Dobrý den,
mám podezření na havěť v počítači, prosím pěkně o kontrolu. Poslední týdny se mi počítač neustále odpojuje od wifi, vypíná připojení, přitom wifi prokazatelně funguje na všem ostatním.
FRST:
Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 30-12-2024
Ran by micha (administrator) on MICHAL_SLUZEBNI (LENOVO 82NW) (01-01-2025 18:27:44)
Running from C:\Users\micha\OneDrive\Plocha\FRST64.exe
Loaded Profiles: micha
Platform: Microsoft Windows 11 Home Version 23H2 22631.4602 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal
==================== Processes (Whitelisted) =================
(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)
(Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe
(A-Volute SAS -> A-Volute) C:\Users\micha\AppData\Local\NhNotifSys\nahimic\nahimicNotifSys.exe
(C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE ->) (Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMUPDT.EXE
(C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\splwow64.exe
(C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\1.3.911.1\DropboxCrashHandler.exe
(C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe ->) (Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Engine\Binaries\Win64\EpicWebHelper.exe <2>
(C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe ->) (GOG sp. z o.o -> GOG.com) C:\Program Files (x86)\GOG Galaxy\GalaxyClient Helper.exe <2>
(C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe ->) (GOG sp. z o.o -> GOG.com) C:\Program Files (x86)\GOG Galaxy\GOG Galaxy Notifications Renderer.exe
(C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantage-(DeviceSettingsSystemAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantage-(GenericMessagingAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantage-(LenovoGamingSystemAddin).exe
(C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantageService.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantage-(VantageCoreAddin).exe
(C:\Program Files (x86)\Qustodio\qapp\QUpdateService.exe ->) (Qustodio Technologies SL -> ) C:\Program Files (x86)\Qustodio\qapp\crashpad_handler.exe <3>
(C:\Program Files (x86)\Steam\steam.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe <7>
(C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\upc.exe ->) (Ubisoft Entertainment Sweden AB -> Ubisoft) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\UplayWebCore.exe <5>
(C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\amdow.exe
(C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSSrcExt.exe
(C:\Program Files\AMD\CNext\CNext\RadeonSoftware.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\cncmd.exe
(C:\Program Files\ESET\ESET Security\ekrn.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\eguiProxy.exe
(Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe
(Canon Inc. -> CANON INC.) C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE
(cmd.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\AMDRSServ.exe
(drivers\lenovo\UDC\Service\UDClientService.exe ->) (Lenovo -> ) C:\ProgramData\Lenovo\Udc\Hosts\24.10.0.10\x64\AppProvisioningPlugin.exe
(DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_505ce8c12d5d3d71\LenovoUtilityService.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_505ce8c12d5d3d71\FnHotkeyCapsLKNumLK.exe
(DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_505ce8c12d5d3d71\LenovoUtilityService.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_505ce8c12d5d3d71\FnHotkeyUtility.exe
(DriverStore\FileRepository\u0409016.inf_amd64_2b8774c9217183cc\B408421\atiesrxx.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0409016.inf_amd64_2b8774c9217183cc\B408421\atieclxx.exe
(explorer.exe ->) (Epic Games Inc. -> Epic Games, Inc.) C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe
(explorer.exe ->) (GOG sp. z o.o -> GOG.com) C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe
(explorer.exe ->) (Notion Labs, Inc. -> Notion Labs, Inc) C:\Users\micha\AppData\Local\Programs\Notion\Notion.exe <10>
(explorer.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Steam\steam.exe
(GOG sp. z o.o -> GOG.com) C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\UUS\Packages\Preview\amd64\MoNotificationUx.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe <46>
(Qustodio Technologies SL -> Qustodio Technologies) C:\Program Files (x86)\Qustodio\qapp\QAppTray.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Advanced Micro Devices -> AMD) C:\Program Files\AMD\Performance Profile Client\AUEPDU.exe
(services.exe ->) (Advanced Micro Devices -> AMD) C:\Windows\System32\DriverStore\FileRepository\u0409016.inf_amd64_2b8774c9217183cc\B408421\atiesrxx.exe
(services.exe ->) (A-Volute SAS -> Nahimic) C:\Windows\System32\NahimicService.exe
(services.exe ->) (Canon Inc. -> ) C:\Program Files (x86)\Canon\IJPLM\ijplmsvc.exe
(services.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Windows\System32\DbxSvc.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\efwd.exe
(services.exe ->) (ESET, spol. s r.o. -> ESET) C:\Program Files\ESET\ESET Security\ekrn.exe
(services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe
(services.exe ->) (Lenovo -> Lenovo Group Ltd.) C:\Windows\System32\drivers\lenovo\UDC\Service\UDClientService.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantageService.exe
(services.exe ->) (Lenovo -> Lenovo) C:\Windows\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_505ce8c12d5d3d71\LenovoUtilityService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\Locator.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.) C:\Windows\System32\DriverStore\FileRepository\amdfendr.inf_amd64_05bfde18331c4d58\amdfendrsr.exe
(services.exe ->) (Qustodio Technologies SL -> Qustodio Technologies) C:\Program Files (x86)\Qustodio\qapp\QUpdateService.exe
(services.exe ->) (Qustodio Technologies SL -> Qustodio Technologies) C:\Program Files (x86)\Qustodio\qproxy\qengine.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor Corp.) C:\Windows\RtkBtManServ.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_699082c7b7897e92\RtkAudUService64.exe <2>
(services.exe ->) (Valve Corp. -> Valve Corporation) C:\Program Files (x86)\Common Files\Steam\steamservice.exe
(sihost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.1.200.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(sihost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\WindowsApps\MicrosoftWindows.CrossDevice_1.24112.22.0_x64__cw5n1h2txyewy\CrossDeviceService.exe
(svchost.exe ->) (Advanced Micro Devices -> Advanced Micro Devices, Inc.) C:\Program Files\AMD\CNext\CNext\CPUMetricsServer.exe
(svchost.exe ->) (Advanced Micro Devices -> AMD) C:\Program Files\AMD\Performance Profile Client\AUEPMaster.exe
(svchost.exe ->) (Dropbox, Inc -> Dropbox, Inc.) C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\SDXHelper.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Program Files\WindowsApps\MicrosoftWindows.Client.WebExperience_524.30502.30.0_x64__cw5n1h2txyewy\WidgetBoard.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\SystemApps\Microsoft.Windows.AppRep.ChxApp_cw5n1h2txyewy\CHXSmartScreen.exe
(Ubisoft Entertainment Sweden AB -> Ubisoft) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\upc.exe
==================== Registry (Whitelisted) ===================
(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)
HKLM\...\Run: [RtkAudUService] => C:\WINDOWS\System32\DriverStore\FileRepository\realtekservice.inf_amd64_699082c7b7897e92\RtkAudUService64.exe [1618808 2023-04-13] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [egui] => C:\Program Files\ESET\ESET Security\ecmds.exe [195248 2024-12-17] (ESET, spol. s r.o. -> ESET)
HKLM-x32\...\Run: [Dropbox] => C:\Program Files (x86)\Dropbox\Client\Dropbox.exe [9237896 2024-12-17] (Dropbox, Inc -> Dropbox, Inc.)
HKLM-x32\...\Run: [IJNetworkScannerSelectorEX2] => C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNMNSST2.exe [279240 2016-12-09] (Canon Inc. -> CANON INC.)
HKLM-x32\...\Run: [CanonQuickMenu] => C:\Program Files (x86)\Canon\Quick Menu\CNQMMAIN.EXE [1313408 2017-07-05] (Canon Inc. -> CANON INC.)
HKLM-x32\...\Run: [QAppTray] => C:\Program Files (x86)\Qustodio\qapp\QAppTray.exe [6504472 2024-11-27] (Qustodio Technologies SL -> Qustodio Technologies)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-2411075943-1296956955-4193710843-1001\...\Run: [MicrosoftEdgeAutoLaunch_ED02E366447D09E4F124EF89B233D989] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [3911240 2024-12-19] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2411075943-1296956955-4193710843-1001\...\Run: [Steam] => C:\Program Files (x86)\Steam\steam.exe [4412512 2024-12-02] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-2411075943-1296956955-4193710843-1001\...\Run: [EpicGamesLauncher] => C:\Program Files (x86)\Epic Games\Launcher\Portal\Binaries\Win64\EpicGamesLauncher.exe [36981208 2024-12-11] (Epic Games Inc. -> Epic Games, Inc.)
HKU\S-1-5-21-2411075943-1296956955-4193710843-1001\...\Run: [utweb] => "C:\Users\micha\AppData\Roaming\uTorrent Web\utweb.exe" /MINIMIZED (No File)
HKU\S-1-5-21-2411075943-1296956955-4193710843-1001\...\Run: [GalaxyClient] => [X]
HKU\S-1-5-21-2411075943-1296956955-4193710843-1001\...\Run: [GogGalaxy] => C:\Program Files (x86)\GOG Galaxy\GalaxyClient.exe [14359888 2024-11-12] (GOG sp. z o.o -> GOG.com)
HKU\S-1-5-21-2411075943-1296956955-4193710843-1001\...\Run: [AMDNoiseSuppression] => C:\WINDOWS\system32\AMD\ANR\AMDNoiseSuppression.exe [164840 2024-06-24] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
HKU\S-1-5-21-2411075943-1296956955-4193710843-1001\...\Run: [electron.app.Notion] => C:\Users\micha\AppData\Local\Programs\Notion\Notion.exe [188914112 2024-12-03] (Notion Labs, Inc. -> Notion Labs, Inc)
HKLM\...\Windows x64\Print Processors\Canon G3010 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDEI.DLL [506368 2023-06-15] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor G3010 series: C:\WINDOWS\system32\CNMLMEI.DLL [1325568 2023-06-15] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\131.0.6778.205\Installer\chrmstp.exe [2024-12-20] (Google LLC -> Google LLC)
==================== Scheduled Tasks (Whitelisted) =================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
Task: {7651B445-7066-4FE1-B0E4-98A6BCF5A4AB} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1574856 2024-09-25] (Adobe Inc. -> Adobe Inc.)
Task: {F18F861F-7390-4984-BE0E-11B8148D8F0D} - System32\Tasks\AMDInstallLauncher => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1035472 2024-10-11] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
Task: {7DD19DC4-88A1-4CDF-AF72-5EA83856C3BC} - System32\Tasks\AMDRyzenMasterSDKTask => C:\Program Files\AMD\CNext\CNext\cpumetricsserver.exe [191184 2024-10-11] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
Task: {014DCD40-C248-4A83-BEAB-F2C55710493E} - System32\Tasks\AMDScoSupportTypeUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1035472 2024-10-11] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
Task: {06C9E5D3-B38E-444C-94C7-94B9E6692FF7} - System32\Tasks\DropboxUpdateTaskMachineCore => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2024-01-12] (Dropbox, Inc -> Dropbox, Inc.)
Task: {565AF2F9-D64A-4BF7-99CC-C5E90E1B73D8} - System32\Tasks\DropboxUpdateTaskMachineUA => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2024-01-12] (Dropbox, Inc -> Dropbox, Inc.)
Task: {6F8D99AF-89FE-40EA-9185-8BBE250CC42D} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem132.0.6833.0{16FFCD46-2025-421A-9180-EF74B9B9F8CD} => C:\Program Files (x86)\Google\GoogleUpdater\132.0.6833.0\updater.exe [5591136 2024-11-11] (Google LLC -> Google LLC)
Task: {527EE838-C966-4051-9088-EABCB390B51A} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Monitor => C:\WINDOWS\system32\ImController.InfInstaller.exe [94496 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {DDFDBF51-CD8C-4E6A-8CF9-B8CDF1965D4B} - System32\Tasks\Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance => C:\WINDOWS\system32\sc.exe [98304 2022-05-07] (Microsoft Windows -> Microsoft Corporation) -> START ImControllerService
Task: {B38FCE23-C943-428A-932A-96B5BE994AC7} - System32\Tasks\Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask => C:\WINDOWS\System32\reg.exe [102400 2022-05-07] (Microsoft Windows -> Microsoft Corporation) -> add hklm\SOFTWARE\Lenovo\SystemUpdatePlugin\scheduler /v start /t reg_dword /d 1 /f /reg:32
Task: {B6E53AF7-6FDF-496C-9A97-39A2B745A148} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\47bbbdaf-4e49-40ce-bd86-0da5a6cc5b27 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {EC87387A-551F-412C-AC78-14692FBE1FD3} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\861ad18f-7677-4537-9728-d81de2f32aae => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {7E41234E-3246-42CD-9CAD-9C9084BBF2B9} - System32\Tasks\Lenovo\ImController\TimeBasedEvents\b99b616a-360d-4d2d-bda5-463c4a015f30 => C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
Task: {A734FB64-65DF-4481-AACE-8F49481BC8D6} - System32\Tasks\Lenovo\UDC\Lenovo UDC Diagnostic Scan => C:\WINDOWS\system32\sc.exe [98304 2022-05-07] (Microsoft Windows -> Microsoft Corporation) -> control udcservice 210
Task: {F5EC4F28-12BA-4542-B7A0-F848F4F00AA7} - System32\Tasks\Lenovo\UDC\Lenovo UDC Idle Monitor => C:\windows\system32\drivers\Lenovo\udc\Service\UDCUserAgent.exe [90952 2024-10-24] (Lenovo -> Lenovo Group Ltd.) -> C:\windows\system32\drivers\Lenovo\udc\Service\/onidle
Task: {D3C18743-7BDD-44E2-BC2D-AD9F34E58FBB} - System32\Tasks\Lenovo\UDC\Lenovo UDC Maintainance Task => C:\WINDOWS\system32\sc.exe [98304 2022-05-07] (Microsoft Windows -> Microsoft Corporation) -> control udcservice 220
Task: {06E8E228-2DB0-4CA1-8E7F-47311F54EC65} - System32\Tasks\Lenovo\UDC\Lenovo UDC Monitor => C:\WINDOWS\system32\drivers\lenovo\udc\data\InfBackup\UdcInfInstaller.exe [196960 2024-10-24] (Lenovo -> Lenovo Group Ltd.)
Task: {99A332C5-62A1-4942-A71E-61BB27B9BEF8} - System32\Tasks\Lenovo\Vantage\Lenovo.Vantage.ServiceMaintainance => C:\WINDOWS\system32\sc.exe [98304 2022-05-07] (Microsoft Windows -> Microsoft Corporation) -> start LenovoVantageService
Task: {B9B197E9-95EC-4689-A648-D2C31BA23A9B} - System32\Tasks\Lenovo\Vantage\Schedule\BatteryGaugeAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {A52BEE33-312F-4168-B808-175F1A0B6C3C} - System32\Tasks\Lenovo\Vantage\Schedule\DailyTelemetryTransmission => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {2E2FFDE3-93B9-4B1A-8B3D-C73FAB156CB6} - System32\Tasks\Lenovo\Vantage\Schedule\GenericMessagingAddin => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {5A082039-CD6F-4D9D-8006-B4602A1FB1C4} - System32\Tasks\Lenovo\Vantage\Schedule\HeartbeatAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {9174B3B8-4075-4B67-BE36-0A0FF4073BC5} - System32\Tasks\Lenovo\Vantage\Schedule\IdeaNotebookAddinDailyEvent => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {FAB43553-CBB1-4726-AE4F-0BE45A35467B} - System32\Tasks\Lenovo\Vantage\Schedule\Lenovo.Vantage.SmartPerformance.MonthlyReport => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {39B8796B-2BBA-4238-A456-145DB552185B} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoCompanionAppAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {06B7D428-8976-45A2-BC54-DCC2CC360B58} - System32\Tasks\Lenovo\Vantage\Schedule\LenovoSystemUpdateAddin_WeeklyTask => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {CE8FD0AA-7A9C-4940-83FC-901CEDAB0CD1} - System32\Tasks\Lenovo\Vantage\Schedule\SettingsWidgetAddinDailyScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {23AB9205-08B2-445E-BC17-FDD2EEC5315D} - System32\Tasks\Lenovo\Vantage\Schedule\SmartPerformance.ExpireReminder => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {05915821-1E4C-40E1-8FE8-802AA1A30080} - System32\Tasks\Lenovo\Vantage\Schedule\VantageCoreAddinIdleScheduleTask => C:\ProgramData\Lenovo\Vantage\Addins\VantageCoreAddin\1.0.0.186\x64\IdleScheduleEventAction.exe [143768 2024-12-13] (Lenovo -> )
Task: {C16471EF-4415-427D-A227-2B9E654846FA} - System32\Tasks\Lenovo\Vantage\Schedule\VantageCoreAddinWeekScheduleTask => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\ScheduleEventAction.exe [30056 2024-09-12] (Lenovo -> Lenovo)
Task: {49C70A63-4F71-4088-B87E-1F95A8DF2409} - System32\Tasks\Lenovo\Vantage\StartupFixPlan => C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\uninstall.exe [340968 2024-09-12] (Lenovo -> Lenovo)
Task: {1BE4F1AF-BC88-434F-B8BB-6DEDA659DF34} - System32\Tasks\McAfeeTsk\OOBEUpgrader => C:\Program Files\McAfee\MSC\OOBE_Upgrader.exe /Run (No File)
Task: {4DEAB923-5F5A-44C7-B354-C67DDBF581AC} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28660920 2024-12-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {9A17F8D7-CB40-47FF-A937-AC2E528881BD} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28660920 2024-12-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {61194004-EE18-44B8-9F01-5908E589238E} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311976 2024-12-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {1B6ADA96-3F1A-46DA-8725-F190E90D8C56} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311976 2024-12-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {CC623A35-3C78-4B62-B45E-065696874962} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [186992 2024-12-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {27CE9D59-9D48-4D29-99BC-64657AEBA494} - System32\Tasks\Microsoft\Windows\Security\Pwdless\IntelligentPwdlessTask => {8702A841-D5CA-47C3-812D-9CEDC304C200} C:\WINDOWS\system32\IntelligentPwdlessTask.dll [147456 2024-11-29] (Microsoft Windows -> Microsoft Corporation)
Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {C4C55DAD-E023-493C-869F-072EEA770C61} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1035472 2024-10-11] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
Task: {474C355F-03EC-48F7-AD86-1D2473C4D99B} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-2411075943-1296956955-4193710843-1001 E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\firefox.exe [602176 2024-12-11] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\E7CF176E110C211B\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\E7CF176E110C211B\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {0209B8F5-B050-44A6-9B20-FAB5AC585C2F} - System32\Tasks\Mozilla\Firefox Default Browser Agent E7CF176E110C211B => C:\Program Files (x86)\Mozilla Firefox\default-browser-agent.exe [31808 2024-12-11] (Mozilla Corporation -> Mozilla Foundation)
Task: {3AC773A6-C8A7-49FF-98C1-A030DBD2D273} - System32\Tasks\NahimicSvc32Run => C:\Windows\SysWOW64\NahimicSvc32.exe [844400 2022-03-29] (A-Volute SAS -> Nahimic)
Task: {3B7BD144-9FDE-46D7-AD32-C4A4386F2D94} - System32\Tasks\NahimicSvc64Run => C:\Windows\system32\NahimicSvc64.exe [1105520 2022-03-29] (A-Volute SAS -> Nahimic)
Task: {5A63970A-F04F-4E97-9D1B-2ABDBA4A3D04} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files (x86)\Microsoft OneDrive\OneDriveStandaloneUpdater.exe (No File)
Task: {8E21A4B8-8BE6-454A-8C93-13184C2DDCC0} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-2411075943-1296956955-4193710843-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4130736 2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
Task: {CD9BAD4F-AA7E-4199-ACF2-D3E3A0FB0799} - System32\Tasks\StartAUEP => C:\Program Files\AMD\Performance Profile Client\AUEPMaster.exe [823504 2024-10-11] (Advanced Micro Devices -> AMD)
Task: {7266D8ED-7D28-4B97-88A3-58F3AA4AFB39} - System32\Tasks\StartCN => C:\Program Files\AMD\CNext\CNext\cncmd.exe [61136 2024-10-11] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
Task: {7CFEBDD7-3C65-43C8-8502-5F0730DA78C0} - System32\Tasks\StartCNBM => C:\Program Files\AMD\CNext\CNext\cncmd.exe [61136 2024-10-11] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
Task: {0B1D6F57-6982-4042-863D-E5F060C22C06} - System32\Tasks\StartDVR => C:\Program Files\AMD\CNext\CNext\RSServCmd.exe [309968 2024-10-11] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineCore.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
Task: C:\WINDOWS\Tasks\DropboxUpdateTaskMachineUA.job => C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe
==================== Internet (Whitelisted) ====================
(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{16cce886-2be9-48b9-9e93-a457dbd3e150}: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{16cce886-2be9-48b9-9e93-a457dbd3e150}\3496479784F6573756020527F64657364796F6E6: [DhcpNameServer] 192.168.20.1 31.30.90.11 31.30.90.12
Tcpip\..\Interfaces\{16cce886-2be9-48b9-9e93-a457dbd3e150}\3496479784F6573756027457563747: [DhcpNameServer] 192.168.30.1 31.30.90.11 31.30.90.12
Tcpip\..\Interfaces\{16cce886-2be9-48b9-9e93-a457dbd3e150}\34DE27B656670284F6D656F6374727166716E236A7F55374: [DhcpNameServer] 192.168.1.254 8.8.8.8
Tcpip\..\Interfaces\{16cce886-2be9-48b9-9e93-a457dbd3e150}\4505D2C496E6B6F563835443: [DhcpNameServer] 192.168.1.1 0.0.0.0
Tcpip\..\Interfaces\{16cce886-2be9-48b9-9e93-a457dbd3e150}\94B454140275966496: [DhcpNameServer] 195.46.39.39 195.46.39.40
Tcpip\..\Interfaces\{16cce886-2be9-48b9-9e93-a457dbd3e150}\D496368616C67237027416C616879702352323: [DhcpNameServer] 192.168.34.198
Tcpip\..\Interfaces\{16cce886-2be9-48b9-9e93-a457dbd3e150}\F4542424: [DhcpNameServer] 172.19.5.1 192.168.32.1
Tcpip\..\Interfaces\{16cce886-2be9-48b9-9e93-a457dbd3e150}\F4542424: [DhcpDomain] lan
Tcpip\..\Interfaces\{bf10538b-75cf-4d55-b2ae-ba208c78ac8a}: [DhcpNameServer] 150.204.1.2
Edge:
=======
Edge Profile: C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default [2024-12-25]
Edge Extension: (Dokumenty Google offline) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-12-25]
Edge Extension: (Edge relevant text changes) - C:\Users\micha\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-30]
FireFox:
========
FF DefaultProfile: greh0oo8.default
FF ProfilePath: C:\Users\micha\AppData\Roaming\Mozilla\Firefox\Profiles\uryeqkf2.default-release-1 [2025-01-01]
FF Notifications: Mozilla\Firefox\Profiles\uryeqkf2.default-release-1 -> hxxps://aukro.cz
FF Extension: (LastPass) - C:\Users\micha\AppData\Roaming\Mozilla\Firefox\Profiles\uryeqkf2.default-release-1\Extensions\support@lastpass.com.xpi [2024-12-13]
FF ProfilePath: C:\Users\micha\AppData\Roaming\Mozilla\Firefox\Profiles\greh0oo8.default [2024-01-13]
FF ProfilePath: C:\Users\micha\AppData\Roaming\Mozilla\Firefox\Profiles\2nmq524w.default-release [2024-12-27]
FF Notifications: Mozilla\Firefox\Profiles\2nmq524w.default-release -> hxxps://meet.google.com
FF Extension: (LastPass: Free Password Manager) - C:\Users\micha\AppData\Roaming\Mozilla\Firefox\Profiles\2nmq524w.default-release\Extensions\support@lastpass.com.xpi [2024-03-12]
FF Extension: (Video DownloadHelper) - C:\Users\micha\AppData\Roaming\Mozilla\Firefox\Profiles\2nmq524w.default-release\Extensions\{b9db16a4-6edc-47ec-a1f4-b86292ed211d}.xpi [2024-03-21]
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-12-07] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2024-12-05] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-12-07] (Microsoft Corporation -> Microsoft Corporation)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\eset_security_config_overlay.js [2024-04-29]
FF ExtraCheck: C:\Program Files (x86)\mozilla firefox\defaults\pref\eset_security_config_overlay.js [2025-01-01]
Chrome:
=======
CHR Profile: C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default [2024-12-26]
CHR Extension: (Dokumenty Google offline) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2024-12-26]
CHR Extension: (LastPass: Free Password Manager) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\hdokiejnpimakedhajhdlcegeplioahd [2024-11-06]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\micha\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2024-04-03]
CHR HKU\S-1-5-21-2411075943-1296956955-4193710843-1001\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
Brave:
=======
BRA Profile: C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default [2024-09-11]
BRA Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2024-09-11]
BRA Extension: (Brave Ad Block Updater (Brave Ad Block First Party Filters (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\adcocjohghhfpidemphmcmlmhnfgikei [2024-09-11]
BRA Extension: (Brave Local Data Files Updater) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\afalakplffnnnlkncjhbmahjfjhmlkal [2024-09-11]
BRA Extension: (Brave NTP background images) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\aoojcmojmmcbpfgoecoadbdpnagfchel [2024-09-11]
BRA Extension: (Brave Ad Block Updater (Fanboy's Mobile Notifications (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\bfpgedeaaibpoidldhjcknekahbikncb [2024-09-11]
BRA Extension: (Brave Ad Block Updater (EasyList Cookie (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\cdbbhgbmjhfnhnmgeddbliobbofkgdhe [2024-09-11]
BRA Extension: (Brave NTP sponsored images) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\efkihffiamafhbhefjaljejgdpkelpal [2024-09-11]
BRA Extension: (Brave Ad Block Updater (Regional Catalog)) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\gkboaolpopklhgplhaaiboijnklogmbc [2024-09-11]
BRA Extension: (Brave NTP Super Referrer mapping table) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\heplpbhjcbmiibdlchlanmdenffpiibo [2024-09-11]
BRA Extension: (Brave Ads Resources) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\iejekkikpddbbockoldagmfcdbffomfc [2024-09-11]
BRA Extension: (Brave Ad Block Updater (Brave Ad Block Updater (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\iodkpdagapdfkphljnddpjlldadblomo [2024-09-11]
BRA Extension: (Brave Ad Block Updater (Resources)) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\mfddibmblmbccpadfndgakiopmmhebop [2024-09-11]
BRA Extension: (Brave Ad Block Updater (EasyList Czech and Slovak (plaintext))) - C:\Users\micha\AppData\Local\BraveSoftware\Brave-Browser\User Data\oegebjahecghlckbhkmojgnpcgdeajdi [2024-09-11]
==================== Services (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [172992 2024-09-25] (Adobe Inc. -> Adobe Inc.)
R2 AUEPLauncher; C:\Program Files\AMD\CIM\..\Performance Profile Client\AUEPDU.exe [542416 0] (Advanced Micro Devices -> AMD)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13512888 2024-12-07] (Microsoft Corporation -> Microsoft Corporation)
S2 dbupdate; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2024-01-12] (Dropbox, Inc -> Dropbox, Inc.)
S3 dbupdatem; C:\Program Files (x86)\Dropbox\Update\DropboxUpdate.exe [130320 2024-01-12] (Dropbox, Inc -> Dropbox, Inc.)
R2 DbxSvc; C:\WINDOWS\system32\DbxSvc.exe [46824 2024-12-17] (Dropbox, Inc -> Dropbox, Inc.)
S3 DropboxElevationService; C:\Program Files (x86)\Dropbox\Client\214.4.5217\DropboxElevationService.exe [1659280 2024-12-17] (Dropbox, Inc -> Dropbox, Inc.)
R2 efwd; C:\Program Files\ESET\ESET Security\efwd.exe [5592432 2024-12-17] (ESET, spol. s r.o. -> ESET)
S3 EHttpSrv; C:\Program Files\ESET\ESET Security\ehttpsrv.exe [57712 2024-12-17] (ESET, spol. s r.o. -> ESET)
R2 ekrn; C:\Program Files\ESET\ESET Security\ekrn.exe [3945464 2024-12-17] (ESET, spol. s r.o. -> ESET)
R3 ekrnEpfw; C:\Program Files\ESET\ESET Security\ekrn.exe [3945464 2024-12-17] (ESET, spol. s r.o. -> ESET)
S3 EpicOnlineServices; C:\Program Files (x86)\Epic Games\Epic Online Services\service\EpicOnlineServicesHost.exe [934352 2023-08-02] (Epic Games Inc. -> Epic Games, Inc.)
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncHelper.exe [3514384 2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
S3 GalaxyClientService; \\?\C:\Program Files (x86)\GOG Galaxy\GalaxyClientService.exe [2368848 2024-11-12] (GOG sp. z o.o -> GOG.com)
S3 GalaxyCommunication; C:\ProgramData\GOG.com\Galaxy\redists\GalaxyCommunication.exe [7627600 2024-11-12] (GOG sp. z o.o -> GOG.com)
R2 IJPLMSVC; C:\Program Files (x86)\Canon\IJPLM\IJPLMSVC.EXE [446328 2023-09-13] (Canon Inc. -> )
R2 ImControllerService; C:\WINDOWS\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [113224 2024-06-26] (Lenovo -> Lenovo Group Ltd.)
R2 LenovoFnAndFunctionKeys; C:\WINDOWS\System32\DriverStore\FileRepository\lenovofnandfunctionkeys.inf_amd64_505ce8c12d5d3d71\LenovoUtilityService.exe [180176 2024-10-15] (Lenovo -> Lenovo)
R2 LenovoVantageService; C:\Program Files (x86)\Lenovo\VantageService\4.2.24.0\LenovoVantageService.exe [34256 2024-09-12] (Lenovo -> Lenovo)
R2 NahimicService; C:\WINDOWS\system32\NahimicService.exe [1930888 2022-03-29] (A-Volute SAS -> Nahimic)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\23.246.1127.0002\OneDriveUpdaterService.exe [3851280 2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
R2 qengine; C:\Program Files (x86)\Qustodio\qproxy\qengine.exe [5137432 2024-11-27] (Qustodio Technologies SL -> Qustodio Technologies)
R2 qupdate; C:\Program Files (x86)\Qustodio\qapp\QUpdateService.exe [3639320 2024-11-27] (Qustodio Technologies SL -> Qustodio Technologies)
S3 Rockstar Service; C:\Program Files\Rockstar Games\Launcher\RockstarService.exe [4828136 2024-12-25] (Rockstar Games, Inc. -> Rockstar Games)
R2 UDCService; C:\WINDOWS\System32\drivers\Lenovo\udc\Service\UDClientService.exe [72520 2024-10-24] (Lenovo -> Lenovo Group Ltd.)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\NisSrv.exe [3174840 2024-01-12] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.23110.3-0\MsMpEng.exe [133592 2024-01-12] (Microsoft Windows Publisher -> Microsoft Corporation)
===================== Drivers (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
R3 amdfendrmgr; C:\WINDOWS\System32\DriverStore\FileRepository\amdfendr.inf_amd64_05bfde18331c4d58\amdfendrmgr.sys [36016 2024-07-30] (Microsoft Windows Hardware Compatibility Publisher -> Advanced Micro Devices, Inc.)
R2 AMDRyzenMasterDriverV27; C:\WINDOWS\system32\AMDRyzenMasterDriver.sys [61248 2024-10-11] (Advanced Micro Devices -> Advanced Micro Devices)
R3 AMDSAFD; C:\WINDOWS\System32\DriverStore\FileRepository\amdsafd.inf_amd64_d4de13a10f2586d0\amdsafd.sys [112952 2024-06-15] (AMD Test Build -> Advanced Micro Devices)
R3 amduw23g; C:\WINDOWS\System32\DriverStore\FileRepository\u0409016.inf_amd64_2b8774c9217183cc\B408421\amdkmdag.sys [110869920 2024-10-31] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
R3 amdwddmg; C:\WINDOWS\System32\DriverStore\FileRepository\u0407052.inf_amd64_84d15514ad17ffa0\B406619\amdkmdag.sys [106596128 2024-09-04] (Advanced Micro Devices -> Advanced Micro Devices, Inc.)
R3 AMDXE; C:\WINDOWS\System32\drivers\amdxe.sys [63008 2024-05-16] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [544768 2024-01-24] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [188416 2024-01-24] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [106496 2022-05-07] (Microsoft Corporation) [File not signed]
S3 dg_ssudbus; C:\WINDOWS\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
R1 eamonm; C:\WINDOWS\System32\DRIVERS\eamonm.sys [218832 2024-08-05] (ESET, spol. s r.o. -> ESET)
S0 eelam; C:\WINDOWS\System32\DRIVERS\eelam.sys [16336 2023-11-14] (Microsoft Windows Early Launch Anti-malware Publisher -> ESET)
R1 ehdrv; C:\WINDOWS\system32\DRIVERS\ehdrv.sys [265824 2024-08-05] (ESET, spol. s r.o. -> ESET)
R1 epfw; C:\WINDOWS\system32\DRIVERS\epfw.sys [84016 2024-08-05] (ESET, spol. s r.o. -> ESET)
R1 epfwwfp; C:\WINDOWS\system32\DRIVERS\epfwwfp.sys [126360 2024-08-05] (ESET, spol. s r.o. -> ESET)
R3 FBNetFilter; C:\WINDOWS\System32\drivers\FBNetFlt.sys [60784 2023-12-06] (Lenovo -> Lenovo)
R3 NahimicBTLink; C:\WINDOWS\System32\drivers\NahimicBTLink.sys [85144 2021-09-13] (A-Volute SAS -> Windows (R) Win 7 DDK provider)
R3 Nahimic_Mirroring; C:\WINDOWS\System32\drivers\Nahimic_Mirroring.sys [85144 2021-09-13] (A-Volute SAS -> Windows (R) Win 7 DDK provider)
R2 qwfp; C:\WINDOWS\system32\Drivers\qwfp64.sys [49352 2024-11-27] (Microsoft Windows Hardware Compatibility Publisher -> Qustodio Technologies)
S3 ssudmdm; C:\WINDOWS\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 ss_conn_usb_driver2; C:\WINDOWS\System32\Drivers\ss_conn_usb_driver2.sys [50720 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 WdBoot; C:\WINDOWS\system32\drivers\wd\WdBoot.sys [55856 2024-01-12] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\wd\WdFilter.sys [594304 2024-01-12] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [105856 2024-01-12] (Microsoft Windows -> Microsoft Corporation)
S1 WinSetupMon; system32\DRIVERS\WinSetupMon.sys [X]
==================== NetSvcs (Whitelisted) ===================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
==================== One month (created) (Whitelisted) =========
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-01-01 18:27 - 2025-01-01 18:28 - 000040517 _____ C:\Users\micha\OneDrive\Plocha\FRST.txt
2025-01-01 18:26 - 2025-01-01 18:28 - 000000000 ____D C:\FRST
2025-01-01 18:26 - 2025-01-01 18:26 - 002403840 _____ (Farbar) C:\Users\micha\OneDrive\Plocha\FRST64.exe
2024-12-30 16:28 - 2024-12-30 16:28 - 000002725 _____ C:\Users\micha\Downloads\finance_log.csv
2024-12-27 20:49 - 2024-12-27 20:49 - 000727012 _____ C:\WINDOWS\system32\perfh005.dat
2024-12-27 20:49 - 2024-12-27 20:49 - 000151244 _____ C:\WINDOWS\system32\perfc005.dat
2024-12-25 15:56 - 2024-12-25 15:56 - 000004913 _____ C:\Users\micha\Downloads\No Helmet Vision-28-1-9-1559069013(1).zip
2024-12-25 15:53 - 2024-12-25 15:53 - 001751948 _____ C:\Users\micha\Downloads\Bushes.Only_Collision.Remover-591-2-0.7z
2024-12-25 15:52 - 2024-12-25 15:52 - 000032042 _____ C:\Users\micha\Downloads\Unlimited Saving-1-3-0-1726482475.zip
2024-12-25 15:52 - 2024-12-25 15:52 - 000001007 _____ C:\Users\micha\Downloads\Easy Sharpening-336-1-9-5-1583165497.zip
2024-12-25 15:52 - 2024-12-25 15:52 - 000000094 _____ C:\Users\micha\Downloads\user.cfg-13-1-0.rar
2024-12-25 15:51 - 2024-12-25 15:51 - 000210370 _____ C:\Users\micha\Downloads\Instant Herb Picking-367-1-9-5-1583163690.zip
2024-12-25 15:51 - 2024-12-25 15:51 - 000004913 _____ C:\Users\micha\Downloads\No Helmet Vision-28-1-9-1559069013.zip
2024-12-25 12:05 - 2024-12-25 12:05 - 000000222 _____ C:\Users\micha\OneDrive\Plocha\Kingdom Come Deliverance.url
2024-12-25 10:07 - 2024-12-25 10:07 - 000000000 ____D C:\Program Files (x86)\Rockstar Games
2024-12-25 10:05 - 2024-12-25 10:07 - 000000000 ____D C:\Users\micha\OneDrive\Dokumenty\Rockstar Games
2024-12-25 10:05 - 2024-12-25 10:05 - 000000000 ____D C:\Users\micha\AppData\Local\Rockstar Games
2024-12-25 10:04 - 2024-12-25 10:09 - 000000000 ____D C:\Program Files\Rockstar Games
2024-12-25 10:04 - 2024-12-25 10:07 - 000000000 ____D C:\ProgramData\Rockstar Games
2024-12-25 10:04 - 2024-12-25 10:04 - 000001934 _____ C:\Users\micha\OneDrive\Plocha\Rockstar Games Launcher.lnk
2024-12-25 10:04 - 2024-12-25 10:04 - 000000000 ____D C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Rockstar Games
2024-12-25 10:01 - 2024-12-25 10:02 - 140093928 _____ (Rockstar Games Inc.) C:\Users\micha\Downloads\Rockstar-Games-Launcher.exe
2024-12-24 11:32 - 2024-12-24 11:33 - 061700594 _____ (FMRTE ) C:\Users\micha\Downloads\FMRTE 24-Setup.exe
2024-12-20 11:57 - 2024-12-20 11:57 - 000081498 _____ C:\Users\micha\Downloads\michalapetauer-invoices-2024-1y.pdf
2024-12-20 08:28 - 2024-12-20 08:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Dropbox
2024-12-19 12:31 - 2024-12-19 12:31 - 000055151 _____ C:\Users\micha\Downloads\fakturapisek_12-1.pdf
2024-12-19 12:20 - 2024-12-19 12:20 - 000055151 _____ C:\Users\micha\Downloads\fakturapisek_12.pdf
2024-12-18 19:51 - 2024-12-18 19:58 - 136021600 _____ C:\Users\micha\Downloads\Andromeda FM24 1.5.rar
2024-12-18 19:51 - 2024-12-18 19:57 - 083080614 _____ C:\Users\micha\Downloads\Mustermann Iconic 1.2.rar
2024-12-18 19:50 - 2024-12-18 20:00 - 143207769 _____ C:\Users\micha\Downloads\Chove Skin DF11 - 2K (Minor Fix 29-11-2024).zip
2024-12-18 19:49 - 2024-12-18 19:50 - 031718236 _____ C:\Users\micha\Downloads\WTCS.Gold.v1.3.1.zip
2024-12-18 19:42 - 2024-12-18 19:44 - 023762784 _____ C:\Users\micha\Downloads\Just 24(1).rar
2024-12-18 19:42 - 2024-12-18 19:42 - 023762784 _____ C:\Users\micha\Downloads\Just 24.rar
2024-12-18 13:17 - 2024-12-18 13:17 - 000000000 ____D C:\Users\micha\CrossDevice
2024-12-18 13:17 - 2024-12-18 13:17 - 000000000 ____D C:\ProgramData\CrossDevice
2024-12-17 12:55 - 2024-12-17 12:55 - 000046824 _____ (Dropbox, Inc.) C:\WINDOWS\system32\DbxSvc.exe
2024-12-16 09:25 - 2024-12-16 09:26 - 1240441874 _____ C:\Users\micha\Downloads\20241020_CityKids-Vanoce-final-full.mov
2024-12-13 13:50 - 2024-12-13 13:50 - 000173343 _____ C:\Users\micha\Downloads\faktura_70b1d360-aa81-11ef-b2b0-e3ecc02a7706.pdf
2024-12-13 13:50 - 2024-12-13 13:50 - 000047688 _____ C:\Users\micha\Downloads\Shrnutí objednávky-efbae5d6-4cce-32f6-871f-b3819ced4281-1.pdf
2024-12-13 13:50 - 2024-12-13 13:50 - 000047688 _____ C:\Users\micha\Downloads\Shrnutí objednávky-efbae5d6-4cce-32f6-871f-b3819ced4281.pdf
2024-12-13 11:43 - 2024-12-13 11:43 - 010154163 _____ C:\Users\micha\Downloads\drive-download-20241213T104329Z-001.zip
2024-12-12 18:37 - 2024-12-12 18:37 - 000100904 _____ C:\Users\micha\Downloads\AC-Statistika-CITYHOUSE-2024.xlsx
2024-12-12 18:37 - 2024-12-12 18:37 - 000100904 _____ C:\Users\micha\Downloads\AC-Statistika-CITYHOUSE-2024(1).xlsx
2024-12-11 21:15 - 2024-12-13 14:02 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2024-12-11 19:13 - 2024-12-11 19:13 - 012600755 _____ C:\Users\micha\Downloads\genie24_setup_24.4.1_b1413.zip
2024-12-11 17:45 - 2024-12-11 17:45 - 000000100 _____ C:\Users\micha\Downloads\Epic Games Account Two-Factor backup codes.txt
2024-12-10 16:50 - 2024-12-10 16:50 - 000000000 ____D C:\Users\micha\Downloads\K-4 - Nebe a peklo - Le Ciel et l´enfer
2024-12-09 14:10 - 2024-12-09 14:10 - 000055291 _____ C:\Users\micha\Downloads\24.12.06 Infomail vedoucím.pdf
2024-12-07 21:14 - 2024-12-07 21:14 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2024-12-07 21:03 - 2024-12-07 21:03 - 000053869 _____ C:\Users\micha\Downloads\michalapetauer-2024-07-1.pdf
2024-12-07 21:00 - 2024-12-07 21:00 - 000053869 _____ C:\Users\micha\Downloads\michalapetauer-2024-07.pdf
2024-12-03 17:48 - 2025-01-01 18:25 - 000000000 ____D C:\Users\micha\AppData\Roaming\Notion
2024-12-03 17:48 - 2024-12-06 11:32 - 000000000 ____D C:\Users\micha\AppData\Local\notion-updater
2024-12-03 17:48 - 2024-12-04 09:06 - 000002397 _____ C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Notion.lnk
2024-12-03 17:48 - 2024-12-03 17:48 - 000002252 _____ C:\Users\micha\OneDrive\Plocha\Notion.lnk
2024-12-03 17:46 - 2024-12-03 17:47 - 083013384 _____ (Notion Labs, Inc) C:\Users\micha\Downloads\Notion Setup 4.1.0.exe
2024-12-02 19:02 - 2024-12-02 19:02 - 000054622 _____ C:\Users\micha\Downloads\michalapetauer-2024-06.pdf
==================== One month (modified) ==================
(If an entry is included in the fixlist, the file/folder will be moved.)
2025-01-01 18:28 - 2024-01-16 08:43 - 000013104 _____ C:\WINDOWS\SysWOW64\qengineOff.ini
2025-01-01 18:28 - 2024-01-16 08:43 - 000013104 _____ C:\WINDOWS\system32\qengineOff.ini
2025-01-01 18:26 - 2024-01-16 08:41 - 000000000 ____D C:\ProgramData\Qustodio
2025-01-01 18:25 - 2024-01-12 17:19 - 000000000 ____D C:\Program Files (x86)\Steam
2025-01-01 18:25 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-01-01 17:00 - 2022-05-07 06:24 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-01-01 16:56 - 2024-01-13 04:24 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2025-01-01 15:36 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-01-01 15:25 - 2024-04-17 13:33 - 000000000 ____D C:\Users\micha\AppData\Local\CrashDumps
2025-01-01 15:25 - 2024-01-23 08:56 - 000000000 ____D C:\Users\micha\AppData\Local\Ubisoft Game Launcher
2025-01-01 15:24 - 2024-11-29 21:26 - 000003118 _____ C:\WINDOWS\system32\Tasks\AMDInstallLauncher
2025-01-01 15:24 - 2024-01-24 09:15 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-01-01 15:24 - 2024-01-16 08:43 - 000000000 ____D C:\ProgramData\boost_interprocess
2025-01-01 15:24 - 2024-01-13 04:20 - 000000000 ____D C:\Users\micha\AppData\Local\Packages
2025-01-01 15:24 - 2024-01-13 04:20 - 000000000 ____D C:\ProgramData\Packages
2025-01-01 15:24 - 2022-05-07 06:24 - 000000000 ___HD C:\Program Files\WindowsApps
2025-01-01 12:17 - 2024-01-12 18:14 - 000000000 ____D C:\ProgramData\CanonIJPLM
2024-12-30 17:03 - 2024-01-12 17:31 - 000000000 ____D C:\Users\micha\AppData\Roaming\Microsoft\Excel
2024-12-28 14:38 - 2024-05-20 20:28 - 000015829 _____ C:\Users\micha\OneDrive\Plocha\Sešit1.xlsx
2024-12-27 20:49 - 2024-01-24 09:28 - 001718028 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2024-12-27 20:49 - 2022-05-07 06:22 - 000000000 ____D C:\WINDOWS\INF
2024-12-27 20:42 - 2024-01-24 09:18 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2024-12-27 20:42 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\ServiceState
2024-12-27 20:42 - 2022-05-07 06:17 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2024-12-27 20:42 - 2021-09-29 22:08 - 000012288 ___SH C:\DumpStack.log.tmp
2024-12-25 15:45 - 2024-09-06 14:09 - 000000000 ____D C:\Users\micha\AppData\Local\NVIDIA Corporation
2024-12-25 12:05 - 2024-02-15 23:03 - 000000000 ____D C:\Users\micha\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2024-12-25 11:33 - 2024-01-13 04:20 - 000000000 ____D C:\Users\micha\AppData\Local\D3DSCache
2024-12-25 10:10 - 2024-01-12 17:20 - 000000000 ____D C:\Users\micha\AppData\Local\Steam
2024-12-21 09:45 - 2024-11-29 21:14 - 000000000 ____D C:\Users\micha\AppData\Local\AMD_Common
2024-12-21 09:45 - 2021-09-29 22:09 - 000002449 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2024-12-21 09:39 - 2024-01-24 09:18 - 000003640 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2024-12-21 09:39 - 2024-01-24 09:18 - 000003516 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2024-12-20 08:34 - 2024-04-03 17:48 - 000002258 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2024-12-20 08:28 - 2024-01-12 14:12 - 000000000 ____D C:\Users\micha\AppData\Local\Dropbox
2024-12-20 08:28 - 2024-01-12 14:11 - 000000000 ____D C:\Users\micha\AppData\Roaming\Dropbox
2024-12-20 08:28 - 2024-01-12 14:09 - 000000000 ____D C:\Program Files (x86)\Dropbox
2024-12-19 15:49 - 2024-01-12 14:04 - 000000000 ____D C:\Program Files\Microsoft Office
2024-12-19 15:49 - 2022-05-07 06:24 - 000000000 ____D C:\Program Files\Common Files\microsoft shared
2024-12-18 13:17 - 2024-01-24 09:16 - 000000000 ____D C:\Users\micha
2024-12-17 09:27 - 2024-01-12 14:13 - 000000000 ___RD C:\Users\micha\Dropbox
2024-12-17 08:56 - 2024-01-12 14:11 - 000000000 ____D C:\Users\micha\AppData\Roaming\Microsoft\Word
2024-12-14 23:22 - 2024-01-12 16:38 - 000000000 ____D C:\Users\micha\AppData\Roaming\vlc
2024-12-13 15:52 - 2024-11-26 13:02 - 000000000 ____D C:\Users\micha\OneDrive\Dokumenty\The Witcher 3
2024-12-13 14:02 - 2024-04-29 18:44 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2024-12-12 16:32 - 2024-04-29 18:44 - 000001243 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2024-12-12 16:32 - 2024-04-29 18:44 - 000000000 ____D C:\WINDOWS\system32\Tasks\Mozilla
2024-12-11 19:14 - 2024-09-08 17:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\FM Genie Scout 24
2024-12-11 19:14 - 2024-09-08 17:19 - 000000000 ____D C:\Program Files (x86)\FM Genie Scout 24
2024-12-11 18:09 - 2024-01-24 09:18 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2024-12-11 18:09 - 2024-01-12 14:07 - 000002084 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk
2024-12-11 17:53 - 2024-09-06 13:53 - 000000000 ____D C:\Users\micha\AppData\Local\EpicGamesLauncher
2024-12-11 15:06 - 2024-01-24 09:15 - 000492520 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2024-12-11 15:06 - 2024-01-24 09:12 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2024-12-11 15:06 - 2022-05-07 06:24 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2024-12-11 15:06 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2024-12-11 15:06 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\SystemResources
2024-12-11 15:06 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\Sgrm
2024-12-11 15:06 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\system32\setup
2024-12-11 15:06 - 2022-05-07 06:24 - 000000000 ____D C:\WINDOWS\bcastdvr
2024-12-11 10:12 - 2022-05-07 06:17 - 000000000 ____D C:\WINDOWS\CbsTemp
2024-12-09 14:12 - 2024-01-16 08:41 - 000000000 ____D C:\Program Files (x86)\Qustodio
2024-12-02 23:24 - 2024-11-27 12:22 - 000000000 ____D C:\Users\micha\AppData\Roaming\Vortex
==================== SigCheck ============================
(There is no automatic fix for files that do not pass verification.)
==================== End of FRST.txt ========================
ADDITION:
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 30-12-2024
Ran by micha (01-01-2025 18:28:34)
Running from C:\Users\micha\OneDrive\Plocha
Microsoft Windows 11 Home Version 23H2 22631.4602 (X64) (2024-01-24 08:20:54)
Boot Mode: Normal
==========================================================
==================== Accounts: =============================
(If an entry is included in the fixlist, it will be removed.)
Administrator (S-1-5-21-2411075943-1296956955-4193710843-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-2411075943-1296956955-4193710843-503 - Limited - Disabled)
Guest (S-1-5-21-2411075943-1296956955-4193710843-501 - Limited - Disabled)
micha (S-1-5-21-2411075943-1296956955-4193710843-1001 - Administrator - Enabled) => C:\Users\micha
WDAGUtilityAccount (S-1-5-21-2411075943-1296956955-4193710843-504 - Limited - Disabled)
==================== Security Center ========================
(If an entry is included in the fixlist, it will be removed.)
AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET Security (Enabled - Up to date) {26E0861C-6FB9-CEF9-E4F0-531986211ACE}
==================== Installed Programs ======================
(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)
7-Zip 23.01 (x64) (HKLM\...\7-Zip) (Version: 23.01 - Igor Pavlov)
AC: Valhalla CZ v3.2 (HKLM-x32\...\AC: Valhalla CZ) (Version: 3.2 - Squiee)
Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1029-1033-7760-BC15014EA700}) (Version: 24.005.20320 - Adobe)
Adobe Refresh Manager (HKLM-x32\...\{AC76BA86-0804-1033-1959-018244601102}) (Version: 1.8.0 - Adobe Systems Incorporated) Hidden
AMD GPIO2 Driver (HKLM-x32\...\{E9DD399F-21A3-479E-A7DF-D6CF4B2ADBF3}) (Version: 2.2.0.133 - Advanced Micro Devices, Inc.) Hidden
AMD Chipset Software (HKLM-x32\...\AMD_Chipset_IODrivers) (Version: 6.10.17.152 - Advanced Micro Devices, Inc.)
AMD I2C Driver (HKLM-x32\...\{B31D92D9-2914-46B0-9738-F668A563DE73}) (Version: 1.2.0.126 - Advanced Micro Devices, Inc.) Hidden
AMD PSP Driver (HKLM-x32\...\{988F14B8-79A8-475D-BAC7-83F96AD3D821}) (Version: 5.30.0.0 - Advanced Micro Devices, Inc.) Hidden
AMD Ryzen Balanced Driver (HKLM-x32\...\{A171D320-C42C-4F3B-A2D8-C6A09F6788CC}) (Version: 8.0.0.13 - Advanced Micro Devices, Inc.) Hidden
AMD SBxxx SMBus Driver (HKLM-x32\...\{AAE0E27D-C88A-49BA-8715-77ADCD4286A3}) (Version: 5.12.0.44 - Advanced Micro Devices, Inc.) Hidden
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 24.10.1 - Advanced Micro Devices, Inc.)
AMD_Chipset_Drivers (HKLM-x32\...\{d1b7ab36-91d4-42d5-b3d3-e2827144f4d7}) (Version: 6.10.17.152 - Advanced Micro Devices, Inc.) Hidden
Branding64 (HKLM\...\{492AEFBE-1B81-4C20-A111-E6974BB98EC5}) (Version: 1.00.0009 - Advanced Micro Devices, Inc.) Hidden
Canon Easy-WebPrint EX (HKLM-x32\...\Easy-WebPrint EX) (Version: 1.7.0.0 - Canon Inc.)
Canon G3010 series Elektronická příručka (HKLM-x32\...\Canon G3010 series Elektronická příručka) (Version: 1.2.0 - Canon Inc.)
Canon G3010 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_G3010_series) (Version: 1.02 - Canon Inc.)
Canon IJ Network Scanner Selector EX2 (HKLM-x32\...\Canon_IJ_Network_Scanner_Selector_EX2) (Version: 2.0.5.3 - Canon Inc.)
Canon IJ Printer Assistant Tool (HKLM-x32\...\Canon IJ Printer Assistant Tool) (Version: 1.70.4.30 - Canon Inc.)
Canon IJ Scan Utility (HKLM-x32\...\Canon_IJ_Scan_Utility) (Version: 1.4.0.16 - Canon Inc.)
Canon Inkjet Printer/Scanner/Fax Extended Survey Program (HKLM-x32\...\CANONIJPLM100) (Version: 6.5.2 - Canon Inc.)
Canon Quick Menu (HKLM-x32\...\CanonQuickMenu) (Version: 2.8.5 - Canon Inc.)
Dropbox (HKLM-x32\...\Dropbox) (Version: 214.4.5217 - Dropbox, Inc.)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.911.1 - Dropbox, Inc.) Hidden
Epic Games Launcher (HKLM-x32\...\{B85FAA6E-A9AA-4655-9029-E1A4EDC05E1A}) (Version: 1.3.93.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Epic Online Services (HKLM-x32\...\{57A956AB-4BCC-45C6-9B40-957E4E125568}) (Version: 2.0.44.0 - Epic Games, Inc.)
ESET Endpoint Antivirus (HKLM\...\{1C8A90C0-8034-463D-999F-2165B8B755A7}) (Version: 11.1.2053.2 - ESET, spol. s r.o.)
FM Genie Scout 22 version 1.0 22.4.1 beta 13 (HKLM\...\FM Genie Scout 22_is1) (Version: 1.0 22.4.1 beta 13 - )
FM Genie Scout 24 version 1.0 24.4.1 beta 13 (HKLM\...\FM Genie Scout 24_is1) (Version: 1.0 24.4.1 beta 13 - )
FMRTE 22.4.1.23 (HKLM-x32\...\{34EDE299-09F3-48D9-95E9-92EFF3265F81}_is1) (Version: 22.4.1.23 - FMRTE)
FMRTE 24.4.0.32 (HKLM-x32\...\{9A6821E6-DE96-4FC6-899A-F84CEDC1AFBD}_is1) (Version: 24.4.0.32 - FMRTE)
GOG GALAXY (HKLM-x32\...\{7258BA11-600C-430E-A759-27E2C691A335}_is1) (Version: 2.0.80.33 - GOG.com)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 131.0.6778.205 - Google LLC)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Lenovo Vantage Service (HKLM-x32\...\VantageSRV_is1) (Version: 4.2.24.0 - Lenovo Group Ltd.)
Microsoft .NET Host - 6.0.36 (x64) (HKLM\...\{D6932D97-36F1-40B8-9CDC-CA8365B21000}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.36 (x64) (HKLM\...\{A9E32B25-994B-4856-A12B-0EBED3050410}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.36 (x64) (HKLM\...\{C912E33F-956A-4921-9F55-CC11AE8F09AF}) (Version: 48.144.23141 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 131.0.2903.112 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 131.0.2903.112 - Microsoft Corporation) Hidden
Microsoft Office Professional Plus 2021 - cs-cz (HKLM\...\ProPlus2021Retail - cs-cz) (Version: 16.0.18227.20162 - Microsoft Corporation)
Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 23.246.1127.0002 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.40.33810 (HKLM-x32\...\{5af95fd8-a22e-458f-acee-c61bd787178e}) (Version: 14.40.33810.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.40.33810 (HKLM-x32\...\{47109d57-d746-4f8b-9618-ed6a17cc922b}) (Version: 14.40.33810.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.40.33810 (HKLM\...\{59CED48F-EBFE-480C-8A38-FC079C2BEC0F}) (Version: 14.40.33810 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.40.33810 (HKLM\...\{B8B3BB4A-A10D-4F51-91B7-A64FFAC31EA7}) (Version: 14.40.33810 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.40.33810 (HKLM-x32\...\{5EA6C998-D5AC-4ED9-89C3-9F25B17CCD3D}) (Version: 14.40.33810 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.40.33810 (HKLM-x32\...\{0C3457A0-3DCE-4A33-BEF0-9B528C557771}) (Version: 14.40.33810 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.36 (x64) (HKLM\...\{61D4736B-3325-4D4A-BD41-8BD206C6A86E}) (Version: 48.144.23186 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.36 (x64) (HKLM-x32\...\{0532b8f2-12d7-43de-95fc-7b87006758a8}) (Version: 6.0.36.34217 - Microsoft Corporation)
Mozilla Firefox (x86 cs) (HKLM-x32\...\Mozilla Firefox 133.0.3 (x86 cs)) (Version: 133.0.3 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 125.0.3 - Mozilla)
Notion 4.1.0 (HKU\S-1-5-21-2411075943-1296956955-4193710843-1001\...\661f0cc6-343a-59cb-a5e8-8f6324cc6998) (Version: 4.1.0 - Notion Labs, Inc)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.18227.20082 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.18227.20162 - Microsoft Corporation) Hidden
Qustodio (HKLM-x32\...\Qustodio) (Version: 196.3.5247.0 - Qustodio)
Red Dead Redemption 2 (HKLM-x32\...\Red Dead Redemption 2) (Version: - Rockstar Games)
REDlauncher (HKU\S-1-5-21-2411075943-1296956955-4193710843-1001\...\{7258BA11-600C-430E-A759-27E2C691A335}-REDlauncher_is1) (Version: - CD Projekt RED)
Registrace tiskárny (HKLM-x32\...\Canon EISRegistration) (Version: 1.9.1 - Canon Inc.)
Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.98.2208_S13_R3 - Rockstar Games)
Rockstar Games SDK (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.3.8.0 - Rockstar Games)
RyzenMasterSDK (HKLM\...\{0B162221-185B-4F0F-8E3A-E3CD500C7CB4}) (Version: 1.2.3.5 - Advanced Micro Devices, Inc.) Hidden
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
The Witcher 3: Wild Hunt - Game of the Year Edition (HKLM-x32\...\1495134320_is1) (Version: 4.04a_REDkit_Update_2 - GOG.com)
Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 157.1.11142 - Ubisoft)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.20 - VideoLAN)
Vortex (HKLM\...\57979c68-f490-55b8-8fed-8b017a5af2fe) (Version: 1.12.6 - Black Tree Gaming Ltd.)
Packages:
=========
Adobe Acrobat Reader -> C:\Program Files\Adobe\Acrobat DC [2024-12-11] ()
AMD Radeon Software -> C:\Program Files\AMD\CNext\CNext [2024-11-29] (Advanced Micro Devices Inc.)
Doc Scan PDF Scanner -> C:\Program Files\WindowsApps\53058betterapp.AnyScan_1.2.4.0_x64__90ct3cgs7yy6a [2024-12-29] (better app)
Dropbox -> C:\Program Files (x86)\Dropbox\Client\PackageAssets [2024-12-20] (Dropbox Inc.)
ESET Context Menu -> C:\Program Files\ESET\ESET Security [2024-12-17] (Sparse Package)
Lenovo Companion -> C:\Program Files\WindowsApps\E046963F.LenovoCompanion_10.2411.25.0_x64__k1h2ywk1493x8 [2024-12-07] (LENOVO INC.)
Lenovo Hotkeys -> C:\Program Files\WindowsApps\E0469640.LenovoUtility_4.6.12.0_x64__5grkq8ppsgwt4 [2024-08-26] (LENOVO INC) [Startup Task]
Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.2.40.0_x64__8wekyb3d8bbwe [2024-01-24] (Microsoft Corp.)
Microsoft Whiteboard -> C:\Program Files\WindowsApps\Microsoft.Whiteboard_54.20907.567.0_x64__8wekyb3d8bbwe [2024-12-07] (Microsoft Corporation)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.39.283.0_x64__dt26b99r8h8gj [2024-01-24] (Realtek Semiconductor Corp)
WinAppRuntime.Main.1.5 -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Main.1.5_5001.311.2039.0_x64__8wekyb3d8bbwe [2024-11-18] (Microsoft Corp.)
WinAppRuntime.Singleton -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Singleton_6000.318.2304.0_x64__8wekyb3d8bbwe [2024-11-19] (Microsoft Corp.)
==================== Custom CLSID (Whitelisted): ==============
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
CustomCLSID: HKU\S-1-5-21-2411075943-1296956955-4193710843-1001_Classes\CLSID\{38142727-3008-9161-1521-349515000000}\localserver32 -> C:\Program Files\Adobe\Acrobat DC\Acrobat\ADNotificationManager.exe (Adobe Inc. -> Adobe)
CustomCLSID: HKU\S-1-5-21-2411075943-1296956955-4193710843-1001_Classes\CLSID\{80172dde-4e20-4df0-81a2-0a48553e80bb}\localserver32 -> C:\Users\micha\AppData\Local\NhNotifSys\nahimic\nahimicNotifSys.exe (A-Volute SAS -> A-Volute)
CustomCLSID: HKU\S-1-5-21-2411075943-1296956955-4193710843-1001_Classes\CLSID\{E31EA727-12ED-4702-820C-4B6445F28E1A} -> [Dropbox] => C:\Users\micha\Dropbox [2024-01-12 14:13]
CustomCLSID: HKU\S-1-5-21-2411075943-1296956955-4193710843-1001_Classes\CLSID\{FCF546B7-0B1F-4D02-A90D-4ECC1CFE3F03} -> [Zařízení S22 uživatele Michal] => C:\Users\micha\CrossDevice\Zařízení S22 uživatele Michal [2024-12-18 13:17]
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-29] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-29] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-29] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-29] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-29] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-29] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-29] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-29] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-29] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-29] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ DropboxExt01] -> {FB314ED9-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-29] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt02] -> {FB314EDF-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-29] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt03] -> {FB314EE1-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-29] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt04] -> {FB314EDB-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-29] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt05] -> {FB314EDA-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-29] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt06] -> {FB314EDC-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-29] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt07] -> {FB314EDD-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-29] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt08] -> {FB314EE0-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-29] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt09] -> {FB314EE2-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-29] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ DropboxExt10] -> {FB314EDE-A251-47B7-93E1-CDD82E34AF8B} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-29] (Dropbox, Inc -> Dropbox, Inc.)
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2023-06-20] (Igor Pavlov) [File not signed]
ContextMenuHandlers1: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-29] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2024-12-17] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2024-12-17] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers4: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2023-06-20] (Igor Pavlov) [File not signed]
ContextMenuHandlers4: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-29] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\23.246.1127.0002\FileSyncShell64.dll [2024-01-16] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [DropboxExt] -> {ECD97DE5-3C8F-4ACB-AEEE-CCAB78F7711C} => C:\Program Files (x86)\Dropbox\Client\DropboxExt64.77.0.dll [2024-10-29] (Dropbox, Inc -> Dropbox, Inc.)
ContextMenuHandlers6: [7-Zip] -> {23170F69-40C1-278A-1000-000100020000} => C:\Program Files\7-Zip\7-zip.dll [2023-06-20] (Igor Pavlov) [File not signed]
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2024-12-17] (ESET, spol. s r.o. -> ESET)
==================== Codecs (Whitelisted) ====================
==================== Shortcuts & WMI ========================
==================== Loaded Modules (Whitelisted) =============
2024-01-12 18:16 - 2023-08-02 10:59 - 000594432 _____ (CANON INC.) [File not signed] [File is in use] C:\Program Files (x86)\Canon\Quick Menu\CNQMMWRP.dll
2024-01-12 18:15 - 2016-12-09 11:09 - 000008192 _____ (CANON INC.) [File not signed] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNS2_CSY.DLL
2024-01-12 18:15 - 2016-12-09 11:09 - 000104960 _____ (CANON INC.) [File not signed] C:\Program Files (x86)\Canon\IJ Network Scanner Selector EX2\CNS2_IMG.dll
2024-01-12 18:16 - 2017-07-05 13:43 - 000561152 _____ (CANON INC.) [File not signed] C:\Program Files (x86)\Canon\Quick Menu\CCL.dll
2024-11-07 22:16 - 2024-12-03 21:40 - 005378048 _____ (FFmpeg Project) [File not signed] C:\Program Files (x86)\Steam\libavcodec-61.dll
2024-11-07 22:16 - 2024-12-03 21:40 - 000875008 _____ (FFmpeg Project) [File not signed] C:\Program Files (x86)\Steam\libavfilter-10.dll
2024-11-07 22:16 - 2024-12-03 21:40 - 001674240 _____ (FFmpeg Project) [File not signed] C:\Program Files (x86)\Steam\libavformat-61.dll
2024-11-07 22:16 - 2024-12-03 21:40 - 001640960 _____ (FFmpeg Project) [File not signed] C:\Program Files (x86)\Steam\libavutil-59.dll
2024-11-07 22:16 - 2024-12-03 21:40 - 000630272 _____ (FFmpeg Project) [File not signed] C:\Program Files (x86)\Steam\libswresample-5.dll
2024-11-07 22:16 - 2024-12-03 21:40 - 001092608 _____ (FFmpeg Project) [File not signed] C:\Program Files (x86)\Steam\libswscale-8.dll
2024-01-12 14:02 - 2023-06-20 09:00 - 000101376 _____ (Igor Pavlov) [File not signed] C:\Program Files\7-Zip\7-zip.dll
2024-11-27 20:46 - 2024-11-27 20:46 - 005112440 _____ (The Qt Company Oy -> The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\Qustodio\qapp\Qt5Core.dll
==================== Alternate Data Streams (Whitelisted) ========
(If an entry is included in the fixlist, only the ADS will be removed.)
AlternateDataStreams: C:\Users\micha\OneDrive\Plocha\Sešit1.xlsx:com.dropbox.attrs [54]
==================== Safe Mode (Whitelisted) ==================
(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\qwfp => ""="Driver"
==================== Association (Whitelisted) =================
==================== Internet Explorer (Whitelisted) =============
BHO: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (Canon Inc. -> CANON INC.)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2024-12-07] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Canon Easy-WebPrint EX BHO -> {3785D0AD-BFFF-47F6-BF5B-A587C162FED9} -> C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexbho.dll [2016-02-23] (Canon Inc. -> CANON INC.)
Toolbar: HKLM - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (Canon Inc. -> CANON INC.)
Toolbar: HKLM-x32 - Canon Easy-WebPrint EX - {759D9886-0C6F-4498-BAB6-4A5F47C6C72F} - C:\Program Files (x86)\Canon\Easy-WebPrint EX\ewpexhlp.dll [2016-02-23] (Canon Inc. -> CANON INC.)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-12-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-12-07] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-12-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-12-07] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-12-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-12-07] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2024-12-07] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2024-12-07] (Microsoft Corporation -> Microsoft Corporation)
==================== Hosts content: =========================
(If needed Hosts: directive could be included in the fixlist to reset Hosts.)
2021-06-05 13:08 - 2021-06-05 13:08 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts
==================== Other Areas ===========================
(Currently there is no automatic fix for this section.)
HKU\S-1-5-21-2411075943-1296956955-4193710843-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\micha\AppData\Local\Packages\MicrosoftWindows.Client.CBS_cw5n1h2txyewy\LocalCache\Microsoft\IrisService\10166334457688922982\133802020129293821.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.
Network Binding:
=============
Ethernet: Realtek PCIe GbE Family Controller -> rt640x64.sys
Wi-Fi: Realtek RTL8852AE WiFi 6 802.11ax PCIe Adapter -> rtwlane6.sys
==================== MSCONFIG/TASK MANAGER disabled items ==
(If an entry is included in the fixlist, it will be removed.)
HKLM\...\StartupApproved\Run32: => "Dropbox"
HKU\S-1-5-21-2411075943-1296956955-4193710843-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_ED02E366447D09E4F124EF89B233D989"
HKU\S-1-5-21-2411075943-1296956955-4193710843-1001\...\StartupApproved\Run: => "Steam"
==================== FirewallRules (Whitelisted) ================
(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)
FirewallRules: [{E65F64BD-EAE8-453D-8767-B5084D70EA27}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{CFFCF544-74B9-4AA1-B416-09EFF1A05F43}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{7B9D09A2-1CEF-4865-ACE8-CCC21A09BB14}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{390CFADC-4DD8-49DC-BBA7-5E0495ECBBE5}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{7CB0C975-9985-4AA2-8A9D-F428D8C2D0D8}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe => No File
FirewallRules: [{865C1AFB-10C9-499C-94F7-697AABB42601}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_23335.205.2559.726_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{AA8CAB1D-A97F-4AB6-BBE1-1D1BC4AB55B3}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_23335.205.2559.726_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{C5EC7A80-8EA4-440C-B404-93707FBE1ED8}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Football Manager 2022\fm.exe (Sports Interactive) [File not signed]
FirewallRules: [{9469CFE1-40EF-4CB1-95FA-53B11E4FAEF5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Football Manager 2022\fm.exe (Sports Interactive) [File not signed]
FirewallRules: [{A153E741-8C1A-4FF3-AB84-0DAFA72C0EE9}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{054FF180-9E77-4639-8D62-B82A910C46D4}] => (Allow) C:\Program Files (x86)\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [TCP Query User{D4362260-DA42-4B7A-84A6-84CFFA91B31A}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [UDP Query User{FA87047B-D84E-47F2-9765-7488942E528B}C:\program files (x86)\mozilla firefox\firefox.exe] => (Allow) C:\program files (x86)\mozilla firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{FEBB8E91-6BFB-4828-AEE5-B86452E91129}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\FarCry4.exe => No File
FirewallRules: [{9B8C5054-710D-463B-A7CE-6FD3A47F137E}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\FarCry4.exe => No File
FirewallRules: [{EFDAB943-57D4-47E1-904B-EF09004D898D}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\IGE_WPF64.exe => No File
FirewallRules: [{BFD7FDE2-BD8F-4ECA-9D08-5910E4BE8227}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\IGE_WPF64.exe => No File
FirewallRules: [{88343D0D-7E1E-41E0-9D9D-C5BAD2B715B1}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mount & Blade II Bannerlord\bin\Win64_Shipping_Client\TaleWorlds.MountAndBlade.Launcher.exe (TaleWorlds Entertainment -> TaleWorlds Entertainment) [File not signed]
FirewallRules: [{26648031-2371-4318-8CAA-0564410DEFCE}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Mount & Blade II Bannerlord\bin\Win64_Shipping_Client\TaleWorlds.MountAndBlade.Launcher.exe (TaleWorlds Entertainment -> TaleWorlds Entertainment) [File not signed]
FirewallRules: [TCP Query User{55575A3F-FD50-47B3-B016-0A322AD8D74E}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{23A6FE85-8FFE-47CE-9660-7C5872023D22}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{B9D5CF16-D024-47CC-AC1A-BD4B4AC4E488}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Far Cry 6\bin\FarCry6.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [{1603F24F-FDC6-4564-B964-22B84C1F4851}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\Far Cry 6\bin\FarCry6.exe (UBISOFT ENTERTAINMENT INC. -> Ubisoft Entertainment)
FirewallRules: [{62D2B53E-4864-40A6-955A-6A6E18D60071}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{24C8822E-3AE3-4E88-98C6-0509E0E734D6}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.)
FirewallRules: [{8DD96B40-E521-4C9D-8824-E1C41D9E8408}] => (Allow) C:\Program Files (x86)\Dropbox\Client\Dropbox.exe (Dropbox, Inc -> Dropbox, Inc.)
FirewallRules: [{D22DF1CC-DF91-41E9-8A0F-A75CED945979}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{A1F77609-DBAB-4D11-B2A8-0F1310B5CAD8}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\131.0.2903.112\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{16D17693-17F2-425B-9692-696E9435F303}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\KingdomComeDeliverance\Bin\Win64\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [{C58FDEC2-6197-4DA0-A5E2-1CA5F528A4F7}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\KingdomComeDeliverance\Bin\Win64\KingdomCome.exe (Warhorse Studios sro) [File not signed]
FirewallRules: [{D61EB6E3-B3F7-4A9E-9198-713DE11CD6A9}] => (Allow) %programfiles%\Qustodio\qapp\qwelcomewzd.exe => No File
FirewallRules: [{3E70366A-86CC-4950-8A53-3A3AEE654C55}] => (Allow) %programfiles%\Qustodio\qapp\QUpdateService.exe => No File
FirewallRules: [{990CB1F0-C786-46D1-9B30-D9FDA7145DBF}] => (Allow) %programfiles%\Qustodio\qapp\QReport.exe => No File
FirewallRules: [{5E9B3EDB-D5A2-4B54-A6E0-2279C6623CDA}] => (Allow) %programfiles%\Qustodio\qproxy\qengine.exe => No File
FirewallRules: [{2AC084F3-56FD-46F1-9FCC-87C10595B3A8}] => (Allow) %programfiles%\Qustodio\qapp\QAppTray.exe => No File
==================== Restore Points =========================
20-12-2024 08:28:22 Windows Update
25-12-2024 15:44:46 Nainstalováno rozhraní DirectX
29-12-2024 21:33:56 Windows Update
29-12-2024 21:33:56 Windows Update
29-12-2024 21:33:56 Windows Update
==================== Faulty Device Manager Devices ============
==================== Event log errors: ========================
Application errors:
==================
Error: (01/01/2025 03:25:01 PM) (Source: Application Error) (EventID: 1000) (User: MICHAL_SLUZEBNI)
Description: Název chybující aplikace: GalaxyClient Helper.exe, verze: 2.0.80.33, časové razítko: 0x671f8d67
Název chybujícího modulu: ucrtbase.dll, verze: 10.0.22621.3593, časové razítko: 0x84b62951
Kód výjimky: 0xc0000409
Posun chyby: 0x0009e3bb
ID chybujícího procesu: 0x0x446c
Čas spuštění chybující aplikace: 0x0x1db5c58f151716c
Cesta k chybující aplikaci: C:\Program Files (x86)\GOG Galaxy\GalaxyClient Helper.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\ucrtbase.dll
ID zprávy: fc2203fb-b736-4d04-bd57-dd08ba2d1738
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (01/01/2025 11:44:18 AM) (Source: Application Error) (EventID: 1000) (User: MICHAL_SLUZEBNI)
Description: Název chybující aplikace: GalaxyClient Helper.exe, verze: 2.0.80.33, časové razítko: 0x671f8d67
Název chybujícího modulu: ucrtbase.dll, verze: 10.0.22621.3593, časové razítko: 0x84b62951
Kód výjimky: 0xc0000409
Posun chyby: 0x0009e3bb
ID chybujícího procesu: 0x0x5b48
Čas spuštění chybující aplikace: 0x0x1db5c3a1bb3d1f2
Cesta k chybující aplikaci: C:\Program Files (x86)\GOG Galaxy\GalaxyClient Helper.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\ucrtbase.dll
ID zprávy: a0e0abd6-6598-4d1a-8c70-63292b200920
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/31/2024 04:12:03 PM) (Source: Application Error) (EventID: 1000) (User: MICHAL_SLUZEBNI)
Description: Název chybující aplikace: GalaxyClient Helper.exe, verze: 2.0.80.33, časové razítko: 0x671f8d67
Název chybujícího modulu: ucrtbase.dll, verze: 10.0.22621.3593, časové razítko: 0x84b62951
Kód výjimky: 0xc0000409
Posun chyby: 0x0009e3bb
ID chybujícího procesu: 0x0x28f0
Čas spuštění chybující aplikace: 0x0x1db5b965925e24d
Cesta k chybující aplikaci: C:\Program Files (x86)\GOG Galaxy\GalaxyClient Helper.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\ucrtbase.dll
ID zprávy: 0219fd21-9306-4dbe-96e6-9eb2d52d52fa
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/31/2024 11:09:24 AM) (Source: Application Hang) (EventID: 1002) (User: NT AUTHORITY)
Description: Verze 1.0.0.1413 programu FMGenieScout.exe ukončila interakci se systémem Windows a byla ukončena. Pokud chcete zjistit, zda jsou k dispozici další informace o problému, zkontrolujte historii problémů v ovládacím panelu Zabezpečení a údržba.
Error: (12/31/2024 10:23:53 AM) (Source: Application Error) (EventID: 1000) (User: MICHAL_SLUZEBNI)
Description: Název chybující aplikace: GalaxyClient Helper.exe, verze: 2.0.80.33, časové razítko: 0x671f8d67
Název chybujícího modulu: ucrtbase.dll, verze: 10.0.22621.3593, časové razítko: 0x84b62951
Kód výjimky: 0xc0000409
Posun chyby: 0x0009e3bb
ID chybujícího procesu: 0x0x3340
Čas spuštění chybující aplikace: 0x0x1db5b65b58bf210
Cesta k chybující aplikaci: C:\Program Files (x86)\GOG Galaxy\GalaxyClient Helper.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\ucrtbase.dll
ID zprávy: 26c731e4-f99a-4566-b359-5a250c9cb7c4
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/30/2024 03:37:07 PM) (Source: Application Error) (EventID: 1000) (User: MICHAL_SLUZEBNI)
Description: Název chybující aplikace: GalaxyClient Helper.exe, verze: 2.0.80.33, časové razítko: 0x671f8d67
Název chybujícího modulu: ucrtbase.dll, verze: 10.0.22621.3593, časové razítko: 0x84b62951
Kód výjimky: 0xc0000409
Posun chyby: 0x0009e3bb
ID chybujícího procesu: 0x0x3fa0
Čas spuštění chybující aplikace: 0x0x1db5ac84d755c4c
Cesta k chybující aplikaci: C:\Program Files (x86)\GOG Galaxy\GalaxyClient Helper.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\ucrtbase.dll
ID zprávy: ee1370d5-6938-4b37-99cd-9b34299138a4
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/29/2024 09:01:13 PM) (Source: Application Error) (EventID: 1000) (User: MICHAL_SLUZEBNI)
Description: Název chybující aplikace: GalaxyClient Helper.exe, verze: 2.0.80.33, časové razítko: 0x671f8d67
Název chybujícího modulu: ucrtbase.dll, verze: 10.0.22621.3593, časové razítko: 0x84b62951
Kód výjimky: 0xc0000409
Posun chyby: 0x0009e3bb
ID chybujícího procesu: 0x0x91f4
Čas spuštění chybující aplikace: 0x0x1db5a2c695cb47e
Cesta k chybující aplikaci: C:\Program Files (x86)\GOG Galaxy\GalaxyClient Helper.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\ucrtbase.dll
ID zprávy: 5d1ae1c7-8839-41da-80ac-0a7ba90d1f63
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
Error: (12/29/2024 05:03:28 PM) (Source: Application Error) (EventID: 1000) (User: MICHAL_SLUZEBNI)
Description: Název chybující aplikace: GalaxyClient Helper.exe, verze: 2.0.80.33, časové razítko: 0x671f8d67
Název chybujícího modulu: ucrtbase.dll, verze: 10.0.22621.3593, časové razítko: 0x84b62951
Kód výjimky: 0xc0000409
Posun chyby: 0x0009e3bb
ID chybujícího procesu: 0x0x5f9c
Čas spuštění chybující aplikace: 0x0x1db5a0b32bb71cc
Cesta k chybující aplikaci: C:\Program Files (x86)\GOG Galaxy\GalaxyClient Helper.exe
Cesta k chybujícímu modulu: C:\WINDOWS\System32\ucrtbase.dll
ID zprávy: 0e69861f-bf6c-4092-ba2c-577eb02818a4
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:
System errors:
=============
Error: (01/01/2025 03:25:21 PM) (Source: DCOM) (EventID: 10010) (User: MICHAL_SLUZEBNI)
Description: Server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter se v daném časovém limitu neregistroval u služby DCOM.
Error: (01/01/2025 03:25:20 PM) (Source: DCOM) (EventID: 10010) (User: MICHAL_SLUZEBNI)
Description: Server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter se v daném časovém limitu neregistroval u služby DCOM.
Error: (01/01/2025 11:46:08 AM) (Source: DCOM) (EventID: 10010) (User: MICHAL_SLUZEBNI)
Description: Server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter se v daném časovém limitu neregistroval u služby DCOM.
Error: (01/01/2025 11:46:06 AM) (Source: DCOM) (EventID: 10010) (User: MICHAL_SLUZEBNI)
Description: Server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter se v daném časovém limitu neregistroval u služby DCOM.
Error: (12/31/2024 04:12:47 PM) (Source: DCOM) (EventID: 10010) (User: MICHAL_SLUZEBNI)
Description: Server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter se v daném časovém limitu neregistroval u služby DCOM.
Error: (12/31/2024 11:14:40 AM) (Source: DCOM) (EventID: 10010) (User: MICHAL_SLUZEBNI)
Description: Server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter se v daném časovém limitu neregistroval u služby DCOM.
Error: (12/31/2024 11:14:39 AM) (Source: DCOM) (EventID: 10010) (User: MICHAL_SLUZEBNI)
Description: Server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter se v daném časovém limitu neregistroval u služby DCOM.
Error: (12/31/2024 11:11:55 AM) (Source: DCOM) (EventID: 10010) (User: MICHAL_SLUZEBNI)
Description: Server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter se v daném časovém limitu neregistroval u služby DCOM.
CodeIntegrity:
===============
Date: 2025-01-01 17:34:25
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Windows signing level requirements.
==================== Memory info ===========================
BIOS: LENOVO G9CN29WW 06/02/2022
Motherboard: LENOVO LNVNB161216
Processor: AMD Ryzen 5 5600H with Radeon Graphics
Percentage of memory in use: 63%
Total physical RAM: 14188.06 MB
Available physical RAM: 5114.2 MB
Total Virtual: 24940.06 MB
Available Virtual: 10614.8 MB
==================== Drives ================================
Drive c: (Windows-SSD) (Fixed) (Total:951.65 GB) (Free:234.86 GB) (Model: SAMSUNG MZVLB1T0HBLR-000L2) NTFS
\\?\Volume{734405a6-960c-412c-9b07-54a4fe206f35}\ (WINRE_DRV) (Fixed) (Total:1.95 GB) (Free:1.35 GB) NTFS
\\?\Volume{2eae7efa-fbd9-494a-953f-89848af173ad}\ (SYSTEM_DRV) (Fixed) (Total:0.25 GB) (Free:0.22 GB) FAT32
==================== MBR & Partition Table ====================
==========================================================
Disk: 0 (Size: 953.9 GB) (Disk ID: 0068B31B)
Partition: GPT.
==================== End of Addition.txt =======================

Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz
Wifi se neustále odpojuje, ale pouze na mém zařízení
Moderátor: Moderátoři
Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]
Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.
!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
- Rudy
- Site Admin
- Příspěvky: 119315
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Wifi se neustále odpojuje, ale pouze na mém zařízení
Zdravím!
Otevřte poznámkový blok a zkopírujte do něj:
V systému běží 2 antiviry:
Otevřte poznámkový blok a zkopírujte do něj:
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.Start
CloseProcesses:
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-2411075943-1296956955-4193710843-1001\...\Run: [utweb] => "C:\Users\micha\AppData\Roaming\uTorrent Web\utweb.exe" /MINIMIZED (No File)
HKU\S-1-5-21-2411075943-1296956955-4193710843-1001\...\Run: [GalaxyClient] => [X]
Task: {6F8D99AF-89FE-40EA-9185-8BBE250CC42D} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem132.0.6833.0{16FFCD46-2025-421A-9180-EF74B9B9F8CD} => C:\Program Files (x86)\Google\GoogleUpdater\132.0.6833.0\updater.exe [5591136 2024-11-11] (Google LLC -> Google LLC)
Task: {1BE4F1AF-BC88-434F-B8BB-6DEDA659DF34} - System32\Tasks\McAfeeTsk\OOBEUpgrader => C:\Program Files\McAfee\MSC\OOBE_Upgrader.exe /Run (No File)
Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {5A63970A-F04F-4E97-9D1B-2ABDBA4A3D04} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files (x86)\Microsoft OneDrive\OneDriveStandaloneUpdater.exe (No File)
AlternateDataStreams: C:\Users\micha\OneDrive\Plocha\Sešit1.xlsx:com.dropbox.attrs [54]
FirewallRules: [{7CB0C975-9985-4AA2-8A9D-F428D8C2D0D8}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe => No File
FirewallRules: [{FEBB8E91-6BFB-4828-AEE5-B86452E91129}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\FarCry4.exe => No File
FirewallRules: [{9B8C5054-710D-463B-A7CE-6FD3A47F137E}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\FarCry4.exe => No File
FirewallRules: [{EFDAB943-57D4-47E1-904B-EF09004D898D}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\IGE_WPF64.exe => No File
FirewallRules: [{BFD7FDE2-BD8F-4ECA-9D08-5910E4BE8227}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\IGE_WPF64.exe => No File
FirewallRules: [{D61EB6E3-B3F7-4A9E-9198-713DE11CD6A9}] => (Allow) %programfiles%\Qustodio\qapp\qwelcomewzd.exe => No File
FirewallRules: [{3E70366A-86CC-4950-8A53-3A3AEE654C55}] => (Allow) %programfiles%\Qustodio\qapp\QUpdateService.exe => No File
FirewallRules: [{990CB1F0-C786-46D1-9B30-D9FDA7145DBF}] => (Allow) %programfiles%\Qustodio\qapp\QReport.exe => No File
FirewallRules: [{5E9B3EDB-D5A2-4B54-A6E0-2279C6623CDA}] => (Allow) %programfiles%\Qustodio\qproxy\qengine.exe => No File
FirewallRules: [{2AC084F3-56FD-46F1-9FCC-87C10595B3A8}] => (Allow) %programfiles%\Qustodio\qapp\QAppTray.exe => No File
EmptyTemp:
End
V systému běží 2 antiviry:
Jeden z nich ručně vypněte, dochází k sw kolizi.AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: ESET Security (Enabled - Up to date) {26E0861C-6FB9-CEF9-E4F0-531986211ACE}
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Wifi se neustále odpojuje, ale pouze na mém zařízení
Zdravím, moc díky! Defender jsem zkusil vypnout, běžela mi tam ještě cloudová ochrana a ochrana sítí.
Fixlog:
Fix result of Farbar Recovery Scan Tool (x64) Version: 30-12-2024
Ran by micha (01-01-2025 20:09:31) Run:2
Running from C:\Users\micha\OneDrive\Plocha
Loaded Profiles: micha
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-2411075943-1296956955-4193710843-1001\...\Run: [utweb] => "C:\Users\micha\AppData\Roaming\uTorrent Web\utweb.exe" /MINIMIZED (No File)
HKU\S-1-5-21-2411075943-1296956955-4193710843-1001\...\Run: [GalaxyClient] => [X]
Task: {6F8D99AF-89FE-40EA-9185-8BBE250CC42D} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem132.0.6833.0{16FFCD46-2025-421A-9180-EF74B9B9F8CD} => C:\Program Files (x86)\Google\GoogleUpdater\132.0.6833.0\updater.exe [5591136 2024-11-11] (Google LLC -> Google LLC)
Task: {1BE4F1AF-BC88-434F-B8BB-6DEDA659DF34} - System32\Tasks\McAfeeTsk\OOBEUpgrader => C:\Program Files\McAfee\MSC\OOBE_Upgrader.exe /Run (No File)
Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {5A63970A-F04F-4E97-9D1B-2ABDBA4A3D04} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files (x86)\Microsoft OneDrive\OneDriveStandaloneUpdater.exe (No File)
AlternateDataStreams: C:\Users\micha\OneDrive\Plocha\Sešit1.xlsx:com.dropbox.attrs [54]
FirewallRules: [{7CB0C975-9985-4AA2-8A9D-F428D8C2D0D8}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe => No File
FirewallRules: [{FEBB8E91-6BFB-4828-AEE5-B86452E91129}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\FarCry4.exe => No File
FirewallRules: [{9B8C5054-710D-463B-A7CE-6FD3A47F137E}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\FarCry4.exe => No File
FirewallRules: [{EFDAB943-57D4-47E1-904B-EF09004D898D}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\IGE_WPF64.exe => No File
FirewallRules: [{BFD7FDE2-BD8F-4ECA-9D08-5910E4BE8227}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\IGE_WPF64.exe => No File
FirewallRules: [{D61EB6E3-B3F7-4A9E-9198-713DE11CD6A9}] => (Allow) %programfiles%\Qustodio\qapp\qwelcomewzd.exe => No File
FirewallRules: [{3E70366A-86CC-4950-8A53-3A3AEE654C55}] => (Allow) %programfiles%\Qustodio\qapp\QUpdateService.exe => No File
FirewallRules: [{990CB1F0-C786-46D1-9B30-D9FDA7145DBF}] => (Allow) %programfiles%\Qustodio\qapp\QReport.exe => No File
FirewallRules: [{5E9B3EDB-D5A2-4B54-A6E0-2279C6623CDA}] => (Allow) %programfiles%\Qustodio\qproxy\qengine.exe => No File
FirewallRules: [{2AC084F3-56FD-46F1-9FCC-87C10595B3A8}] => (Allow) %programfiles%\Qustodio\qapp\QAppTray.exe => No File
EmptyTemp:
End
*****************
Processes closed successfully.
HKLM\SOFTWARE\Microsoft\Windows Defender\\DisableAntiSpyware => Error setting value.
HKLM\SOFTWARE\Microsoft\Windows Defender\\DisableAntiVirus => Error setting value.
"HKU\S-1-5-21-2411075943-1296956955-4193710843-1001\Software\Microsoft\Windows\CurrentVersion\Run\\utweb" => not found
"HKU\S-1-5-21-2411075943-1296956955-4193710843-1001\Software\Microsoft\Windows\CurrentVersion\Run\\GalaxyClient" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6F8D99AF-89FE-40EA-9185-8BBE250CC42D}" => not found
"C:\WINDOWS\System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem132.0.6833.0{16FFCD46-2025-421A-9180-EF74B9B9F8CD}" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem132.0.6833.0{16FFCD46-2025-421A-9180-EF74B9B9F8CD}" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1BE4F1AF-BC88-434F-B8BB-6DEDA659DF34}" => not found
"C:\WINDOWS\System32\Tasks\McAfeeTsk\OOBEUpgrader" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\McAfeeTsk\OOBEUpgrader" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E0F10DCF-44AD-40E8-9370-FB5DA59F93FB}" => not found
"C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5A63970A-F04F-4E97-9D1B-2ABDBA4A3D04}" => not found
"C:\WINDOWS\System32\Tasks\OneDrive Per-Machine Standalone Update Task" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\OneDrive Per-Machine Standalone Update Task" => not found
"C:\Users\micha\OneDrive\Plocha\Sešit1.xlsx" => ":com.dropbox.attrs" ADS not found.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7CB0C975-9985-4AA2-8A9D-F428D8C2D0D8}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{FEBB8E91-6BFB-4828-AEE5-B86452E91129}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9B8C5054-710D-463B-A7CE-6FD3A47F137E}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{EFDAB943-57D4-47E1-904B-EF09004D898D}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BFD7FDE2-BD8F-4ECA-9D08-5910E4BE8227}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D61EB6E3-B3F7-4A9E-9198-713DE11CD6A9}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3E70366A-86CC-4950-8A53-3A3AEE654C55}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{990CB1F0-C786-46D1-9B30-D9FDA7145DBF}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{5E9B3EDB-D5A2-4B54-A6E0-2279C6623CDA}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2AC084F3-56FD-46F1-9FCC-87C10595B3A8}" => not found
=========== EmptyTemp: ==========
FlushDNS => completed
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 4209448 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B
Windows/system/drivers => 494021 B
Edge => 0 B
Chrome => 0 B
Brave => 0 B
Firefox => 329460288 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 203 B
systemprofile32 => 203 B
LocalService => 164583 B
NetworkService => 165749 B
micha => 19332913 B
RecycleBin => 1393071 B
EmptyTemp: => 338.8 MB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 20:12:27 ====
Fixlog:
Fix result of Farbar Recovery Scan Tool (x64) Version: 30-12-2024
Ran by micha (01-01-2025 20:09:31) Run:2
Running from C:\Users\micha\OneDrive\Plocha
Loaded Profiles: micha
Boot Mode: Normal
==============================================
fixlist content:
*****************
Start
CloseProcesses:
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-2411075943-1296956955-4193710843-1001\...\Run: [utweb] => "C:\Users\micha\AppData\Roaming\uTorrent Web\utweb.exe" /MINIMIZED (No File)
HKU\S-1-5-21-2411075943-1296956955-4193710843-1001\...\Run: [GalaxyClient] => [X]
Task: {6F8D99AF-89FE-40EA-9185-8BBE250CC42D} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem132.0.6833.0{16FFCD46-2025-421A-9180-EF74B9B9F8CD} => C:\Program Files (x86)\Google\GoogleUpdater\132.0.6833.0\updater.exe [5591136 2024-11-11] (Google LLC -> Google LLC)
Task: {1BE4F1AF-BC88-434F-B8BB-6DEDA659DF34} - System32\Tasks\McAfeeTsk\OOBEUpgrader => C:\Program Files\McAfee\MSC\OOBE_Upgrader.exe /Run (No File)
Task: {E0F10DCF-44AD-40E8-9370-FB5DA59F93FB} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {5A63970A-F04F-4E97-9D1B-2ABDBA4A3D04} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files (x86)\Microsoft OneDrive\OneDriveStandaloneUpdater.exe (No File)
AlternateDataStreams: C:\Users\micha\OneDrive\Plocha\Sešit1.xlsx:com.dropbox.attrs [54]
FirewallRules: [{7CB0C975-9985-4AA2-8A9D-F428D8C2D0D8}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe => No File
FirewallRules: [{FEBB8E91-6BFB-4828-AEE5-B86452E91129}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\FarCry4.exe => No File
FirewallRules: [{9B8C5054-710D-463B-A7CE-6FD3A47F137E}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\FarCry4.exe => No File
FirewallRules: [{EFDAB943-57D4-47E1-904B-EF09004D898D}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\IGE_WPF64.exe => No File
FirewallRules: [{BFD7FDE2-BD8F-4ECA-9D08-5910E4BE8227}] => (Allow) C:\Program Files (x86)\Ubisoft\Ubisoft Game Launcher\games\Far Cry 4\bin\IGE_WPF64.exe => No File
FirewallRules: [{D61EB6E3-B3F7-4A9E-9198-713DE11CD6A9}] => (Allow) %programfiles%\Qustodio\qapp\qwelcomewzd.exe => No File
FirewallRules: [{3E70366A-86CC-4950-8A53-3A3AEE654C55}] => (Allow) %programfiles%\Qustodio\qapp\QUpdateService.exe => No File
FirewallRules: [{990CB1F0-C786-46D1-9B30-D9FDA7145DBF}] => (Allow) %programfiles%\Qustodio\qapp\QReport.exe => No File
FirewallRules: [{5E9B3EDB-D5A2-4B54-A6E0-2279C6623CDA}] => (Allow) %programfiles%\Qustodio\qproxy\qengine.exe => No File
FirewallRules: [{2AC084F3-56FD-46F1-9FCC-87C10595B3A8}] => (Allow) %programfiles%\Qustodio\qapp\QAppTray.exe => No File
EmptyTemp:
End
*****************
Processes closed successfully.
HKLM\SOFTWARE\Microsoft\Windows Defender\\DisableAntiSpyware => Error setting value.
HKLM\SOFTWARE\Microsoft\Windows Defender\\DisableAntiVirus => Error setting value.
"HKU\S-1-5-21-2411075943-1296956955-4193710843-1001\Software\Microsoft\Windows\CurrentVersion\Run\\utweb" => not found
"HKU\S-1-5-21-2411075943-1296956955-4193710843-1001\Software\Microsoft\Windows\CurrentVersion\Run\\GalaxyClient" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{6F8D99AF-89FE-40EA-9185-8BBE250CC42D}" => not found
"C:\WINDOWS\System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem132.0.6833.0{16FFCD46-2025-421A-9180-EF74B9B9F8CD}" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem132.0.6833.0{16FFCD46-2025-421A-9180-EF74B9B9F8CD}" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{1BE4F1AF-BC88-434F-B8BB-6DEDA659DF34}" => not found
"C:\WINDOWS\System32\Tasks\McAfeeTsk\OOBEUpgrader" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\McAfeeTsk\OOBEUpgrader" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{E0F10DCF-44AD-40E8-9370-FB5DA59F93FB}" => not found
"C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5A63970A-F04F-4E97-9D1B-2ABDBA4A3D04}" => not found
"C:\WINDOWS\System32\Tasks\OneDrive Per-Machine Standalone Update Task" => not found
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\OneDrive Per-Machine Standalone Update Task" => not found
"C:\Users\micha\OneDrive\Plocha\Sešit1.xlsx" => ":com.dropbox.attrs" ADS not found.
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7CB0C975-9985-4AA2-8A9D-F428D8C2D0D8}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{FEBB8E91-6BFB-4828-AEE5-B86452E91129}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9B8C5054-710D-463B-A7CE-6FD3A47F137E}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{EFDAB943-57D4-47E1-904B-EF09004D898D}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{BFD7FDE2-BD8F-4ECA-9D08-5910E4BE8227}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D61EB6E3-B3F7-4A9E-9198-713DE11CD6A9}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3E70366A-86CC-4950-8A53-3A3AEE654C55}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{990CB1F0-C786-46D1-9B30-D9FDA7145DBF}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{5E9B3EDB-D5A2-4B54-A6E0-2279C6623CDA}" => not found
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2AC084F3-56FD-46F1-9FCC-87C10595B3A8}" => not found
=========== EmptyTemp: ==========
FlushDNS => completed
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 4209448 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B
Windows/system/drivers => 494021 B
Edge => 0 B
Chrome => 0 B
Brave => 0 B
Firefox => 329460288 B
Opera => 0 B
Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 203 B
systemprofile32 => 203 B
LocalService => 164583 B
NetworkService => 165749 B
micha => 19332913 B
RecycleBin => 1393071 B
EmptyTemp: => 338.8 MB temporary data Removed.
================================
The system needed a reboot.
==== End of Fixlog 20:12:27 ====
- Rudy
- Site Admin
- Příspěvky: 119315
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Wifi se neustále odpojuje, ale pouze na mém zařízení
Jj. Bylo smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Re: Wifi se neustále odpojuje, ale pouze na mém zařízení
jj. moc díky! posílám příspěvek 

- Rudy
- Site Admin
- Příspěvky: 119315
- Registrován: 30 říj 2003 13:42
- Bydliště: Plzeň
- Kontaktovat uživatele:
Re: Wifi se neustále odpojuje, ale pouze na mém zařízení
Za příspěvek děkujeme a vy nemáte zač! 

Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:
e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.
Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.
Navštivte:

e-mail: rudy(zavináč)forum.viry.cz
Varování: Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!
Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.