Přesměrovávání na jinou stránku + problémy

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
Karrex
Elite Level 10
Elite Level 10
Příspěvky: 9618
Registrován: listopad 08
Bydliště: Brno
Pohlaví: Muž
Stav:
Offline

Re: Přesměrovávání na jinou stránku + problémy

Příspěvekod Karrex » 17 čer 2025 21:23

MiniToolBox by Farbar Version: 13-05-2022
Ran by LM (administrator) on 17-06-2025 at 21:19:40
Running from "D:\Stažené soubory"
Microsoft Windows 11 Pro (X64)
Model: B550 AORUS ELITE V2 Manufacturer: Gigabyte Technology Co., Ltd.
Boot Mode: Normal
***************************************************************************

========================= IE Proxy Settings: ==============================

Proxy is not enabled.
No Proxy Server is set.
========================= Hosts content: =================================
========================= IP Configuration: ================================

Realtek Gaming 2.5GbE Family Controller = Ethernet (Connected)


# ----------------------------------
# IPv4 Configuration
# ----------------------------------
pushd interface ipv4

reset
set global
set interface interface="Ethernet (ladicí program jádra)" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Síťové připojení Bluetooth" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled
set interface interface="Ethernet" forwarding=enabled advertise=enabled nud=enabled ignoredefaultroutes=disabled


popd
# End of IPv4 configuration



Windows IP Configuration

Host Name . . . . . . . . . . . . : DESKTOP-8D4LOVK
Primary Dns Suffix . . . . . . . :
Node Type . . . . . . . . . . . . : Hybrid
IP Routing Enabled. . . . . . . . : No
WINS Proxy Enabled. . . . . . . . : No

Ethernet adapter Ethernet:

Connection-specific DNS Suffix . :
Description . . . . . . . . . . . : Realtek Gaming 2.5GbE Family Controller
Physical Address. . . . . . . . . : 18-C0-4D-94-9A-6C
DHCP Enabled. . . . . . . . . . . : Yes
Autoconfiguration Enabled . . . . : Yes
Link-local IPv6 Address . . . . . : fe80::fc5c:cc31:42:87cd%3(Preferred)
IPv4 Address. . . . . . . . . . . : 192.168.0.11(Preferred)
Subnet Mask . . . . . . . . . . . : 255.255.255.0
Lease Obtained. . . . . . . . . . : Łterě 17. źervna 2025 20:48:07
Lease Expires . . . . . . . . . . : stýeda 18. źervna 2025 20:48:06
Default Gateway . . . . . . . . . : 192.168.0.2
DHCP Server . . . . . . . . . . . : 192.168.0.2
DHCPv6 IAID . . . . . . . . . . . : 119062605
DHCPv6 Client DUID. . . . . . . . : 00-01-00-01-2E-2B-F1-15-18-C0-4D-94-9A-6C
DNS Servers . . . . . . . . . . . : 192.168.0.2
NetBIOS over Tcpip. . . . . . . . : Enabled
Server: router.asus.com
Address: 192.168.0.2

Name: google.com
Addresses: 2a00:1450:4014:80f::200e
142.251.37.110


Pinging google.com [142.251.37.110] with 32 bytes of data:
Reply from 142.251.37.110: bytes=32 time=14ms TTL=115
Reply from 142.251.37.110: bytes=32 time=14ms TTL=115

Ping statistics for 142.251.37.110:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 14ms, Maximum = 14ms, Average = 14ms
Server: router.asus.com
Address: 192.168.0.2

Name: yahoo.com
Addresses: 2001:4998:44:3507::8000
2001:4998:24:120d::1:1
2001:4998:44:3507::8001
2001:4998:124:1507::f001
2001:4998:24:120d::1:0
2001:4998:124:1507::f000
74.6.231.20
74.6.143.26
74.6.143.25
98.137.11.163
98.137.11.164
74.6.231.21


Pinging yahoo.com [74.6.231.21] with 32 bytes of data:
Reply from 74.6.231.21: bytes=32 time=203ms TTL=47
Reply from 74.6.231.21: bytes=32 time=154ms TTL=47

Ping statistics for 74.6.231.21:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 154ms, Maximum = 203ms, Average = 178ms

Pinging 127.0.0.1 with 32 bytes of data:
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128
Reply from 127.0.0.1: bytes=32 time<1ms TTL=128

Ping statistics for 127.0.0.1:
Packets: Sent = 2, Received = 2, Lost = 0 (0% loss),
Approximate round trip times in milli-seconds:
Minimum = 0ms, Maximum = 0ms, Average = 0ms
===========================================================================
Interface List
3...18 c0 4d 94 9a 6c ......Realtek Gaming 2.5GbE Family Controller
1...........................Software Loopback Interface 1
===========================================================================

IPv4 Route Table
===========================================================================
Active Routes:
Network Destination Netmask Gateway Interface Metric
0.0.0.0 0.0.0.0 192.168.0.2 192.168.0.11 25
127.0.0.0 255.0.0.0 On-link 127.0.0.1 331
127.0.0.1 255.255.255.255 On-link 127.0.0.1 331
127.255.255.255 255.255.255.255 On-link 127.0.0.1 331
192.168.0.0 255.255.255.0 On-link 192.168.0.11 281
192.168.0.11 255.255.255.255 On-link 192.168.0.11 281
192.168.0.255 255.255.255.255 On-link 192.168.0.11 281
224.0.0.0 240.0.0.0 On-link 127.0.0.1 331
224.0.0.0 240.0.0.0 On-link 192.168.0.11 281
255.255.255.255 255.255.255.255 On-link 127.0.0.1 331
255.255.255.255 255.255.255.255 On-link 192.168.0.11 281
===========================================================================
Persistent Routes:
None

IPv6 Route Table
===========================================================================
Active Routes:
If Metric Network Destination Gateway
1 331 ::1/128 On-link
3 281 fe80::/64 On-link
3 281 fe80::fc5c:cc31:42:87cd/128
On-link
1 331 ff00::/8 On-link
3 281 ff00::/8 On-link
===========================================================================
Persistent Routes:
None
========================= Winsock entries =====================================

Catalog5 01 C:\WINDOWS\SysWOW64\napinsp.dll [69272] (Microsoft Corporation)
Catalog5 02 C:\WINDOWS\SysWOW64\mswsock.dll [326560] (Microsoft Corporation)
Catalog5 03 C:\WINDOWS\SysWOW64\winrnr.dll [46112] (Microsoft Corporation)
Catalog5 04 C:\WINDOWS\SysWOW64\nlansp_c.dll [127488] (Microsoft Corporation)
Catalog5 05 C:\WINDOWS\SysWOW64\wshbth.dll [81920] (Microsoft Corporation)
Catalog9 01 C:\WINDOWS\SysWOW64\mswsock.dll [326560] (Microsoft Corporation)
Catalog9 02 C:\WINDOWS\SysWOW64\mswsock.dll [326560] (Microsoft Corporation)
Catalog9 03 C:\WINDOWS\SysWOW64\mswsock.dll [326560] (Microsoft Corporation)
Catalog9 04 C:\WINDOWS\SysWOW64\mswsock.dll [326560] (Microsoft Corporation)
Catalog9 05 C:\WINDOWS\SysWOW64\mswsock.dll [326560] (Microsoft Corporation)
Catalog9 06 C:\WINDOWS\SysWOW64\mswsock.dll [326560] (Microsoft Corporation)
Catalog9 07 C:\WINDOWS\SysWOW64\mswsock.dll [326560] (Microsoft Corporation)
Catalog9 08 C:\WINDOWS\SysWOW64\mswsock.dll [326560] (Microsoft Corporation)
Catalog9 09 C:\WINDOWS\SysWOW64\mswsock.dll [326560] (Microsoft Corporation)
Catalog9 10 C:\WINDOWS\SysWOW64\mswsock.dll [326560] (Microsoft Corporation)
Catalog9 11 C:\WINDOWS\SysWOW64\mswsock.dll [326560] (Microsoft Corporation)
Catalog9 12 C:\WINDOWS\SysWOW64\mswsock.dll [326560] (Microsoft Corporation)
Catalog9 13 C:\WINDOWS\SysWOW64\mswsock.dll [326560] (Microsoft Corporation)
Catalog9 14 C:\WINDOWS\SysWOW64\mswsock.dll [326560] (Microsoft Corporation)
x64-Catalog5 01 C:\Windows\System32\napinsp.dll [108792] (Microsoft Corporation)
x64-Catalog5 02 C:\Windows\System32\mswsock.dll [443616] (Microsoft Corporation)
x64-Catalog5 03 C:\Windows\System32\winrnr.dll [84120] (Microsoft Corporation)
x64-Catalog5 04 C:\Windows\System32\nlansp_c.dll [192512] (Microsoft Corporation)
x64-Catalog5 05 C:\Windows\System32\wshbth.dll [126976] (Microsoft Corporation)
x64-Catalog9 01 C:\Windows\System32\mswsock.dll [443616] (Microsoft Corporation)
x64-Catalog9 02 C:\Windows\System32\mswsock.dll [443616] (Microsoft Corporation)
x64-Catalog9 03 C:\Windows\System32\mswsock.dll [443616] (Microsoft Corporation)
x64-Catalog9 04 C:\Windows\System32\mswsock.dll [443616] (Microsoft Corporation)
x64-Catalog9 05 C:\Windows\System32\mswsock.dll [443616] (Microsoft Corporation)
x64-Catalog9 06 C:\Windows\System32\mswsock.dll [443616] (Microsoft Corporation)
x64-Catalog9 07 C:\Windows\System32\mswsock.dll [443616] (Microsoft Corporation)
x64-Catalog9 08 C:\Windows\System32\mswsock.dll [443616] (Microsoft Corporation)
x64-Catalog9 09 C:\Windows\System32\mswsock.dll [443616] (Microsoft Corporation)
x64-Catalog9 10 C:\Windows\System32\mswsock.dll [443616] (Microsoft Corporation)
x64-Catalog9 11 C:\Windows\System32\mswsock.dll [443616] (Microsoft Corporation)
x64-Catalog9 12 C:\Windows\System32\mswsock.dll [443616] (Microsoft Corporation)
x64-Catalog9 13 C:\Windows\System32\mswsock.dll [443616] (Microsoft Corporation)
x64-Catalog9 14 C:\Windows\System32\mswsock.dll [443616] (Microsoft Corporation)

========================= Event log errors: ===============================

Application errors:
==================
Error: (06/17/2025 08:48:12 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Event-ID 86

Error: (06/17/2025 08:48:11 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Event-ID 86

Error: (06/17/2025 08:48:10 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Event-ID 86

Error: (06/17/2025 08:48:04 PM) (Source: WorkflowAppControl) (EventID: 32767) (User: )
Description: Wait Workflow Commands request from device.

Error: (06/17/2025 08:48:04 PM) (Source: WorkflowAppControl) (EventID: 32767) (User: )
Description: Start Broadcast Receiver Server...

Error: (06/17/2025 08:48:04 PM) (Source: WorkflowAppControl) (EventID: 32767) (User: )
Description: Start Server...

Error: (06/17/2025 08:48:04 PM) (Source: WorkflowAppControl) (EventID: 32767) (User: )
Description: Start Server...

Error: (06/17/2025 08:48:04 PM) (Source: WorkflowAppControl) (EventID: 32767) (User: )
Description: Host.AddressList[1]: 127.0.0.1

Error: (06/17/2025 08:48:04 PM) (Source: WorkflowAppControl) (EventID: 32767) (User: )
Description: Host.AddressList[0]: fe80::fc5c:cc31:42:87cd%3

Error: (06/17/2025 08:48:04 PM) (Source: WorkflowAppControl) (EventID: 32767) (User: )
Description: Host.AddressList.Length: 2


System errors:
=============
Error: (06/17/2025 09:19:23 PM) (Source: NetBT) (EventID: 4321) (User: )
Description: Název WORKGROUP :1d nelze zaregistrovat v rozhraní s IP adresou 192.168.0.11.
Počítač s IP adresou 192.168.0.5 nepovolil získání názvu
tímto počítačem.

Error: (06/17/2025 09:14:13 PM) (Source: NetBT) (EventID: 4321) (User: )
Description: Název WORKGROUP :1d nelze zaregistrovat v rozhraní s IP adresou 192.168.0.11.
Počítač s IP adresou 192.168.0.5 nepovolil získání názvu
tímto počítačem.

Error: (06/17/2025 09:09:03 PM) (Source: NetBT) (EventID: 4321) (User: )
Description: Název WORKGROUP :1d nelze zaregistrovat v rozhraní s IP adresou 192.168.0.11.
Počítač s IP adresou 192.168.0.5 nepovolil získání názvu
tímto počítačem.

Error: (06/17/2025 09:09:03 PM) (Source: BROWSER) (EventID: 8009) (User: )
Description: Prohledávač se nemůže povýšit na hlavní prohledávač. Za hlavní prohledávač
se aktuálně považuje počítač LM-NAS.

Error: (06/17/2025 09:03:53 PM) (Source: NetBT) (EventID: 4321) (User: )
Description: Název WORKGROUP :1d nelze zaregistrovat v rozhraní s IP adresou 192.168.0.11.
Počítač s IP adresou 192.168.0.5 nepovolil získání názvu
tímto počítačem.

Error: (06/17/2025 08:58:43 PM) (Source: NetBT) (EventID: 4321) (User: )
Description: Název WORKGROUP :1d nelze zaregistrovat v rozhraní s IP adresou 192.168.0.11.
Počítač s IP adresou 192.168.0.5 nepovolil získání názvu
tímto počítačem.

Error: (06/17/2025 08:56:27 PM) (Source: volsnap) (EventID: 36) (User: )
Description: Stínové kopie svazku C: byly přerušeny, protože z důvodu limitu stanoveného uživatelem se nepodařilo zvětšit úložiště stínové kopie.

Error: (06/17/2025 08:53:33 PM) (Source: NetBT) (EventID: 4321) (User: )
Description: Název WORKGROUP :1d nelze zaregistrovat v rozhraní s IP adresou 192.168.0.11.
Počítač s IP adresou 192.168.0.5 nepovolil získání názvu
tímto počítačem.

Error: (06/17/2025 08:53:03 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT AUTHORITY)
Description: The Secure Boot update failed to update a Secure Boot variable with error -2147020471. For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931

Error: (06/17/2025 08:53:03 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1796) (User: NT AUTHORITY)
Description: The Secure Boot update failed to update a Secure Boot variable with error -2147020471. For more information, please see https://go.microsoft.com/fwlink/?linkid=2169931


Windows Defender:
================
Date: 2025-05-29 11:38:04
Description:
Prohledávání Microsoft Defender Antivirus bylo zastaveno před dokončením.
KOntrola ID: {03BED51D-1DA7-4CA8-8BCE-DDB1B95DD0B7}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM
Důvod zastavení: Şсħęđüłєð ščдñ шåš śκīрρėď вэċäûšě τћě ℓãšŧ ŝџçčĕśѕƒŭŀ šçãņ ωąŝ ŵìťĥīñ тћє łàśŧ 7 δàўş

Date: 2025-05-28 14:37:22
Description:
Prohledávání Microsoft Defender Antivirus bylo zastaveno před dokončením.
KOntrola ID: {16268011-E334-4EA9-8BDE-883EB0C67C96}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM
Důvod zastavení: Şсħęđüłєð ščдñ шåš śκīрρėď вэċäûšě τћě ℓãšŧ ŝџçčĕśѕƒŭŀ šçãņ ωąŝ ŵìťĥīñ тћє łàśŧ 7 δàўş

Date: 2025-05-25 09:57:03
Description:
Prohledávání Microsoft Defender Antivirus bylo zastaveno před dokončením.
KOntrola ID: {C7DCDB20-0C17-438C-ADF6-40B5571E479A}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM
Důvod zastavení: Şсħęđüłєð ščдñ шåš śκīрρėď вэċäûšě τћě ℓãšŧ ŝџçčĕśѕƒŭŀ šçãņ ωąŝ ŵìťĥīñ тћє łàśŧ 7 δàўş

Date: 2025-05-24 09:08:56
Description:
Prohledávání Microsoft Defender Antivirus bylo zastaveno před dokončením.
KOntrola ID: {CC641F54-70EF-430B-BDD4-BCFE0296CA00}
Typ prohledávání: Antimalwarový program
Parametry prohledávání: Rychlé prohledávání
Uživatel: NT AUTHORITY\SYSTEM
Důvod zastavení: Şсħęđüłєð ščдñ шåš śκīрρėď вэċäûšě τћě ℓãšŧ ŝџçčĕśѕƒŭŀ šçãņ ωąŝ ŵìťĥīñ тћє łàśŧ 7 δàўş

Date: 2025-05-23 08:09:19
Description:
Prohledávání Microsoft Defender Antivirus bylo zastaveno před dokončením.
KOntrola ID: {41AD6100-896D-4D22-AE76-E51AE3EA0914}
Typ prohledávání: Antimalware
Parametry prohledávání: Quick Scan
Uživatel: NT AUTHORITY\SYSTEM
Důvod zastavení: %12
Event[0]

Date: 2025-05-30 20:39:13
Description:
Microsoft Defender Antivirus narazil na chybu při pokusu o aktualizaci bezpečnostních informací.
Nová verze bezpečnostních informací:
Předchozí verze bezpečnostních informací: 1.429.239.0
Zdroj aktualizace: Server Microsoft Update
Typ bezpečnostních informací: Antivirový program
Typ aktualizace: Úplné
Uživatel: NT AUTHORITY\SYSTEM
Aktuální verze modulu:
Předchozí verze modulu: 1.1.25040.1
Kód chyby: 0x8024402c
Popis chyby: Při zjišťování aktualizací došlo k neočekávaným potížím. Informace o instalaci nebo řešení potíží s aktualizacemi naleznete v nápovědě a podpoře.

CodeIntegrity Errors:
====================
Date: 2025-06-17 21:17:05
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume3\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Windows signing level requirements.

Date: 2025-06-17 21:08:40
Description:
Code Integrity determined that a process (\Device\HarddiskVolume3\Windows\System32\SecurityHealthService.exe) attempted to load \Device\HarddiskVolume3\Program Files\ESET\ESET Security\eamsi.dll that did not meet the Windows signing level requirements.


=========================== Installed Programs ============================

Adobe Acrobat (64-bit) (HKLM\...\{AC76BA86-1033-FFFF-7760-BC15014EA700}) (Version: 24.003.20112 - Adobe)
AMD_Chipset_Drivers (HKLM-x32\...\{9e92542c-fa37-4c1f-9eba-41336bc79c02}) (Version: 7.01.08.129 - Advanced Micro Devices, Inc.) Hidden
Aplikace NVIDIA 11.0.3.241 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NvApp) (Version: 11.0.3.241 - NVIDIA Corporation)
Apple Mobile Device Support (HKLM\...\{AF0C3D84-6909-4B48-A335-2EC35087BAB0}) (Version: 18.0.0.32 - Apple Inc.)
AppLogLibSetup (HKLM-x32\...\{52FB0C8F-DF05-4C61-AEB6-18C55F8C385F}) (Version: 1.0.3.0 - Brother Industries Ltd.) Hidden
Blackmagic RAW Common Components (HKLM\...\{EB1F744F-B900-4BAD-82E8-5350C910AB38}) (Version: 4.1 - Blackmagic Design)
BrLauncher (HKLM-x32\...\{42D26B47-887C-45FC-BCAE-0BE485C5C0BB}) (Version: 2.0.11.0 - Brother Industries Ltd.) Hidden
BrLogRx (HKLM-x32\...\{190861E7-09C5-42D8-BB4B-0AFB234BCFC1}) (Version: 1.0.3.1 - Brother Industries Ltd.) Hidden
Brother iPrint&Scan (HKLM-x32\...\{89208d05-31fd-46e1-a160-6cba7ec49844}) (Version: 11.1.1.1 - Brother Industries, Ltd.)
Brother iPrint&Scan (HKLM-x32\...\{C86D9011-7AE0-4329-AEED-17C69CD84E88}) (Version: 11.1.1.1 - Brother Industries, Ltd.) Hidden
Brother PCFax Driver (HKLM-x32\...\{79262B43-9E15-4732-A034-BFD29D9BD077}) (Version: 1.4.1.0 - Brother Industries Ltd.) Hidden
Brother Port Driver (HKLM-x32\...\{6CEC6409-A328-44E2-A6CA-69A60699740E}) (Version: 1.0.14.1 - Brother Industries Ltd.) Hidden
Brother Printer Driver (HKLM-x32\...\{D9164C2E-91BA-4D5D-B49A-604BB0A127FE}) (Version: 1.9.0.0 - Brother Industries Ltd.) Hidden
Brother Scanner Driver (HKLM-x32\...\{45E4523F-2842-410D-90C6-6D19974B8E57}) (Version: 1.0.28.1 - Brother Industries Ltd.) Hidden
BrSupportTools (HKLM-x32\...\{32F47565-84B1-42CC-B09A-4CDDD9A32F94}) (Version: 1.0.20.0 - Brother Industries Ltd.) Hidden
Camo Studio Compatibility Add-on (HKLM\...\{89AC3A0E-E147-4A58-95A0-19A8D2BDC541}) (Version: 1.0.1.12935 - Reincubate)
Camtasia 2023 (HKLM\...\{97B50947-F298-4BE1-B69A-3857B1140B23}) (Version: 23.4.7.53202 - TechSmith Corporation)
ControlCenter4 (HKLM-x32\...\{9091B952-8719-49C3-9CC7-6E20EC61081F}) (Version: 4.6.6.1 - Brother Industries, Ltd.) Hidden
ControlCenter4 CSDK (HKLM-x32\...\{FD8A9511-BFC9-43B5-BB75-9CEC0EA03CF0}) (Version: 4.6.1.1 - Brother Industries, Ltd.) Hidden
Corsair iCUE5 Software (HKLM\...\{A9B0B2D7-8C59-4413-A2FB-99EDBE65A608}) (Version: 5.29.103 - Corsair)
Dropbox (HKLM-x32\...\Dropbox) (Version: 226.4.5094 - Dropbox, Inc.)
Dropbox Update Helper (HKLM-x32\...\{099218A5-A723-43DC-8DB5-6173656A1E94}) (Version: 1.3.983.1 - Dropbox, Inc.) Hidden
ENE Video Capture Box HAL (HKLM\...\{A096611D-BA11-4A1A-8D09-0A0462D7C8F2}) (Version: 1.0.5.15 - Ene Tech.) Hidden
ENE_AIC_Marvell_HAL (HKLM\...\{085E2365-0A70-4230-B664-02D5E4FE7E9C}) (Version: 1.0.7.0 - ENE TECHNOLOGY INC.) Hidden
ENE_DRAM_RGB_AIO (HKLM\...\{5D2EC6F2-7EC3-486E-A144-7174E537A148}) (Version: 1.0.14.4 - Ene Tech.) Hidden
ENE_DRAM_RGB_AIO (HKLM-x32\...\{35a6f7ad-3ff5-4bdc-89a5-e166ef586e81}) (Version: 1.0.14.4 - Ene Tech.) Hidden
ENE_EHD_M2_HAL (HKLM\...\{37A48B7F-D4EA-4863-844E-A284E2AA3C5D}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
ENE_EHD_M2_HAL (HKLM-x32\...\{c1d017c2-8846-4000-9254-5689eccd462e}) (Version: 1.0.14.0 - ENE TECHNOLOGY INC.) Hidden
ENE_External_Device_HAL (HKLM\...\{2B8E611F-0B51-4FAC-87BB-AF50D82E7DDA}) (Version: 1.0.12.7 - ENE Tech) Hidden
ENE_MousePad_HAL (HKLM\...\{9E97178A-ADB8-4778-BE60-7E28E2A72721}) (Version: 1.0.1.8 - ENE TECHNOLOGY INC.) Hidden
ENE_X_AIC_HAL (HKLM\...\{CF703694-01C6-4062-B797-84DB215662BC}) (Version: 1.0.6.3 - ENE TECHNOLOGY INC.) Hidden
Epic Games Launcher (HKLM-x32\...\{B85FAA6E-A9AA-4655-9029-E1A4EDC05E1A}) (Version: 1.3.93.0 - Epic Games, Inc.)
Epic Online Services (HKLM-x32\...\{57A956AB-4BCC-45C6-9B40-957E4E125568}) (Version: 2.0.44.0 - Epic Games, Inc.)
ESET Security (HKLM\...\{C96F7554-E4B9-4697-B7EC-5A3D3F2A1B7F}) (Version: 18.1.13.0 - ESET, spol. s r.o.)
Fairlight Audio Accelerator Utility (HKLM\...\FairlightAudioAccelerator_is1) (Version: 1.0.15 - Blackmagic Design)
GBT_Dynamic_Lighting_Lib_UC 24.08.27.01 (HKLM\...\GBT_Dynamic_Lighting_Lib_UC) (Version: 24.08.27.01 - GIGABYTE)
GBT_MB_Update (HKLM\...\GBT_MB_Update) (Version: 24.12.05.01 - GIGABYTE)
GBT_RGB_Sync_Control 24.11.14.01 (HKLM\...\GBT_RGB_Sync_Control) (Version: 24.11.14.01 - GIGABYTE)
GBT_rgbMotherboard_UC 25.01.07.02 (HKLM\...\GBT_rgbMotherboard_UC) (Version: 25.01.07.02 - GIGABYTE)
GIGABYTE Control Center 24.12.30.01 (HKLM\...\GIGABYTE Control Center) (Version: 24.12.30.01 - GIGABYTE)
GIGABYTE Performance Library (HKLM\...\MBEasyTune) (Version: 24.12.19.01 - GIGABYTE)
GIGABYTE Storage Library (HKLM\...\MBStorage) (Version: 24.12.18.01 - GIGABYTE)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 137.0.7151.104 - Google LLC)
Gyazo 5.8.1.0 (HKLM-x32\...\{6DB8C365-E719-4BA5-9594-10DFC244D3FD}_is1) (Version: 5.8.1 - Helpfeel Inc.)
HowToGuide (HKLM-x32\...\{36580EEB-4EDF-4880-BBD4-097E2C645ECD}) (Version: 1.0.1.0 - Brother Industries Ltd.) Hidden
HttpToUsbBridge (HKLM-x32\...\{999245BB-F187-45E8-95C9-4AE0CC8639D7}) (Version: 2.1.67.1 - Brother Industries Ltd.)
Java(TM) SE Development Kit 22.0.2 (64-bit) (HKLM\...\{AA2685C5-73D8-54BD-A9B7-2701251A8921}) (Version: 22.0.2.0 - Oracle Corporation)
Logitech G HUB (HKLM\...\{521c89be-637f-4274-a840-baaf7460c2b2}) (Version: 2025.4.719084 - Logitech)
Malwarebytes version 5.3.2.195 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 5.3.2.195 - Malwarebytes)
Microsoft Office LTSC Professional Plus 2021 - cs-cz (HKLM\...\ProPlus2021Volume - cs-cz) (Version: 16.0.18925.20064 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Minecraft Launcher (HKLM-x32\...\{6A960B34-5197-49DE-AC60-1177DFE24976}) (Version: 2.0.0.0 - Mojang)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 128.0 - Mozilla)
Mozilla Thunderbird (x64 cs) (HKLM\...\Mozilla Thunderbird 128.11.1 (x64 cs)) (Version: 128.11.1 - Mozilla)
NetworkRepairTool (HKLM-x32\...\{86E68F57-FAFE-4052-BDD4-3B90C38236AE}) (Version: 1.2.16.0 - Brother Industries, Ltd.) Hidden
Npcap 0.9983 (HKLM-x32\...\NpcapInst) (Version: 0.9983 - Nmap Project)
NVIDIA FrameView SDK 1.5.10920.35420203 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.5.10920.35420203 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.4.3.2 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.4.3.2 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 572.60 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 572.60 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.23.1019 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.23.1019 - NVIDIA Corporation)
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 31.0.3 - OBS Project)
OpenAL (HKLM-x32\...\OpenAL) (Version: - )
Patriot Viper M2 SSD RGB (HKLM\...\{8B4C0A3D-C135-4E1F-98D8-3926494B4D61}) (Version: 1.1.0.3 - Patriot Memory) Hidden
Patriot Viper M2 SSD RGB (HKLM-x32\...\{6e0eff60-c502-43bb-8f56-360ca07e73d9}) (Version: 1.1.0.3 - Patriot Memory) Hidden
PC-FAXReceive (HKLM-x32\...\{65EA2C86-30CD-444C-ADAB-8762BE4E2E8C}) (Version: 1.8.003.0 - Brother Insutries Ltd.) Hidden
PCFaxTx (HKLM-x32\...\{03BF5A21-6363-410C-B3BE-0946B0012704}) (Version: 3.7.3.1 - Brother Industries Ltd.) Hidden
PingPlotter 5 (HKLM-x32\...\{176A03EC-E27C-41F3-BD50-805CE9BDBA19}) (Version: 5.25.8.9059 - Pingman Tools, LLC) Hidden
PingPlotter 5 (HKLM-x32\...\PingPlotter 5 5.25.8.9059) (Version: 5.25.8.9059 - Pingman Tools, LLC)
Promontory_GPIO Driver (HKLM-x32\...\{B5512BCC-F4CD-4159-86A4-B2AD7D38FFA9}) (Version: 3.0.3.0 - Advanced Micro Devices, Inc.) Hidden
Realtek Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.9733.1 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 11.21.0903.2024 - Realtek)
Recuva (HKLM\...\Recuva) (Version: 1.54 - Piriform)
RemoteSetup (HKLM-x32\...\{FAB8A30A-B074-48F9-9D73-5E9A757403F8}) (Version: 3.10.2.0 - Brother Industries Ltd.) Hidden
Riot Vanguard (HKLM\...\Riot Vanguard) (Version: - Riot Games, Inc.)
Samsung Magician (HKLM-x32\...\{29AE3F9F-7158-4ca7-B1ED-28A73ECDB215}_is1) (Version: 8.3.1.820 - Samsung Electronics)
Samsung NVM Express Driver (HKLM-x32\...\{ff94c273-58d5-40b5-b03a-9bd41d5cff1e}) (Version: 3.3.0.2003 - Samsung Electronics)
Samsung NVM Express Driver 3.3.0.2003 (HKLM\...\{89D55DD5-FE94-497B-B5E5-91915D52DBF2}) (Version: 3.3.0.2003 - Samsung Electronics Co., Ltd) Hidden
ScannerUtilityInstaller (HKLM-x32\...\{D94DD953-F38C-4220-A17C-9217106510A6}) (Version: 1.20.0.1 - Brother) Hidden
SoftwareUpdateNotification (HKLM-x32\...\{3D1AD910-B82B-4635-B1C3-0CEF9F6F3D34}) (Version: 1.0.21.0 - Brother Industries, Ltd.) Hidden
Sophos Virus Removal Tool (HKLM-x32\...\{B829E117-D072-41EA-9606-9826A38D34C1}) (Version: 2.9.0 - Sophos Limited)
StatusMonitor (HKLM-x32\...\{D914EC91-7373-4D62-A194-B02B90D5DB01}) (Version: 1.41.0.0 - Brother Industries, Ltd.) Hidden
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
StreamElements SE.Live (HKLM-x32\...\StreamElements OBS.Live) (Version: 24.1.30.97 - StreamElements)
Surveillance Viewer Unity version 0.10.0.15 (HKLM-x32\...\{16BC1DFD-F2D4-4E25-8E84-500CBE058F9F}_is1) (Version: 0.10.0.15 - Surveillance Viewer)
TavernWorker for Dark and Darker - EpicGames (HKLM\...\TavernWorker for Dark and Darker - EpicGames) (Version: - IRONMACE)
The Elder Scrolls V: Skyrim Special Edition (HKLM\...\Steam App 489830) (Version: - Bethesda Game Studios)
Thrustmaster TARGET (HKLM-x32\...\{8036A569-CA02-4D33-A7E9-E9BC8A482E91}) (Version: 3.0.25.127 - Thrustmaster)
Transmission 4.0.6 (38c164933e) (x64) (HKLM\...\{E83AF186-257D-4869-8EA4-431F924FE24C}) (Version: 4.0.6 - Transmission Project)
UltraViewer version 6.6.108 (HKLM-x32\...\{E0FABD74-083B-47F4-AC5B-CA4237BF8913}_is1) (Version: 6.6.108 - DucFabulous)
UsbRepairTool (HKLM-x32\...\{F8762A81-32B5-4144-9F3C-9274F515A651}) (Version: 1.4.0.0 - Brother Industries, Ltd.) Hidden
Verbatim_SureFireGaming_Product (HKLM\...\{35CB65C6-A7E3-4EE7-AD40-738D70A72164}) (Version: 1.0.3.11 - Verbatim) Hidden
Viber (HKLM-x32\...\{97100214-60EE-495A-9CC2-90BB1E6B30C8}) (Version: 23.1.0.0 - 2010-2024 Viber Media S.a.r.l) Hidden
VLC media player (HKLM\...\VLC media player) (Version: 3.0.21 - VideoLAN)
WD P40 Game Drive (HKLM\...\{EE55DBAE-ECDD-4ADD-AAB5-23DE848B0996}) (Version: 1.0.2.18 - Western Digital Corporation) Hidden
WinRAR 7.00 beta 3 64-bit (HKLM\...\WinRAR archiver) (Version: 7.00.3 - win.rar GmbH)

Packages:
=========
@{MicrosoftWindows.55182690.Taskbar_1000.26100.3775.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-06-17] (0)
@{MicrosoftWindows.Client.Core_1000.26100.31.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.Client.Core/Resources/ProductPkgDisplayName} -> C:\Windows\SystemApps\MicrosoftWindows.Client.Core_cw5n1h2txyewy [2025-06-17] (Microsoft Windows)
@{MicrosoftWindows.Client.Core_1000.26100.35.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.Client.Core/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\MicrosoftWindows.Client.Core_cw5n1h2txyewy [2025-06-17] (Microsoft Windows)
@{MicrosoftWindows.Client.Core_1000.26100.36.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.Client.Core/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\MicrosoftWindows.Client.Core_cw5n1h2txyewy [2025-06-17] (Microsoft Windows)
@{MicrosoftWindows.Client.Core_1000.26100.38.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.Client.Core/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\MicrosoftWindows.Client.Core_cw5n1h2txyewy [2025-06-17] (Microsoft Windows)
@{MicrosoftWindows.Client.Core_1000.26100.39.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.Client.Core/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\MicrosoftWindows.Client.Core_cw5n1h2txyewy [2025-06-17] (Microsoft Windows)
@{MicrosoftWindows.Client.CoreAI_1000.26100.4061.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.Client.CoreAI/AIXHost/ClickToDo/AppDisplayName} -> C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CoreAI_cw5n1h2txyewy [2025-06-17] (Microsoft Windows)
@{MicrosoftWindows.Client.FileExp_1000.22700.1000.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.Client.FileExp/resources/ProductPkgDisplayName} -> C:\Windows\SystemApps\MicrosoftWindows.Client.FileExp_cw5n1h2txyewy [2025-06-17] (Microsoft Windows)
@{MicrosoftWindows.Client.OOBE_1000.26100.2.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.Client.OOBE/resources/ProductPkgDisplayName} -> C:\Windows\SystemApps\MicrosoftWindows.Client.OOBE_cw5n1h2txyewy [2025-06-17] (Microsoft Windows)
@{MicrosoftWindows.Client.OOBE_1000.26100.4.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.Client.OOBE/resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\MicrosoftWindows.Client.OOBE_cw5n1h2txyewy [2025-06-17] (Microsoft Windows)
@{MicrosoftWindows.Client.Photon_1000.26100.7.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.Client.Photon/resources/ProductPkgDisplayName} -> C:\Windows\SystemApps\MicrosoftWindows.Client.Photon_cw5n1h2txyewy [2025-06-17] (Microsoft Windows)
@{MicrosoftWindows.LKG.AccountsService_1000.22621.4601.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.AccountsService/resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\LKG\MicrosoftWindows.LKG.AccountsService_cw5n1h2txyewy [2025-05-14] (0)
@{MicrosoftWindows.LKG.AccountsService_1000.26100.2605.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.AccountsService/resources/ProductPkgDisplayName} -> C:\Windows\SystemApps\LKG\MicrosoftWindows.LKG.AccountsService_cw5n1h2txyewy [2025-05-14] (0)
@{MicrosoftWindows.LKG.AccountsService_1000.26100.2894.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.AccountsService/resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\LKG\MicrosoftWindows.LKG.AccountsService_cw5n1h2txyewy [2025-05-14] (0)
@{MicrosoftWindows.LKG.AccountsService_1000.26100.3194.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.AccountsService/resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\LKG\MicrosoftWindows.LKG.AccountsService_cw5n1h2txyewy [2025-05-14] (0)
@{MicrosoftWindows.LKG.AccountsService_1000.26100.3470.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.AccountsService/resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\LKG\MicrosoftWindows.LKG.AccountsService_cw5n1h2txyewy [2025-05-14] (0)
@{MicrosoftWindows.LKG.DesktopSpotlight_1000.22621.4601.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.DesktopSpotlight/resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\LKG\MicrosoftWindows.LKG.DesktopSpotlight_cw5n1h2txyewy [2025-05-14] (0)
@{MicrosoftWindows.LKG.DesktopSpotlight_1000.26100.2605.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.DesktopSpotlight/resources/ProductPkgDisplayName} -> C:\Windows\SystemApps\LKG\MicrosoftWindows.LKG.DesktopSpotlight_cw5n1h2txyewy [2025-05-14] (0)
@{MicrosoftWindows.LKG.DesktopSpotlight_1000.26100.2894.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.DesktopSpotlight/resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\LKG\MicrosoftWindows.LKG.DesktopSpotlight_cw5n1h2txyewy [2025-05-14] (0)
@{MicrosoftWindows.LKG.DesktopSpotlight_1000.26100.3194.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.DesktopSpotlight/resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\LKG\MicrosoftWindows.LKG.DesktopSpotlight_cw5n1h2txyewy [2025-05-14] (0)
@{MicrosoftWindows.LKG.DesktopSpotlight_1000.26100.3470.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.DesktopSpotlight/resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\LKG\MicrosoftWindows.LKG.DesktopSpotlight_cw5n1h2txyewy [2025-05-14] (0)
@{MicrosoftWindows.LKG.IrisService_1000.22621.4601.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.IrisService/resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\LKG\MicrosoftWindows.LKG.IrisService_cw5n1h2txyewy [2025-05-14] (0)
@{MicrosoftWindows.LKG.IrisService_1000.26100.2605.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.IrisService/resources/ProductPkgDisplayName} -> C:\Windows\SystemApps\LKG\MicrosoftWindows.LKG.IrisService_cw5n1h2txyewy [2025-05-14] (0)
@{MicrosoftWindows.LKG.IrisService_1000.26100.2894.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.IrisService/resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\LKG\MicrosoftWindows.LKG.IrisService_cw5n1h2txyewy [2025-05-14] (0)
@{MicrosoftWindows.LKG.IrisService_1000.26100.3194.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.IrisService/resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\LKG\MicrosoftWindows.LKG.IrisService_cw5n1h2txyewy [2025-05-14] (0)
@{MicrosoftWindows.LKG.IrisService_1000.26100.3470.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.IrisService/resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\LKG\MicrosoftWindows.LKG.IrisService_cw5n1h2txyewy [2025-05-14] (0)
@{MicrosoftWindows.LKG.RulesEngine_1000.22621.4601.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.RulesEngine/resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\LKG\MicrosoftWindows.LKG.RulesEngine_cw5n1h2txyewy [2025-05-14] (0)
@{MicrosoftWindows.LKG.RulesEngine_1000.26100.2605.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.RulesEngine/resources/ProductPkgDisplayName} -> C:\Windows\SystemApps\LKG\MicrosoftWindows.LKG.RulesEngine_cw5n1h2txyewy [2025-05-14] (0)
@{MicrosoftWindows.LKG.RulesEngine_1000.26100.2894.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.RulesEngine/resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\LKG\MicrosoftWindows.LKG.RulesEngine_cw5n1h2txyewy [2025-05-14] (0)
@{MicrosoftWindows.LKG.RulesEngine_1000.26100.3194.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.RulesEngine/resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\LKG\MicrosoftWindows.LKG.RulesEngine_cw5n1h2txyewy [2025-05-14] (0)
@{MicrosoftWindows.LKG.RulesEngine_1000.26100.3470.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.RulesEngine/resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\LKG\MicrosoftWindows.LKG.RulesEngine_cw5n1h2txyewy [2025-05-14] (0)
@{MicrosoftWindows.LKG.SpeechRuntime_1000.22621.4601.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.SpeechRuntime/resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\LKG\MicrosoftWindows.LKG.SpeechRuntime_cw5n1h2txyewy [2025-05-14] (0)
@{MicrosoftWindows.LKG.SpeechRuntime_1000.26100.2605.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.SpeechRuntime/resources/ProductPkgDisplayName} -> C:\Windows\SystemApps\LKG\MicrosoftWindows.LKG.SpeechRuntime_cw5n1h2txyewy [2025-05-14] (0)
@{MicrosoftWindows.LKG.SpeechRuntime_1000.26100.2894.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.SpeechRuntime/resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\LKG\MicrosoftWindows.LKG.SpeechRuntime_cw5n1h2txyewy [2025-05-14] (0)
@{MicrosoftWindows.LKG.SpeechRuntime_1000.26100.3194.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.SpeechRuntime/resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\LKG\MicrosoftWindows.LKG.SpeechRuntime_cw5n1h2txyewy [2025-05-14] (0)
@{MicrosoftWindows.LKG.SpeechRuntime_1000.26100.3470.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.SpeechRuntime/resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\LKG\MicrosoftWindows.LKG.SpeechRuntime_cw5n1h2txyewy [2025-05-14] (0)
@{MicrosoftWindows.LKG.TwinSxS_1000.22621.4601.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.TwinSxS/resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\LKG\MicrosoftWindows.LKG.TwinSxS_cw5n1h2txyewy [2025-06-17] (0)
@{MicrosoftWindows.LKG.TwinSxS_1000.26100.2605.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.TwinSxS/resources/ProductPkgDisplayName} -> C:\Windows\SystemApps\LKG\MicrosoftWindows.LKG.TwinSxS_cw5n1h2txyewy [2025-06-17] (0)
@{MicrosoftWindows.LKG.TwinSxS_1000.26100.2894.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.TwinSxS/resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\LKG\MicrosoftWindows.LKG.TwinSxS_cw5n1h2txyewy [2025-06-17] (0)
@{MicrosoftWindows.LKG.TwinSxS_1000.26100.3194.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.TwinSxS/resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\LKG\MicrosoftWindows.LKG.TwinSxS_cw5n1h2txyewy [2025-06-17] (0)
@{MicrosoftWindows.LKG.TwinSxS_1000.26100.3470.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.TwinSxS/resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\LKG\MicrosoftWindows.LKG.TwinSxS_cw5n1h2txyewy [2025-06-17] (0)
@{MicrosoftWindows.LKG.TwinSxS_1000.26100.3775.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.LKG.TwinSxS/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\LKG\MicrosoftWindows.LKG.TwinSxS_cw5n1h2txyewy [2025-06-17] (0)
Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC [2025-01-16] (0)
Akce kliknutím (náhled) -> C:\WINDOWS\SystemApps\MicrosoftWindows.Client.CoreAI_cw5n1h2txyewy [2025-06-17] (Microsoft Windows)
Balíček prostředí funkcí systému Windows -> C:\WINDOWS\SystemApps\MicrosoftWindows.Client.Core_cw5n1h2txyewy [2025-06-17] (Microsoft Windows)
Balíček prostředí funkcí systému Windows -> C:\Windows\SystemApps\MicrosoftWindows.Client.FileExp_cw5n1h2txyewy [2025-06-17] (Microsoft Windows)
Balíček prostředí funkcí systému Windows -> C:\WINDOWS\SystemApps\MicrosoftWindows.Client.OOBE_cw5n1h2txyewy [2025-06-17] (Microsoft Windows)
Balíček prostředí funkcí systému Windows -> C:\WINDOWS\SystemApps\MicrosoftWindows.Client.Photon_cw5n1h2txyewy [2025-06-17] (Microsoft Windows)
Balíček prostředí funkcí systému Windows -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.54792954.Filons_cw5n1h2txyewy [2025-06-17] (Microsoft Windows)
Balíček prostředí funkcí systému Windows -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.56978801.Voiess_cw5n1h2txyewy [2025-06-17] (Microsoft Windows)
Balíček prostředí funkcí systému Windows -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.57058570.Speion_cw5n1h2txyewy [2025-06-17] (Microsoft Windows)
Balíček prostředí funkcí systému Windows -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.57074914.Livtop_cw5n1h2txyewy [2025-06-17] (Microsoft Windows)
Camo Studio -> C:\Program Files\WindowsApps\ReincubateLtd.CamoStudio_2.1.340.0_x64__9bq3v28c93p4r [2025-01-15] (Reincubate) [Startup Task]
Dropbox -> C:\Program Files (x86)\Dropbox\Client\PackageAssets [2025-06-17] (0)
ESET Context Menu -> C:\Program Files\ESET\ESET Security [2025-06-17] (0)
Gyazo -> C:\Program Files (x86)\Gyazo [2025-05-27] (0)
GyazoReplay -> C:\Program Files (x86)\Gyazo [2025-05-27] (0)
GyazoVideo -> C:\Program Files (x86)\Gyazo [2025-05-27] (0)
Local Artificial Intelligence Manager -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\AI [2025-06-17] (0)
Malwarebytes Anti-Malware -> C:\Program Files\Malwarebytes\Anti-Malware [2025-06-17] (0)
Microsoft Advertising SDK for XAML -> C:\Program Files\WindowsApps\Microsoft.Advertising.Xaml_10.1811.1.0_x64__8wekyb3d8bbwe [2024-12-25] (Microsoft Corporation) [MS Ad]
Microsoft Teams -> C:\Program Files\WindowsApps\MSTeams_24295.605.3225.8804_x64__8wekyb3d8bbwe [2024-12-25] (Microsoft) [Startup Task]
Microsoft.Windows.AugLoop.CBS -> C:\Windows\SystemApps\Microsoft.Windows.AugLoop.CBS_8wekyb3d8bbwe [2025-06-17] (Microsoft Corporation)
Microsoft.WindowsAppRuntime.CBS -> C:\WINDOWS\SystemApps\Microsoft.WindowsAppRuntime.CBS_8wekyb3d8bbwe [2025-04-09] (Microsoft Corporation)
Microsoft.WindowsAppRuntime.CBS.1.6 -> C:\WINDOWS\SystemApps\Microsoft.WindowsAppRuntime.vNext.CBS_8wekyb3d8bbwe [2025-06-17] (Microsoft Corporation)
ms-resource://MicrosoftCorporationII.QuickAssist/resources/APP_WINDOW_NAME -> C:\Program Files\WindowsApps\MicrosoftCorporationII.QuickAssist_2.0.36.0_x64__8wekyb3d8bbwe [2025-05-03] (Microsoft Corp.)
ms-resource://MicrosoftWindows.CrossDevice/CrossDevice.Core/Resources/PackageName -> C:\Program Files\WindowsApps\MicrosoftWindows.CrossDevice_1.25042.38.0_x64__cw5n1h2txyewy [2025-05-28] (Microsoft Windows) [Startup Task]
ms-resource:ApplicationTitleWithTagline -> C:\Program Files\WindowsApps\Microsoft.BingNews_4.55.62231.0_neutral_split.scale-150_8wekyb3d8bbwe [2025-05-31] (Microsoft Corporation)
ms-resource:AppName -> C:\Program Files\WindowsApps\Microsoft.ApplicationCompatibilityEnhancements_1.2411.16.0_x64__8wekyb3d8bbwe [2024-12-26] (Microsoft Corporation)
ms-resource:AppStoreName -> C:\Program Files\WindowsApps\Microsoft.AV1VideoExtension_1.3.4.0_x64__8wekyb3d8bbwe [2024-12-26] (Microsoft Corporation)
ms-resource:AppStoreName -> C:\Program Files\WindowsApps\Microsoft.AVCEncoderVideoExtension_1.1.17.0_x64__8wekyb3d8bbwe [2025-04-17] (Microsoft Corporation)
ms-resource:AppStoreName -> C:\Program Files\WindowsApps\Microsoft.MPEG2VideoExtension_1.0.61931.0_x64__8wekyb3d8bbwe [2024-12-25] (Microsoft Corporation)
ms-resource:AppStoreName -> C:\Program Files\WindowsApps\Microsoft.RawImageExtension_2.5.5.0_x64__8wekyb3d8bbwe [2025-04-17] (Microsoft Corporation)
ms-resource:AppStoreName -> C:\Program Files\WindowsApps\Microsoft.Windows.DevHome_0.2100.858.0_x64__8wekyb3d8bbwe [2025-05-16] (Microsoft Corporation)
ms-resource:AppTitle -> C:\Program Files\WindowsApps\SpotifyAB.SpotifyMusic_1.265.255.0_x64__zpdnekdrzrea0 [2025-06-17] (Spotify AB) [Startup Task]
ms-resource:Clipchamp/AppName -> C:\Program Files\WindowsApps\Clipchamp.Clipchamp_4.2.10220.0_x64__yxz26nhyzhsrt [2025-05-20] (Microsoft Corp.)
ms-resource:EdgeGameBarPackageDisplayName -> C:\Program Files\WindowsApps\Microsoft.Edge.GameAssist_1.0.3336.0_x64__8wekyb3d8bbwe [2025-06-01] (ms-resource:PublisherDisplayName)
ms-resource:PackageDisplayName -> C:\Program Files\WindowsApps\Microsoft.BingSearch_1.1.37.0_x64__8wekyb3d8bbwe [2025-05-14] (Microsoft Corporation)
ms-resource:PackageDisplayName -> C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.41.3.0_x64__8wekyb3d8bbwe [2025-06-17] (Microsoft Corporation)
ms-resource:ProductPkgDisplayName -> C:\WINDOWS\SystemApps\MicrosoftWindows.Client.Core_cw5n1h2txyewy [2025-06-17] (Microsoft Windows)
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.967.0_x64__56jybvy8sckqj [2024-12-25] (NVIDIA Corp.)
OfficePushNotificationsUtility -> C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16 [2025-06-17] (0)
Python 3.13 -> C:\Program Files\WindowsApps\PythonSoftwareFoundation.Python.3.13_3.13.1008.0_x64__qbz5n2kfra8p0 [2025-05-11] (Python Software Foundation)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.51.347.0_x64__dt26b99r8h8gj [2025-01-18] (Realtek Semiconductor Corp)
Tisková fronta -> C:\Windows\SystemApps\Microsoft.Windows.PrintQueueActionCenter_cw5n1h2txyewy [2025-06-17] (Microsoft Corporation)
WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2523.1.0_x64__cv1g1gvanyjgm [2025-06-17] (WhatsApp Inc.) [Startup Task]
Widgets Platform Runtime -> C:\Program Files\WindowsApps\Microsoft.WidgetsPlatformRuntime_1.6.9.0_x64__8wekyb3d8bbwe [2025-06-17] (Microsoft Corporation)
Windows Package Manager Source (winget) V2 -> C:\Program Files\WindowsApps\Microsoft.Winget.Source_2025.602.928.50_neutral__8wekyb3d8bbwe [2025-06-02] (Microsoft Corporation)
WindowsAppRuntime.1.2 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.2_2000.802.31.0_x64__8wekyb3d8bbwe [2025-06-17] (Microsoft Corporation)
WindowsAppRuntime.1.2 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.2_2000.802.31.0_x86__8wekyb3d8bbwe [2025-06-17] (Microsoft Corporation)
WindowsAppRuntime.1.3 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.3_3000.934.1904.0_x64__8wekyb3d8bbwe [2024-07-19] (Microsoft Corporation)
WindowsAppRuntime.1.3 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.3_3000.934.1904.0_x86__8wekyb3d8bbwe [2024-07-19] (Microsoft Corporation)
WindowsAppRuntime.1.4 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.4_4000.1309.2056.0_x64__8wekyb3d8bbwe [2024-09-11] (Microsoft Corporation)
WindowsAppRuntime.1.4 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.4_4000.1309.2056.0_x86__8wekyb3d8bbwe [2024-09-11] (Microsoft Corporation)
WindowsAppRuntime.1.5 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.5_5001.178.1908.0_x64__8wekyb3d8bbwe [2024-07-19] (Microsoft Corporation)
WindowsAppRuntime.1.5 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.5_5001.214.1843.0_x64__8wekyb3d8bbwe [2024-08-14] (Microsoft Corporation)
WindowsAppRuntime.1.5 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.5_5001.275.500.0_x64__8wekyb3d8bbwe [2024-10-10] (Microsoft Corporation)
WindowsAppRuntime.1.5 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.5_5001.311.2039.0_x64__8wekyb3d8bbwe [2024-11-19] (Microsoft Corporation)
WindowsAppRuntime.1.5 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.5_5001.373.1736.0_x64__8wekyb3d8bbwe [2025-01-18] (Microsoft Corporation)
WindowsAppRuntime.1.5 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.5_5001.373.1736.0_x86__8wekyb3d8bbwe [2025-01-18] (Microsoft Corporation)
WindowsAppRuntime.1.6 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.6_6000.373.1641.0_x64__8wekyb3d8bbwe [2025-01-18] (Microsoft Corporation)
WindowsAppRuntime.1.6 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.6_6000.401.2352.0_x64__8wekyb3d8bbwe [2025-02-12] (Microsoft Corporation)
WindowsAppRuntime.1.6 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.6_6000.424.1611.0_x64__8wekyb3d8bbwe [2025-03-12] (Microsoft Corporation)
WindowsAppRuntime.1.6 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.6_6000.457.2140.0_x64__8wekyb3d8bbwe [2025-04-09] (Microsoft Corporation)
WindowsAppRuntime.1.6 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.6_6000.486.517.0_x64__8wekyb3d8bbwe [2025-05-15] (Microsoft Corporation)
WindowsAppRuntime.1.6 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.6_6000.519.329.0_x64__8wekyb3d8bbwe [2025-06-17] (Microsoft Corporation)
WindowsAppRuntime.1.6 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.6_6000.519.329.0_x86__8wekyb3d8bbwe [2025-06-17] (Microsoft Corporation)
WindowsAppRuntime.1.7 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.7_7000.498.2246.0_x64__8wekyb3d8bbwe [2025-05-28] (Microsoft Corporation)
WindowsAppRuntime.1.7 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.7_7000.522.1444.0_x64__8wekyb3d8bbwe [2025-06-17] (Microsoft Corporation)
WindowsAppRuntime.1.7 -> C:\Program Files\WindowsApps\Microsoft.WindowsAppRuntime.1.7_7000.522.1444.0_x86__8wekyb3d8bbwe [2025-06-17] (Microsoft Corporation)
WinRAR -> C:\Program Files\WinRAR [2024-09-06] (0)

========================= Memory info: ===================================

Percentage of memory in use: 17%
Total physical RAM: 65436.01 MB
Available physical RAM: 53898.42 MB
Total Virtual: 69532.01 MB
Available Virtual: 55715.54 MB

========================= Partitions: =====================================

1 Drive c: () (Fixed) (Total:848.16 GB) (Free:599.21 GB) NTFS
2 Drive d: (Data) (Fixed) (Total:931.51 GB) (Free:408.01 GB) NTFS
3 Drive e: (Data2) (Fixed) (Total:1863 GB) (Free:1171.51 GB) NTFS
4 Drive f: (Kingston) (Fixed) (Total:447.13 GB) (Free:234.5 GB) NTFS
5 Drive g: (NVME) (Fixed) (Total:900 GB) (Free:371.08 GB) NTFS

========================= Users: ========================================

U§ivatelsk‚ Łźty pro \\DESKTOP-8D4LOVK

Administrator DefaultAccount Guest
LM WDAGUtilityAccount
Pýˇkaz byl ŁspŘçnŘ dokonźen.


**** End of log ****
Sestava v profilu.
Watercooling Club EXOverclocker@HWBot league rank#1 Aprilia Shiver Club BMW ///M Club

Reklama
Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Přesměrovávání na jinou stránku + problémy

Příspěvekod jaro3 » 17 čer 2025 22:21

Prosím, postupuj následujícím způsobem:
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.

Kód: Vybrat vše

Start
CreateRestorePoint:
CloseProcesses:
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-3383119089-1705184809-3219548888-1001\...\MountPoints2: {45669fd2-517a-11ef-836f-8c882b11fbb1} - "H:\setup.exe"
Task: {3998C054-4658-4BE4-B4F5-CB6D2FAA26E5} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem138.0.7194.0{8F4B049D-2F76-4569-BE30-BC69A4130E6B} => C:\Program Files (x86)\Google\GoogleUpdater\138.0.7194.0\updater.exe [7080032 2025-05-22] (Google LLC -> Google LLC)
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Edge HKLM-x32\...\Edge\Extension: [nkapkmklnmidbbgjaipbgpcnbomnaakc]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [oombnmpbbhbakfpfgdflaajkhicgfaam]
S2 RCService; "C:\Users\LM\AppData\Local\Temp\AnyViewer\RCService.exe" [X] <==== ATTENTION
R3 cpuz160; C:\WINDOWS\temp\cpuz160\cpuz160_x64.sys [44696 2025-06-17] (Microsoft Windows Hardware Compatibility Publisher -> CPUID) <==== ATTENTION
S3 cpuz159; \??\C:\WINDOWS\temp\cpuz159\cpuz159_x64.sys [X] <==== ATTENTION
U4 npcap_wifi; no ImagePath
U4 npf_wifi; no ImagePath
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
FirewallRules: [{3C35DA88-2C43-4736-BDB5-6D87DD6DEF51}] => (Allow) C:\Program Files (x86)\AnyViewer\avcore.exe => No File
FirewallRules: [{9DFA8212-2687-4045-9C13-46133DEC875E}] => (Allow) C:\Program Files (x86)\AnyViewer\avcore.exe => No File
FirewallRules: [{8A09E5A4-153A-47C7-B84A-0AC0B8B5DD7B}] => (Allow) C:\Program Files (x86)\AnyViewer\RCClient.exe => No File
FirewallRules: [{7FDCA083-D28C-4FFE-B235-2F287ED6F297}] => (Allow) C:\Program Files (x86)\AnyViewer\RCClient.exe => No File
FirewallRules: [UDP Query User{2745F322-911A-4B4F-A85B-F78FE0360179}C:\users\lm\desktop\unv\ipc-search-tool.exe] => (Allow) C:\users\lm\desktop\unv\ipc-search-tool.exe => No File
FirewallRules: [TCP Query User{90B027F8-1FC5-47E9-AC37-8ACDB12047E7}C:\users\lm\desktop\unv\ipc-search-tool.exe] => (Allow) C:\users\lm\desktop\unv\ipc-search-tool.exe => No File
FirewallRules: [UDP Query User{1D2CA80D-1E5D-4BB6-938E-F7DCE1332205}C:\users\lm\desktop\unv\eztelnettool\eztelnettool.exe] => (Allow) C:\users\lm\desktop\unv\eztelnettool\eztelnettool.exe => No File
FirewallRules: [TCP Query User{128745A1-226E-443D-8121-CBF033FE4932}C:\users\lm\desktop\unv\eztelnettool\eztelnettool.exe] => (Allow) C:\users\lm\desktop\unv\eztelnettool\eztelnettool.exe => No File
FirewallRules: [{D0DEA99D-3D32-47EF-887A-8559DB912522}] => (Allow) C:\Users\LM\Desktop\UNV\putty.exe => No File
FirewallRules: [{6BF3E7EF-C422-4939-A811-093F760D58B0}] => (Allow) C:\Users\LM\Desktop\UNV\putty.exe => No File
FirewallRules: [{24BA7C58-C536-42E2-A61E-D9B7555CF205}] => (Allow) C:\Users\LM\Desktop\UNV\putty.exe => No File
FirewallRules: [{C6698655-7178-4351-A717-17CF2DD50657}] => (Allow) C:\Users\LM\Desktop\UNV\putty.exe => No File
FirewallRules: [{472BFF9F-4CC3-4306-8B8F-36EDB8F181BE}] => (Allow) C:\Users\LM\Desktop\UNV\tftpd32.exe => No File
FirewallRules: [{48267196-092C-43C0-8B07-8D8A630897C0}] => (Allow) C:\Users\LM\Desktop\UNV\tftpd32.exe => No File
FirewallRules: [{1BB8D8A1-1006-476D-BDCB-002C554882C9}] => (Allow) C:\Users\LM\Desktop\UNV\tftpd32.exe => No File
FirewallRules: [{8C3E24F2-EDB1-4875-99F0-C502105B9C1B}] => (Allow) C:\Users\LM\Desktop\UNV\tftpd32.exe => No File
FirewallRules: [{2BA7014A-C83F-4C99-B332-248D8B2F48D3}] => (Allow) F:\SteamLibrary\steamapps\common\Fall Guys\FallGuysEACLauncher.exe => No File
FirewallRules: [{93723345-4812-4132-83BC-9A343777599B}] => (Allow) F:\SteamLibrary\steamapps\common\Fall Guys\FallGuysEACLauncher.exe => No File
FirewallRules: [{79EE6B1C-49D5-4F67-B787-A4AA0198F8A5}] => (Block) C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe => No File
FirewallRules: [{EF38FA69-E615-4F9F-AB91-A77BEC24BE0B}] => (Block) C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe => No File
FirewallRules: [{44CE0CE4-F270-4B96-87A3-0B1D11706EAB}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\fuscript.exe => No File
FirewallRules: [{6F8D20F2-497E-4914-93CD-FDCBAF502138}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\ElementsPanelDaemon.exe => No File
FirewallRules: [{A5174675-D491-4DB6-A617-9763DC410551}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\TangentPanelDaemon.exe => No File
FirewallRules: [{AF5083D9-F725-41E4-A9A4-AD1E4D2CC8B4}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\EuphonixPanelDaemon.exe => No File
FirewallRules: [{114B0165-497B-4B1A-BB86-BE2543367154}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\JLCooperPanelDaemon.exe => No File
FirewallRules: [{854A8D68-9D38-46FA-A687-8DE066EFF42A}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\DaVinciPanelDaemon.exe => No File
FirewallRules: [{B8642719-BD8D-4DE3-AA3B-E7F4576C35E9}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\bmdpaneld.exe => No File
FirewallRules: [{AE9AC529-06A8-4DA4-8D22-28AFC5C17D9D}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\Resolve.exe => No File
FirewallRules: [UDP Query User{EFCF87A9-0A00-4C5F-A73D-B8567937BBF8}C:\users\lm\appdata\local\temp\anyviewer\rcclient.exe] => (Allow) C:\users\lm\appdata\local\temp\anyviewer\rcclient.exe => No File
FirewallRules: [TCP Query User{E5ED8AB5-9955-4079-8D8A-2B40CB94F00E}C:\users\lm\appdata\local\temp\anyviewer\rcclient.exe] => (Allow) C:\users\lm\appdata\local\temp\anyviewer\rcclient.exe => No File
FirewallRules: [{825783EE-1AC8-47C4-ADDD-4EE875D93397}] => (Block) C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe => No File
FirewallRules: [{060CD0D8-F043-487B-8E67-55F3FEA905B3}] => (Block) C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe => No File
FirewallRules: [{C3953230-5D0A-40DB-9777-76B068BECBC1}] => (Allow) D:\SteamLibrary\steamapps\common\Albion Online\launcher\AlbionLauncher.exe => No File
FirewallRules: [{A67EFB21-159C-4EC3-A8BF-E1BA40450079}] => (Allow) D:\SteamLibrary\steamapps\common\Albion Online\launcher\AlbionLauncher.exe => No File
FirewallRules: [{2A8F1778-2F54-4EE8-BCBE-47697E47F302}] => (Allow) F:\SteamLibrary\steamapps\common\Albion Online\launcher\AlbionLauncher.exe => No File
FirewallRules: [{5E453393-9B2D-4163-BBA3-00D8340E2F77}] => (Allow) F:\SteamLibrary\steamapps\common\Albion Online\launcher\AlbionLauncher.exe => No File
Virustotal: C:\Program Files (x86)\ofp4opxt8k.dat

EmptyTemp:
End

(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).

Ulož jej na na plochu jako fixlist.txt


Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.


Application errors:
==================
Error: (06/17/2025 08:48:12 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Inicializace registrace certifikátu SCEP pro WORKGROUP\DESKTOP-8D4LOVK$ přes https://AMD-KeyId-907d65e9b562315997dd5 ... s/Aik/scep se nepovedla:

GetCACaps
GetCACaps: Not Found
{"Message":"The authority \"amd-keyid-907d65e9b562315997dd5ad086b2b7598957b92c.microsoftaik.azure.net\" does not exist."}
HTTP/1.1 404 Not Found
Date: Tue, 17 Jun 2025 18:48:11 GMT
Content-Length: 121
Content-Type: application/json; charset=utf-8
X-Content-Type-Options: nosniff
Strict-Transport-Security: max-age=31536000;includeSubDomains
x-ms-request-id: 2df84990-9286-406b-a7cb-36476176789b

Metoda: GET(797ms)
Fáze: GetCACaps
Nenalezeno (404) 0x80190194 (-2145844844 HTTP_E_STATUS_NOT_FOUND)


Spusť znovu MiniToolBox.
Zaškrtni čtverečky:
Flush DNS
Reset IE Proxy Settings
Reset FF Proxy Settings
List Device * Only problem * No Driver *All
List Minidump Files
Potom klikni na GO , po chvíli skenu se objeví log s názvem „Result“ , zkopíruj sem celý jeho obsah.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Karrex
Elite Level 10
Elite Level 10
Příspěvky: 9618
Registrován: listopad 08
Bydliště: Brno
Pohlaví: Muž
Stav:
Offline

Re: Přesměrovávání na jinou stránku + problémy

Příspěvekod Karrex » 18 čer 2025 20:53

Fix result of Farbar Recovery Scan Tool (x64) Version: 07-06-2025
Ran by LM (18-06-2025 20:33:12) Run:1
Running from C:\Users\LM\Desktop
Loaded Profiles: LM
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CreateRestorePoint:
CloseProcesses:
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-3383119089-1705184809-3219548888-1001\...\MountPoints2: {45669fd2-517a-11ef-836f-8c882b11fbb1} - "H:\setup.exe"
Task: {3998C054-4658-4BE4-B4F5-CB6D2FAA26E5} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem138.0.7194.0{8F4B049D-2F76-4569-BE30-BC69A4130E6B} => C:\Program Files (x86)\Google\GoogleUpdater\138.0.7194.0\updater.exe [7080032 2025-05-22] (Google LLC -> Google LLC)
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Edge HKLM-x32\...\Edge\Extension: [nkapkmklnmidbbgjaipbgpcnbomnaakc]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [oombnmpbbhbakfpfgdflaajkhicgfaam]
S2 RCService; "C:\Users\LM\AppData\Local\Temp\AnyViewer\RCService.exe" [X] <==== ATTENTION
R3 cpuz160; C:\WINDOWS\temp\cpuz160\cpuz160_x64.sys [44696 2025-06-17] (Microsoft Windows Hardware Compatibility Publisher -> CPUID) <==== ATTENTION
S3 cpuz159; \??\C:\WINDOWS\temp\cpuz159\cpuz159_x64.sys [X] <==== ATTENTION
U4 npcap_wifi; no ImagePath
U4 npf_wifi; no ImagePath
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
FirewallRules: [{3C35DA88-2C43-4736-BDB5-6D87DD6DEF51}] => (Allow) C:\Program Files (x86)\AnyViewer\avcore.exe => No File
FirewallRules: [{9DFA8212-2687-4045-9C13-46133DEC875E}] => (Allow) C:\Program Files (x86)\AnyViewer\avcore.exe => No File
FirewallRules: [{8A09E5A4-153A-47C7-B84A-0AC0B8B5DD7B}] => (Allow) C:\Program Files (x86)\AnyViewer\RCClient.exe => No File
FirewallRules: [{7FDCA083-D28C-4FFE-B235-2F287ED6F297}] => (Allow) C:\Program Files (x86)\AnyViewer\RCClient.exe => No File
FirewallRules: [UDP Query User{2745F322-911A-4B4F-A85B-F78FE0360179}C:\users\lm\desktop\unv\ipc-search-tool.exe] => (Allow) C:\users\lm\desktop\unv\ipc-search-tool.exe => No File
FirewallRules: [TCP Query User{90B027F8-1FC5-47E9-AC37-8ACDB12047E7}C:\users\lm\desktop\unv\ipc-search-tool.exe] => (Allow) C:\users\lm\desktop\unv\ipc-search-tool.exe => No File
FirewallRules: [UDP Query User{1D2CA80D-1E5D-4BB6-938E-F7DCE1332205}C:\users\lm\desktop\unv\eztelnettool\eztelnettool.exe] => (Allow) C:\users\lm\desktop\unv\eztelnettool\eztelnettool.exe => No File
FirewallRules: [TCP Query User{128745A1-226E-443D-8121-CBF033FE4932}C:\users\lm\desktop\unv\eztelnettool\eztelnettool.exe] => (Allow) C:\users\lm\desktop\unv\eztelnettool\eztelnettool.exe => No File
FirewallRules: [{D0DEA99D-3D32-47EF-887A-8559DB912522}] => (Allow) C:\Users\LM\Desktop\UNV\putty.exe => No File
FirewallRules: [{6BF3E7EF-C422-4939-A811-093F760D58B0}] => (Allow) C:\Users\LM\Desktop\UNV\putty.exe => No File
FirewallRules: [{24BA7C58-C536-42E2-A61E-D9B7555CF205}] => (Allow) C:\Users\LM\Desktop\UNV\putty.exe => No File
FirewallRules: [{C6698655-7178-4351-A717-17CF2DD50657}] => (Allow) C:\Users\LM\Desktop\UNV\putty.exe => No File
FirewallRules: [{472BFF9F-4CC3-4306-8B8F-36EDB8F181BE}] => (Allow) C:\Users\LM\Desktop\UNV\tftpd32.exe => No File
FirewallRules: [{48267196-092C-43C0-8B07-8D8A630897C0}] => (Allow) C:\Users\LM\Desktop\UNV\tftpd32.exe => No File
FirewallRules: [{1BB8D8A1-1006-476D-BDCB-002C554882C9}] => (Allow) C:\Users\LM\Desktop\UNV\tftpd32.exe => No File
FirewallRules: [{8C3E24F2-EDB1-4875-99F0-C502105B9C1B}] => (Allow) C:\Users\LM\Desktop\UNV\tftpd32.exe => No File
FirewallRules: [{2BA7014A-C83F-4C99-B332-248D8B2F48D3}] => (Allow) F:\SteamLibrary\steamapps\common\Fall Guys\FallGuysEACLauncher.exe => No File
FirewallRules: [{93723345-4812-4132-83BC-9A343777599B}] => (Allow) F:\SteamLibrary\steamapps\common\Fall Guys\FallGuysEACLauncher.exe => No File
FirewallRules: [{79EE6B1C-49D5-4F67-B787-A4AA0198F8A5}] => (Block) C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe => No File
FirewallRules: [{EF38FA69-E615-4F9F-AB91-A77BEC24BE0B}] => (Block) C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe => No File
FirewallRules: [{44CE0CE4-F270-4B96-87A3-0B1D11706EAB}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\fuscript.exe => No File
FirewallRules: [{6F8D20F2-497E-4914-93CD-FDCBAF502138}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\ElementsPanelDaemon.exe => No File
FirewallRules: [{A5174675-D491-4DB6-A617-9763DC410551}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\TangentPanelDaemon.exe => No File
FirewallRules: [{AF5083D9-F725-41E4-A9A4-AD1E4D2CC8B4}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\EuphonixPanelDaemon.exe => No File
FirewallRules: [{114B0165-497B-4B1A-BB86-BE2543367154}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\JLCooperPanelDaemon.exe => No File
FirewallRules: [{854A8D68-9D38-46FA-A687-8DE066EFF42A}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\DaVinciPanelDaemon.exe => No File
FirewallRules: [{B8642719-BD8D-4DE3-AA3B-E7F4576C35E9}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\bmdpaneld.exe => No File
FirewallRules: [{AE9AC529-06A8-4DA4-8D22-28AFC5C17D9D}] => (Allow) C:\Program Files\Blackmagic Design\DaVinci Resolve\Resolve.exe => No File
FirewallRules: [UDP Query User{EFCF87A9-0A00-4C5F-A73D-B8567937BBF8}C:\users\lm\appdata\local\temp\anyviewer\rcclient.exe] => (Allow) C:\users\lm\appdata\local\temp\anyviewer\rcclient.exe => No File
FirewallRules: [TCP Query User{E5ED8AB5-9955-4079-8D8A-2B40CB94F00E}C:\users\lm\appdata\local\temp\anyviewer\rcclient.exe] => (Allow) C:\users\lm\appdata\local\temp\anyviewer\rcclient.exe => No File
FirewallRules: [{825783EE-1AC8-47C4-ADDD-4EE875D93397}] => (Block) C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe => No File
FirewallRules: [{060CD0D8-F043-487B-8E67-55F3FEA905B3}] => (Block) C:\Program Files\Adobe\Acrobat DC\Acrobat\acrocef_1\AcroCEF.exe => No File
FirewallRules: [{C3953230-5D0A-40DB-9777-76B068BECBC1}] => (Allow) D:\SteamLibrary\steamapps\common\Albion Online\launcher\AlbionLauncher.exe => No File
FirewallRules: [{A67EFB21-159C-4EC3-A8BF-E1BA40450079}] => (Allow) D:\SteamLibrary\steamapps\common\Albion Online\launcher\AlbionLauncher.exe => No File
FirewallRules: [{2A8F1778-2F54-4EE8-BCBE-47697E47F302}] => (Allow) F:\SteamLibrary\steamapps\common\Albion Online\launcher\AlbionLauncher.exe => No File
FirewallRules: [{5E453393-9B2D-4163-BBA3-00D8340E2F77}] => (Allow) F:\SteamLibrary\steamapps\common\Albion Online\launcher\AlbionLauncher.exe => No File
Virustotal: C:\Program Files (x86)\ofp4opxt8k.dat

EmptyTemp:
End
*****************

Restore point was successfully created.
Processes closed successfully.
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiSpyware"="0" => value restored successfully
HKLM\SOFTWARE\Microsoft\Windows Defender\\"DisableAntiVirus"="0" => value restored successfully
HKU\S-1-5-21-3383119089-1705184809-3219548888-1001\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{45669fd2-517a-11ef-836f-8c882b11fbb1} => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{3998C054-4658-4BE4-B4F5-CB6D2FAA26E5}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{3998C054-4658-4BE4-B4F5-CB6D2FAA26E5}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem138.0.7194.0{8F4B049D-2F76-4569-BE30-BC69A4130E6B} => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem138.0.7194.0{8F4B049D-2F76-4569-BE30-BC69A4130E6B}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{077BA067-7C15-40F0-B22E-C9DC2A54B4A2}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{077BA067-7C15-40F0-B22E-C9DC2A54B4A2}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Location\Notifications => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Location\Notifications" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{CCDFC0B8-01A3-4E74-A820-4F13F51D269E}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{CCDFC0B8-01A3-4E74-A820-4F13F51D269E}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{F3E6E7ED-A196-4E44-8803-55FAB3AD4E29}" => removed successfully
C:\WINDOWS\System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker" => removed successfully
HKLM\SOFTWARE\Wow6432Node\Microsoft\Edge\Extensions\nkapkmklnmidbbgjaipbgpcnbomnaakc => removed successfully
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\efaidnbmnnnibpcajpcglclefindmkaj => removed successfully
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\oombnmpbbhbakfpfgdflaajkhicgfaam => removed successfully
HKLM\System\CurrentControlSet\Services\RCService => removed successfully
RCService => service removed successfully
cpuz160 => Service stopped successfully.
HKLM\System\CurrentControlSet\Services\cpuz160 => removed successfully
cpuz160 => service removed successfully
HKLM\System\CurrentControlSet\Services\cpuz159 => removed successfully
cpuz159 => service removed successfully
HKLM\System\CurrentControlSet\Services\npcap_wifi => removed successfully
npcap_wifi => service removed successfully
HKLM\System\CurrentControlSet\Services\npf_wifi => removed successfully
npf_wifi => service removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => removed successfully
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive1 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive2 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive3 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive4 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive5 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive6 => removed successfully
HKLM\Software\Wow6432Node\Microsoft\Windows\CurrentVersion\Explorer\ShellIconOverlayIdentifiers\ OneDrive7 => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3C35DA88-2C43-4736-BDB5-6D87DD6DEF51}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9DFA8212-2687-4045-9C13-46133DEC875E}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8A09E5A4-153A-47C7-B84A-0AC0B8B5DD7B}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7FDCA083-D28C-4FFE-B235-2F287ED6F297}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{2745F322-911A-4B4F-A85B-F78FE0360179}C:\users\lm\desktop\unv\ipc-search-tool.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{90B027F8-1FC5-47E9-AC37-8ACDB12047E7}C:\users\lm\desktop\unv\ipc-search-tool.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{1D2CA80D-1E5D-4BB6-938E-F7DCE1332205}C:\users\lm\desktop\unv\eztelnettool\eztelnettool.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{128745A1-226E-443D-8121-CBF033FE4932}C:\users\lm\desktop\unv\eztelnettool\eztelnettool.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D0DEA99D-3D32-47EF-887A-8559DB912522}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6BF3E7EF-C422-4939-A811-093F760D58B0}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{24BA7C58-C536-42E2-A61E-D9B7555CF205}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C6698655-7178-4351-A717-17CF2DD50657}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{472BFF9F-4CC3-4306-8B8F-36EDB8F181BE}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{48267196-092C-43C0-8B07-8D8A630897C0}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1BB8D8A1-1006-476D-BDCB-002C554882C9}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8C3E24F2-EDB1-4875-99F0-C502105B9C1B}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2BA7014A-C83F-4C99-B332-248D8B2F48D3}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{93723345-4812-4132-83BC-9A343777599B}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{79EE6B1C-49D5-4F67-B787-A4AA0198F8A5}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{EF38FA69-E615-4F9F-AB91-A77BEC24BE0B}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{44CE0CE4-F270-4B96-87A3-0B1D11706EAB}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6F8D20F2-497E-4914-93CD-FDCBAF502138}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A5174675-D491-4DB6-A617-9763DC410551}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{AF5083D9-F725-41E4-A9A4-AD1E4D2CC8B4}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{114B0165-497B-4B1A-BB86-BE2543367154}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{854A8D68-9D38-46FA-A687-8DE066EFF42A}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B8642719-BD8D-4DE3-AA3B-E7F4576C35E9}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{AE9AC529-06A8-4DA4-8D22-28AFC5C17D9D}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\UDP Query User{EFCF87A9-0A00-4C5F-A73D-B8567937BBF8}C:\users\lm\appdata\local\temp\anyviewer\rcclient.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\TCP Query User{E5ED8AB5-9955-4079-8D8A-2B40CB94F00E}C:\users\lm\appdata\local\temp\anyviewer\rcclient.exe" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{825783EE-1AC8-47C4-ADDD-4EE875D93397}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{060CD0D8-F043-487B-8E67-55F3FEA905B3}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C3953230-5D0A-40DB-9777-76B068BECBC1}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A67EFB21-159C-4EC3-A8BF-E1BA40450079}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2A8F1778-2F54-4EE8-BCBE-47697E47F302}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{5E453393-9B2D-4163-BBA3-00D8340E2F77}" => removed successfully
Virusscan: C:\Program Files (x86)\ofp4opxt8k.dat => https://virusscan.jotti.org/filescanjob/kas54g1khd

=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 931314396 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 704600073 B
Windows/system/drivers => 2508021 B
Edge => 0 B
Chrome => 262716572 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 9368 B
NetworkService => 9368 B
LM => 44102188 B

RecycleBin => 127034 B
EmptyTemp: => 1.8 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 20:33:40 ====

MiniToolBox by Farbar Version: 13-05-2022
Ran by LM (administrator) on 18-06-2025 at 20:59:06
Running from "D:\Stažené soubory"
Microsoft Windows 11 Pro (X64)
Model: B550 AORUS ELITE V2 Manufacturer: Gigabyte Technology Co., Ltd.
Boot Mode: Normal
***************************************************************************

========================= Flush DNS: ===================================

Windows IP Configuration

Successfully flushed the DNS Resolver Cache.


"Reset IE Proxy Settings": IE Proxy Settings were reset.

========================= Devices: ================================

========================= Minidump Files ==================================

No minidump file found


**** End of log ****
Sestava v profilu.
Watercooling Club EXOverclocker@HWBot league rank#1 Aprilia Shiver Club BMW ///M Club

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Přesměrovávání na jinou stránku + problémy

Příspěvekod jaro3 » 19 čer 2025 00:03

Co problémy? Jsou tam problémy ohledně routeru.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Karrex
Elite Level 10
Elite Level 10
Příspěvky: 9618
Registrován: listopad 08
Bydliště: Brno
Pohlaví: Muž
Stav:
Offline

Re: Přesměrovávání na jinou stránku + problémy

Příspěvekod Karrex » 20 čer 2025 08:09

Přesměrování jsem teď delší dobu neměl, takže toto je možná hotovo.

Jen ty útoky pořád probíhají. Jde i o dobu třeba mezi 1 a 4h ráno, kdy jedou jen zařízení stále zapnuté: switche, routery a modem.
Sestava v profilu.
Watercooling Club EXOverclocker@HWBot league rank#1 Aprilia Shiver Club BMW ///M Club

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Přesměrovávání na jinou stránku + problémy

Příspěvekod jaro3 » 20 čer 2025 13:49

Tak zkusit reset routeru do továrního nastavení a pak vše zase ručně nastavit. Nejlepší by bylo dát , pokud existuje, nový firmware.

Stáhni si zde DelFix
https://www.bleepingcomputer.com/download/delfix/

ulož si soubor na plochu.
Poklepáním na ikonu spusť nástroj Delfix.exe
( Ve Windows Vista, Windows 7, 8 a10 musíš spustit soubor pravým tlačítkem myši -> Spustit jako správce .
V hlavním menu, zkontroluj tyto možnosti - Odstranění dezinfekce nástrojů (Remove desinfection tools) – Vyčistit body obnovy (Purge System Restore)
Poté klikněte na tlačítko Spustit (Run) a nech nástroj dělat svoji práci

Poté se zpráva se otevře (DelFix.txt). Vlož celý obsah zprávy sem.Jinak je zpráva zde:
v C: \ DelFix.txt
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
Karrex
Elite Level 10
Elite Level 10
Příspěvky: 9618
Registrován: listopad 08
Bydliště: Brno
Pohlaví: Muž
Stav:
Offline

Re: Přesměrovávání na jinou stránku + problémy

Příspěvekod Karrex » 01 črc 2025 19:27

Jsem zpět:

# DelFix v1.010 - Logfile created 30/06/2025 at 08:57:56
# Updated 26/04/2015 by Xplode
# Username : LM - DESKTOP-8D4LOVK
# Operating System : Windows 10 Enterprise (64 bits)

~ Removing disinfection tools ...

Deleted : C:\FRST
Deleted : C:\zoek_backup
Deleted : C:\AdwCleaner
Deleted : C:\zoek-results.log
Deleted : C:\Users\LM\Desktop\Addition.txt
Deleted : C:\Users\LM\Desktop\Fixlog.txt
Deleted : C:\Users\LM\Desktop\FRST.txt
Deleted : C:\Users\LM\Desktop\FRST64.exe
Deleted : HKLM\SOFTWARE\OldTimer Tools
Deleted : HKLM\SOFTWARE\TrendMicro\Hijackthis

~ Cleaning system restore ...

Deleted : RP #89 [Windows Update | 06/17/2025 19:06:19]
Deleted : RP #91 [Restore Point Created by FRST | 06/18/2025 18:33:12]

New restore point created !

########## - EOF - ##########

Router jsem dal do továrního nastavení. Odpojil vše, aby zůstal jen router a modem. Pak jsem zapojil zpět PC po několika desítkách minut a stejně tam ty útoky byly další. Takže mi zbývá snad už jen modem, proto to píše nulovou MAC adresu? Zachytil by to ale router jako útok ode mě ven, když je modem před?
Sestava v profilu.
Watercooling Club EXOverclocker@HWBot league rank#1 Aprilia Shiver Club BMW ///M Club

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43298
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Přesměrovávání na jinou stránku + problémy

Příspěvekod jaro3 » 02 črc 2025 14:30

Obno obojí. Protože spolu komunikují, PC a modem/router. Z modemu se to může dostávat do PC a zpět. Předávají si dat, ale i nákazy.

Kaspersky Virus Removal Tool
http://www.kaspersky.com/antivirus-removal-tool?form=1
https://www.majorgeeks.com/files/detail ... _tool.html
Návod:
https://support.kaspersky.com/kvrt2020/howto/15674

https://www.youtube.com/watch?v=OA50FrNWVIs
https://forums.malwarebytes.com/topic/3 ... eleatable/

pak:
Stáhni si OTL by OldTimer
https://www.bleepingcomputer.com/download/otl/

na plochu. Ujisti se , že máš zavřena všechna ostatní okna a poklepej na ikonu OTL.Nahoře v okně pod Výstup klikni na minimální výstup.Pod Běžné registry změň na Vše. Zatrhni Kontrola na havěť “LOP“ a Kontrola na havěť “ Purity“ . Klikni na Prohledat. Všechny ostatní nastavení ponech jak jsou. Sken může trvat dlouho, až skončí otevřou se dva logy:
OTL.Txt
Extras.Txt

Jsou uloženy ve stejném místě jako OTL. Oba logy sem prosím zkopíruj.
http://www.geekstogo.com/forum/topic/27 ... er-listit/
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 119 hostů