Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Procesor nestíha

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
Tomas.tom4
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: včera, 12:42

Procesor nestíha

#1 Příspěvek od Tomas.tom4 »

Zdravím, mám problém s procesorem jede na 15% a když zapnu cokoli tak jede na 100%.
Vypadá jak kdyby postupně umíral- co je divné :D
addition-
Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-07-2025
Ran by Bobik (18-07-2025 14:04:42)
Running from E:\stahovaní
Microsoft Windows 10 Home Version 22H2 19045.6093 (X64) (2022-07-08 21:14:23)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-1000299596-2352825683-3530717420-500 - Administrator - Disabled)
Bobik (S-1-5-21-1000299596-2352825683-3530717420-1001 - Administrator - Enabled) => C:\Users\Bobik
DefaultAccount (S-1-5-21-1000299596-2352825683-3530717420-503 - Limited - Disabled)
defaultuser0 (S-1-5-21-1000299596-2352825683-3530717420-1000 - Limited - Disabled) => C:\Users\defaultuser0
Guest (S-1-5-21-1000299596-2352825683-3530717420-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-1000299596-2352825683-3530717420-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {5078598A-1FA2-C888-AA5F-A9C66537DB12}
FW: Avast Antivirus (Enabled) {D322394B-73F7-C65E-BBB0-3B81E063D6D4}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

AMD Catalyst Install Manager (HKLM\...\{66AFB595-BC05-2913-7696-6D58F9B733E1}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
ASUS Product Register Program (HKLM-x32\...\{C87D79F6-F813-4812-B7A9-CCCAAB8B1188}) (Version: 1.0.030 - ASUSTek Computer Inc.)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 25.6.10221.2878 - Gen Digital Inc.)
Avast Secure Browser (HKLM-x32\...\Avast Secure Browser) (Version: 137.0.31047.122 - Autoři prohlížeče Avast Secure Browser)
Avast Update Helper (HKLM-x32\...\{19C3AB22-3718-4E4D-B203-242F5001565B}) (Version: 1.8.1697.6 - AVAST Software) Hidden
Discord (HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Discord) (Version: 1.0.9002 - Discord Inc.)
EA app (HKLM\...\{C2622085-ABD2-49E5-8AB9-D3D6A642C091}) (Version: 13.58.0.5571 - Electronic Arts) Hidden
EA app (HKLM-x32\...\{333b2313-8cdf-4394-80bf-5283fd631ae0}) (Version: 13.58.0.5571 - Electronic Arts)
ENE RGB HAL (HKLM\...\{87316426-A33E-41E9-942B-968E928A9A47}) (Version: 1.00.10 - Ene Tech.) Hidden
ENE RGB HAL (HKLM-x32\...\{9f93601b-15ea-4e69-8d7c-dfa0f29ae04e}) (Version: 1.00.10 - Ene Tech.) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 138.0.7204.102 - Google LLC)
Grand Theft Auto V (HKLM-x32\...\{5EFC6C07-6B87-43FC-9524-F9E967241741}) (Version: 1.0.2699.0 - Rockstar Games)
iCloud Outlook (HKLM\...\{542806EA-AFEA-49B5-BC9D-DCAE98BA393B}) (Version: 13.4.0.99 - Apple Inc.)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1156 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{5D1BFBB8-4923-4388-9559-C86F5D9E2740}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{B434599E-E35F-4612-9803-A2FB7A8E066B}) (Version: 11.0.0.1156 - Intel Corporation) Hidden
Intel(R) ME UninstallLegacy (HKLM\...\{ECA145AF-55D0-42BA-870F-4213F0198A46}) (Version: 1.0.1.0 - Intel Corporation) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4531 - Intel Corporation)
Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation)
Intel® Trusted Connect Service Client (HKLM\...\{7D84E343-A23D-451C-B123-0195B2D903A6}) (Version: 1.42.17.0 - Intel Corporation) Hidden
Kontrola stavu osobního počítače s Windows (HKLM\...\{7DED818B-F556-4115-9CC0-ACE3F614CE63}) (Version: 4.0.2410.23001 - Microsoft Corporation)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
League of Legends (HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Riot Game league_of_legends.live) (Version: - Riot Games, Inc)
Microsoft 365 Apps pro velké organizace - cs-cz (HKLM\...\O365ProPlusRetail - cs-cz) (Version: 16.0.18925.20158 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 138.0.3351.95 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 138.0.3351.95 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 25.115.0615.0002 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Teams) (Version: 1.5.00.17656 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.40.33816 (HKLM-x32\...\{77169412-f642-45e7-b533-0c6f48de12f9}) (Version: 14.40.33816.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.40.33816 (HKLM-x32\...\{4373d0b5-4457-4a80-bad9-029de8df097b}) (Version: 14.40.33816.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.40.33816 (HKLM\...\{5904914B-9FC8-44C2-AE48-5C7F30A603EC}) (Version: 14.40.33816 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.40.33816 (HKLM\...\{560D2DA4-096E-4868-B22A-DA6418FDE6FB}) (Version: 14.40.33816 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.40.33816 (HKLM-x32\...\{0DF1D9F9-6038-4641-AB6D-13DD654758A7}) (Version: 14.40.33816 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.40.33816 (HKLM-x32\...\{D7A66DA5-B103-45C1-A0A7-736C08E2F464}) (Version: 14.40.33816 - Microsoft Corporation) Hidden
Mobalytics (HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Overwolf_kccgdmdllebbgifgafjfmcjdgmhoknfhjdnobcho) (Version: 1.406.1 - Overwolf app)
MSI Afterburner 4.6.4 (HKLM-x32\...\Afterburner) (Version: 4.6.4 - MSI Co., LTD)
MSI Display Kit(x64) (HKLM\...\{5A8E3E72-D260-4DB3-BCE3-AF47C364F275}) (Version: 0.0.2.3 - MSI) Hidden
MSI Display Kit(x64) (HKLM-x32\...\Installshield_{5A8E3E72-D260-4DB3-BCE3-AF47C364F275}) (Version: 0.0.2.3 - MICRO-STAR INT'L,.LTD.)
Nero ControlCenter (HKLM-x32\...\{ABC88553-8770-4B97-B43E-5A90647A5B63}) (Version: 11.4.2006 - Nero AG) Hidden
Nero Core (HKLM-x32\...\{EF1C9DB5-D928-4F38-89DE-B1BB8911462E}) (Version: 1.0.01700 - Nero AG)
Nero Core Components (HKLM-x32\...\{BEBEE34D-84A2-4EDD-8BEA-96CC54371263}) (Version: 11.7.3045 - Nero AG) Hidden
Nero KnowHow PLUS (HKLM-x32\...\{AACDE618-4162-4074-B01D-67C5E8D07233}) (Version: 1.3.5005 - Nero AG) Hidden
Nero Launcher (HKLM-x32\...\{7BC834B5-9093-4A6D-8303-01760E4E61B2}) (Version: 20.1.1020 - Nero AG) Hidden
Nero Update (HKLM-x32\...\{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}) (Version: 20.0.1006 - Nero AG) Hidden
Nikon Message Center 2 (HKLM-x32\...\{B014EE44-9197-4513-9613-71E6EB1B514E}) (Version: 2.4.1 - Nikon Corporation)
Nikon Transfer 2 (HKLM-x32\...\{3FC564E4-C8EA-4887-AEF3-268962172514}) (Version: 2.15.0 - Nikon Corporation)
NX Studio (HKLM\...\{F5B8CBD1-AF89-4DDD-857E-AF5D66743A41}) (Version: 1.2.1 - Nikon Corporation)
Oculus (HKLM\...\Oculus) (Version: <3 - Facebook Technologies, LLC)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.18925.20158 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.18925.20158 - Microsoft Corporation) Hidden
Overwolf (HKLM-x32\...\Overwolf) (Version: 0.276.0.6 - Overwolf Ltd.)
PatchMe (HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Overwolf_nocjbbigpcpeibhdhhpbmbakhafjpnbdnjfkfngb) (Version: 2.2.7.2 - Overwolf app)
qFlipper 1.3.3 (HKLM\...\qFlipper) (Version: 1.3.3 - Flipper Devices Inc.)
Riot Vanguard (HKLM\...\Riot Vanguard) (Version: - Riot Games, Inc.)
Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.63.962 - Rockstar Games)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.1.5.1 - Rockstar Games)
Starsky & Hutch (HKLM-x32\...\{A12BBE50-840D-4BD0-89D8-585F7C6AA7B4}_is1) (Version: 1.0 - US - ACTION, s.r.o.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Teams Machine-Wide Installer (HKLM-x32\...\{731F6BAA-A986-45A4-8936-7C3AAAAA760B}) (Version: 1.5.0.8070 - Microsoft Corporation)
U.GG 1.11.5 (HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\aca90cad-9059-53b1-8dc9-f846273ebdf3) (Version: 1.11.5 - Outplayed, Inc.)
Update for Windows 10 for x64-based Systems (KB4480730) (HKLM\...\{0746492E-47B6-4251-940C-44462DFD74BB}) (Version: 2.55.0.0 - Microsoft Corporation)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{B8D93870-98D1-4980-AFCA-E26563CDFB79}) (Version: 8.94.0.0 - Microsoft Corporation)
UpdateAssistant (HKLM\...\{76A22428-2400-4521-96AF-7AC4A6174CA5}) (Version: 1.25.0.0 - Microsoft Corporation) Hidden
VALORANT (HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Riot Game valorant.live) (Version: - Riot Games, Inc)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.18 - VideoLAN)
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
Wargaming.net Game Center (HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Wargaming.net Game Center) (Version: 25.3.0.9647 - Wargaming.net)
World of Tanks EU (HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\928966331) (Version: - Wargaming.net)

Packages:
=========
Bubble Witch 3 Saga -> C:\Program Files\WindowsApps\king.com.BubbleWitch3Saga_10.1.2.0_x64__kgqvnymyfvs32 [2025-05-07] (king.com)
Candy Crush Soda Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSodaSaga_1.297.400.0_x64__kgqvnymyfvs32 [2025-07-15] (king.com)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2023-04-01] (Microsoft Corporation)
Hidden City: Hidden Object Adventure -> C:\Program Files\WindowsApps\828B5831.HiddenCityMysteryofShadows_1.86.8600.0_x64__ytsefhwckbdv6 [2025-07-18] (G5 Entertainment AB)
iCloud -> C:\Program Files\WindowsApps\AppleInc.iCloud_15.3.152.0_x64__nzyj5cx40ttqa [2025-06-14] (Apple Inc.) [Startup Task]
iTunes -> C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa [2025-05-04] (Apple Inc.) [Startup Task]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2022-07-08] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2022-07-08] (Microsoft Corporation) [MS Ad]
OfficePushNotificationsUtility -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16 [2025-07-15] ()
OneDrive -> C:\Program Files\WindowsApps\microsoft.microsoftskydrive_19.23.19.0_x64__8wekyb3d8bbwe [2025-06-14] (Microsoft Corporation)
Spotify – hudba a podcasty -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.268.528.0_x64__zpdnekdrzrea0 [2025-07-18] (Spotify AB) [Startup Task]
WinZip Universal -> C:\Program Files\WindowsApps\WinZipComputing.WinZipUniversal_1.5.13516.0_x64__3ykzqggjzj4z0 [2025-06-14] (WinZip Computing)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1000299596-2352825683-3530717420-1001_Classes\CLSID\{04271989-C4D2-0E86-058E-A3400F0D1196} -> [OneDrive] => {a52bba46-e9e1-435f-b3d9-28daa648c0f6}
CustomCLSID: HKU\S-1-5-21-1000299596-2352825683-3530717420-1001_Classes\CLSID\{73DC1A42-0AC7-4068-95BA-363750E7489F} -> [Fotky na iCloudu] => C:\Users\Bobik\iCloudPhotos\Photos [2024-12-30 16:06]
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-07-08] (Avast Software s.r.o. -> Gen Digital Inc.)
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-07-08] (Avast Software s.r.o. -> Gen Digital Inc.)
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-07-08] (Avast Software s.r.o. -> Gen Digital Inc.)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-07-08] (Avast Software s.r.o. -> Gen Digital Inc.)
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2017-03-17] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-07-08] (Avast Software s.r.o. -> Gen Digital Inc.)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32-x32: [vidc.VP60] => C:\WINDOWS\system32\vp6vfw.dll
HKLM\...\Drivers32-x32: [vidc.VP61] => C:\WINDOWS\system32\vp6vfw.dll

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\Bobik\OneDrive\Plocha\kajča - Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 1"
ShortcutWithArgument: C:\Users\Bobik\OneDrive\Plocha\Tomas - Chrome - kopie.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Default"
ShortcutWithArgument: C:\Users\Bobik\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Tomas - Chrome - kopie.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Default"
ShortcutWithArgument: C:\Users\Bobik\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\kajča - Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 1"

==================== Loaded Modules (Whitelisted) =============

2022-07-08 12:41 - 2025-07-15 19:40 - 000035472 _____ (ASUSTeK Computer Inc. -> ) [File not signed] C:\Program Files (x86)\ASUS\AXSP\1.02.00\PEbiosinterface32.dll
2022-07-08 14:03 - 2022-07-08 14:03 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems64.dll] C:\Program Files\Microsoft Office\root\Office16\AppvIsvSubsystems64.dll
2022-07-08 14:03 - 2022-07-08 14:03 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R64.dll] C:\Program Files\Microsoft Office\root\Office16\c2r64.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\desktop.ini:B1DA6C571C [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk:A1B76439FE [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk:21661D084B [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk:B96E9B8455 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk:60EC9648C0 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook (classic).lnk:5465085A2F [2586]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook (classic).lnk:BE800952D3 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk:F20EF51E1F [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk:1DC1525F34 [3442]
AlternateDataStreams: C:\Users\Bobik\Data aplikací:00e481b5e22dbe1f649fcddd505d3eb7 [394]
AlternateDataStreams: C:\Users\Bobik\AppData\Roaming:00e481b5e22dbe1f649fcddd505d3eb7 [394]

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) =============

BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2025-07-08] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2025-07-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-07-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-07-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-07-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-07-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-07-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-07-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-07-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-07-08] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\sharepoint.com -> hxxps://ssier-files.sharepoint.com

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2016-07-16 13:47 - 2016-07-16 13:45 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Network ===========================

(Currently there is no automatic fix for this section.)

DNS Servers: 10.3.3.3 - 10.4.0.216
Windows Firewall is enabled.

Network Binding:
=============
Ethernet: Intel(R) Ethernet Connection I217-V -> e1d68x64.sys

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\Program Files\Oculus\Support\oculus-runtime;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\WINDOWS\System32\OpenSSH\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT
HKU\S-1-5-21-1000299596-2352825683-3530717420-1000\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Bobik\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\img13.jpg
HKU\S-1-5-80-3238277391-1891473654-1195688043-4149050645-2494734967\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppHost => (EnableWebContentEvaluation: 0)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: )
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)


==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run: => "Riot Vanguard"
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\StartupApproved\Run: => "Wargaming.net Game Center"
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\StartupApproved\Run: => "Discord"
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_5C2F6520173E4793C02014A01A3B5ED6"
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\StartupApproved\Run: => "electron.app.U.GG"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{C5969A92-6A24-4A95-A15B-758238895855}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> Gen Digital Inc.)
FirewallRules: [{1D0A0848-F49C-4159-94FF-3E0BABCAB48A}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> Gen Digital Inc.)
FirewallRules: [{64E93A53-EA76-40FA-AF76-5397ABA17D22}] => (Allow) E:\steam\steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{387216BD-2DE7-477E-8484-62405EF5619B}] => (Allow) E:\steam\steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{96B1E865-02AA-4054-86AD-A09447993219}] => (Allow) E:\steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{AE482683-C16B-4860-8912-1A2792BC5DDB}] => (Allow) E:\steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{32F13742-51A2-4821-9454-3612D57369DF}] => (Allow) E:\steam\steamapps\common\Mafia\Mafia\Game.exe (Illusion Softworks) [File not signed]
FirewallRules: [{D0CC91D9-01EA-494E-9AC3-446962FFAEB0}] => (Allow) E:\steam\steamapps\common\Mafia\Mafia\Game.exe (Illusion Softworks) [File not signed]
FirewallRules: [{243F09C9-3CC0-4A29-B4CD-20F5A0B4DF10}] => (Allow) E:\steam\steamapps\common\Mafia\Mafia\Setup.exe () [File not signed]
FirewallRules: [{851C1980-DE01-4496-A026-975D3A73472F}] => (Allow) E:\steam\steamapps\common\Mafia\Mafia\Setup.exe () [File not signed]
FirewallRules: [{927423B5-E0A0-444B-A66F-F0B45CC6A85C}] => (Allow) E:\steam\steamapps\common\Heroes & Generals\hngsteamlauncher.exe (TLM Partners Inc. -> Reto-Moto ApS) [File not signed]
FirewallRules: [{4B757CC5-31E1-4127-B275-F3416881CA07}] => (Allow) E:\steam\steamapps\common\Heroes & Generals\hngsteamlauncher.exe (TLM Partners Inc. -> Reto-Moto ApS) [File not signed]
FirewallRules: [{A5BAB06A-5B43-4166-9B35-D81147D3766E}] => (Allow) E:\steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe => No File
FirewallRules: [{AB976045-1FE4-4F9C-AE45-38B2E6D52689}] => (Allow) E:\steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe => No File
FirewallRules: [{FC6C2A6A-3260-4AA9-A1B5-B3CD77177B68}] => (Allow) E:\steam\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe (PUBG CORPORATION -> KRAFTON, Inc.)
FirewallRules: [{881780B9-A58A-40B3-865C-60E0E51AE537}] => (Allow) E:\steam\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe (PUBG CORPORATION -> KRAFTON, Inc.)
FirewallRules: [{69560987-0E27-4778-9946-1F43CE08B7F4}] => (Allow) E:\steam\steamapps\common\Team Fortress 2\hl2.exe => No File
FirewallRules: [{C1E1C939-76FB-4BC7-AF4D-F62DF259966F}] => (Allow) E:\steam\steamapps\common\Team Fortress 2\hl2.exe => No File
FirewallRules: [{A919BC48-9452-466F-8582-463830C308B3}] => (Allow) E:\steam\steamapps\common\SteamVR\bin\win32\vrstartup.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{87D46C86-A059-48C7-A3F6-CADBE4207345}] => (Allow) E:\steam\steamapps\common\SteamVR\bin\win32\vrstartup.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{93D70C6D-BD58-4D8C-B511-75CFD5CE95EC}] => (Allow) E:\steam\steamapps\common\SteamVR\tools\steamvr_environments\game\bin\win64\steamtours.exe (Valve Corp. -> )
FirewallRules: [{38D47C1A-86CB-4C28-9359-5035A796A894}] => (Allow) E:\steam\steamapps\common\SteamVR\tools\steamvr_environments\game\bin\win64\steamtours.exe (Valve Corp. -> )
FirewallRules: [{77A41650-C868-46D4-BACC-6C7DB012FBF6}] => (Allow) E:\steam\steamapps\common\SteamVR\tools\steamvr_environments\game\bin\win64\steamtourscfg.exe (Valve Corp. -> )
FirewallRules: [{F3AE2843-E8BB-44CB-BC33-A2104684A7DE}] => (Allow) E:\steam\steamapps\common\SteamVR\tools\steamvr_environments\game\bin\win64\steamtourscfg.exe (Valve Corp. -> )
FirewallRules: [{54BC7D6D-C028-4027-AF22-DAF4AD6577AF}] => (Allow) C:\Program Files\Oculus\Support\oculus-runtime\OVRServer_x64.exe (Meta Platforms, Inc. -> Facebook Technologies, LLC)
FirewallRules: [{5FC0CDF2-170B-44C7-ABE6-4768C5CEF7F7}] => (Allow) C:\Program Files\Oculus\Support\oculus-runtime\OVRServer_x64.exe (Meta Platforms, Inc. -> Facebook Technologies, LLC)
FirewallRules: [{4D7500D7-8F8B-4AE4-ABFA-0CECC6EB22DC}] => (Allow) C:\Program Files\Oculus\Support\oculus-runtime\OVRRedir.exe (Meta Platforms, Inc. -> Facebook Technologies, LLC)
FirewallRules: [{1D58261B-8672-442F-B522-912C37444C9C}] => (Allow) C:\Program Files\Oculus\Support\oculus-runtime\OVRRedir.exe (Meta Platforms, Inc. -> Facebook Technologies, LLC)
FirewallRules: [{A6857835-F023-4EAD-82E2-70AEBCC74257}] => (Allow) C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe (Meta Platforms, Inc. -> Facebook Technologies, LLC)
FirewallRules: [{4A37093B-6789-4694-B836-DD91ACEF9E8A}] => (Allow) C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe (Meta Platforms, Inc. -> Facebook Technologies, LLC)
FirewallRules: [{36D56BB9-63B9-4235-BA22-4943C3618984}] => (Allow) C:\Program Files\Oculus\Support\oculus-dash\dash\bin\OculusDash.exe (Meta Platforms, Inc. -> )
FirewallRules: [{F2E23B48-006B-4624-B0DD-37A057F49E4F}] => (Allow) C:\Program Files\Oculus\Support\oculus-dash\dash\bin\OculusDash.exe (Meta Platforms, Inc. -> )
FirewallRules: [{E175B807-D5A7-4C0C-A96D-7FBF61EF583E}] => (Allow) C:\Program Files\Oculus\Support\oculus-worlds\Home2.exe => No File
FirewallRules: [{48C58358-E5F5-4CFC-A29F-8B4AAE5CF96A}] => (Allow) C:\Program Files\Oculus\Support\oculus-worlds\Home2.exe => No File
FirewallRules: [{04735EA4-F9A0-427D-8754-899B4D80134C}] => (Allow) C:\Program Files\Oculus\Support\oculus-worlds\Home2\Binaries\Win64\Home2-Win64-Shipping.exe => No File
FirewallRules: [{5D88153E-A647-4BF3-9B9C-B38FF531182D}] => (Allow) C:\Program Files\Oculus\Support\oculus-worlds\Home2\Binaries\Win64\Home2-Win64-Shipping.exe => No File
FirewallRules: [{C9071290-44FA-49D8-BE98-1EE68D748175}] => (Allow) C:\Program Files\Oculus\Support\oculus-worlds\Engine\Binaries\Win64\UnrealCEFSubProcess.exe => No File
FirewallRules: [{13246145-AA56-4FFA-AA87-17CCD6EFBAE1}] => (Allow) C:\Program Files\Oculus\Support\oculus-worlds\Engine\Binaries\Win64\UnrealCEFSubProcess.exe => No File
FirewallRules: [{52B9EE27-950C-416D-B2DC-57A720177FD2}] => (Allow) C:\Program Files\Oculus\Support\oculus-client\OculusClient.exe (Oculus VR, LLC) [File not signed]
FirewallRules: [{5FFA3A20-BC22-440D-82C9-D2FAAAE9E9A2}] => (Allow) C:\Program Files\Oculus\Support\oculus-client\OculusClient.exe (Oculus VR, LLC) [File not signed]
FirewallRules: [{7979AC0D-2D97-45B6-8845-7479FA5570F6}] => (Allow) E:\steam\steamapps\common\Portal\hl2.exe (Valve Corp. -> )
FirewallRules: [{515382E0-CE36-4277-86BF-BAE3C9A001F8}] => (Allow) E:\steam\steamapps\common\Portal\hl2.exe (Valve Corp. -> )
FirewallRules: [{889D96DB-AF50-4D61-869D-E9156C534D72}] => (Allow) E:\steam\steamapps\common\Portal 2\portal2.exe () [File not signed]
FirewallRules: [{D21770D5-9ABF-410F-9D5F-9085F364ECE7}] => (Allow) E:\steam\steamapps\common\Portal 2\portal2.exe () [File not signed]
FirewallRules: [{1417C062-4A75-4BBF-BE82-3FEF3B7107D5}] => (Allow) E:\steam\steamapps\common\Mafia II Definitive Edition\2KLauncher\LauncherPatcher.exe => No File
FirewallRules: [{EE06D5C4-15BB-46A7-9FC1-4A1B8F418FC8}] => (Allow) E:\steam\steamapps\common\Mafia II Definitive Edition\2KLauncher\LauncherPatcher.exe => No File
FirewallRules: [{24B2DE77-ECE7-4F3F-AB27-C535E3F0BD98}] => (Allow) E:\steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{9DF402AE-8DC1-44C6-8505-BC232A8E2588}] => (Allow) E:\steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{1D7B0C54-E711-4442-A697-340C22283F5A}] => (Allow) E:\steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe => No File
FirewallRules: [{B65803FA-DD55-4306-9271-E24BAAE1FD84}] => (Allow) E:\steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe => No File
FirewallRules: [{EE246A11-D58E-4865-A4F9-A2DE48DFBB68}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{439AD162-0C7E-47B6-9332-A9DED292AA67}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{CB05DD04-F5A2-4D89-B7D5-17E74BEDE2E7}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{E64E5642-8C90-4D3E-85F2-6B52CD4FA0B4}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{5774BB06-567D-4C73-BDDD-280205B11FAE}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{90A2ADF4-9D0F-42AF-BEDE-826A1EE23058}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{CBBD523D-22B7-48A0-B582-4EE34896D8EA}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{2E6E1671-A026-49AD-9B56-931EBCCDC07F}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{64F0E293-2B6C-46E2-945C-F289D3A09639}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{6193416E-223B-4054-836F-FA94A72F554F}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{94EBC4C0-5390-4234-B6BF-42A9CA5B6A2D}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{1FCD7970-416A-4C70-A6F0-8CE4CFDE3313}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{A270E158-5F5E-41F6-A277-2699212733EA}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALaunchHelper.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{4A218A6B-2A16-4C87-8F50-B04EC84C98B3}] => (Allow) E:\steam\steamapps\common\MudRunner\MudRunner.exe (Focus Home Interactive) [File not signed]
FirewallRules: [{B2ECD98E-F299-43AA-98EC-20E9EC7C4CE5}] => (Allow) E:\steam\steamapps\common\MudRunner\MudRunner.exe (Focus Home Interactive) [File not signed]
FirewallRules: [{457D31D7-70C7-492E-BA9C-F984AE63B0C3}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{BF64B941-EC5D-42E8-9827-53FB8407EC98}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{F466486E-1772-4859-9A64-12AAC0DA3DFB}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{D289CDA9-530A-4584-A30D-016B8650B231}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{AF3386BC-0805-4162-840C-8494EAA41752}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{9595EFE5-3A8A-445E-BFBF-C16D68225773}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{0FFD6BB8-676F-4F18-95D6-F86ABE309C2F}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{DEF252C9-75C5-43CB-BD5E-4E9AAF6235DE}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{8DD4B14C-5BA0-4DBA-B077-8F1BDB450C87}] => (Allow) C:\Program Files (x86)\Overwolf\0.273.1.4\OverwolfBrowser.exe => No File
FirewallRules: [{7CE11079-F8D5-40A8-A0F1-81BA422C9AE8}] => (Allow) C:\Program Files (x86)\Overwolf\0.273.1.4\OverwolfBrowser.exe => No File
FirewallRules: [{ADDBE6FD-C62C-4C02-BD6F-05B4202437F3}] => (Block) C:\Program Files (x86)\Overwolf\0.273.1.4\OverwolfBrowser.exe => No File
FirewallRules: [{F2FB570D-25AA-4C35-A898-BA911A453E87}] => (Block) C:\Program Files (x86)\Overwolf\0.273.1.4\OverwolfBrowser.exe => No File
FirewallRules: [{BB6977C2-B479-4646-96A3-DE8E14CCE764}] => (Allow) C:\Program Files (x86)\Overwolf\0.276.0.6\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [{3DD854D3-834F-4A1A-B159-30CC64EBA6E3}] => (Allow) C:\Program Files (x86)\Overwolf\0.276.0.6\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [{944E2903-4068-402B-AE5C-12EFDFC93EDF}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{876DC74B-91B5-4966-8D41-E4FB7B94D14B}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{B12CB578-1E00-4427-92C5-8B8F3C7C84C0}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{D10D6B98-9D0E-4AC7-AC05-44DCC066D39B}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{18306DA5-0FBB-433A-A500-E00DD72A5030}] => (Allow) C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe (Avast Software s.r.o. -> Gen Digital Inc.)
FirewallRules: [{421F797F-1F54-447F-B573-80CCA8DE6ACD}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.268.528.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{66028437-B6A8-4460-8906-086473F05D50}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.268.528.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{EE5A45CE-8953-4111-897E-1003375CD051}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.268.528.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{54243CC8-46AB-416F-B926-D97239718064}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.268.528.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{60154E7A-F48D-407C-ADA3-2EC0733FCC6C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.268.528.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{34BB1C60-60B4-4A74-AADB-741646FF28B0}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.268.528.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{0C5047E3-CDC8-4D68-A06A-8521B76B4278}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.268.528.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{2BDCD1FB-DACD-4D61-A3E9-4A96C061CBC9}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.268.528.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{85E10D8D-4948-467E-B04B-70143D5ED2B8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.268.528.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{D3F9756F-4F32-4395-A437-760F78C2751F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.268.528.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)

==================== Restore Points =========================

08-07-2025 19:45:38 Naplánovaný kontrolní bod
09-07-2025 20:39:02 Instalační služba modulů systému Windows
09-07-2025 20:41:00 Instalační služba modulů systému Windows
18-07-2025 12:58:05 Naplánovaný kontrolní bod

==================== Faulty Device Manager Devices ============

==================== Event log errors: ========================

Application errors:
==================
Error: (07/18/2025 01:59:42 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (13800,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (07/18/2025 01:42:08 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (14732,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (07/18/2025 01:37:19 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: bad_module_info, verze: 0.0.0.0, časové razítko: 0x00000000
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x0000000000416a10
ID chybujícího procesu: 0x28a4
Čas spuštění chybující aplikace: 0x01dbf7d8502a4823
Cesta k chybující aplikaci: bad_module_info
Cesta k chybujícímu modulu: unknown
ID zprávy: f744f5ac-10be-4de1-8042-86d357765139
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (07/18/2025 01:25:02 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (9484,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (07/18/2025 01:09:50 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (13564,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (07/18/2025 12:50:56 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (8980,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (07/15/2025 10:53:59 PM) (Source: ATIeRecord) (EventID: 16387) (User: )
Description: ATI EEU Service event error

Error: (07/15/2025 10:47:14 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (14880,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).


System errors:
=============
Error: (07/15/2025 07:42:42 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Aktualizace Google (gupdate) neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (07/15/2025 07:42:42 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Služba Aktualizace Google (gupdate) bylo dosaženo časového limitu (60000 ms).

Error: (07/09/2025 08:49:13 PM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80073d02): 9NMPJ99VJBWV-Microsoft.YourPhone.

Error: (07/09/2025 08:39:18 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Aktualizace Google (gupdate) neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (07/09/2025 08:39:18 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Služba Aktualizace Google (gupdate) bylo dosaženo časového limitu (60000 ms).

Error: (07/09/2025 03:50:31 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-VHDCHI0)
Description: Server {2593F8B9-4EAF-457C-B68A-50F6B8EA6B54} se v daném časovém limitu neregistroval u služby DCOM.

Error: (07/09/2025 03:50:31 AM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-VHDCHI0)
Description: Server Microsoft.AAD.BrokerPlugin_1000.19041.4239.0_neutral_neutral_cw5n1h2txyewy!Windows.Security.Authentication.Web.Core.BackgroundGetTokenTask.ClassId.WebAccountProvider se v daném časovém limitu neregistroval u služby DCOM.

Error: (07/08/2025 07:49:03 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-VHDCHI0)
Description: Server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter se v daném časovém limitu neregistroval u služby DCOM.


Windows Defender:
================Event[0]:

Date: 2022-08-24 14:32:45
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o načtení bezpečnostních informací a pokusí se o obnovení poslední známé funkční verze.
Bezpečnostní informace, které se měly načíst: Aktuální
Kód chyby: 0x80070003
Popis chyby: Systém nemůže nalézt uvedenou cestu.
Verze bezpečnostních informací: 0.0.0.0;0.0.0.0
Verze modulu: 0.0.0.0

CodeIntegrity:
===============
Date: 2025-07-15 19:40:40
Description:
Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Avast Software\Avast\AvastSvc.exe) attempted to load \Device\HarddiskVolume1\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2025-07-01 22:22:24
Description:
Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Avast Software\Browser\Application\AvastBrowser.exe) attempted to load \Device\HarddiskVolume1\Program Files\Avast Software\Browser\Application\137.0.30674.104\ffmpeg.dll that did not meet the Microsoft signing level requirements.

Date: 2025-02-13 23:12:13
Description:
Code Integrity determined that a process (\Device\HarddiskVolume1\Users\Bobik\AppData\Local\Discord\app-1.0.9182\Discord.exe) attempted to load \Device\HarddiskVolume1\Windows\System32\vulkan-1.dll that did not meet the Microsoft signing level requirements.

Date: 2025-02-13 23:10:33
Description:
Code Integrity determined that a process (\Device\HarddiskVolume1\Users\Bobik\AppData\Local\Discord\app-1.0.9149\Discord.exe) attempted to load \Device\HarddiskVolume1\Windows\System32\vulkan-1.dll that did not meet the Microsoft signing level requirements.


==================== Memory info ===========================

BIOS: American Megatrends Inc. 2103 08/19/2014
Motherboard: ASUSTeK COMPUTER INC. B85-PRO GAMER
Processor: Intel(R) Core(TM) i5-4460 CPU @ 3.20GHz
Percentage of memory in use: 35%
Total physical RAM: 24513.89 MB
Available physical RAM: 15717.11 MB
Total Virtual: 28097.89 MB
Available Virtual: 18427.71 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:463.8 GB) (Free:326.71 GB) (Model: WDC WDS500G2B0A-00SM50) NTFS ==>[drive with boot components (obtained from BCD)]
Drive d: (Rezervováno systémem) (Fixed) (Total:0.49 GB) (Free:0.45 GB) (Model: WDC WD20EZRZ-00Z5HB0) NTFS ==>[system with boot components (obtained from drive)]
Drive e: () (Fixed) (Total:1862.02 GB) (Free:968.71 GB) (Model: WDC WD20EZRZ-00Z5HB0) NTFS

\\?\Volume{a1a2ad16-0000-0000-0000-701274000000}\ () (Fixed) (Total:0.5 GB) (Free:0.08 GB) NTFS
\\?\Volume{3843cc58-0000-0000-0000-80a0d1010000}\ () (Fixed) (Total:0.51 GB) (Free:0.08 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: A1A2AD16)
Partition 1: (Active) - (Size=463.8 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=513 MB) - (Type=27)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 1863 GB) (Disk ID: 3843CC58)
Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=1862 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=519 MB) - (Type=27)

==================== End of Addition.txt =======================

Tomas.tom4
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: včera, 12:42

Re: Procesor nestíha

#2 Příspěvek od Tomas.tom4 »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17-07-2025
Ran by Bobik (administrator) on DESKTOP-VHDCHI0 (ASUS All Series) (18-07-2025 14:03:32)
Running from E:\stahovaní\FRST64.exe
Loaded Profiles: Bobik & OVRLibraryService
Platform: Microsoft Windows 10 Home Version 22H2 19045.6093 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe
(atiesrxx.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe
(Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastUI.exe <3>
(C:\Program Files (x86)\Overwolf\Overwolf.exe ->) (Overwolf Ltd -> Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\0.276.0.6\OverwolfHelper.exe
(C:\Program Files (x86)\Overwolf\Overwolf.exe ->) (Overwolf Ltd -> Overwolf LTD) C:\Program Files (x86)\Common Files\Overwolf\0.276.0.6\OverwolfHelper64.exe
(C:\Program Files (x86)\Overwolf\Overwolf.exe ->) (Overwolf Ltd -> Overwolf LTD) C:\Program Files (x86)\Overwolf\0.276.0.6\OverwolfBrowser.exe <4>
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\Google\Chrome\Application\chrome.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(C:\Program Files\Oculus\Support\oculus-remote-desktop\RemoteDesktopCompanion.exe ->) () [File not signed] C:\Program Files\Oculus\Support\oculus-remote-desktop\MQRDCrashpadHandler.exe
(C:\Program Files\Oculus\Support\oculus-runtime\OVRServer_x64.exe ->) (Meta Platforms, Inc. -> Meta Platforms Technologies LLC) C:\Program Files\Oculus\Support\oculus-remote-desktop\RemoteDesktopCompanion.exe
(C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe ->) (Meta Platforms, Inc. -> Facebook Technologies, LLC) C:\Program Files\Oculus\Support\oculus-runtime\OVRRedir.exe
(C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe ->) (Meta Platforms, Inc. -> Facebook Technologies, LLC) C:\Program Files\Oculus\Support\oculus-runtime\OVRServer_x64.exe
(C:\Program Files\WindowsApps\AppleInc.iCloud_15.3.152.0_x64__nzyj5cx40ttqa\iCloud\iCloudHome.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc) C:\Program Files\WindowsApps\AppleInc.iCloud_15.3.152.0_x64__nzyj5cx40ttqa\iCloud\iCloudCKKS.exe
(C:\Users\Bobik\Riot Games\Riot Client\RiotClientServices.exe ->) () [File not signed] C:\Users\Bobik\Riot Games\Riot Client\RiotClientCrashHandler.exe
(cmd.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_15.3.152.0_x64__nzyj5cx40ttqa\iCloud\iCloudPasswordsExtensionHelper.exe
(explorer.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_15.3.152.0_x64__nzyj5cx40ttqa\iCloud\iCloudHome.exe
(explorer.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_15.3.152.0_x64__nzyj5cx40ttqa\iCloud\iCloudPhotos.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <17>
(explorer.exe ->) (Riot Games, Inc. -> Riot Games, Inc.) C:\Users\Bobik\Riot Games\Riot Client\RiotClientServices.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <5>
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft OneDrive\25.115.0615.0002\Microsoft.SharePoint.exe
(Overwolf Ltd -> Overwolf LTD) C:\Program Files (x86)\Overwolf\Overwolf.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\afwServ.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL\jhi_service.exe
(services.exe ->) (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(services.exe ->) (Intel Corporation) [File not signed] C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe
(services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(services.exe ->) (Meta Platforms, Inc. -> Facebook Technologies, LLC) C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> ) C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe
(services.exe ->) (Nero AG -> Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(svchost.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_15.3.152.0_x64__nzyj5cx40ttqa\iCloud\ApplePhotoStreams.exe
(svchost.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_15.3.152.0_x64__nzyj5cx40ttqa\iCloud\APSDaemon.exe
(svchost.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_15.3.152.0_x64__nzyj5cx40ttqa\iCloud\iCloudOutlookConfig64.exe
(svchost.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple, Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_15.3.152.0_x64__nzyj5cx40ttqa\iCloud\secd.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\SDXHelper.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <2>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\mmgaserver.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\MoUsoCoreWorker.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(svchost.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI) C:\Windows\SysWOW64\muachost.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [798456 2025-07-08] (Avast Software s.r.o. -> Gen Digital Inc.)
HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [4143440 2025-07-10] (Riot Games, Inc. -> Riot Games, Inc.)
HKLM-x32\...\Run: [Nikon Message Center 2] => C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe [612304 2019-11-18] (NIKON CORPORATION -> Nikon Corporation)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4968328 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Run: [LGHUB] => "C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe" --minimized (No File)
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Run: [Wargaming.net Game Center] => E:\Wargaming.net\Nová složka\Wargaming.net\GameCenter\wgc.exe [2136016 2025-07-18] (Wargaming Group Limited -> Wargaming.net)
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Run: [Steam] => E:\steam\steam.exe [4435552 2025-01-28] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Run: [RiotClient] => C:\Users\Bobik\Riot Games\Riot Client\RiotClientServices.exe [74829512 2025-07-01] (Riot Games, Inc. -> Riot Games, Inc.)
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Run: [MicrosoftEdgeAutoLaunch_5C2F6520173E4793C02014A01A3B5ED6] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4113480 2025-07-16] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Run: [electron.app.U.GG] => C:\Users\Bobik\AppData\Local\Programs\U.GG\U.GG.exe [177092656 2024-06-12] (Enthusiast Gaming Inc. -> Outplayed, Inc.)
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe [1911040 2025-06-08] (Overwolf Ltd -> Overwolf Ltd.)
HKU\S-1-5-80-3238277391-1891473654-1195688043-4149050645-2494734967\...\RunOnce: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4968328 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\138.0.7204.102\Installer\chrmstp.exe [2025-07-15] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{A8504530-742B-42BC-895D-2BAD6406F698}] -> C:\Program Files\AVAST Software\Browser\Application\137.0.31047.122\Installer\chrmstp.exe [2025-07-15] (Avast Software s.r.o. -> Gen Digital Inc.)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {1AACAF93-A77A-4923-9B20-3C25FD4EAD08} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe [1551520 2015-05-14] (ASUSTeK Computer Inc. -> ) [File not signed]
Task: {35EF26F7-5763-4D09-8959-284FED11160E} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe [3497312 2025-07-02] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {FE3E8431-F20D-4590-88BF-3EF26CC51E33} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe [3497312 2025-07-02] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {88508252-0670-4C8D-BE50-BC0079735A06} - System32\Tasks\Avast Software\Avast Antivirus Patcher => C:\Program Files\Common Files\Avast Software\Icarus\avast-av\icarus.exe [8930096 2025-06-17] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {EFADFBA3-08C6-47EA-BF25-33C460A8489E} - System32\Tasks\Avast Software\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5499128 2025-07-08] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {4CB8F950-2AC6-4B93-BC11-03D25DC2C89F} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2564904 2024-11-20] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {B770F91C-EBC2-4447-A119-FD0F7751993D} - System32\Tasks\AvastBrowserProtectS-1-5-21-1000299596-2352825683-3530717420-1001 => C:\Program Files\AVAST Software\Browser\Application\AvastBrowserProtect.exe [1690008 2024-09-10] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {96E94278-E5CD-4510-8F2B-2F3ABCD4CDF3} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [192664 2024-09-22] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {2D71F3E8-BF04-40AA-9417-543E7B8AB838} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [192664 2024-09-22] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {62E07E9A-8427-41C9-AB4B-2355E6F516A5} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem140.0.7272.0{859C9E79-02A0-48B2-94A8-03843AC88C93} => C:\Program Files (x86)\Google\GoogleUpdater\140.0.7272.0\updater.exe [6836832 2025-07-01] (Google LLC -> Google LLC)
Task: {9C9E88A2-FB01-4CF0-BFD9-1BC6C5D46CF2} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\ActionsServer\ActionsServer.exe [15516032 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {B435958E-918C-420D-9D4F-785E841D8417} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28583776 2025-07-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {23A970C1-2452-4313-9F0E-CBB5EBB7D07B} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\OFFICE16\opushutil.exe [69984 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {8D6A36B0-823C-44BA-82E8-9344A0BF6CD3} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28583776 2025-07-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {3036FDE4-A4C5-4750-8F42-776543C3FC99} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311608 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {329A323C-64AF-46E6-92FB-3083B1152029} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311608 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {4915C822-24D1-4C4B-BDD7-6A6C3AEA7DCF} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\operfmon.exe [229176 2025-07-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {42D3505E-5CA3-49F9-B154-74A94961C0F4} - System32\Tasks\Microsoft\Office\Office Startup Boost => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311608 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {24121912-CDDB-4FF5-A429-CBD54962EBB8} - System32\Tasks\Microsoft\Office\Office Startup Boost Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311608 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {9ECFE9F1-740D-4B79-ABFD-B3950D5E4961} - System32\Tasks\Microsoft\Windows\Clip\ClipESUConsumer => C:\WINDOWS\system32\ClipESUConsumer.exe [283008 2025-07-09] (Microsoft Windows -> Microsoft Corporation)
Task: {E9F7BDDA-C1E0-48C7-B61E-2874C6284E57} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessPreOrder => C:\WINDOWS\system32\ClipESUConsumer.exe [283008 2025-07-09] (Microsoft Windows -> Microsoft Corporation)
Task: {8B041FCF-8589-456C-8F9F-302927DFDDC4} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessRefund => C:\WINDOWS\system32\ClipESUConsumer.exe [283008 2025-07-09] (Microsoft Windows -> Microsoft Corporation)
Task: {96874A97-9F0A-4635-A883-CD9F9C38BAF3} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [804408 2021-12-03] (MICRO-STAR INTERNATIONAL CO., LTD. -> )
Task: {75A3C795-3C46-4EB0-B219-436028520AE4} - System32\Tasks\MSISW_Host => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
Task: {3C1D4488-4D64-4777-A150-42A4D51345BD} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4224392 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {2CA725A2-BF80-469A-9854-D25477557EC6} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-1000299596-2352825683-3530717420-1000 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4224392 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {890E2D32-9C32-4351-BFEF-6942680038B1} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-1000299596-2352825683-3530717420-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4224392 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {E3AA782C-284F-4065-A752-2BA09AEF75F3} - System32\Tasks\OneDrive Startup Task-S-1-5-21-1000299596-2352825683-3530717420-1000 => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\OneDriveLauncher.exe [685960 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {B1CE7CA5-4B45-46D9-A07B-CEC47DCC1E8D} - System32\Tasks\OneDrive Startup Task-S-1-5-21-1000299596-2352825683-3530717420-1001 => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\OneDriveLauncher.exe [685960 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {0CB4BD9D-8C63-422B-89FD-4BB7EEC77CC2} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2397952 2025-06-08] (Overwolf Ltd -> Overwolf LTD) -> C:\Program Files (x86)\Overwolf\/RunningFrom Schedule

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.3.3.3 10.4.0.216 10.4.104.5
Tcpip\..\Interfaces\{926d22de-326e-4297-8811-ddde03106919}: [DhcpNameServer] 10.3.3.3 10.4.0.216 10.4.104.5

Edge:
=======
Edge Profile: C:\Users\Bobik\AppData\Local\Microsoft\Edge\User Data\Default [2025-07-18]
Edge DownloadDir: Default -> E:\stahovaní\kaja stahovani
Edge Extension: (Dokumenty Google offline) - C:\Users\Bobik\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-05-07]
Edge Extension: (Edge relevant text changes) - C:\Users\Bobik\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-29]

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-04-21] (Intel(R) Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-04-21] (Intel(R) Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2025-07-08] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=3 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1697.6\npAvastBrowserUpdate3.dll [2024-09-22] (Avast Software s.r.o. -> Gen Digital Inc.)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=9 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1697.6\npAvastBrowserUpdate3.dll [2024-09-22] (Avast Software s.r.o. -> Gen Digital Inc.)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Default [2025-07-18]
CHR DownloadDir: E:\stahovaní
CHR Extension: (Překladač Google) - C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2024-09-14]
CHR Extension: (The FFZ Add-On Pack) - C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Default\Extensions\aiimboljphncldaakcnapfolgnjonlea [2022-07-08]
CHR Extension: (BetterTTV) - C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2025-06-14]
CHR Extension: (7TV) - C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Default\Extensions\ammjkodgmmoknidbanneddgankgfejfh [2025-07-01]
CHR Extension: (FrankerFaceZ) - C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Default\Extensions\fadndhdgpmmaapbmfcknlfgcflmmmieb [2025-07-18]
CHR Extension: (Záložky na iCloudu) - C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkepacicchenbjecpbpbclokcabebhah [2022-11-21]
CHR Extension: (Dokumenty Google offline) - C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-07-01]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2025-07-18]
CHR Extension: (Google Play) - C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Default\Extensions\komhbcfkdcgmcdoenjcjheifdiabikfi [2022-07-08]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-07-08]
CHR Extension: (Hesla na iCloudu) - C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Default\Extensions\pejdijmoenmkgeppbflobdenhhabjlaj [2025-07-09]
CHR Profile: C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Guest Profile [2023-05-09]
CHR Profile: C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Profile 1 [2025-07-15]
CHR DownloadDir: E:\stahovaní\kaja stahovani
CHR Extension: (Dokumenty Google offline) - C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-07-15]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-07-08]
CHR Profile: C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\System Profile [2025-05-04]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [936456 2015-05-13] (Microsoft Windows Hardware Compatibility Publisher -> )
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [7412984 2025-07-08] (Avast Software s.r.o. -> Gen Digital Inc.)
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [192664 2024-09-22] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [1032440 2025-07-08] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [2582264 2025-07-08] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [1084664 2025-07-08] (Avast Software s.r.o. -> Gen Digital Inc.)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [192664 2024-09-22] (Avast Software s.r.o. -> Gen Digital Inc.)
S3 AvastSecureBrowserElevationService; C:\Program Files\AVAST Software\Browser\Application\137.0.31047.122\elevation_service.exe [2417800 2025-07-02] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2022-07-08] (Avast Software s.r.o. -> AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8885112 2022-09-17] (BattlEye Innovations e.K. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13045112 2025-07-05] (Microsoft Corporation -> Microsoft Corporation)
S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [11127912 2023-11-01] (Electronic Arts, Inc. -> Electronic Arts)
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncHelper.exe [3633512 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
R3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [File not signed]
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [File not signed]
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\25.115.0615.0002\OneDriveUpdaterService.exe [3885448 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
S3 OverwolfUpdater; C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2397952 2025-06-08] (Overwolf Ltd -> Overwolf LTD)
S3 OVRLibraryService; C:\Program Files\Oculus\Support\oculus-librarian\OVRLibraryService.exe [58552 2025-07-01] (Meta Platforms, Inc. -> Facebook Technologies, LLC)
R2 OVRService; C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe [435384 2025-07-01] (Meta Platforms, Inc. -> Facebook Technologies, LLC)
S3 Rockstar Service; E:\gta\RockstarService.exe [2579840 2022-09-17] (Rockstar Games, Inc. -> Rockstar Games)
S3 ucldr_battlegrounds_gl; C:\Program Files\Common Files\Wellbia.com\ucldr_battlegrounds_gl.exe [5936680 2022-09-23] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [40861536 2025-07-10] (Riot Games, Inc. -> Riot Games, Inc.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 zksvc; C:\Program Files\Common Files\PUBG\zksvc.exe [10099288 2022-09-23] (PUBG CORPORATION -> KRAFTON, Inc)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15368 2015-05-13] (Microsoft Windows Hardware Compatibility Publisher -> )
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [21088 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [245344 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [391264 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [299616 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [85568 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [28280 2024-11-20] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [29768 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [281160 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [572000 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [92256 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [72288 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [884288 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [1272928 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [202336 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [392288 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [76800 2019-12-07] (Microsoft Corporation) [File not signed]
R1 EneIo; C:\WINDOWS\system32\drivers\ene.sys [17624 2019-05-22] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 I2cHkBurn; C:\WINDOWS\system32\drivers\I2cHkBurn.sys [41760 2015-07-27] (Feature Integration Technology -> FINTEK Corp.)
R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [44880 2022-09-22] (Logitech Inc -> Logitech)
S3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [32080 2022-09-22] (Logitech Inc -> Logitech)
R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [73040 2022-09-22] (Logitech Inc -> Logitech)
R3 oculusvad_oculusvad; C:\WINDOWS\System32\drivers\oculusvad.sys [75280 2022-10-05] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
R3 Oculus_ViGEmBus; C:\WINDOWS\System32\drivers\Oculus_ViGEmBus.sys [32856 2022-10-05] (Oculus VR, LLC -> Facebook Inc.)
S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [36824 2020-07-13] (MICRO-STAR INTERNATIONAL CO., LTD. -> )
R1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [23384840 2025-07-10] (Riot Games, Inc. -> Riot Games, Inc.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 xhunter1; C:\WINDOWS\xhunter1.sys [1445920 2022-09-23] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2025-07-18 14:00 - 2025-07-18 14:03 - 000000000 ____D C:\FRST
2025-07-18 13:56 - 2025-07-18 13:57 - 000024866 _____ C:\Users\Bobik\OneDrive\Plocha\Nový textový dokument.txt
2025-07-15 19:51 - 2025-07-15 19:51 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2025-07-09 20:47 - 2025-07-09 20:47 - 000023172 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2025-07-09 20:47 - 2025-07-09 20:47 - 000023172 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2025-07-08 18:35 - 2025-07-08 18:35 - 000320248 _____ (Gen Digital Inc.) C:\WINDOWS\system32\aswBoot.exe

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2025-07-18 14:03 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2025-07-18 13:41 - 2022-09-15 14:05 - 000000001 _____ C:\WINDOWS\vgkbootstatus.dat
2025-07-18 13:38 - 2024-06-15 00:56 - 000000000 ____D C:\Program Files\Riot Vanguard
2025-07-18 13:37 - 2022-07-08 14:02 - 000000000 ____D C:\Users\Bobik\AppData\Local\CrashDumps
2025-07-18 13:36 - 2024-03-23 16:19 - 000000000 ____D C:\Users\Bobik\AppData\Roaming\riot-client-ux
2025-07-18 13:35 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-07-18 13:02 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-07-18 13:02 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-07-18 12:39 - 2022-07-12 23:36 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-07-18 12:35 - 2024-11-20 15:20 - 000000000 ____D C:\Users\Bobik\AppData\Roaming\Oculus Remote Desktop
2025-07-18 12:35 - 2022-10-05 21:07 - 000000000 ____D C:\Program Files\Oculus
2025-07-18 12:35 - 2022-10-05 20:59 - 000000000 ____D C:\Users\Bobik\AppData\Local\Oculus
2025-07-18 12:35 - 2020-11-19 01:32 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-07-18 12:34 - 2024-12-30 16:06 - 000000000 ___RD C:\Users\Bobik\iCloudPhotos
2025-07-18 12:34 - 2023-01-04 00:34 - 000000000 ____D C:\Users\Bobik\AppData\Local\Overwolf
2025-07-18 12:33 - 2022-07-08 17:06 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2025-07-18 12:33 - 2022-07-08 12:40 - 000000000 ____D C:\Users\Bobik\AppData\Local\Packages
2025-07-15 22:53 - 2020-11-19 00:29 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-07-15 19:50 - 2022-07-08 13:59 - 000000000 ____D C:\Program Files\Microsoft Office
2025-07-15 19:47 - 2024-09-22 14:52 - 000002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Secure Browser.lnk
2025-07-15 19:47 - 2022-07-08 23:18 - 001693140 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-07-15 19:47 - 2019-12-07 16:41 - 000716770 _____ C:\WINDOWS\system32\perfh005.dat
2025-07-15 19:47 - 2019-12-07 16:41 - 000144948 _____ C:\WINDOWS\system32\perfc005.dat
2025-07-15 19:46 - 2025-02-08 17:40 - 000003552 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-1000299596-2352825683-3530717420-1001
2025-07-15 19:46 - 2025-02-08 17:40 - 000003552 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-1000299596-2352825683-3530717420-1000
2025-07-15 19:46 - 2022-07-10 09:54 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2025-07-15 19:46 - 2022-07-08 23:14 - 000003596 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1000299596-2352825683-3530717420-1001
2025-07-15 19:46 - 2022-07-08 23:14 - 000003596 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1000299596-2352825683-3530717420-1000
2025-07-15 19:46 - 2022-07-08 23:14 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2025-07-15 19:46 - 2022-07-08 14:04 - 000002130 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-07-15 19:41 - 2022-07-08 12:53 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2025-07-15 19:40 - 2024-09-22 14:49 - 134222904 _____ C:\WINDOWS\392667600.dat
2025-07-15 19:40 - 2022-07-08 23:09 - 000008192 ___SH C:\DumpStack.log.tmp
2025-07-15 19:40 - 2022-07-08 13:06 - 000000000 ____D C:\ProgramData\Avast Software
2025-07-15 19:40 - 2020-11-19 01:33 - 000000000 ____D C:\ProgramData\Packages
2025-07-15 19:40 - 2020-11-19 01:30 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-07-09 22:31 - 2022-07-08 12:41 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin
2025-07-09 22:31 - 2020-11-19 00:29 - 000438072 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2025-07-09 22:31 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\schemas
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2025-07-09 22:29 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing
2025-07-09 20:52 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-07-09 20:47 - 2020-11-19 01:32 - 003016192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2025-07-09 20:47 - 2016-07-16 14:58 - 000420264 __RSH C:\bootmgr
2025-07-09 20:37 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2025-07-09 03:50 - 2024-11-23 11:24 - 000002148 _____ C:\WINDOWS\system32\Tasks\MSISW_Host
2025-07-09 03:50 - 2023-11-30 23:08 - 000003270 _____ C:\WINDOWS\system32\Tasks\Overwolf Updater Task
2025-07-09 03:50 - 2022-07-08 23:14 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2025-07-09 03:50 - 2020-11-19 01:32 - 000003568 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-07-09 03:50 - 2020-11-19 01:32 - 000003342 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-07-08 18:36 - 2022-07-08 17:16 - 000000000 ____D C:\ProgramData\Riot Games
2025-07-08 18:35 - 2022-09-23 23:08 - 000021088 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2025-07-08 18:35 - 2022-07-08 13:07 - 001272928 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswSP.sys
2025-07-08 18:35 - 2022-07-08 13:07 - 000884288 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswSnx.sys
2025-07-08 18:35 - 2022-07-08 13:07 - 000572000 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2025-07-08 18:35 - 2022-07-08 13:07 - 000392288 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswVmm.sys
2025-07-08 18:35 - 2022-07-08 13:07 - 000391264 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2025-07-08 18:35 - 2022-07-08 13:07 - 000299616 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2025-07-08 18:35 - 2022-07-08 13:07 - 000281160 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2025-07-08 18:35 - 2022-07-08 13:07 - 000245344 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswArPot.sys
2025-07-08 18:35 - 2022-07-08 13:07 - 000092256 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2025-07-08 18:35 - 2022-07-08 13:07 - 000085568 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2025-07-08 18:35 - 2022-07-08 13:07 - 000072288 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2025-07-08 18:35 - 2022-07-08 13:07 - 000029768 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswKbd.sys
2025-07-08 08:18 - 2022-07-08 13:08 - 000000000 ____D C:\Program Files\ruxim

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119405
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Procesor nestíha

#3 Příspěvek od Rudy »

Zdravím!
Spusťte nejprve tuto utilitu:
Ulozte na plochu AdwCleaner https://malwarebytes.com/adwcleaner/ nebo http://www.bleepingcomputer.com/download/adwcleaner/

ukoncete vsechny programy
odsouhlaste licencni podmiky (EULA) klikem na Souhlasim
kliknete pravym na ikonu AdwCleaneru a vyberte Spustit jako spravce (v pripade Win XP spustte obycejne dvojklikem)
kliknete na Skenovat nyni (Scan now), pote na Cisteni a opravy (Clean and Repair)
po restartu na Vas vyskoci log (pripadne jej najdete v C:\AdwCleaner\Logs\AdwCleaner[Cxx].txt), jehoz obsah zkopirujte do pristi odpovedi
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Tomas.tom4
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: včera, 12:42

Re: Procesor nestíha

#4 Příspěvek od Tomas.tom4 »

Děkuji za vaší rychlou reakci a pomoc, cením vaši práci
# -------------------------------
# Malwarebytes AdwCleaner 8.5.1.601
# -------------------------------
# Build: 03-26-2025
# Database: 2025-04-04.3 (Cloud)
# Support: https://www.malwarebytes.com/support
#
# -------------------------------
# Mode: Clean
# -------------------------------
# Start: 07-18-2025
# Duration: 00:00:01
# OS: Windows 10 (Build 19045.6093)
# Cleaned: 4
# Failed: 0


***** [ Services ] *****

No malicious services cleaned.

***** [ Folders ] *****

Deleted C:\ProgramData\54F3DE4E-B7BA-4EBD-8B3B-385D272CC583

***** [ Files ] *****

No malicious files cleaned.

***** [ DLL ] *****

No malicious DLLs cleaned.

***** [ WMI ] *****

No malicious WMI cleaned.

***** [ Shortcuts ] *****

No malicious shortcuts cleaned.

***** [ Tasks ] *****

No malicious tasks cleaned.

***** [ Registry ] *****

No malicious registry entries cleaned.

***** [ Chromium (and derivatives) ] *****

Deleted ikgjglmlehllifdekcggaapkaplbdpje

***** [ Chromium URLs ] *****

No malicious Chromium URLs cleaned.

***** [ Firefox (and derivatives) ] *****

No malicious Firefox entries cleaned.

***** [ Firefox URLs ] *****

No malicious Firefox URLs cleaned.

***** [ Hosts File Entries ] *****

No malicious hosts file entries cleaned.

***** [ Preinstalled Software ] *****

Deleted Preinstalled.ASUSProductRegistration Folder C:\Program Files (x86)\ASUS\APRP
Deleted Preinstalled.ASUSProductRegistration Registry HKLM\Software\Wow6432Node\\Microsoft\Windows\CurrentVersion\Uninstall\{C87D79F6-F813-4812-B7A9-CCCAAB8B1188}


*************************

[+] Delete Tracing Keys
[+] Reset Winsock

*************************

AdwCleaner[S00].txt - [1717 octets] - [18/07/2025 15:12:07]
AdwCleaner[S01].txt - [1778 octets] - [18/07/2025 15:15:51]

########## EOF - C:\AdwCleaner\Logs\AdwCleaner[C01].txt ##########

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119405
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Procesor nestíha

#5 Příspěvek od Rudy »

Něco našel a smazal. Teď dejte nové logy FRST+Addition.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Tomas.tom4
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: včera, 12:42

Re: Procesor nestíha

#6 Příspěvek od Tomas.tom4 »

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 17-07-2025
Ran by Bobik (18-07-2025 16:20:32)
Running from E:\stahovaní
Microsoft Windows 10 Home Version 22H2 19045.6093 (X64) (2022-07-08 21:14:23)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-1000299596-2352825683-3530717420-500 - Administrator - Disabled)
Bobik (S-1-5-21-1000299596-2352825683-3530717420-1001 - Administrator - Enabled) => C:\Users\Bobik
DefaultAccount (S-1-5-21-1000299596-2352825683-3530717420-503 - Limited - Disabled)
defaultuser0 (S-1-5-21-1000299596-2352825683-3530717420-1000 - Limited - Disabled) => C:\Users\defaultuser0
Guest (S-1-5-21-1000299596-2352825683-3530717420-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-1000299596-2352825683-3530717420-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Disabled - Out of date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Avast Antivirus (Enabled - Up to date) {EB19B86E-3998-C706-90EF-92B41EB091AF}
AS: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AS: Avast Antivirus (Enabled - Up to date) {5078598A-1FA2-C888-AA5F-A9C66537DB12}
FW: Avast Antivirus (Enabled) {D322394B-73F7-C65E-BBB0-3B81E063D6D4}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

AMD Catalyst Install Manager (HKLM\...\{66AFB595-BC05-2913-7696-6D58F9B733E1}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
Avast Free Antivirus (HKLM\...\Avast Antivirus) (Version: 25.6.10221.2878 - Gen Digital Inc.)
Avast Secure Browser (HKLM-x32\...\Avast Secure Browser) (Version: 137.0.31047.122 - Autoři prohlížeče Avast Secure Browser)
Avast Update Helper (HKLM-x32\...\{19C3AB22-3718-4E4D-B203-242F5001565B}) (Version: 1.8.1697.6 - AVAST Software) Hidden
Discord (HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Discord) (Version: 1.0.9002 - Discord Inc.)
EA app (HKLM\...\{C2622085-ABD2-49E5-8AB9-D3D6A642C091}) (Version: 13.58.0.5571 - Electronic Arts) Hidden
EA app (HKLM-x32\...\{333b2313-8cdf-4394-80bf-5283fd631ae0}) (Version: 13.58.0.5571 - Electronic Arts)
ENE RGB HAL (HKLM\...\{87316426-A33E-41E9-942B-968E928A9A47}) (Version: 1.00.10 - Ene Tech.) Hidden
ENE RGB HAL (HKLM-x32\...\{9f93601b-15ea-4e69-8d7c-dfa0f29ae04e}) (Version: 1.00.10 - Ene Tech.) Hidden
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 138.0.7204.102 - Google LLC)
Grand Theft Auto V (HKLM-x32\...\{5EFC6C07-6B87-43FC-9524-F9E967241741}) (Version: 1.0.2699.0 - Rockstar Games)
iCloud Outlook (HKLM\...\{542806EA-AFEA-49B5-BC9D-DCAE98BA393B}) (Version: 13.4.0.99 - Apple Inc.)
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 11.0.0.1156 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{5D1BFBB8-4923-4388-9559-C86F5D9E2740}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{B434599E-E35F-4612-9803-A2FB7A8E066B}) (Version: 11.0.0.1156 - Intel Corporation) Hidden
Intel(R) ME UninstallLegacy (HKLM\...\{ECA145AF-55D0-42BA-870F-4213F0198A46}) (Version: 1.0.1.0 - Intel Corporation) Hidden
Intel(R) Processor Graphics (HKLM-x32\...\{F0E3AD40-2BBD-4360-9C76-B9AC9A5886EA}) (Version: 20.19.15.4531 - Intel Corporation)
Intel® Security Assist (HKLM-x32\...\{4B230374-6475-4A73-BA6E-41015E9C5013}) (Version: 1.0.0.532 - Intel Corporation)
Intel® Trusted Connect Service Client (HKLM\...\{7D84E343-A23D-451C-B123-0195B2D903A6}) (Version: 1.42.17.0 - Intel Corporation) Hidden
Kontrola stavu osobního počítače s Windows (HKLM\...\{7DED818B-F556-4115-9CC0-ACE3F614CE63}) (Version: 4.0.2410.23001 - Microsoft Corporation)
Kontrola stavu osobního počítače s Windows (HKLM\...\{D1F15F7A-707A-42BD-BE6B-3380616F796D}) (Version: 3.6.2204.08001 - Microsoft Corporation)
League of Legends (HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Riot Game league_of_legends.live) (Version: - Riot Games, Inc)
Microsoft 365 Apps pro velké organizace - cs-cz (HKLM\...\O365ProPlusRetail - cs-cz) (Version: 16.0.18925.20158 - Microsoft Corporation)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 138.0.3351.95 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 138.0.3351.95 - Microsoft Corporation) Hidden
Microsoft OneDrive (HKLM\...\OneDriveSetup.exe) (Version: 25.115.0615.0002 - Microsoft Corporation)
Microsoft Teams (HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Teams) (Version: 1.5.00.17656 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{1FC1A6C2-576E-489A-9B4A-92D21F542136}) (Version: 3.74.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.17 (HKLM-x32\...\{9A25302D-30C0-39D9-BD6F-21E6EC160475}) (Version: 9.0.30729 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.40.33816 (HKLM-x32\...\{77169412-f642-45e7-b533-0c6f48de12f9}) (Version: 14.40.33816.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.40.33816 (HKLM-x32\...\{4373d0b5-4457-4a80-bad9-029de8df097b}) (Version: 14.40.33816.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.40.33816 (HKLM\...\{5904914B-9FC8-44C2-AE48-5C7F30A603EC}) (Version: 14.40.33816 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.40.33816 (HKLM\...\{560D2DA4-096E-4868-B22A-DA6418FDE6FB}) (Version: 14.40.33816 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.40.33816 (HKLM-x32\...\{0DF1D9F9-6038-4641-AB6D-13DD654758A7}) (Version: 14.40.33816 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.40.33816 (HKLM-x32\...\{D7A66DA5-B103-45C1-A0A7-736C08E2F464}) (Version: 14.40.33816 - Microsoft Corporation) Hidden
Mobalytics (HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Overwolf_kccgdmdllebbgifgafjfmcjdgmhoknfhjdnobcho) (Version: 1.406.1 - Overwolf app)
MSI Afterburner 4.6.4 (HKLM-x32\...\Afterburner) (Version: 4.6.4 - MSI Co., LTD)
MSI Display Kit(x64) (HKLM\...\{5A8E3E72-D260-4DB3-BCE3-AF47C364F275}) (Version: 0.0.2.3 - MSI) Hidden
MSI Display Kit(x64) (HKLM-x32\...\Installshield_{5A8E3E72-D260-4DB3-BCE3-AF47C364F275}) (Version: 0.0.2.3 - MICRO-STAR INT'L,.LTD.)
Nero ControlCenter (HKLM-x32\...\{ABC88553-8770-4B97-B43E-5A90647A5B63}) (Version: 11.4.2006 - Nero AG) Hidden
Nero Core (HKLM-x32\...\{EF1C9DB5-D928-4F38-89DE-B1BB8911462E}) (Version: 1.0.01700 - Nero AG)
Nero Core Components (HKLM-x32\...\{BEBEE34D-84A2-4EDD-8BEA-96CC54371263}) (Version: 11.7.3045 - Nero AG) Hidden
Nero KnowHow PLUS (HKLM-x32\...\{AACDE618-4162-4074-B01D-67C5E8D07233}) (Version: 1.3.5005 - Nero AG) Hidden
Nero Launcher (HKLM-x32\...\{7BC834B5-9093-4A6D-8303-01760E4E61B2}) (Version: 20.1.1020 - Nero AG) Hidden
Nero Update (HKLM-x32\...\{65BB0407-4CC8-4DC7-952E-3EEFDF05602A}) (Version: 20.0.1006 - Nero AG) Hidden
Nikon Message Center 2 (HKLM-x32\...\{B014EE44-9197-4513-9613-71E6EB1B514E}) (Version: 2.4.1 - Nikon Corporation)
Nikon Transfer 2 (HKLM-x32\...\{3FC564E4-C8EA-4887-AEF3-268962172514}) (Version: 2.15.0 - Nikon Corporation)
NX Studio (HKLM\...\{F5B8CBD1-AF89-4DDD-857E-AF5D66743A41}) (Version: 1.2.1 - Nikon Corporation)
Oculus (HKLM\...\Oculus) (Version: <3 - Facebook Technologies, LLC)
Office 16 Click-to-Run Extensibility Component (HKLM\...\{90160000-008C-0000-1000-0000000FF1CE}) (Version: 16.0.18925.20158 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-007E-0000-1000-0000000FF1CE}) (Version: 16.0.18925.20158 - Microsoft Corporation) Hidden
Overwolf (HKLM-x32\...\Overwolf) (Version: 0.280.1.4 - Overwolf Ltd.)
PatchMe (HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Overwolf_nocjbbigpcpeibhdhhpbmbakhafjpnbdnjfkfngb) (Version: 2.2.8.0 - Overwolf app)
qFlipper 1.3.3 (HKLM\...\qFlipper) (Version: 1.3.3 - Flipper Devices Inc.)
Riot Vanguard (HKLM\...\Riot Vanguard) (Version: - Riot Games, Inc.)
Rockstar Games Launcher (HKLM-x32\...\Rockstar Games Launcher) (Version: 1.0.63.962 - Rockstar Games)
Rockstar Games Social Club (HKLM-x32\...\Rockstar Games Social Club) (Version: 2.1.5.1 - Rockstar Games)
Starsky & Hutch (HKLM-x32\...\{A12BBE50-840D-4BD0-89D8-585F7C6AA7B4}_is1) (Version: 1.0 - US - ACTION, s.r.o.)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
Teams Machine-Wide Installer (HKLM-x32\...\{731F6BAA-A986-45A4-8936-7C3AAAAA760B}) (Version: 1.5.0.8070 - Microsoft Corporation)
U.GG 1.11.5 (HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\aca90cad-9059-53b1-8dc9-f846273ebdf3) (Version: 1.11.5 - Outplayed, Inc.)
Update for Windows 10 for x64-based Systems (KB4480730) (HKLM\...\{0746492E-47B6-4251-940C-44462DFD74BB}) (Version: 2.55.0.0 - Microsoft Corporation)
Update for x64-based Windows Systems (KB5001716) (HKLM\...\{B8D93870-98D1-4980-AFCA-E26563CDFB79}) (Version: 8.94.0.0 - Microsoft Corporation)
UpdateAssistant (HKLM\...\{76A22428-2400-4521-96AF-7AC4A6174CA5}) (Version: 1.25.0.0 - Microsoft Corporation) Hidden
VALORANT (HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Riot Game valorant.live) (Version: - Riot Games, Inc)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.18 - VideoLAN)
Vulkan Run Time Libraries 1.0.65.1 (HKLM\...\VulkanRT1.0.65.1) (Version: 1.0.65.1 - LunarG, Inc.) Hidden
Wargaming.net Game Center (HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Wargaming.net Game Center) (Version: 25.3.0.9647 - Wargaming.net)
World of Tanks EU (HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\928966331) (Version: - Wargaming.net)

Packages:
=========
Bubble Witch 3 Saga -> C:\Program Files\WindowsApps\king.com.BubbleWitch3Saga_10.1.2.0_x64__kgqvnymyfvs32 [2025-05-07] (king.com)
Candy Crush Soda Saga -> C:\Program Files\WindowsApps\king.com.CandyCrushSodaSaga_1.297.400.0_x64__kgqvnymyfvs32 [2025-07-15] (king.com)
Doplněk multimediálního modulu pro aplikaci Fotografie -> C:\Program Files\WindowsApps\Microsoft.Photos.MediaEngineDLC_1.0.0.0_x64__8wekyb3d8bbwe [2023-04-01] (Microsoft Corporation)
Hidden City: Hidden Object Adventure -> C:\Program Files\WindowsApps\828B5831.HiddenCityMysteryofShadows_1.86.8600.0_x64__ytsefhwckbdv6 [2025-07-18] (G5 Entertainment AB)
iCloud -> C:\Program Files\WindowsApps\AppleInc.iCloud_15.3.152.0_x64__nzyj5cx40ttqa [2025-06-14] (Apple Inc.) [Startup Task]
iTunes -> C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa [2025-05-04] (Apple Inc.) [Startup Task]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2022-07-08] (Microsoft Corporation) [MS Ad]
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x86__8wekyb3d8bbwe [2022-07-08] (Microsoft Corporation) [MS Ad]
OfficePushNotificationsUtility -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16 [2025-07-15] ()
OneDrive -> C:\Program Files\WindowsApps\microsoft.microsoftskydrive_19.23.19.0_x64__8wekyb3d8bbwe [2025-06-14] (Microsoft Corporation)
Spotify – hudba a podcasty -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.268.528.0_x64__zpdnekdrzrea0 [2025-07-18] (Spotify AB) [Startup Task]
WinZip Universal -> C:\Program Files\WindowsApps\WinZipComputing.WinZipUniversal_1.5.13516.0_x64__3ykzqggjzj4z0 [2025-06-14] (WinZip Computing)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1000299596-2352825683-3530717420-1001_Classes\CLSID\{04271989-C4D2-0E86-058E-A3400F0D1196} -> [OneDrive] => {a52bba46-e9e1-435f-b3d9-28daa648c0f6}
CustomCLSID: HKU\S-1-5-21-1000299596-2352825683-3530717420-1001_Classes\CLSID\{73DC1A42-0AC7-4068-95BA-363750E7489F} -> [Fotky na iCloudu] => C:\Users\Bobik\iCloudPhotos\Photos [2024-12-30 16:06]
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-07-08] (Avast Software s.r.o. -> Gen Digital Inc.)
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers-x32: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-07-08] (Avast Software s.r.o. -> Gen Digital Inc.)
ContextMenuHandlers1: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers1: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-07-08] (Avast Software s.r.o. -> Gen Digital Inc.)
ContextMenuHandlers3: [00asw] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-07-08] (Avast Software s.r.o. -> Gen Digital Inc.)
ContextMenuHandlers4: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [ FileSyncEx] -> {CB3D0F55-BC2C-4C1A-85ED-23ED75B5106B} => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncShell64.dll [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
ContextMenuHandlers5: [igfxDTCM] -> {9B5F5829-A529-4B12-814A-E81BCB8D93FC} => C:\WINDOWS\system32\igfxDTCM.dll [2017-03-17] (Microsoft Windows Hardware Compatibility Publisher -> Intel Corporation)
ContextMenuHandlers6: [avast] -> {472083B0-C522-11CF-8763-00608CC02F24} => C:\Program Files\Avast Software\Avast\ashShell.dll [2025-07-08] (Avast Software s.r.o. -> Gen Digital Inc.)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32-x32: [vidc.VP60] => C:\WINDOWS\system32\vp6vfw.dll
HKLM\...\Drivers32-x32: [vidc.VP61] => C:\WINDOWS\system32\vp6vfw.dll

==================== Shortcuts & WMI ========================

(The entries could be listed to be restored or removed.)

ShortcutWithArgument: C:\Users\Bobik\OneDrive\Plocha\kajča - Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 1"
ShortcutWithArgument: C:\Users\Bobik\OneDrive\Plocha\Tomas - Chrome - kopie.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Default"
ShortcutWithArgument: C:\Users\Bobik\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\TaskBar\Tomas - Chrome - kopie.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Default"
ShortcutWithArgument: C:\Users\Bobik\AppData\Roaming\Microsoft\Internet Explorer\Quick Launch\User Pinned\ImplicitAppShortcuts\69639df789022856\kajča - Chrome.lnk -> C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC) -> --profile-directory="Profile 1"

==================== Loaded Modules (Whitelisted) =============

2022-07-08 14:03 - 2022-07-08 14:03 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\AppvIsvSubsystems64.dll] C:\Program Files\Microsoft Office\Root\Office16\AppVIsvSubsystems64.dll
2022-07-08 14:03 - 2022-07-08 14:03 - 000000000 ____L (Microsoft Corporation) [symlink -> C:\Program Files\Common Files\Microsoft Shared\ClickToRun\C2R64.dll] C:\Program Files\Microsoft Office\Root\Office16\c2r64.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\desktop.ini:B1DA6C571C [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk:A1B76439FE [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk:21661D084B [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk:B96E9B8455 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk:60EC9648C0 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook (classic).lnk:5465085A2F [2586]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook (classic).lnk:BE800952D3 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk:F20EF51E1F [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk:1DC1525F34 [3442]
AlternateDataStreams: C:\Users\Bobik\Data aplikací:00e481b5e22dbe1f649fcddd505d3eb7 [394]
AlternateDataStreams: C:\Users\Bobik\AppData\Roaming:00e481b5e22dbe1f649fcddd505d3eb7 [394]

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\aswSP.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\aswSP.sys => ""="Driver"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) =============

BHO: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\Office16\OCHelper.dll [2025-07-08] (Microsoft Corporation -> Microsoft Corporation)
BHO-x32: Skype for Business Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\OCHelper.dll [2025-07-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-07-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-07-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-07-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-07-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-07-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-07-08] (Microsoft Corporation -> Microsoft Corporation)
Handler: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\Office16\MSOSB.DLL [2025-07-08] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\MSOSB.DLL [2025-07-08] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, it will be removed from the registry.)

IE trusted site: HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\sharepoint.com -> hxxps://ssier-files.sharepoint.com

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2016-07-16 13:47 - 2016-07-16 13:45 - 000000824 _____ C:\WINDOWS\system32\drivers\etc\hosts

==================== Network ===========================

(Currently there is no automatic fix for this section.)

DNS Servers: 10.3.3.3 - 10.4.0.216
Windows Firewall is enabled.

Network Binding:
=============
Ethernet: Intel(R) Ethernet Connection I217-V -> e1d68x64.sys

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files (x86)\Intel\iCLS Client\;C:\Program Files\Intel\iCLS Client\;C:\Program Files\Oculus\Support\oculus-runtime;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\WINDOWS\System32\OpenSSH\;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT;C:\Program Files\Intel\Intel(R) Management Engine Components\IPT
HKU\S-1-5-21-1000299596-2352825683-3530717420-1000\Control Panel\Desktop\\Wallpaper -> C:\Windows\Web\Wallpaper\Windows\img0.jpg
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Bobik\AppData\Local\Microsoft\Windows\Themes\RoamedThemeFiles\DesktopBackground\img13.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: Warn)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\AppHost => (EnableWebContentEvaluation: 0)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: )
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)


==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run: => "Riot Vanguard"
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\StartupApproved\Run: => "Wargaming.net Game Center"
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\StartupApproved\Run: => "Discord"
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_5C2F6520173E4793C02014A01A3B5ED6"
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\StartupApproved\Run: => "electron.app.U.GG"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{C5969A92-6A24-4A95-A15B-758238895855}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> Gen Digital Inc.)
FirewallRules: [{1D0A0848-F49C-4159-94FF-3E0BABCAB48A}] => (Allow) C:\Program Files\Avast Software\Avast\AvastUI.exe (Avast Software s.r.o. -> Gen Digital Inc.)
FirewallRules: [{64E93A53-EA76-40FA-AF76-5397ABA17D22}] => (Allow) E:\steam\steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{387216BD-2DE7-477E-8484-62405EF5619B}] => (Allow) E:\steam\steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{96B1E865-02AA-4054-86AD-A09447993219}] => (Allow) E:\steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{AE482683-C16B-4860-8912-1A2792BC5DDB}] => (Allow) E:\steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{32F13742-51A2-4821-9454-3612D57369DF}] => (Allow) E:\steam\steamapps\common\Mafia\Mafia\Game.exe (Illusion Softworks) [File not signed]
FirewallRules: [{D0CC91D9-01EA-494E-9AC3-446962FFAEB0}] => (Allow) E:\steam\steamapps\common\Mafia\Mafia\Game.exe (Illusion Softworks) [File not signed]
FirewallRules: [{243F09C9-3CC0-4A29-B4CD-20F5A0B4DF10}] => (Allow) E:\steam\steamapps\common\Mafia\Mafia\Setup.exe () [File not signed]
FirewallRules: [{851C1980-DE01-4496-A026-975D3A73472F}] => (Allow) E:\steam\steamapps\common\Mafia\Mafia\Setup.exe () [File not signed]
FirewallRules: [{927423B5-E0A0-444B-A66F-F0B45CC6A85C}] => (Allow) E:\steam\steamapps\common\Heroes & Generals\hngsteamlauncher.exe (TLM Partners Inc. -> Reto-Moto ApS) [File not signed]
FirewallRules: [{4B757CC5-31E1-4127-B275-F3416881CA07}] => (Allow) E:\steam\steamapps\common\Heroes & Generals\hngsteamlauncher.exe (TLM Partners Inc. -> Reto-Moto ApS) [File not signed]
FirewallRules: [{A5BAB06A-5B43-4166-9B35-D81147D3766E}] => (Allow) E:\steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe => No File
FirewallRules: [{AB976045-1FE4-4F9C-AE45-38B2E6D52689}] => (Allow) E:\steam\steamapps\common\Counter-Strike Global Offensive\csgo.exe => No File
FirewallRules: [{FC6C2A6A-3260-4AA9-A1B5-B3CD77177B68}] => (Allow) E:\steam\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe (PUBG CORPORATION -> KRAFTON, Inc.)
FirewallRules: [{881780B9-A58A-40B3-865C-60E0E51AE537}] => (Allow) E:\steam\steamapps\common\PUBG\TslGame\Binaries\Win64\ExecPubg.exe (PUBG CORPORATION -> KRAFTON, Inc.)
FirewallRules: [{69560987-0E27-4778-9946-1F43CE08B7F4}] => (Allow) E:\steam\steamapps\common\Team Fortress 2\hl2.exe => No File
FirewallRules: [{C1E1C939-76FB-4BC7-AF4D-F62DF259966F}] => (Allow) E:\steam\steamapps\common\Team Fortress 2\hl2.exe => No File
FirewallRules: [{A919BC48-9452-466F-8582-463830C308B3}] => (Allow) E:\steam\steamapps\common\SteamVR\bin\win32\vrstartup.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{87D46C86-A059-48C7-A3F6-CADBE4207345}] => (Allow) E:\steam\steamapps\common\SteamVR\bin\win32\vrstartup.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{93D70C6D-BD58-4D8C-B511-75CFD5CE95EC}] => (Allow) E:\steam\steamapps\common\SteamVR\tools\steamvr_environments\game\bin\win64\steamtours.exe (Valve Corp. -> )
FirewallRules: [{38D47C1A-86CB-4C28-9359-5035A796A894}] => (Allow) E:\steam\steamapps\common\SteamVR\tools\steamvr_environments\game\bin\win64\steamtours.exe (Valve Corp. -> )
FirewallRules: [{77A41650-C868-46D4-BACC-6C7DB012FBF6}] => (Allow) E:\steam\steamapps\common\SteamVR\tools\steamvr_environments\game\bin\win64\steamtourscfg.exe (Valve Corp. -> )
FirewallRules: [{F3AE2843-E8BB-44CB-BC33-A2104684A7DE}] => (Allow) E:\steam\steamapps\common\SteamVR\tools\steamvr_environments\game\bin\win64\steamtourscfg.exe (Valve Corp. -> )
FirewallRules: [{54BC7D6D-C028-4027-AF22-DAF4AD6577AF}] => (Allow) C:\Program Files\Oculus\Support\oculus-runtime\OVRServer_x64.exe (Meta Platforms, Inc. -> Facebook Technologies, LLC)
FirewallRules: [{5FC0CDF2-170B-44C7-ABE6-4768C5CEF7F7}] => (Allow) C:\Program Files\Oculus\Support\oculus-runtime\OVRServer_x64.exe (Meta Platforms, Inc. -> Facebook Technologies, LLC)
FirewallRules: [{4D7500D7-8F8B-4AE4-ABFA-0CECC6EB22DC}] => (Allow) C:\Program Files\Oculus\Support\oculus-runtime\OVRRedir.exe (Meta Platforms, Inc. -> Facebook Technologies, LLC)
FirewallRules: [{1D58261B-8672-442F-B522-912C37444C9C}] => (Allow) C:\Program Files\Oculus\Support\oculus-runtime\OVRRedir.exe (Meta Platforms, Inc. -> Facebook Technologies, LLC)
FirewallRules: [{A6857835-F023-4EAD-82E2-70AEBCC74257}] => (Allow) C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe (Meta Platforms, Inc. -> Facebook Technologies, LLC)
FirewallRules: [{4A37093B-6789-4694-B836-DD91ACEF9E8A}] => (Allow) C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe (Meta Platforms, Inc. -> Facebook Technologies, LLC)
FirewallRules: [{36D56BB9-63B9-4235-BA22-4943C3618984}] => (Allow) C:\Program Files\Oculus\Support\oculus-dash\dash\bin\OculusDash.exe (Meta Platforms, Inc. -> )
FirewallRules: [{F2E23B48-006B-4624-B0DD-37A057F49E4F}] => (Allow) C:\Program Files\Oculus\Support\oculus-dash\dash\bin\OculusDash.exe (Meta Platforms, Inc. -> )
FirewallRules: [{E175B807-D5A7-4C0C-A96D-7FBF61EF583E}] => (Allow) C:\Program Files\Oculus\Support\oculus-worlds\Home2.exe => No File
FirewallRules: [{48C58358-E5F5-4CFC-A29F-8B4AAE5CF96A}] => (Allow) C:\Program Files\Oculus\Support\oculus-worlds\Home2.exe => No File
FirewallRules: [{04735EA4-F9A0-427D-8754-899B4D80134C}] => (Allow) C:\Program Files\Oculus\Support\oculus-worlds\Home2\Binaries\Win64\Home2-Win64-Shipping.exe => No File
FirewallRules: [{5D88153E-A647-4BF3-9B9C-B38FF531182D}] => (Allow) C:\Program Files\Oculus\Support\oculus-worlds\Home2\Binaries\Win64\Home2-Win64-Shipping.exe => No File
FirewallRules: [{C9071290-44FA-49D8-BE98-1EE68D748175}] => (Allow) C:\Program Files\Oculus\Support\oculus-worlds\Engine\Binaries\Win64\UnrealCEFSubProcess.exe => No File
FirewallRules: [{13246145-AA56-4FFA-AA87-17CCD6EFBAE1}] => (Allow) C:\Program Files\Oculus\Support\oculus-worlds\Engine\Binaries\Win64\UnrealCEFSubProcess.exe => No File
FirewallRules: [{52B9EE27-950C-416D-B2DC-57A720177FD2}] => (Allow) C:\Program Files\Oculus\Support\oculus-client\OculusClient.exe (Oculus VR, LLC) [File not signed]
FirewallRules: [{5FFA3A20-BC22-440D-82C9-D2FAAAE9E9A2}] => (Allow) C:\Program Files\Oculus\Support\oculus-client\OculusClient.exe (Oculus VR, LLC) [File not signed]
FirewallRules: [{7979AC0D-2D97-45B6-8845-7479FA5570F6}] => (Allow) E:\steam\steamapps\common\Portal\hl2.exe (Valve Corp. -> )
FirewallRules: [{515382E0-CE36-4277-86BF-BAE3C9A001F8}] => (Allow) E:\steam\steamapps\common\Portal\hl2.exe (Valve Corp. -> )
FirewallRules: [{889D96DB-AF50-4D61-869D-E9156C534D72}] => (Allow) E:\steam\steamapps\common\Portal 2\portal2.exe () [File not signed]
FirewallRules: [{D21770D5-9ABF-410F-9D5F-9085F364ECE7}] => (Allow) E:\steam\steamapps\common\Portal 2\portal2.exe () [File not signed]
FirewallRules: [{1417C062-4A75-4BBF-BE82-3FEF3B7107D5}] => (Allow) E:\steam\steamapps\common\Mafia II Definitive Edition\2KLauncher\LauncherPatcher.exe => No File
FirewallRules: [{EE06D5C4-15BB-46A7-9FC1-4A1B8F418FC8}] => (Allow) E:\steam\steamapps\common\Mafia II Definitive Edition\2KLauncher\LauncherPatcher.exe => No File
FirewallRules: [{24B2DE77-ECE7-4F3F-AB27-C535E3F0BD98}] => (Allow) E:\steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{9DF402AE-8DC1-44C6-8505-BC232A8E2588}] => (Allow) E:\steam\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe (SCS Software s.r.o. -> SCS Software)
FirewallRules: [{1D7B0C54-E711-4442-A697-340C22283F5A}] => (Allow) E:\steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe => No File
FirewallRules: [{B65803FA-DD55-4306-9271-E24BAAE1FD84}] => (Allow) E:\steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe => No File
FirewallRules: [{EE246A11-D58E-4865-A4F9-A2DE48DFBB68}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{439AD162-0C7E-47B6-9332-A9DED292AA67}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{CB05DD04-F5A2-4D89-B7D5-17E74BEDE2E7}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{E64E5642-8C90-4D3E-85F2-6B52CD4FA0B4}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{5774BB06-567D-4C73-BDDD-280205B11FAE}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{90A2ADF4-9D0F-42AF-BEDE-826A1EE23058}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAConnect_microsoft.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{CBBD523D-22B7-48A0-B582-4EE34896D8EA}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{2E6E1671-A026-49AD-9B56-931EBCCDC07F}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EADesktop.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{64F0E293-2B6C-46E2-945C-F289D3A09639}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{6193416E-223B-4054-836F-FA94A72F554F}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EAGEP.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{94EBC4C0-5390-4234-B6BF-42A9CA5B6A2D}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{1FCD7970-416A-4C70-A6F0-8CE4CFDE3313}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALocalHostSvc.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{A270E158-5F5E-41F6-A277-2699212733EA}] => (Allow) C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EALaunchHelper.exe (Electronic Arts, Inc. -> Electronic Arts)
FirewallRules: [{4A218A6B-2A16-4C87-8F50-B04EC84C98B3}] => (Allow) E:\steam\steamapps\common\MudRunner\MudRunner.exe (Focus Home Interactive) [File not signed]
FirewallRules: [{B2ECD98E-F299-43AA-98EC-20E9EC7C4CE5}] => (Allow) E:\steam\steamapps\common\MudRunner\MudRunner.exe (Focus Home Interactive) [File not signed]
FirewallRules: [{457D31D7-70C7-492E-BA9C-F984AE63B0C3}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{BF64B941-EC5D-42E8-9827-53FB8407EC98}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{F466486E-1772-4859-9A64-12AAC0DA3DFB}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{D289CDA9-530A-4584-A30D-016B8650B231}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa\iTunes.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{AF3386BC-0805-4162-840C-8494EAA41752}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{9595EFE5-3A8A-445E-BFBF-C16D68225773}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{0FFD6BB8-676F-4F18-95D6-F86ABE309C2F}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{DEF252C9-75C5-43CB-BD5E-4E9AAF6235DE}] => (Allow) C:\Program Files\WindowsApps\AppleInc.iTunes_12137.1.3025.0_x64__nzyj5cx40ttqa\AMDS64\AppleMobileDeviceProcess.exe (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple Inc.)
FirewallRules: [{944E2903-4068-402B-AE5C-12EFDFC93EDF}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{876DC74B-91B5-4966-8D41-E4FB7B94D14B}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\Lync.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{B12CB578-1E00-4427-92C5-8B8F3C7C84C0}] => (Allow) C:\Program Files\Microsoft Office\root\Office16\UcMapi.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{D10D6B98-9D0E-4AC7-AC05-44DCC066D39B}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{18306DA5-0FBB-433A-A500-E00DD72A5030}] => (Allow) C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe (Avast Software s.r.o. -> Gen Digital Inc.)
FirewallRules: [{421F797F-1F54-447F-B573-80CCA8DE6ACD}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.268.528.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{66028437-B6A8-4460-8906-086473F05D50}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.268.528.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{EE5A45CE-8953-4111-897E-1003375CD051}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.268.528.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{54243CC8-46AB-416F-B926-D97239718064}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.268.528.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{60154E7A-F48D-407C-ADA3-2EC0733FCC6C}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.268.528.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{34BB1C60-60B4-4A74-AADB-741646FF28B0}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.268.528.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{0C5047E3-CDC8-4D68-A06A-8521B76B4278}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.268.528.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{2BDCD1FB-DACD-4D61-A3E9-4A96C061CBC9}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.268.528.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{85E10D8D-4948-467E-B04B-70143D5ED2B8}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.268.528.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{D3F9756F-4F32-4395-A437-760F78C2751F}] => (Allow) C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.268.528.0_x64__zpdnekdrzrea0\Spotify.exe (453637B3-4E12-4CDF-B0D3-2A3C863BF6EF -> Spotify Ltd)
FirewallRules: [{9CA5D8FA-127A-4D56-9A37-4CCACC634F77}] => (Allow) C:\Program Files (x86)\Overwolf\0.276.0.6\OverwolfBrowser.exe => No File
FirewallRules: [{07EEA5E2-B66A-4617-8A9A-2EB17EAC66EC}] => (Allow) C:\Program Files (x86)\Overwolf\0.276.0.6\OverwolfBrowser.exe => No File
FirewallRules: [{0897A03D-EE77-4A4B-A52C-042D1481408A}] => (Block) C:\Program Files (x86)\Overwolf\0.276.0.6\OverwolfBrowser.exe => No File
FirewallRules: [{3BB767D0-F974-4C14-8676-36040B8C3D34}] => (Block) C:\Program Files (x86)\Overwolf\0.276.0.6\OverwolfBrowser.exe => No File
FirewallRules: [{2F3FC463-202B-4ADC-A444-F4B6D1C336AA}] => (Allow) C:\Program Files (x86)\Overwolf\0.280.1.4\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)
FirewallRules: [{F4C3F0B8-2A08-48EB-AE35-0A5F831A6EBB}] => (Allow) C:\Program Files (x86)\Overwolf\0.280.1.4\OverwolfBrowser.exe (Overwolf Ltd -> Overwolf LTD)

==================== Restore Points =========================

08-07-2025 19:45:38 Naplánovaný kontrolní bod
09-07-2025 20:39:02 Instalační služba modulů systému Windows
09-07-2025 20:41:00 Instalační služba modulů systému Windows
18-07-2025 12:58:05 Naplánovaný kontrolní bod
18-07-2025 15:17:29 AdwCleaner_BeforeCleaning_18/07/2025_15:17:28

==================== Faulty Device Manager Devices ============

==================== Event log errors: ========================

Application errors:
==================
Error: (07/18/2025 04:13:39 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (576,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (07/18/2025 04:05:18 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (7236,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (07/18/2025 03:53:10 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (9168,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (07/18/2025 03:42:14 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (4876,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (07/18/2025 03:16:38 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (4608,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (07/18/2025 03:08:19 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program LeagueClientUx.exe verze 15.14.695.3589 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 3d4

Čas spuštění: 01dbf7e23f97de29

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Users\Bobik\Riot Games\League of Legends\LeagueClientUx.exe

ID hlášení: 82df62a3-6cd5-417b-8694-833dfd66ab6a

Úplný název balíčku s chybou:

ID aplikace relativní podle balíčku s chybou:

Typ zablokování: Cross-thread

Error: (07/18/2025 02:58:44 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (16336,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).

Error: (07/18/2025 02:45:26 PM) (Source: ESENT) (EventID: 455) (User: )
Description: svchost (2960,R,98) TILEREPOSITORYS-1-5-18: Při otevírání souboru protokolu C:\WINDOWS\system32\config\systemprofile\AppData\Local\TileDataLayer\Database\EDB.log došlo k chybě -1023 (0xfffffc01).


System errors:
=============
Error: (07/18/2025 03:30:47 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Microsoft Office Click-to-Run Service byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 0 milisekund: Restartovat službu.

Error: (07/18/2025 03:30:47 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba AMD External Events Utility byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (07/18/2025 03:30:47 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) Dynamic Application Loader Host Interface Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (07/18/2025 03:30:47 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba ASUS Com Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (07/18/2025 03:30:47 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) Security Assist Helper byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (07/18/2025 03:30:47 PM) (Source: Service Control Manager) (EventID: 7034) (User: )
Description: Služba Intel(R) HD Graphics Control Panel Service byla neočekávaně ukončena. Tento stav nastal již 1krát.

Error: (07/18/2025 03:28:37 PM) (Source: DCOM) (EventID: 10010) (User: DESKTOP-VHDCHI0)
Description: Server Windows.Gaming.GameBar.PresenceServer.Internal.PresenceWriter se v daném časovém limitu neregistroval u služby DCOM.

Error: (07/18/2025 03:25:48 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Aktualizace Google (gupdate) neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.


Windows Defender:
================Event[0]:

Date: 2022-08-24 14:32:45
Description:
Antivirová ochrana v programu Microsoft Defender narazil na chybu při pokusu o načtení bezpečnostních informací a pokusí se o obnovení poslední známé funkční verze.
Bezpečnostní informace, které se měly načíst: Aktuální
Kód chyby: 0x80070003
Popis chyby: Systém nemůže nalézt uvedenou cestu.
Verze bezpečnostních informací: 0.0.0.0;0.0.0.0
Verze modulu: 0.0.0.0

CodeIntegrity:
===============
Date: 2025-07-15 19:40:40
Description:
Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Avast Software\Avast\AvastSvc.exe) attempted to load \Device\HarddiskVolume1\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\MSOXMLMF.DLL that did not meet the Custom 3 / Antimalware signing level requirements.

Date: 2025-07-01 22:22:24
Description:
Code Integrity determined that a process (\Device\HarddiskVolume1\Program Files\Avast Software\Browser\Application\AvastBrowser.exe) attempted to load \Device\HarddiskVolume1\Program Files\Avast Software\Browser\Application\137.0.30674.104\ffmpeg.dll that did not meet the Microsoft signing level requirements.

Date: 2025-02-13 23:12:13
Description:
Code Integrity determined that a process (\Device\HarddiskVolume1\Users\Bobik\AppData\Local\Discord\app-1.0.9182\Discord.exe) attempted to load \Device\HarddiskVolume1\Windows\System32\vulkan-1.dll that did not meet the Microsoft signing level requirements.

Date: 2025-02-13 23:10:33
Description:
Code Integrity determined that a process (\Device\HarddiskVolume1\Users\Bobik\AppData\Local\Discord\app-1.0.9149\Discord.exe) attempted to load \Device\HarddiskVolume1\Windows\System32\vulkan-1.dll that did not meet the Microsoft signing level requirements.


==================== Memory info ===========================

BIOS: American Megatrends Inc. 2103 08/19/2014
Motherboard: ASUSTeK COMPUTER INC. B85-PRO GAMER
Processor: Intel(R) Core(TM) i5-4460 CPU @ 3.20GHz
Percentage of memory in use: 15%
Total physical RAM: 24513.89 MB
Available physical RAM: 20805.15 MB
Total Virtual: 28097.89 MB
Available Virtual: 24052.74 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:463.8 GB) (Free:323.33 GB) (Model: WDC WDS500G2B0A-00SM50) NTFS ==>[drive with boot components (obtained from BCD)]
Drive d: (Rezervováno systémem) (Fixed) (Total:0.49 GB) (Free:0.45 GB) (Model: WDC WD20EZRZ-00Z5HB0) NTFS ==>[system with boot components (obtained from drive)]
Drive e: () (Fixed) (Total:1862.02 GB) (Free:968.7 GB) (Model: WDC WD20EZRZ-00Z5HB0) NTFS

\\?\Volume{a1a2ad16-0000-0000-0000-701274000000}\ () (Fixed) (Total:0.5 GB) (Free:0.08 GB) NTFS
\\?\Volume{3843cc58-0000-0000-0000-80a0d1010000}\ () (Fixed) (Total:0.51 GB) (Free:0.08 GB) NTFS

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: A1A2AD16)
Partition 1: (Active) - (Size=463.8 GB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=513 MB) - (Type=27)

==========================================================
Disk: 1 (MBR Code: Windows 7/8/10) (Size: 1863 GB) (Disk ID: 3843CC58)
Partition 1: (Active) - (Size=500 MB) - (Type=07 NTFS)
Partition 2: (Not Active) - (Size=1862 GB) - (Type=07 NTFS)
Partition 3: (Not Active) - (Size=519 MB) - (Type=27)

==================== End of Addition.txt =======================

Tomas.tom4
Návštěvník
Návštěvník
Příspěvky: 5
Registrován: včera, 12:42

Re: Procesor nestíha

#7 Příspěvek od Tomas.tom4 »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 17-07-2025
Ran by Bobik (administrator) on DESKTOP-VHDCHI0 (ASUS All Series) (18-07-2025 16:18:18)
Running from E:\stahovaní\FRST64.exe
Loaded Profiles: Bobik
Platform: Microsoft Windows 10 Home Version 22H2 19045.6093 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastUI.exe <3>
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Program Files\Oculus\Support\oculus-remote-desktop\RemoteDesktopCompanion.exe ->) () [File not signed] C:\Program Files\Oculus\Support\oculus-remote-desktop\MQRDCrashpadHandler.exe
(C:\Program Files\Oculus\Support\oculus-runtime\OVRServer_x64.exe ->) (Meta Platforms, Inc. -> Meta Platforms Technologies LLC) C:\Program Files\Oculus\Support\oculus-remote-desktop\RemoteDesktopCompanion.exe
(C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe ->) (Meta Platforms, Inc. -> Facebook Technologies, LLC) C:\Program Files\Oculus\Support\oculus-runtime\OVRRedir.exe
(C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe ->) (Meta Platforms, Inc. -> Facebook Technologies, LLC) C:\Program Files\Oculus\Support\oculus-runtime\OVRServer_x64.exe
(explorer.exe ->) (Malwarebytes Inc -> Malwarebytes) C:\Users\Bobik\OneDrive\Plocha\adwcleaner.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\afwServ.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Intel Corporation - Embedded Subsystems and IP Blocks Group -> Intel Corporation) C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
(services.exe ->) (Meta Platforms, Inc. -> Facebook Technologies, LLC) C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(services.exe ->) (Nero AG -> Nero AG) C:\Program Files (x86)\Nero\Update\NASvc.exe
(svchost.exe ->) (5BD5593D-A41B-4F89-884E-B4F3E0FBAA75 -> Apple, Inc.) C:\Program Files\WindowsApps\AppleInc.iCloud_15.3.152.0_x64__nzyj5cx40ttqa\iCloud\secd.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\SDXHelper.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [798456 2025-07-08] (Avast Software s.r.o. -> Gen Digital Inc.)
HKLM\...\Run: [Riot Vanguard] => C:\Program Files\Riot Vanguard\vgtray.exe [4143440 2025-07-10] (Riot Games, Inc. -> Riot Games, Inc.)
HKLM-x32\...\Run: [Nikon Message Center 2] => C:\Program Files (x86)\Nikon\Nikon Message Center 2\NkMC2.exe [612304 2019-11-18] (NIKON CORPORATION -> Nikon Corporation)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4968328 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Run: [LGHUB] => "C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe" --minimized (No File)
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Run: [Wargaming.net Game Center] => E:\Wargaming.net\Nová složka\Wargaming.net\GameCenter\wgc.exe [2136016 2025-07-18] (Wargaming Group Limited -> Wargaming.net)
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Run: [Steam] => E:\steam\steam.exe [4435552 2025-01-28] (Valve Corp. -> Valve Corporation)
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Run: [RiotClient] => C:\Users\Bobik\Riot Games\Riot Client\RiotClientServices.exe [74829512 2025-07-01] (Riot Games, Inc. -> Riot Games, Inc.)
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Run: [MicrosoftEdgeAutoLaunch_5C2F6520173E4793C02014A01A3B5ED6] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4113480 2025-07-16] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Run: [electron.app.U.GG] => C:\Users\Bobik\AppData\Local\Programs\U.GG\U.GG.exe [177092656 2024-06-12] (Enthusiast Gaming Inc. -> Outplayed, Inc.)
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Run: [Overwolf] => C:\Program Files (x86)\Overwolf\OverwolfLauncher.exe [1911040 2025-07-16] (Overwolf Ltd -> Overwolf Ltd.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\138.0.7204.102\Installer\chrmstp.exe [2025-07-15] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{A8504530-742B-42BC-895D-2BAD6406F698}] -> C:\Program Files\AVAST Software\Browser\Application\137.0.31047.122\Installer\chrmstp.exe [2025-07-15] (Avast Software s.r.o. -> Gen Digital Inc.)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {1AACAF93-A77A-4923-9B20-3C25FD4EAD08} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe (No File)
Task: {35EF26F7-5763-4D09-8959-284FED11160E} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe [3497312 2025-07-02] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {FE3E8431-F20D-4590-88BF-3EF26CC51E33} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files\AVAST Software\Browser\Application\AvastBrowser.exe [3497312 2025-07-02] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {88508252-0670-4C8D-BE50-BC0079735A06} - System32\Tasks\Avast Software\Avast Antivirus Patcher => C:\Program Files\Common Files\Avast Software\Icarus\avast-av\icarus.exe [8930096 2025-06-17] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {EFADFBA3-08C6-47EA-BF25-33C460A8489E} - System32\Tasks\Avast Software\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5499128 2025-07-08] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {4CB8F950-2AC6-4B93-BC11-03D25DC2C89F} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2564904 2024-11-20] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {B770F91C-EBC2-4447-A119-FD0F7751993D} - System32\Tasks\AvastBrowserProtectS-1-5-21-1000299596-2352825683-3530717420-1001 => C:\Program Files\AVAST Software\Browser\Application\AvastBrowserProtect.exe [1690008 2024-09-10] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {96E94278-E5CD-4510-8F2B-2F3ABCD4CDF3} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [192664 2024-09-22] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {2D71F3E8-BF04-40AA-9417-543E7B8AB838} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [192664 2024-09-22] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {62E07E9A-8427-41C9-AB4B-2355E6F516A5} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem140.0.7272.0{859C9E79-02A0-48B2-94A8-03843AC88C93} => C:\Program Files (x86)\Google\GoogleUpdater\140.0.7272.0\updater.exe [6836832 2025-07-01] (Google LLC -> Google LLC)
Task: {9C9E88A2-FB01-4CF0-BFD9-1BC6C5D46CF2} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\ActionsServer\ActionsServer.exe [15516032 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {B435958E-918C-420D-9D4F-785E841D8417} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28583776 2025-07-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {23A970C1-2452-4313-9F0E-CBB5EBB7D07B} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\OFFICE16\opushutil.exe [69984 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {8D6A36B0-823C-44BA-82E8-9344A0BF6CD3} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28583776 2025-07-05] (Microsoft Corporation -> Microsoft Corporation)
Task: {3036FDE4-A4C5-4750-8F42-776543C3FC99} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311608 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {329A323C-64AF-46E6-92FB-3083B1152029} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311608 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {4915C822-24D1-4C4B-BDD7-6A6C3AEA7DCF} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\OFFICE16\operfmon.exe [229176 2025-07-08] (Microsoft Corporation -> Microsoft Corporation)
Task: {42D3505E-5CA3-49F9-B154-74A94961C0F4} - System32\Tasks\Microsoft\Office\Office Startup Boost => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311608 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {24121912-CDDB-4FF5-A429-CBD54962EBB8} - System32\Tasks\Microsoft\Office\Office Startup Boost Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [311608 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {9ECFE9F1-740D-4B79-ABFD-B3950D5E4961} - System32\Tasks\Microsoft\Windows\Clip\ClipESUConsumer => C:\WINDOWS\system32\ClipESUConsumer.exe [283008 2025-07-09] (Microsoft Windows -> Microsoft Corporation)
Task: {E9F7BDDA-C1E0-48C7-B61E-2874C6284E57} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessPreOrder => C:\WINDOWS\system32\ClipESUConsumer.exe [283008 2025-07-09] (Microsoft Windows -> Microsoft Corporation)
Task: {8B041FCF-8589-456C-8F9F-302927DFDDC4} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessRefund => C:\WINDOWS\system32\ClipESUConsumer.exe [283008 2025-07-09] (Microsoft Windows -> Microsoft Corporation)
Task: {96874A97-9F0A-4635-A883-CD9F9C38BAF3} - System32\Tasks\MSIAfterburner => C:\Program Files (x86)\MSI Afterburner\MSIAfterburner.exe [804408 2021-12-03] (MICRO-STAR INTERNATIONAL CO., LTD. -> )
Task: {75A3C795-3C46-4EB0-B219-436028520AE4} - System32\Tasks\MSISW_Host => C:\Windows\SysWOW64\muachost.exe [1692840 2015-08-18] (MICRO-STAR INTERNATIONAL CO., LTD. -> MSI)
Task: {3C1D4488-4D64-4777-A150-42A4D51345BD} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4224392 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {2CA725A2-BF80-469A-9854-D25477557EC6} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-1000299596-2352825683-3530717420-1000 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4224392 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {890E2D32-9C32-4351-BFEF-6942680038B1} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-1000299596-2352825683-3530717420-1001 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4224392 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {E3AA782C-284F-4065-A752-2BA09AEF75F3} - System32\Tasks\OneDrive Startup Task-S-1-5-21-1000299596-2352825683-3530717420-1000 => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\OneDriveLauncher.exe [685960 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {B1CE7CA5-4B45-46D9-A07B-CEC47DCC1E8D} - System32\Tasks\OneDrive Startup Task-S-1-5-21-1000299596-2352825683-3530717420-1001 => C:\Program Files\Microsoft OneDrive\25.115.0615.0002\OneDriveLauncher.exe [685960 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {0CB4BD9D-8C63-422B-89FD-4BB7EEC77CC2} - System32\Tasks\Overwolf Updater Task => C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2398016 2025-07-16] (Overwolf Ltd -> Overwolf LTD) -> C:\Program Files (x86)\Overwolf\/RunningFrom Schedule

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 10.3.3.3 10.4.0.216 10.4.104.5
Tcpip\..\Interfaces\{926d22de-326e-4297-8811-ddde03106919}: [DhcpNameServer] 10.3.3.3 10.4.0.216 10.4.104.5

Edge:
=======
Edge Profile: C:\Users\Bobik\AppData\Local\Microsoft\Edge\User Data\Default [2025-07-18]
Edge DownloadDir: Default -> E:\stahovaní\kaja stahovani
Edge Extension: (Dokumenty Google offline) - C:\Users\Bobik\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-05-07]
Edge Extension: (Edge relevant text changes) - C:\Users\Bobik\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-29]

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI ipt;version=4.0.68 -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIIPT.dll [2015-04-21] (Intel(R) Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @intel-webapi.intel.com/Intel WebAPI updater -> C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\IPT\npIntelWebAPIUpdater.dll [2015-04-21] (Intel(R) Identity Protection Technology Software -> Intel Corporation)
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2025-07-08] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=3 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1697.6\npAvastBrowserUpdate3.dll [2024-09-22] (Avast Software s.r.o. -> Gen Digital Inc.)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=9 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1697.6\npAvastBrowserUpdate3.dll [2024-09-22] (Avast Software s.r.o. -> Gen Digital Inc.)

Chrome:
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Default [2025-07-18]
CHR DownloadDir: E:\stahovaní
CHR Extension: (Překladač Google) - C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapbdbdomjkkjkaonfhkkikfgjllcleb [2024-09-14]
CHR Extension: (The FFZ Add-On Pack) - C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Default\Extensions\aiimboljphncldaakcnapfolgnjonlea [2022-07-08]
CHR Extension: (BetterTTV) - C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Default\Extensions\ajopnjidmegmdimjlfnijceegpefgped [2025-06-14]
CHR Extension: (7TV) - C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Default\Extensions\ammjkodgmmoknidbanneddgankgfejfh [2025-07-01]
CHR Extension: (FrankerFaceZ) - C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Default\Extensions\fadndhdgpmmaapbmfcknlfgcflmmmieb [2025-07-18]
CHR Extension: (Záložky na iCloudu) - C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Default\Extensions\fkepacicchenbjecpbpbclokcabebhah [2022-11-21]
CHR Extension: (Dokumenty Google offline) - C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-07-18]
CHR Extension: (AdBlock - nejlepší blokátor reklam) - C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Default\Extensions\gighmmpiobklfepjocnamgkkbiglidom [2025-07-18]
CHR Extension: (Google Play) - C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Default\Extensions\komhbcfkdcgmcdoenjcjheifdiabikfi [2022-07-08]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-07-08]
CHR Extension: (Hesla na iCloudu) - C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Default\Extensions\pejdijmoenmkgeppbflobdenhhabjlaj [2025-07-09]
CHR Profile: C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Guest Profile [2023-05-09]
CHR Profile: C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Profile 1 [2025-07-15]
CHR DownloadDir: E:\stahovaní\kaja stahovani
CHR Extension: (Dokumenty Google offline) - C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-07-15]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\Profile 1\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2022-07-08]
CHR Profile: C:\Users\Bobik\AppData\Local\Google\Chrome\User Data\System Profile [2025-05-04]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S2 asComSvc; C:\Program Files (x86)\ASUS\AXSP\1.02.00\atkexComSvc.exe [936456 2015-05-13] (Microsoft Windows Hardware Compatibility Publisher -> )
R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [7412984 2025-07-08] (Avast Software s.r.o. -> Gen Digital Inc.)
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [192664 2024-09-22] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [1032440 2025-07-08] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 avast! Firewall; C:\Program Files\Avast Software\Avast\afwServ.exe [2582264 2025-07-08] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [1084664 2025-07-08] (Avast Software s.r.o. -> Gen Digital Inc.)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [192664 2024-09-22] (Avast Software s.r.o. -> Gen Digital Inc.)
S3 AvastSecureBrowserElevationService; C:\Program Files\AVAST Software\Browser\Application\137.0.31047.122\elevation_service.exe [2417800 2025-07-02] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2022-07-08] (Avast Software s.r.o. -> AVAST Software)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [8885112 2022-09-17] (BattlEye Innovations e.K. -> )
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13045112 2025-07-05] (Microsoft Corporation -> Microsoft Corporation)
S3 EABackgroundService; C:\Program Files\Electronic Arts\EA Desktop\EA Desktop\EABackgroundService.exe [11127912 2023-11-01] (Electronic Arts, Inc. -> Electronic Arts)
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\25.115.0615.0002\FileSyncHelper.exe [3633512 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
S3 Intel(R) Security Assist; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isa.exe [335872 2015-05-19] (Intel Corporation) [File not signed]
S2 isaHelperSvc; C:\Program Files (x86)\Intel\Intel(R) Security Assist\isaHelperService.exe [7680 2015-05-19] () [File not signed]
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\25.115.0615.0002\OneDriveUpdaterService.exe [3885448 2025-07-15] (Microsoft Corporation -> Microsoft Corporation)
S3 OverwolfUpdater; C:\Program Files (x86)\Common Files\Overwolf\OverwolfUpdater.exe [2398016 2025-07-16] (Overwolf Ltd -> Overwolf LTD)
S3 OVRLibraryService; C:\Program Files\Oculus\Support\oculus-librarian\OVRLibraryService.exe [58552 2025-07-01] (Meta Platforms, Inc. -> Facebook Technologies, LLC)
R2 OVRService; C:\Program Files\Oculus\Support\oculus-runtime\OVRServiceLauncher.exe [435384 2025-07-01] (Meta Platforms, Inc. -> Facebook Technologies, LLC)
S3 Rockstar Service; E:\gta\RockstarService.exe [2579840 2022-09-17] (Rockstar Games, Inc. -> Rockstar Games)
S3 ucldr_battlegrounds_gl; C:\Program Files\Common Files\Wellbia.com\ucldr_battlegrounds_gl.exe [5936680 2022-09-23] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)
S3 vgc; C:\Program Files\Riot Vanguard\vgc.exe [40861536 2025-07-10] (Riot Games, Inc. -> Riot Games, Inc.)
S3 WdNisSvc; C:\Program Files\Windows Defender\NisSrv.exe [3004048 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [103384 2019-12-07] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 zksvc; C:\Program Files\Common Files\PUBG\zksvc.exe [10099288 2022-09-23] (PUBG CORPORATION -> KRAFTON, Inc)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R1 AsIO; C:\Windows\SysWow64\drivers\AsIO.sys [15368 2015-05-13] (Microsoft Windows Hardware Compatibility Publisher -> )
R0 aswArDisk; C:\WINDOWS\System32\drivers\aswArDisk.sys [21088 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswArPot; C:\WINDOWS\System32\drivers\aswArPot.sys [245344 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswbidsdriver; C:\WINDOWS\System32\drivers\aswbidsdriver.sys [391264 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbidsh; C:\WINDOWS\System32\drivers\aswbidsh.sys [299616 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbuniv; C:\WINDOWS\System32\drivers\aswbuniv.sys [85568 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswElam; C:\WINDOWS\System32\drivers\aswElam.sys [28280 2024-11-20] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 aswKbd; C:\WINDOWS\System32\drivers\aswKbd.sys [29768 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswMonFlt; C:\WINDOWS\System32\drivers\aswMonFlt.sys [281160 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswNetHub; C:\WINDOWS\System32\drivers\aswNetHub.sys [572000 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswRdr; C:\WINDOWS\System32\drivers\aswRdr2.sys [92256 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswRvrt; C:\WINDOWS\System32\drivers\aswRvrt.sys [72288 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSnx; C:\WINDOWS\System32\drivers\aswSnx.sys [884288 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSP; C:\WINDOWS\System32\drivers\aswSP.sys [1272928 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 aswStm; C:\WINDOWS\System32\drivers\aswStm.sys [202336 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswVmm; C:\WINDOWS\System32\drivers\aswVmm.sys [392288 2025-07-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\WINDOWS\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\WINDOWS\System32\drivers\bthmodem.sys [76800 2019-12-07] (Microsoft Corporation) [File not signed]
R1 EneIo; C:\WINDOWS\system32\drivers\ene.sys [17624 2019-05-22] (Microsoft Windows Hardware Compatibility Publisher -> )
S3 I2cHkBurn; C:\WINDOWS\system32\drivers\I2cHkBurn.sys [41760 2015-07-27] (Feature Integration Technology -> FINTEK Corp.)
R3 logi_joy_bus_enum; C:\WINDOWS\system32\drivers\logi_joy_bus_enum.sys [44880 2022-09-22] (Logitech Inc -> Logitech)
S3 logi_joy_vir_hid; C:\WINDOWS\system32\drivers\logi_joy_vir_hid.sys [32080 2022-09-22] (Logitech Inc -> Logitech)
R3 logi_joy_xlcore; C:\WINDOWS\system32\drivers\logi_joy_xlcore.sys [73040 2022-09-22] (Logitech Inc -> Logitech)
R3 oculusvad_oculusvad; C:\WINDOWS\System32\drivers\oculusvad.sys [75280 2022-10-05] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
R3 Oculus_ViGEmBus; C:\WINDOWS\System32\drivers\Oculus_ViGEmBus.sys [32856 2022-10-05] (Oculus VR, LLC -> Facebook Inc.)
S3 RTCore64; C:\Program Files (x86)\MSI Afterburner\RTCore64.sys [36824 2020-07-13] (MICRO-STAR INTERNATIONAL CO., LTD. -> )
R1 vgk; C:\Program Files\Riot Vanguard\vgk.sys [23384840 2025-07-10] (Riot Games, Inc. -> Riot Games, Inc.)
S3 WdBoot; C:\WINDOWS\system32\drivers\WdBoot.sys [46688 2019-12-07] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\WINDOWS\system32\drivers\WdFilter.sys [350136 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\WINDOWS\System32\Drivers\WdNisDrv.sys [54200 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
S3 xhunter1; C:\WINDOWS\xhunter1.sys [1445920 2022-09-23] (Wellbia.com Co., Ltd. -> Wellbia.com Co., Ltd.)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2025-07-18 15:11 - 2025-07-18 15:17 - 000000000 ____D C:\AdwCleaner
2025-07-18 15:11 - 2025-07-18 15:10 - 009568256 _____ (Malwarebytes) C:\Users\Bobik\OneDrive\Plocha\adwcleaner.exe
2025-07-18 14:00 - 2025-07-18 16:18 - 000000000 ____D C:\FRST
2025-07-15 19:51 - 2025-07-15 19:51 - 000000000 ____D C:\Program Files\Common Files\DESIGNER
2025-07-09 20:47 - 2025-07-09 20:47 - 000023172 _____ C:\WINDOWS\SysWOW64\IntegratedServicesRegionPolicySet.json
2025-07-09 20:47 - 2025-07-09 20:47 - 000023172 _____ C:\WINDOWS\system32\IntegratedServicesRegionPolicySet.json
2025-07-08 18:35 - 2025-07-08 18:35 - 000320248 _____ (Gen Digital Inc.) C:\WINDOWS\system32\aswBoot.exe

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2025-07-18 16:17 - 2020-11-19 00:29 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2025-07-18 15:44 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-07-18 15:30 - 2024-11-20 15:20 - 000000000 ____D C:\Users\Bobik\AppData\Roaming\Oculus Remote Desktop
2025-07-18 15:30 - 2022-10-05 20:59 - 000000000 ____D C:\Users\Bobik\AppData\Local\Oculus
2025-07-18 15:29 - 2022-07-08 23:18 - 001693140 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2025-07-18 15:29 - 2019-12-07 16:41 - 000716770 _____ C:\WINDOWS\system32\perfh005.dat
2025-07-18 15:29 - 2019-12-07 16:41 - 000144948 _____ C:\WINDOWS\system32\perfc005.dat
2025-07-18 15:29 - 2019-12-07 11:13 - 000000000 ____D C:\WINDOWS\INF
2025-07-18 15:28 - 2022-09-15 14:05 - 000000001 _____ C:\WINDOWS\vgkbootstatus.dat
2025-07-18 15:27 - 2022-07-08 17:16 - 000000000 ____D C:\ProgramData\Riot Games
2025-07-18 15:24 - 2024-12-30 16:06 - 000000000 ___RD C:\Users\Bobik\iCloudPhotos
2025-07-18 15:24 - 2023-11-30 23:08 - 000000000 ____D C:\Program Files (x86)\Overwolf
2025-07-18 15:24 - 2023-01-04 00:34 - 000000000 ____D C:\Users\Bobik\AppData\Local\Overwolf
2025-07-18 15:23 - 2024-06-15 00:56 - 000000000 ____D C:\Program Files\Riot Vanguard
2025-07-18 15:23 - 2022-07-12 23:36 - 000000000 ____D C:\WINDOWS\SystemTemp
2025-07-18 15:23 - 2022-07-10 09:54 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2025-07-18 15:23 - 2022-07-08 23:09 - 000008192 ___SH C:\DumpStack.log.tmp
2025-07-18 15:23 - 2022-07-08 17:06 - 000000180 _____ C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2025-07-18 15:23 - 2022-07-08 13:06 - 000000000 ____D C:\ProgramData\Avast Software
2025-07-18 15:23 - 2020-11-19 01:30 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2025-07-18 15:22 - 2022-07-08 12:41 - 000065536 _____ C:\WINDOWS\system32\spu_storage.bin
2025-07-18 15:22 - 2019-12-07 11:03 - 000524288 _____ C:\WINDOWS\system32\config\BBI
2025-07-18 15:17 - 2022-07-08 12:41 - 000000000 ____D C:\Program Files (x86)\ASUS
2025-07-18 14:55 - 2024-09-22 14:49 - 134222904 _____ C:\WINDOWS\392667600.dat
2025-07-18 13:37 - 2022-07-08 14:02 - 000000000 ____D C:\Users\Bobik\AppData\Local\CrashDumps
2025-07-18 13:36 - 2024-03-23 16:19 - 000000000 ____D C:\Users\Bobik\AppData\Roaming\riot-client-ux
2025-07-18 13:02 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-07-18 13:02 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2025-07-18 12:35 - 2022-10-05 21:07 - 000000000 ____D C:\Program Files\Oculus
2025-07-18 12:35 - 2020-11-19 01:32 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-07-18 12:33 - 2022-07-08 12:40 - 000000000 ____D C:\Users\Bobik\AppData\Local\Packages
2025-07-15 19:50 - 2022-07-08 13:59 - 000000000 ____D C:\Program Files\Microsoft Office
2025-07-15 19:47 - 2024-09-22 14:52 - 000002444 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Secure Browser.lnk
2025-07-15 19:46 - 2025-02-08 17:40 - 000003552 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-1000299596-2352825683-3530717420-1001
2025-07-15 19:46 - 2025-02-08 17:40 - 000003552 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-1000299596-2352825683-3530717420-1000
2025-07-15 19:46 - 2022-07-08 23:14 - 000003596 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1000299596-2352825683-3530717420-1001
2025-07-15 19:46 - 2022-07-08 23:14 - 000003596 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-1000299596-2352825683-3530717420-1000
2025-07-15 19:46 - 2022-07-08 23:14 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2025-07-15 19:46 - 2022-07-08 14:04 - 000002130 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2025-07-15 19:41 - 2022-07-08 12:53 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2025-07-15 19:40 - 2020-11-19 01:33 - 000000000 ____D C:\ProgramData\Packages
2025-07-09 22:31 - 2020-11-19 00:29 - 000438072 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\PrintDialog
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\SystemResources
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\setup
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\oobe
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\schemas
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellExperiences
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\ShellComponents
2025-07-09 22:29 - 2019-12-07 11:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2025-07-09 22:29 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\servicing
2025-07-09 20:52 - 2019-12-07 11:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2025-07-09 20:47 - 2020-11-19 01:32 - 003016192 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2025-07-09 20:47 - 2016-07-16 14:58 - 000420264 __RSH C:\bootmgr
2025-07-09 20:37 - 2019-12-07 11:14 - 000000000 ___HD C:\WINDOWS\ELAMBKUP
2025-07-09 03:50 - 2024-11-23 11:24 - 000002148 _____ C:\WINDOWS\system32\Tasks\MSISW_Host
2025-07-09 03:50 - 2023-11-30 23:08 - 000003270 _____ C:\WINDOWS\system32\Tasks\Overwolf Updater Task
2025-07-09 03:50 - 2022-07-08 23:14 - 000000000 ____D C:\WINDOWS\system32\Tasks\Avast Software
2025-07-09 03:50 - 2020-11-19 01:32 - 000003568 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-07-09 03:50 - 2020-11-19 01:32 - 000003342 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-07-08 18:35 - 2022-09-23 23:08 - 000021088 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswArDisk.sys
2025-07-08 18:35 - 2022-07-08 13:07 - 001272928 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswSP.sys
2025-07-08 18:35 - 2022-07-08 13:07 - 000884288 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswSnx.sys
2025-07-08 18:35 - 2022-07-08 13:07 - 000572000 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswNetHub.sys
2025-07-08 18:35 - 2022-07-08 13:07 - 000392288 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswVmm.sys
2025-07-08 18:35 - 2022-07-08 13:07 - 000391264 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbidsdriver.sys
2025-07-08 18:35 - 2022-07-08 13:07 - 000299616 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbidsh.sys
2025-07-08 18:35 - 2022-07-08 13:07 - 000281160 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswMonFlt.sys
2025-07-08 18:35 - 2022-07-08 13:07 - 000245344 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswArPot.sys
2025-07-08 18:35 - 2022-07-08 13:07 - 000092256 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswRdr2.sys
2025-07-08 18:35 - 2022-07-08 13:07 - 000085568 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswbuniv.sys
2025-07-08 18:35 - 2022-07-08 13:07 - 000072288 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswRvrt.sys
2025-07-08 18:35 - 2022-07-08 13:07 - 000029768 _____ (Gen Digital Inc.) C:\WINDOWS\system32\Drivers\aswKbd.sys
2025-07-08 08:18 - 2022-07-08 13:08 - 000000000 ____D C:\Program Files\ruxim

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 119405
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Procesor nestíha

#8 Příspěvek od Rudy »

Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-1000299596-2352825683-3530717420-1001\...\Run: [LGHUB] => "C:\Program Files\LGHUB\system_tray\lghub_system_tray.exe" --minimized (No File)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
Task: {1AACAF93-A77A-4923-9B20-3C25FD4EAD08} - System32\Tasks\ASUS\ASUS Product Register Service => C:\Program Files (x86)\ASUS\APRP\aprp.exe (No File)
C:\WINDOWS\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
ContextMenuHandlers5: [igfxcui] -> {3AB1675A-CCFF-11D2-8B20-00A0C93CB1F4} => -> No File
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\desktop.ini:B1DA6C571C [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Access.lnk:A1B76439FE [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Free Antivirus.lnk:21661D084B [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Excel.lnk:B96E9B8455 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneNote.lnk:60EC9648C0 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook (classic).lnk:5465085A2F [2586]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Outlook (classic).lnk:BE800952D3 [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PC Health Check.lnk:F20EF51E1F [3442]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerPoint.lnk:1DC1525F34 [3442]
AlternateDataStreams: C:\Users\Bobik\Data aplikací:00e481b5e22dbe1f649fcddd505d3eb7 [394]
AlternateDataStreams: C:\Users\Bobik\AppData\Roaming:00e481b5e22dbe1f649fcddd505d3eb7 [394]
FirewallRules: [{E175B807-D5A7-4C0C-A96D-7FBF61EF583E}] => (Allow) C:\Program Files\Oculus\Support\oculus-worlds\Home2.exe => No File
FirewallRules: [{48C58358-E5F5-4CFC-A29F-8B4AAE5CF96A}] => (Allow) C:\Program Files\Oculus\Support\oculus-worlds\Home2.exe => No File
FirewallRules: [{04735EA4-F9A0-427D-8754-899B4D80134C}] => (Allow) C:\Program Files\Oculus\Support\oculus-worlds\Home2\Binaries\Win64\Home2-Win64-Shipping.exe => No File
FirewallRules: [{5D88153E-A647-4BF3-9B9C-B38FF531182D}] => (Allow) C:\Program Files\Oculus\Support\oculus-worlds\Home2\Binaries\Win64\Home2-Win64-Shipping.exe => No File
FirewallRules: [{C9071290-44FA-49D8-BE98-1EE68D748175}] => (Allow) C:\Program Files\Oculus\Support\oculus-worlds\Engine\Binaries\Win64\UnrealCEFSubProcess.exe => No File
FirewallRules: [{13246145-AA56-4FFA-AA87-17CCD6EFBAE1}] => (Allow) C:\Program Files\Oculus\Support\oculus-worlds\Engine\Binaries\Win64\UnrealCEFSubProcess.exe => No File
FirewallRules: [{1417C062-4A75-4BBF-BE82-3FEF3B7107D5}] => (Allow) E:\steam\steamapps\common\Mafia II Definitive Edition\2KLauncher\LauncherPatcher.exe => No File
FirewallRules: [{EE06D5C4-15BB-46A7-9FC1-4A1B8F418FC8}] => (Allow) E:\steam\steamapps\common\Mafia II Definitive Edition\2KLauncher\LauncherPatcher.exe => No File
FirewallRules: [{1D7B0C54-E711-4442-A697-340C22283F5A}] => (Allow) E:\steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe => No File
FirewallRules: [{B65803FA-DD55-4306-9271-E24BAAE1FD84}] => (Allow) E:\steam\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe => No File
FirewallRules: [{9CA5D8FA-127A-4D56-9A37-4CCACC634F77}] => (Allow) C:\Program Files (x86)\Overwolf\0.276.0.6\OverwolfBrowser.exe => No File
FirewallRules: [{07EEA5E2-B66A-4617-8A9A-2EB17EAC66EC}] => (Allow) C:\Program Files (x86)\Overwolf\0.276.0.6\OverwolfBrowser.exe => No File
FirewallRules: [{0897A03D-EE77-4A4B-A52C-042D1481408A}] => (Block) C:\Program Files (x86)\Overwolf\0.276.0.6\OverwolfBrowser.exe => No File
FirewallRules: [{3BB767D0-F974-4C14-8676-36040B8C3D34}] => (Block) C:\Program Files (x86)\Overwolf\0.276.0.6\OverwolfBrowser.exe => No File

EmptyTemp:
End
Uložte do E:\stahovaní jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět