Prosím o kontrolu logu: pokud zapnu Chrome prohlížeč, tak zabírá cca 2-3 GB paměti a něco stahuje 10-20 MB/s na pozadí. Sám prohlížeč jede pomalu. Děkuji.
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 22-08.2024
Platform: Microsoft Windows 10 Home Version 22H2 19045.4780 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(C:\Program Files\Altap Salamander\salamand.exe ->) (Fine spol. s r.o. -> ALTAP) C:\Program Files\Altap Salamander\utils\salmon.exe
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA app\CEF\NVIDIA Overlay.exe <5>
(C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NVIDIA app\ShadowPlay\nvsphelper64.exe
(C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe ->) (Plex, Inc. -> ) C:\Program Files\Plex\Plex Media Server\Plex Tuner Service.exe
(C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe ->) (Plex, Inc. -> ) C:\Program Files\Plex\Plex Media Server\PlexScriptHost.exe
(CyberLink Corp. -> CyberLink) C:\Program Files (x86)\CyberLink\Power2Go13\CLMLSvc_P2G13.exe
(explorer.exe ->) (Abbingdon Global Limited -> ) C:\Program Files\iFi\USB Audio Device Driver\W10_x64\iFiUsbAudioCpl.exe
(explorer.exe ->) (EnTech Taiwan -> EnTech Taiwan) C:\Program Files (x86)\Dell\Dell Display Manager\ddm.exe
(explorer.exe ->) (Fine spol. s r.o. -> ALTAP) C:\Program Files\Altap Salamander\salamand.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7>
(explorer.exe ->) (Plex, Inc. -> Plex, Inc.) C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe
(explorer.exe ->) (Samsung Electronics CO., LTD. -> ) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files (x86)\Windows Mail\wab.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(services.exe ->) () [File not signed] C:\Program Files\Serviio\bin\ServiioService.exe <2>
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\NisSrv.exe
(services.exe ->) (ND_Apps -> Intel Corporation) C:\Windows\System32\IPROSetMonitor.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <4>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_78cd02ab022cd554\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Plex, Inc. -> Plex, Inc.) C:\Program Files\Plex\Plex Media Server\Plex Update Service.exe
(services.exe ->) (Sony Imaging Products & Solutions Inc. -> Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe
(Sony Imaging Products & Solutions Inc. -> Sony Corporation) C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe
(svchost.exe ->) (ALCPU -> ALCPU) C:\Program Files\Core Temp\Core Temp.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [462712 2012-03-09] (Samsung Electronics CO., LTD. -> )
HKLM-x32\...\Run: [CLMLServer_For_P2G13] => C:\Program Files (x86)\CyberLink\Power2Go13\CLMLSvc_P2G13.exe [154296 2019-05-23] (CyberLink Corp. -> CyberLink)
HKLM-x32\...\Run: [PMBVolumeWatcher] => C:\Program Files (x86)\Sony\PlayMemories Home\PMBVolumeWatcher.exe [868328 2018-12-21] (Sony Imaging Products & Solutions Inc. -> Sony Corporation)
HKLM-x32\...\Run: [Adobe CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> )
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [752208 2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [CCXProcess] => C:\Program Files (x86)\Adobe\Adobe Creative Cloud Experience\CCXProcess.exe [129288 2021-08-04] (Adobe Inc. -> )
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [MicrosoftEdgeAutoLaunch_D1548DDA36BFF9FBCE51AAEDDC45F532] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3741224 2024-08-22] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45120304 2024-08-16] (Gen Digital Inc. -> Piriform Software Ltd)
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\RunOnce: [Usselryggene58] => C:\Users\Zbyse\AppData\Roaming\Joyride\Farveationsprograms.exe [622718038 2024-07-26] (KpoJIuK) [File not signed] <==== ATTENTION
HKLM\...\Windows x64\Print Processors\sxj2mPC: C:\Windows\System32\spool\prtprocs\x64\sxj2mpc.dll [43520 2018-04-15] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Codename Longhorn DDK provider)
HKLM\...\Print\Monitors\sxj2m Langmon: C:\Windows\system32\sxj2mlm.dll [34304 2018-04-15] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\128.0.6613.85\Installer\chrmstp.exe [2024-08-27] (Google LLC -> Google LLC)
Startup: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup\Odeslat do OneNote.lnk [2021-12-18]
ShortcutTarget: Odeslat do OneNote.lnk -> C:\Program Files\Microsoft Office\Office15\ONENOTEM.EXE (Microsoft Corporation -> Microsoft Corporation)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Dell Display Manager.lnk [2022-09-28]
ShortcutTarget: Dell Display Manager.lnk -> C:\Program Files (x86)\Dell\Dell Display Manager\ddm.exe (EnTech Taiwan -> EnTech Taiwan)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\iFi USB Audio Device Control Panel Autostart.lnk [2023-04-07]
ShortcutTarget: iFi USB Audio Device Control Panel Autostart.lnk -> C:\Program Files\iFi\USB Audio Device Driver\W10_x64\iFiUsbAudioCpl.exe (Abbingdon Global Limited -> )
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\PHOTOfunSTUDIO 10.1 PE.lnk [2023-02-17]
ShortcutTarget: PHOTOfunSTUDIO 10.1 PE.lnk -> C:\Program Files (x86)\Common Files\Panasonic\PHOTOfunSTUDIO AutoStart\AutoStartupService.exe (No File)
Startup: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup\Plex Media Server.lnk [2024-05-28]
ShortcutTarget: Plex Media Server.lnk -> C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe (Plex, Inc. -> Plex, Inc.)
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {FAA123E9-B891-4999-912D-FD5FA8502E25} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [829408 2024-08-16] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {AC7DF113-F0A2-40C5-B003-A0FFAC473564} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [5075248 2024-08-16] (Gen Digital Inc. -> Gen Digital Inc. All rights reserved.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "7c69e60e-41a5-479d-aa89-6c3ae0db2565" --version "6.27.11214" --silent
Task: {8436303A-1008-4758-82DE-438E11ABEF87} - System32\Tasks\CCleanerSkipUAC - Zbyse => C:\Program Files\CCleaner\CCleaner.exe [39072560 2024-08-16] (Gen Digital Inc. -> Piriform Software Ltd)
Task: {120D35AC-1D65-4019-9884-669EA8911622} - System32\Tasks\Core Temp Autostart Zbyse => C:\Program Files\Core Temp\Core Temp.exe [1040136 2023-09-24] (ALCPU -> ALCPU)
Task: {CC1A8776-5E39-4DCE-8A6A-5848A7BE92B3} - System32\Tasks\EOSv3 Scheduler onLogOn => C:\Users\Zbyse\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe LOGON (No File)
Task: {F585AA48-A6E9-479D-9FE8-129F278B3D19} - System32\Tasks\EOSv3 Scheduler onTime => C:\Users\Zbyse\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe SCHED (No File)
Task: {0E24E3ED-86BF-4404-838B-A7C24EAF0AF2} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem130.0.6679.0{108EF9E8-5CAD-4B55-BF67-38DC034D6C37} => C:\Program Files (x86)\Google\GoogleUpdater\130.0.6679.0\updater.exe [4884584 2024-08-26] (Google LLC -> Google LLC)
Task: {EDAFCDA4-3059-4A7C-AB06-CCDC9ECB0F3B} - System32\Tasks\Microsoft\Office\Office 15 Subscription Heartbeat => C:\Program Files\Common Files\Microsoft Shared\Office15\OLicenseHeartbeat.exe [1626328 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {6B4FC2FB-2BD7-40DF-8A11-9C3D8BBCE6DD} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {87CB47E6-CF67-4F0D-A66F-3DE528D96E92} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn => C:\Program Files\Microsoft Office\Office15\msoia.exe [376496 2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
Task: {17EE1452-2655-4BE7-B36D-27A403FF39ED} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\OS Edition Upgrade event listener created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2024-07-26] (Microsoft Windows -> Microsoft Corporation)
Task: {5FCA7120-EDAF-4604-A5B6-3F0A950ECBB5} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Passport for Work alert created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2024-07-26] (Microsoft Windows -> Microsoft Corporation)
Task: {F3759799-946F-40CD-9C95-EA0102DE427D} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Provisioning initiated session => C:\Windows\system32\deviceenroller.exe [502784 2024-07-26] (Microsoft Windows -> Microsoft Corporation)
Task: {E71B1803-88C5-4CAD-9C42-33C181421445} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\PushLaunch => C:\Windows\system32\deviceenroller.exe [502784 2024-07-26] (Microsoft Windows -> Microsoft Corporation)
Task: {1591C48E-A16F-4239-A096-3C4C0E864261} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\PushRenewal => C:\Windows\system32\deviceenroller.exe [502784 2024-07-26] (Microsoft Windows -> Microsoft Corporation)
Task: {AE76A1CB-94F8-44DD-8148-D1CE1EFFD1AB} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\PushUpgrade => C:\Windows\system32\deviceenroller.exe [502784 2024-07-26] (Microsoft Windows -> Microsoft Corporation)
Task: {7A232ED9-892C-487B-88CE-2874CABC019C} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule #1 created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2024-07-26] (Microsoft Windows -> Microsoft Corporation)
Task: {6864080D-6420-4F38-B5CB-9DC78A312D93} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule #2 created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2024-07-26] (Microsoft Windows -> Microsoft Corporation)
Task: {A66DA2BE-997B-4D79-BC65-0ABD1215F87C} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule #3 created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2024-07-26] (Microsoft Windows -> Microsoft Corporation)
Task: {9880D39A-9D03-4287-A4C7-E1D78F36FC9B} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule created by enrollment client for renewal of certificate warning => C:\Windows\system32\deviceenroller.exe [502784 2024-07-26] (Microsoft Windows -> Microsoft Corporation)
Task: {4CC4D2BB-C4E4-4C2C-9B3E-EED9693328D7} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule to run OMADMClient by client => C:\Windows\system32\omadmclient.exe [476672 2024-07-26] (Microsoft Windows -> Microsoft Corporation)
Task: {4F6E6597-4448-49BD-92B9-0EE79D2246FD} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Schedule to run OMADMClient by server => C:\Windows\system32\omadmclient.exe [476672 2024-07-26] (Microsoft Windows -> Microsoft Corporation)
Task: {F80F1DBB-BA78-4CCA-9518-51676197E1EF} - System32\Tasks\Microsoft\Windows\EnterpriseMgmt\5871DEB2-23E3-4ED8-909A-7348A48A47D7\Win10 S Mode event listener created by enrollment client => C:\Windows\system32\deviceenroller.exe [502784 2024-07-26] (Microsoft Windows -> Microsoft Corporation)
Task: {BA0389A3-F1D5-42E4-A33B-0526EB6919BA} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpCmdRun.exe [1687320 2024-08-08] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {5110E140-C293-4CBB-8543-0F7AA30D9BC3} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpCmdRun.exe [1687320 2024-08-08] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {19DD655B-311A-4BA7-9819-50094A3A697F} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpCmdRun.exe [1687320 2024-08-08] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {05611476-BEB1-458F-B890-2A213E66F368} - System32\Tasks\NVIDIA app SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA app\CEF\NVIDIA app.exe [3824168 2024-07-28] (NVIDIA Corporation -> NVIDIA Corporation)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Winsock: Catalog5 08 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 08 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.50.1
Tcpip\..\Interfaces\{4e58779c-2187-4f7d-bb47-ae29454122d3}: [DhcpNameServer] 192.168.50.1
Edge:
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default [2024-08-29]
Edge DownloadDir: Default -> E:\Download
Edge Extension: (Dokumenty Google offline) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-03-28]
Edge Extension: (Adblock Plus - free ad blocker) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\gmgoamodcdcjnbaobigkjelfplakmdhh [2024-08-27]
Edge Extension: (Edge relevant text changes) - C:\Users\Zbyse\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-29]
FireFox:
========
FF DefaultProfile: chbnxbjz.default
FF ProfilePath: C:\Users\Zbyse\AppData\Roaming\Mozilla\Firefox\Profiles\chbnxbjz.default [2024-01-14]
FF ProfilePath: C:\Users\Zbyse\AppData\Roaming\Mozilla\Firefox\Profiles\ux0dfpl6.default-release [2024-01-14]
FF Homepage: Mozilla\Firefox\Profiles\ux0dfpl6.default-release -> seznam.cz
FF Extension: (No Name) - C:\Users\Zbyse\AppData\Roaming\Mozilla\Firefox\Profiles\ux0dfpl6.default-release\Extensions\{d10d0bf8-f5b5-c8b4-a8b2-2b9879e08c5d}.xpi [2021-12-26]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~1\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-23] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-09] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.21 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-09] (VideoLAN -> VideoLAN)
FF Plugin-x32: @java.com/DTPlugin,version=11.421.2 -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\dtplugin\npDeployJava1.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.421.2 -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\plugin2\npjp2.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2019-06-26] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\PROGRA~2\MICROS~1\Office15\NPSPWRAP.DLL [2014-01-22] (Microsoft Corporation -> Microsoft Corporation)
Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Zbyse\AppData\Local\Google\Chrome\User Data\Default [2024-08-29]
CHR DownloadDir: E:\Download
CHR Notifications: Default -> hxxps://aukro.cz; hxxps://fastshare.cz; hxxps://holanews.biz; hxxps://re-captha-version-3-280.buzz; hxxps://sport.synottip.cz; hxxps://teams.microsoft.com; hxxps://tinder.com; hxxps://www.conrad.cz; hxxps://www.facebook.com; hxxps://www.fastshare.cz; hxxps://www.hifiroom.cz; hxxps://www.muziker.cz; hxxps://www.tipsport.cz
CHR Extension: (Authenticator) - C:\Users\Zbyse\AppData\Local\Google\Chrome\User Data\Default\Extensions\bhghoamapcdpbohphigoooaddinpkbai [2024-08-28]
CHR Extension: (Adblock Plus - free ad blocker) - C:\Users\Zbyse\AppData\Local\Google\Chrome\User Data\Default\Extensions\cfhdojbkjhnklbpkdaibdccddilifddb [2024-08-28]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Zbyse\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Profile: C:\Users\Zbyse\AppData\Local\Google\Chrome\User Data\Guest Profile [2024-01-14]
CHR Profile: C:\Users\Zbyse\AppData\Local\Google\Chrome\User Data\Profile 1 [2024-04-19]
CHR Extension: (Prezentace) - C:\Users\Zbyse\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2021-12-11]
CHR Extension: (Dokumenty) - C:\Users\Zbyse\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\aohghmighlieiainnegkcijnfilokake [2021-12-11]
CHR Extension: (Disk Google) - C:\Users\Zbyse\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\apdfllckaahabafndbhieahigkjlhalf [2021-12-11]
CHR Extension: (YouTube) - C:\Users\Zbyse\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2021-12-11]
CHR Extension: (Tabulky) - C:\Users\Zbyse\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2021-12-11]
CHR Extension: (Dokumenty Google offline) - C:\Users\Zbyse\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2021-12-11]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Zbyse\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-12-11]
CHR Extension: (Gmail) - C:\Users\Zbyse\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2021-12-11]
CHR Profile: C:\Users\Zbyse\AppData\Local\Google\Chrome\User Data\System Profile [2024-04-19]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1086256 2024-08-16] (Gen Digital Inc. -> Piriform Software Ltd)
S3 Futuremark SystemInfo Service; C:\Program Files (x86)\Futuremark\SystemInfo\FMSISvc.exe [342456 2020-01-15] (FUTUREMARK INC -> Futuremark)
S3 LibreOfficeMaintenance; C:\Program Files\LibreOffice\program\update_service.exe [123320 2024-02-26] (The Document Foundation -> The Document Foundation)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpDefenderCoreService.exe [1427024 2024-08-08] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_78cd02ab022cd554\Display.NvContainer\NVDisplay.Container.exe [1275016 2024-08-15] (NVIDIA Corporation -> NVIDIA Corporation)
R2 PlexUpdateService; C:\Program Files\Plex\Plex Media Server\Plex Update Service.exe [911128 2024-08-26] (Plex, Inc. -> Plex, Inc.)
R2 PMBDeviceInfoProvider; C:\Program Files (x86)\Sony\PlayMemories Home\PMBDeviceInfoProvider.exe [493544 2018-12-21] (Sony Imaging Products & Solutions Inc. -> Sony Corporation)
R2 Serviio; C:\Program Files\Serviio\bin\ServiioService.exe [413696 2022-10-22] () [File not signed]
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\NisSrv.exe [3199648 2024-08-08] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MsMpEng.exe [133704 2024-08-08] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 ALSysIO; C:\Temp\ALSysIO64.sys [43528 2024-08-29] (Microsoft Windows Hardware Compatibility Publisher -> Arthur Liberman)
S3 AudioQuestFilter; C:\Windows\system32\drivers\AqFilter.sys [32088 2017-04-17] (WDKTestCert djsis,131351358102549638 -> Windows (R) Win 7 DDK provider)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 causbaudio; C:\Windows\System32\drivers\causbaudio.sys [381496 2020-07-14] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 causbaudioks; C:\Windows\system32\DRIVERS\causbaudioks.sys [53816 2020-07-14] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 cdh76864; C:\Windows\System32\drivers\cdh76864.sys [49960 2017-12-01] (Chord Electronics Limited -> )
R3 CLVirtualBus01; C:\Windows\System32\drivers\CLVirtualBus01.sys [113888 2018-05-02] (CyberLink Corp. -> CyberLink)
S3 DE_USBAUDIO; C:\Windows\system32\drivers\de_usbaudio.sys [154696 2018-01-25] (Microsoft Windows Hardware Compatibility Publisher -> D&M Holdings Inc.)
S3 ds2waudio; C:\Windows\System32\drivers\ds2waudio.sys [431312 2024-02-13] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 ds2waudioks; C:\Windows\System32\drivers\ds2waudioks.sys [55504 2024-02-13] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 iFiUsbAudio; C:\Windows\System32\drivers\iFiUsbAudio.sys [404480 2021-07-25] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 iFiUsbAudioks; C:\Windows\System32\drivers\iFiUsbAudioks.sys [53752 2021-07-25] (Microsoft Windows Hardware Compatibility Publisher -> )
R2 SSPORT; C:\WINDOWS\system32\Drivers\SSPORT.sys [14224 2021-06-07] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 usbrndis6; C:\Windows\System32\drivers\usb80236.sys [24064 2023-11-15] (Microsoft Corporation) [File not signed]
S3 VBoxNetAdp; C:\Windows\system32\DRIVERS\VBoxNetAdp6.sys [254664 2024-01-15] (Oracle Corporation -> Oracle and/or its affiliates)
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [22080 2024-08-08] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [602504 2024-08-08] (Microsoft Windows -> Microsoft Corporation)
S3 wdm_usb; C:\Windows\system32\DRIVERS\usb2ser.sys [151184 2016-07-15] (NGO -> MBB)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [105864 2024-08-08] (Microsoft Windows -> Microsoft Corporation)
S3 XduooUsbAudio; C:\Windows\System32\drivers\XduooUsbAudio.sys [400952 2020-12-18] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 XduooUsbAudioks; C:\Windows\System32\drivers\XduooUsbAudioks.sys [53816 2020-12-18] (Microsoft Windows Hardware Compatibility Publisher -> )
S4 NvModuleTracker; \SystemRoot\System32\DriverStore\FileRepository\nvmoduletracker.inf_amd64_ea6cec41fc5b2a8b\NvModuleTracker.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2024-08-29 17:45 - 2024-08-29 17:46 - 000026238 _____ C:\Users\Zbyse\Desktop\FRST.txt
2024-08-29 17:44 - 2024-08-29 17:42 - 002397184 _____ (Farbar) C:\Users\Zbyse\Desktop\FRST64.exe
2024-08-21 20:18 - 2024-08-21 20:18 - 000000000 ____D C:\Users\Zbyse\AppData\Local\DaVinci Resolve Welcome
2024-08-21 20:15 - 2024-08-21 20:15 - 000001996 _____ C:\Users\Zbyse\Desktop\DaVinci Resolve.lnk
2024-08-21 20:14 - 2024-08-21 20:15 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Blackmagic Design
2024-08-21 20:14 - 2024-08-21 20:14 - 000000000 ____D C:\Program Files\Common Files\OFX
2024-08-20 20:26 - 2024-08-20 20:26 - 000000000 ____D C:\Windows\LastGood.Tmp
2024-08-20 20:25 - 2024-08-20 20:25 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qBittorrent
2024-08-20 20:24 - 2024-08-20 20:25 - 000000000 ____D C:\Program Files\qBittorrent
2024-08-20 20:23 - 2024-08-15 03:31 - 025312928 _____ C:\Windows\system32\nvidia-pcc.exe
2024-08-20 20:23 - 2024-08-15 03:31 - 002040584 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2024-08-20 20:23 - 2024-08-15 03:31 - 002040584 _____ C:\Windows\system32\vulkaninfo.exe
2024-08-20 20:23 - 2024-08-15 03:31 - 001583888 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2024-08-20 20:23 - 2024-08-15 03:31 - 001583888 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2024-08-20 20:23 - 2024-08-15 03:31 - 001446800 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2024-08-20 20:23 - 2024-08-15 03:31 - 001446800 _____ C:\Windows\system32\vulkan-1.dll
2024-08-20 20:23 - 2024-08-15 03:31 - 001296656 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2024-08-20 20:23 - 2024-08-15 03:31 - 001296656 _____ C:\Windows\SysWOW64\vulkan-1.dll
2024-08-20 20:23 - 2024-08-15 03:31 - 000477824 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2024-08-20 20:23 - 2024-08-15 03:31 - 000374936 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2024-08-20 20:23 - 2024-08-15 03:28 - 001078944 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll
2024-08-20 20:23 - 2024-08-15 03:28 - 000669824 _____ (NVIDIA Corporation) C:\Windows\system32\nvofapi64.dll
2024-08-20 20:23 - 2024-08-15 03:28 - 000505904 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvofapi.dll
2024-08-20 20:23 - 2024-08-15 03:27 - 002178712 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2024-08-20 20:23 - 2024-08-15 03:27 - 001629312 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2024-08-20 20:23 - 2024-08-15 03:27 - 001547440 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2024-08-20 20:23 - 2024-08-15 03:27 - 001202712 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2024-08-20 20:23 - 2024-08-15 03:27 - 001034400 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2024-08-20 20:23 - 2024-08-15 03:27 - 000856600 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe
2024-08-20 20:23 - 2024-08-15 03:27 - 000796808 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2024-08-20 20:23 - 2024-08-15 03:26 - 014270088 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2024-08-20 20:23 - 2024-08-15 03:26 - 000461976 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe
2024-08-20 20:23 - 2024-08-15 03:25 - 016200344 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2024-08-20 20:23 - 2024-08-15 03:25 - 006914184 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2024-08-20 20:23 - 2024-08-15 03:25 - 005910152 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2024-08-20 20:23 - 2024-08-15 03:25 - 005349000 _____ (NVIDIA Corporation) C:\Windows\system32\nvcudadebugger.dll
2024-08-20 20:23 - 2024-08-15 03:25 - 003788416 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2024-08-20 20:23 - 2024-08-15 03:25 - 000853128 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe
2024-08-20 20:23 - 2024-08-15 03:24 - 007133024 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2024-08-20 20:23 - 2024-08-15 03:24 - 006212736 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2024-08-20 20:23 - 2024-08-14 12:00 - 000127247 _____ C:\Windows\system32\nvinfo.pb
2024-08-16 09:11 - 2024-08-16 09:11 - 000000000 ___HD C:\$WinREAgent
2024-08-11 10:12 - 2024-08-11 10:12 - 000000039 _____ C:\Users\Zbyse\AppData\Local\kritadisplayrc
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2024-08-29 17:46 - 2024-01-14 13:42 - 000000000 ____D C:\FRST
2024-08-29 17:46 - 2019-10-29 21:50 - 000000000 ____D C:\Temp
2024-08-29 17:44 - 2023-01-24 17:36 - 000000000 ____D C:\Users\Zbyse\AppData\Local\EBWebView
2024-08-29 17:38 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2024-08-29 17:02 - 2020-06-24 18:15 - 001693140 _____ C:\Windows\system32\PerfStringBackup.INI
2024-08-29 17:02 - 2019-12-07 16:41 - 000716770 _____ C:\Windows\system32\perfh005.dat
2024-08-29 17:02 - 2019-12-07 16:41 - 000144948 _____ C:\Windows\system32\perfc005.dat
2024-08-29 17:02 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2024-08-29 16:56 - 2024-04-19 16:51 - 000000666 _____ C:\Windows\Tasks\CCleanerCrashReporting.job
2024-08-29 16:56 - 2024-04-19 16:51 - 000000000 ____D C:\Program Files\CCleaner
2024-08-29 16:56 - 2020-06-24 18:16 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2024-08-29 16:56 - 2020-06-24 18:11 - 000008192 ___SH C:\DumpStack.log.tmp
2024-08-29 16:56 - 2019-10-29 21:56 - 000000000 ____D C:\Program Files\Core Temp
2024-08-29 16:56 - 2019-10-29 21:43 - 000000000 ____D C:\ProgramData\NVIDIA
2024-08-29 16:55 - 2019-12-07 11:03 - 000524288 _____ C:\Windows\system32\config\BBI
2024-08-29 16:54 - 2020-06-24 18:11 - 000000000 ____D C:\Windows\system32\SleepStudy
2024-08-29 16:41 - 2019-10-30 00:36 - 000000000 ____D C:\Users\Zbyse\AppData\Local\D3DSCache
2024-08-29 16:41 - 2019-10-29 22:18 - 000000000 ____D C:\Users\Zbyse\AppData\Local\CrashDumps
2024-08-29 15:18 - 2019-12-01 13:40 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\qBittorrent
2024-08-29 14:06 - 2019-10-29 22:16 - 000000000 ____D C:\Supgam
2024-08-29 14:03 - 2024-04-19 16:51 - 000003936 _____ C:\Windows\system32\Tasks\CCleaner Update
2024-08-29 14:03 - 2024-04-19 16:51 - 000003382 _____ C:\Windows\system32\Tasks\CCleanerCrashReporting
2024-08-29 00:33 - 2024-07-26 15:11 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\21HDR
2024-08-29 00:15 - 2024-06-03 21:30 - 000001047 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Plex Media Server.lnk
2024-08-28 13:57 - 2021-12-16 01:54 - 000000000 ____D C:\Windows\SystemTemp
2024-08-27 23:02 - 2019-10-29 21:45 - 000002312 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2024-08-27 23:02 - 2019-10-29 21:45 - 000002271 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2024-08-27 17:10 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2024-08-27 17:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2024-08-26 20:31 - 2023-05-19 16:20 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\WeMod
2024-08-26 20:29 - 2024-04-10 15:31 - 000000000 ____D C:\Users\Zbyse\AppData\Local\WeMod
2024-08-26 20:29 - 2023-05-19 16:20 - 000002204 _____ C:\Users\Zbyse\Desktop\WeMod.lnk
2024-08-26 20:29 - 2022-04-15 10:04 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WeMod
2024-08-26 20:29 - 2019-10-30 22:26 - 000000000 ____D C:\Users\Zbyse\AppData\Local\SquirrelTemp
2024-08-26 15:57 - 2019-10-30 22:26 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\TIDAL
2024-08-26 15:11 - 2021-05-31 15:34 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Audacity
2024-08-24 09:18 - 2020-08-28 02:47 - 000002447 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2024-08-24 09:18 - 2020-08-28 02:47 - 000002285 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2024-08-22 19:20 - 2019-10-30 00:12 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Microsoft\Word
2024-08-22 14:25 - 2019-10-29 22:46 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\foobar2000
2024-08-21 20:13 - 2022-09-25 10:39 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Blackmagic Design
2024-08-21 20:13 - 2022-09-25 10:39 - 000000000 ____D C:\Program Files (x86)\Blackmagic Design
2024-08-21 18:13 - 2023-12-30 14:01 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\vlc
2024-08-21 18:05 - 2019-10-29 22:30 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\AIMP
2024-08-21 17:56 - 2024-07-16 17:30 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\Adobe
2024-08-21 17:00 - 2019-10-29 21:52 - 000000000 ____D C:\Users\Zbyse\AppData\Local\NVIDIA
2024-08-17 02:11 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources
2024-08-17 02:11 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\SecureBootUpdates
2024-08-17 02:11 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\schemas
2024-08-17 02:11 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr
2024-08-16 09:20 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
2024-08-16 09:18 - 2020-06-24 18:15 - 003016192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2024-08-16 09:11 - 2019-10-29 22:18 - 000000000 ____D C:\Windows\system32\MRT
2024-08-16 09:08 - 2019-10-29 22:18 - 197093640 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2024-08-12 21:19 - 2024-05-10 15:39 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\hybrid
2024-08-12 21:03 - 2024-05-10 15:39 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\GPAC
2024-08-11 10:12 - 2024-04-12 14:13 - 000024617 _____ C:\Users\Zbyse\AppData\Local\kritarc
2024-08-11 10:12 - 2024-04-12 14:13 - 000000000 ____D C:\Users\Zbyse\AppData\Roaming\krita
2024-08-10 13:09 - 2024-07-26 14:10 - 000003834 _____ C:\Windows\system32\Tasks\NVIDIA app SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2024-08-10 13:09 - 2024-07-26 14:10 - 000001405 _____ C:\Users\Public\Desktop\NVIDIA.lnk
2024-08-10 13:09 - 2019-10-29 21:52 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2024-08-09 10:20 - 2019-10-29 21:42 - 000000000 ____D C:\Users\Zbyse\AppData\Local\Packages
2024-08-08 13:53 - 2019-10-29 21:36 - 000000000 ____D C:\Windows\system32\Drivers\wd
2024-08-07 01:24 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2024-08-01 13:23 - 2024-02-17 04:12 - 000267776 _____ (Microsoft Corporation) C:\Windows\system32\gamingservicesproxy_4.dll
2024-08-01 13:23 - 2022-10-21 19:19 - 000108024 _____ (Microsoft Corporation) C:\Windows\system32\xgamehelper.exe
2024-08-01 13:23 - 2022-10-21 19:19 - 000075368 _____ (Microsoft Corporation) C:\Windows\system32\xgamecontrol.exe
2024-08-01 13:23 - 2021-11-20 23:13 - 000206440 _____ (Microsoft Corporation) C:\Windows\system32\gamelaunchhelper.dll
2024-08-01 13:23 - 2020-04-22 21:37 - 000144888 _____ (Microsoft Corporation) C:\Windows\system32\gamingtcuihelpers.dll
2024-08-01 13:23 - 2020-01-02 16:33 - 002799096 _____ (Microsoft Corporation) C:\Windows\system32\xgameruntime.dll
2024-08-01 13:23 - 2020-01-02 16:33 - 000755304 _____ (Microsoft Corporation) C:\Windows\system32\gameplatformservices.dll
2024-08-01 13:23 - 2020-01-02 16:33 - 000222712 _____ (Microsoft Corporation) C:\Windows\system32\gameconfighelper.dll
2024-07-31 15:32 - 2021-06-07 16:29 - 000000128 _____ C:\Users\Zbyse\AppData\Roaming\winscp.rnd
==================== Files in the root of some directories ========
2021-06-07 16:29 - 2024-07-31 15:32 - 000000128 _____ () C:\Users\Zbyse\AppData\Roaming\winscp.rnd
2020-01-01 21:26 - 2020-01-01 21:26 - 000000053 _____ () C:\Users\Zbyse\AppData\Local\DVDFab.INI
2024-04-12 14:13 - 2024-08-11 10:08 - 000007849 _____ () C:\Users\Zbyse\AppData\Local\krita-sysinfo.log
2024-04-12 14:13 - 2024-08-11 10:12 - 000134511 _____ () C:\Users\Zbyse\AppData\Local\krita.log
2024-06-06 16:53 - 2024-06-06 16:53 - 000031901 _____ () C:\Users\Zbyse\AppData\Local\kritacrash.log
2024-08-11 10:12 - 2024-08-11 10:12 - 000000039 _____ () C:\Users\Zbyse\AppData\Local\kritadisplayrc
2024-04-12 14:13 - 2024-08-11 10:12 - 000024617 _____ () C:\Users\Zbyse\AppData\Local\kritarc
2019-11-16 22:20 - 2019-11-16 22:20 - 000000839 _____ () C:\Users\Zbyse\AppData\Local\recently-used.xbel
2020-01-18 23:36 - 2020-02-16 22:35 - 000007580 _____ () C:\Users\Zbyse\AppData\Local\Resmon.ResmonCfg
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 22-08.2024
Microsoft Windows 10 Home Version 22H2 19045.4780 (X64) (2020-06-24 16:16:49)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-3686431232-4186227985-1175276304-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-3686431232-4186227985-1175276304-503 - Limited - Disabled)
Guest (S-1-5-21-3686431232-4186227985-1175276304-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-3686431232-4186227985-1175276304-504 - Limited - Disabled)
Zbyse (S-1-5-21-3686431232-4186227985-1175276304-1001 - Administrator - Enabled) => C:\Users\Zbyse
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 24.07 (x64 edition) (HKLM\...\{23170F69-40C1-2702-2407-000001000000}) (Version: 24.07.00.0 - Igor Pavlov)
Adega Mod Pack 4.0+Sp (HKLM-x32\...\{5C758480-BC02-4E19-8E3D-FC5747E0D777}_is1) (Version: 4.0+Sp - Adega-Studio Company, Inc.)
AIMP (HKLM-x32\...\AIMP) (Version: v4.70.2223, 17.07.2020 - AIMP DevTeam)
Alien - Isolation (HKLM-x32\...\Alien - Isolation_is1) (Version: - )
Altap Salamander 4.0 (x64) (HKLM\...\Altap Salamander 4.0 (x64)) (Version: 4.0 - ALTAP)
AMD GPIO2 Driver (HKLM-x32\...\{E9DD399F-21A3-479E-A7DF-D6CF4B2ADBF3}) (Version: 2.2.0.130 - Advanced Micro Devices, Inc.) Hidden
AMD Chipset Software (HKLM-x32\...\AMD_Chipset_IODrivers) (Version: 2.13.27.501 - Advanced Micro Devices, Inc.)
AMD I2C Driver (HKLM-x32\...\{B31D92D9-2914-46B0-9738-F668A563DE73}) (Version: 1.2.0.117 - Advanced Micro Devices, Inc.) Hidden
AMD PCI Driver (HKLM-x32\...\{80EC3CEE-2940-42A1-A776-B5D810D39F1E}) (Version: 1.0.0.82 - Advanced Micro Devices, Inc.) Hidden
AMD PSP Driver (HKLM-x32\...\{988F14B8-79A8-475D-BAC7-83F96AD3D821}) (Version: 4.13.0.0 - Advanced Micro Devices, Inc.) Hidden
AMD Ryzen Balanced Driver (HKLM-x32\...\{A171D320-C42C-4F3B-A2D8-C6A09F6788CC}) (Version: 6.0.0.9 - Advanced Micro Devices, Inc.) Hidden
AMD SBxxx SMBus Driver Alpha (HKLM-x32\...\{AAE0E27D-C88A-49BA-8715-77ADCD4286A3}) (Version: 5.12.0.38 - Advanced Micro Devices, Inc.) Hidden
AMD_Chipset_Drivers (HKLM-x32\...\{40c19864-e557-4855-95ee-075689dfcf8e}) (Version: 2.13.27.501 - Advanced Micro Devices, Inc.) Hidden
Aperio ImageScope (HKLM-x32\...\{A5856584-F090-4FD3-BA95-34E6D85546B1}) (Version: 9.01 - )
Aplikace NVIDIA 10.0.2.207 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NvApp) (Version: 10.0.2.207 - NVIDIA Corporation)
Audacity 3.4.2 (HKLM\...\Audacity_is1) (Version: 3.4.2 - Audacity Team)
AviSynth 2.6 (HKLM-x32\...\AviSynth) (Version: 2.6.0.6 - GPL Public release.)
Balíček ovladače systému Windows - Chord Electronics Ltd. (cdh76864) MEDIA (06/07/2017 1.0.62) (HKLM\...\AFE65F763C5C686304EFEDF4CAF4DA0C5F2A0DFE) (Version: 06/07/2017 1.0.62 - Chord Electronics Ltd.)
Bandizip (HKLM\...\Bandizip) (Version: 7.32 - Bandisoft.com)
Blackmagic RAW Common Components (HKLM\...\{EB1F744F-B900-4BAD-82E8-5350C910AB38}) (Version: 4.1 - Blackmagic Design)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
CCleaner (HKLM\...\CCleaner) (Version: 6.27 - Piriform)
Common Desktop Agent (HKLM\...\{A38002C3-BA08-466A-A813-7F9D578B13A1}) (Version: 1.62.0 - OEM) Hidden
Core Temp 1.18.1 (HKLM\...\{086D343F-8E78-4AFC-81AC-D6D414AFD8AC}_is1) (Version: 1.18.1 - ALCPU)
CPUID CPU-Z 2.04 (HKLM\...\CPUID CPU-Z_is1) (Version: 2.04 - CPUID, Inc.)
CyberLink LabelPrint 2.5 (HKLM-x32\...\{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.0.12508 - CyberLink Corp.) Hidden
CyberLink LabelPrint 2.5 (HKLM-x32\...\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}) (Version: 2.5.0.12508 - CyberLink Corp.)
CyberLink Power2Go 13 (HKLM-x32\...\{7BB5FFC9-EC40-47c7-B10A-E0E6A296074D}) (Version: 13.0.0523.0 - CyberLink Corp.)
CyberLink WaveEditor 2 (HKLM-x32\...\{324F76CC-D8DD-4D87-B77D-D4AF5E1AA7B3}) (Version: 2.1.9529.0 - CyberLink Corp.)
DaVinci Resolve (HKLM\...\{A42AD466-8352-466F-B920-67F54C4F8679}) (Version: 19.0.00051 - Blackmagic Design)
DaVinci Resolve Control Panels (HKLM\...\{3739CA49-792F-4F1F-9B76-42DFBBBED27E}) (Version: 2.3.0.0 - Blackmagic Design)
DaVinci Resolve Renderer (HKLM\...\{953AAFB1-E9E3-4FED-9E35-575B960236CC}) (Version: 19.0.00051 - Blackmagic Design)
Dell Display Manager (HKLM-x32\...\{AC50C05D-9D57-40F5-B2EF-AC402F14312B}_is1) (Version: 1.56.2109 - EnTech Taiwan)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Excel (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\1fc5b090eab9aa41f8a2f5987367e6da) (Version: 1.0 - Excel)
Expeditions A MudRunner Game (HKLM-x32\...\Expeditions A MudRunner Game_is1) (Version: - )
Fairlight Audio Accelerator Utility (HKLM\...\FairlightAudioAccelerator_is1) (Version: 1.0.15 - Blackmagic Design)
Far Cry Primal (HKLM-x32\...\{80BD47AF-CF13-49B2-99BF-7E78FBA26124}_is1) (Version: - Ubisoft)
ffdshow v1.3.4533 [2014-09-29] (HKLM-x32\...\ffdshow_is1) (Version: 1.3.4533.0 - )
foobar2000 v1.6.16 (HKLM-x32\...\foobar2000) (Version: 1.6.16 - Peter Pawlowski)
Futuremark SystemInfo (HKLM-x32\...\{A93C08EF-FEB5-49B0-BA5C-2149018683B5}) (Version: 5.26.809.0 - Futuremark)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 128.0.6613.85 - Google LLC)
GraphPad Prism 8.0.1.244 (HKLM\...\{1D0625E1-610F-499E-BA99-CAF230096AE1}) (Version: 8.1.244 - GraphPad Software Inc.)
Haali Media Splitter (HKLM-x32\...\HaaliMkx) (Version: - )
Hard Disk Sentinel Pro (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\{A559093D-FCCB-1B3D-5504-74D07E48A7FB}) (Version: v.5.61.8 - libbi)
HD Tune Pro 5.70 (HKLM-x32\...\HD Tune Pro_is1) (Version: - EFD Software)
Hybrid verze 0.2.6 (HKLM\...\{CE16C5A3-F700-4B35-A58C-99429D7E3240}}_is1) (Version: 0.2.6 - Selurs Software)
iFi USB Audio Device Driver v5.12.0 (HKLM-x32\...\Software_iFiAMR_iFiAMR_UsbAudio_Driver_Setup) (Version: 5.12.0 - iFi)
ImgBurn (HKLM-x32\...\ImgBurn) (Version: 2.5.8.0 - LIGHTNING UK!)
Intel(R) Network Connections 25.6.0.4 (HKLM\...\{8DB3497D-41AF-423B-9027-D885A28857AB}) (Version: 25.6.0.4 - Intel) Hidden
Intel(R) Network Connections 25.6.0.4 (HKLM\...\PROSetDX) (Version: 25.6.0.4 - Intel)
IrfanView 4.67 (32-bit) (HKLM-x32\...\IrfanView) (Version: 4.67 - Irfan Skiljan)
IrfanView 4.67 (64-bit) (HKLM\...\IrfanView64) (Version: 4.67 - Irfan Skiljan)
Java 8 Update 421 (HKLM-x32\...\{77924AE4-039E-4CA4-87B4-2F32180421F0}) (Version: 8.0.4210.9 - Oracle Corporation)
JDownloader 2 (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\jdownloader2) (Version: 2.0 - AppWork GmbH)
Krita (x64) 5.2.2 (HKLM\...\Krita_x64) (Version: 5.2.2.100 - Krita Foundation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
LibreOffice 24.2.1.2 (HKLM\...\{1EC3CC0D-7BF3-4AFC-9D18-683989362406}) (Version: 24.2.1.2 - The Document Foundation)
MadOnion.com/3DMark2001 SE (HKLM-x32\...\{91B323B5-A79C-4D23-BD6D-046C565F9BCF}) (Version: - )
Medieval CUE Splitter (HKLM-x32\...\{B96D2269-568B-4CBF-9332-12FAE8B158F7}) (Version: 1.2.0 - Medieval Software)
MergeModule_x64 (HKLM\...\{8B591A6B-253E-4E62-B2A8-3668CDA0A907}) (Version: 11.0.00 - Sony Corporation) Hidden
MergeModule_x86 (HKLM-x32\...\{51B45206-47B1-4B51-B46A-330B9156D6C1}) (Version: 11.0.00 - Sony Corporation) Hidden
Microsoft Access MUI (Czech) 2013 (HKLM\...\{90150000-0015-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Access MUI (English) 2013 (HKLM\...\{90150000-0015-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Access Setup Metadata MUI (English) 2013 (HKLM\...\{90150000-0117-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft DCF MUI (Czech) 2013 (HKLM\...\{90150000-0090-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft DCF MUI (English) 2013 (HKLM\...\{90150000-0090-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 128.0.2739.42 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 128.0.2739.42 - Microsoft Corporation)
Microsoft Excel MUI (Czech) 2013 (HKLM\...\{90150000-0016-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Excel MUI (English) 2013 (HKLM\...\{90150000-0016-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft GameInput (HKLM-x32\...\{1F2B6AF3-C260-8666-5950-E3FEDBC851D6}) (Version: 10.1.22621.3036 - Microsoft Corporation)
Microsoft Groove MUI (Czech) 2013 (HKLM\...\{90150000-00BA-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Groove MUI (English) 2013 (HKLM\...\{90150000-00BA-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft InfoPath MUI (Czech) 2013 (HKLM\...\{90150000-0044-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft InfoPath MUI (English) 2013 (HKLM\...\{90150000-0044-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Lync MUI (Czech) 2013 (HKLM\...\{90150000-012B-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Lync MUI (English) 2013 (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office 32-bit Components 2013 (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Korrekturhilfen 2013 - Deutsch (HKLM\...\{90150000-001F-0407-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Language Pack 2013 - Czech/čeština (HKLM\...\Office15.OMUI.cs-cz) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office O MUI (Czech) 2013 (HKLM\...\{90150000-0100-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (Czech) 2013 (HKLM\...\{90150000-00E1-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM MUI (English) 2013 (HKLM\...\{90150000-00E1-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM UX MUI (Czech) 2013 (HKLM\...\{90150000-00E2-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office OSM UX MUI (English) 2013 (HKLM\...\{90150000-00E2-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2013 (HKLM\...\Office15.PROPLUSR) (Version: 15.0.4569.1506 - Microsoft Corporation)
Microsoft Office Proofing (Czech) 2013 (HKLM\...\{90150000-002C-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing (English) 2013 (HKLM\...\{90150000-002C-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - English (HKLM\...\{90150000-001F-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Proofing Tools 2013 - Español (HKLM\...\{90150000-001F-0C0A-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared 32-bit MUI (Czech) 2013 (HKLM\...\{90150000-00C1-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared 32-bit MUI (English) 2013 (HKLM\...\{90150000-00C1-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (Czech) 2013 (HKLM\...\{90150000-006E-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared MUI (English) 2013 (HKLM\...\{90150000-006E-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Office Shared Setup Metadata MUI (English) 2013 (HKLM\...\{90150000-0115-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft OneNote MUI (Czech) 2013 (HKLM\...\{90150000-00A1-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft OneNote MUI (English) 2013 (HKLM\...\{90150000-00A1-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Outlook MUI (Czech) 2013 (HKLM\...\{90150000-001A-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Outlook MUI (English) 2013 (HKLM\...\{90150000-001A-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft PowerPoint MUI (Czech) 2013 (HKLM\...\{90150000-0018-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft PowerPoint MUI (English) 2013 (HKLM\...\{90150000-0018-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Publisher MUI (Czech) 2013 (HKLM\...\{90150000-0019-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Publisher MUI (English) 2013 (HKLM\...\{90150000-0019-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft SharePoint Designer MUI (Czech) 2013 (HKLM\...\{90150000-0017-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft SQL Server Compact 4.0 SP1 x64 ENU (HKLM\...\{78909610-D229-459C-A936-25D92283D3FD}) (Version: 4.0.8876.1 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{710f4c1c-cc18-4c49-8cbf-51240c89a1a2}) (Version: 8.0.61001 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (HKLM-x32\...\{7299052b-02a4-4627-81f2-1818da5d550d}) (Version: 8.0.56336 - Microsoft Corporation)
Microsoft Visual C++ 2005 Redistributable (x64) (HKLM\...\{ad8a2fa1-06e7-4b0d-927d-6e54b3d31028}) (Version: 8.0.61000 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.17 (HKLM\...\{8220EEFE-38CD-377E-8595-13398D740ACE}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 (HKLM-x32\...\{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}) (Version: 9.0.30729.4148 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.40.33810 (HKLM-x32\...\{5af95fd8-a22e-458f-acee-c61bd787178e}) (Version: 14.40.33810.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.40.33810 (HKLM-x32\...\{47109d57-d746-4f8b-9618-ed6a17cc922b}) (Version: 14.40.33810.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.40.33810 (HKLM\...\{59CED48F-EBFE-480C-8A38-FC079C2BEC0F}) (Version: 14.40.33810 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.40.33810 (HKLM\...\{B8B3BB4A-A10D-4F51-91B7-A64FFAC31EA7}) (Version: 14.40.33810 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.40.33810 (HKLM-x32\...\{5EA6C998-D5AC-4ED9-89C3-9F25B17CCD3D}) (Version: 14.40.33810 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.40.33810 (HKLM-x32\...\{0C3457A0-3DCE-4A33-BEF0-9B528C557771}) (Version: 14.40.33810 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\{9495AEB4-AB97-39DE-8C42-806EEF75ECA7}) (Version: 10.0.50908 - Microsoft Corporation) Hidden
Microsoft Visual Studio 2010 Tools for Office Runtime (x64) (HKLM\...\Microsoft Visual Studio 2010 Tools for Office Runtime (x64)) (Version: 10.0.50903 - Microsoft Corporation)
Microsoft Word MUI (Czech) 2013 (HKLM\...\{90150000-001B-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft Word MUI (English) 2013 (HKLM\...\{90150000-001B-0409-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Microsoft X MUI (Czech) 2013 (HKLM\...\{90150000-0101-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
MKVToolNix 85.0.0 (64-bit) (HKLM-x32\...\MKVToolNix) (Version: 85.0.0 - Moritz Bunkus)
Monkey's Audio x64 (HKLM-x32\...\Monkey's Audio x64_is1) (Version: 10.25 - Matthew Todd Ashland)
Nástroje kontroly pravopisu pro Microsoft Office 2013 – čeština (HKLM\...\{90150000-001F-0405-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Nástroje korektúry balíka Microsoft Office 2013 - slovenčina (HKLM\...\{90150000-001F-041B-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
NVIDIA FrameView SDK 1.4.10316.34570960 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.4.10316.34570960 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.4.0.1 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.4.0.1 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 560.94 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 560.94 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.23.1019 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.23.1019 - NVIDIA Corporation)
ONLYOFFICE Desktop Editors (HKLM\...\{85C98361-DDBF-490D-81DA-04298A44D5C4}) (Version: 8.0.1.31 - Ascensio System SIA) Hidden
ONLYOFFICE Desktop Editors 8.0 (x64) (HKLM\...\ONLYOFFICE Desktop Editors) (Version: 8.0.1.31 - Ascensio System SIA)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
OpenOffice 4.1.15 (HKLM-x32\...\{45B154A5-9E97-452F-94DE-08EBE6BD0D85}) (Version: 4.115.9813 - Apache Software Foundation)
Outils de vérification linguistique 2013 de Microsoft Office - Français (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}) (Version: 15.0.4569.1506 - Microsoft Corporation) Hidden
Outlook (1) (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\f42c72521bca47863b0c6b497cb01342) (Version: 1.0 - Outlook (1))
Outlook (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\6b0f23e57a39ebfbf2814acb1a24293d) (Version: 1.0 - Outlook)
PlayMemories Home (HKLM-x32\...\{AEB04E0E-0A28-4014-A96A-282E43B7227B}) (Version: 6.0.00.12211 - Sony Corporation)
Plex Media Server 1.41.0.8930 (x64) (HKLM\...\{688e1d8f-188e-49cd-83ca-2669a7e3f8cc}_is1) (Version: 1.41.0.8930 - Plex, Inc.)
PMB_ModeEditor (HKLM-x32\...\{F8063714-BD75-42DC-8FAA-D0E1EED92519}) (Version: 11.0.00 - Sony Corporation) Hidden
PMB_ServiceUploader (HKLM-x32\...\{CF081855-ED80-445A-BF63-025584939230}) (Version: 11.0.00 - Sony Corporation) Hidden
PotPlayer (HKLM-x32\...\PotPlayer) (Version: 240618 - Kakao Corp.)
PowerPoint (1) (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\1f6d7c2045d0e984f46a5779d00bd03f) (Version: 1.0 - PowerPoint (1))
PowerPoint (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\319814cb56b667dff88f54e08be8f51f) (Version: 1.0 - PowerPoint)
Promontory_GPIO Driver (HKLM-x32\...\{B5512BCC-F4CD-4159-86A4-B2AD7D38FFA9}) (Version: 2.0.1.0 - Advanced Micro Devices, Inc.) Hidden
qBittorrent (HKLM-x32\...\qBittorrent) (Version: 4.6.6 - The qBittorrent project)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0015-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0015-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0016-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0016-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0017-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{85EB11C5-7793-4386-8F93-3D15494EC269}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0018-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0018-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0019-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0019-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001A-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001A-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001B-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{1E8252A7-D489-4BB6-9694-93799FFD33ED}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0407-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{DABB9E2A-F054-4F97-9EB2-6992316C6EC7}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0409-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{835E4BED-E265-4103-AE14-0B4C70CF3FE8}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{835E4BED-E265-4103-AE14-0B4C70CF3FE8}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-040C-1000-0000000FF1CE}_Office15.PROPLUSR_{1F7000D3-A917-4AD2-BA55-59E6FDAF062A}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-041B-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{4601BD00-BC9B-4CA2-940C-2552782C7347}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-001F-0C0A-1000-0000000FF1CE}_Office15.PROPLUSR_{4BF13B26-3A95-4E42-900A-DEB16FDA75A0}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-002C-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{EC915383-0457-4D83-BE7A-009D7841E9C5}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-002C-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{C5D14A1B-6E3E-491A-96C6-ABDEEEC4E97D}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0044-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0044-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-006E-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{3F685A71-DF4A-4AC0-A110-0FA0B7FFD86C}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-006E-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{D7E879E6-B505-4DA2-BFEE-53A55E7C8E38}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0090-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0090-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00A1-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00A1-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00BA-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00BA-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{1931508C-C004-4983-81E3-70BE6252904B}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00C1-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{6E88843F-58F2-45EB-8C4A-0DDFE45366E1}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00C1-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{E4F470B2-3601-4E1C-B291-D6B580F53136}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E1-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E1-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E2-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-00E2-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0100-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft)
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0101-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0115-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{D7E879E6-B505-4DA2-BFEE-53A55E7C8E38}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-0117-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-012B-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{010BF41A-4D78-40C3-90BA-117DF64A0AE2}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{6227D1A8-9E29-463F-8DE6-1CFA1FFF8ECE}) (Version: - Microsoft) Hidden
Service Pack 1 for Microsoft Office 2013 (KB2850036) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{D82063A8-7C8C-4C3B-A9BB-95138CA55D26}) (Version: - Microsoft)
Serviio (HKLM\...\Serviio) (Version: 2.3 - Six Lines Ltd)
Signalyst HQPlayer Desktop 3 (HKLM-x32\...\HQPlayer Desktop 3) (Version: - Signalyst)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TIDAL (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\TIDAL) (Version: 2.37.8 - TIDAL Music AS)
Topaz Photo AI (HKLM\...\{27000621-5A90-4EEC-9225-8EE77A029B6B}) (Version: 3.1.1 - Topaz Labs LLC)
Topaz Video AI (HKLM\...\{4965FA3A-1EF0-4A7B-9640-A6901C51BEAB}) (Version: 3.2.2 - Topaz Labs LLC)
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{90150000-00C1-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{90150000-012B-0405-1000-0000000FF1CE}_Office15.OMUI.cs-cz_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{90150000-012B-0409-1000-0000000FF1CE}_Office15.PROPLUSR_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for Skype for Business 2015 (KB4484289) 64-Bit Edition (HKLM\...\{91150000-0011-0000-1000-0000000FF1CE}_Office15.PROPLUSR_{1C76EBD9-0A70-4094-A543-00CAA3B62113}) (Version: - Microsoft)
Update for Windows 10 for x64-based Systems (KB5001716) (HKLM\...\{85C69797-7336-4E83-8D97-32A7C8465A3B}) (Version: 8.94.0.0 - Microsoft Corporation)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.21 - VideoLAN)
Warcraft III - Gold Edition (HKLM-x32\...\{BA071DA1-E6F0-4532-8A7E-60F92B75ED25}) (Version: 1.0.0 - BLIZZARD)
Webshare klient (HKLM-x32\...\Webshare klient) (Version: - )
WeMod (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\WeMod) (Version: 9.9.1 - WeMod)
WinSCP 6.3.4 (HKLM-x32\...\winscp3_is1) (Version: 6.3.4 - Martin Prikryl)
Word (1) (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\f3599346063c9afede925c6eb5c87f5c) (Version: 1.0 - Word (1))
Word (HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\1b837d0bf93d01407352736c91b7bf50) (Version: 1.0 - Word)
Xerox Easy Printer Manager (HKLM-x32\...\Xerox Easy Printer Manager) (Version: 1.03.97.02(06.06.2021) - Xerox Corporation.)
Xerox Easy Wireless Setup (HKLM-x32\...\Xerox Easy Wireless Setup) (Version: 3.70.18.0 - Xerox Corporation)
Xerox Phaser 3020 (HKLM-x32\...\Xerox Phaser 3020) (Version: V1.06 (06.07.2021) - Xerox Corporation)
Packages:
=========
AV1 Video Extension -> C:\Program Files\WindowsApps\Microsoft.AV1VideoExtension_1.2.1293.0_x64__8wekyb3d8bbwe [2024-06-11] (Microsoft Corporation)
CUE Splitter -> C:\Program Files\WindowsApps\38812MedievalSoftware.CUESplitter_2.0.8.0_x64__qfb5004rcjhse [2023-10-25] (Medieval Software)
Dolby Vision Extensions -> C:\Program Files\WindowsApps\DolbyLaboratories.DolbyVisionAccess_2.20303.556.0_x64__rz1tebttyb220 [2024-06-04] (Dolby Laboratories)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2022-03-23] (Microsoft Corporation)
Doplněk pro Fotky -> C:\Program Files\WindowsApps\Microsoft.Windows.Photos.DLC.Main_2021.39122.10110.0_x64__8wekyb3d8bbwe [2022-03-23] (Microsoft Corporation)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2019-10-30] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2019-10-30] (Microsoft Corporation) [MS Ad]
Minecraft for Windows -> C:\Program Files\WindowsApps\Microsoft.MinecraftUWP_1.21.2101.0_x64__8wekyb3d8bbwe [2024-08-23] (Microsoft Studios)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.966.0_x64__56jybvy8sckqj [2024-08-20] (NVIDIA Corp.)
Rozšíření pro video HEVC -> C:\Program Files\WindowsApps\Microsoft.HEVCVideoExtensions_2.1.1804.0_x64__8wekyb3d8bbwe [2024-07-20] (Microsoft Corporation)
Vyhledávání na webu z Microsoft Bingu -> C:\Program Files\WindowsApps\Microsoft.BingSearch_1.0.95.0_x64__8wekyb3d8bbwe [2024-08-03] (Microsoft Corporation)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001_Classes\CLSID\{5B69A6B4-393B-459C-8EBB-214237A9E7AC}\InprocServer32 -> C:\Program Files\Bandizip\bdzshl.x64.dll (Bandisoft International Inc. -> Bandisoft International Inc.)
CustomCLSID: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001_Classes\CLSID\{C78B614C-F3EA-11D2-94A1-00E0292A01E3}\InprocServer32 -> C:\Supgam\Altap Salamander 3.06 (x86 x64) 2015 CZ (Ml) Portable\utils\salextx64.dll (ALTAP) [File not signed]
CustomCLSID: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001_Classes\CLSID\{C78B614F-F3EA-11D2-94A1-00E0292A01E3}\InprocServer32 -> C:\Program Files\Altap Salamander\utils\salextx64.dll (Fine spol. s r.o. -> ALTAP)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ContextMenuHandlers1: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP\System\aimp_menu64.dll [2020-07-20] (IP Izmaylov Artem Andreevich -> AIMP DevTeam)
ContextMenuHandlers1: [CLVDShellExt13] -> {19476CE9-8B19-4EA5-A6FD-5BB11832C0EA} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt13.dll [2019-05-23] (CyberLink Corp. -> Cyberlink)
ContextMenuHandlers1: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Supgam\WinRAR 5.90 Beta 1 CZ (x64) Portable\rarext.dll [2020-01-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Supgam\WinRAR 5.90 Beta 1 CZ (x64) Portable\rarext32.dll [2020-01-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers2: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers2: [CLVDShellExt13] -> {19476CE9-8B19-4EA5-A6FD-5BB11832C0EA} => C:\Program Files (x86)\Common Files\CyberLink\ShellExtComponent\CLVDShellExt13.dll [2019-05-23] (CyberLink Corp. -> Cyberlink)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers4: [AIMP] -> {1F77B17B-F531-44DB-ACA4-76ABB5010A28} => C:\Program Files (x86)\AIMP\System\aimp_menu64.dll [2020-07-20] (IP Izmaylov Artem Andreevich -> AIMP DevTeam)
ContextMenuHandlers5: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nv_dispi.inf_amd64_78cd02ab022cd554\nvshext.dll [2024-08-15] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2024-06-19] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2023-09-15] (Adobe Inc. -> )
ContextMenuHandlers6: [WinRAR] -> {B41DB860-64E4-11D2-9906-E49FADC173CA} => C:\Supgam\WinRAR 5.90 Beta 1 CZ (x64) Portable\rarext.dll [2020-01-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers6-x32: [WinRAR32] -> {B41DB860-8EE4-11D2-9906-E49FADC173CA} => C:\Supgam\WinRAR 5.90 Beta 1 CZ (x64) Portable\rarext32.dll [2020-01-28] (win.rar GmbH -> Alexander Roshal)
ContextMenuHandlers1_S-1-5-21-3686431232-4186227985-1175276304-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers2_S-1-5-21-3686431232-4186227985-1175276304-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers4_S-1-5-21-3686431232-4186227985-1175276304-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
ContextMenuHandlers5_S-1-5-21-3686431232-4186227985-1175276304-1001: [AABdzCtx] -> {5B69A6B4-393B-459C-8EBB-214237A9E7AC} => C:\Program Files\Bandizip\bdzshl.x64.dll [2023-09-14] (Bandisoft International Inc. -> Bandisoft International Inc.)
==================== Codecs (Whitelisted) ====================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Drivers32: [VIDC.FFDS] => C:\Windows\SysWOW64\ff_vfw.dll [112640 2014-09-29] () [File not signed]
==================== Shortcuts & WMI ========================
(The entries could be listed to be restored or removed.)
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Excel.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=leffmjdabcgaflkikcefahmlgpodjkdm --app-url=hxxps://excel.office.com/
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Outlook (1).lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=bjhmmnoficofgoiacjaajpkfndojknpb --app-url=hxxps://outlook.com/
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Outlook.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=bjhmmnoficofgoiacjaajpkfndojknpb
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PowerPoint (1).lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=opfacbhaojodjaojgocnibmklknchehf --app-url=hxxps://powerpoint.office.com/
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=opfacbhaojodjaojgocnibmklknchehf
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Word (1).lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=hikhggiobiflkdfdgdajcfklmcibbopi --app-url=hxxps://word.office.com/
ShortcutWithArgument: C:\Users\Zbyse\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Word.lnk -> C:\Program Files (x86)\Microsoft\Edge\Application\msedge_proxy.exe (Microsoft Corporation) -> --profile-directory=Default --app-id=hikhggiobiflkdfdgdajcfklmcibbopi
==================== Loaded Modules (Whitelisted) =============
2024-08-29 00:15 - 2024-08-29 00:15 - 000498176 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\7592546-570471557d92948f58893deb-windows-x86_64\aac_decoder.dll
2024-08-29 00:15 - 2024-08-29 00:15 - 000461824 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\7592546-570471557d92948f58893deb-windows-x86_64\aac_encoder.dll
2024-08-29 00:15 - 2024-08-29 00:15 - 000366592 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\7592546-570471557d92948f58893deb-windows-x86_64\ac3_decoder.dll
2024-08-29 00:15 - 2024-08-29 00:15 - 000378368 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\7592546-570471557d92948f58893deb-windows-x86_64\ac3_encoder.dll
2024-08-29 00:15 - 2024-08-29 00:15 - 000314880 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\7592546-570471557d92948f58893deb-windows-x86_64\ape_decoder.dll
2024-08-29 00:15 - 2024-08-29 00:15 - 000523776 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\7592546-570471557d92948f58893deb-windows-x86_64\dca_decoder.dll
2024-08-29 00:15 - 2024-08-29 00:15 - 000396288 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\7592546-570471557d92948f58893deb-windows-x86_64\dvvideo_decoder.dll
2024-08-29 00:15 - 2024-08-29 00:15 - 001773568 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\7592546-570471557d92948f58893deb-windows-x86_64\h264_decoder.dll
2024-08-29 00:15 - 2024-08-29 00:15 - 001709056 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\7592546-570471557d92948f58893deb-windows-x86_64\hevc_decoder.dll
2024-08-29 00:15 - 2024-08-29 00:15 - 002021376 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\7592546-570471557d92948f58893deb-windows-x86_64\libx264_encoder.dll
2024-08-29 00:15 - 2024-08-29 00:15 - 000360448 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\7592546-570471557d92948f58893deb-windows-x86_64\mp2_decoder.dll
2024-08-29 00:15 - 2024-08-29 00:15 - 000360448 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\7592546-570471557d92948f58893deb-windows-x86_64\mp3_decoder.dll
2024-08-29 00:15 - 2024-08-29 00:15 - 000585728 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\7592546-570471557d92948f58893deb-windows-x86_64\mpeg1video_decoder.dll
2024-08-29 00:15 - 2024-08-29 00:15 - 000596480 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\7592546-570471557d92948f58893deb-windows-x86_64\mpeg2video_decoder.dll
2024-08-29 00:15 - 2024-08-29 00:15 - 000784896 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\7592546-570471557d92948f58893deb-windows-x86_64\mpeg4_decoder.dll
2024-08-29 00:15 - 2024-08-29 00:15 - 000697344 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\7592546-570471557d92948f58893deb-windows-x86_64\msmpeg4v2_decoder.dll
2024-08-29 00:15 - 2024-08-29 00:15 - 000697344 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\7592546-570471557d92948f58893deb-windows-x86_64\msmpeg4v3_decoder.dll
2024-08-29 00:15 - 2024-08-29 00:15 - 000330240 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\7592546-570471557d92948f58893deb-windows-x86_64\prores_decoder.dll
2024-08-29 00:15 - 2024-08-29 00:15 - 001193472 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\7592546-570471557d92948f58893deb-windows-x86_64\vc1_decoder.dll
2024-08-29 00:15 - 2024-08-29 00:15 - 000735232 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\7592546-570471557d92948f58893deb-windows-x86_64\vp8_decoder.dll
2024-08-29 00:15 - 2024-08-29 00:15 - 001878528 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\7592546-570471557d92948f58893deb-windows-x86_64\vp9_decoder.dll
2024-08-29 00:15 - 2024-08-29 00:15 - 000326656 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\7592546-570471557d92948f58893deb-windows-x86_64\wavpack_decoder.dll
2024-08-29 00:15 - 2024-08-29 00:15 - 000356352 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\7592546-570471557d92948f58893deb-windows-x86_64\wmav2_decoder.dll
2024-08-29 00:15 - 2024-08-29 00:15 - 001193472 _____ () [File not signed] \\?\F:\Users\Zbyse\AppData\Local\Plex Media Server\Codecs\7592546-570471557d92948f58893deb-windows-x86_64\wmv3_decoder.dll
2024-06-19 12:00 - 2024-06-19 12:00 - 000101376 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2024-08-10 13:09 - 2024-08-10 13:09 - 000000000 ____L (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA app\CEF\PlugIns\NVIDIA app\MessageBusRouter.dll] C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\PlugIns\NVIDIA Overlay\MessageBusRouter.dll
2024-07-26 14:10 - 2024-08-10 13:09 - 000000000 ____L (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA app\MessageBus\NvMessageBusBroadcast.dll] C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem\NvMessageBusBroadcast.dll
==================== Alternate Data Streams (Whitelisted) ========
==================== Safe Mode (Whitelisted) ==================
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\Office15\OCHelper.dll [2020-04-15] (Microsoft Corporation -> Microsoft Corporation)
BHO: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\Office15\OCHelper.dll [2020-04-15] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\ssv.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
BHO-x32: Microsoft SkyDrive Pro Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\Office15\GROOVEEX.DLL [2018-07-18] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files (x86)\Java\jre1.8.0_421\bin\jp2ssv.dll [2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
Handler: osf - {D924BDC6-C83A-4BD5-90D0-095128A113D1} - C:\Program Files\Microsoft Office\Office15\MSOSB.DLL [2019-06-12] (Microsoft Corporation -> Microsoft Corporation)
(If an entry is included in the fixlist, it will be removed from the registry.)
IE trusted site: HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\sharepoint.com -> hxxps://mendelu-files.sharepoint.com
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2019-03-19 06:49 - 2024-04-19 16:28 - 000003915 _____ C:\Windows\system32\drivers\etc\hosts
127.0.0.1 localhost
109.94.209.70 fitgirlrepacks.in # Fake FitGirl site
109.94.209.70 www.fitgirlrepacks.in # Fake FitGirl site
109.94.209.70 fitgirlrepacks.co # Fake FitGirl site
109.94.209.70 fitgirl-repacks.cc # Fake FitGirl site
109.94.209.70 fitgirl-repacks.to # Fake FitGirl site
109.94.209.70 fitgirl-repack.com # Fake FitGirl site
109.94.209.70 fitgirl-repacks.website # Fake FitGirl site
109.94.209.70 www.fitgirlrepacks.co # Fake FitGirl site
109.94.209.70 www.fitgirl-repacks.cc # Fake FitGirl site
109.94.209.70 www.fitgirl-repacks.to # Fake FitGirl site
109.94.209.70 www.fitgirl-repack.com # Fake FitGirl site
109.94.209.70 www.fitgirl-repacks.website # Fake FitGirl site
109.94.209.70 ww9.fitgirl-repacks.xyz # Fake FitGirl site
109.94.209.70 *.fitgirl-repacks.xyz # Fake FitGirl site
109.94.209.70 fitgirl-repacks.xyz # Fake FitGirl site
109.94.209.70 fitgirl-repack.net # Fake FitGirl site
109.94.209.70 www.fitgirl-repack.net # Fake FitGirl site
109.94.209.70 fitgirlpack.site # Fake FitGirl site
109.94.209.70 www.fitgirlpack.site # Fake FitGirl site
109.94.209.70 fitgirl-repack.org # Fake FitGirl site
109.94.209.70 www.fitgirl-repack.org # Fake FitGirl site
109.94.209.70 fitgirlrepacks.pro # Fake FitGirl site
109.94.209.70 www.fitgirlrepacks.pro # Fake FitGirl site
109.94.209.70 fitgirlrepack.games # Fake FitGirl site
109.94.209.70 www.fitgirlrepack.games # Fake FitGirl site
109.94.209.70 fitgirl-repacks-site.org # Fake FitGirl site
109.94.209.70 www.fitgirl-repacks-site.org # Fake FitGirl site
109.94.209.70 fitgirls-repacks.com # Fake FitGirl site
109.94.209.70 fitgirlrepack.cc # Fake FitGirl site
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Common Files\Oracle\Java\java8path;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\Windows\system32;C:\Windows;C:\Windows\System32\Wbem;C:\Windows\System32\WindowsPowerShell\v1.0\;C:\Windows\System32\OpenSSH\;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files\Bandizip\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA app\NvDLISR
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\Control Panel\Desktop\\Wallpaper -> E:\Download\JPG\asa.jpg
DNS Servers: 192.168.50.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
Network Binding:
=============
Ethernet: Intel(R) I211 Gigabit Network Connection -> e1r65x64.sys
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\Run: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run: => "ACUW16EN"
HKLM\...\StartupApproved\Run32: => "AdobeAAMUpdater-1.0"
HKLM\...\StartupApproved\Run32: => "Adobe CCXProcess"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\StartupFolder: => "Odeslat do OneNote.lnk"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "CCXProcess"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "ACDSeeCommanderUltimate16"
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\StartupApproved\Run: => "CCleaner Smart Cleaning"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [UDP Query User{E32466DC-1CDB-4C56-AB27-1F5C93AE7543}C:\program files (x86)\daum\potplayer\potplayermini.exe] => (Allow) C:\program files (x86)\daum\potplayer\potplayermini.exe (Kakao corp. -> Kakao)
FirewallRules: [TCP Query User{9B67F7AE-9C21-46A5-9924-E72B2E980C7A}C:\program files (x86)\daum\potplayer\potplayermini.exe] => (Allow) C:\program files (x86)\daum\potplayer\potplayermini.exe (Kakao corp. -> Kakao)
FirewallRules: [{FC19A5E0-2A31-4E41-A5FA-DB7D85ADF21E}] => (Allow) C:\Program Files\foobar2000\foobar2000 Shell Associations Updater.exe (Peter Pawlowski) [File not signed]
FirewallRules: [{AC54F273-F824-489E-9365-48AFD1CBFB68}] => (Allow) C:\Program Files\foobar2000\foobar2000 Shell Associations Updater.exe (Peter Pawlowski) [File not signed]
FirewallRules: [{462C0772-BE15-4BBD-8479-2712EF944985}] => (Allow) C:\Program Files\foobar2000\foobar2000 Shell Associations Updater.exe (Peter Pawlowski) [File not signed]
FirewallRules: [{321F3267-42ED-4AB7-B6FF-911E0B85B892}] => (Allow) C:\Program Files\foobar2000\foobar2000 Shell Associations Updater.exe (Peter Pawlowski) [File not signed]
FirewallRules: [UDP Query User{9E9EE6BA-B760-479F-8FCA-ACC18FFFE0FA}C:\program files\qbittorrent\qbittorrent.exe] => (Allow) C:\program files\qbittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [TCP Query User{55D1703B-F61A-4025-95CD-375034556F3D}C:\program files\qbittorrent\qbittorrent.exe] => (Allow) C:\program files\qbittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{9C9D195A-9A27-453E-9268-215248E6F82C}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{2C6563FF-4F5B-4F40-A144-E1CBA0433B51}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{98E12835-66D8-452D-AA75-6B650BC77783}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{D123163A-AA64-434D-98E9-284F09669A37}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{37B6311C-7047-4B33-B16F-6C5FB38DDD61}] => (Allow) D:\Programy\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{BD3A8A7E-23BA-4979-88B1-6967B6278BE5}] => (Allow) D:\Programy\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{985B5949-28D7-42D8-AB4B-7AB98D507FEF}] => (Allow) D:\Programy\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{2F8DEF43-7244-48D9-9EC2-D90A44775377}] => (Allow) D:\Programy\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{744C4FC9-36BB-4E86-A4ED-3AD349CC14A2}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{19A9441B-845B-4BA8-AF25-9E8E5E64BD13}] => (Allow) C:\Program Files\Microsoft Office\Office15\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{037DAC84-EE78-47C2-BF8D-D99E91361DD4}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{598F75DA-D9B4-4A7C-808A-5AEA606AFD56}] => (Allow) C:\Program Files\Microsoft Office\Office15\lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [TCP Query User{E7C1E876-BE5A-4181-A511-C539FD9FB27A}E:\threadr\programy\imagej\imagej.exe] => (Allow) E:\threadr\programy\imagej\imagej.exe () [File not signed]
FirewallRules: [UDP Query User{2FC6EF2E-02F0-44BB-9553-3FAE6FC16EAC}E:\threadr\programy\imagej\imagej.exe] => (Allow) E:\threadr\programy\imagej\imagej.exe () [File not signed]
FirewallRules: [TCP Query User{F3B50D36-5D6F-4F61-AFE5-A0F96BF1D1C5}C:\program files\serviio\jre\bin\javaw.exe] => (Allow) C:\program files\serviio\jre\bin\javaw.exe
FirewallRules: [UDP Query User{500ADCEF-8D0D-46E3-9371-C5F2719564CC}C:\program files\serviio\jre\bin\javaw.exe] => (Allow) C:\program files\serviio\jre\bin\javaw.exe
FirewallRules: [TCP Query User{BA4BC774-E288-4469-BD75-E5947E54E53A}C:\windows\system32\mmc.exe] => (Block) C:\windows\system32\mmc.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [UDP Query User{BF98DFCE-7F61-49DA-96DA-74DBA2829F8C}C:\windows\system32\mmc.exe] => (Block) C:\windows\system32\mmc.exe (Microsoft Windows -> Microsoft Corporation)
FirewallRules: [{7F42F493-EA9A-4A82-B4D4-66CA4A016701}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{9BBFF569-E849-486B-BCE5-1827C3216B18}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{84E5BFD6-2268-432B-BB52-2565E561FE8E}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x86\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{C6B48179-8EE8-48E9-B2DE-C89272FA68A3}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x86\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{660F6C9F-6DB3-4DFC-8EB3-33067852DD6A}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{4FD5C8D6-F540-4A25-9C43-42072C0893D6}] => (Allow) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{205A4AF2-B6AD-4213-A10E-7D3D3C077F18}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.Application.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{CE2FBB4C-87DD-4CC4-BD54-445934484D8B}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.Application.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{8856DDFF-F55B-4CE5-B6A5-43D6ECEB2548}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.OrderSupplies.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{D7A1BED2-BD47-44F7-8ED5-80F9185FB072}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.OrderSupplies.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{EA5BB2FE-3BEB-4C4D-A815-C78D63FB65F3}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.Alert.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{45FF35D8-426D-48D5-B8E1-4962D1DECDD3}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\Xerox.Alert.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{29FCC465-91DA-4E12-867F-C12DECF3DF74}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\uninstall.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{0606697C-1674-4D6D-B11B-0CBD8E73296D}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\uninstall.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{89893EB7-261D-417F-A13C-1CA9CE97DF9A}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\CDAS2PC\Xerox.CDAS2PC.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{28E04AA6-E620-4722-9FCF-DC3A3F9DA57F}] => (Allow) C:\Program Files (x86)\Xerox\Easy Printer Manager\CDAS2PC\Xerox.CDAS2PC.exe (Xerox Corporation.) [File not signed]
FirewallRules: [{67342818-AC12-4673-B0CE-06502E13DC83}] => (Allow) C:\Program Files (x86)\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{B4C9243D-3FCB-4CB9-AB43-7235CE1E00AD}] => (Allow) C:\Program Files (x86)\Common Files\Common Desktop Agent\CDASrv.exe (Samsung Electronics CO., LTD. -> )
FirewallRules: [{9E304A31-C775-4DF5-AF6E-C00D42036297}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{0ECB00BD-00EB-473A-8287-D863B0C7963C}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 17\x64\FarmingSimulator2017Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{393662D4-69B8-4AD0-B6F7-34CB009495F9}] => (Allow) D:\Programy\Steam\steamapps\common\IL 2 Sturmovik 1946\il2fb.exe () [File not signed]
FirewallRules: [{EEC2626B-80D8-4D1F-A700-0787CF6AF62D}] => (Allow) D:\Programy\Steam\steamapps\common\IL 2 Sturmovik 1946\il2fb.exe () [File not signed]
FirewallRules: [TCP Query User{CFDDB72A-1106-4DFF-9B88-2DB5A7D675AB}D:\games\far cry primal\bin\fcprimal.exe] => (Allow) D:\games\far cry primal\bin\fcprimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [UDP Query User{E4318DCE-C953-4571-AC13-A59C943FE0D8}D:\games\far cry primal\bin\fcprimal.exe] => (Allow) D:\games\far cry primal\bin\fcprimal.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [{7322048D-2BF8-419E-8FC2-5BA8E32B8332}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 2013\FarmingSimulator2013Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [{6FC70668-1502-436E-8F79-D4A32F76372B}] => (Allow) D:\Programy\Steam\steamapps\common\Farming Simulator 2013\FarmingSimulator2013Game.exe (GIANTS Software GmbH -> GIANTS Software GmbH)
FirewallRules: [TCP Query User{132966CA-DC70-4AEF-9615-AD1667783CBB}C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe] => (Block) C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe (Signalyst -> )
FirewallRules: [UDP Query User{FC7E21C2-9B73-4173-8C72-29B6670B7428}C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe] => (Block) C:\program files\signalyst\hqplayer desktop 3\hqplayer-desktop.exe (Signalyst -> )
FirewallRules: [{87EE48E9-63A1-457E-B906-5A1EFE50E784}] => (Allow) D:\Programy\Steam\steamapps\common\MudRunner\MudRunner.exe (Focus Home Interactive) [File not signed]
FirewallRules: [{69211867-3D8A-47EE-AC61-B46AEAF131C7}] => (Allow) D:\Programy\Steam\steamapps\common\MudRunner\MudRunner.exe (Focus Home Interactive) [File not signed]
FirewallRules: [{9B754BF9-65A2-4A7A-90E7-1A97CC38BE42}] => (Allow) D:\Programy\Steam\steamapps\common\Death in the Water 2\Death in the Water 2.exe () [File not signed]
FirewallRules: [{370A9EA3-8A44-4EC8-8C29-11B942CC98E3}] => (Allow) D:\Programy\Steam\steamapps\common\Death in the Water 2\Death in the Water 2.exe () [File not signed]
FirewallRules: [TCP Query User{A0988E5C-C432-42F5-BC11-8E84D8CE6FF4}D:\games\alien - isolation\ai.exe] => (Allow) D:\games\alien - isolation\ai.exe () [File not signed]
FirewallRules: [UDP Query User{D17A23C2-A643-40DB-AF73-8FD84E7F3206}D:\games\alien - isolation\ai.exe] => (Allow) D:\games\alien - isolation\ai.exe () [File not signed]
FirewallRules: [TCP Query User{DCB80824-F17F-41A7-A927-F90FA394B619}C:\supgam\madvr\madhcctrl.exe] => (Allow) C:\supgam\madvr\madhcctrl.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [UDP Query User{B7C1A0D0-AEAD-4635-83B2-99B32B76F909}C:\supgam\madvr\madhcctrl.exe] => (Allow) C:\supgam\madvr\madhcctrl.exe (Systemsoftware Mathias Rauen (Mathias Rauen) -> madshi.net)
FirewallRules: [{A466714D-8057-45A7-A56E-DD18BCF60CF1}] => (Allow) D:\Programy\Steam\steamapps\common\Maneater\Maneater.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [{CBCC5EBC-6E4F-4AE6-9163-32B16BD8CC00}] => (Allow) D:\Programy\Steam\steamapps\common\Maneater\Maneater.exe (Epic Games, Inc.) [File not signed]
FirewallRules: [TCP Query User{35209A04-2237-4D39-B134-0B50295F65A6}C:\users\zbyse\appdata\local\tidal\app-2.35.0\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.35.0\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{7AE86AD2-8BF6-4022-B573-AD9A52E72680}C:\users\zbyse\appdata\local\tidal\app-2.35.0\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.35.0\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [{55C682B1-E642-4EEE-9BA2-E160AF71BFC9}] => (Allow) D:\Programy\Steam\steamapps\common\SnowRunner\Sources\Bin\SnowRunner.exe (Focus Entertainment SA -> Focus Home Interactive)
FirewallRules: [{F9A7772D-5522-4BBC-AFDC-10AF3A16A28F}] => (Allow) D:\Programy\Steam\steamapps\common\SnowRunner\Sources\Bin\SnowRunner.exe (Focus Entertainment SA -> Focus Home Interactive)
FirewallRules: [TCP Query User{F718CAD8-F3CF-4009-87A4-7B516B0311F1}C:\users\zbyse\appdata\local\tidal\app-2.36.2\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.36.2\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{5C55C2CF-2662-42C2-A54A-E6486615D89E}C:\users\zbyse\appdata\local\tidal\app-2.36.2\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.36.2\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [TCP Query User{8F37554C-1F8C-49BE-9F0C-45C4B55E2710}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [UDP Query User{A54EE6AD-65C5-453B-B37B-E863C1EF1126}C:\program files\videolan\vlc\vlc.exe] => (Allow) C:\program files\videolan\vlc\vlc.exe (VideoLAN -> VideoLAN)
FirewallRules: [TCP Query User{85180EA5-89BC-4636-ABAF-9F0A6AAE878F}D:\games\quake 3 arena\quake3e.ded.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.ded.x64.exe () [File not signed]
FirewallRules: [UDP Query User{8172CB24-6AA8-4050-9A29-B2C59ABC7EFF}D:\games\quake 3 arena\quake3e.ded.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.ded.x64.exe () [File not signed]
FirewallRules: [TCP Query User{63439F03-50B7-4DB4-974F-993E8DABBCCE}D:\games\quake 3 arena\quake3e.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.x64.exe () [File not signed]
FirewallRules: [UDP Query User{135A4E52-D499-4E55-8C36-1B32A3D595A1}D:\games\quake 3 arena\quake3e.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e.x64.exe () [File not signed]
FirewallRules: [TCP Query User{FF557E77-D694-4C85-89D7-1FCDECF6D760}D:\games\quake 3 arena\quake3e-vulkan.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e-vulkan.x64.exe () [File not signed]
FirewallRules: [UDP Query User{516BD6C5-3834-42DA-ADAC-5EC207EF91D1}D:\games\quake 3 arena\quake3e-vulkan.x64.exe] => (Allow) D:\games\quake 3 arena\quake3e-vulkan.x64.exe () [File not signed]
FirewallRules: [{B86A9060-3A31-4DF4-B46B-138E6BD888B7}] => (Allow) D:\Programy\Steam\steamapps\common\Serious Sam HD The Second Encounter\Bin\SamHD_TSE.exe (DEVOLVER DIGITAL, INC -> )
FirewallRules: [{662166D8-EA7E-43F2-9CC9-9ACAD80AD6DF}] => (Allow) D:\Programy\Steam\steamapps\common\Serious Sam HD The Second Encounter\Bin\SamHD_TSE.exe (DEVOLVER DIGITAL, INC -> )
FirewallRules: [{D14F9A2B-D5D8-4735-82D8-5B3C4A04C7D3}] => (Allow) D:\Programy\Steam\steamapps\common\Serious Sam HD The Second Encounter\Bin\SamHD_TSE_Unrestricted.exe (DEVOLVER DIGITAL, INC -> )
FirewallRules: [{0910AB66-95DF-423F-AD13-1BC587B4F035}] => (Allow) D:\Programy\Steam\steamapps\common\Serious Sam HD The Second Encounter\Bin\SamHD_TSE_Unrestricted.exe (DEVOLVER DIGITAL, INC -> )
FirewallRules: [{8DA9E566-FE41-4EC1-9D11-368A93546C7B}] => (Allow) C:\Program Files\Serviio\bin\ServiioService.exe () [File not signed]
FirewallRules: [{A4DD15D8-F0BE-44B6-917F-AEB46B4FDA1C}] => (Allow) C:\Program Files\Serviio\bin\ServiioService.exe () [File not signed]
FirewallRules: [{628EBF91-9179-4DA9-AD98-1ABEE4C5C149}] => (Allow) C:\Program Files\Serviio\console\ServiioConsole.exe (Six Lines Ltd) [File not signed]
FirewallRules: [TCP Query User{7881C914-5F13-4D2B-8B4F-C9D5EB6692E1}C:\users\zbyse\appdata\local\tidal\app-2.37.8\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.37.8\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [UDP Query User{C55F880F-8AFA-482B-89B9-C6DA984E9EE9}C:\users\zbyse\appdata\local\tidal\app-2.37.8\tidal.exe] => (Allow) C:\users\zbyse\appdata\local\tidal\app-2.37.8\tidal.exe (TIDAL Music AS -> TIDAL Music AS)
FirewallRules: [{020247A5-E152-456F-8BE7-DDECF7A1F8BF}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs LLC -> Topaz Labs)
FirewallRules: [{DCABA4B8-135D-49AB-B2E3-20A4CB9FD413}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\tpai.exe (Topaz Labs LLC -> Topaz Labs)
FirewallRules: [{3C09EF2B-1E6C-4E77-AB69-C9C9DC2656BF}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Crashpad\crashpad_handler.exe (Topaz Labs LLC -> )
FirewallRules: [{0FB2C580-19E4-4C10-8557-40BE981520B7}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Video AI\crashpad_handler.exe () [File not signed]
FirewallRules: [{F52CFC22-474A-42FB-AD85-BEF372470383}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Video AI\ffmpeg.exe (Topaz Labs LLC -> )
FirewallRules: [{BD2D33A8-A25E-4EAA-80DA-CB283BD3F112}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Video AI\ffprobe.exe (Topaz Labs LLC -> )
FirewallRules: [{3B87EEEF-832F-419E-9CD9-9579AF67BA87}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Video AI\login.exe () [File not signed]
FirewallRules: [{13AED5C9-409F-4C19-B870-C3AB4927ED05}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Video AI\Topaz Video AI.exe (Topaz Labs LLC -> Topaz Labs)
FirewallRules: [{5EBC67DF-6486-4F15-B7D6-BA321E5B204E}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Topaz Photo AI.exe (Topaz Labs LLC -> Topaz Labs)
FirewallRules: [{E6077F40-7F25-441D-AC34-877A6636BB7C}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\tpai.exe (Topaz Labs LLC -> Topaz Labs)
FirewallRules: [{D3D80FFC-404F-486E-95A2-81BF89888B38}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Photo AI\Crashpad\crashpad_handler.exe (Topaz Labs LLC -> )
FirewallRules: [{BEBEB1EA-5CA6-4982-8114-E750B3436EB6}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Video AI\crashpad_handler.exe () [File not signed]
FirewallRules: [{EFA7678C-24D0-43F8-8D71-E546BE9ED00C}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Video AI\ffmpeg.exe (Topaz Labs LLC -> )
FirewallRules: [{DCD5E408-8E6C-4180-838D-49F4131FDE24}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Video AI\ffprobe.exe (Topaz Labs LLC -> )
FirewallRules: [{D4A30420-2648-4F23-95BD-6C38DC16A7B6}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Video AI\login.exe () [File not signed]
FirewallRules: [{AA2D183F-8978-4E0E-A925-912157EA25FC}] => (Block) C:\Program Files\Topaz Labs LLC\Topaz Video AI\Topaz Video AI.exe (Topaz Labs LLC -> Topaz Labs)
FirewallRules: [{F3DEA6D3-66F8-4C44-9C01-0BC77811186D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{423B1DE2-2BDE-49C0-8175-4AEFBF9F25B9}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{D8481CEE-1918-486D-92F6-78723D778BB1}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{84AAB800-052D-4A0A-B24C-C46D418140E4}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{967016DA-659F-45D5-9ED1-7A1A85992490}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{58912058-23D0-460C-ACE0-E9F5CBECE4B8}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{1E2EDADE-68AD-457E-B20B-490EDCFA8EBF}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\Resolve.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.) [File not signed]
FirewallRules: [{58BAFDF4-814D-48A9-BEEE-B76E1846CC4A}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\bmdpaneld.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{E17AF1A5-6F4F-4F14-BEB7-0C411D447AE0}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\DaVinciPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{6100391C-55B7-4EC4-9DDA-9FE881B2F000}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\JLCooperPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{F7153079-166A-4FB5-94BC-7E9C7CFC321A}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\EuphonixPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{D42CCC0A-4B53-4497-B96A-ED1AC8A550AA}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\TangentPanelDaemon.exe (Blackmagic Design Pty Ltd -> )
FirewallRules: [{3AF0BA82-4029-498C-A4E2-EC9BFB6E807C}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\fuscript.exe (Blackmagic Design Pty Ltd -> Blackmagic Design Pty. Ltd.)
FirewallRules: [{31497CBC-39FA-4A9D-9A2A-19693DCD8A41}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\128.0.2739.42\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{2DCB3408-722C-4691-9F19-2C05E6355D79}] => (Allow) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{84861C6D-D8F8-4160-B652-F1AA67E6C4A2}] => (Allow) C:\Program Files\Plex\Plex Media Server\Plex Media Server.exe (Plex, Inc. -> Plex, Inc.)
FirewallRules: [{68580077-F4D2-4A56-9AC6-3848B532EB72}] => (Allow) C:\Program Files\Plex\Plex Media Server\PlexScriptHost.exe (Plex, Inc. -> )
FirewallRules: [{D57BF2F7-59C1-4DCB-8386-F6B44E128E87}] => (Allow) C:\Program Files\Plex\Plex Media Server\Plex DLNA Server.exe (Plex, Inc. -> Plex, Inc.)
FirewallRules: [{BB129D92-4CD3-4324-A429-0EFB2528CF3A}] => (Allow) C:\Program Files\Plex\Plex Media Server\Plex Tuner Service.exe (Plex, Inc. -> )
==================== Restore Points =========================
ATTENTION: System Restore is disabled (Total:238.37 GB) (Free:66.82 GB) (28%)
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (08/29/2024 04:40:59 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: wab.exe, verze: 10.0.19041.3636, časové razítko: 0x66a1b8ea
Název chybujícího modulu: KERNELBASE.dll, verze: 10.0.19041.4780, časové razítko: 0xc4a0381f
Kód výjimky: 0xe0434352
Posun chyby: 0x00141072
ID chybujícího procesu: 0x47e4
Čas spuštění chybující aplikace: 0x01dafa0b898b2e38
Cesta k chybující aplikaci: C:\Program Files (x86)\windows mail\wab.exe
Cesta k chybujícímu modulu: C:\Windows\System32\KERNELBASE.dll
ID zprávy: a9defa91-5025-4083-b7c5-e520051c023c
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (08/29/2024 04:40:59 PM) (Source: .NET Runtime) (EventID: 1026) (User: )
Description: Aplikace: wab.exe
Verze Framework: v4.0.30319
Popis: Proces byl ukončen z důvodu neošetřené výjimky.
Informace o výjimce: System.Net.Sockets.SocketException
na System.Net.Dns.GetAddrInfo(System.String)
na System.Net.Dns.InternalGetHostByName(System.String, Boolean)
na System.Net.Dns.GetHostEntry(System.String)
na 轡좽ꖋ᷉⸋弻ᤳᒩ쾐騇넎鹙ḡ鹅ꧣ⧘⅃.㓍ꮌ셢뮷腆�櫝䅫된朖ᐫ傀汉ᇷ㖻(綄솢㷲槞夸점秘䗣鰏통䂹퐜媹苤བ䗴铍整)
na 轡좽ꖋ᷉⸋弻ᤳᒩ쾐騇넎鹙ḡ鹅ꧣ⧘⅃.挚ꓢጉఢ껞഻폖᱈帎祸ࡱ怂内ᗅ뙟⿴뷰)乜()
na ҭ캼⯀䋦坈毺䣎룍ݲ곴䎵Ͽ㧸셆퀅㩥.哴ᾢಯꪇ舟묻겹决㗼쳃뇵깟璅恟졲卅膯ꕆ쪬()
na 윍鳮ڂ此Ӡ㦀ᣆ덴벳䋈鯜騮꒑㐣.Main(System.String[])
Error: (08/29/2024 02:03:23 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: explorer.exe, verze: 10.0.19041.4717, časové razítko: 0xd2644892
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x72b481f0
ID chybujícího procesu: 0x4084
Čas spuštění chybující aplikace: 0x01dafa0b7243750d
Cesta k chybující aplikaci: C:\Windows\SysWOW64\explorer.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: 62433146-36c4-4c1a-9e9a-4ab46a11c72e
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (08/10/2024 01:12:24 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: python.exe, verze: 3.10.11150.1013, časové razítko: 0x642cc427
Název chybujícího modulu: ucrtbase.dll, verze: 10.0.19041.3636, časové razítko: 0x81cf5d89
Kód výjimky: 0xc0000409
Posun chyby: 0x000000000007286e
ID chybujícího procesu: 0x6f2c
Čas spuštění chybující aplikace: 0x01daeb15f3f49e13
Cesta k chybující aplikaci: C:\Users\Zbyse\AppData\Roaming\krita\ai_diffusion\server\python\python.exe
Cesta k chybujícímu modulu: C:\Windows\System32\ucrtbase.dll
ID zprávy: ccd95f6d-55d9-4579-b240-a681d3e54dea
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (08/05/2024 05:56:43 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program explorer.exe verze 10.0.19041.4717 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.
ID procesu: 2c74
Čas spuštění: 01dae729b22bb6f4
Čas ukončení: 336
Cesta k aplikaci: C:\Windows\explorer.exe
ID hlášení: cf32ec40-0e32-41f1-b2c9-685f4f288427
Úplný název balíčku s chybou:
ID aplikace relativní podle balíčku s chybou:
Typ zablokování: Unknown
Error: (07/31/2024 02:27:01 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program WinSCP.exe verze 6.3.4.14955 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.
ID procesu: 1a4c
Čas spuštění: 01dae342e965d9d1
Čas ukončení: 4294967295
Cesta k aplikaci: C:\Program Files (x86)\WinSCP\WinSCP.exe
ID hlášení: 00ba7fa6-5bee-4ca1-8d0c-c3de1c4436ef
Úplný název balíčku s chybou:
ID aplikace relativní podle balíčku s chybou:
Typ zablokování: Top level window is idle
Error: (07/29/2024 02:10:59 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: explorer.exe, verze: 10.0.19041.4717, časové razítko: 0xd2644892
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x730981f0
ID chybujícího procesu: 0x3710
Čas spuštění chybující aplikace: 0x01dae1b05f8c6624
Cesta k chybující aplikaci: C:\Windows\SysWOW64\explorer.exe
Cesta k chybujícímu modulu: unknown
ID zprávy: 1a83f464-92ee-489b-9b2c-23bee40f730b
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (07/20/2024 04:12:03 PM) (Source: Microsoft-Windows-Defrag) (EventID: 264) (User: )
Description: Optimalizátor úložiště nemohl dokončit opakovat operaci trim na FILMY (F:), protože: Požadovaná operace není podporována hardwarem, který zálohuje svazek. (0x8900002A)
System errors:
=============
Error: (08/29/2024 04:58:09 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Aktualizace Google (gupdate) neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.
Error: (08/29/2024 04:58:09 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Služba Aktualizace Google (gupdate) bylo dosaženo časového limitu (30000 ms).
Error: (08/29/2024 04:56:08 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT AUTHORITY)
Description: The Secure Boot update failed to update a Secure Boot variable with error -2147020471. For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931
Error: (08/29/2024 04:56:06 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba GameInput Service byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 1000 milisekund: Restartovat službu.
Error: (08/29/2024 04:56:06 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba GameInput Service byla ukončena s následující chybou:
Složený soubor GameInput Service byl vytvořen s novější verzi úložného prostoru.
Error: (08/29/2024 04:55:55 PM) (Source: Application Popup) (EventID: 56) (User: )
Description: ACPI15
Error: (08/29/2024 04:55:24 PM) (Source: Service Control Manager) (EventID: 7043) (User: )
Description: Služba Optimalizace doručení se po přijetí pokynu pro vypnutí neukončila správně.
Error: (08/29/2024 02:06:00 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT AUTHORITY)
Description: The Secure Boot update failed to update a Secure Boot variable with error -2147020471. For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931
Windows Defender:
================
Date: 2024-08-20 20:22:31
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: PUA:Win32/Vigua.A
Závažnost: Vážné
Kategorie: Potenciálně nežádoucí software
Cesta: file:_E:\Download\qbittorrent_4.6.6_x64_setup.exe; webfile:_E:\Download\qbittorrent_4.6.6_x64_setup.exe|https://download.fosshub.com/Protected/ ... 7492211040
Původ detekce: Internet
Typ detekce: FastPath
Zdroj detekce: Soubory ke stažení a přílohy
Uživatel: DESKTOP-ZS\Zbyse
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.417.217.0, AS: 1.417.217.0, NIS: 1.417.217.0
Verze modulu: AM: 1.1.24070.3, NIS: 1.1.24070.3
Date: 2024-08-20 08:58:56
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: PUA:Win32/Vigua.A
Závažnost: Vážné
Kategorie: Potenciálně nežádoucí software
Cesta: file:_E:\Download\qbittorrent_4.6.6_x64_setup.exe; webfile:_E:\Download\qbittorrent_4.6.6_x64_setup.exe|https://download.fosshub.com/Protected/ ... 7343074453
Původ detekce: Internet
Typ detekce: FastPath
Zdroj detekce: Soubory ke stažení a přílohy
Uživatel: DESKTOP-ZS\Zbyse
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.417.210.0, AS: 1.417.210.0, NIS: 1.417.210.0
Verze modulu: AM: 1.1.24070.3, NIS: 1.1.24070.3
Date: 2024-08-20 08:57:34
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: PUA:Win32/Vigua.A
Závažnost: Vážné
Kategorie: Potenciálně nežádoucí software
Cesta: file:_E:\Download\qbittorrent_4.6.6_x64_setup.exe; webfile:_E:\Download\qbittorrent_4.6.6_x64_setup.exe|https://download.fosshub.com/Protected/ ... 6513112882
Původ detekce: Internet
Typ detekce: FastPath
Zdroj detekce: Soubory ke stažení a přílohy
Uživatel: DESKTOP-ZS\Zbyse
Název procesu: Unknown
Verze bezpečnostních informací: AV: 1.417.210.0, AS: 1.417.210.0, NIS: 1.417.210.0
Verze modulu: AM: 1.1.24070.3, NIS: 1.1.24070.3
Date: 2024-06-28 21:28:37
Description:
Antivirová ochrana v programu Microsoft Defender zjistil malware nebo jiný potenciálně nežádoucí software.
Další informace:
https://go.microsoft.com/fwlink/?linkid ... terprise=1
Název: Trojan:Win32/Dynamer!ac
Závažnost: Vážné
Kategorie: Trojský kůň
Cesta: file:_D:\GAMES\Alien - Isolation\STEAM_API.DLL
Původ detekce: Místní počítač
Typ detekce: Konkrétní
Zdroj detekce: Ochrana v reálném čase
Uživatel: DESKTOP-ZS\Zbyse
Název procesu: C:\Program Files\Altap Salamander\salamand.exe
Verze bezpečnostních informací: AV: 1.413.567.0, AS: 1.413.567.0, NIS: 1.413.567.0
Verze modulu: AM: 1.1.24050.5, NIS: 1.1.24050.5
Date: 2024-05-04 02:11:37
Description:
Prohledávání Antivirová ochrana v programu Microsoft Defender bylo zastaveno před dokončením.
ID prohledávání: {9C5934D1-6724-4F71-8851-D50614B8D0EB}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM
Event[0]:
Date: 2024-05-23 19:53:29
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 1.411.318.0
Předchozí verze bezpečnostních informací: 1.411.316.0
Zdroj aktualizace: Uživatel
Typ bezpečnostních informací: Antispywarový program
Typ aktualizace: Delta
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.24040.1
Předchozí verze modulu: 1.1.24040.1
Kód chyby: 0x80509004
Popis chyby: Došlo k neočekávaným potížím. Nainstalujte všechny dostupné aktualizace a potom opakujte spuštění programu. Informace o instalaci aktualizací naleznete v nápovědě a podpoře.
Date: 2024-05-23 19:53:29
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací: 1.411.318.0
Předchozí verze bezpečnostních informací: 1.411.316.0
Zdroj aktualizace: Uživatel
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Delta
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu: 1.1.24040.1
Předchozí verze modulu: 1.1.24040.1
Kód chyby: 0x80509004
Popis chyby: Došlo k neočekávaným potížím. Nainstalujte všechny dostupné aktualizace a potom opakujte spuštění programu. Informace o instalaci aktualizací naleznete v nápovědě a podpoře.
Date: 2024-05-23 19:53:26
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.411.316.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.24040.1
Kód chyby: 0x80240022
Popis chyby: V daném programu nelze zkontrolovat aktualizace definic.
CodeIntegrity:
===============
Date: 2024-08-29 17:26:12
Description:
Code Integrity determined that a process (\Device\HarddiskVolume8\ProgramData\Microsoft\Windows Defender\Platform\4.18.24070.5-0\MpDefenderCoreService.exe) attempted to load \Device\HarddiskVolume8\Program Files\Bonjour\mdnsNSP.dll that did not meet the Custom 3 / Antimalware signing level requirements.
Date: 2024-08-29 17:06:19
Description:
Code Integrity determined that a process (\Device\HarddiskVolume8\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume8\Program Files\Bonjour\mdnsNSP.dll that did not meet the Windows signing level requirements.
==================== Memory info ===========================
BIOS: American Megatrends Inc. 1002 02/15/2019
Motherboard: ASUSTeK COMPUTER INC. PRIME X399-A
Processor: AMD Ryzen Threadripper 1920X 12-Core Processor
Percentage of memory in use: 17%
Total physical RAM: 32642.79 MB
Available physical RAM: 27020.04 MB
Total Virtual: 37506.79 MB
Available Virtual: 30170.55 MB
==================== Drives ================================
Drive c: (System Disc) (Fixed) (Total:238.37 GB) (Free:66.82 GB) (Model: SanDisk SD8SN8U-256G-1006) NTFS
Drive d: (Dokumenty) (Fixed) (Total:3726.01 GB) (Free:1879.98 GB) (Model: WDC WD40EFPX-68C6CN0) NTFS
Drive e: (Download) (Fixed) (Total:3726.01 GB) (Free:155.35 GB) (Model: ST4000NE001-2MA101) NTFS
Drive f: (FILMY) (Fixed) (Total:7452.02 GB) (Free:770.62 GB) (Model: ST8000DM004-2CX188) NTFS
\\?\Volume{371553a5-3062-4984-b44c-57096001beaf}\ (WINTOHDD) (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Protective MBR) (Size: 238.5 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 1 (Protective MBR) (Size: 3726 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 2 (Protective MBR) (Size: 3726 GB) (Disk ID: 00000000)
Partition: GPT.
==========================================================
Disk: 3 (Protective MBR) (Size: 7452 GB) (Disk ID: 00000000)
Partition: GPT.
==================== End of Addition.txt =======================

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Prosím o kontrolu logu - pomalý běh Chrome
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
- Rudy
- Site Admin
- Příspěvky: 119356
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu - pomalý běh Chrome
Zdravím!
Spusťte tuto utilitu:
Spusťte tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/
ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu - pomalý běh Chrome
Zdravím,
tady to je:
# -------------------------------
# Malwarebytes AdwCleaner 8.4.2.0
# -------------------------------
# Build: 03-04-2024
# Database: 2024-03-04.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 08-29-2024
# Duration: 00:00:09
# OS: Windows 10 (Build 19045.4780)
# Scanned: 32093
# Detected: 8
***** [ Services ] *****
No malicious services found.
***** [ Folders ] *****
No malicious folders found.
***** [ Files ] *****
No malicious files found.
***** [ DLL ] *****
No malicious DLLs found.
***** [ WMI ] *****
No malicious WMI found.
***** [ Shortcuts ] *****
No malicious shortcuts found.
***** [ Tasks ] *****
No malicious tasks found.
***** [ Registry ] *****
No malicious registry entries found.
***** [ Chromium (and derivatives) ] *****
No malicious Chromium entries found.
***** [ Chromium URLs ] *****
No malicious Chromium URLs found.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries found.
***** [ Firefox URLs ] *****
No malicious Firefox URLs found.
***** [ Hosts File Entries ] *****
No malicious hosts file entries found.
***** [ Preinstalled Software ] *****
Preinstalled.CyberLinkLabelPrint Folder C:\Program Files (x86)\CYBERLINK\LABELPRINT
Preinstalled.CyberLinkLabelPrint Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}
Preinstalled.CyberLinkLabelPrint Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{C59C179C-668D-49A9-B6EA-0121CCFC1243}
Preinstalled.SonyPlayMemoriesHome File C:\Users\Public\Desktop\PlayMemories Home.lnk
Preinstalled.SonyPlayMemoriesHome Folder C:\Program Files (x86)\SONY\PLAYMEMORIES HOME
Preinstalled.SonyPlayMemoriesHome Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32|PMBVolumeWatcher
Preinstalled.SonyPlayMemoriesHome Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Run|PMBVolumeWatcher
Preinstalled.SonyPlayMemoriesHome Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{AEB04E0E-0A28-4014-A96A-282E43B7227B}
AdwCleaner[S00].txt - [2439 octets] - [14/01/2024 16:02:51]
AdwCleaner[S01].txt - [2500 octets] - [14/01/2024 16:03:26]
AdwCleaner[S02].txt - [2561 octets] - [14/01/2024 16:05:42]
AdwCleaner[C02].txt - [1730 octets] - [14/01/2024 16:05:53]
AdwCleaner[S03].txt - [2665 octets] - [05/02/2024 15:43:11]
AdwCleaner[S04].txt - [2726 octets] - [09/02/2024 15:29:14]
AdwCleaner[S05].txt - [2787 octets] - [10/04/2024 15:58:46]
AdwCleaner[S06].txt - [2848 octets] - [14/04/2024 09:06:02]
AdwCleaner[S07].txt - [2909 octets] - [28/04/2024 10:29:17]
AdwCleaner[S08].txt - [2970 octets] - [29/08/2024 17:21:52]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S09].txt ##########
tady to je:
# -------------------------------
# Malwarebytes AdwCleaner 8.4.2.0
# -------------------------------
# Build: 03-04-2024
# Database: 2024-03-04.1 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Scan
# -------------------------------
# Start: 08-29-2024
# Duration: 00:00:09
# OS: Windows 10 (Build 19045.4780)
# Scanned: 32093
# Detected: 8
***** [ Services ] *****
No malicious services found.
***** [ Folders ] *****
No malicious folders found.
***** [ Files ] *****
No malicious files found.
***** [ DLL ] *****
No malicious DLLs found.
***** [ WMI ] *****
No malicious WMI found.
***** [ Shortcuts ] *****
No malicious shortcuts found.
***** [ Tasks ] *****
No malicious tasks found.
***** [ Registry ] *****
No malicious registry entries found.
***** [ Chromium (and derivatives) ] *****
No malicious Chromium entries found.
***** [ Chromium URLs ] *****
No malicious Chromium URLs found.
***** [ Firefox (and derivatives) ] *****
No malicious Firefox entries found.
***** [ Firefox URLs ] *****
No malicious Firefox URLs found.
***** [ Hosts File Entries ] *****
No malicious hosts file entries found.
***** [ Preinstalled Software ] *****
Preinstalled.CyberLinkLabelPrint Folder C:\Program Files (x86)\CYBERLINK\LABELPRINT
Preinstalled.CyberLinkLabelPrint Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\InstallShield_{C59C179C-668D-49A9-B6EA-0121CCFC1243}
Preinstalled.CyberLinkLabelPrint Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{C59C179C-668D-49A9-B6EA-0121CCFC1243}
Preinstalled.SonyPlayMemoriesHome File C:\Users\Public\Desktop\PlayMemories Home.lnk
Preinstalled.SonyPlayMemoriesHome Folder C:\Program Files (x86)\SONY\PLAYMEMORIES HOME
Preinstalled.SonyPlayMemoriesHome Registry HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\StartupApproved\Run32|PMBVolumeWatcher
Preinstalled.SonyPlayMemoriesHome Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Run|PMBVolumeWatcher
Preinstalled.SonyPlayMemoriesHome Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{AEB04E0E-0A28-4014-A96A-282E43B7227B}
AdwCleaner[S00].txt - [2439 octets] - [14/01/2024 16:02:51]
AdwCleaner[S01].txt - [2500 octets] - [14/01/2024 16:03:26]
AdwCleaner[S02].txt - [2561 octets] - [14/01/2024 16:05:42]
AdwCleaner[C02].txt - [1730 octets] - [14/01/2024 16:05:53]
AdwCleaner[S03].txt - [2665 octets] - [05/02/2024 15:43:11]
AdwCleaner[S04].txt - [2726 octets] - [09/02/2024 15:29:14]
AdwCleaner[S05].txt - [2787 octets] - [10/04/2024 15:58:46]
AdwCleaner[S06].txt - [2848 octets] - [14/04/2024 09:06:02]
AdwCleaner[S07].txt - [2909 octets] - [28/04/2024 10:29:17]
AdwCleaner[S08].txt - [2970 octets] - [29/08/2024 17:21:52]
########## EOF - C:\AdwCleaner\Logs\AdwCleaner[S09].txt ##########
- Rudy
- Site Admin
- Příspěvky: 119356
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu - pomalý běh Chrome
Preinstalled jsou OK (utility výrobce NB). Otevřte poznámkový blok a zkopírujte do něj:
Uložte do stejného adresáře, v němž máte FRST jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.Start
CloseProcesses:
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [752208 2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\RunOnce: [Usselryggene58] => C:\Users\Zbyse\AppData\Roaming\Joyride\Farveationsprograms.exe [622718038 2024-07-26] (KpoJIuK) [File not signed] <==== ATTENTION
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
Task: {CC1A8776-5E39-4DCE-8A6A-5848A7BE92B3} - System32\Tasks\EOSv3 Scheduler onLogOn => C:\Users\Zbyse\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe LOGON (No File)
Task: {F585AA48-A6E9-479D-9FE8-129F278B3D19} - System32\Tasks\EOSv3 Scheduler onTime => C:\Users\Zbyse\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe SCHED (No File)
Task: {0E24E3ED-86BF-4404-838B-A7C24EAF0AF2} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem130.0.6679.0{108EF9E8-5CAD-4B55-BF67-38DC034D6C37} => C:\Program Files (x86)\Google\GoogleUpdater\130.0.6679.0\updater.exe [4884584 2024-08-26] (Google LLC -> Google LLC)
C:\DumpStack.log.tmp
E:\Download\qbittorrent_4.6.6_x64_setup.exe
D:\GAMES\Alien - Isolation\STEAM_API.DLL
EmptyTemp:
Hosts:
End
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu - pomalý běh Chrome
Fix result of Farbar Recovery Scan Tool (x64) Version: 22-08.2024
Ran by Zbyse (29-08-2024 20:07:52) Run:2
Running from C:\Users\Zbyse\Desktop
Loaded Profiles: Zbyse
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [752208 2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\RunOnce: [Usselryggene58] => C:\Users\Zbyse\AppData\Roaming\Joyride\Farveationsprograms.exe [622718038 2024-07-26] (KpoJIuK) [File not signed] <==== ATTENTION
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
Task: {CC1A8776-5E39-4DCE-8A6A-5848A7BE92B3} - System32\Tasks\EOSv3 Scheduler onLogOn => C:\Users\Zbyse\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe LOGON (No File)
Task: {F585AA48-A6E9-479D-9FE8-129F278B3D19} - System32\Tasks\EOSv3 Scheduler onTime => C:\Users\Zbyse\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe SCHED (No File)
Task: {0E24E3ED-86BF-4404-838B-A7C24EAF0AF2} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem130.0.6679.0{108EF9E8-5CAD-4B55-BF67-38DC034D6C37} => C:\Program Files (x86)\Google\GoogleUpdater\130.0.6679.0\updater.exe [4884584 2024-08-26] (Google LLC -> Google LLC)
C:\DumpStack.log.tmp
E:\Download\qbittorrent_4.6.6_x64_setup.exe
D:\GAMES\Alien - Isolation\STEAM_API.DLL
EmptyTemp:
Hosts:
End
*****************
Processes closed successfully.
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched" => removed successfully
"HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Usselryggene58" => removed successfully
"C:\Windows\system32\GroupPolicy\Machine" Folder move:
C:\Windows\system32\GroupPolicy\Machine => moved successfully
C:\Windows\system32\GroupPolicy\GPT.ini => moved successfully
C:\ProgramData\NTUSER.pol => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{CC1A8776-5E39-4DCE-8A6A-5848A7BE92B3}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CC1A8776-5E39-4DCE-8A6A-5848A7BE92B3}" => removed successfully
C:\Windows\System32\Tasks\EOSv3 Scheduler onLogOn => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\EOSv3 Scheduler onLogOn" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F585AA48-A6E9-479D-9FE8-129F278B3D19}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F585AA48-A6E9-479D-9FE8-129F278B3D19}" => removed successfully
C:\Windows\System32\Tasks\EOSv3 Scheduler onTime => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\EOSv3 Scheduler onTime" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{0E24E3ED-86BF-4404-838B-A7C24EAF0AF2}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0E24E3ED-86BF-4404-838B-A7C24EAF0AF2}" => removed successfully
C:\Windows\System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem130.0.6679.0{108EF9E8-5CAD-4B55-BF67-38DC034D6C37} => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem130.0.6679.0{108EF9E8-5CAD-4B55-BF67-38DC034D6C37}" => removed successfully
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.
"E:\Download\qbittorrent_4.6.6_x64_setup.exe" => not found
D:\GAMES\Alien - Isolation\STEAM_API.DLL => moved successfully
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.
=========== EmptyTemp: ==========
FlushDNS => completed
BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 964274009 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 635809422 B
Windows/system/drivers => 38004109 B
Edge => 0 B
Chrome => 1876531752 B
Firefox => 0 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => 0 B
Zbyse => 3985616 B
RecycleBin => 0 B
EmptyTemp: => 3.3 GB temporary data Removed.
================================
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 29-08-2024 20:11:34)
C:\DumpStack.log.tmp => Could not move
==== End of Fixlog 20:11:34 ====
Ran by Zbyse (29-08-2024 20:07:52) Run:2
Running from C:\Users\Zbyse\Desktop
Loaded Profiles: Zbyse
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [752208 2024-06-05] (Oracle America, Inc. -> Oracle Corporation)
HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\...\RunOnce: [Usselryggene58] => C:\Users\Zbyse\AppData\Roaming\Joyride\Farveationsprograms.exe [622718038 2024-07-26] (KpoJIuK) [File not signed] <==== ATTENTION
GroupPolicy: Restriction ? <==== ATTENTION
Policies: C:\ProgramData\NTUSER.pol: Restriction <==== ATTENTION
Task: {CC1A8776-5E39-4DCE-8A6A-5848A7BE92B3} - System32\Tasks\EOSv3 Scheduler onLogOn => C:\Users\Zbyse\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe LOGON (No File)
Task: {F585AA48-A6E9-479D-9FE8-129F278B3D19} - System32\Tasks\EOSv3 Scheduler onTime => C:\Users\Zbyse\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe SCHED (No File)
Task: {0E24E3ED-86BF-4404-838B-A7C24EAF0AF2} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem130.0.6679.0{108EF9E8-5CAD-4B55-BF67-38DC034D6C37} => C:\Program Files (x86)\Google\GoogleUpdater\130.0.6679.0\updater.exe [4884584 2024-08-26] (Google LLC -> Google LLC)
C:\DumpStack.log.tmp
E:\Download\qbittorrent_4.6.6_x64_setup.exe
D:\GAMES\Alien - Isolation\STEAM_API.DLL
EmptyTemp:
Hosts:
End
*****************
Processes closed successfully.
"HKLM\Software\WOW6432Node\Microsoft\Windows\CurrentVersion\Run\\SunJavaUpdateSched" => removed successfully
"HKU\S-1-5-21-3686431232-4186227985-1175276304-1001\Software\Microsoft\Windows\CurrentVersion\RunOnce\\Usselryggene58" => removed successfully
"C:\Windows\system32\GroupPolicy\Machine" Folder move:
C:\Windows\system32\GroupPolicy\Machine => moved successfully
C:\Windows\system32\GroupPolicy\GPT.ini => moved successfully
C:\ProgramData\NTUSER.pol => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{CC1A8776-5E39-4DCE-8A6A-5848A7BE92B3}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CC1A8776-5E39-4DCE-8A6A-5848A7BE92B3}" => removed successfully
C:\Windows\System32\Tasks\EOSv3 Scheduler onLogOn => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\EOSv3 Scheduler onLogOn" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F585AA48-A6E9-479D-9FE8-129F278B3D19}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F585AA48-A6E9-479D-9FE8-129F278B3D19}" => removed successfully
C:\Windows\System32\Tasks\EOSv3 Scheduler onTime => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\EOSv3 Scheduler onTime" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{0E24E3ED-86BF-4404-838B-A7C24EAF0AF2}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{0E24E3ED-86BF-4404-838B-A7C24EAF0AF2}" => removed successfully
C:\Windows\System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem130.0.6679.0{108EF9E8-5CAD-4B55-BF67-38DC034D6C37} => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem130.0.6679.0{108EF9E8-5CAD-4B55-BF67-38DC034D6C37}" => removed successfully
Could not move "C:\DumpStack.log.tmp" => Scheduled to move on reboot.
"E:\Download\qbittorrent_4.6.6_x64_setup.exe" => not found
D:\GAMES\Alien - Isolation\STEAM_API.DLL => moved successfully
C:\Windows\System32\Drivers\etc\hosts => moved successfully
Hosts restored successfully.
=========== EmptyTemp: ==========
FlushDNS => completed
BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 964274009 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 635809422 B
Windows/system/drivers => 38004109 B
Edge => 0 B
Chrome => 1876531752 B
Firefox => 0 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => 0 B
Zbyse => 3985616 B
RecycleBin => 0 B
EmptyTemp: => 3.3 GB temporary data Removed.
================================
Result of scheduled files to move (Boot Mode: Normal) (Date&Time: 29-08-2024 20:11:34)
C:\DumpStack.log.tmp => Could not move
==== End of Fixlog 20:11:34 ====
- Rudy
- Site Admin
- Příspěvky: 119356
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu - pomalý běh Chrome
Bylo smazáno. Nastala změna k lepšímu?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Prosím o kontrolu logu - pomalý běh Chrome
Ano, je to v pořádku.
Moc Vám děkuji za pomoc!
Moc Vám děkuji za pomoc!
- Rudy
- Site Admin
- Příspěvky: 119356
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Prosím o kontrolu logu - pomalý běh Chrome
Rádo se stalo! 

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.