
Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Modrá obrazovka
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Re: Modrá obrazovka
pre upresnenie:
Disk C zo 117Gb mám voľných 5,13Gb
World of Tanks 49Gb
Windows 30Gb
Programové súbory(x86) 6,63Gb
Všetko čo sa dalo som musel premiestniť na D, pretože už bol preplnený.
Neviem čo mi to zaberá
Disk C zo 117Gb mám voľných 5,13Gb
World of Tanks 49Gb
Windows 30Gb
Programové súbory(x86) 6,63Gb
Všetko čo sa dalo som musel premiestniť na D, pretože už bol preplnený.
Neviem čo mi to zaberá
Re: Modrá obrazovka
1. preventivne otestuj aj zvysne disky
chkdsk d:
chkdsk e:
2. vloz oba aktualne logy FRST
3. idealne by bolo 117GB disk nahradit vacsim
chkdsk d:
chkdsk e:
2. vloz oba aktualne logy FRST
3. idealne by bolo 117GB disk nahradit vacsim
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Modrá obrazovka
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 88.212.8.8 88.212.8.88
Tcpip\..\Interfaces\{5c362e89-8288-4ab5-958b-95c3bff238f2}: [DhcpNameServer] 88.212.8.8 88.212.8.88
Tcpip\..\Interfaces\{c8a8dfcb-a889-48f8-9307-d49bd92c8e62}: [DhcpNameServer] 88.212.8.8 88.212.8.88
Tcpip\..\Interfaces\{c8a8dfcb-a889-48f8-9307-d49bd92c8e62}\445636F6F543735334: [DhcpNameServer] 192.168.68.1
Tcpip\..\Interfaces\{c8a8dfcb-a889-48f8-9307-d49bd92c8e62}\4505D2C494E4B4F573733414: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{c8a8dfcb-a889-48f8-9307-d49bd92c8e62}\4505D2C494E4B4F583234323: [DhcpNameServer] 192.168.1.1
Edge:
=======
Edge Profile: C:\Users\User\AppData\Local\Microsoft\Edge\User Data\Default [2025-07-01]
Edge Extension: (Dokumenty Google v režime offline) - C:\Users\User\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-09-06]
Edge Extension: (Edge relevant text changes) - C:\Users\User\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]
FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.361.2 -> C:\Program Files\Java\jre1.8.0_361\bin\dtplugin\npDeployJava1.dll [2023-01-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.361.2 -> C:\Program Files\Java\jre1.8.0_361\bin\plugin2\npjp2.dll [2023-01-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2025-06-06] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: ditec.sk/DAsicFac -> C:\PROGRA~2\Ditec\DSIGNE~2.NET\NPDITE~1.DLL [2021-02-09] (DITEC, a.s. -> Ditec,a.s.)
FF Plugin-x32: ditec.sk/DitecZepDViewerFb -> C:\PROGRA~2\Ditec\DViewer\NPDITE~1.DLL [2021-02-09] (DITEC, a.s. -> Ditec, a.s.)
FF Plugin-x32: ditec.sk/DSigMessageContainer -> C:\PROGRA~2\Ditec\DSIGNE~2.NET\NPDITE~2.DLL [2021-02-09] (DITEC, a.s. -> Ditec, a.s.)
FF Plugin-x32: ditec.sk/DSigXadesExtender -> C:\PROGRA~2\Ditec\DSIGNE~2.NET\NPDITE~3.DLL [2021-02-09] (DITEC, a.s. -> Ditec, a.s.)
FF Plugin-x32: ditec.sk/DSigXadesFb -> C:\PROGRA~2\Ditec\DSIGNE~1.NET\NPDITE~1.DLL [2021-09-06] (DITEC, a.s. -> Ditec,a.s.)
FF Plugin-x32: ditec.sk/XmlDataContainerFb -> C:\PROGRA~2\Ditec\DSIGNE~1.NET\NPDITE~2.DLL [2021-09-06] (DITEC, a.s. -> Ditec,a.s.)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\Default [2025-07-05]
CHR Notifications: Default -> hxxps://gw.lightinthebox.com; hxxps://www.aliexpress.com
CHR Session Restore: Default -> is enabled.
CHR Extension: (Authenticator) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhghoamapcdpbohphigoooaddinpkbai [2024-08-28]
CHR Extension: (Adblock pre Youtube™) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmedhionkhpnakcndndgjdbohmhepckk [2025-06-23]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-06-26]
CHR Extension: (AVG SafePrice) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbckjcfnjmoiinpgddefodcighgikkgn [2025-05-20]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\Guest Profile [2025-06-28]
CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\System Profile [2024-12-24]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn]
Opera:
=======
OPR DefaultProfile: Opera Stable
OPR Profile: C:\Users\User\AppData\Roaming\Opera Software\Opera Stable [2024-02-01]
OPR DefaultSearchURL: Opera Stable -> hxxps://www.google.com/search?client=opera&q={s ... utEncoding}
OPR DefaultSearchKeyword: Opera Stable -> g
OPR Extension: (Rich Hints Agent) - C:\Users\User\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2023-09-22]
OPR Extension: (Opera Wallet) - C:\Users\User\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2023-09-22]
OPR Extension: (Aria) - C:\Users\User\AppData\Roaming\Opera Software\Opera Stable\Extensions\igpdmclhhlcpoindmhkhillbfhdgoegm [2023-09-22]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174520 2025-03-21] (Adobe Inc. -> Adobe Inc.)
R3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1087792 2024-11-06] (Gen Digital Inc. -> Piriform Software Ltd)
R2 CloudflareWARP; C:\Program Files\Cloudflare\Cloudflare WARP\warp-svc.exe [18228128 2022-06-16] (Cloudflare, Inc. -> )
R2 dLauncherLoopback; C:\Program Files (x86)\Ditec\DLauncher\dLauncherLoopback.exe [154960 2019-08-02] (DITEC, a.s. -> )
R2 Dolby DAX2 API Service; C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe [189464 2020-06-02] (Dolby Laboratories, Inc. -> Dolby Laboratories, Inc.)
R2 ImControllerService; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
R2 LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\4.3.50.0\LenovoVantageService.exe [34792 2025-06-17] (Lenovo -> Lenovo)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25050.5-0\MpDefenderCoreService.exe [2071592 2025-06-13] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 QcomWlanSrv; C:\WINDOWS\System32\drivers\QcomWlanSrvx64.exe [189792 2022-04-25] (Qualcomm Atheros, Inc. -> )
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25050.5-0\NisSrv.exe [4513624 2025-06-13] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25050.5-0\MsMpEng.exe [278328 2025-06-13] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvla.inf_amd64_a6a2da7e042e0376\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvla.inf_amd64_a6a2da7e042e0376\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [330112 2025-06-13] (Microsoft Windows -> Microsoft Corporation)
R3 RSP2STOR; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [347224 2024-12-01] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [39920 2019-10-23] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [20032 2025-06-13] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [612768 2025-06-13] (Microsoft Windows -> Microsoft Corporation)
R1 wdfsconnect2017; C:\WINDOWS\system32\drivers\wdfsconnect2017.sys [468112 2017-11-21] (Microsoft Windows Hardware Compatibility Publisher -> Western Digital Technologies, Inc.)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [100744 2025-06-13] (Microsoft Windows -> Microsoft Corporation)
R3 wdvpnpbus; C:\WINDOWS\System32\drivers\wdvpnpbus.sys [20624 2017-11-21] (Microsoft Windows Hardware Compatibility Publisher -> Western Digital Technologies, Inc.)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-07-05 10:31 - 2025-07-05 10:32 - 000008809 ____C C:\Users\User\Desktop\FRST.txt
2025-07-05 10:30 - 2025-07-05 10:31 - 000000000 ___DC C:\FRST
2025-07-05 10:24 - 2025-07-05 10:24 - 002100224 ____C (Farbar) C:\Users\User\Desktop\FRST.exe
2025-07-05 10:16 - 2025-07-05 10:16 - 002407936 ____C (Farbar) C:\Users\User\Desktop\FRST64.exe
2025-07-05 07:33 - 2025-07-05 07:33 - 000000000 ____D C:\WINDOWS\system32\Tasks\Event Viewer Tasks
2025-07-04 05:46 - 2025-07-04 05:46 - 002034388 _____ C:\WINDOWS\Minidump\070425-18484-01.dmp
2025-07-03 17:53 - 2025-07-03 17:53 - 002057132 _____ C:\WINDOWS\Minidump\070325-17171-01.dmp
2025-07-03 07:17 - 2025-07-03 07:17 - 001582140 _____ C:\WINDOWS\Minidump\070325-20015-01.dmp
2025-07-02 15:17 - 2025-07-02 15:17 - 001725380 _____ C:\WINDOWS\Minidump\070225-16234-01.dmp
2025-07-01 20:52 - 2025-07-01 20:52 - 000000000 _____ C:\Users\User\chkdsk
2025-07-01 19:09 - 2025-07-01 19:09 - 002281404 _____ C:\WINDOWS\Minidump\070125-19828-01.dmp
2025-06-28 11:47 - 2025-06-28 12:17 - 000000000 ___DC C:\Users\User\Desktop\cucky
2025-06-25 19:11 - 2025-06-25 19:11 - 000023172 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2025-06-25 19:10 - 2025-06-25 19:10 - 000023172 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2025-06-10 19:46 - 2025-06-10 19:46 - 000000000 __HDC C:\$WinREAgent
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-07-05 10:16 - 2019-10-10 07:51 - 000000000 ____D C:\Users\User\AppData\Local\CrashDumps
2025-07-05 10:16 - 2019-10-08 13:15 - 000000000 ____D C:\Program Files\CCleaner
2025-07-05 10:15 - 2020-12-06 08:56 - 001693350 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-07-05 10:15 - 2019-12-07 16:41 - 000716770 _____ C:\WINDOWS\system32\perfh005.dat
2025-07-05 10:15 - 2019-12-07 16:41 - 000144948 _____ C:\WINDOWS\system32\perfc005.dat
2025-07-05 10:15 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2025-07-05 10:09 - 2022-11-17 06:27 - 000000000 ____D C:\Users\User\AppData\Roaming\WD Discovery
2025-07-05 10:09 - 2022-11-17 06:26 - 000000000 ____D C:\Users\User\.wdc
2025-07-05 10:08 - 2020-12-06 08:52 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-07-05 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState
2025-07-05 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-07-05 10:08 - 2019-05-30 22:02 - 000000000 _SHDC C:\Users\User\IntelGraphicsProfiles
2025-07-05 10:08 - 2019-05-30 21:47 - 000000000 __HDC C:\Intel
2025-07-05 10:08 - 2019-05-30 21:42 - 000000000 ____D C:\ProgramData\NVIDIA
2025-07-05 08:28 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2025-07-05 06:59 - 2020-12-06 08:46 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-07-05 04:56 - 2021-12-17 21:08 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-07-04 17:33 - 2019-06-05 11:35 - 000000000 ___DC C:\Users\User\AppData\Roaming\ViberPC
2025-07-04 17:05 - 2025-05-29 14:25 - 000000000 ___DC C:\Users\User\Documents\ViberDownloads
2025-07-04 17:05 - 2022-08-30 07:48 - 000000000 ___DC C:\Users\User\AppData\Local\Viber
2025-07-04 08:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-07-04 06:10 - 2020-06-10 10:27 - 000002443 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-07-04 06:10 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-07-04 06:10 - 2019-05-30 22:02 - 000000000 ___DC C:\Users\User\AppData\Local\Packages
2025-07-04 05:46 - 2022-09-13 06:31 - 000000000 ____D C:\WINDOWS\Minidump
2025-07-02 06:37 - 2022-11-11 08:56 - 000000000 ____D C:\Program Files\RUXIM
2025-07-01 18:50 - 2025-02-07 19:47 - 000003556 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-1496144255-991381806-58249036-1001
2025-07-01 18:50 - 2021-12-11 08:21 - 000003580 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1496144255-991381806-58249036-1001
2025-07-01 18:50 - 2020-12-06 08:52 - 000003354 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1496144255-991381806-58249036-1001
2025-07-01 18:50 - 2020-12-06 08:48 - 000002367 ____C C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-06-28 12:52 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2025-06-28 11:24 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-06-27 14:16 - 2019-06-05 11:06 - 000002320 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2025-06-27 09:35 - 2019-06-05 11:36 - 000000000 ___DC C:\Users\User\AppData\Roaming\uTorrent
2025-06-26 18:53 - 2019-06-25 09:44 - 000000000 ____D C:\Users\User\AppData\Local\D3DSCache
2025-06-26 18:38 - 2019-06-05 07:13 - 000000000 ____D C:\ProgramData\Packages
2025-06-26 18:35 - 2020-12-06 08:46 - 000448008 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2025-06-25 19:21 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2025-06-25 19:21 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2025-06-25 19:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2025-06-25 19:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2025-06-25 19:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2025-06-25 19:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2025-06-25 19:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2025-06-25 19:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2025-06-25 19:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2025-06-25 19:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2025-06-25 19:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2025-06-25 19:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2025-06-25 19:21 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing
2025-06-25 19:10 - 2020-12-06 08:49 - 003016192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2025-06-25 19:04 - 2021-10-26 17:33 - 000000000 ____D C:\Users\User\AppData\Roaming\Telegram Desktop
2025-06-13 14:55 - 2019-06-19 09:35 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2025-06-13 10:15 - 2022-10-12 18:38 - 000002143 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader.lnk
2025-06-12 10:53 - 2019-06-05 03:17 - 000000000 ____D C:\WINDOWS\system32\MRT
2025-06-12 10:51 - 2019-06-05 03:17 - 216824056 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2025-06-12 08:52 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 88.212.8.8 88.212.8.88
Tcpip\..\Interfaces\{5c362e89-8288-4ab5-958b-95c3bff238f2}: [DhcpNameServer] 88.212.8.8 88.212.8.88
Tcpip\..\Interfaces\{c8a8dfcb-a889-48f8-9307-d49bd92c8e62}: [DhcpNameServer] 88.212.8.8 88.212.8.88
Tcpip\..\Interfaces\{c8a8dfcb-a889-48f8-9307-d49bd92c8e62}\445636F6F543735334: [DhcpNameServer] 192.168.68.1
Tcpip\..\Interfaces\{c8a8dfcb-a889-48f8-9307-d49bd92c8e62}\4505D2C494E4B4F573733414: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{c8a8dfcb-a889-48f8-9307-d49bd92c8e62}\4505D2C494E4B4F583234323: [DhcpNameServer] 192.168.1.1
Edge:
=======
Edge Profile: C:\Users\User\AppData\Local\Microsoft\Edge\User Data\Default [2025-07-01]
Edge Extension: (Dokumenty Google v režime offline) - C:\Users\User\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-09-06]
Edge Extension: (Edge relevant text changes) - C:\Users\User\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-24]
FireFox:
========
FF Plugin: @java.com/DTPlugin,version=11.361.2 -> C:\Program Files\Java\jre1.8.0_361\bin\dtplugin\npDeployJava1.dll [2023-01-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.361.2 -> C:\Program Files\Java\jre1.8.0_361\bin\plugin2\npjp2.dll [2023-01-09] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2025-06-06] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: ditec.sk/DAsicFac -> C:\PROGRA~2\Ditec\DSIGNE~2.NET\NPDITE~1.DLL [2021-02-09] (DITEC, a.s. -> Ditec,a.s.)
FF Plugin-x32: ditec.sk/DitecZepDViewerFb -> C:\PROGRA~2\Ditec\DViewer\NPDITE~1.DLL [2021-02-09] (DITEC, a.s. -> Ditec, a.s.)
FF Plugin-x32: ditec.sk/DSigMessageContainer -> C:\PROGRA~2\Ditec\DSIGNE~2.NET\NPDITE~2.DLL [2021-02-09] (DITEC, a.s. -> Ditec, a.s.)
FF Plugin-x32: ditec.sk/DSigXadesExtender -> C:\PROGRA~2\Ditec\DSIGNE~2.NET\NPDITE~3.DLL [2021-02-09] (DITEC, a.s. -> Ditec, a.s.)
FF Plugin-x32: ditec.sk/DSigXadesFb -> C:\PROGRA~2\Ditec\DSIGNE~1.NET\NPDITE~1.DLL [2021-09-06] (DITEC, a.s. -> Ditec,a.s.)
FF Plugin-x32: ditec.sk/XmlDataContainerFb -> C:\PROGRA~2\Ditec\DSIGNE~1.NET\NPDITE~2.DLL [2021-09-06] (DITEC, a.s. -> Ditec,a.s.)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\Default [2025-07-05]
CHR Notifications: Default -> hxxps://gw.lightinthebox.com; hxxps://www.aliexpress.com
CHR Session Restore: Default -> is enabled.
CHR Extension: (Authenticator) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhghoamapcdpbohphigoooaddinpkbai [2024-08-28]
CHR Extension: (Adblock pre Youtube™) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\cmedhionkhpnakcndndgjdbohmhepckk [2025-06-23]
CHR Extension: (Dokumenty Google v režime offline) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-06-26]
CHR Extension: (AVG SafePrice) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\mbckjcfnjmoiinpgddefodcighgikkgn [2025-05-20]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\Guest Profile [2025-06-28]
CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\System Profile [2024-12-24]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [mbckjcfnjmoiinpgddefodcighgikkgn]
Opera:
=======
OPR DefaultProfile: Opera Stable
OPR Profile: C:\Users\User\AppData\Roaming\Opera Software\Opera Stable [2024-02-01]
OPR DefaultSearchURL: Opera Stable -> hxxps://www.google.com/search?client=opera&q={s ... utEncoding}
OPR DefaultSearchKeyword: Opera Stable -> g
OPR Extension: (Rich Hints Agent) - C:\Users\User\AppData\Roaming\Opera Software\Opera Stable\Extensions\enegjkbbakeegngfapepobipndnebkdk [2023-09-22]
OPR Extension: (Opera Wallet) - C:\Users\User\AppData\Roaming\Opera Software\Opera Stable\Extensions\gojhcdgcpbpfigcaejpfhfegekdgiblk [2023-09-22]
OPR Extension: (Aria) - C:\Users\User\AppData\Roaming\Opera Software\Opera Stable\Extensions\igpdmclhhlcpoindmhkhillbfhdgoegm [2023-09-22]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [174520 2025-03-21] (Adobe Inc. -> Adobe Inc.)
R3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1087792 2024-11-06] (Gen Digital Inc. -> Piriform Software Ltd)
R2 CloudflareWARP; C:\Program Files\Cloudflare\Cloudflare WARP\warp-svc.exe [18228128 2022-06-16] (Cloudflare, Inc. -> )
R2 dLauncherLoopback; C:\Program Files (x86)\Ditec\DLauncher\dLauncherLoopback.exe [154960 2019-08-02] (DITEC, a.s. -> )
R2 Dolby DAX2 API Service; C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe [189464 2020-06-02] (Dolby Laboratories, Inc. -> Dolby Laboratories, Inc.)
R2 ImControllerService; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
R2 LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\4.3.50.0\LenovoVantageService.exe [34792 2025-06-17] (Lenovo -> Lenovo)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25050.5-0\MpDefenderCoreService.exe [2071592 2025-06-13] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 QcomWlanSrv; C:\WINDOWS\System32\drivers\QcomWlanSrvx64.exe [189792 2022-04-25] (Qualcomm Atheros, Inc. -> )
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25050.5-0\NisSrv.exe [4513624 2025-06-13] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25050.5-0\MsMpEng.exe [278328 2025-06-13] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\WINDOWS\System32\DriverStore\FileRepository\nvla.inf_amd64_a6a2da7e042e0376\Display.NvContainer\NVDisplay.Container.exe -s NVDisplay.ContainerLocalSystem -f %ProgramData%\NVIDIA\NVDisplay.ContainerLocalSystem.log -l 3 -d C:\WINDOWS\System32\DriverStore\FileRepository\nvla.inf_amd64_a6a2da7e042e0376\Display.NvContainer\plugins\LocalSystem -r -p 30000 -cfg NVDisplay.ContainerLocalSystem\LocalSystem
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [330112 2025-06-13] (Microsoft Windows -> Microsoft Corporation)
R3 RSP2STOR; C:\WINDOWS\system32\DRIVERS\RtsP2Stor.sys [347224 2024-12-01] (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R3 tap0901; C:\WINDOWS\System32\drivers\tap0901.sys [39920 2019-10-23] (Microsoft Windows Hardware Compatibility Publisher -> The OpenVPN Project)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [20032 2025-06-13] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [612768 2025-06-13] (Microsoft Windows -> Microsoft Corporation)
R1 wdfsconnect2017; C:\WINDOWS\system32\drivers\wdfsconnect2017.sys [468112 2017-11-21] (Microsoft Windows Hardware Compatibility Publisher -> Western Digital Technologies, Inc.)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [100744 2025-06-13] (Microsoft Windows -> Microsoft Corporation)
R3 wdvpnpbus; C:\WINDOWS\System32\drivers\wdvpnpbus.sys [20624 2017-11-21] (Microsoft Windows Hardware Compatibility Publisher -> Western Digital Technologies, Inc.)
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-07-05 10:31 - 2025-07-05 10:32 - 000008809 ____C C:\Users\User\Desktop\FRST.txt
2025-07-05 10:30 - 2025-07-05 10:31 - 000000000 ___DC C:\FRST
2025-07-05 10:24 - 2025-07-05 10:24 - 002100224 ____C (Farbar) C:\Users\User\Desktop\FRST.exe
2025-07-05 10:16 - 2025-07-05 10:16 - 002407936 ____C (Farbar) C:\Users\User\Desktop\FRST64.exe
2025-07-05 07:33 - 2025-07-05 07:33 - 000000000 ____D C:\WINDOWS\system32\Tasks\Event Viewer Tasks
2025-07-04 05:46 - 2025-07-04 05:46 - 002034388 _____ C:\WINDOWS\Minidump\070425-18484-01.dmp
2025-07-03 17:53 - 2025-07-03 17:53 - 002057132 _____ C:\WINDOWS\Minidump\070325-17171-01.dmp
2025-07-03 07:17 - 2025-07-03 07:17 - 001582140 _____ C:\WINDOWS\Minidump\070325-20015-01.dmp
2025-07-02 15:17 - 2025-07-02 15:17 - 001725380 _____ C:\WINDOWS\Minidump\070225-16234-01.dmp
2025-07-01 20:52 - 2025-07-01 20:52 - 000000000 _____ C:\Users\User\chkdsk
2025-07-01 19:09 - 2025-07-01 19:09 - 002281404 _____ C:\WINDOWS\Minidump\070125-19828-01.dmp
2025-06-28 11:47 - 2025-06-28 12:17 - 000000000 ___DC C:\Users\User\Desktop\cucky
2025-06-25 19:11 - 2025-06-25 19:11 - 000023172 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2025-06-25 19:10 - 2025-06-25 19:10 - 000023172 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2025-06-10 19:46 - 2025-06-10 19:46 - 000000000 __HDC C:\$WinREAgent
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-07-05 10:16 - 2019-10-10 07:51 - 000000000 ____D C:\Users\User\AppData\Local\CrashDumps
2025-07-05 10:16 - 2019-10-08 13:15 - 000000000 ____D C:\Program Files\CCleaner
2025-07-05 10:15 - 2020-12-06 08:56 - 001693350 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-07-05 10:15 - 2019-12-07 16:41 - 000716770 _____ C:\WINDOWS\system32\perfh005.dat
2025-07-05 10:15 - 2019-12-07 16:41 - 000144948 _____ C:\WINDOWS\system32\perfc005.dat
2025-07-05 10:15 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2025-07-05 10:09 - 2022-11-17 06:27 - 000000000 ____D C:\Users\User\AppData\Roaming\WD Discovery
2025-07-05 10:09 - 2022-11-17 06:26 - 000000000 ____D C:\Users\User\.wdc
2025-07-05 10:08 - 2020-12-06 08:52 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-07-05 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ServiceState
2025-07-05 10:08 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-07-05 10:08 - 2019-05-30 22:02 - 000000000 _SHDC C:\Users\User\IntelGraphicsProfiles
2025-07-05 10:08 - 2019-05-30 21:47 - 000000000 __HDC C:\Intel
2025-07-05 10:08 - 2019-05-30 21:42 - 000000000 ____D C:\ProgramData\NVIDIA
2025-07-05 08:28 - 2019-12-07 11:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2025-07-05 06:59 - 2020-12-06 08:46 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-07-05 04:56 - 2021-12-17 21:08 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-07-04 17:33 - 2019-06-05 11:35 - 000000000 ___DC C:\Users\User\AppData\Roaming\ViberPC
2025-07-04 17:05 - 2025-05-29 14:25 - 000000000 ___DC C:\Users\User\Documents\ViberDownloads
2025-07-04 17:05 - 2022-08-30 07:48 - 000000000 ___DC C:\Users\User\AppData\Local\Viber
2025-07-04 08:51 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-07-04 06:10 - 2020-06-10 10:27 - 000002443 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-07-04 06:10 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-07-04 06:10 - 2019-05-30 22:02 - 000000000 ___DC C:\Users\User\AppData\Local\Packages
2025-07-04 05:46 - 2022-09-13 06:31 - 000000000 ____D C:\WINDOWS\Minidump
2025-07-02 06:37 - 2022-11-11 08:56 - 000000000 ____D C:\Program Files\RUXIM
2025-07-01 18:50 - 2025-02-07 19:47 - 000003556 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-1496144255-991381806-58249036-1001
2025-07-01 18:50 - 2021-12-11 08:21 - 000003580 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1496144255-991381806-58249036-1001
2025-07-01 18:50 - 2020-12-06 08:52 - 000003354 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1496144255-991381806-58249036-1001
2025-07-01 18:50 - 2020-12-06 08:48 - 000002367 ____C C:\Users\User\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-06-28 12:52 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\LiveKernelReports
2025-06-28 11:24 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-06-27 14:16 - 2019-06-05 11:06 - 000002320 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2025-06-27 09:35 - 2019-06-05 11:36 - 000000000 ___DC C:\Users\User\AppData\Roaming\uTorrent
2025-06-26 18:53 - 2019-06-25 09:44 - 000000000 ____D C:\Users\User\AppData\Local\D3DSCache
2025-06-26 18:38 - 2019-06-05 07:13 - 000000000 ____D C:\ProgramData\Packages
2025-06-26 18:35 - 2020-12-06 08:46 - 000448008 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2025-06-25 19:21 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2025-06-25 19:21 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2025-06-25 19:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2025-06-25 19:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2025-06-25 19:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2025-06-25 19:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2025-06-25 19:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2025-06-25 19:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2025-06-25 19:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2025-06-25 19:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2025-06-25 19:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2025-06-25 19:21 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2025-06-25 19:21 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing
2025-06-25 19:10 - 2020-12-06 08:49 - 003016192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2025-06-25 19:04 - 2021-10-26 17:33 - 000000000 ____D C:\Users\User\AppData\Roaming\Telegram Desktop
2025-06-13 14:55 - 2019-06-19 09:35 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2025-06-13 10:15 - 2022-10-12 18:38 - 000002143 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader.lnk
2025-06-12 10:53 - 2019-06-05 03:17 - 000000000 ____D C:\WINDOWS\system32\MRT
2025-06-12 10:51 - 2019-06-05 03:17 - 216824056 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2025-06-12 08:52 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Re: Modrá obrazovka
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 03-07-2025
Ran by User (05-07-2025 10:32:59)
Running from C:\Users\User\Desktop
Microsoft Windows 10 Home Version 22H2 19045.6036 (X64) (2020-12-06 06:52:43)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-1496144255-991381806-58249036-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1496144255-991381806-58249036-503 - Limited - Disabled)
Guest (S-1-5-21-1496144255-991381806-58249036-501 - Limited - Disabled)
User (S-1-5-21-1496144255-991381806-58249036-1001 - Administrator - Enabled) => C:\Users\User
WDAGUtilityAccount (S-1-5-21-1496144255-991381806-58249036-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 23.01 (HKLM-x32\...\{23170F69-40C1-2701-2301-000001000000}) (Version: 23.01.00.0 - Igor Pavlov)
7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version: - )
Adobe Acrobat Reader - Slovak (HKLM-x32\...\{AC76BA86-7AD7-1051-7B44-AC0F074E4100}) (Version: 25.001.20531 - Adobe Systems Incorporated)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601110}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Asistent pri aktualizácii na Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.19041.2183 - Microsoft Corporation)
Avast Update Helper (HKLM-x32\...\{19C3AB22-3718-4E4D-B203-242F5001565B}) (Version: 1.8.1697.6 - AVAST Software) Hidden
Balík softvéru eID (HKLM-x32\...\{d2c66c1e-5862-43e7-abe2-9c895312112c}) (Version: 1.0.0.0 - Ministerstvo vnútra Slovenskej republiky) Hidden
Bit4id - miniLector (HKLM-x32\...\Bit4id - miniLector) (Version: 3.7 - Bit4id)
CCleaner (HKLM\...\CCleaner) (Version: 6.30 - Piriform)
CCleaner Update Helper (HKLM-x32\...\{E4EAC0E2-A80B-479F-BA45-DCDA595C9A93}) (Version: 1.8.1208.2 - Piriform Software) Hidden
Cloudflare WARP (HKLM\...\{CD74AC63-0675-4287-8122-77446741A85E}) (Version: 22.5.341.0 - Cloudflare, Inc.)
D.Launcher (x86) (HKLM-x32\...\{0DC85C46-746B-4BC5-B727-D5434DF7E5D0}) (Version: 1.2.0.2 - DITEC, a.s.)
D.Signer/XAdES .NET so zásuvnými modulmi (x86) (HKLM-x32\...\{EDB276CE-A945-4201-A552-2683B13C321F}) (Version: 4.0.24 - DITEC, a.s.)
D.Signer/XAdES .NET Tools (x86) (HKLM-x32\...\{6648F510-5044-4CA9-BC21-494A2A198B3A}) (Version: 4.0.17 - DITEC, a.s.)
D.Suite/eIDAS (x86) (HKLM-x32\...\{8d169eac-87e2-4981-825f-701b32f24d72}) (Version: 1.0.29 - DITEC, a.s.)
D.Viewer .NET (x86) (HKLM-x32\...\{73D635BE-5D6F-43D3-8C1F-63B5CD4D5953}) (Version: 4.0.2033 - DITEC, a.s.)
Disig Web Signer (HKLM-x32\...\{8DF92E56-C8C4-4FE3-AD3B-AA10AF3BF0C6}) (Version: 2.1.1 - Disig)
Dolby Audio X2 Windows API SDK (HKLM\...\{FA0735B6-9E18-437A-A1CD-9152650FC52B}) (Version: 0.8.8.90 - Dolby Laboratories, Inc.)
Dolby Audio X2 Windows APP (HKLM\...\{D0D32569-4680-490A-905C-5117CEAAB3EF}) (Version: 0.8.8.76 - Dolby Laboratories, Inc.)
eID Klient (HKLM-x32\...\{BAA1B220-5940-433E-B00F-E83C3C2D1956}) (Version: 5.0.0 - MV SR)
EseeCloud 3.0.3 (HKLM-x32\...\EseeCloud) (Version: 3.0.3 - My company, Inc.)
GemPcCCID (HKLM\...\{C2C14C20-A217-4FCA-B668-89B6C70B6EFF}) (Version: 2.0.7 - Gemalto)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 137.0.7151.122 - Google LLC)
Intel(R) Chipset Device Software (HKLM\...\{94E05108-3E4E-4F2E-AC5F-33A1B22B779C}) (Version: 10.1.1.44 - Intel Corporation) Hidden
Intel(R) Chipset Device Software (HKLM-x32\...\{17408817-d415-4768-a160-ae6d46d6bdb0}) (Version: 10.1.1.44 - Intel(R) Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 2105.15.0.2157 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{A9B23394-82C4-4885-92F6-5C21D2AFAF14}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{AF5173C2-31A0-45CF-A5DF-F964F35B4034}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Driver (HKLM\...\{322B58FC-7AB5-43B6-B27C-1635DD3A573C}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) ME UninstallLegacy (HKLM\...\{E9B9A1A5-6398-4C99-8FDE-10794F6505C5}) (Version: 1.0.1.0 - Intel Corporation) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 26.20.100.7757 - Intel Corporation)
Intel(R) Trusted Connect Service Client x64 (HKLM\...\{C9552825-7BF2-4344-BA91-D3CD46F4C442}) (Version: 1.62.321.1 - Intel Corporation) Hidden
Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.62.321.1 - Intel Corporation) Hidden
Intel(R) Trusted Connect Services Client (HKLM-x32\...\{c3964069-17c1-45dd-85a5-949576ceeaa3}) (Version: 1.62.321.1 - Intel Corporation) Hidden
Java 8 Update 361 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180361F0}) (Version: 8.0.3610.9 - Oracle Corporation)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Lenovo Service Bridge (HKU\S-1-5-21-1496144255-991381806-58249036-1001\...\{2C74547D-EF88-47F4-85F5-BE46A31E26B7}_is1) (Version: 5.0.2.18 - Lenovo)
Lenovo Silver Silk Wireless Keyboard (HKLM-x32\...\{B88AD4F5-58A6-425D-9282-92228FEB7067}) (Version: 1.05 - Lenovo) Hidden
Lenovo Silver Silk Wireless Keyboard (HKLM-x32\...\InstallShield_{B88AD4F5-58A6-425D-9282-92228FEB7067}) (Version: 1.05 - Lenovo)
Lenovo System Update (HKLM-x32\...\TVSU_is1) (Version: 5.08.03.59 - Lenovo)
Lenovo Vantage Service (HKLM-x32\...\VantageSRV_is1) (Version: 4.3.50.0 - Lenovo Group Ltd.)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 138.0.3351.65 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 137.0.3296.93 - Microsoft Corporation) Hidden
Microsoft Office Access MUI (Slovak) 2007 (HKLM-x32\...\{90120000-0015-041B-0000-0000000FF1CE}) (Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft Office Enterprise 2007 (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}) (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Office Excel MUI (Slovak) 2007 (HKLM-x32\...\{90120000-0016-041B-0000-0000000FF1CE}) (Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft Office Groove MUI (Slovak) 2007 (HKLM-x32\...\{90120000-00BA-041B-0000-0000000FF1CE}) (Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft Office InfoPath MUI (Slovak) 2007 (HKLM-x32\...\{90120000-0044-041B-0000-0000000FF1CE}) (Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft Office Office 64-bit Components 2007 (HKLM\...\{90120000-002A-0000-1000-0000000FF1CE}) (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (Slovak) 2007 (HKLM-x32\...\{90120000-00A1-041B-0000-0000000FF1CE}) (Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (Slovak) 2007 (HKLM-x32\...\{90120000-001A-041B-0000-0000000FF1CE}) (Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (Slovak) 2007 (HKLM-x32\...\{90120000-0018-041B-0000-0000000FF1CE}) (Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft Office Proof (Czech) 2007 (HKLM-x32\...\{90120000-001F-0405-0000-0000000FF1CE}) (Version: 12.0.4518.1026 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2007 (HKLM-x32\...\{90120000-001F-0409-0000-0000000FF1CE}) (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2007 (HKLM-x32\...\{90120000-001F-0407-0000-0000000FF1CE}) (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Proof (Hungarian) 2007 (HKLM-x32\...\{90120000-001F-040E-0000-0000000FF1CE}) (Version: 12.0.4518.1033 - Microsoft Corporation) Hidden
Microsoft Office Proof (Slovak) 2007 (HKLM-x32\...\{90120000-001F-041B-0000-0000000FF1CE}) (Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft Office Proofing (Slovak) 2007 (HKLM-x32\...\{90120000-002C-041B-0000-0000000FF1CE}) (Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (Slovak) 2007 (HKLM-x32\...\{90120000-0019-041B-0000-0000000FF1CE}) (Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (Slovak) 2007 (HKLM\...\{90120000-002A-041B-1000-0000000FF1CE}) (Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Slovak) 2007 (HKLM-x32\...\{90120000-006E-041B-0000-0000000FF1CE}) (Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (Slovak) 2007 (HKLM-x32\...\{90120000-001B-041B-0000-0000000FF1CE}) (Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKU\S-1-5-21-1496144255-991381806-58249036-1001\...\OneDriveSetup.exe) (Version: 25.105.0601.0002 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft VC++ redistributables repacked. (HKLM\...\{FEA4AB50-D01D-4E6C-AC61-B2ACF1501CEE}) (Version: 12.0.0.0 - Intel Corporation) Hidden
Microsoft VC++ redistributables repacked. (HKLM-x32\...\{4E004F00-9000-4EBC-8660-2C10404143ED}) (Version: 12.0.0.0 - Intel Corporation) Hidden
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24123 (HKLM-x32\...\{2cbcedbb-f38c-48a3-a3e1-6c6fd821a7f4}) (Version: 14.0.24123.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24123 (HKLM\...\{21134089-9B59-34C8-BE11-929D26AD5207}) (Version: 14.0.24123 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24123 (HKLM\...\{FDBE9DB4-7A91-3A28-B27E-705EF7CFAE57}) (Version: 14.0.24123 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24215 (HKLM-x32\...\{69BCE4AC-9572-3271-A2FB-9423BDA36A43}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24215 (HKLM-x32\...\{BBF2AC74-720C-3CB3-8291-5E34039232FA}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
neroxml (HKLM-x32\...\{56C049BE-79E9-4502-BEA7-9754A3E60F9B}) (Version: 1.0.0 - Nero AG) Hidden
NirSoft Wireless Network Watcher (HKLM-x32\...\NirSoft Wireless Network Watcher) (Version: - )
NVIDIA Ovladače grafiky 531.68 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 531.68 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation)
OptaneDowngradeGuard (HKLM\...\{86B0E6C1-32E0-42CC-BC4F-BF3C0730CECB}) (Version: 18.0.0.0 - Intel Corporation) Hidden
PDF PW Locker Remover (HKLM-x32\...\{25889EF9-CD9A-4A83-96F1-1AC7371429DE}) (Version: 3.3.2 - PDF Protect Free)
Qualcomm Atheros 11ac Wireless LAN Installer (HKLM-x32\...\{20CA507E-24AA-4741-87CF-CC1B250790B7}) (Version: 11.0.10442 - Qualcomm)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.14393.29093 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.19.627.2017 - Realtek)
RstDowngradeGuard (HKLM\...\{13C2A26E-7AD4-4D82-BB4F-DEA6E871B958}) (Version: 18.0.0.0 - Intel Corporation) Hidden
TAP-Windows 9.24.2 (HKLM\...\TAP-Windows) (Version: 9.24.2 - OpenVPN Technologies, Inc.)
Telegram Desktop (HKU\S-1-5-21-1496144255-991381806-58249036-1001\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 5.15.4 - Telegram FZ-LLC)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.22a - Ghisler Software GmbH)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{B8D93870-98D1-4980-AFCA-E26563CDFB79}) (Version: 8.94.0.0 - Microsoft Corporation)
Viber (HKLM-x32\...\{BCFF3282-3299-47F2-95C3-3C0165260EB2}) (Version: 10.3.0.36 - Viber Media S.a.r.l) Hidden
Viber (HKU\S-1-5-21-1496144255-991381806-58249036-1001\...\{8ce90cb2-6f65-4b26-bd5c-e9627995f807}) (Version: 25.6.0.0 - Viber Media S.a.r.l)
Vulkan Run Time Libraries 1.0.54.1 (HKLM\...\VulkanRT1.0.54.1) (Version: 1.0.54.1 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.54.1 (HKLM\...\VulkanRT1.0.54.1-2) (Version: 1.0.54.1 - LunarG, Inc.) Hidden
Wargaming.net Game Center (HKU\S-1-5-21-1496144255-991381806-58249036-1001\...\Wargaming.net Game Center) (Version: 25.2.0.9224 - Wargaming.net)
WD Desktop App 2.1.0.335 (HKLM-x32\...\{fdd55732-32b6-4783-9b31-db9ad9f96792}) (Version: 2.1.0.335 - Western Digital Corporation) Hidden
WD Desktop App 2.1.0.335 (x64) (HKLM\...\{CA7F7232-526E-41BD-971A-47BE28C18516}) (Version: 2.1.0.335 - Western Digital Corporation) Hidden
WD Discovery (HKLM-x32\...\WDDiscovery) (Version: 5.1.618 - Western Digital Technologies, Inc.)
WD SES Driver Setup (HKLM-x32\...\{D9ABF771-729C-471F-A6DF-1010527DB376}) (Version: 2.1.0 - Western Digital) Hidden
WinRAR 5.00 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH)
World of Tanks EU (HKU\S-1-5-21-1496144255-991381806-58249036-1001\...\2314027414) (Version: - Wargaming.net)
World_of_Warships (HKU\S-1-5-21-1496144255-991381806-58249036-1001\...\WOWS.WW.PRODUCTION) (Version: - Wargaming.net)
Packages:
=========
Adobe Acrobat Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC [2025-06-13] ()
Asistent pre hry Microsoft Edge -> C:\Program Files\WindowsApps\Microsoft.Edge.GameAssist_1.0.3336.0_x64__8wekyb3d8bbwe [2025-07-04] (Microsoft Corporation)
Doplnok mediálneho nástroja pre Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-02-16] (Microsoft Corporation)
Doplnok pre Fotografie -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2021.39122.10110.0_x64__8wekyb3d8bbwe [2021-03-13] (Microsoft Corporation)
Intel® Optane™ Memory and Storage Management -> C:\Program Files\WindowsApps\AppUp.IntelOptaneMemoryandStorageManagement_18.1.1042.0_x64__8j3eq9eme6ctt [2025-05-05] (INTEL CORP)
Lenovo Companion -> C:\Program Files\WindowsApps\E046963F.LenovoCompanion_10.2501.20.0_x64__k1h2ywk1493x8 [2025-02-01] (LENOVO INC.)
LinkedIn -> C:\Program Files\WindowsApps\7EE7776C.LinkedInforWindows_3.0.42.0_x64__w1wdnht996qgy [2025-02-22] (LinkedIn) [Startup Task]
Microsoft Access -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Access_16051.18827.20150.0_x86__8wekyb3d8bbwe [2025-06-13] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-06-05] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-06-05] (Microsoft Corporation) [MS Ad]
Microsoft Excel -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Excel_16051.18827.20150.0_x86__8wekyb3d8bbwe [2025-06-13] (Microsoft Corporation)
Microsoft Office Desktop Apps -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop_16051.18827.20150.0_x86__8wekyb3d8bbwe [2025-06-13] (Microsoft Corporation)
Microsoft Outlook -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.18827.20150.0_x86__8wekyb3d8bbwe [2025-06-13] (Microsoft Corporation)
Microsoft PowerPoint -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.PowerPoint_16051.18827.20150.0_x86__8wekyb3d8bbwe [2025-06-13] (Microsoft Corporation)
Microsoft Publisher -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Publisher_16051.18827.20150.0_x86__8wekyb3d8bbwe [2025-06-13] (Microsoft Corporation)
Microsoft Word -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Word_16051.18827.20150.0_x86__8wekyb3d8bbwe [2025-06-13] (Microsoft Corporation)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.968.0_x64__56jybvy8sckqj [2025-06-19] (NVIDIA Corp.)
Ovládacie centrum pre grafiku Intel® -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt [2024-11-16] (INTEL CORP) [Startup Task]
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-1496144255-991381806-58249036-1001_Classes\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1496144255-991381806-58249036-1001_Classes\CLSID\{00020421-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1496144255-991381806-58249036-1001_Classes\CLSID\{00020422-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1496144255-991381806-58249036-1001_Classes\CLSID\{00020423-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1496144255-991381806-58249036-1001_Classes\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1496144255-991381806-58249036-1001_Classes\CLSID\{00020425-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
SSODL: WDFSMountNotificator-wdfsconnect2017 - {B7221D65-6632-4B2A-926A-00386CBCE4DF} - C:\WINDOWS\system32\wdfsconnectMntNtf2017.dll (Western Digital Technologies, Inc.) [File not signed]
SSODL-x32: WDFSMountNotificator-wdfsconnect2017 - {B7221D65-6632-4B2A-926A-00386CBCE4DF} - C:\WINDOWS\SysWOW64\wdfsconnectMntNtf2017.dll (Western Digital Technologies, Inc.) [File not signed]
ShellServiceObjects: Virtual Storage Mount Notification -> {B7221D65-6632-4B2A-926A-00386CBCE4DF} => C:\WINDOWS\system32\wdfsconnectMntNtf2017.dll [2017-11-10] (Western Digital Technologies, Inc.) [File not signed]
ShellServiceObjects-x32: Virtual Storage Mount Notification -> {B7221D65-6632-4B2A-926A-00386CBCE4DF} => C:\WINDOWS\SysWOW64\wdfsconnectMntNtf2017.dll [2017-11-10] (Western Digital Technologies, Inc.) [File not signed]
ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2210608 2006-10-26] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ WDDesktopIconOverlay01] -> {4F8A325E-9DAF-44B8-A825-1A14DFA0FA78} => C:\Program Files\WD Desktop App\kda.DLL [2022-09-29] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ShellIconOverlayIdentifiers: [ WDDesktopIconOverlay02] -> {0176BDDE-B59A-4A1E-808B-CAD461415CCA} => C:\Program Files\WD Desktop App\kda.DLL [2022-09-29] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ShellIconOverlayIdentifiers: [ WDDesktopIconOverlay03] -> {B65909D1-57AF-41F5-AB94-BEB733F62B35} => C:\Program Files\WD Desktop App\kda.DLL [2022-09-29] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ShellIconOverlayIdentifiers: [ WDDesktopIconOverlay04] -> {C6C2397D-8238-4332-8935-86C39C7C165F} => C:\Program Files\WD Desktop App\kda.DLL [2022-09-29] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ShellIconOverlayIdentifiers: [ WDDesktopIconOverlay05] -> {E7B3BCF9-0386-4B5F-AE6A-91B9F1423973} => C:\Program Files\WD Desktop App\kda.DLL [2022-09-29] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ShellIconOverlayIdentifiers: [ WDDesktopIconOverlay06] -> {564EA121-D9DA-485D-82C2-C2ED7BFCCEAD} => C:\Program Files\WD Desktop App\kda.DLL [2022-09-29] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ContextMenuHandlers1-x32: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files (x86)\7-Zip\7-zip.dll [2023-06-20] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [WDDesktopContextMenu] -> {f97d48aa-d72e-39ad-bf37-0b90de70ca2a} => C:\Program Files\WD Desktop App\kda.DLL [2022-09-29] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2013-08-22] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2013-08-22] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers4-x32: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files (x86)\7-Zip\7-zip.dll [2023-06-20] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [WDDesktopContextMenu] -> {f97d48aa-d72e-39ad-bf37-0b90de70ca2a} => C:\Program Files\WD Desktop App\kda.DLL [2022-09-29] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvla.inf_amd64_a6a2da7e042e0376\nvshext.dll [2023-05-26] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6-x32: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files (x86)\7-Zip\7-zip.dll [2023-06-20] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2013-08-22] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2013-08-22] (win.rar GmbH -> Alexander Roshal)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
==================== Loaded Modules (Whitelisted) =============
2018-03-19 15:12 - 2018-03-19 15:12 - 000113678 _____ () [File not signed] C:\Program Files (x86)\Ditec\DLauncher\libgcc_s_dw2-1.dll
2018-03-19 15:12 - 2018-03-19 15:12 - 001542158 _____ () [File not signed] C:\Program Files (x86)\Ditec\DLauncher\libstdc++-6.dll
2011-11-03 20:48 - 2011-11-03 20:48 - 000056320 _____ () [File not signed] C:\Program Files (x86)\Lenovo\Lenovo Silver Silk Wireless Keyboard\skfunc.dll
2025-02-01 16:34 - 2025-02-01 16:34 - 002613248 _____ () [File not signed] C:\Program Files (x86)\Western Digital\Discovery\Current\ffmpeg.dll
2025-02-01 16:34 - 2025-02-01 16:34 - 000372224 _____ () [File not signed] C:\Program Files (x86)\Western Digital\Discovery\Current\libegl.dll
2025-02-01 16:34 - 2025-02-01 16:34 - 006534656 _____ () [File not signed] C:\Program Files (x86)\Western Digital\Discovery\Current\libglesv2.dll
2025-02-01 16:34 - 2025-02-01 16:34 - 004264448 _____ () [File not signed] C:\Program Files (x86)\Western Digital\Discovery\Current\vk_swiftshader.dll
2025-02-01 16:34 - 2025-02-01 16:34 - 000756224 _____ () [File not signed] C:\Program Files (x86)\Western Digital\Discovery\Current\vulkan-1.dll
2011-10-21 22:41 - 2011-10-21 22:41 - 000061952 _____ (LITE-ON Corp.) [File not signed] C:\Program Files (x86)\Lenovo\Lenovo Silver Silk Wireless Keyboard\skhooks.dll
2011-11-18 19:07 - 2011-11-18 19:07 - 000054272 _____ (LITE-ON TECHNOLOGY CORP.) [File not signed] C:\Program Files (x86)\Lenovo\Lenovo Silver Silk Wireless Keyboard\SKHidKbd.dll
2018-03-19 15:12 - 2018-03-19 15:12 - 000047104 _____ (MingW-W64 Project. All rights reserved.) [File not signed] C:\Program Files (x86)\Ditec\DLauncher\libwinpthread-1.dll
2019-07-01 14:51 - 2019-07-01 14:51 - 006623384 _____ (The Qt Company Oy -> The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Ditec\DLauncher\Qt5Core.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1496144255-991381806-58249036-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo17win10.msn.com/?pc=LCTE
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_361\bin\ssv.dll [2023-01-09] (Oracle America, Inc. -> Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_361\bin\jp2ssv.dll [2023-01-09] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-26] (Microsoft Corporation -> Microsoft Corporation)
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2017-09-29 15:46 - 2017-09-29 15:44 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
2023-08-29 06:56 - 2023-08-29 06:56 - 000000446 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics
==================== Network ===========================
(Currently there is no automatic fix for this section.)
DNS Servers: 88.212.8.8 - 88.212.8.88
Windows Firewall is enabled.
Network Binding:
=============
Připojení k místní síti: TAP-Windows Adapter V9 -> tap0901.sys
Wi-Fi: Qualcomm Atheros QCA9377 Wireless Network Adapter -> Qcamain10x64.sys
D.Launcher Loopback: TAP-Windows Adapter V9 #2 -> tap0901.sys
Síťové připojení Bluetooth 3: Bluetooth Device (Personal Area Network) #3 -> bthpan.sys
Ethernet: Realtek PCIe GBE Family Controller -> rt640x64.sys
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;c:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;c:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Cloudflare\Cloudflare WARP\;C:\Program Files (x86)\eID_klient\;C:\Program Files (x86)\eID_klient\redist_x64\
HKU\S-1-5-21-1496144255-991381806-58249036-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\User\AppData\Local\Packages\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\LocalCache\Microsoft\IrisService\9502458037340498332\133665610328138647.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\StartupFolder: => "Cloudflare WARP.lnk"
HKLM\...\StartupApproved\Run32: => "EAC_MW_klient"
HKLM\...\StartupApproved\Run32: => "eID_Client"
HKU\S-1-5-21-1496144255-991381806-58249036-1001\...\StartupApproved\Run: => "GoogleChromeAutoLaunch_EA977365BF5B2185FA52414E130E9AF9"
HKU\S-1-5-21-1496144255-991381806-58249036-1001\...\StartupApproved\Run: => "eyeBeam SIP Client"
HKU\S-1-5-21-1496144255-991381806-58249036-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-1496144255-991381806-58249036-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1496144255-991381806-58249036-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_C46CFC0629905CC775E70B50EA8A519C"
HKU\S-1-5-21-1496144255-991381806-58249036-1001\...\StartupApproved\Run: => "LenovoVantage"
HKU\S-1-5-21-1496144255-991381806-58249036-1001\...\StartupApproved\Run: => "AvastBrowserAutoLaunch_DD3B34B51295CA4CE249213732CEC2F8"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [UDP Query User{2A0F24BE-0417-4B7C-82E0-AEA49A5356A2}C:\users\user\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\user\appdata\roaming\utorrent\utorrent.exe (uTorrent.CZ -> BitTorrent, Inc.) [File not signed]
FirewallRules: [TCP Query User{3EFEAA9B-8E1C-466F-9831-189CE8295854}C:\users\user\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\user\appdata\roaming\utorrent\utorrent.exe (uTorrent.CZ -> BitTorrent, Inc.) [File not signed]
FirewallRules: [UDP Query User{6080D66F-0A15-409F-B9A3-D282267C8458}C:\games\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) C:\games\world_of_tanks_eu\win64\worldoftanks.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [TCP Query User{517FA03E-29DF-4BDE-95D1-91029A573004}C:\games\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) C:\games\world_of_tanks_eu\win64\worldoftanks.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [UDP Query User{019D165E-A783-4C39-86D3-0A8FD000C4D1}C:\games\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) C:\games\world_of_tanks_eu\win64\worldoftanks.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [TCP Query User{D4A89DBE-2E5C-4FBE-93ED-9F06AF475218}C:\games\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) C:\games\world_of_tanks_eu\win64\worldoftanks.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [TCP Query User{D7BB254C-3614-49B3-A3BB-BE7E93812E12}C:\users\user\appdata\roaming\utorrent\utorrent.exe] => (Block) C:\users\user\appdata\roaming\utorrent\utorrent.exe (uTorrent.CZ -> BitTorrent, Inc.) [File not signed]
FirewallRules: [UDP Query User{9758F37C-1793-44E7-A5B7-D2D28DF780EF}C:\users\user\appdata\roaming\utorrent\utorrent.exe] => (Block) C:\users\user\appdata\roaming\utorrent\utorrent.exe (uTorrent.CZ -> BitTorrent, Inc.) [File not signed]
FirewallRules: [TCP Query User{CEDD63DE-AE5E-4D08-84FE-3220C65B3BB0}C:\games\world_of_tanks_eu\worldoftanks.exe] => (Allow) C:\games\world_of_tanks_eu\worldoftanks.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [UDP Query User{64DCF168-9DCF-4125-BDB5-E881E6203267}C:\games\world_of_tanks_eu\worldoftanks.exe] => (Allow) C:\games\world_of_tanks_eu\worldoftanks.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [TCP Query User{44905811-9B97-4AE0-B73F-958796A7B300}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [UDP Query User{E5EA4172-128A-49AE-BD0F-4CA1CE87067D}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [{BC60B747-848A-47CF-B5BF-6089E8D7CFF4}] => (Block) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [{CFE743D3-8BF9-4736-B25C-C035E8E17071}] => (Block) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [TCP Query User{D50A21ED-BEFD-495C-9E92-52774C1256E6}C:\users\user\appdata\local\viber\viber.exe] => (Allow) C:\users\user\appdata\local\viber\viber.exe (Viber Media S.a r.l. -> Viber Media S.Ã r.l.)
FirewallRules: [UDP Query User{4C422C61-43B3-47DA-80B6-4B31EFA74A69}C:\users\user\appdata\local\viber\viber.exe] => (Allow) C:\users\user\appdata\local\viber\viber.exe (Viber Media S.a r.l. -> Viber Media S.Ã r.l.)
FirewallRules: [TCP Query User{AB882D7B-A6FD-4E27-8CD1-81130BCFB503}C:\users\user\appdata\roaming\telegram desktop\telegram.exe] => (Allow) C:\users\user\appdata\roaming\telegram desktop\telegram.exe (Telegram FZ-LLC -> Telegram FZ-LLC)
FirewallRules: [UDP Query User{7F80D843-15C9-429D-89A2-1345EABCE936}C:\users\user\appdata\roaming\telegram desktop\telegram.exe] => (Allow) C:\users\user\appdata\roaming\telegram desktop\telegram.exe (Telegram FZ-LLC -> Telegram FZ-LLC)
FirewallRules: [{6CC495C7-51BD-4B6B-AF14-8BF90DAC3E5A}] => (Block) C:\users\user\appdata\roaming\telegram desktop\telegram.exe (Telegram FZ-LLC -> Telegram FZ-LLC)
FirewallRules: [{B44FBF90-BE2C-490A-B5C0-86409A6D627F}] => (Block) C:\users\user\appdata\roaming\telegram desktop\telegram.exe (Telegram FZ-LLC -> Telegram FZ-LLC)
FirewallRules: [{B0F7E24F-FAD8-42AF-8E71-8F38ED9764E5}] => (Allow) C:\Program Files\Cloudflare\Cloudflare WARP\warp-svc.exe (Cloudflare, Inc. -> )
FirewallRules: [TCP Query User{B457D1F4-52DC-4E29-B4B0-A3868001E334}C:\program files (x86)\eseecloud\eseecloud.exe] => (Allow) C:\program files (x86)\eseecloud\eseecloud.exe (Guangzhou Yuege Electronic Trading Co., Ltd. -> comelit, Inc.)
FirewallRules: [UDP Query User{D058892F-FE80-4A14-8BB8-86F9BED7B59B}C:\program files (x86)\eseecloud\eseecloud.exe] => (Allow) C:\program files (x86)\eseecloud\eseecloud.exe (Guangzhou Yuege Electronic Trading Co., Ltd. -> comelit, Inc.)
FirewallRules: [{8847DA20-9CC3-4A2C-B9E8-1ABF180D68E8}] => (Block) C:\program files (x86)\eseecloud\eseecloud.exe (Guangzhou Yuege Electronic Trading Co., Ltd. -> comelit, Inc.)
FirewallRules: [{AC6B875D-0DE8-4C93-9305-4AD521DF65FF}] => (Block) C:\program files (x86)\eseecloud\eseecloud.exe (Guangzhou Yuege Electronic Trading Co., Ltd. -> comelit, Inc.)
FirewallRules: [TCP Query User{8F808F16-DDBE-4245-9211-B9C0E544C7ED}C:\program files\java\jre1.8.0_361\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_361\bin\javaw.exe
FirewallRules: [UDP Query User{64AEE14F-13BC-4878-AC7C-9CFB18A8CE1B}C:\program files\java\jre1.8.0_361\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_361\bin\javaw.exe
FirewallRules: [TCP Query User{1E105D05-C78A-461F-BDFE-00B9839E5A25}C:\users\user\appdata\local\viber\viber.exe] => (Block) C:\users\user\appdata\local\viber\viber.exe (Viber Media S.a r.l. -> Viber Media S.Ã r.l.)
FirewallRules: [UDP Query User{1B184AAA-3CEE-4291-81B1-888517BCE708}C:\users\user\appdata\local\viber\viber.exe] => (Block) C:\users\user\appdata\local\viber\viber.exe (Viber Media S.a r.l. -> Viber Media S.Ã r.l.)
FirewallRules: [TCP Query User{BBB3F6BC-DB5B-42B9-8712-960BAD9073E6}D:\warthunder\launcher.exe] => (Allow) D:\warthunder\launcher.exe => No File
FirewallRules: [UDP Query User{29378FF3-0B03-43A4-9795-99880A7F165A}D:\warthunder\launcher.exe] => (Allow) D:\warthunder\launcher.exe => No File
FirewallRules: [TCP Query User{393E0EE9-1DB6-4A61-815D-563EDC36C901}D:\warthunder\win64\aces.exe] => (Allow) D:\warthunder\win64\aces.exe => No File
FirewallRules: [UDP Query User{18475E38-CF8F-4408-9CEF-A0C4C226AB23}D:\warthunder\win64\aces.exe] => (Allow) D:\warthunder\win64\aces.exe => No File
FirewallRules: [TCP Query User{A16993F4-EC84-4538-B786-FB01B64AF5B9}C:\program files (x86)\counterpath\x-lite\x-lite.exe] => (Allow) C:\program files (x86)\counterpath\x-lite\x-lite.exe => No File
FirewallRules: [UDP Query User{316C1A55-3EFD-4476-AF12-C50B8855D803}C:\program files (x86)\counterpath\x-lite\x-lite.exe] => (Allow) C:\program files (x86)\counterpath\x-lite\x-lite.exe => No File
FirewallRules: [{28E67EDD-6A95-493E-97F1-9524FF6B3CEE}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe (Lenovo -> Lenovo)
FirewallRules: [{9867829F-8B67-4F3A-B07B-933892544728}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe (Lenovo -> Lenovo)
FirewallRules: [{AD85D06D-F212-439A-84D6-4D74F4A1449A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.137.3425.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{8D055B55-8AE6-4D94-B8C2-FBD037D56CE2}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.137.3425.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{E71BCC52-ABCE-4B5F-B8D1-0CE45A4D5C2B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.137.3425.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{E800EC33-1417-4DA9-AA90-E49B004D86BE}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.137.3425.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{D4032B07-896E-4BB0-9DA6-FA1CFD255745}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.18827.20150.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{8C9B3DEF-A231-4B6C-B404-04772C125106}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\137.0.3296.93\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{010DF1C5-A938-4799-8F4D-A929240D4D25}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{EF9F2163-7E38-44F2-948B-B8285A1FC457}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{98A46031-43E6-481A-81CA-C3A9779A5C38}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{DAE44DB8-C644-4579-82DD-4B19D3DDC8CB}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{8E6D0222-A1CA-4541-8BBE-C2A6D40D4A79}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{95ECABDC-79CC-4BB7-BF35-FEAD4D041DB5}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{603D826F-F3D8-4465-9855-D39D15D5E678}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{C9FCABC9-69F5-414C-8FF6-EEA64BB1CF0A}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{EEF92577-96CB-4624-A6F7-FA29839FE94D}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
==================== Restore Points =========================
==================== Faulty Device Manager Devices ============
Name: Qualcomm Atheros QCA9377 Bluetooth
Description: Qualcomm Atheros QCA9377 Bluetooth
Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974}
Manufacturer: Qualcomm Atheros Communications
Service: BTHUSB
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver
==================== Event log errors: ========================
Application errors:
==================
Error: (07/05/2025 10:16:31 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: CCleaner64.exe, verzia: 6.30.0.11385, časová značka: 0x672b8cef
Názov chybujúceho modulu: CCleaner64.exe, verzia: 6.30.0.11385, časová značka: 0x672b8cef
Kód výnimky: 0xc0000005
Odstup chyby: 0x000000000086c0c0
Identifikácia chybujúceho procesu: 0x42cc
Čas spustenia chybujúcej aplikácie: 0x01dbed85090c45cc
Cesta chybujúcej aplikácie: C:\Program Files\CCleaner\CCleaner64.exe
Cesta chybujúceho modulu: C:\Program Files\CCleaner\CCleaner64.exe
Identifikácia hlásenia: 32294a37-a130-4c0d-a52e-445b43ddc966
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:
Error: (07/05/2025 07:09:21 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance. hr = 0x8007045b, Probíhá vypnutí systému..
Error: (07/05/2025 07:09:21 AM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, Probíhá vypnutí systému.]
Error: (07/04/2025 04:06:21 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance. hr = 0x8007045b, Probíhá vypnutí systému..
Error: (07/04/2025 04:06:21 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, Probíhá vypnutí systému.]
Error: (07/04/2025 04:06:21 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance. hr = 0x8007045b, Probíhá vypnutí systému..
Error: (07/04/2025 04:06:21 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, Probíhá vypnutí systému.]
Error: (07/03/2025 08:46:09 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance. hr = 0x8007045b, Probíhá vypnutí systému..
System errors:
=============
Error: (07/05/2025 10:10:37 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby Služba Aktualizace Google (gupdate) zlyhalo kvôli nasledujúcej chybe:
The service did not respond to the start or control request in a timely fashion.
Error: (07/05/2025 10:10:37 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Počas čakania na pripojenie služby Služba Aktualizace Google (gupdate) bol dosiahnutý časový limit (60000 ms).
Error: (07/05/2025 10:09:55 AM) (Source: DCOM) (EventID: 10010) (User: MOJEPC)
Description: The server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter did not register with DCOM within the required timeout.
Error: (07/05/2025 07:22:12 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby Služba Aktualizace Google (gupdate) zlyhalo kvôli nasledujúcej chybe:
The service did not respond to the start or control request in a timely fashion.
Error: (07/05/2025 07:22:12 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Počas čakania na pripojenie služby Služba Aktualizace Google (gupdate) bol dosiahnutý časový limit (60000 ms).
Error: (07/05/2025 07:09:13 AM) (Source: DCOM) (EventID: 10005) (User: MOJEPC)
Description: DCOM got error "1053" attempting to start the service BcastDVRUserService_24e5c4 with arguments "Není k dispozici" in order to run the server:
Windows.Media.Capture.Internal.AppCaptureShell
Error: (07/05/2025 07:09:13 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby Uživatelská služba pro GameDVR a vysílání her_24e5c4 zlyhalo kvôli nasledujúcej chybe:
The service did not respond to the start or control request in a timely fashion.
Error: (07/05/2025 07:09:13 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Počas čakania na pripojenie služby Uživatelská služba pro GameDVR a vysílání her_24e5c4 bol dosiahnutý časový limit (60000 ms).
Windows Defender:
================
Date: 2025-07-04 06:09:57
Description:
Antivirová ochrana v programu Microsoft Defender scan has been stopped before completion.
Scan Type: Antimalwarový program
Scan Parameters: Rychlé prohledávání
Stop Reason: ЃΡС ¢οлήèĉτìθπ řüņďøщл
Date: 2025-07-01 18:45:45
Description:
Antivirová ochrana v programu Microsoft Defender scan has been stopped before completion.
Scan Type: Antimalwarový program
Scan Parameters: Rychlé prohledávání
Stop Reason: ЃΡС ¢οлήèĉτìθπ řüņďøщл
Date: 2025-06-28 12:38:06
Description:
Antivirová ochrana v programu Microsoft Defender scan has been stopped before completion.
Scan Type: Antimalwarový program
Scan Parameters: Rychlé prohledávání
Stop Reason: ЃΡС ¢οлήèĉτìθπ řüņďøщл
Date: 2025-06-28 12:07:19
Description:
Antivirová ochrana v programu Microsoft Defender scan has been stopped before completion.
Scan Type: Antimalwarový program
Scan Parameters: Rychlé prohledávání
Stop Reason: ЃΡС ¢οлήèĉτìθπ řüņďøщл
Date: 2025-06-28 11:44:47
Description:
Antivirová ochrana v programu Microsoft Defender scan has been stopped before completion.
Scan Type: Antimalwarový program
Scan Parameters: Rychlé prohledávání
Stop Reason: ЃΡС ¢οлήèĉτìθπ řüņďøщл
Event[0]:
Date: 2025-07-01 19:09:06
Description:
Antivirová ochrana v programu Microsoft Defender has encountered an error trying to update security intelligence and will attempt to revert to a previous version.
Security intelligence Attempted: Aktuální
Error Code: 0x80501102
Error description: Došlo k neočekávaným potížím. Nainstalujte všechny dostupné aktualizace a potom opakujte spuštění programu. Informace o instalaci aktualizací naleznete v nápovědě a podpoře.
Security intelligence Version: 1.431.331.0;1.431.331.0
Engine Version: 1.1.25050.6
Date: 2025-06-30 08:06:59
Description:
Antivirová ochrana v programu Microsoft Defender has encountered an error trying to update security intelligence and will attempt to revert to a previous version.
Security intelligence Attempted: Zálohování
Error Code: 0x80004004
Error description: Operace přerušena
Security intelligence Version: 1.431.283.0;1.431.283.0
Engine Version: 1.1.25050.6
Date: 2025-06-30 08:06:59
Description:
Antivirová ochrana v programu Microsoft Defender has encountered an error trying to update security intelligence and will attempt to revert to a previous version.
Security intelligence Attempted: Aktuální
Error Code: 0x80004004
Error description: Operace přerušena
Security intelligence Version: 1.431.300.0;1.431.300.0
Engine Version: 1.1.25050.6
Date: 2025-04-14 06:39:17
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version: 1.427.234.0
Previous security intelligence Version: 1.427.228.0
Update Source: User
Security intelligence Type: AntiSpyware
Update Type: Delta
Current Engine Version: 1.1.25030.1
Previous Engine Version: 1.1.25030.1
Error code: 0x80501102
Error description: An unexpected problem occurred. Install any available updates, and then try to start the program again. For information on installing updates, see Help and Support.
Date: 2025-04-14 06:39:17
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version: 1.427.234.0
Previous security intelligence Version: 1.427.228.0
Update Source: User
Security intelligence Type: AntiVirus
Update Type: Delta
Current Engine Version: 1.1.25030.1
Previous Engine Version: 1.1.25030.1
Error code: 0x80501102
Error description: An unexpected problem occurred. Install any available updates, and then try to start the program again. For information on installing updates, see Help and Support.
CodeIntegrity:
===============
Date: 2025-04-01 06:58:14
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_cff0174c1abadd0d\igd10iumd64.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
BIOS: LENOVO O2NKT14A 12/06/2016
Motherboard: LENOVO 0x36BF
Processor: Intel(R) Core(TM) i7-7700 CPU @ 3.60GHz
Percentage of memory in use: 59%
Total physical RAM: 8091.23 MB
Available physical RAM: 3279.85 MB
Total Virtual: 15259.23 MB
Available Virtual: 8956.61 MB
==================== Drives ================================
Drive c: (Windows) (Fixed) (Total:117.89 GB) (Free:5.22 GB) (Model: SAMSUNG MZVLW128HEGR-000L1) NTFS
Drive d: () (Fixed) (Total:931.51 GB) (Free:665.42 GB) (Model: WDC WD10EZEX-08WN4A0) NTFS
\\?\Volume{4bac9e1f-892f-4d84-8532-a01cb260de31}\ (WinRE_DRV) (Fixed) (Total:0.98 GB) (Free:0.32 GB) NTFS
\\?\Volume{003ce010-b35e-46c2-9700-b79d3c51d944}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Size: 119.2 GB) (Disk ID: FB131764)
Partition: GPT.
==========================================================
Disk: 1 (Size: 931.5 GB) (Disk ID: FB131755)
Partition: GPT.
==================== End of Addition.txt =======================
Ran by User (05-07-2025 10:32:59)
Running from C:\Users\User\Desktop
Microsoft Windows 10 Home Version 22H2 19045.6036 (X64) (2020-12-06 06:52:43)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-1496144255-991381806-58249036-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1496144255-991381806-58249036-503 - Limited - Disabled)
Guest (S-1-5-21-1496144255-991381806-58249036-501 - Limited - Disabled)
User (S-1-5-21-1496144255-991381806-58249036-1001 - Administrator - Enabled) => C:\Users\User
WDAGUtilityAccount (S-1-5-21-1496144255-991381806-58249036-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 23.01 (HKLM-x32\...\{23170F69-40C1-2701-2301-000001000000}) (Version: 23.01.00.0 - Igor Pavlov)
7-Zip 9.20 (HKLM-x32\...\7-Zip) (Version: - )
Adobe Acrobat Reader - Slovak (HKLM-x32\...\{AC76BA86-7AD7-1051-7B44-AC0F074E4100}) (Version: 25.001.20531 - Adobe Systems Incorporated)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601110}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
Asistent pri aktualizácii na Windows 10 (HKLM-x32\...\{D5C69738-B486-402E-85AC-2456D98A64E4}) (Version: 1.4.19041.2183 - Microsoft Corporation)
Avast Update Helper (HKLM-x32\...\{19C3AB22-3718-4E4D-B203-242F5001565B}) (Version: 1.8.1697.6 - AVAST Software) Hidden
Balík softvéru eID (HKLM-x32\...\{d2c66c1e-5862-43e7-abe2-9c895312112c}) (Version: 1.0.0.0 - Ministerstvo vnútra Slovenskej republiky) Hidden
Bit4id - miniLector (HKLM-x32\...\Bit4id - miniLector) (Version: 3.7 - Bit4id)
CCleaner (HKLM\...\CCleaner) (Version: 6.30 - Piriform)
CCleaner Update Helper (HKLM-x32\...\{E4EAC0E2-A80B-479F-BA45-DCDA595C9A93}) (Version: 1.8.1208.2 - Piriform Software) Hidden
Cloudflare WARP (HKLM\...\{CD74AC63-0675-4287-8122-77446741A85E}) (Version: 22.5.341.0 - Cloudflare, Inc.)
D.Launcher (x86) (HKLM-x32\...\{0DC85C46-746B-4BC5-B727-D5434DF7E5D0}) (Version: 1.2.0.2 - DITEC, a.s.)
D.Signer/XAdES .NET so zásuvnými modulmi (x86) (HKLM-x32\...\{EDB276CE-A945-4201-A552-2683B13C321F}) (Version: 4.0.24 - DITEC, a.s.)
D.Signer/XAdES .NET Tools (x86) (HKLM-x32\...\{6648F510-5044-4CA9-BC21-494A2A198B3A}) (Version: 4.0.17 - DITEC, a.s.)
D.Suite/eIDAS (x86) (HKLM-x32\...\{8d169eac-87e2-4981-825f-701b32f24d72}) (Version: 1.0.29 - DITEC, a.s.)
D.Viewer .NET (x86) (HKLM-x32\...\{73D635BE-5D6F-43D3-8C1F-63B5CD4D5953}) (Version: 4.0.2033 - DITEC, a.s.)
Disig Web Signer (HKLM-x32\...\{8DF92E56-C8C4-4FE3-AD3B-AA10AF3BF0C6}) (Version: 2.1.1 - Disig)
Dolby Audio X2 Windows API SDK (HKLM\...\{FA0735B6-9E18-437A-A1CD-9152650FC52B}) (Version: 0.8.8.90 - Dolby Laboratories, Inc.)
Dolby Audio X2 Windows APP (HKLM\...\{D0D32569-4680-490A-905C-5117CEAAB3EF}) (Version: 0.8.8.76 - Dolby Laboratories, Inc.)
eID Klient (HKLM-x32\...\{BAA1B220-5940-433E-B00F-E83C3C2D1956}) (Version: 5.0.0 - MV SR)
EseeCloud 3.0.3 (HKLM-x32\...\EseeCloud) (Version: 3.0.3 - My company, Inc.)
GemPcCCID (HKLM\...\{C2C14C20-A217-4FCA-B668-89B6C70B6EFF}) (Version: 2.0.7 - Gemalto)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 137.0.7151.122 - Google LLC)
Intel(R) Chipset Device Software (HKLM\...\{94E05108-3E4E-4F2E-AC5F-33A1B22B779C}) (Version: 10.1.1.44 - Intel Corporation) Hidden
Intel(R) Chipset Device Software (HKLM-x32\...\{17408817-d415-4768-a160-ae6d46d6bdb0}) (Version: 10.1.1.44 - Intel(R) Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 2105.15.0.2157 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{A9B23394-82C4-4885-92F6-5C21D2AFAF14}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{AF5173C2-31A0-45CF-A5DF-F964F35B4034}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Driver (HKLM\...\{322B58FC-7AB5-43B6-B27C-1635DD3A573C}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) ME UninstallLegacy (HKLM\...\{E9B9A1A5-6398-4C99-8FDE-10794F6505C5}) (Version: 1.0.1.0 - Intel Corporation) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 26.20.100.7757 - Intel Corporation)
Intel(R) Trusted Connect Service Client x64 (HKLM\...\{C9552825-7BF2-4344-BA91-D3CD46F4C442}) (Version: 1.62.321.1 - Intel Corporation) Hidden
Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.62.321.1 - Intel Corporation) Hidden
Intel(R) Trusted Connect Services Client (HKLM-x32\...\{c3964069-17c1-45dd-85a5-949576ceeaa3}) (Version: 1.62.321.1 - Intel Corporation) Hidden
Java 8 Update 361 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180361F0}) (Version: 8.0.3610.9 - Oracle Corporation)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
Lenovo Service Bridge (HKU\S-1-5-21-1496144255-991381806-58249036-1001\...\{2C74547D-EF88-47F4-85F5-BE46A31E26B7}_is1) (Version: 5.0.2.18 - Lenovo)
Lenovo Silver Silk Wireless Keyboard (HKLM-x32\...\{B88AD4F5-58A6-425D-9282-92228FEB7067}) (Version: 1.05 - Lenovo) Hidden
Lenovo Silver Silk Wireless Keyboard (HKLM-x32\...\InstallShield_{B88AD4F5-58A6-425D-9282-92228FEB7067}) (Version: 1.05 - Lenovo)
Lenovo System Update (HKLM-x32\...\TVSU_is1) (Version: 5.08.03.59 - Lenovo)
Lenovo Vantage Service (HKLM-x32\...\VantageSRV_is1) (Version: 4.3.50.0 - Lenovo Group Ltd.)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 138.0.3351.65 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 137.0.3296.93 - Microsoft Corporation) Hidden
Microsoft Office Access MUI (Slovak) 2007 (HKLM-x32\...\{90120000-0015-041B-0000-0000000FF1CE}) (Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft Office Enterprise 2007 (HKLM-x32\...\{90120000-0030-0000-0000-0000000FF1CE}) (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Enterprise 2007 (HKLM-x32\...\ENTERPRISE) (Version: 12.0.4518.1014 - Microsoft Corporation)
Microsoft Office Excel MUI (Slovak) 2007 (HKLM-x32\...\{90120000-0016-041B-0000-0000000FF1CE}) (Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft Office Groove MUI (Slovak) 2007 (HKLM-x32\...\{90120000-00BA-041B-0000-0000000FF1CE}) (Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft Office InfoPath MUI (Slovak) 2007 (HKLM-x32\...\{90120000-0044-041B-0000-0000000FF1CE}) (Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft Office Office 64-bit Components 2007 (HKLM\...\{90120000-002A-0000-1000-0000000FF1CE}) (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office OneNote MUI (Slovak) 2007 (HKLM-x32\...\{90120000-00A1-041B-0000-0000000FF1CE}) (Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft Office Outlook MUI (Slovak) 2007 (HKLM-x32\...\{90120000-001A-041B-0000-0000000FF1CE}) (Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft Office PowerPoint MUI (Slovak) 2007 (HKLM-x32\...\{90120000-0018-041B-0000-0000000FF1CE}) (Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft Office Proof (Czech) 2007 (HKLM-x32\...\{90120000-001F-0405-0000-0000000FF1CE}) (Version: 12.0.4518.1026 - Microsoft Corporation) Hidden
Microsoft Office Proof (English) 2007 (HKLM-x32\...\{90120000-001F-0409-0000-0000000FF1CE}) (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Proof (German) 2007 (HKLM-x32\...\{90120000-001F-0407-0000-0000000FF1CE}) (Version: 12.0.4518.1014 - Microsoft Corporation) Hidden
Microsoft Office Proof (Hungarian) 2007 (HKLM-x32\...\{90120000-001F-040E-0000-0000000FF1CE}) (Version: 12.0.4518.1033 - Microsoft Corporation) Hidden
Microsoft Office Proof (Slovak) 2007 (HKLM-x32\...\{90120000-001F-041B-0000-0000000FF1CE}) (Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft Office Proofing (Slovak) 2007 (HKLM-x32\...\{90120000-002C-041B-0000-0000000FF1CE}) (Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft Office Publisher MUI (Slovak) 2007 (HKLM-x32\...\{90120000-0019-041B-0000-0000000FF1CE}) (Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft Office Shared 64-bit MUI (Slovak) 2007 (HKLM\...\{90120000-002A-041B-1000-0000000FF1CE}) (Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Slovak) 2007 (HKLM-x32\...\{90120000-006E-041B-0000-0000000FF1CE}) (Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft Office Word MUI (Slovak) 2007 (HKLM-x32\...\{90120000-001B-041B-0000-0000000FF1CE}) (Version: 12.0.4518.1039 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKU\S-1-5-21-1496144255-991381806-58249036-1001\...\OneDriveSetup.exe) (Version: 25.105.0601.0002 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft VC++ redistributables repacked. (HKLM\...\{FEA4AB50-D01D-4E6C-AC61-B2ACF1501CEE}) (Version: 12.0.0.0 - Intel Corporation) Hidden
Microsoft VC++ redistributables repacked. (HKLM-x32\...\{4E004F00-9000-4EBC-8660-2C10404143ED}) (Version: 12.0.0.0 - Intel Corporation) Hidden
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.30319 (HKLM\...\{DA5E371C-6333-3D8A-93A4-6FD5B20BCC6E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.30319 (HKLM-x32\...\{196BB40D-1578-3D01-B289-BEFC77A11A1E}) (Version: 10.0.30319 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.21005 (HKLM-x32\...\{F8CFEB22-A2E7-3971-9EDA-4B11EDEFC185}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.21005 (HKLM-x32\...\{13A4EE12-23EA-3371-91EE-EFB36DDFFF3E}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 Redistributable (x64) - 14.0.24123 (HKLM-x32\...\{2cbcedbb-f38c-48a3-a3e1-6c6fd821a7f4}) (Version: 14.0.24123.0 - Microsoft Corporation)
Microsoft Visual C++ 2015 Redistributable (x86) - 14.0.24215 (HKLM-x32\...\{e2803110-78b3-4664-a479-3611a381656a}) (Version: 14.0.24215.1 - Microsoft Corporation)
Microsoft Visual C++ 2015 x64 Additional Runtime - 14.0.24123 (HKLM\...\{21134089-9B59-34C8-BE11-929D26AD5207}) (Version: 14.0.24123 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x64 Minimum Runtime - 14.0.24123 (HKLM\...\{FDBE9DB4-7A91-3A28-B27E-705EF7CFAE57}) (Version: 14.0.24123 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x86 Additional Runtime - 14.0.24215 (HKLM-x32\...\{69BCE4AC-9572-3271-A2FB-9423BDA36A43}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015 x86 Minimum Runtime - 14.0.24215 (HKLM-x32\...\{BBF2AC74-720C-3CB3-8291-5E34039232FA}) (Version: 14.0.24215 - Microsoft Corporation) Hidden
neroxml (HKLM-x32\...\{56C049BE-79E9-4502-BEA7-9754A3E60F9B}) (Version: 1.0.0 - Nero AG) Hidden
NirSoft Wireless Network Watcher (HKLM-x32\...\NirSoft Wireless Network Watcher) (Version: - )
NVIDIA Ovladače grafiky 531.68 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 531.68 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation)
OptaneDowngradeGuard (HKLM\...\{86B0E6C1-32E0-42CC-BC4F-BF3C0730CECB}) (Version: 18.0.0.0 - Intel Corporation) Hidden
PDF PW Locker Remover (HKLM-x32\...\{25889EF9-CD9A-4A83-96F1-1AC7371429DE}) (Version: 3.3.2 - PDF Protect Free)
Qualcomm Atheros 11ac Wireless LAN Installer (HKLM-x32\...\{20CA507E-24AA-4741-87CF-CC1B250790B7}) (Version: 11.0.10442 - Qualcomm)
Realtek Card Reader (HKLM-x32\...\{5BC2B5AB-80DE-4E83-B8CF-426902051D0A}) (Version: 10.0.14393.29093 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.19.627.2017 - Realtek)
RstDowngradeGuard (HKLM\...\{13C2A26E-7AD4-4D82-BB4F-DEA6E871B958}) (Version: 18.0.0.0 - Intel Corporation) Hidden
TAP-Windows 9.24.2 (HKLM\...\TAP-Windows) (Version: 9.24.2 - OpenVPN Technologies, Inc.)
Telegram Desktop (HKU\S-1-5-21-1496144255-991381806-58249036-1001\...\{53F49750-6209-4FBF-9CA8-7A333C87D1ED}_is1) (Version: 5.15.4 - Telegram FZ-LLC)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 9.22a - Ghisler Software GmbH)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{B8D93870-98D1-4980-AFCA-E26563CDFB79}) (Version: 8.94.0.0 - Microsoft Corporation)
Viber (HKLM-x32\...\{BCFF3282-3299-47F2-95C3-3C0165260EB2}) (Version: 10.3.0.36 - Viber Media S.a.r.l) Hidden
Viber (HKU\S-1-5-21-1496144255-991381806-58249036-1001\...\{8ce90cb2-6f65-4b26-bd5c-e9627995f807}) (Version: 25.6.0.0 - Viber Media S.a.r.l)
Vulkan Run Time Libraries 1.0.54.1 (HKLM\...\VulkanRT1.0.54.1) (Version: 1.0.54.1 - LunarG, Inc.) Hidden
Vulkan Run Time Libraries 1.0.54.1 (HKLM\...\VulkanRT1.0.54.1-2) (Version: 1.0.54.1 - LunarG, Inc.) Hidden
Wargaming.net Game Center (HKU\S-1-5-21-1496144255-991381806-58249036-1001\...\Wargaming.net Game Center) (Version: 25.2.0.9224 - Wargaming.net)
WD Desktop App 2.1.0.335 (HKLM-x32\...\{fdd55732-32b6-4783-9b31-db9ad9f96792}) (Version: 2.1.0.335 - Western Digital Corporation) Hidden
WD Desktop App 2.1.0.335 (x64) (HKLM\...\{CA7F7232-526E-41BD-971A-47BE28C18516}) (Version: 2.1.0.335 - Western Digital Corporation) Hidden
WD Discovery (HKLM-x32\...\WDDiscovery) (Version: 5.1.618 - Western Digital Technologies, Inc.)
WD SES Driver Setup (HKLM-x32\...\{D9ABF771-729C-471F-A6DF-1010527DB376}) (Version: 2.1.0 - Western Digital) Hidden
WinRAR 5.00 (64-bit) (HKLM\...\WinRAR archiver) (Version: 5.00.0 - win.rar GmbH)
World of Tanks EU (HKU\S-1-5-21-1496144255-991381806-58249036-1001\...\2314027414) (Version: - Wargaming.net)
World_of_Warships (HKU\S-1-5-21-1496144255-991381806-58249036-1001\...\WOWS.WW.PRODUCTION) (Version: - Wargaming.net)
Packages:
=========
Adobe Acrobat Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC [2025-06-13] ()
Asistent pre hry Microsoft Edge -> C:\Program Files\WindowsApps\Microsoft.Edge.GameAssist_1.0.3336.0_x64__8wekyb3d8bbwe [2025-07-04] (Microsoft Corporation)
Doplnok mediálneho nástroja pre Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2020-02-16] (Microsoft Corporation)
Doplnok pre Fotografie -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2021.39122.10110.0_x64__8wekyb3d8bbwe [2021-03-13] (Microsoft Corporation)
Intel® Optane™ Memory and Storage Management -> C:\Program Files\WindowsApps\AppUp.IntelOptaneMemoryandStorageManagement_18.1.1042.0_x64__8j3eq9eme6ctt [2025-05-05] (INTEL CORP)
Lenovo Companion -> C:\Program Files\WindowsApps\E046963F.LenovoCompanion_10.2501.20.0_x64__k1h2ywk1493x8 [2025-02-01] (LENOVO INC.)
LinkedIn -> C:\Program Files\WindowsApps\7EE7776C.LinkedInforWindows_3.0.42.0_x64__w1wdnht996qgy [2025-02-22] (LinkedIn) [Startup Task]
Microsoft Access -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Access_16051.18827.20150.0_x86__8wekyb3d8bbwe [2025-06-13] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-06-05] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-06-05] (Microsoft Corporation) [MS Ad]
Microsoft Excel -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Excel_16051.18827.20150.0_x86__8wekyb3d8bbwe [2025-06-13] (Microsoft Corporation)
Microsoft Office Desktop Apps -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop_16051.18827.20150.0_x86__8wekyb3d8bbwe [2025-06-13] (Microsoft Corporation)
Microsoft Outlook -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.18827.20150.0_x86__8wekyb3d8bbwe [2025-06-13] (Microsoft Corporation)
Microsoft PowerPoint -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.PowerPoint_16051.18827.20150.0_x86__8wekyb3d8bbwe [2025-06-13] (Microsoft Corporation)
Microsoft Publisher -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Publisher_16051.18827.20150.0_x86__8wekyb3d8bbwe [2025-06-13] (Microsoft Corporation)
Microsoft Word -> C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Word_16051.18827.20150.0_x86__8wekyb3d8bbwe [2025-06-13] (Microsoft Corporation)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.968.0_x64__56jybvy8sckqj [2025-06-19] (NVIDIA Corp.)
Ovládacie centrum pre grafiku Intel® -> C:\Program Files\WindowsApps\AppUp.IntelGraphicsExperience_1.100.5688.0_x64__8j3eq9eme6ctt [2024-11-16] (INTEL CORP) [Startup Task]
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-1496144255-991381806-58249036-1001_Classes\CLSID\{00020420-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1496144255-991381806-58249036-1001_Classes\CLSID\{00020421-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1496144255-991381806-58249036-1001_Classes\CLSID\{00020422-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1496144255-991381806-58249036-1001_Classes\CLSID\{00020423-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1496144255-991381806-58249036-1001_Classes\CLSID\{00020424-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
CustomCLSID: HKU\S-1-5-21-1496144255-991381806-58249036-1001_Classes\CLSID\{00020425-0000-0000-C000-000000000046}\InprocServer32 -> C:\WINDOWS\system32\oleaut32.dll (Microsoft Windows -> Microsoft Corporation)
SSODL: WDFSMountNotificator-wdfsconnect2017 - {B7221D65-6632-4B2A-926A-00386CBCE4DF} - C:\WINDOWS\system32\wdfsconnectMntNtf2017.dll (Western Digital Technologies, Inc.) [File not signed]
SSODL-x32: WDFSMountNotificator-wdfsconnect2017 - {B7221D65-6632-4B2A-926A-00386CBCE4DF} - C:\WINDOWS\SysWOW64\wdfsconnectMntNtf2017.dll (Western Digital Technologies, Inc.) [File not signed]
ShellServiceObjects: Virtual Storage Mount Notification -> {B7221D65-6632-4B2A-926A-00386CBCE4DF} => C:\WINDOWS\system32\wdfsconnectMntNtf2017.dll [2017-11-10] (Western Digital Technologies, Inc.) [File not signed]
ShellServiceObjects-x32: Virtual Storage Mount Notification -> {B7221D65-6632-4B2A-926A-00386CBCE4DF} => C:\WINDOWS\SysWOW64\wdfsconnectMntNtf2017.dll [2017-11-10] (Western Digital Technologies, Inc.) [File not signed]
ShellExecuteHooks-x32: Groove GFS Stub Execution Hook - {B5A7F190-DDA6-4420-B3BA-52453494E6CD} - C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2210608 2006-10-26] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ WDDesktopIconOverlay01] -> {4F8A325E-9DAF-44B8-A825-1A14DFA0FA78} => C:\Program Files\WD Desktop App\kda.DLL [2022-09-29] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ShellIconOverlayIdentifiers: [ WDDesktopIconOverlay02] -> {0176BDDE-B59A-4A1E-808B-CAD461415CCA} => C:\Program Files\WD Desktop App\kda.DLL [2022-09-29] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ShellIconOverlayIdentifiers: [ WDDesktopIconOverlay03] -> {B65909D1-57AF-41F5-AB94-BEB733F62B35} => C:\Program Files\WD Desktop App\kda.DLL [2022-09-29] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ShellIconOverlayIdentifiers: [ WDDesktopIconOverlay04] -> {C6C2397D-8238-4332-8935-86C39C7C165F} => C:\Program Files\WD Desktop App\kda.DLL [2022-09-29] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ShellIconOverlayIdentifiers: [ WDDesktopIconOverlay05] -> {E7B3BCF9-0386-4B5F-AE6A-91B9F1423973} => C:\Program Files\WD Desktop App\kda.DLL [2022-09-29] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ShellIconOverlayIdentifiers: [ WDDesktopIconOverlay06] -> {564EA121-D9DA-485D-82C2-C2ED7BFCCEAD} => C:\Program Files\WD Desktop App\kda.DLL [2022-09-29] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ContextMenuHandlers1-x32: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files (x86)\7-Zip\7-zip.dll [2023-06-20] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [WDDesktopContextMenu] -> {f97d48aa-d72e-39ad-bf37-0b90de70ca2a} => C:\Program Files\WD Desktop App\kda.DLL [2022-09-29] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2013-08-22] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2013-08-22] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers4-x32: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files (x86)\7-Zip\7-zip.dll [2023-06-20] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [WDDesktopContextMenu] -> {f97d48aa-d72e-39ad-bf37-0b90de70ca2a} => C:\Program Files\WD Desktop App\kda.DLL [2022-09-29] (Western Digital Technologies, Inc. -> Western Digital Corporation)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvla.inf_amd64_a6a2da7e042e0376\nvshext.dll [2023-05-26] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6-x32: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files (x86)\7-Zip\7-zip.dll [2023-06-20] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext.dll [2013-08-22] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Program Files\WinRAR\rarext32.dll [2013-08-22] (win.rar GmbH -> Alexander Roshal)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
==================== Loaded Modules (Whitelisted) =============
2018-03-19 15:12 - 2018-03-19 15:12 - 000113678 _____ () [File not signed] C:\Program Files (x86)\Ditec\DLauncher\libgcc_s_dw2-1.dll
2018-03-19 15:12 - 2018-03-19 15:12 - 001542158 _____ () [File not signed] C:\Program Files (x86)\Ditec\DLauncher\libstdc++-6.dll
2011-11-03 20:48 - 2011-11-03 20:48 - 000056320 _____ () [File not signed] C:\Program Files (x86)\Lenovo\Lenovo Silver Silk Wireless Keyboard\skfunc.dll
2025-02-01 16:34 - 2025-02-01 16:34 - 002613248 _____ () [File not signed] C:\Program Files (x86)\Western Digital\Discovery\Current\ffmpeg.dll
2025-02-01 16:34 - 2025-02-01 16:34 - 000372224 _____ () [File not signed] C:\Program Files (x86)\Western Digital\Discovery\Current\libegl.dll
2025-02-01 16:34 - 2025-02-01 16:34 - 006534656 _____ () [File not signed] C:\Program Files (x86)\Western Digital\Discovery\Current\libglesv2.dll
2025-02-01 16:34 - 2025-02-01 16:34 - 004264448 _____ () [File not signed] C:\Program Files (x86)\Western Digital\Discovery\Current\vk_swiftshader.dll
2025-02-01 16:34 - 2025-02-01 16:34 - 000756224 _____ () [File not signed] C:\Program Files (x86)\Western Digital\Discovery\Current\vulkan-1.dll
2011-10-21 22:41 - 2011-10-21 22:41 - 000061952 _____ (LITE-ON Corp.) [File not signed] C:\Program Files (x86)\Lenovo\Lenovo Silver Silk Wireless Keyboard\skhooks.dll
2011-11-18 19:07 - 2011-11-18 19:07 - 000054272 _____ (LITE-ON TECHNOLOGY CORP.) [File not signed] C:\Program Files (x86)\Lenovo\Lenovo Silver Silk Wireless Keyboard\SKHidKbd.dll
2018-03-19 15:12 - 2018-03-19 15:12 - 000047104 _____ (MingW-W64 Project. All rights reserved.) [File not signed] C:\Program Files (x86)\Ditec\DLauncher\libwinpthread-1.dll
2019-07-01 14:51 - 2019-07-01 14:51 - 006623384 _____ (The Qt Company Oy -> The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Ditec\DLauncher\Qt5Core.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
HKU\S-1-5-21-1496144255-991381806-58249036-1001\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://lenovo17win10.msn.com/?pc=LCTE
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_361\bin\ssv.dll [2023-01-09] (Oracle America, Inc. -> Oracle Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_361\bin\jp2ssv.dll [2023-01-09] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Groove GFS Browser Helper -> {72853161-30C5-4D22-B7F9-0BBC1D38A37E} -> C:\Program Files (x86)\Microsoft Office\Office12\GrooveShellExtensions.dll [2006-10-26] (Microsoft Corporation -> Microsoft Corporation)
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2017-09-29 15:46 - 2017-09-29 15:44 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
2023-08-29 06:56 - 2023-08-29 06:56 - 000000446 _____ C:\WINDOWS\system32\drivers\etc\hosts.ics
==================== Network ===========================
(Currently there is no automatic fix for this section.)
DNS Servers: 88.212.8.8 - 88.212.8.88
Windows Firewall is enabled.
Network Binding:
=============
Připojení k místní síti: TAP-Windows Adapter V9 -> tap0901.sys
Wi-Fi: Qualcomm Atheros QCA9377 Wireless Network Adapter -> Qcamain10x64.sys
D.Launcher Loopback: TAP-Windows Adapter V9 #2 -> tap0901.sys
Síťové připojení Bluetooth 3: Bluetooth Device (Personal Area Network) #3 -> bthpan.sys
Ethernet: Realtek PCIe GBE Family Controller -> rt640x64.sys
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;c:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;c:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Cloudflare\Cloudflare WARP\;C:\Program Files (x86)\eID_klient\;C:\Program Files (x86)\eID_klient\redist_x64\
HKU\S-1-5-21-1496144255-991381806-58249036-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\User\AppData\Local\Packages\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\LocalCache\Microsoft\IrisService\9502458037340498332\133665610328138647.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\StartupFolder: => "Cloudflare WARP.lnk"
HKLM\...\StartupApproved\Run32: => "EAC_MW_klient"
HKLM\...\StartupApproved\Run32: => "eID_Client"
HKU\S-1-5-21-1496144255-991381806-58249036-1001\...\StartupApproved\Run: => "GoogleChromeAutoLaunch_EA977365BF5B2185FA52414E130E9AF9"
HKU\S-1-5-21-1496144255-991381806-58249036-1001\...\StartupApproved\Run: => "eyeBeam SIP Client"
HKU\S-1-5-21-1496144255-991381806-58249036-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
HKU\S-1-5-21-1496144255-991381806-58249036-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1496144255-991381806-58249036-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_C46CFC0629905CC775E70B50EA8A519C"
HKU\S-1-5-21-1496144255-991381806-58249036-1001\...\StartupApproved\Run: => "LenovoVantage"
HKU\S-1-5-21-1496144255-991381806-58249036-1001\...\StartupApproved\Run: => "AvastBrowserAutoLaunch_DD3B34B51295CA4CE249213732CEC2F8"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [UDP Query User{2A0F24BE-0417-4B7C-82E0-AEA49A5356A2}C:\users\user\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\user\appdata\roaming\utorrent\utorrent.exe (uTorrent.CZ -> BitTorrent, Inc.) [File not signed]
FirewallRules: [TCP Query User{3EFEAA9B-8E1C-466F-9831-189CE8295854}C:\users\user\appdata\roaming\utorrent\utorrent.exe] => (Allow) C:\users\user\appdata\roaming\utorrent\utorrent.exe (uTorrent.CZ -> BitTorrent, Inc.) [File not signed]
FirewallRules: [UDP Query User{6080D66F-0A15-409F-B9A3-D282267C8458}C:\games\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) C:\games\world_of_tanks_eu\win64\worldoftanks.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [TCP Query User{517FA03E-29DF-4BDE-95D1-91029A573004}C:\games\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) C:\games\world_of_tanks_eu\win64\worldoftanks.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [UDP Query User{019D165E-A783-4C39-86D3-0A8FD000C4D1}C:\games\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) C:\games\world_of_tanks_eu\win64\worldoftanks.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [TCP Query User{D4A89DBE-2E5C-4FBE-93ED-9F06AF475218}C:\games\world_of_tanks_eu\win64\worldoftanks.exe] => (Allow) C:\games\world_of_tanks_eu\win64\worldoftanks.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [TCP Query User{D7BB254C-3614-49B3-A3BB-BE7E93812E12}C:\users\user\appdata\roaming\utorrent\utorrent.exe] => (Block) C:\users\user\appdata\roaming\utorrent\utorrent.exe (uTorrent.CZ -> BitTorrent, Inc.) [File not signed]
FirewallRules: [UDP Query User{9758F37C-1793-44E7-A5B7-D2D28DF780EF}C:\users\user\appdata\roaming\utorrent\utorrent.exe] => (Block) C:\users\user\appdata\roaming\utorrent\utorrent.exe (uTorrent.CZ -> BitTorrent, Inc.) [File not signed]
FirewallRules: [TCP Query User{CEDD63DE-AE5E-4D08-84FE-3220C65B3BB0}C:\games\world_of_tanks_eu\worldoftanks.exe] => (Allow) C:\games\world_of_tanks_eu\worldoftanks.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [UDP Query User{64DCF168-9DCF-4125-BDB5-E881E6203267}C:\games\world_of_tanks_eu\worldoftanks.exe] => (Allow) C:\games\world_of_tanks_eu\worldoftanks.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [TCP Query User{44905811-9B97-4AE0-B73F-958796A7B300}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [UDP Query User{E5EA4172-128A-49AE-BD0F-4CA1CE87067D}C:\programdata\wargaming.net\gamecenter\wgc.exe] => (Allow) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [{BC60B747-848A-47CF-B5BF-6089E8D7CFF4}] => (Block) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [{CFE743D3-8BF9-4736-B25C-C035E8E17071}] => (Block) C:\programdata\wargaming.net\gamecenter\wgc.exe (Wargaming Group Limited -> Wargaming.net)
FirewallRules: [TCP Query User{D50A21ED-BEFD-495C-9E92-52774C1256E6}C:\users\user\appdata\local\viber\viber.exe] => (Allow) C:\users\user\appdata\local\viber\viber.exe (Viber Media S.a r.l. -> Viber Media S.Ã r.l.)
FirewallRules: [UDP Query User{4C422C61-43B3-47DA-80B6-4B31EFA74A69}C:\users\user\appdata\local\viber\viber.exe] => (Allow) C:\users\user\appdata\local\viber\viber.exe (Viber Media S.a r.l. -> Viber Media S.Ã r.l.)
FirewallRules: [TCP Query User{AB882D7B-A6FD-4E27-8CD1-81130BCFB503}C:\users\user\appdata\roaming\telegram desktop\telegram.exe] => (Allow) C:\users\user\appdata\roaming\telegram desktop\telegram.exe (Telegram FZ-LLC -> Telegram FZ-LLC)
FirewallRules: [UDP Query User{7F80D843-15C9-429D-89A2-1345EABCE936}C:\users\user\appdata\roaming\telegram desktop\telegram.exe] => (Allow) C:\users\user\appdata\roaming\telegram desktop\telegram.exe (Telegram FZ-LLC -> Telegram FZ-LLC)
FirewallRules: [{6CC495C7-51BD-4B6B-AF14-8BF90DAC3E5A}] => (Block) C:\users\user\appdata\roaming\telegram desktop\telegram.exe (Telegram FZ-LLC -> Telegram FZ-LLC)
FirewallRules: [{B44FBF90-BE2C-490A-B5C0-86409A6D627F}] => (Block) C:\users\user\appdata\roaming\telegram desktop\telegram.exe (Telegram FZ-LLC -> Telegram FZ-LLC)
FirewallRules: [{B0F7E24F-FAD8-42AF-8E71-8F38ED9764E5}] => (Allow) C:\Program Files\Cloudflare\Cloudflare WARP\warp-svc.exe (Cloudflare, Inc. -> )
FirewallRules: [TCP Query User{B457D1F4-52DC-4E29-B4B0-A3868001E334}C:\program files (x86)\eseecloud\eseecloud.exe] => (Allow) C:\program files (x86)\eseecloud\eseecloud.exe (Guangzhou Yuege Electronic Trading Co., Ltd. -> comelit, Inc.)
FirewallRules: [UDP Query User{D058892F-FE80-4A14-8BB8-86F9BED7B59B}C:\program files (x86)\eseecloud\eseecloud.exe] => (Allow) C:\program files (x86)\eseecloud\eseecloud.exe (Guangzhou Yuege Electronic Trading Co., Ltd. -> comelit, Inc.)
FirewallRules: [{8847DA20-9CC3-4A2C-B9E8-1ABF180D68E8}] => (Block) C:\program files (x86)\eseecloud\eseecloud.exe (Guangzhou Yuege Electronic Trading Co., Ltd. -> comelit, Inc.)
FirewallRules: [{AC6B875D-0DE8-4C93-9305-4AD521DF65FF}] => (Block) C:\program files (x86)\eseecloud\eseecloud.exe (Guangzhou Yuege Electronic Trading Co., Ltd. -> comelit, Inc.)
FirewallRules: [TCP Query User{8F808F16-DDBE-4245-9211-B9C0E544C7ED}C:\program files\java\jre1.8.0_361\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_361\bin\javaw.exe
FirewallRules: [UDP Query User{64AEE14F-13BC-4878-AC7C-9CFB18A8CE1B}C:\program files\java\jre1.8.0_361\bin\javaw.exe] => (Block) C:\program files\java\jre1.8.0_361\bin\javaw.exe
FirewallRules: [TCP Query User{1E105D05-C78A-461F-BDFE-00B9839E5A25}C:\users\user\appdata\local\viber\viber.exe] => (Block) C:\users\user\appdata\local\viber\viber.exe (Viber Media S.a r.l. -> Viber Media S.Ã r.l.)
FirewallRules: [UDP Query User{1B184AAA-3CEE-4291-81B1-888517BCE708}C:\users\user\appdata\local\viber\viber.exe] => (Block) C:\users\user\appdata\local\viber\viber.exe (Viber Media S.a r.l. -> Viber Media S.Ã r.l.)
FirewallRules: [TCP Query User{BBB3F6BC-DB5B-42B9-8712-960BAD9073E6}D:\warthunder\launcher.exe] => (Allow) D:\warthunder\launcher.exe => No File
FirewallRules: [UDP Query User{29378FF3-0B03-43A4-9795-99880A7F165A}D:\warthunder\launcher.exe] => (Allow) D:\warthunder\launcher.exe => No File
FirewallRules: [TCP Query User{393E0EE9-1DB6-4A61-815D-563EDC36C901}D:\warthunder\win64\aces.exe] => (Allow) D:\warthunder\win64\aces.exe => No File
FirewallRules: [UDP Query User{18475E38-CF8F-4408-9CEF-A0C4C226AB23}D:\warthunder\win64\aces.exe] => (Allow) D:\warthunder\win64\aces.exe => No File
FirewallRules: [TCP Query User{A16993F4-EC84-4538-B786-FB01B64AF5B9}C:\program files (x86)\counterpath\x-lite\x-lite.exe] => (Allow) C:\program files (x86)\counterpath\x-lite\x-lite.exe => No File
FirewallRules: [UDP Query User{316C1A55-3EFD-4476-AF12-C50B8855D803}C:\program files (x86)\counterpath\x-lite\x-lite.exe] => (Allow) C:\program files (x86)\counterpath\x-lite\x-lite.exe => No File
FirewallRules: [{28E67EDD-6A95-493E-97F1-9524FF6B3CEE}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe (Lenovo -> Lenovo)
FirewallRules: [{9867829F-8B67-4F3A-B07B-933892544728}] => (Allow) C:\Program Files (x86)\Lenovo\System Update\uncserver.exe (Lenovo -> Lenovo)
FirewallRules: [{AD85D06D-F212-439A-84D6-4D74F4A1449A}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.137.3425.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{8D055B55-8AE6-4D94-B8C2-FBD037D56CE2}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.137.3425.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{E71BCC52-ABCE-4B5F-B8D1-0CE45A4D5C2B}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.137.3425.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{E800EC33-1417-4DA9-AA90-E49B004D86BE}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.137.3425.0_x64__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{D4032B07-896E-4BB0-9DA6-FA1CFD255745}] => (Allow) C:\Program Files\WindowsApps\Microsoft.Office.Desktop.Outlook_16051.18827.20150.0_x86__8wekyb3d8bbwe\Office16\OUTLOOK.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{8C9B3DEF-A231-4B6C-B404-04772C125106}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\137.0.3296.93\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{010DF1C5-A938-4799-8F4D-A929240D4D25}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{EF9F2163-7E38-44F2-948B-B8285A1FC457}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{98A46031-43E6-481A-81CA-C3A9779A5C38}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{DAE44DB8-C644-4579-82DD-4B19D3DDC8CB}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{8E6D0222-A1CA-4541-8BBE-C2A6D40D4A79}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{95ECABDC-79CC-4BB7-BF35-FEAD4D041DB5}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{603D826F-F3D8-4465-9855-D39D15D5E678}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{C9FCABC9-69F5-414C-8FF6-EEA64BB1CF0A}] => (Allow) C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\WindowsBackupClient.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{EEF92577-96CB-4624-A6F7-FA29839FE94D}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
==================== Restore Points =========================
==================== Faulty Device Manager Devices ============
Name: Qualcomm Atheros QCA9377 Bluetooth
Description: Qualcomm Atheros QCA9377 Bluetooth
Class Guid: {e0cbf06c-cd8b-4647-bb8a-263b43f0f974}
Manufacturer: Qualcomm Atheros Communications
Service: BTHUSB
Problem: : This device is not working properly because Windows cannot load the drivers required for this device. (Code 31)
Resolution: Update the driver
==================== Event log errors: ========================
Application errors:
==================
Error: (07/05/2025 10:16:31 AM) (Source: Application Error) (EventID: 1000) (User: )
Description: Názov chybujúcej aplikácie: CCleaner64.exe, verzia: 6.30.0.11385, časová značka: 0x672b8cef
Názov chybujúceho modulu: CCleaner64.exe, verzia: 6.30.0.11385, časová značka: 0x672b8cef
Kód výnimky: 0xc0000005
Odstup chyby: 0x000000000086c0c0
Identifikácia chybujúceho procesu: 0x42cc
Čas spustenia chybujúcej aplikácie: 0x01dbed85090c45cc
Cesta chybujúcej aplikácie: C:\Program Files\CCleaner\CCleaner64.exe
Cesta chybujúceho modulu: C:\Program Files\CCleaner\CCleaner64.exe
Identifikácia hlásenia: 32294a37-a130-4c0d-a52e-445b43ddc966
Celé meno chybujúceho balíka:
Identifikácia chybujúcej aplikácie vzhľadom na balík:
Error: (07/05/2025 07:09:21 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance. hr = 0x8007045b, Probíhá vypnutí systému..
Error: (07/05/2025 07:09:21 AM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, Probíhá vypnutí systému.]
Error: (07/04/2025 04:06:21 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance. hr = 0x8007045b, Probíhá vypnutí systému..
Error: (07/04/2025 04:06:21 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, Probíhá vypnutí systému.]
Error: (07/04/2025 04:06:21 PM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance. hr = 0x8007045b, Probíhá vypnutí systému..
Error: (07/04/2025 04:06:21 PM) (Source: VSS) (EventID: 13) (User: )
Description: Volume Shadow Copy Service information: The COM Server with CLSID {4e14fba2-2e22-11d1-9964-00c04fbbb345} and name CEventSystem cannot be started. [0x8007045b, Probíhá vypnutí systému.]
Error: (07/03/2025 08:46:09 AM) (Source: VSS) (EventID: 8193) (User: )
Description: Volume Shadow Copy Service error: Unexpected error calling routine CoCreateInstance. hr = 0x8007045b, Probíhá vypnutí systému..
System errors:
=============
Error: (07/05/2025 10:10:37 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby Služba Aktualizace Google (gupdate) zlyhalo kvôli nasledujúcej chybe:
The service did not respond to the start or control request in a timely fashion.
Error: (07/05/2025 10:10:37 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Počas čakania na pripojenie služby Služba Aktualizace Google (gupdate) bol dosiahnutý časový limit (60000 ms).
Error: (07/05/2025 10:09:55 AM) (Source: DCOM) (EventID: 10010) (User: MOJEPC)
Description: The server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter did not register with DCOM within the required timeout.
Error: (07/05/2025 07:22:12 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby Služba Aktualizace Google (gupdate) zlyhalo kvôli nasledujúcej chybe:
The service did not respond to the start or control request in a timely fashion.
Error: (07/05/2025 07:22:12 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Počas čakania na pripojenie služby Služba Aktualizace Google (gupdate) bol dosiahnutý časový limit (60000 ms).
Error: (07/05/2025 07:09:13 AM) (Source: DCOM) (EventID: 10005) (User: MOJEPC)
Description: DCOM got error "1053" attempting to start the service BcastDVRUserService_24e5c4 with arguments "Není k dispozici" in order to run the server:
Windows.Media.Capture.Internal.AppCaptureShell
Error: (07/05/2025 07:09:13 AM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Spustenie služby Uživatelská služba pro GameDVR a vysílání her_24e5c4 zlyhalo kvôli nasledujúcej chybe:
The service did not respond to the start or control request in a timely fashion.
Error: (07/05/2025 07:09:13 AM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Počas čakania na pripojenie služby Uživatelská služba pro GameDVR a vysílání her_24e5c4 bol dosiahnutý časový limit (60000 ms).
Windows Defender:
================
Date: 2025-07-04 06:09:57
Description:
Antivirová ochrana v programu Microsoft Defender scan has been stopped before completion.
Scan Type: Antimalwarový program
Scan Parameters: Rychlé prohledávání
Stop Reason: ЃΡС ¢οлήèĉτìθπ řüņďøщл
Date: 2025-07-01 18:45:45
Description:
Antivirová ochrana v programu Microsoft Defender scan has been stopped before completion.
Scan Type: Antimalwarový program
Scan Parameters: Rychlé prohledávání
Stop Reason: ЃΡС ¢οлήèĉτìθπ řüņďøщл
Date: 2025-06-28 12:38:06
Description:
Antivirová ochrana v programu Microsoft Defender scan has been stopped before completion.
Scan Type: Antimalwarový program
Scan Parameters: Rychlé prohledávání
Stop Reason: ЃΡС ¢οлήèĉτìθπ řüņďøщл
Date: 2025-06-28 12:07:19
Description:
Antivirová ochrana v programu Microsoft Defender scan has been stopped before completion.
Scan Type: Antimalwarový program
Scan Parameters: Rychlé prohledávání
Stop Reason: ЃΡС ¢οлήèĉτìθπ řüņďøщл
Date: 2025-06-28 11:44:47
Description:
Antivirová ochrana v programu Microsoft Defender scan has been stopped before completion.
Scan Type: Antimalwarový program
Scan Parameters: Rychlé prohledávání
Stop Reason: ЃΡС ¢οлήèĉτìθπ řüņďøщл
Event[0]:
Date: 2025-07-01 19:09:06
Description:
Antivirová ochrana v programu Microsoft Defender has encountered an error trying to update security intelligence and will attempt to revert to a previous version.
Security intelligence Attempted: Aktuální
Error Code: 0x80501102
Error description: Došlo k neočekávaným potížím. Nainstalujte všechny dostupné aktualizace a potom opakujte spuštění programu. Informace o instalaci aktualizací naleznete v nápovědě a podpoře.
Security intelligence Version: 1.431.331.0;1.431.331.0
Engine Version: 1.1.25050.6
Date: 2025-06-30 08:06:59
Description:
Antivirová ochrana v programu Microsoft Defender has encountered an error trying to update security intelligence and will attempt to revert to a previous version.
Security intelligence Attempted: Zálohování
Error Code: 0x80004004
Error description: Operace přerušena
Security intelligence Version: 1.431.283.0;1.431.283.0
Engine Version: 1.1.25050.6
Date: 2025-06-30 08:06:59
Description:
Antivirová ochrana v programu Microsoft Defender has encountered an error trying to update security intelligence and will attempt to revert to a previous version.
Security intelligence Attempted: Aktuální
Error Code: 0x80004004
Error description: Operace přerušena
Security intelligence Version: 1.431.300.0;1.431.300.0
Engine Version: 1.1.25050.6
Date: 2025-04-14 06:39:17
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version: 1.427.234.0
Previous security intelligence Version: 1.427.228.0
Update Source: User
Security intelligence Type: AntiSpyware
Update Type: Delta
Current Engine Version: 1.1.25030.1
Previous Engine Version: 1.1.25030.1
Error code: 0x80501102
Error description: An unexpected problem occurred. Install any available updates, and then try to start the program again. For information on installing updates, see Help and Support.
Date: 2025-04-14 06:39:17
Description:
Microsoft Defender Antivirus has encountered an error trying to update security intelligence.
New security intelligence Version: 1.427.234.0
Previous security intelligence Version: 1.427.228.0
Update Source: User
Security intelligence Type: AntiVirus
Update Type: Delta
Current Engine Version: 1.1.25030.1
Previous Engine Version: 1.1.25030.1
Error code: 0x80501102
Error description: An unexpected problem occurred. Install any available updates, and then try to start the program again. For information on installing updates, see Help and Support.
CodeIntegrity:
===============
Date: 2025-04-01 06:58:14
Description:
Code Integrity determined that a process (\Device\HarddiskVolume4\ProgramData\Microsoft\Windows Defender\Platform\4.18.25010.11-0\MsMpEng.exe) attempted to load \Device\HarddiskVolume4\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_cff0174c1abadd0d\igd10iumd64.dll that did not meet the Custom 3 / Antimalware signing level requirements.
==================== Memory info ===========================
BIOS: LENOVO O2NKT14A 12/06/2016
Motherboard: LENOVO 0x36BF
Processor: Intel(R) Core(TM) i7-7700 CPU @ 3.60GHz
Percentage of memory in use: 59%
Total physical RAM: 8091.23 MB
Available physical RAM: 3279.85 MB
Total Virtual: 15259.23 MB
Available Virtual: 8956.61 MB
==================== Drives ================================
Drive c: (Windows) (Fixed) (Total:117.89 GB) (Free:5.22 GB) (Model: SAMSUNG MZVLW128HEGR-000L1) NTFS
Drive d: () (Fixed) (Total:931.51 GB) (Free:665.42 GB) (Model: WDC WD10EZEX-08WN4A0) NTFS
\\?\Volume{4bac9e1f-892f-4d84-8532-a01cb260de31}\ (WinRE_DRV) (Fixed) (Total:0.98 GB) (Free:0.32 GB) NTFS
\\?\Volume{003ce010-b35e-46c2-9700-b79d3c51d944}\ (SYSTEM) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Size: 119.2 GB) (Disk ID: FB131764)
Partition: GPT.
==========================================================
Disk: 1 (Size: 931.5 GB) (Disk ID: FB131755)
Partition: GPT.
==================== End of Addition.txt =======================
Re: Modrá obrazovka
Microsoft Windows [Version 10.0.19045.6036]
(c) Microsoft Corporation. Všetky práva vyhradené.
C:\WINDOWS\system32>chkdsk d:
The type of the file system is NTFS.
WARNING! /F parameter not specified.
Running CHKDSK in read-only mode.
Stage 1: Examining basic file system structure ...
74496 file records processed.
File verification completed.
Phase duration (File record verification): 599.14 milliseconds.
235 large file records processed.
Phase duration (Orphan file record recovery): 0.00 milliseconds.
0 bad file records processed.
Phase duration (Bad file record checking): 0.17 milliseconds.
Stage 2: Examining file name linkage ...
1150 reparse records processed.
75426 index entries processed.
Index verification completed.
Phase duration (Index verification): 976.49 milliseconds.
0 unindexed files scanned.
Phase duration (Orphan reconnection): 5.27 milliseconds.
0 unindexed files recovered to lost and found.
Phase duration (Orphan recovery to lost and found): 0.17 milliseconds.
1150 reparse records processed.
Phase duration (Reparse point and Object ID verification): 3.88 milliseconds.
Stage 3: Examining security descriptors ...
Security descriptor verification completed.
Phase duration (Security descriptor verification): 5.29 milliseconds.
466 data files processed.
Phase duration (Data attribute verification): 0.75 milliseconds.
CHKDSK is verifying Usn Journal...
41637928 USN bytes processed.
Usn Journal verification completed.
Phase duration (USN journal verification): 240.11 milliseconds.
Windows has scanned the file system and found no problems.
No further action is required.
976760831 KB total disk space.
313651752 KB in 13674 files.
4856 KB in 467 indexes.
0 KB in bad sectors.
211387 KB in use by the system.
65536 KB occupied by the log file.
662892836 KB available on disk.
4096 bytes in each allocation unit.
244190207 total allocation units on disk.
165723209 allocation units available on disk.
Total duration: 1.83 seconds (1832 ms).
C:\WINDOWS\system32>chkdsk e:
Cannot open volume for direct access.
C:\WINDOWS\system32>chkdsk e:
Cannot open volume for direct access.
C:\WINDOWS\system32>
(c) Microsoft Corporation. Všetky práva vyhradené.
C:\WINDOWS\system32>chkdsk d:
The type of the file system is NTFS.
WARNING! /F parameter not specified.
Running CHKDSK in read-only mode.
Stage 1: Examining basic file system structure ...
74496 file records processed.
File verification completed.
Phase duration (File record verification): 599.14 milliseconds.
235 large file records processed.
Phase duration (Orphan file record recovery): 0.00 milliseconds.
0 bad file records processed.
Phase duration (Bad file record checking): 0.17 milliseconds.
Stage 2: Examining file name linkage ...
1150 reparse records processed.
75426 index entries processed.
Index verification completed.
Phase duration (Index verification): 976.49 milliseconds.
0 unindexed files scanned.
Phase duration (Orphan reconnection): 5.27 milliseconds.
0 unindexed files recovered to lost and found.
Phase duration (Orphan recovery to lost and found): 0.17 milliseconds.
1150 reparse records processed.
Phase duration (Reparse point and Object ID verification): 3.88 milliseconds.
Stage 3: Examining security descriptors ...
Security descriptor verification completed.
Phase duration (Security descriptor verification): 5.29 milliseconds.
466 data files processed.
Phase duration (Data attribute verification): 0.75 milliseconds.
CHKDSK is verifying Usn Journal...
41637928 USN bytes processed.
Usn Journal verification completed.
Phase duration (USN journal verification): 240.11 milliseconds.
Windows has scanned the file system and found no problems.
No further action is required.
976760831 KB total disk space.
313651752 KB in 13674 files.
4856 KB in 467 indexes.
0 KB in bad sectors.
211387 KB in use by the system.
65536 KB occupied by the log file.
662892836 KB available on disk.
4096 bytes in each allocation unit.
244190207 total allocation units on disk.
165723209 allocation units available on disk.
Total duration: 1.83 seconds (1832 ms).
C:\WINDOWS\system32>chkdsk e:
Cannot open volume for direct access.
C:\WINDOWS\system32>chkdsk e:
Cannot open volume for direct access.
C:\WINDOWS\system32>
Re: Modrá obrazovka
Microsoft Windows [Version 10.0.19045.6036]
(c) Microsoft Corporation. Všetky práva vyhradené.
C:\WINDOWS\system32>chkdsk f:
The type of the file system is NTFS.
Volume label is Elements.
WARNING! /F parameter not specified.
Running CHKDSK in read-only mode.
Stage 1: Examining basic file system structure ...
14848 file records processed.
File verification completed.
Phase duration (File record verification): 1.22 seconds.
2 large file records processed.
Phase duration (Orphan file record recovery): 0.00 milliseconds.
0 bad file records processed.
Phase duration (Bad file record checking): 0.16 milliseconds.
Stage 2: Examining file name linkage ...
128 reparse records processed.
16004 index entries processed.
Index verification completed.
Phase duration (Index verification): 9.87 seconds.
0 unindexed files scanned.
Phase duration (Orphan reconnection): 7.83 milliseconds.
0 unindexed files recovered to lost and found.
Phase duration (Orphan recovery to lost and found): 0.93 milliseconds.
128 reparse records processed.
Phase duration (Reparse point and Object ID verification): 2.25 milliseconds.
Stage 3: Examining security descriptors ...
Security descriptor verification completed.
Phase duration (Security descriptor verification): 23.23 milliseconds.
579 data files processed.
Phase duration (Data attribute verification): 1.06 milliseconds.
CHKDSK is verifying Usn Journal...
2201168 USN bytes processed.
Usn Journal verification completed.
Phase duration (USN journal verification): 99.92 milliseconds.
Windows has scanned the file system and found no problems.
No further action is required.
1953479679 KB total disk space.
1922979504 KB in 13975 files.
7608 KB in 580 indexes.
0 KB in bad sectors.
142979 KB in use by the system.
65536 KB occupied by the log file.
30349588 KB available on disk.
4096 bytes in each allocation unit.
488369919 total allocation units on disk.
7587397 allocation units available on disk.
Total duration: 11.23 seconds (11236 ms).
C:\WINDOWS\system32>
(c) Microsoft Corporation. Všetky práva vyhradené.
C:\WINDOWS\system32>chkdsk f:
The type of the file system is NTFS.
Volume label is Elements.
WARNING! /F parameter not specified.
Running CHKDSK in read-only mode.
Stage 1: Examining basic file system structure ...
14848 file records processed.
File verification completed.
Phase duration (File record verification): 1.22 seconds.
2 large file records processed.
Phase duration (Orphan file record recovery): 0.00 milliseconds.
0 bad file records processed.
Phase duration (Bad file record checking): 0.16 milliseconds.
Stage 2: Examining file name linkage ...
128 reparse records processed.
16004 index entries processed.
Index verification completed.
Phase duration (Index verification): 9.87 seconds.
0 unindexed files scanned.
Phase duration (Orphan reconnection): 7.83 milliseconds.
0 unindexed files recovered to lost and found.
Phase duration (Orphan recovery to lost and found): 0.93 milliseconds.
128 reparse records processed.
Phase duration (Reparse point and Object ID verification): 2.25 milliseconds.
Stage 3: Examining security descriptors ...
Security descriptor verification completed.
Phase duration (Security descriptor verification): 23.23 milliseconds.
579 data files processed.
Phase duration (Data attribute verification): 1.06 milliseconds.
CHKDSK is verifying Usn Journal...
2201168 USN bytes processed.
Usn Journal verification completed.
Phase duration (USN journal verification): 99.92 milliseconds.
Windows has scanned the file system and found no problems.
No further action is required.
1953479679 KB total disk space.
1922979504 KB in 13975 files.
7608 KB in 580 indexes.
0 KB in bad sectors.
142979 KB in use by the system.
65536 KB occupied by the log file.
30349588 KB available on disk.
4096 bytes in each allocation unit.
488369919 total allocation units on disk.
7587397 allocation units available on disk.
Total duration: 11.23 seconds (11236 ms).
C:\WINDOWS\system32>
Re: Modrá obrazovka
"3. idealne by bolo 117GB disk nahradit vacsim"
Ide o PC all in-one Lenovo IdeaCentre, tak neviem či by to šlo?
Ide o PC all in-one Lenovo IdeaCentre, tak neviem či by to šlo?
- Rudy
- Site Admin
- Příspěvky: 119378
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Modrá obrazovka
Paměť RAM by měla být testována pomocí Memtest86: https://www.memtest86.com/download.htm. Protože se spouští přímo z bootovatelného CD (nebo bootovatelné flešky) je ten výsledek nejpřesnější. Disk vypadá OK. Nahradit větším v dnešní době není problém.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Modrá obrazovka
Pouzi fixlist.txt s obsahom:
Start
CloseProcesses:
FirewallRules: [TCP Query User{BBB3F6BC-DB5B-42B9-8712-960BAD9073E6}D:\warthunder\launcher.exe] => (Allow) D:\warthunder\launcher.exe => No File
FirewallRules: [UDP Query User{29378FF3-0B03-43A4-9795-99880A7F165A}D:\warthunder\launcher.exe] => (Allow) D:\warthunder\launcher.exe => No File
FirewallRules: [TCP Query User{393E0EE9-1DB6-4A61-815D-563EDC36C901}D:\warthunder\win64\aces.exe] => (Allow) D:\warthunder\win64\aces.exe => No File
FirewallRules: [UDP Query User{18475E38-CF8F-4408-9CEF-A0C4C226AB23}D:\warthunder\win64\aces.exe] => (Allow) D:\warthunder\win64\aces.exe => No File
FirewallRules: [TCP Query User{A16993F4-EC84-4538-B786-FB01B64AF5B9}C:\program files (x86)\counterpath\x-lite\x-lite.exe] => (Allow) C:\program files (x86)\counterpath\x-lite\x-lite.exe => No File
FirewallRules: [UDP Query User{316C1A55-3EFD-4476-AF12-C50B8855D803}C:\program files (x86)\counterpath\x-lite\x-lite.exe] => (Allow) C:\program files (x86)\counterpath\x-lite\x-lite.exe => No File
EmptyTemp:
End
Start
CloseProcesses:
FirewallRules: [TCP Query User{BBB3F6BC-DB5B-42B9-8712-960BAD9073E6}D:\warthunder\launcher.exe] => (Allow) D:\warthunder\launcher.exe => No File
FirewallRules: [UDP Query User{29378FF3-0B03-43A4-9795-99880A7F165A}D:\warthunder\launcher.exe] => (Allow) D:\warthunder\launcher.exe => No File
FirewallRules: [TCP Query User{393E0EE9-1DB6-4A61-815D-563EDC36C901}D:\warthunder\win64\aces.exe] => (Allow) D:\warthunder\win64\aces.exe => No File
FirewallRules: [UDP Query User{18475E38-CF8F-4408-9CEF-A0C4C226AB23}D:\warthunder\win64\aces.exe] => (Allow) D:\warthunder\win64\aces.exe => No File
FirewallRules: [TCP Query User{A16993F4-EC84-4538-B786-FB01B64AF5B9}C:\program files (x86)\counterpath\x-lite\x-lite.exe] => (Allow) C:\program files (x86)\counterpath\x-lite\x-lite.exe => No File
FirewallRules: [UDP Query User{316C1A55-3EFD-4476-AF12-C50B8855D803}C:\program files (x86)\counterpath\x-lite\x-lite.exe] => (Allow) C:\program files (x86)\counterpath\x-lite\x-lite.exe => No File
EmptyTemp:
End
FRST |ADWCleaner |MBAM |CCleaner |AVPTool
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
V prípade spokojnosti je možné podporiť fórum https://platba.viry.cz/payment/
Re: Modrá obrazovka
Fix result of Farbar Recovery Scan Tool (x64) Version: 03-07-2025
Ran by User (05-07-2025 15:57:20) Run:1
Running from C:\Users\User\Desktop
Loaded Profiles: User
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
FirewallRules: [TCP Query User{BBB3F6BC-DB5B-42B9-8712-960BAD9073E6}D:\warthunder\launcher.exe] => (Allow) D:\warthunder\launcher.exe => No File
FirewallRules: [UDP Query User{29378FF3-0B03-43A4-9795-99880A7F165A}D:\warthunder\launcher.exe] => (Allow) D:\warthunder\launcher.exe => No File
FirewallRules: [TCP Query User{393E0EE9-1DB6-4A61-815D-563EDC36C901}D:\warthunder\win64\aces.exe] => (Allow) D:\warthunder\win64\aces.exe => No File
FirewallRules: [UDP Query User{18475E38-CF8F-4408-9CEF-A0C4C226AB23}D:\warthunder\win64\aces.exe] => (Allow) D:\warthunder\win64\aces.exe => No File
FirewallRules: [TCP Query User{A16993F4-EC84-4538-B786-FB01B64AF5B9}C:\program files (x86)\counterpath\x-lite\x-lite.exe] => (Allow) C:\program files (x86)\counterpath\x-lite\x-lite.exe => No File
FirewallRules: [UDP Query User{316C1A55-3EFD-4476-AF12-C50B8855D803}C:\program files (x86)\counterpath\x-lite\x-lite.exe] => (Allow) C:\program files (x86)\counterpath\x-lite\x-lite.exe => No File
EmptyTemp:
End
*****************
Processes closed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{BBB3F6BC-DB5B-42B9-8712-960BAD9073E6}D:\warthunder\launcher.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{29378FF3-0B03-43A4-9795-99880A7F165A}D:\warthunder\launcher.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{393E0EE9-1DB6-4A61-815D-563EDC36C901}D:\warthunder\win64\aces.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{18475E38-CF8F-4408-9CEF-A0C4C226AB23}D:\warthunder\win64\aces.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{A16993F4-EC84-4538-B786-FB01B64AF5B9}C:\program files (x86)\counterpath\x-lite\x-lite.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{316C1A55-3EFD-4476-AF12-C50B8855D803}C:\program files (x86)\counterpath\x-lite\x-lite.exe" => removed successfully
=========== EmptyTemp: ==========
FlushDNS => completed
BITS transfer queue => 1572864 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 18959898 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B
Windows/system/drivers => 23062079 B
Edge => 0 B
Chrome => 401886419 B
Firefox => 0 B
Opera => 188169 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 1329 B
LocalService => 1329 B
NetworkService => 6017 B
User => 590373915 B
RecycleBin => 39434129 B
EmptyTemp: => 1 GB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 15:57:39 ====
Ran by User (05-07-2025 15:57:20) Run:1
Running from C:\Users\User\Desktop
Loaded Profiles: User
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
FirewallRules: [TCP Query User{BBB3F6BC-DB5B-42B9-8712-960BAD9073E6}D:\warthunder\launcher.exe] => (Allow) D:\warthunder\launcher.exe => No File
FirewallRules: [UDP Query User{29378FF3-0B03-43A4-9795-99880A7F165A}D:\warthunder\launcher.exe] => (Allow) D:\warthunder\launcher.exe => No File
FirewallRules: [TCP Query User{393E0EE9-1DB6-4A61-815D-563EDC36C901}D:\warthunder\win64\aces.exe] => (Allow) D:\warthunder\win64\aces.exe => No File
FirewallRules: [UDP Query User{18475E38-CF8F-4408-9CEF-A0C4C226AB23}D:\warthunder\win64\aces.exe] => (Allow) D:\warthunder\win64\aces.exe => No File
FirewallRules: [TCP Query User{A16993F4-EC84-4538-B786-FB01B64AF5B9}C:\program files (x86)\counterpath\x-lite\x-lite.exe] => (Allow) C:\program files (x86)\counterpath\x-lite\x-lite.exe => No File
FirewallRules: [UDP Query User{316C1A55-3EFD-4476-AF12-C50B8855D803}C:\program files (x86)\counterpath\x-lite\x-lite.exe] => (Allow) C:\program files (x86)\counterpath\x-lite\x-lite.exe => No File
EmptyTemp:
End
*****************
Processes closed successfully.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{BBB3F6BC-DB5B-42B9-8712-960BAD9073E6}D:\warthunder\launcher.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{29378FF3-0B03-43A4-9795-99880A7F165A}D:\warthunder\launcher.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{393E0EE9-1DB6-4A61-815D-563EDC36C901}D:\warthunder\win64\aces.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{18475E38-CF8F-4408-9CEF-A0C4C226AB23}D:\warthunder\win64\aces.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{A16993F4-EC84-4538-B786-FB01B64AF5B9}C:\program files (x86)\counterpath\x-lite\x-lite.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{316C1A55-3EFD-4476-AF12-C50B8855D803}C:\program files (x86)\counterpath\x-lite\x-lite.exe" => removed successfully
=========== EmptyTemp: ==========
FlushDNS => completed
BITS transfer queue => 1572864 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 18959898 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B
Windows/system/drivers => 23062079 B
Edge => 0 B
Chrome => 401886419 B
Firefox => 0 B
Opera => 188169 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 1329 B
LocalService => 1329 B
NetworkService => 6017 B
User => 590373915 B
RecycleBin => 39434129 B
EmptyTemp: => 1 GB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 15:57:39 ====