 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\atimpc64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000149520 _____ C:\WINDOWS\SysWOW64\mantleaxl32.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000149008 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atisamu32.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000142864 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amfrt64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000141632 _____ C:\WINDOWS\system32\amdxc64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000129128 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\atimpc32.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000118800 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\amfrt32.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000117136 _____ C:\WINDOWS\SysWOW64\amdxc32.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000075280 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\ati2erec.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000051728 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\RapidFireServer64.dll
2026-08-31 10:42 - 2026-07-08 11:18 - 000048656 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\SysWOW64\RapidFireServer.dll
2026-08-31 10:42 - 2026-07-08 11:17 - 105410576 _____ C:\WINDOWS\system32\amd_comgr.dll
2026-08-31 10:42 - 2026-07-08 11:17 - 088606736 _____ C:\WINDOWS\SysWOW64\amd_comgr32.dll
2026-08-31 10:42 - 2026-07-08 11:17 - 019435536 _____ (Advanced Micro Devices Inc.) C:\WINDOWS\system32\amdhip64.dll
2026-08-31 10:42 - 2026-07-08 11:17 - 001362416 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdsacli64.dll
2026-08-31 10:42 - 2026-07-08 11:17 - 000560480 _____ C:\WINDOWS\system32\amdmiracast.dll
2026-08-31 10:42 - 2026-07-08 11:17 - 000545800 _____ C:\WINDOWS\system32\dgtrayicon.exe
2026-08-31 10:42 - 2026-07-08 11:17 - 000471568 _____ C:\WINDOWS\system32\amdlogum.exe
2026-08-31 10:42 - 2026-07-08 11:17 - 000226600 _____ (Advanced Micro Devices, Inc.) C:\WINDOWS\system32\amdihk64.dll
2026-08-31 10:42 - 2026-07-08 11:17 - 000177168 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl6.dll
2026-08-31 10:42 - 2026-07-08 11:17 - 000168248 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdave64.dll
2026-08-31 10:42 - 2026-07-08 11:17 - 000157864 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdpcom64.dll
2026-08-31 10:42 - 2026-07-08 11:17 - 000145936 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdmmcl.dll
2026-08-31 10:42 - 2026-07-08 11:17 - 000143104 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdave32.dll
2026-08-31 10:42 - 2026-07-08 11:17 - 000129128 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdpcom32.dll
2026-08-31 10:42 - 2026-07-08 11:17 - 000103440 _____ C:\WINDOWS\system32\clinfo.exe
2026-08-31 10:42 - 2026-07-08 10:46 - 109628208 _____ C:\WINDOWS\system32\amdxc64.so
2026-08-27 23:16 - 2026-08-27 23:16 - 000039215 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2026-08-27 23:16 - 2026-08-27 23:16 - 000039215 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2026-08-27 23:16 - 2026-08-27 23:16 - 000014689 _____ C:\WINDOWS\system32\ecoscore_config.json
2026-08-27 23:16 - 2026-08-27 23:16 - 000004646 _____ C:\WINDOWS\system32\ResPriUHMImageList
2026-08-27 23:16 - 2026-08-27 23:16 - 000004646 _____ C:\WINDOWS\system32\ResPriLMImageList
2026-08-27 23:16 - 2026-08-27 23:16 - 000004646 _____ C:\WINDOWS\system32\ResPriImageList
2026-08-27 23:16 - 2026-08-27 23:16 - 000004646 _____ C:\WINDOWS\system32\ResPriHMImageList
2026-08-27 23:16 - 2026-08-27 23:16 - 000004555 _____ C:\WINDOWS\system32\ResPriImageListLowCost
2026-08-27 23:16 - 2026-08-27 23:16 - 000004555 _____ C:\WINDOWS\system32\ResPriHMImageListLowCost
2026-08-26 17:05 - 2026-07-16 15:34 - 000022512 _____ (Realtek Semiconductor Corp.) C:\WINDOWS\system32\RtEventLog.dll
2026-08-26 17:02 - 2026-03-21 04:10 - 000526224 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\amdtee_api.dll
2026-08-26 17:02 - 2026-03-21 04:10 - 000397720 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\SysWOW64\amdtee_api.dll
2026-08-26 17:02 - 2026-03-21 04:10 - 000061840 _____ (Advanced Micro Devices, Inc. ) C:\WINDOWS\system32\Drivers\amdpsp.sys
2026-08-22 12:21 - 2026-08-22 23:27 - 000000000 ____D C:\Users\igorv\.codex
2026-08-22 12:21 - 2026-08-22 12:21 - 000000000 ____D C:\Users\igorv\AppData\Local\OpenAI
2026-08-22 12:21 - 2026-08-22 12:21 - 000000000 ____D C:\Users\igorv\.cache
2026-08-20 22:13 - 2026-08-20 22:13 - 000000000 ____D C:\Program Files\Common Files\DESIGNER

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-09-14 20:54 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-09-14 20:52 - 2024-05-18 10:19 - 000000000 ___SD C:\Users\igorv\AppData\Roaming\Microsoft\Credentials
2026-09-14 20:32 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-09-14 18:14 - 2024-04-01 09:24 - 000000000 ____D C:\WINDOWS\INF
2026-09-14 16:54 - 2024-05-23 22:48 - 000000000 ____D C:\ProgramData\Package Cache
2026-09-14 13:07 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-09-14 09:40 - 2024-12-12 17:56 - 000003630 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2026-09-14 09:40 - 2024-12-12 17:56 - 000003558 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2026-09-13 21:57 - 2024-04-01 09:26 - 000000000 ___HD C:\Program Files\WindowsApps
2026-09-13 21:56 - 2024-01-26 15:41 - 000000000 ____D C:\Program Files\Microsoft Office
2026-09-12 10:30 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\USOPrivate
2026-09-12 10:17 - 2024-12-12 17:55 - 000791266 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-09-12 10:13 - 2026-04-02 10:56 - 000011826 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2026-09-12 10:13 - 2024-12-12 17:56 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-09-12 10:13 - 2024-12-12 17:54 - 000001623 _____ C:\WINDOWS\system32\config\VSMIDK
2026-09-12 10:13 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ServiceState
2026-09-12 10:13 - 2023-09-05 13:19 - 000012288 ___SH C:\DumpStack.log.tmp
2026-09-12 10:12 - 2024-04-01 09:21 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2026-09-12 10:11 - 2024-12-12 17:54 - 000630816 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2026-09-12 10:11 - 2024-04-01 18:34 - 000000000 ____D C:\WINDOWS\system32\OpenSSH
2026-09-12 10:11 - 2024-04-01 18:34 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2026-09-12 10:11 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2026-09-12 10:11 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2026-09-12 10:11 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2026-09-12 10:11 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2026-09-12 10:11 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemResources
2026-09-12 10:11 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2026-09-12 10:11 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\setup
2026-09-12 10:11 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2026-09-12 10:11 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2026-09-12 10:11 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2026-09-12 10:11 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2026-09-12 10:11 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2026-09-12 10:11 - 2024-04-01 09:21 - 000000000 ____D C:\WINDOWS\servicing
2026-09-12 09:51 - 2024-12-12 17:55 - 003381760 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2026-09-12 09:50 - 2023-09-05 13:19 - 000002452 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-09-10 19:56 - 2026-06-04 10:26 - 000002181 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Drive.lnk
2026-09-09 21:39 - 2026-05-05 22:26 - 000002267 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2026-09-08 22:00 - 2024-05-19 10:31 - 000000000 ____D C:\WINDOWS\system32\MRT
2026-09-08 21:58 - 2026-08-11 20:12 - 000000807 _____ C:\WINDOWS\system32\InstallMonitorLog.csv
2026-09-08 21:58 - 2025-04-19 16:23 - 000000000 ____D C:\Program Files\dotnet
2026-09-08 21:58 - 2024-05-19 10:31 - 230964456 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2026-09-07 20:46 - 2026-05-12 21:11 - 000000000 ____D C:\5
2026-09-07 18:06 - 2024-05-18 10:41 - 000000000 ____D C:\Users\igorv\AppData\Local\D3DSCache
2026-09-06 11:04 - 2024-05-23 15:14 - 000000000 ____D C:\Users\igorv\AppData\Local\CrashDumps
2026-09-06 11:03 - 2026-01-27 13:38 - 000000000 ____D C:\Users\igorv\AppData\Local\Programs\Opera
2026-09-06 11:03 - 2024-05-18 10:19 - 000000000 ____D C:\Users\igorv\AppData\Local\Packages
2026-09-06 11:03 - 2023-09-05 13:28 - 000000000 ____D C:\ProgramData\Packages
2026-09-05 14:09 - 2024-05-21 08:56 - 000000000 ____D C:\3
2026-09-03 21:24 - 2023-09-05 13:19 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2026-08-28 09:06 - 2025-12-04 11:28 - 000000000 ____D C:\WINDOWS\system32\NarratorMCAT
2026-08-28 09:06 - 2025-07-10 12:47 - 000000000 ____D C:\WINDOWS\system32\ruxim
2026-08-28 09:06 - 2024-12-12 17:00 - 000000000 ____D C:\WINDOWS\InboxApps
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\UUS
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\migwiz
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\AdvancedInstallers
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\Provisioning
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\L2Schemas
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2026-08-28 09:06 - 2024-04-01 09:26 - 000000000 ____D C:\Program Files\Common Files\System
2026-08-28 08:40 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\appcompat
2026-08-26 17:17 - 2024-08-29 15:17 - 000000000 ____D C:\Users\igorv\AppData\Roaming\Microsoft\Excel
2026-08-26 17:04 - 2024-05-21 13:22 - 000000000 ____D C:\SWSetup
2026-08-22 12:21 - 2024-12-12 17:39 - 000000000 ____D C:\Users\igorv
2026-08-22 12:21 - 2024-05-18 10:43 - 000000000 ____D C:\Users\igorv\AppData\Local\PlaceholderTileLogoFolder

==================== Files in the root of some directories ========

2024-06-22 21:39 - 2024-06-22 21:39 - 000000017 _____ () C:\Users\igorv\AppData\Local\resmon.resmoncfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Re: kontrola frst so zameranim

Odeslal: 14 Zář 2026 20:09
od 5manager5
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 09-09-2026
Ran by igorv (14-09-2026 21:03:54)
Running from C:\Users\igorv\Downloads
Microsoft Windows 11 Home Version 25H2 26200.9445 (X64) (2024-12-12 15:56:28)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-2384847340-952867437-1279697988-500 - Administrators - Disabled)
DefaultAccount (S-1-5-21-2384847340-952867437-1279697988-503 - Limited - Disabled)
Guest (S-1-5-21-2384847340-952867437-1279697988-501 - Limited - Disabled)
igorv (DisplayName: I*** *****o) (S-1-5-21-2384847340-952867437-1279697988-1001 - Administrators - Enabled) [MS Account] => C:\Users\igorv
WDAGUtilityAccount (S-1-5-21-2384847340-952867437-1279697988-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

AIDA64 Extreme v7.70 (HKLM-x32\...\AIDA64 Extreme_is1) (Version: 7.70 - FinalWire Ltd.)
AIDA64 Extreme v8.30 (HKLM\...\AIDA64 Extreme_is1) (Version: 8.30 - FinalWire Ltd.)
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 23.19.24 - Advanced Micro Devices, Inc.)
Android Studio (HKLM\...\Android Studio) (Version: 2026.1 - Google LLC)
Google Drive (HKLM\...\{6BBAE539-2232-434A-A4E5-9A33560C6283}) (Version: 131.0.2.0 - Google LLC)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 153.0.8010.37 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.36.51 - Google LLC) Hidden
HP Client Management Script Library (HKLM-x32\...\{5A1AECCB-E0CE-4D2C-833C-29CCEA959448}_is1) (Version: 1.7.1 - HP Development Company, L.P.)
HP Connection Optimizer (HKLM-x32\...\{6468C4A5-E47E-405F-B675-A70A70983EA6}) (Version: 2.0.20.0 - HP Inc)
HP Documentation (HKLM\...\HP_Documentation) (Version: 1.0.0.1 - HP Inc.)
HP Notifications (HKLM-x32\...\{19F557DE-662A-4FEA-B635-1CACD56CC483}) (Version: 1.1.29.12 - HP)
HP One Agent (HKLM\...\{7CCB7DE7-C121-478D-B4EB-F5C186DEF5D7}) (Version: 1.2.7.1708 - HP Inc.) Hidden
HP One Agent (HKLM\...\{D3913CAA-0A30-494D-AE06-F79A68997FAB}) (Version: 1.2.007.1708 - HP Inc.)
HP Security Update Service (HKLM\...\{90029D55-E154-41CF-96A2-D6120811643C}) (Version: 4.4.33.1019 - HP Inc.)
HP Software Framework (HKLM-x32\...\{71E18A14-1BDB-4B58-A67F-1BCDA12462FD}) (Version: 7.1.15.1 - HP)
HP Sure Recover (HKLM\...\{EE6377DD-C166-40D9-ACFF-AEB827623329}) (Version: 10.1.34.334 - HP Inc.)
HP Sure Run Module (HKLM\...\{EB7671C4-861D-4C1F-BA26-C8ED6B8EF933}) (Version: 5.0.5.118 - HP Inc.)
HP System Default Settings (HKLM-x32\...\{4BF87EE4-8F1E-442A-8B57-B94E6E42951A}) (Version: 1.5.15.1 - HP Inc.) Hidden
HP Wolf Security - Console (HKLM\...\{8666396B-3DC3-4EC4-8328-6F1654BBB880}) (Version: 11.1.8.1209 - HP Inc.)
ICS (HKLM-x32\...\{5CD25FCD-D218-46D0-B405-E5A488969BDF}) (Version: 3.1.18.25 - HP Inc.)
Microsoft .NET Host - 10.0.12 (x64) (HKLM\...\{17D94539-A423-48D9-BD4A-69A9186C5B66}) (Version: 80.48.58476 - Microsoft Corporation) Hidden
Microsoft .NET Host - 8.0.31 (x64) (HKLM\...\{56A842AA-B5B3-419B-A80E-36623D12F168}) (Version: 64.124.58447 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 10.0.12 (x64) (HKLM\...\{E358F0F7-0226-419D-85E6-D45A08BF195F}) (Version: 80.48.58476 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 8.0.31 (x64) (HKLM\...\{147B0E5B-D916-44F6-A66B-163CF0F723E9}) (Version: 64.124.58447 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 10.0.12 (x64) (HKLM\...\{902710DF-F5E0-42EB-8959-ECC10CC368DF}) (Version: 80.48.58476 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 10.0.12 (x64) (HKLM-x32\...\{4CBA08D2-07D1-4B4F-B8E1-8C5424CCA5A0}) (Version: 10.0.12.36422 - Microsoft Corporation)
Microsoft .NET Runtime - 8.0.31 (x64) (HKLM\...\{D5EFD516-E715-456F-9D3F-4CA6653C353E}) (Version: 64.124.58447 - Microsoft Corporation) Hidden
Microsoft 365 - sk-sk (HKLM\...\O365HomePremRetail - sk-sk) (Version: 16.0.20326.20144 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 153.0.4234.32 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 152.0.4191.66 - Microsoft Corporation) Hidden
Microsoft GameInput (HKLM\...\{14EDF950-06B9-415F-862C-1D5DEC321AE6}) (Version: 3.3.221.0 - Microsoft Corporation)
Microsoft OneNote - sk-sk (HKLM\...\OneNoteFreeRetail - sk-sk) (Version: 16.0.20326.20144 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.50.35719 (HKLM\...\{AECD4ED0-8A3B-41E9-92D1-6BEE0374CCAF}) (Version: 14.50.35719 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.50.35719 (HKLM\...\{61B44572-8722-4DAF-8ACF-8E742D30BCC5}) (Version: 14.50.35719 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.50.35719 (HKLM-x32\...\{773AD50D-AAE6-4BA1-AD01-B5A38874C840}) (Version: 14.50.35719 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.50.35719 (HKLM-x32\...\{5A0DFA55-3851-45BC-8B20-95EA4BF5812D}) (Version: 14.50.35719 - Microsoft Corporation) Hidden
Microsoft Visual C++ v14 Redistributable (x64) - 14.50.35719 (HKLM-x32\...\{91ee571b-0e8a-4c65-9eaf-2e2f5fc60c00}) (Version: 14.50.35719.0 - Microsoft Corporation)
Microsoft Visual C++ v14 Redistributable (x86) - 14.50.35719 (HKLM-x32\...\{0e4ccf1b-d073-4cfe-8a24-e86185719b56}) (Version: 14.50.35719.0 - Microsoft Corporation)
Microsoft Windows Application Compatibility Fix Database (HKLM\...\{22221111-1111-1111-1111-111111111111}.sdb) (Version: - )
Microsoft Windows Desktop Runtime - 8.0.31 (x64) (HKLM\...\{F2D93D43-8A6C-492C-8E37-070DB499C074}) (Version: 64.124.58455 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 8.0.31 (x64) (HKLM-x32\...\{208fff39-3440-44c6-b473-38136ba594bf}) (Version: 8.0.31.36421 - Microsoft Corporation)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.20326.20072 - Microsoft Corporation) Hidden
Poly Lens Control Service (HKLM\...\{92FB562B-E9B2-405B-A1CB-E33FD758A9A4}) (Version: 1.11.793 - HP Inc.)
Poly Lens Desktop (HKLM\...\{5625A841-9FDE-4149-8243-C08FAB2B5639}) (Version: 2.2.0.3547 - HP Inc.)
Proton VPN (HKLM\...\Proton VPN_is1) (Version: 4.4.1 - Proton AG)
WXP Insights Agent (HKLM-x32\...\{2760A0B6-B74F-4E42-BC4A-7B4F3DE0522C}) (Version: 5.26.114 - HP Inc.)

Packages:
=========
@{MicrosoftWindows.55182690.Taskbar_1000.26100.3775.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-06-14] ()
@{MicrosoftWindows.55182690.Taskbar_1000.26100.3912.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-06-14] ()
AMD Radeon Software -> C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.23.19012.0_x64__0a9344xs7nr4m [2026-07-16] (Advanced Micro Devices Inc.) [Startup Task]
HP -> C:\Program Files\WindowsApps\AD2F1837.myHP_60.52634.13225.0_x64__v10z8vjag6ke6 [2026-08-28] (HP Inc.) [Startup Task]
HP Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.HPAudioControl_2.54.396.0_x64__dt26b99r8h8gj [2026-08-26] (Realtek Semiconductor Corp)
HP PC Hardware Diagnostics Windows -> C:\Program Files\WindowsApps\AD2F1837.HPPCHardwareDiagnosticsWindows_3.2.0.0_x64__v10z8vjag6ke6 [2026-08-05] (HP Inc.)
HP PC Privacy Settings -> C:\Program Files\WindowsApps\AD2F1837.HPPrivacySettings_1.6.2.0_x64__v10z8vjag6ke6 [2026-08-19] (HP Inc.)
HP Power Manager -> C:\Program Files\WindowsApps\AD2F1837.HPPowerManager_3.1.18.0_x64__v10z8vjag6ke6 [2024-10-31] (HP Inc.)
HP Support Assistant -> C:\Program Files\WindowsApps\AD2F1837.HPSupportAssistant_9.55.10.0_x64__v10z8vjag6ke6 [2026-08-19] (HP Inc.)
HP System Information -> C:\Program Files\WindowsApps\AD2F1837.HPSystemInformation_8.10.53.0_x64__v10z8vjag6ke6 [2026-09-04] (HP Inc.)
Local AI Manager for Microsoft 365 -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\AI [2026-09-13] ()
Microsoft Defender -> C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2602.23002.0_x64__8wekyb3d8bbwe [2026-04-02] (Microsoft Corporation) [Startup Task]
Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2024-05-19] (Microsoft Corp.)
Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_56.20201.588.0_x64__8wekyb3d8bbwe [2026-02-16] (Microsoft Corporation)
Microsoft.HEVCVideoExtensions -> C:\Program Files\WindowsApps\Microsoft.HEVCVideoExtensions_2.4.110.0_x64__8wekyb3d8bbwe [2026-08-14] (Microsoft Corporation)
Microsoft.Office.ActionsServer -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\ActionsServer [2026-09-13] ()
OfficePushNotificationsUtility -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16 [2026-09-13] ()
OneNote Virtual Printer -> C:\Program Files\WindowsApps\Microsoft.Office.OneNoteVirtualPrinter_1.0.0.0_x64__8wekyb3d8bbwe [2026-02-18] (Microsoft Corporation)
WinAppRuntime.Singleton -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Singleton_8002.4.0.0_x64__8wekyb3d8bbwe [2026-08-25] (Microsoft Corp.)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2384847340-952867437-1279697988-1001_Classes\CLSID\{11487812-8821-0862-6182-000000000000}\localserver32 -> C:\WINDOWS\system32\FMToastNotification.exe (Microsoft Windows Hardware Compatibility Publisher -> Fortemedia)
CustomCLSID: HKU\S-1-5-21-2384847340-952867437-1279697988-1001_Classes\CLSID\{50726f74-6f6e-2e56-504e-000000000000}\localserver32 -> C:\Program Files\Proton\VPN\v4.4.1\ProtonVPN.Client.exe (Proton AG -> ProtonVPN)
CustomCLSID: HKU\S-1-5-21-2384847340-952867437-1279697988-1001_Classes\CLSID\{65574321-d3fb-e7db-e83e-38fe55a80c4a}\localserver32 -> C:\Program Files\HP\HP Client Security Manager\HP.ClientSecurityManager.exe (HP Inc. -> HP Inc.)
CustomCLSID: HKU\S-1-5-21-2384847340-952867437-1279697988-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC)
ShellIconOverlayIdentifiers: [ GoogleDriveCloudOverlayIconHandler] -> {A8E52322-8734-481D-A7E2-27B309EF8D56} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers: [ GoogleDriveMirrorBlacklistedOverlayIconHandler] -> {51EF1569-67EE-4AD6-9646-E726C3FFC8A2} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers: [ GoogleDrivePinnedOverlayIconHandler] -> {CFE8B367-77A7-41D7-9C90-75D16D7DC6B6} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers: [ GoogleDriveProgressOverlayIconHandler] -> {C973DA94-CBDF-4E77-81D1-E5B794FBD146} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers-x32: [ GoogleDriveCloudOverlayIconHandler] -> {A8E52322-8734-481D-A7E2-27B309EF8D56} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers-x32: [ GoogleDriveMirrorBlacklistedOverlayIconHandler] -> {51EF1569-67EE-4AD6-9646-E726C3FFC8A2} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers-x32: [ GoogleDrivePinnedOverlayIconHandler] -> {CFE8B367-77A7-41D7-9C90-75D16D7DC6B6} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ShellIconOverlayIdentifiers-x32: [ GoogleDriveProgressOverlayIconHandler] -> {C973DA94-CBDF-4E77-81D1-E5B794FBD146} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ContextMenuHandlers1: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ContextMenuHandlers4: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)
ContextMenuHandlers5: [DriveFS 28 or later] -> {EE15C2BD-CECB-49F8-A113-CA1BFC528F5B} => C:\Program Files\Google\Drive File Stream\131.0.2.0\drivefsext.dll [2026-09-10] (Google LLC -> Google LLC.)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2024-01-26 15:41 - 2024-01-26 15:41 - 000000000 ____L () [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems64.dll] C:\Program Files\Microsoft Office\Root\Office16\AppVIsvSubsystems64.dll
2024-01-26 15:41 - 2024-01-26 15:41 - 000000000 ____L () [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R64.dll] C:\Program Files\Microsoft Office\Root\Office16\c2r64.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) =============

BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2026-08-20] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2022-05-07 07:24 - 2022-05-07 07:22 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Network ===========================

(Currently there is no automatic fix for this section.)

DNS Servers: 1.1.1.1 - 8.8.8.8
Windows Firewall is enabled.

Network Binding:
=============
Wi-Fi: MediaTek Wi-Fi 6E MT7922 (RZ616) 160MHz PCIe Adapter -> mtkwl6ex.sys
Ethernet: Realtek PCIe GbE Family Controller -> rt68cx21x64.sys

vms_vsf: Hyper-V Virtual Switch Extension Filter
ms_l1vhlwf: Nested Network Virtualization
vms_vsp: Hyper-V Virtual Switch Extension Protocol

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-2384847340-952867437-1279697988-1001\Control Panel\Desktop\\Wallpaper -> C:\WINDOWS\web\wallpaper\Windows\img0.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)


==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKU\S-1-5-21-2384847340-952867437-1279697988-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{207FF0BA-4D00-447D-8427-9CBDA098563E}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_24137.2402.2884.4157_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{47893453-764F-4172-B4F4-3449E65B050C}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_24137.2402.2884.4157_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{EFF40D77-84A2-419C-88FE-F8F8A6B867A7}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [EdgeWebView2-MDNS-In-UDP] => (Allow) C:\WINDOWS\system32\Microsoft-Edge-WebView\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{8EC1DEF3-B630-4E4C-BD60-0BDFA9229C55}C:\users\igorv\appdata\local\android\sdk\platform-tools\adb.exe] => (Allow) C:\users\igorv\appdata\local\android\sdk\platform-tools\adb.exe (Google LLC -> )
FirewallRules: [UDP Query User{08460E52-25BF-4415-9BAB-6F131000EBEE}C:\users\igorv\appdata\local\android\sdk\platform-tools\adb.exe] => (Allow) C:\users\igorv\appdata\local\android\sdk\platform-tools\adb.exe (Google LLC -> )
FirewallRules: [{6C35E221-FDF7-434D-AA6A-60CC1A339AFF}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

11-09-2026 23:06:40 Windows Update
13-09-2026 21:57:04 Microsoft Visual C++ v14 Redistributable (x64) - 14.50.35719
13-09-2026 21:57:15 Microsoft Visual C++ v14 Redistributable (x86) - 14.50.35719

==================== Faulty Device Manager Devices ============

==================== Event log errors: ========================

Application errors:
==================
Error: (09/07/2026 01:56:54 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - There was a failure initializing profiling API attach infrastructure. This process will not allow a profiler to attach. HRESULT: 0x80004005. Process ID (decimal): 4188. Message ID: [0x2509].

Error: (09/07/2026 01:49:44 PM) (Source: Application Error) (EventID: 1000) (User: NT AUTHORITY)
Description: Názov chybnej aplikácie: HotKeyServiceUWP.exe, verzia: 8.10.52.464, časová značka: 0x69b00484
Názov modulu s poruchou: ntdll.dll, verzia: 10.0.26100.9278, časová značka: 0x7e1f2ca9
Kód výnimky: 0xc0000005
Odchýlka poruchy: 0x000000000001283d
Id poruchového procesu: 0x14b4
Čas spustenia poruchovej aplikácie: 0x1dd393fb89d77e8
Cesta k poruchovej aplikácii: C:\WINDOWS\System32\DriverStore\FileRepository\hpqkbsoftwarecompnent.inf_amd64_0d182501a33019e2\HotKeyServiceUWP.exe
Cesta k poruchovému modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
Id správy: 8942f3eb-7cd8-4ce1-b188-0cd8a7f84211
Plný názov chybného balíka:
Identifikátor poruchovej aplikácie vzťahujúci sa na balík:

Error: (09/07/2026 01:49:44 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Application: HotKeyServiceUWP.exe
Framework Version: v4.0.30319
Description: The process was terminated due to an unhandled exception.
Exception Info: exception code c0000005, exception address 00007FF80E5F283D

Error: (09/06/2026 11:04:27 AM) (Source: Application Error) (EventID: 1000) (User: SAUL)
Description: Názov chybnej aplikácie: Un_A.exe, verzia: 1.55.0.133, časová značka: 0x614f9d02
Názov modulu s poruchou: ntdll.dll, verzia: 10.0.26100.9278, časová značka: 0xfd201f55
Kód výnimky: 0xc0000005
Odchýlka poruchy: 0x000510c9
Id poruchového procesu: 0x1658
Čas spustenia poruchovej aplikácie: 0x1dd3ddeb5d9ed24
Cesta k poruchovej aplikácii: C:\Users\igorv\AppData\Local\Temp\~nsuA.tmp\Un_A.exe
Cesta k poruchovému modulu: C:\WINDOWS\SYSTEM32\ntdll.dll
Id správy: 48c33b54-604b-4963-9d12-4e5f7161ebee
Plný názov chybného balíka:
Identifikátor poruchovej aplikácie vzťahujúci sa na balík:

Error: (09/05/2026 05:50:58 PM) (Source: .NET Runtime) (EventID: 1022) (User: )
Description: .NET Runtime version 4.0.30319.0 - There was a failure initializing profiling API attach infrastructure. This process will not allow a profiler to attach. HRESULT: 0x80004005. Process ID (decimal): 4564. Message ID: [0x2509].

Error: (09/05/2026 05:07:20 PM) (Source: Application Error) (EventID: 1000) (User: SAUL)
Description: Názov chybnej aplikácie: MicrosoftSecurityApp.exe, verzia: 1.2.2602.23002, časová značka: 0xe9d00a7c
Názov modulu s poruchou: unknown, verzia: 0.0.0.0, časová značka: 0x00000000
Kód výnimky: 0x80131623
Odchýlka poruchy: 0x00007fff9b97f91d
Id poruchového procesu: 0x4328
Čas spustenia poruchovej aplikácie: 0x1dd3d09522ba615
Cesta k poruchovej aplikácii: C:\Program Files\WindowsApps\Microsoft.6365217CE6EB4_102.2602.23002.0_x64__8wekyb3d8bbwe\MicrosoftSecurityApp\MicrosoftSecurityApp.exe
Cesta k poruchovému modulu: unknown
Id správy: 1af612d8-ee25-4363-aaf0-cd11543beb77
Plný názov chybného balíka: Microsoft.6365217CE6EB4_102.2602.23002.0_x64__8wekyb3d8bbwe
Identifikátor poruchovej aplikácie vzťahujúci sa na balík: App

Error: (09/05/2026 05:07:20 PM) (Source: .NET Runtime) (EventID: 1025) (User: )
Description: Application: MicrosoftSecurityApp.exe
Framework Version: v4.0.30319
Description: The application requested process termination through System.Environment.FailFast(string message).
Message: Forced termination due to crash
Stack:
at System.Environment.FailFast(System.String, System.Exception)
at MicrosoftSecurityApp.App.UnhandledExceptionHelper(System.String, System.Exception)
at System.Windows.Threading.Dispatcher.CatchException(System.Exception)
at System.Windows.Threading.ExceptionWrapper.TryCatchWhen(System.Object, System.Delegate, System.Object, Int32, System.Delegate)
at System.Windows.Threading.Dispatcher.LegacyInvokeImpl(System.Windows.Threading.DispatcherPriority, System.TimeSpan, System.Delegate, System.Object, Int32)
at MS.Win32.HwndSubclass.SubclassWndProc(IntPtr, Int32, IntPtr, IntPtr)
at MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef)
at MS.Win32.UnsafeNativeMethods.DispatchMessage(System.Windows.Interop.MSG ByRef)
at System.Windows.Threading.Dispatcher.PushFrameImpl(System.Windows.Threading.DispatcherFrame)
at System.Windows.Application.RunDispatcher(System.Object)
at System.Windows.Application.RunInternal(System.Windows.Window)
at MicrosoftSecurityApp.App.Main()

Error: (09/04/2026 07:03:33 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiska nemohol dokončiť defragmentáciu v KINGSTON (E:), pretože: Zväzky nie je možné optimalizovať, pretože nie je podporovaný typ systému súborov. (0x8900002F)


System errors:
=============
Error: (09/14/2026 10:18:25 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT AUTHORITY)
Description: The Secure Boot update failed to update SBAT with error -1878589247. For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931

Error: (09/13/2026 10:18:25 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT AUTHORITY)
Description: The Secure Boot update failed to update SBAT with error -1878589247. For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931

Error: (09/13/2026 10:18:25 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT AUTHORITY)
Description: The Secure Boot update failed to update SBAT with error -1878589247. For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931

Error: (09/12/2026 10:18:24 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT AUTHORITY)
Description: The Secure Boot update failed to update SBAT with error -1878589247. For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931

Error: (09/12/2026 10:18:25 AM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT AUTHORITY)
Description: The Secure Boot update failed to update SBAT with error -1878589247. For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931

Error: (09/12/2026 10:15:27 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby Služba Google Update (gupdate) zlyhalo kvôli nasledujúcej chybe:
The service did not respond to the start or control request in a timely fashion.

Error: (09/12/2026 10:15:27 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Počas čakania na pripojenie služby Služba Google Update (gupdate) bol dosiahnutý časový limit (30000 ms).

Error: (09/12/2026 10:10:27 AM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: The server {00000000-0000-0000-0000-000000000000} did not register with DCOM within the required timeout.


Windows Defender:
================
TimeCreated : 14. 9. 2026 20:31:16
Message : Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {0CCCE42E-0D65-4A95-880B-B3212C340EDE}
Scan Type: Antimalware
Scan Parameters: Quick Scan
User: NT AUTHORITY\SYSTEM
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days

TimeCreated : 13. 9. 2026 21:55:02
Message : Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {AF76BF3D-4C01-45F4-ACB9-84E2E9643857}
Scan Type: Antimalware
Scan Parameters: Quick Scan
User: NT AUTHORITY\SYSTEM
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days

TimeCreated : 10. 9. 2026 20:21:48
Message : Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {B500EC12-FD50-4C96-AAE7-A47070E0692C}
Scan Type: Antimalware
Scan Parameters: Quick Scan
User: NT AUTHORITY\SYSTEM
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days

TimeCreated : 9. 9. 2026 20:31:50
Message : Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {211F44DF-87B7-4CC1-9C6B-377081934EAC}
Scan Type: Antimalware
Scan Parameters: Quick Scan
User: NT AUTHORITY\SYSTEM
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days

TimeCreated : 8. 9. 2026 20:24:08
Message : Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {E264BE5F-EA1D-43A5-B951-859F0C29074F}
Scan Type: Antimalware
Scan Parameters: Quick Scan
User: NT AUTHORITY\SYSTEM
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days

TimeCreated : 7. 9. 2026 20:40:23
Message : Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {0EB631A5-9696-4CEB-B85B-ADB0F61A1C65}
Scan Type: Antimalware
Scan Parameters: Quick Scan
User: NT AUTHORITY\SYSTEM
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days

TimeCreated : 6. 9. 2026 20:22:59
Message : Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {A6D08298-F4D4-4842-8E7A-3CD125564CCB}
Scan Type: Antimalware
Scan Parameters: Quick Scan
User: NT AUTHORITY\SYSTEM
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days

TimeCreated : 5. 9. 2026 20:49:02
Message : Microsoft Defender Antivirus scan has been stopped before completion.
Scan ID: {ACB43703-342D-46AA-9C89-7A66C6458EAE}
Scan Type: Antimalware
Scan Parameters: Quick Scan
User: NT AUTHORITY\SYSTEM
Stop Reason: Scheduled scan was skipped because the last successful scan was within the last 7 days


CodeIntegrity:
===============
Date: 2026-09-14 15:30:22
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\Google\Chrome\Application\153.0.8010.37\vulkan-1.dll that did not meet the Microsoft signing level requirements.

Date: 2026-09-14 15:30:22
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Program Files\Google\Chrome\Application\chrome.exe) attempted to load \Device\HarddiskVolume3\Program Files\Google\Chrome\Application\153.0.8010.37\vk_swiftshader.dll that did not meet the Microsoft signing level requirements.


==================== Memory info ===========================

BIOS: HP V78 Ver. 01.14.01 07/06/2026
Motherboard: HP 8B5C
Processor: AMD Ryzen 3 7330U with Radeon Graphics
Percentage of memory in use: 40%
Total physical RAM: 15681.06 MB
Available physical RAM: 9278.11 MB
Total Virtual: 16705.06 MB
Available Virtual: 7779.23 MB

==================== Drives ================================

Disk 0 - Drive c: (Windows ) (Fixed) (Total:475.75 GB GB) (Free:345.55 GB GB) (Model: KBG50ZNV512G KIOXIA) NTFS
Disk 0 - Drive g: (Google Drive) (Fixed) (Total:404 GB GB) (Free:328.27 GB GB) (Model: KBG50ZNV512G KIOXIA) FAT32

Disk 0 - \\?\Volume{9f58263c-8408-461c-9546-0e121a29e77f}\ () (Fixed) (Total:0.91 GB) (Free:0.08 GB) NTFS
Disk 0 - \\?\Volume{0ab8e5a7-bce4-4bbf-9a28-5943b9189e90}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.16 GB) FAT32

==================== MBR & Partition Table ====================

============================================================
Disk: 0 (Size: 476.94 GB) (Disk ID: 04C4C758)

Partitions:
===========
Partition Style : GPT
Partition Count : 4
Disk ID : {A263CDF8-BF42-4C52-9424-72152ECFCA5C}
Usable Offset : 0.02 MB
Usable Length : 476.94 GB
Max Partitions : 128

Partition 1
Type : EFI System Partition
Size : 260 MB
Offset : 1 MB
Type GUID : {C12A7328-F81F-11D2-BA4B-00A0C93EC93B}
Partition GUID : {0AB8E5A7-BCE4-4BBF-9A28-5943B9189E90}
GPT Name : EFI system partition
Attributes : 0x0000000000000000
Attribute Flags : None
Hidden : Yes
Platform Required: No
------------------------------------------------------------
Partition 2
Type : Microsoft Reserved (MSR)
Size : 16 MB
Offset : 261 MB
Type GUID : {E3C9E316-0B5C-4DB8-817D-F92DF00215AE}
Partition GUID : {7438485B-0044-470E-A29D-E03CD2FC737D}
GPT Name : Microsoft reserved partition
Attributes : 0x0000000000000000
Attribute Flags : None
Hidden : Yes
Platform Required: No
------------------------------------------------------------
Partition 3
Type : Basic Data Partition
Size : 475.75 GB
Offset : 277 MB
Type GUID : {EBD0A0A2-B9E5-4433-87C0-68B6B72699C7}
Partition GUID : {02C71772-108A-4EE6-A2F9-4C679180F1D9}
GPT Name : Basic data partition
Attributes : 0x0000000000000000
Attribute Flags : None
Hidden : No
Platform Required: No
------------------------------------------------------------
Partition 4
Type : Windows Recovery
Size : 935 MB
Offset : 487446 MB
Type GUID : {DE94BBA4-06D1-4D40-A16A-BFD50179D6AC}
Partition GUID : {9F58263C-8408-461C-9546-0E121A29E77F}
Attributes : 0x8000000000000001
Attribute Flags : Platform Required, No Default Drive Letter
Hidden : Yes
Platform Required: Yes
------------------------------------------------------------

============================================================

==================== End of Addition.txt =======================

Re: kontrola frst so zameranim

Odeslal: 14 Zář 2026 20:45
od Rudy
Zdravím!
Nejprve spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi

Re: kontrola frst so zameranim

Odeslal: 14 Zář 2026 21:02
od 5manager5
našlo mi len HP veci, ale tie nevadia

# -------------------------------
# Malwarebytes AdwCleaner 8.8.1.639
# -------------------------------
# Build: 05-13-2026
# Database: 2026-05-07.3 (Cloud)
# Support: https://help.malwarebytes.com/
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 09-14-2026
# Duration: 00:00:04
# OS: Windows 11 (Build 26200.9445)
# Scanned: 32085
# Detected: 7


***** [ Services ] *****

No malicious services found.

***** [ Folders ] *****

No malicious folders found.

***** [ Files ] *****

No malicious files found.

***** [ DLL ] *****

No malicious DLLs found.

***** [ WMI ] *****

No malicious WMI found.

***** [ Shortcuts ] *****

No malicious shortcuts found.

***** [ Tasks ] *****

No malicious tasks found.

***** [ Registry ] *****

No malicious registry entries found.

***** [ Chromium (and derivatives) ] *****

No malicious Chromium entries found.

***** [ Chromium URLs ] *****

No malicious Chromium URLs found.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries found.

***** [ Firefox URLs ] *****

No malicious Firefox URLs found.

***** [ Hosts File Entries ] *****

No malicious hosts file entries found.

***** [ Preinstalled Software ] *****

Preinstalled.HPSupportAssistant Folder C:\ProgramData\HEWLETT-PACKARD\HP SUPPORT FRAMEWORK
Preinstalled.HPSureConnect Folder C:\Program Files\HPCOMMRECOVERY
Preinstalled.HPSureConnect Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{6468C4A5-E47E-405F-B675-A70A70983EA6}
Preinstalled.HPTouchpointAnalyticsClient Folder C:\Program Files (x86)\HP\HP TOUCHPOINT ANALYTICS CLIENT
Preinstalled.HPTouchpointAnalyticsClient Folder C:\Program Files\HP\HP TOUCHPOINT ANALYTICS CLIENT
Preinstalled.HPTouchpointAnalyticsClient Folder C:\ProgramData\HP\HP TOUCHPOINT ANALYTICS CLIENT
Preinstalled.HPTouchpointAnalyticsClient Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Uninstall\{E5FB98E0-0784-44F0-8CEC-95CD4690C43F}



########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S00].txt ##########

Re: kontrola frst so zameranim

Odeslal: 15 Zář 2026 08:00
od Rudy
Toto je OK. Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
C:\DumpStack.log.tmp

EmptyTemp:
End
Uložte do C:\Users\igorv\Downloads jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.

Re: kontrola frst so zameranim

Odeslal: 15 Zář 2026 08:49
od 5manager5
je teda všetko určite v poriadku?

Fix result of Farbar Recovery Scan Tool (x64) Version: 09-09-2026
Ran by igorv (15-09-2026 09:41:38) Run:1
Running from C:\Users\igorv\Downloads
Loaded Profiles: igorv
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
C:\DumpStack.log.tmp

EmptyTemp:
End
*****************

Processes closed successfully.
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.


=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 1572864 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 102292819 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 1 B
Windows/system/drivers => 44125431 B
Edge => 52909149 B
Chrome => 1056271188 B
Firefox => 0 B
Opera => 0 B

Local\Temp, Local\*.tmp, LocalLow\Temp, Roaming\Temp, Roaming\*.tmp , Caches, history, cookies, recent:
Default => 4 B
ProgramData => 989729 B
Public => 0 B
systemprofile => 477194 B
systemprofile32 => 0 B
LocalService => 1474232 B
NetworkService => 122410 B
igorv => 9736413 B

RecycleBin => 20655350 B
EmptyTemp: => 1.2 GB temporary data Removed.

================================

Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 15-09-2026 09:46:56)

C:\DumpStack.log.tmp => Could not move

==== End of Fixlog 09:46:57 ====

Re: kontrola frst so zameranim

Odeslal: 15 Zář 2026 12:06
od Rudy
Log je OK. Mělo by být vše v pořádku.Na žádný keylogger, špehovací program, ani jinou havěť jsem nenarazil. :-)