Prosím o kontrolu logu

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
jaro3
člen Security týmu
Příspěvky: 43396
Registrován: 16 čer 2007 18:58
Bydliště: Jižní Čechy

Re: Prosím o kontrolu logu

Příspěvek od jaro3 »

Vypni antivir i firewall.
Prosím stáhni příslušnou verzi programu pro Tvůj systém 32-bit/64-bit FarbarRecovery Scan Tool (FrSt)
32bit.:
http://www.bleepingcomputer.com/downloa ... ool/dl/81/
64bit.:
http://www.bleepingcomputer.com/downloa ... ool/dl/82/
další odkaz:
http://www.bleepingcomputer.com/downloa ... scan-tool/
a ulož jej na plochu. ,pak spusť FrSt.
Potvrď způsob užití.
Neměň žádné z výchozích nastavení a klikni na položku „Scan“ („Skenovat“) .Když je skenování dokončeno, ukážou se dva logy = FRST.txt a Addition.txt a uloží se na ploše.Prosím zkopíruj sem celý jejich obsah.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
jonek288
nováček
Příspěvky: 23
Registrován: 24 lis 2025 18:27

Re: Prosím o kontrolu logu

Příspěvek od jonek288 »

19:49 - 2025-10-30 16:54 - 001599720 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe
2025-11-17 19:49 - 2025-10-30 16:54 - 001572584 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2025-11-17 19:49 - 2025-10-30 16:54 - 001223400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2025-11-17 19:49 - 2025-10-30 16:54 - 001057512 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2025-11-17 19:49 - 2025-10-30 16:54 - 000813288 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2025-11-17 19:49 - 2025-10-30 16:53 - 024676584 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2025-11-17 19:49 - 2025-10-30 16:53 - 021714152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2025-11-17 19:49 - 2025-10-30 16:53 - 007683304 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2025-11-17 19:49 - 2025-10-30 16:53 - 005918952 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2025-11-17 19:49 - 2025-10-30 16:53 - 005469928 _____ (NVIDIA Corporation) C:\Windows\system32\nvcudadebugger.dll
2025-11-17 19:49 - 2025-10-30 16:53 - 004175080 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2025-11-17 19:49 - 2025-10-30 16:53 - 000468712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe
2025-11-17 19:49 - 2025-10-30 16:52 - 005625560 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2025-11-17 19:49 - 2025-10-30 16:52 - 004924160 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2025-11-17 19:49 - 2025-10-30 16:52 - 000853736 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe
2025-11-17 19:49 - 2025-10-30 02:33 - 000148966 _____ C:\Windows\system32\nvinfo.pb
2025-11-17 19:48 - 2025-11-17 19:48 - 896544928 _____ (NVIDIA Corporation) C:\Users\Jenda\Desktop\581.80-desktop-win10-win11-64bit-international-dch-whql.exe
2025-11-17 14:00 - 2025-11-17 14:00 - 123573688 _____ (Discord Inc.) C:\Users\Jenda\Downloads\DiscordSetup.exe
2025-11-17 14:00 - 2025-11-17 14:00 - 123573688 _____ (Discord Inc.) C:\Users\Jenda\Downloads\DiscordSetup (1).exe
2025-11-17 13:53 - 2025-11-17 13:53 - 000001181 _____ C:\Users\Public\Desktop\LibreOffice 25.8.lnk
2025-11-17 13:53 - 2025-11-17 13:53 - 000000000 ____D C:\Users\Jenda\AppData\Roaming\LibreOffice
2025-11-17 13:53 - 2025-11-17 13:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice
2025-11-17 13:52 - 2025-11-17 13:53 - 000000000 ____D C:\Program Files\LibreOffice
2025-11-17 13:25 - 2025-11-17 13:42 - 000000000 ____D C:\ProgramData\Piriform
5-11-28 14:47 - 2024-04-01 08:24 - 000000000 ____D C:\Windows\INF
2025-11-28 14:43 - 2023-01-07 18:07 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2025-11-28 12:08 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\AppReadiness
2025-11-5-11-25 21:11 - 2025-11-25 21:11 - 074931984 _____ C:\Users\Jenda\Desktop\Vysehrad 6 díl Charita.avi
2025-11-25 21:10 - 2025-11-25 21:10 - 141529336 _____ C:\Users\Jenda\Desktop\Vysehrad 2 díl Zapisne.avi
2025-11-25 21:10 - 2025-11-25 21:10 - 125316848 _____ C:\Users\Jenda\Desktop\Vysehrad 3 díl Roman.avi
2025-11-25 21:10 - 2025-11-25 21:10 - 098453106 _____ C:\Users\Jenda\Desktop\Vysehrad 4 díl Kabelka.avi
2025-11-25 21:09 - 2025-11-25 21:09 - 185896946 _____ C:\Users\Jenda\Desktop\Vysehrad 1 díl Rovina.avi
2025-11-25 20:57 - 2025-11-25 20:57 - 000001015 _____ C:\Users\Jenda\Desktop\odinstalace.lnk
2025-11-25 20:40 - 2025-11-25 20:41 - 000000000 ____D C:\Program Files\CrystalDiskInfo
2025-11-25 20:40 - 2025-11-25 20:40 - 000001796 _____ C:\Users\Jenda\Desktop\CrystalDiskInfo.lnk
2025-11-25 20:40 - 2025-11-25 20:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
2025-11-25 20:28 - 2025-11-25 20:28 - 002911928 _____ (Malwarebytes) C:\Users\Jenda\Desktop\MBSetup.exe
2025-11-25 18:26 - 2025-11-25 18:53 - 000000000 ____D C:\Users\Jenda\Desktop\uninstaleržka
2025-11-25 11:04 - 2025-11-28 12:22 - 000000000 ____D C:\Windows\CbsTemp
2025-11-24 21:48 - 2025-11-24 21:48 - 000001051 _____ C:\Users\Public\Desktop\Revo Uninstaller.lnk
2025-11-24 21:48 - 2025-11-24 21:48 - 000000000 ____D C:\Users\Jenda\AppData\Local\VS Revo Group
2025-11-24 21:48 - 2025-11-24 21:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
2025-11-24 21:48 - 2025-11-24 21:48 - 000000000 ____D C:\Program Files\VS Revo Group
2025-11-24 20:48 - 2025-11-25 20:33 - 000000000 ____D C:\Users\Jenda\AppData\Local\Malwarebytes
2025-11-24 20:48 - 2025-11-24 21:11 - 000000000 ____D C:\ProgramData\Malwarebytes
2025-11-24 20:48 - 2025-11-24 21:11 - 000000000 ____D C:\Program Files\Malwarebytes
2025-11-24 20:48 - 2025-11-24 20:48 - 000002065 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2025-11-24 20:46 - 2025-11-24 20:46 - 000001422 _____ C:\Users\Jenda\Desktop\AdwCleaner[S00].txt
2025-11-24 20:44 - 2025-11-24 20:45 - 000000000 ____D C:\AdwCleaner
2025-11-24 20:37 - 2025-11-24 20:37 - 006024928 _____ (Crystal Dew World ) C:\Users\Jenda\Desktop\CrystalDiskInfo9_7_2.exe
2025-11-24 20:35 - 2025-11-24 20:35 - 009566696 _____ (Malwarebytes) C:\Users\Jenda\Desktop\AdwCleaner.exe
2025-11-24 20:34 - 2025-11-24 20:34 - 000448512 _____ (OldTimer Tools) C:\Users\Jenda\Desktop\wt_launcher_1.0.3.496-6y6fa81jq.exe
2025-11-24 20:33 - 2025-11-24 20:33 - 000050688 _____ (Atribune.org) C:\Users\Jenda\Desktop\ATF-Cleaner.exe
2025-11-24 18:28 - 2025-11-24 18:29 - 000388608 _____ (Trend Micro Inc.) C:\Users\Jenda\Desktop\HijackThis.exe
2025-11-24 18:08 - 2025-11-24 18:08 - 000002029 _____ C:\Users\Jenda\Desktop\WarThunder.lnk
2025-11-24 18:08 - 2025-11-24 18:08 - 000000000 ____D C:\Users\Jenda\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder
2025-11-24 16:59 - 2025-11-24 16:59 - 000031648 _____ C:\Users\Jenda\Desktop\Microsoft.Management.Deployment.winmd
2025-11-17 19:55 - 2025-11-28 15:34 - 000000000 ____D C:\Users\Jenda\AppData\Local\CrashDumps
2025-11-17 19:54 - 2025-11-17 19:54 - 000003834 _____ C:\Windows\system32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2025-11-17 19:54 - 2025-11-17 19:54 - 000001398 _____ C:\Users\Public\Desktop\NVIDIA App.lnk
2025-11-17 19:54 - 2025-11-17 19:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2025-11-17 19:54 - 2025-11-17 19:54 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2025-11-17 19:54 - 2025-10-15 23:22 - 001310832 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2025-11-17 19:54 - 2025-10-15 23:22 - 001115248 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2025-11-17 19:54 - 2025-10-15 23:22 - 000288368 _____ C:\Windows\system32\FvSDK_x64.dll
2025-11-17 19:54 - 2025-10-15 23:22 - 000263280 _____ C:\Windows\SysWOW64\FvSDK_x86.dll
2025-11-17 19:54 - 2025-10-15 23:05 - 000180760 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2025-11-17 19:54 - 2025-10-15 23:05 - 000159768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2025-11-17 19:52 - 2025-11-17 19:54 - 000000000 ____D C:\Windows\system32\Drivers\NVIDIA Corporation
2025-11-17 19:51 - 2025-10-30 02:33 - 000126056 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2025-11-17 19:51 - 2025-10-15 23:05 - 000059928 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2025-11-17 19:49 - 2025-10-30 16:59 - 002402696 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2025-11-17 19:49 - 2025-10-30 16:59 - 002402696 _____ C:\Windows\system32\vulkaninfo.exe
20252025-11-16 10:59 - 2025-11-16 11:02 - 000000000 ____D C:\Windows\system32\Tasks\GoogleUserPEH
2025-11-14 13:38 - 2025-11-14 13:38 - 000000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.16
2025-11-13 15:33 - 2025-11-13 15:33 - 000000000 ____D C:\ProgramData\SupremoRemoteDesktop
2025-10-29 12:12 - 2025-10-29 12:12 - 000079894 _____ C:\Windows\SysWOW64\ctac.json
2025-10-29 12:12 - 2025-10-29 12:12 - 000079894 _____ C:\Windows\system32\ctac.json
2025-10-29 12:12 - 2025-10-29 12:12 - 000035082 _____ C:\Windows\SysWOW64\IntegratedServicesRegionPolicySet.json
2025-10-29 12:12 - 2025-10-29 12:12 - 000035082 _____ C:\Windows\system32\IntegratedServicesRegionPolicySet.json

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2025-11-28 15:34 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\SystemTemp
2025-11-28 15:34 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-11-28 15:33 - 2024-11-24 11:06 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2025-11-28 15:33 - 2024-11-24 11:05 - 000096506 _____ C:\Windows\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2025-11-28 15:33 - 2023-09-02 16:46 - 000000000 ____D C:\ProgramData\NVIDIA
2025-11-28 15:33 - 2023-01-08 00:28 - 000012288 ___SH C:\DumpStack.log.tmp
2025-11-28 14:55 - 2024-11-24 11:03 - 000000000 ____D C:\Users\Jenda
2025-11-28 14:55 - 2024-04-01 08:21 - 000524288 _____ C:\Windows\system32\config\BBI
2025-11-28 14:47 - 2024-11-24 11:09 - 001603798 _____ C:\Windows\system32\PerfStringBackup.INI
202Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-11-2025
Ran by Jenda (administrator) on BOBIK (Gigabyte Technology Co., Ltd. B550 AORUS ELITE V2) (28-11-2025 15:36:18)
Running from C:\Users\Jenda\Desktop\FRST64.exe
Loaded Profiles: Jenda
Platform: Microsoft Windows 11 Pro Version 25H2 26200.7171 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\avp.exe ->) (Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\avpui.exe
(C:\Program Files\Mozilla Firefox\firefox.exe ->) (Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\plugins_nms.exe
(C:\Program Files\Mozilla Firefox\firefox.exe ->) (Mozilla Corporation -> Mozilla Foundation) C:\Program Files\Mozilla Firefox\crashhelper.exe
(C:\Program Files\RogueKiller\RogueKillerSvc.exe ->) (ADLICE -> ) C:\Program Files\RogueKiller\RogueKiller64.exe
(Discord Inc. -> Discord Inc.) C:\Users\Jenda\AppData\Local\Discord\app-1.0.9216\Discord.exe <6>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <51>
(services.exe ->) (ADLICE -> ) C:\Program Files\RogueKiller\RogueKillerSvc.exe
(services.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
(services.exe ->) (Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\avp.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\NisSrv.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI Center\Voice Control\VoiceControl_Service.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_c2d1126d336032b3\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_c984e9ce714075ab\RtkAudUService64.exe <2>
(svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2546.3.0_x64__cv1g1gvanyjgm\WhatsApp.exe
(svchost.exe ->) (AO Kaspersky Lab -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 10.2\kpm_tray.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.151.0.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_c984e9ce714075ab\RtkAudUService64.exe [1345104 2021-09-08] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [Discord] => C:\ProgramData\SquirrelMachineInstalls\Discord.exe --checkInstall (No File)
HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\Run: [MicrosoftEdgeAutoLaunch_9F1EE09F89B92BBCE7BC4185DDDFBD40] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4253736 2025-11-20] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\Run: [Teams] => C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MSTeams_8wekyb3d8bbwe\ms-teams.exe [0 0] () [symlink -> ]
HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\Run: [Gaijin.Net Updater] => C:\Users\Jenda\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe [3101416 2025-10-01] (GAIJIN NETWORK LTD -> Gaijin)
HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\Run: [Discord] => C:\Users\Jenda\AppData\Local\Discord\Update.exe [1596344 2025-11-24] (Discord Inc. -> Discord Inc.)
HKLM\...\Windows x64\Print Processors\Canon MG5100 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDAD.DLL [30208 2012-03-14] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG5100 series: C:\Windows\system32\CNMLMAD.DLL [385024 2012-03-14] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [2025-11-06] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\142.0.7444.176\Installer\chrmstp.exe [2025-11-23] (Google LLC -> Google LLC)

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {00d5c986-14a6-4984-be83-cb2193fcbc1e} - no filepath. <==== ATTENTION
Task: {02a6f576-3a3c-429a-aead-7494c4350a5a} - no filepath. <==== ATTENTION
Task: {02d9a7d0-c686-4151-95c4-dad723531089} - no filepath. <==== ATTENTION
Task: {03f71dbb-6a01-4c66-b630-6169587ec189} - no filepath. <==== ATTENTION
Task: {03f8d7e6-4527-4cd4-800f-687cd8b25133} - no filepath. <==== ATTENTION
Task: {053f3202-8fc0-483d-91e5-683464fa41f0} - no filepath. <==== ATTENTION
Task: {07bf83ab-1379-46ed-9977-14fab467c7d9} - no filepath. <==== ATTENTION
Task: {08072f20-c86e-4af2-aae7-d6293e52aba2} - no filepath. <==== ATTENTION
Task: {08951cec-875b-4859-bf94-56ff926aa9e0} - no filepath. <==== ATTENTION
Task: {089d4814-e8ed-4492-8d24-d7103a0db696} - no filepath. <==== ATTENTION
Task: {096b080f-9184-47fa-a609-71aed6fddf09} - no filepath. <==== ATTENTION
Task: {0a6982a8-8597-4dbb-b8bf-76bd3feb0267} - no filepath. <==== ATTENTION
Task: {0b19ce7f-15de-4020-90f0-2cfeb498997d} - no filepath. <==== ATTENTION
Task: {0bb40e63-ee0e-4a2f-a119-98340d25c158} - no filepath. <==== ATTENTION
Task: {0c179f72-9108-427d-a1b5-85732df1c812} - no filepath. <==== ATTENTION
Task: {0c981ec0-4658-4c55-9ab2-04d7808c94ce} - no filepath. <==== ATTENTION
Task: {0d692624-1a73-4a18-86f5-111f94a2f6a8} - no filepath. <==== ATTENTION
Task: {0dcd3675-0d88-4c8a-b76d-75f437654271} - no filepath. <==== ATTENTION
Task: {0e705813-84a5-43b5-86f5-32a754233e05} - no filepath. <==== ATTENTION
Task: {0f0ee014-8e3a-4bc5-acc2-594d7ee53a0f} - no filepath. <==== ATTENTION
Task: {0f73999b-d2fd-4b83-9be1-9e2b393647f7} - no filepath. <==== ATTENTION
Task: {0fe3b2c4-8cdf-4984-9234-3a7274e2200c} - no filepath. <==== ATTENTION
Task: {10ade88f-a40c-485f-b538-bdd4df4b4446} - no filepath. <==== ATTENTION
Task: {1137609a-401f-4e02-ab49-b7ac2e6f12a6} - no filepath. <==== ATTENTION
Task: {12d2aec9-edf1-4ff3-a5a0-4c75151ac4f5} - no filepath. <==== ATTENTION
Task: {142d34cb-e8a6-40d0-94ba-4c529cb28ca5} - no filepath. <==== ATTENTION
Task: {1431e41f-da73-4b3b-8139-970af6ef7749} - no filepath. <==== ATTENTION
Task: {144c4abf-3260-48b0-8df8-040c5ea03e2c} - no filepath. <==== ATTENTION
Task: {1495afa4-dde9-48bd-9e0b-ca8dcc7361f0} - no filepath. <==== ATTENTION
Task: {1620a7d5-3f4a-42cf-95ab-8b38a7fa80f7} - no filepath. <==== ATTENTION
Task: {191d6e07-e1e6-4abe-8224-057b21eeeeb2} - no filepath. <==== ATTENTION
Task: {1d1f6db3-811d-4c79-bd22-4c68b7433bc1} - no filepath. <==== ATTENTION
Task: {20c8374f-cc58-403d-881e-f64e8d8c38de} - no filepath. <==== ATTENTION
Task: {21532842-612f-4d75-a923-6aa822042813} - no filepath. <==== ATTENTION
Task: {22d4cc31-3f26-4017-af77-2f0a531fbc8b} - no filepath. <==== ATTENTION
Task: {298479ea-17a7-487b-b39f-10c2e5c6445f} - no filepath. <==== ATTENTION
Task: {29dd6eb1-455c-4b0b-b896-cdc6a7d123df} - no filepath. <==== ATTENTION
Task: {2aa6f14f-5338-4fed-8365-57c651855f2f} - no filepath. <==== ATTENTION
Task: {2b9c176b-e264-46c4-95f5-3b37ba1d974a} - no filepath. <==== ATTENTION
Task: {32013145-52e9-4f89-9816-1a096b25c797} - no filepath. <==== ATTENTION
Task: {330744ba-be2e-4791-ac1d-38e6403126fc} - no filepath. <==== ATTENTION
Task: {335f9234-1ee2-40db-b31a-6a877e168512} - no filepath. <==== ATTENTION
Task: {34748b56-7261-440a-ba37-f213d117472b} - no filepath. <==== ATTENTION
Task: {38041067-f5c8-4157-abf8-7dae6ae6987e} - no filepath. <==== ATTENTION
Task: {3aab74d9-4392-4d0f-b00e-e668acc979ab} - no filepath. <==== ATTENTION
Task: {3cc91d68-38be-4d32-beff-91e42adfbab5} - no filepath. <==== ATTENTION
Task: {3cf33de5-8b14-4fee-888f-53c0384118e7} - no filepath. <==== ATTENTION
Task: {3e4bd717-1752-496c-8564-d99641472b4e} - no filepath. <==== ATTENTION
Task: {3f3646f5-d910-4355-8dbe-ea839c6111dc} - no filepath. <==== ATTENTION
Task: {4042b7cc-1d49-4b23-8d27-a5da7b51234e} - no filepath. <==== ATTENTION
Task: {412e8930-2aed-47b7-92dd-bb98f770ad6f} - no filepath. <==== ATTENTION
Task: {44e99bc3-7751-4339-8086-0ce94faa4e98} - no filepath. <==== ATTENTION
Task: {45985b9f-b56b-49a7-b878-81c17b6b6089} - no filepath. <==== ATTENTION
Task: {48bd70dc-143d-4386-861d-6300bf45b0dc} - no filepath. <==== ATTENTION
Task: {48ce2588-f2be-4ebb-b205-daf17db56172} - no filepath. <==== ATTENTION
Task: {4b1e243e-85ea-4e96-aacb-64d35a04ca95} - no filepath. <==== ATTENTION
Task: {4bbf3c83-a5f2-4bc9-b282-71061ae59209} - no filepath. <==== ATTENTION
Task: {4c72ae2f-7f92-4ec4-868d-2f672fa392ae} - no filepath. <==== ATTENTION
Task: {4cf77be4-ff13-4bda-8922-5230bd4c155c} - no filepath. <==== ATTENTION
Task: {4d162192-827a-48e4-a8e4-2071ff428a2a} - no filepath. <==== ATTENTION
Task: {4f2bdaab-4956-4c2b-848a-e61c4de8c4ce} - no filepath. <==== ATTENTION
Task: {51bc6a78-0be7-4d60-92f7-9f4f1bab6ed2} - no filepath. <==== ATTENTION
Task: {5291c210-c0f8-4f6d-b1c1-21b585d29b47} - no filepath. <==== ATTENTION
Task: {534d058d-7124-49ba-9b00-d2f30667c0e5} - no filepath. <==== ATTENTION
Task: {54062a3b-6b31-4600-b4ec-45ec50a39f6a} - no filepath. <==== ATTENTION
Task: {5460418b-5bc8-4960-ab8d-983e08623931} - no filepath. <==== ATTENTION
Task: {546bc32b-ed9a-4933-b58b-34041bef792d} - no filepath. <==== ATTENTION
Task: {54df9c00-8100-460d-ada7-8d7e7e420f0d} - no filepath. <==== ATTENTION
Task: {551d4055-547d-4255-88ae-9d40fa2253b4} - no filepath. <==== ATTENTION
Task: {5cdd4d69-8c9c-4e33-b2c8-fe687bffca2a} - no filepath. <==== ATTENTION
Task: {5e13cd49-5792-44c2-afdf-17e71a44898d} - no filepath. <==== ATTENTION
Task: {606fc516-c975-4375-9751-dc61345000c5} - no filepath. <==== ATTENTION
Task: {62828caa-9f5f-4f21-8d49-4215036fecdc} - no filepath. <==== ATTENTION
Task: {6367d695-b9d5-49ba-9367-fa71ee18b383} - no filepath. <==== ATTENTION
Task: {68e653c6-ab68-4463-b32b-34ea0e1d0242} - no filepath. <==== ATTENTION
Task: {6bd2b751-e877-4b85-a319-26acba8a919f} - no filepath. <==== ATTENTION
Task: {6c2e8d1d-591e-4ab4-b5e5-1f539aaf2e27} - no filepath. <==== ATTENTION
Task: {6d2855c0-ad28-48dc-8b75-25cdadd8f325} - no filepath. <==== ATTENTION
Task: {6f5953da-e976-42b1-af89-fb784f835ec2} - no filepath. <==== ATTENTION
Task: {6f63db12-b3fc-4ede-a0fe-a8bdd445d2e5} - no filepath. <==== ATTENTION
Task: {6fb1c17d-9878-4023-a477-d301d7a4aba7} - no filepath. <==== ATTENTION
Task: {7114e3a9-edeb-443f-ae1b-cbb8b2619c91} - no filepath. <==== ATTENTION
Task: {7174da66-eba4-4cb7-abfe-3724d7ba9f28} - no filepath. <==== ATTENTION
Task: {72cbe8db-f8d0-4dc7-9daa-a270d4aca359} - no filepath. <==== ATTENTION
Task: {72e4dbb4-664a-454b-a254-56a26ab31e2a} - no filepath. <==== ATTENTION
Task: {730654d7-709a-42d2-b50a-9acf4fabe6d7} - no filepath. <==== ATTENTION
Task: {73733208-bf5e-479f-b737-99071d92dfc4} - no filepath. <==== ATTENTION
Task: {737e384c-1c2d-4a9a-81dc-bc52ea7e463b} - no filepath. <==== ATTENTION
Task: {7645254e-b0d7-4141-be56-61ef8388cc22} - no filepath. <==== ATTENTION
Task: {7acd8191-0356-4082-a089-fbdb6c1d4aa8} - no filepath. <==== ATTENTION
Task: {7bc98579-0d45-4880-b051-4a4088f7a0b9} - no filepath. <==== ATTENTION
Task: {7e42d8da-16c6-4a01-b00d-2b2723a6dd5c} - no filepath. <==== ATTENTION
Task: {7e8dfb9c-bea5-4565-aef2-d9e2bd6c3fc9} - no filepath. <==== ATTENTION
Task: {805a1d5c-d8d3-43a7-bae8-0618fc742463} - no filepath. <==== ATTENTION
Task: {806b2375-028c-4d88-a36b-955f2e87ae64} - no filepath. <==== ATTENTION
Task: {81e7d19e-a1c7-4789-819f-3c09d3e1869a} - no filepath. <==== ATTENTION
Task: {84d8e9df-e75f-47eb-a5a7-526ebda2eecb} - no filepath. <==== ATTENTION
Task: {8641d544-7c84-46eb-b226-5aa5a6a533f7} - no filepath. <==== ATTENTION
Task: {8805f9bb-befd-4a47-8631-06f33b95f5c8} - no filepath. <==== ATTENTION
Task: {887f27d8-1d3f-4d76-b0ca-4854d26c3695} - no filepath. <==== ATTENTION
Task: {89fdd83d-acb6-41e3-91ba-a37ebd01e9f6} - no filepath. <==== ATTENTION
Task: {8a6a226c-8de5-4c08-add3-c1986dcea430} - no filepath. <==== ATTENTION
Task: {9025e31f-9930-4e4b-815d-a066fbd8701a} - no filepath. <==== ATTENTION
Task: {910eeb19-6b0a-4843-a915-bd7fd674b062} - no filepath. <==== ATTENTION
Task: {93e1c5d0-2453-40ad-b983-be01fe570370} - no filepath. <==== ATTENTION
Task: {93fee6f0-ec1b-4990-ae08-42fc4ce1f80b} - no filepath. <==== ATTENTION
Task: {954fab6d-5f38-49c6-903e-55ecc85373c2} - no filepath. <==== ATTENTION
Task: {955983dc-4b34-429a-89d1-5a7794ec4e70} - no filepath. <==== ATTENTION
Task: {95bd6ad6-5abc-407a-be8d-3843fd668a4a} - no filepath. <==== ATTENTION
Task: {968794ca-b4e2-4f81-8ec4-4ca97b6657c1} - no filepath. <==== ATTENTION
Task: {97d8aaef-c8be-42d1-a737-62fa3caea0f0} - no filepath. <==== ATTENTION
Task: {98b1e6fd-8403-4285-833b-e0d54fa6811b} - no filepath. <==== ATTENTION
Task: {999492d4-1593-4916-aa49-9edc8cdb6304} - no filepath. <==== ATTENTION
Task: {9e298deb-ec2a-4807-82c3-89abbb906fc1} - no filepath. <==== ATTENTION
Task: {9ea6f6b6-eeef-4856-87ea-87b7d4b39f74} - no filepath. <==== ATTENTION
Task: {9fb0c73b-db5f-4cb6-aca5-4bebd0a1ce15} - no filepath. <==== ATTENTION
Task: {a03a6e60-bd6f-4765-8987-8e087e835a57} - no filepath. <==== ATTENTION
Task: {a209afce-49d3-4140-a6e0-1bee08a93b3d} - no filepath. <==== ATTENTION
Task: {a8cddb6b-b9db-41ad-b3ae-d466c1875b4b} - no filepath. <==== ATTENTION
Task: {ab3c5729-b654-4388-9269-4450f38b1ba9} - no filepath. <==== ATTENTION
Task: {ad284b76-3e0e-45c3-8989-09179637555c} - no filepath. <==== ATTENTION
Task: {af8249a7-3796-47f6-9d5b-0422cb2c6cb2} - no filepath. <==== ATTENTION
Task: {af93724f-d443-4fd1-af00-c44575128bc8} - no filepath. <==== ATTENTION
Task: {b32dc67f-5d6c-4b8a-8c7b-e6869dac4282} - no filepath. <==== ATTENTION
Task: {b4ccfea5-6e8d-4cd7-b7c9-ca93244fb5fc} - no filepath. <==== ATTENTION
Task: {b65368c4-eb82-4b48-a24b-322e306c605e} - no filepath. <==== ATTENTION
Task: {b68e2756-5e9c-4e5a-aa92-b478f17735a7} - no filepath. <==== ATTENTION
Task: {b86ff5e5-ef90-41f4-a101-fada5cb10c17} - no filepath. <==== ATTENTION
Task: {bb7d75bf-aff8-4747-9c3f-58a0628e2eb1} - no filepath. <==== ATTENTION
Task: {bb96ba52-d281-4b16-b78e-7b2dd119dd71} - no filepath. <==== ATTENTION
Task: {bc9ec85c-02d5-436d-b8a5-dc92be0a71a2} - no filepath. <==== ATTENTION
Task: {bcdbcc24-39a8-4b8e-bafe-365161421a9f} - no filepath. <==== ATTENTION
Task: {bebdd0d3-00f4-42e4-a537-ebba697f6b85} - no filepath. <==== ATTENTION
Task: {c0538825-9658-467c-84e8-297ee3a065a5} - no filepath. <==== ATTENTION
Task: {c15df7da-adeb-4254-bff8-0548b42c8525} - no filepath. <==== ATTENTION
Task: {c1866588-67a8-4883-aa39-27d8a6b7d328} - no filepath. <==== ATTENTION
Task: {c27ccebd-447b-432b-a9fd-4d9a9e6976ff} - no filepath. <==== ATTENTION
Task: {c4982fd3-354a-48d2-92ae-20d0e50b5f24} - no filepath. <==== ATTENTION
Task: {c78023ec-586f-4724-be33-f1b8c7151479} - no filepath. <==== ATTENTION
Task: {c79c83eb-7638-45d4-8af9-dff12a26de5e} - no filepath. <==== ATTENTION
Task: {c849f05e-e489-4ed0-b060-7edac0e9f23f} - no filepath. <==== ATTENTION
Task: {c90993e9-f5b6-4e59-831f-1352575cafc4} - no filepath. <==== ATTENTION
Task: {c9b61264-c0a0-45ae-9ba3-e87963590760} - no filepath. <==== ATTENTION
Task: {cc88659a-8ff0-4808-a672-1f8cf8cf6df4} - no filepath. <==== ATTENTION
Task: {ccb12c21-2e65-43f9-b4da-aefbd0f83ef2} - no filepath. <==== ATTENTION
Task: {cd10d944-d015-4c00-ad39-a2df2806f30f} - no filepath. <==== ATTENTION
Task: {cd6033c9-b80c-4793-9255-01f55ffd769b} - no filepath. <==== ATTENTION
Task: {cedbafbe-c867-4044-809f-8a64abd0b956} - no filepath. <==== ATTENTION
Task: {cf67bd23-594b-4ec0-bf09-149490a91fc5} - no filepath. <==== ATTENTION
Task: {d016cbcc-db31-4e44-a0f3-9ccf564032e1} - no filepath. <==== ATTENTION
Task: {d0c1487a-fedc-4d53-a979-8e982f77fd35} - no filepath. <==== ATTENTION
Task: {d11a53a3-e853-4111-9ca2-f9a2f5e3423a} - no filepath. <==== ATTENTION
Task: {d19b7790-fdcb-40d5-83d1-62c2b77807a6} - no filepath. <==== ATTENTION
Task: {d349ad89-edee-4227-affc-39d1c606dc24} - no filepath. <==== ATTENTION
Task: {d3dce8be-ed4a-4afe-8e95-a3fb1610a587} - no filepath. <==== ATTENTION
Task: {d58d8d3c-4c8c-4c79-9621-9675fe0411a4} - no filepath. <==== ATTENTION
Task: {d5bbe4fa-d9cc-420a-9fc7-f4b168cccb54} - no filepath. <==== ATTENTION
Task: {d6460478-3c53-4686-b214-27d3ba17d932} - no filepath. <==== ATTENTION
Task: {d6d77d44-04f4-4e05-8344-9d5d9744c4b6} - no filepath. <==== ATTENTION
Task: {d96187ab-14ea-4029-a583-904db95bf36f} - no filepath. <==== ATTENTION
Task: {da67db13-0acf-4ce8-808e-6c8f870a5acd} - no filepath. <==== ATTENTION
Task: {db77d1e3-9ee8-4608-bcfe-8568fd7d6be8} - no filepath. <==== ATTENTION
Task: {de1706c6-c1ec-4799-800e-3c718bae6921} - no filepath. <==== ATTENTION
Task: {dfd80729-14f9-49b3-bdc1-53397e616568} - no filepath. <==== ATTENTION
Task: {e09d573f-d973-469e-8499-cef9c5f9f3fd} - no filepath. <==== ATTENTION
Task: {e4dfa20d-1735-43af-8730-3cefdb8bdf88} - no filepath. <==== ATTENTION
Task: {e4e85062-15bb-4e76-9ed4-51bf129d3b7c} - no filepath. <==== ATTENTION
Task: {e4f2106a-09ef-4c86-b86e-f8614cfe04cf} - no filepath. <==== ATTENTION
Task: {e634067d-fb8a-477a-b3ba-0c47cbb444f5} - no filepath. <==== ATTENTION
Task: {e7f39b5e-26ee-464d-a4b5-a1791a3e6047} - no filepath. <==== ATTENTION
Task: {e9722648-38c5-4e6c-9a01-fa4c4872a1c2} - no filepath. <==== ATTENTION
Task: {e9b31b50-8a65-47ca-a2f1-70b211b6a10e} - no filepath. <==== ATTENTION
Task: {ea201faf-8493-4956-b923-fb3bf02208de} - no filepath. <==== ATTENTION
Task: {eacab179-ab22-4977-b17d-bd9e23cf2c31} - no filepath. <==== ATTENTION
Task: {ec457b7d-460f-45da-b28f-00430452bf21} - no filepath. <==== ATTENTION
Task: {ec5c493b-fcb5-41bd-b643-fab4b936e346} - no filepath. <==== ATTENTION
Task: {ec9906d4-94d8-47a3-bbbc-088bcbffd6de} - no filepath. <==== ATTENTION
Task: {ecd7b292-273b-4e15-9937-223c05fb21be} - no filepath. <==== ATTENTION
Task: {ee3b6b48-187f-4914-b967-d7093dbd330e} - no filepath. <==== ATTENTION
Task: {ef0bd441-299d-4076-b99e-24dfd138fb50} - no filepath. <==== ATTENTION
Task: {f2c1196a-818b-4352-9c81-3d55b1912a5a} - no filepath. <==== ATTENTION
Task: {f345efdb-ef1a-4c71-82fa-3ed4f64b2073} - no filepath. <==== ATTENTION
Task: {f76479d7-c273-4d19-9ead-c065b2cb89fc} - no filepath. <==== ATTENTION
Task: {fbe0d077-797e-4111-a28b-7279de73076e} - no filepath. <==== ATTENTION
Task: {fc4d4647-5227-4361-940e-e2e11f571689} - no filepath. <==== ATTENTION
Task: {ff5fd245-c577-4b23-ab00-228c14694d4d} - no filepath. <==== ATTENTION
Task: {A5DBEE2C-CC7D-4164-A790-AC35FD134F93} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem143.0.7482.0{3A9AA064-3798-4AC3-B707-4D4ACEF16136} => C:\Program Files (x86)\Google\GoogleUpdater\143.0.7482.0\updater.exe [6933656 2025-10-19] (Google LLC -> Google LLC)
Task: {A4B9EF0D-DFBE-4BA3-8499-EA7B27FB11CF} - System32\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901} => C:\Program Files\Common Files\AV\Kaspersky Lab\upgrade_launcher.exe [743488 2023-01-07] (Kaspersky Lab JSC -> AO Kaspersky Lab)
Task: {5EDB1723-3686-4E7D-8F2E-65B234662B6A} - System32\Tasks\kpm_tray.exe => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 10.2\kpm_tray.exe [521416 2022-10-25] (AO Kaspersky Lab -> AO Kaspersky Lab)
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {DD7885DD-65DD-4969-A19C-ABA77436C9C9} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1717720 2021-08-26] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {A5A1C103-BE87-4FFC-A49B-FA6AB29DEB9B} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [695424 2025-11-26] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {A967CB55-C526-4D24-9E64-59C7202E0861} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-1097603303-2479041749-3734249552-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [695424 2025-11-26] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {0DBD8177-F4F9-4384-89A2-27188B9A03C2} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34944 2025-11-26] (Mozilla Corporation -> Mozilla Foundation)
Task: {189BBFE5-29FB-46C6-8E3E-AF15A34CA3E2} - System32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA App.exe [3324528 2025-10-15] (NVIDIA Corporation -> NVIDIA Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.100.1
Tcpip\..\Interfaces\{d1ec935b-eaf1-423a-99b5-09335dfffbea}: [DhcpNameServer] 192.168.100.1

Edge:
=======
Edge Profile: C:\Users\Jenda\AppData\Local\Microsoft\Edge\User Data\Default [2025-11-27]
Edge Extension: (Ochrana Kaspersky) - C:\Users\Jenda\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ahkjpbeeocnddjkakilopmfdlnjdpcdm [2025-11-27]
Edge Extension: (Malwarebytes Browser Guard) - C:\Users\Jenda\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bojobppfploabceghnmlahpoonbcbacn [2025-11-27]
Edge Extension: (Dokumenty Google offline) - C:\Users\Jenda\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-11-27]
Edge Extension: (Edge relevant text changes) - C:\Users\Jenda\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2025-11-27]
Edge HKLM\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn]
Edge HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm]
Edge HKLM-x32\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn]

FireFox:
========
FF DefaultProfile: 4feraa76.default
FF ProfilePath: C:\Users\Jenda\AppData\Roaming\Mozilla\Firefox\Profiles\4feraa76.default [2025-11-27]
FF Homepage: Mozilla\Firefox\Profiles\4feraa76.default -> about:home
FF NewTab: Mozilla\Firefox\Profiles\4feraa76.default -> about:newtab
FF ProfilePath: C:\Users\Jenda\AppData\Roaming\Mozilla\Firefox\Profiles\glanzv8g.default-release [2025-11-28]
FF Homepage: Mozilla\Firefox\Profiles\glanzv8g.default-release -> hxxps://www.seznam.cz/
FF NewTab: Mozilla\Firefox\Profiles\glanzv8g.default-release -> about:newtab
FF Notifications: Mozilla\Firefox\Profiles\glanzv8g.default-release -> hxxps://www.amateri.com; hxxps://tn.nova.cz; hxxps://www.lidl.cz; hxxps://eobuv.cz; hxxps://www.autodoc.cz; hxxps://svetkreativity.cz; hxxps://www.youtube.com; hxxps://www.dotyk.cz; hxxps://teams.live.com; hxxps://www.ceskyali.cz; hxxps://www.autodoc.parts
FF Extension: (Blokátor reklam AdGuard) - C:\Users\Jenda\AppData\Roaming\Mozilla\Firefox\Profiles\glanzv8g.default-release\Extensions\adguardadblocker@adguard.com.xpi [2025-11-19]
FF Extension: (Ochrana Kaspersky) - C:\Users\Jenda\AppData\Roaming\Mozilla\Firefox\Profiles\glanzv8g.default-release\Extensions\light_plugin_7571494CE0B94E11BB762B659A4AD71F@kaspersky.com.xpi [2025-11-28]
FF Extension: (TWP - Translate Web Pages) - C:\Users\Jenda\AppData\Roaming\Mozilla\Firefox\Profiles\glanzv8g.default-release\Extensions\{036a55b4-5e72-4d05-a06c-cba2dfcc134a}.xpi [2025-03-28]
FF Extension: (Malwarebytes Browser Guard) - C:\Users\Jenda\AppData\Roaming\Mozilla\Firefox\Profiles\glanzv8g.default-release\Extensions\{242af0bb-db11-4734-b7a0-61cb8a9b20fb}.xpi [2025-11-26]
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.19 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.21 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\kl_prefs_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.js [2023-01-07] <==== ATTENTION (Points to *.cfg file)
FF ExtraCheck: C:\Program Files\mozilla firefox\kl_config_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.cfg [2023-01-07] <==== ATTENTION

Chrome:
=======
CHR Profile: C:\Users\Jenda\AppData\Local\Google\Chrome\User Data\Default [2025-11-28]
CHR DefaultSearchURL: Default -> hxxps://search.seznam.cz/?q={searchTerms}
CHR DefaultSearchKeyword: Default -> seznam
CHR DefaultNewTabURL: Default -> hxxps://search.seznam.cz/newtab
CHR DefaultSuggestURL: Default -> hxxps://suggest.seznam.cz/fulltext_ff?phrase={searchTerms}
CHR Extension: (Ochrana Kaspersky) - C:\Users\Jenda\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahkjpbeeocnddjkakilopmfdlnjdpcdm [2025-11-28]
CHR Extension: (Dokumenty Google offline) - C:\Users\Jenda\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-11-28]
CHR Extension: (Malwarebytes Browser Guard) - C:\Users\Jenda\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2025-11-28]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Jenda\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2025-11-28]
CHR HKLM\...\Chrome\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] - hxxps://chrome.google.com/webstore/detail/kaspersky-protection/ahkjpbeeocnddjkakilopmfdlnjdpcdm
CHR HKLM\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
CHR HKLM-x32\...\Chrome\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] - hxxps://chrome.google.com/webstore/detail/kaspersky-protection/ahkjpbeeocnddjkakilopmfdlnjdpcdm
CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AVP21.3; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\avp.exe [184768 2022-08-01] (Kaspersky Lab JSC -> AO Kaspersky Lab)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [20285608 2025-02-11] (BattlEye Innovations e.K. -> )
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [1135648 2023-08-29] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 klvssbridge64_21.3; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\vssbridge64.exe [479280 2021-02-19] (Kaspersky Lab JSC -> AO Kaspersky Lab)
S3 kpm_service_10.2; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 10.2\kpm_service.exe [520904 2022-10-25] (AO Kaspersky Lab -> AO Kaspersky Lab)
S3 LibreOfficeMaintenance; C:\Program Files\LibreOffice\program\update_service.exe [122792 2025-11-06] (The Document Foundation -> The Document Foundation)
S2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [11172008 2025-11-24] (Malwarebytes Inc -> Malwarebytes)
S3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe [2788304 2025-11-24] (Malwarebytes Inc. -> Malwarebytes)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\MpDefenderCoreService.exe [2026184 2025-11-18] (Microsoft Windows Publisher -> Microsoft Corporation)
U2 MSI_VoiceControl_Service; C:\Program Files (x86)\MSI\MSI Center\Voice Control\VoiceControl_Service.exe [36880 2023-04-27] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_c2d1126d336032b3\Display.NvContainer\NVDisplay.Container.exe [1275624 2025-10-30] (NVIDIA Corporation -> NVIDIA Corporation)
R2 rkrtservice; C:\Program Files\RogueKiller\RogueKillerSvc.exe [16166464 2025-11-25] (ADLICE -> )
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [803088 2025-10-29] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\NisSrv.exe [4414480 2025-11-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\MsMpEng.exe [282440 2025-11-18] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 amdfendrmgr; C:\Windows\System32\drivers\amdfendrmgr.sys [54720 2022-10-21] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R3 amdgpio3; C:\Windows\System32\drivers\amdgpio3.sys [36928 2024-08-20] (ASMedia Technology Inc. -> Advanced Micro Devices, Inc)
S1 amsdk; C:\Windows\system32\drivers\amsdk.sys [232792 2025-11-28] (Zemana D.O.O. Sarajevo -> Copyright 2018.)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [569344 2024-11-24] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [200704 2024-11-24] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\Windows\System32\drivers\bthmodem.sys [110592 2024-11-24] (Microsoft Corporation) [File not signed]
R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [237288 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 gdrv3; C:\Windows\System32\drivers\gdrv3.sys [41480 2023-01-07] (GIGA-BYTE Technology Co., Ltd. -> GIGA-BYTE TECHNOLOGY CO., LTD.)
S3 I2cHkBurn; C:\Windows\system32\drivers\I2cHkBurn.sys [41760 2015-07-27] (Feature Integration Technology -> FINTEK Corp.)
R1 klbackupdisk; C:\Windows\system32\DRIVERS\klbackupdisk.sys [105280 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [206600 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 kldisk; C:\Windows\system32\DRIVERS\kldisk.sys [119568 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [41656 2021-02-19] (Microsoft Windows Early Launch Anti-malware Publisher -> AO Kaspersky Lab)
R1 klflt; C:\Windows\system32\DRIVERS\klflt.sys [533040 2024-04-02] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klgse; C:\Windows\System32\DRIVERS\klgse.sys [857080 2025-10-02] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klhk; C:\Windows\system32\DRIVERS\klhk.sys [2959384 2025-10-02] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
S3 klids; C:\ProgramData\Kaspersky Lab\AVP21.3\Bases\klids.sys [242808 2025-10-14] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [1051184 2024-04-02] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klim6; C:\Windows\system32\DRIVERS\klim6.sys [90896 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [104728 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [107328 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [78088 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klpnpflt; C:\Windows\system32\DRIVERS\klpnpflt.sys [88328 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R0 klupd_klif_arkmon; C:\Windows\System32\Drivers\klupd_klif_arkmon.sys [420432 2025-10-21] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R3 klupd_klif_klark; C:\Windows\System32\Drivers\klupd_klif_klark.sys [365160 2025-10-22] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R0 klupd_klif_klbg; C:\Windows\System32\Drivers\klupd_klif_klbg.sys [213360 2025-10-21] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R3 klupd_klif_mark; C:\Windows\System32\Drivers\klupd_klif_mark.sys [275320 2025-10-22] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [150280 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klwtp; C:\Windows\system32\DRIVERS\klwtp.sys [325400 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [294680 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R3 KslD; C:\Windows\System32\drivers\wd\KslD.sys [333192 2025-11-18] (Microsoft Windows -> Microsoft Corporation)
S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [22120 2025-11-24] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
S3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [245336 2025-11-24] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R1 MSIO; C:\Windows\system32\drivers\MsIo64.sys [19000 2023-04-05] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd)
R3 rt25cx21; C:\Windows\System32\DriverStore\FileRepository\rt25cx21x64.inf_amd64_44eaf8324075f31c\rt25cx21x64.sys [779736 2024-08-20] (Realtek Semiconductor Corp. -> Realtek)
R3 SteamStreamingMicrophone; C:\Windows\system32\drivers\SteamStreamingMicrophone.sys [40736 2020-06-01] (Valve Corp. -> )
R3 SteamStreamingSpeakers; C:\Windows\system32\drivers\SteamStreamingSpeakers.sys [40736 2020-06-01] (Valve Corp. -> )
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [20904 2025-11-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [629168 2025-11-18] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [102792 2025-11-18] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2025-11-28 15:36 - 2025-11-28 15:36 - 000037674 _____ C:\Users\Jenda\Desktop\FRST.txt
2025-11-28 15:36 - 2025-11-28 15:36 - 000000000 ____D C:\FRST
2025-11-28 15:34 - 2025-11-28 15:35 - 002444288 _____ (Farbar) C:\Users\Jenda\Desktop\FRST64.exe
2025-11-28 14:47 - 2025-11-28 14:47 - 000677108 _____ C:\Windows\system32\perfh005.dat
2025-11-28 14:47 - 2025-11-28 14:47 - 000144960 _____ C:\Windows\system32\perfc005.dat
2025-11-28 12:16 - 2025-11-28 12:16 - 023092360 _____ C:\Users\Jenda\Desktop\rustdesk-host=rustdesk.viry.cz,key=k7s1kynfpmNTkCHBBPyQeZ3XyU6alXvpMZSw1BoTDnE=.exe
2025-11-28 12:09 - 2025-11-28 12:09 - 000000000 ____D C:\Users\Jenda\AppData\Local\PeerDistRepub
2025-11-28 10:40 - 2025-11-28 15:34 - 000000000 ____D C:\Users\Jenda\AppData\Local\Discord
2025-11-28 10:40 - 2025-11-28 10:40 - 000002247 _____ C:\Users\Jenda\Desktop\Discord.lnk
2025-11-27 20:21 - 2025-11-27 20:21 - 000670414 _____ C:\Users\Jenda\Desktop\zoek-results.txt
2025-11-27 19:18 - 2025-11-28 10:28 - 000232792 _____ (Copyright 2018.) C:\Windows\system32\Drivers\amsdk.sys
2025-11-27 19:18 - 2025-11-28 10:27 - 000000000 ____D C:\Users\Jenda\AppData\Local\AMSDK
2025-11-27 18:55 - 2014-02-13 23:59 - 000024064 _____ C:\Windows\zoek-delete.exe
2025-11-27 18:01 - 2025-11-27 18:50 - 000000000 ____D C:\zoek_backup
2025-11-27 17:59 - 2025-11-27 17:59 - 002038755 _____ C:\Users\Jenda\Desktop\zoek (1).exe
2025-11-27 17:54 - 2025-11-27 17:54 - 013922376 _____ (Zemana Ltd. ) C:\Users\Jenda\Desktop\Zemana.AntiMalware.Setup.exe
2025-11-27 11:08 - 2025-11-27 11:08 - 000001650 _____ C:\Users\Jenda\Desktop\text file.txt
2025-11-27 11:07 - 2025-11-27 11:07 - 000000865 _____ C:\Users\Public\Desktop\Adlice Protect.lnk
2025-11-26 22:41 - 2025-11-26 22:41 - 000001157 _____ C:\Users\Jenda\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Adlice Protect.lnk
2025-11-26 20:06 - 2025-11-28 15:35 - 000000000 ____D C:\Users\Jenda\AppData\Roaming\discord
2025-11-26 19:39 - 2025-11-27 11:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller
2025-11-26 19:39 - 2025-11-27 11:07 - 000000000 ____D C:\Program Files\RogueKiller
2025-11-26 19:39 - 2025-11-26 19:40 - 000000000 ____D C:\ProgramData\RogueKiller
2025-11-26 19:35 - 2025-11-26 19:35 - 052406512 _____ (Adlice Software ) C:\Users\Jenda\Desktop\RogueKiller_setup.exe
2025-11-26 17:39 - 2025-11-26 17:39 - 000000000 ____D C:\ProgramData\Sophos
2025-11-26 17:38 - 2025-11-26 17:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sophos
2025-11-26 17:38 - 2025-11-26 17:38 - 000000000 ____D C:\Program Files (x86)\Sophos
2025-11-26 17:21 - 2025-11-26 17:24 - 000000602 _____ C:\Users\Jenda\Desktop\JRT.txt
2025-11-26 17:05 - 2025-11-26 17:05 - 001790024 _____ (Malwarebytes) C:\Users\Jenda\Desktop\JRT.exe
2025-11-26 10:28 - 2025-11-26 17:02 - 000000000 ____D C:\Program Files\Mozilla Firefox
2025-11-25 21:12 - 2025-11-25 21:12 - 100727946 _____ C:\Users\Jenda\Desktop\Vysehrad-10.dil-Zapas.avi
2025-11-25 21:11 - 2025-11-25 21:11 - 258343020 _____ C:\Users\Jenda\Desktop\Vyšehrad 5. díl - Škodovka.avi
2025-11-25 21:11 - 2025-11-25 21:11 - 167165371 _____ C:\Users\Jenda\Desktop\Vyšehrad 9. díl - Zázemí.mp4
2025-11-25 21:11 - 2025-11-25 21:11 - 109870810 _____ C:\Users\Jenda\Desktop\Vysehrad-8.dil---Bedar.avi
2025-11-25 21:11 - 2025-11-25 21:11 - 102204980 _____ C:\Users\Jenda\Desktop\Vysehrad 7 díl Máma.avi
202-11-17 19:49 - 2025-10-30 16:59 - 001908104 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2025-11-17 19:49 - 2025-10-30 16:59 - 001908104 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2025-11-17 19:49 - 2025-10-30 16:59 - 001581968 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2025-11-17 19:49 - 2025-10-30 16:59 - 001581968 _____ C:\Windows\system32\vulkan-1.dll
2025-11-17 19:49 - 2025-10-30 16:59 - 001395592 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2025-11-17 19:49 - 2025-10-30 16:59 - 001395592 _____ C:\Windows\SysWOW64\vulkan-1.dll
2025-11-17 19:49 - 2025-10-30 16:59 - 000478440 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2025-11-17 19:49 - 2025-10-30 16:59 - 000375016 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2025-11-17 19:49 - 2025-10-30 16:55 - 001322216 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll
2025-11-17 19:49 - 2025-10-30 16:55 - 000675048 _____ (NVIDIA Corporation) C:\Windows\system32\nvofapi64.dll
2025-11-17 19:49 - 2025-10-30 16:55 - 000509160 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvofapi.dll
2025-11-17 19:49 - 2025-10-30 16:54 - 026354920 _____ C:\Windows\system32\nvidia-pcc.exe
2025-11-17 19:49 - 2025-10-30 16:54 - 002317544 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2025-11-17 19:49 - 2025-10-30 16:54 - 001715944 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2025-11-1728 10:40 - 2025-05-07 18:05 - 000000000 ____D C:\Users\Jenda\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2025-11-28 10:40 - 2025-05-07 18:05 - 000000000 ____D C:\Users\Jenda\AppData\Local\SquirrelTemp
2025-11-27 21:01 - 2023-01-08 00:30 - 000000000 ____D C:\ProgramData\Packages
2025-11-27 21:01 - 2023-01-07 17:39 - 000000000 ____D C:\Users\Jenda\AppData\Local\Packages
2025-11-27 20:55 - 2023-01-07 17:58 - 000000000 ____D C:\ProgramData\Kaspersky Lab
2025-11-27 20:55 - 2023-01-07 17:58 - 000000000 ____D C:\Program Files (x86)\Kaspersky Lab
2025-11-27 20:33 - 2023-01-07 20:53 - 000000000 ____D C:\Users\Jenda\AppData\Local\WarThunder
2025-11-27 18:58 - 2023-01-07 17:39 - 000000000 ____D C:\Users\Jenda\AppData\Local\D3DSCache
2025-11-27 11:17 - 2024-04-01 08:26 - 000000000 ___HD C:\Program Files\WindowsApps
2025-11-26 17:02 - 2023-01-07 18:07 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2025-11-26 12:25 - 2024-11-24 11:06 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla
2025-11-26 12:25 - 2023-01-07 18:07 - 000001079 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2025-11-25 21:10 - 2023-01-07 18:16 - 000000000 ____D C:\Users\Jenda\AppData\Roaming\vlc
2025-11-24 20:48 - 2024-04-01 08:26 - 000000000 ___HD C:\Windows\ELAMBKUP
2025-11-24 18:46 - 2023-05-07 07:31 - 000013023 _____ C:\Users\Jenda\Desktop\Hesla.odt
2025-11-24 18:30 - 2023-01-07 17:55 - 000000000 ____D C:\Users\Jenda\AppData\Local\VirtualStore
2025-11-24 18:19 - 2025-10-01 17:28 - 000000000 ____D C:\ProgramData\Whesvc
2025-11-23 09:43 - 2024-02-13 20:10 - 000002207 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2025-11-23 09:43 - 2024-02-13 20:10 - 000002166 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2025-11-22 22:16 - 2023-01-08 00:28 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-11-22 22:10 - 2024-11-24 11:06 - 000003638 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-11-22 22:10 - 2024-11-24 11:06 - 000003512 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-11-18 21:23 - 2023-09-02 16:47 - 000000000 ____D C:\Users\Jenda\AppData\Local\NVIDIA
2025-11-18 18:51 - 2023-01-08 00:28 - 000000000 ____D C:\Windows\system32\Drivers\wd
2025-11-17 19:54 - 2024-08-20 18:44 - 000000000 ____D C:\Users\Jenda\AppData\LocalLow\NVIDIA
2025-11-17 19:54 - 2023-09-02 16:46 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2025-11-17 19:54 - 2023-09-02 16:46 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2025-11-17 19:54 - 2023-01-08 17:27 - 000000000 ____D C:\Users\Jenda\AppData\Local\NVIDIA Corporation
2025-11-17 19:52 - 2024-04-01 08:26 - 000000000 ___SD C:\Windows\system32\lxss
2025-11-17 14:06 - 2024-11-24 11:02 - 000454584 _____ C:\Windows\system32\FNTCACHE.DAT
2025-11-17 13:28 - 2024-11-24 09:33 - 000000000 ___DC C:\Windows\Panther
2025-11-17 13:22 - 2024-08-20 18:39 - 000000000 ____D C:\Users\Jenda\AppData\Roaming\IObit
2025-11-17 13:22 - 2024-08-20 18:39 - 000000000 ____D C:\Users\Jenda\AppData\LocalLow\IObit
2025-11-17 13:22 - 2024-08-20 18:39 - 000000000 ____D C:\ProgramData\IObit
2025-11-17 13:20 - 2025-02-08 09:39 - 000000000 ____D C:\Users\Jenda\AppData\Local\0install.net
2025-11-15 10:25 - 2024-04-01 17:30 - 000000000 ____D C:\Windows\system32\Microsoft-Edge-WebView
2025-11-15 10:25 - 2024-04-01 08:26 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2025-11-15 10:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\SysWOW64\setup
2025-11-15 10:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\SystemResources
jonek288
nováček
Příspěvky: 23
Registrován: 24 lis 2025 18:27

Re: Prosím o kontrolu logu

Příspěvek od jonek288 »

2025-11-15 10:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\SystemResources
2025-11-15 10:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\setup
2025-11-15 10:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\bcastdvr
2025-11-15 10:10 - 2023-01-07 23:19 - 000000000 ____D C:\Windows\system32\MRT
2025-11-15 10:08 - 2023-01-07 23:19 - 215625816 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2025-11-14 13:38 - 2023-05-06 09:00 - 000000000 ____D C:\Program Files (x86)\OpenOffice 4
2025-11-12 16:56 - 2024-11-24 11:05 - 003277824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2025-11-01 14:34 - 2024-11-24 11:02 - 000000000 ____D C:\Windows\system32\SleepStudy
2025-10-29 16:25 - 2025-06-27 16:15 - 000000000 ____D C:\Windows\system32\ruxim
2025-10-29 16:25 - 2024-04-01 17:28 - 000000000 ____D C:\Windows\SysWOW64\cs
2025-10-29 16:25 - 2024-04-01 17:28 - 000000000 ____D C:\Windows\system32\cs
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\UUS
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\SysWOW64\InstallShield
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\SysWOW64\Dism
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\WinMetadata
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\WinBioPlugIns
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\vi-VN
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ur-PK
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ug-CN
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\tt-RU
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\te-IN
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ta-IN
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\sq-AL
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ShellExperiences
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\quz-PE
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\qps-plocm
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\qps-ploc
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\pa-IN
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\or-IN
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\oobe
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\nn-NO
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ne-NP
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\mt-MT
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\mr-IN
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ml-IN
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\mk-MK
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\mi-NZ
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\migwiz
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\lv-LV
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\lt-LT
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\lo-LA
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\lb-LU
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\kok-IN
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\kn-IN
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\km-KH
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\kk-KZ
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ka-GE
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\is-IS
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\id-ID
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\hy-AM
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\hi-IN
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\gu-IN
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\gl-ES
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\gd-GB
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ga-IE
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\fil-PH
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\fa-IR
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\eu-ES
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\et-EE
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\es-MX
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\Dism
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\DDFs
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\cy-GB
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ca-ES
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\bn-IN
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\be-BY
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\as-IN
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\appraiser
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\am-ET
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\af-ZA
2025-10-29 16:24 - 2024-04-01 17:31 - 000000000 ____D C:\Windows\InboxApps
2025-10-29 16:24 - 2024-04-01 17:31 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2025-10-29 16:24 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\ShellExperiences
2025-10-29 16:24 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\ShellComponents
2025-10-29 16:24 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\Provisioning
2025-10-29 16:24 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\PolicyDefinitions
2025-10-29 16:24 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\DiagTrack
2025-10-29 16:24 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\BrowserCore
2025-10-29 16:24 - 2024-04-01 08:26 - 000000000 ____D C:\Program Files\Common Files\System

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================
jonek288
nováček
Příspěvky: 23
Registrován: 24 lis 2025 18:27

Re: Prosím o kontrolu logu

Příspěvek od jonek288 »

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20-11-2025
Ran by Jenda (28-11-2025 15:37:58)
Running from C:\Users\Jenda\Desktop
Microsoft Windows 11 Pro Version 25H2 26200.7171 (X64) (2024-11-24 10:06:18)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-1097603303-2479041749-3734249552-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1097603303-2479041749-3734249552-503 - Limited - Disabled)
Guest (S-1-5-21-1097603303-2479041749-3734249552-501 - Limited - Disabled)
Jenda (S-1-5-21-1097603303-2479041749-3734249552-1001 - Administrator - Enabled) => C:\Users\Jenda
WDAGUtilityAccount (S-1-5-21-1097603303-2479041749-3734249552-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Kaspersky Internet Security (Disabled - Up to date) {4F76F112-43EB-40E8-11D8-F7BD1853EA23}
FW: Kaspersky Internet Security (Disabled) {774D7037-0984-41B0-3A87-5E88E680AD58}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adlice Protect version 16.5.3.0 (HKLM\...\8B3D7924-ED89-486B-8322-E8594065D5CB_is1) (Version: 16.5.3.0 - Adlice Software)
AMD GPIO2 Driver (HKLM-x32\...\{E9DD399F-21A3-479E-A7DF-D6CF4B2ADBF3}) (Version: 2.2.0.130 - Advanced Micro Devices, Inc.) Hidden
AMD Chipset Software (HKLM-x32\...\AMD_Chipset_IODrivers) (Version: 3.10.22.706 - Advanced Micro Devices, Inc.)
AMD PSP Driver (HKLM-x32\...\{988F14B8-79A8-475D-BAC7-83F96AD3D821}) (Version: 5.17.0.0 - Advanced Micro Devices, Inc.) Hidden
AMD Ryzen Balanced Driver (HKLM-x32\...\{A171D320-C42C-4F3B-A2D8-C6A09F6788CC}) (Version: 7.0.4.4 - Advanced Micro Devices, Inc.) Hidden
AMD SBxxx SMBus Driver (HKLM-x32\...\{AAE0E27D-C88A-49BA-8715-77ADCD4286A3}) (Version: 5.12.0.38 - Advanced Micro Devices, Inc.) Hidden
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 21.30.14 - Advanced Micro Devices, Inc.)
AMD_Chipset_Drivers (HKLM-x32\...\{cf77cf6b-71ff-4a71-802d-43adb9b271b7}) (Version: 3.10.22.706 - Advanced Micro Devices, Inc.) Hidden
Any Video Converter 9.1.2 (HKLM-x32\...\Any Video Converter) (Version: 9.1.2 - Anvsoft)
Canon MG5100 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5100_series) (Version: - Canon Inc.)
CrystalDiskInfo 9.7.2 (HKLM\...\CrystalDiskInfo_is1) (Version: 9.7.2 - Crystal Dew World)
Discord (HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\Discord) (Version: 1.0.9216 - Discord Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 142.0.7444.176 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.13 - Google LLC) Hidden
Kaspersky Internet Security (HKLM-x32\...\{4FC79BE9-AD63-46C0-9626-E4F6BCE6A976}) (Version: 21.3.10.391 - Kaspersky) Hidden
Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{4FC79BE9-AD63-46C0-9626-E4F6BCE6A976}) (Version: 21.3.10.391 - Kaspersky)
Kaspersky Password Manager (HKLM-x32\...\{BE877CFF-5461-441D-8A15-299DA7509968}) (Version: 10.2.0.341 - Kaspersky Lab) Hidden
Kaspersky Password Manager (HKLM-x32\...\InstallWIX_{BE877CFF-5461-441D-8A15-299DA7509968}) (Version: 10.2.0.341 - Kaspersky Lab)
LibreOffice 25.8.3.2 (HKLM\...\{5370F9CB-D8E4-452D-A5DD-90EB7A6E5E1F}) (Version: 25.8.3.2 - The Document Foundation)
Microsoft .NET Host - 5.0.17 (x86) (HKLM-x32\...\{54DE7EA9-E391-4BD2-A373-3A72A18EBDB5}) (Version: 40.68.31213 - Microsoft Corporation) Hidden
Microsoft .NET Host - 6.0.10 (x86) (HKLM-x32\...\{3B28977C-9163-48A5-A08C-C01327E18AE2}) (Version: 48.43.48869 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 5.0.17 (x86) (HKLM-x32\...\{AF01038B-6523-4EA7-9D9E-4F1E2927D88B}) (Version: 40.68.31213 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.10 (x86) (HKLM-x32\...\{EBD44C5E-F1AF-4955-AEDF-F15D06384A9C}) (Version: 48.43.48869 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 5.0.17 (x86) (HKLM-x32\...\{59650A2A-3839-46EC-9D9C-6B3B1C743C55}) (Version: 40.68.31213 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.10 (x86) (HKLM-x32\...\{98CA5A6B-4ECC-4E6D-BF18-6B20CBB6E5F4}) (Version: 48.43.48869 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 142.0.3595.94 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 142.0.3595.94 - Microsoft Corporation) Hidden
Microsoft Teams Meeting Add-in for Microsoft Office (HKLM\...\{A7AB73A3-CB10-4AA5-9D38-6AEFFBDE4C91}) (Version: 1.25.28902 - Microsoft)
Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.44.35211 (HKLM-x32\...\{d8bbe9f9-7c5b-42c6-b715-9ee898a2e515}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.36.32532 (HKLM-x32\...\{410c0ee1-00bb-41b6-9772-e12c2828b02f}) (Version: 14.36.32532.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.44.35211 (HKLM\...\{86AB2CC9-08BD-4643-B0F9-F82D006D72FF}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.44.35211 (HKLM\...\{43B0D101-A022-48F4-9D04-BA404CEB1D53}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.36.32532 (HKLM-x32\...\{C2C59CAB-8766-4ABD-A8EF-1151A36C41E5}) (Version: 14.36.32532 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.36.32532 (HKLM-x32\...\{73F77E4E-5A17-46E5-A5FC-8A061047725F}) (Version: 14.36.32532 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 5.0.17 (x86) (HKLM-x32\...\{098c6ff7-1af1-4c4a-b86f-c60608c98e31}) (Version: 5.0.17.31219 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 5.0.17 (x86) (HKLM-x32\...\{0D02D706-44F2-4957-A448-E7259A0B56B9}) (Version: 40.68.31219 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.10 (x86) (HKLM-x32\...\{0F3E4057-E2BB-4114-A646-F143DB5CE4C9}) (Version: 48.43.48870 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.10 (x86) (HKLM-x32\...\{9dd24b73-88e0-4f0f-882a-500e00d2bdef}) (Version: 6.0.10.31726 - Microsoft Corporation)
Mozilla Firefox (x64 cs) (HKLM\...\Mozilla Firefox 145.0.2 (x64 cs)) (Version: 145.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 129.0.2 - Mozilla)
NVIDIA App 11.0.5.420 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NvApp) (Version: 11.0.5.420 - NVIDIA Corporation)
NVIDIA FrameView SDK 1.5.11504.36206172 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.5.11504.36206172 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.4.5.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.4.5.0 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 581.80 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 581.80 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.23.1019 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.23.1019 - NVIDIA Corporation)
OpenOffice 4.1.16 (HKLM-x32\...\{99DC5A6B-0EF2-4D81-9EAC-35AC6F1E8DB2}) (Version: 4.116.9816 - Apache Software Foundation)
Promontory_GPIO Driver (HKLM-x32\...\{B5512BCC-F4CD-4159-86A4-B2AD7D38FFA9}) (Version: 2.0.1.0 - Advanced Micro Devices, Inc.) Hidden
Realtek Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.9235.1 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 11.7.0318.2022 - Realtek)
Revo Uninstaller 2.6.2 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.6.2 - VS Revo Group, Ltd.)
Sophos Virus Removal Tool (HKLM-x32\...\{B829E117-D072-41EA-9606-9826A38D34C1}) (Version: 2.9.0 - Sophos Limited)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.21 - VideoLAN)
War Thunder Launcher 1.0.3.496 (HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\{ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1) (Version: - Gaijin Network)
Wargaming.net Game Center (HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\Wargaming.net Game Center) (Version: 25.6.0.709 - Wargaming.net)
WinRAR (HKLM-x32\...\WinRAR) (Version: v.6.21 64bit Final CZ - 20.02.2023 - Libbi)
World of Tanks (HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812eu}_is1) (Version: - Wargaming.net)
World of Tanks EU (HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\2314027414) (Version: - Wargaming.net)
World_of_Warships (HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\1527964767) (Version: - Wargaming.net)

Packages:
=========
@{MicrosoftWindows.55182690.Taskbar_1000.26100.3624.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-05-31] ()
@{MicrosoftWindows.55182690.Taskbar_1000.26100.3775.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-05-31] ()
@{MicrosoftWindows.55182690.Taskbar_1000.26100.3912.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-05-31] ()
@{MicrosoftWindows.58683691.InpApp_1000.26100.6725.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.58683691.InpApp/Resources/ProductPkgDisplayName} -> C:\Windows\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-11-15] (Microsoft Windows)
@{MicrosoftWindows.58683691.InpApp_1000.26100.6899.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.58683691.InpApp/Resources/ProductPkgDisplayName} -> C:\Windows\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-11-15] (Microsoft Windows)
@{MicrosoftWindows.58683691.InpApp_1000.26100.6901.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.58683691.InpApp/Resources/ProductPkgDisplayName} -> C:\Windows\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-11-15] (Microsoft Windows)
@{MicrosoftWindows.58683691.InpApp_1000.26100.7019.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.58683691.InpApp/Resources/ProductPkgDisplayName} -> C:\Windows\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-11-15] (Microsoft Windows)
@{MicrosoftWindows.59379618.InpApp_1000.26100.7019.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.59379618.InpApp/Resources/ProductPkgDisplayName} -> C:\Windows\SystemApps\SxS\MicrosoftWindows.59379618.InpApp_cw5n1h2txyewy [2025-11-15] (Microsoft Windows)
AMD Radeon Software -> C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.21.30024.0_x64__0a9344xs7nr4m [2024-05-23] (Advanced Micro Devices Inc.) [Startup Task]
Balíček prostředí funkcí systému Windows -> C:\Windows\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-11-15] (Microsoft Windows)
Balíček prostředí funkcí systému Windows -> C:\Windows\SystemApps\SxS\MicrosoftWindows.59379618.InpApp_cw5n1h2txyewy [2025-11-15] (Microsoft Windows)
Instagram -> C:\Program Files\WindowsApps\Facebook.InstagramBeta_42.0.23.0_neutral__8xx8rvfyw5nnt [2025-07-28] (Instagram)
Malwarebytes Anti-Malware -> C:\Program Files\Malwarebytes\Anti-Malware [2025-11-24] ()
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.969.0_x64__56jybvy8sckqj [2025-11-17] (NVIDIA Corp.)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.28.255.0_x64__dt26b99r8h8gj [2023-06-30] (Realtek Semiconductor Corp)
WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2546.3.0_x64__cv1g1gvanyjgm [2025-11-22] (WhatsApp Inc.) [Startup Task]
WinAppRuntime.Main.1.5 -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Main.1.5_5001.373.1736.0_x64__8wekyb3d8bbwe [2025-01-22] (Microsoft Corp.)
WinAppRuntime.Singleton -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Singleton_8000.675.1142.0_x64__8wekyb3d8bbwe [2025-11-19] (Microsoft Corp.)
WinRAR -> C:\Program Files\WinRAR [2023-02-24] (win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1097603303-2479041749-3734249552-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-1097603303-2479041749-3734249552-1001_Classes\CLSID\{EABAE40C-B27C-455A-B672-F234DD780948}\InprocServer32 -> C:\Users\Jenda\AppData\Local\Microsoft\TeamsMeetingAdd-in\1.25.28902\x64\Microsoft.Teams.MeetingAddin.DLL (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ContextMenuHandlers1: [Kaspersky Anti-Virus 21.3] -> {37303E08-14C9-4FC3-B1D9-7993682A4691} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\shellex.dll [2023-01-07] (AO Kaspersky Lab -> AO Kaspersky Lab)
ContextMenuHandlers2: [Kaspersky Anti-Virus 21.3] -> {37303E08-14C9-4FC3-B1D9-7993682A4691} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\shellex.dll [2023-01-07] (AO Kaspersky Lab -> AO Kaspersky Lab)
ContextMenuHandlers4: [Kaspersky Anti-Virus 21.3] -> {37303E08-14C9-4FC3-B1D9-7993682A4691} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\shellex.dll [2023-01-07] (AO Kaspersky Lab -> AO Kaspersky Lab)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_c2d1126d336032b3\nvshext.dll [2025-10-30] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [Kaspersky Anti-Virus 21.3] -> {37303E08-14C9-4FC3-B1D9-7993682A4691} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\shellex.dll [2023-01-07] (AO Kaspersky Lab -> AO Kaspersky Lab)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [MidisrvTransferComplete] => 0

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2024-04-24 10:00 - 2024-04-24 10:00 - 000126976 ____N (Microsoft Corporation) [File not signed] C:\Windows\SYSTEM32\UpdatePolicyScenarioReliabilityAggregator.dll
2025-11-17 19:54 - 2025-11-17 19:54 - 000000000 ___JL (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA App\MessageBus\NvMessageBusBroadcast.dll] C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem\NvMessageBusBroadcast.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\amsdk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\amsdk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) =============


==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2025-11-27 18:03 - 2025-11-27 18:03 - 000000841 _____ C:\Windows\system32\drivers\etc\hosts
127.0.0.1 localhost

==================== Network ===========================

(Currently there is no automatic fix for this section.)

DNS Servers: 192.168.100.1
Windows Firewall is enabled.

Network Binding:
=============
Ethernet: Realtek Gaming 2.5GbE Family Controller -> rt25cx21x64.sys

KL_KLIM6: Kaspersky Anti-Virus NDIS 6 Filter

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Jenda\Desktop\207376392.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)


==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run32: => "Discord"
HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_9F1EE09F89B92BBCE7BC4185DDDFBD40"
HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\StartupApproved\Run: => "Gaijin.Net Updater"
HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\StartupApproved\Run: => "Wargaming.net Game Center"
HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\StartupApproved\Run: => "Steam"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{A4C4C7C2-9CB0-4EA9-8E25-3A360C359408}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\launcher.exe => No File
FirewallRules: [{BE9B6128-45B4-48EB-8011-7BA1A986B4E5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\launcher.exe => No File
FirewallRules: [{13442F02-DF55-414E-879F-4FD9AEA35CCD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\eac_wt_mlauncher.exe => No File
FirewallRules: [{F876D0F3-5B2E-4A7D-A58F-7A1115893398}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\eac_wt_mlauncher.exe => No File
FirewallRules: [{FE7E6552-919C-4D25-93FE-F0C52BCC83BC}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{F348FEAA-848F-4AC6-A7BA-C50EAC6497BB}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{81B04DF4-88BA-4C28-A894-9A373C4E37F2}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe => No File
FirewallRules: [{D3EA0F52-6C80-4D7E-8450-9C05D019EB5C}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe => No File
FirewallRules: [{2D0B1BFC-9E48-438F-9C9A-D63F3CE36CF6}] => (Allow) C:\Games\World_of_Tanks\WoTLauncher.exe (Wargaming.net LLP -> Wargaming.net) [File not signed]
FirewallRules: [{34DD7101-0DC7-451A-B5B7-51FBAF71E33C}] => (Allow) C:\Games\World_of_Tanks\WoTLauncher.exe (Wargaming.net LLP -> Wargaming.net) [File not signed]
FirewallRules: [{37CF6E26-96B7-4113-B743-F2B3EA85E35D}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{2A42BD35-88AA-4836-9584-C52D4F599C97}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{1ED7EFA8-FB17-4E4C-B2A8-FA9A08EC2C80}] => (Allow) C:\ProgramData\Kaspersky Lab\KSDE5.23\Data\webview2\Win10\msedgewebview2.exe => No File
FirewallRules: [{E5B6BF00-2907-4CC8-A277-DF0A48C5F6F3}] => (Allow) C:\Program Files\WindowsApps\MSTeams_25306.804.4102.7193_x64__8wekyb3d8bbwe\ms-teams_modulehost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{22B399C2-9B8A-4982-B3A6-C9C6D4800B73}] => (Allow) C:\Program Files\WindowsApps\MSTeams_25306.804.4102.7193_x64__8wekyb3d8bbwe\ms-teams_modulehost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{628A460E-284A-4C7C-9E1D-089CB7157044}] => (Allow) C:\Program Files\WindowsApps\MSTeams_25306.804.4102.7193_x64__8wekyb3d8bbwe\ms-teams_modulehost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{1DB8C19A-42C9-4FBE-9A4D-F9162DEBE390}] => (Allow) C:\Program Files\WindowsApps\MSTeams_25306.804.4102.7193_x64__8wekyb3d8bbwe\ms-teams_modulehost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{37FE619A-C314-4D88-A1F5-37DFD1D47847}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

25-11-2025 18:50:41 Revo Uninstaller Pro's restore point - Malwarebytes version 5.4.4.225
25-11-2025 19:00:46 Revo Uninstaller Pro's restore point - Malwarebytes version 5.4.4.225
25-11-2025 19:05:00 Revo Uninstaller Pro's restore point - Malwarebytes version 5.4.4.225
26-11-2025 17:20:00 JRT Pre-Junkware Removal
26-11-2025 17:23:22 JRT Pre-Junkware Removal
26-11-2025 17:38:29 Installed Sophos Virus Removal Tool.
27-11-2025 18:03:08 zoek.exe restore point

==================== Faulty Device Manager Devices ============

==================== Event log errors: ========================

Application errors:
==================
Error: (11/28/2025 03:34:07 PM) (Source: Application Error) (EventID: 1000) (User: BOBIK)
Description: Název chybující aplikace: launcherrsxruntime.exe, verze: 1.0.0.1, časové razítko: 0x61c9822a
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x0000000000000000
ID chybujícího procesu: 0x4278
Čas spuštění chybující aplikace: 0x1dc60740d4c0b3b
Cesta k chybující aplikaci: C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.21.30024.0_x64__0a9344xs7nr4m\radeonsoftware\launcherrsxruntime.exe
Cesta k chybujícímu modulu: unknown
ID sestavy: c955960f-15ca-4822-935c-f262ac61efaf
Celý název chybujícího balíčku: AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.21.30024.0_x64__0a9344xs7nr4m
ID chybující aplikace relativní vzhledem k balíčku: AMDRadeonsoftwareUWP

Error: (11/28/2025 03:33:52 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Inicializace registrace certifikátu SCEP pro WORKGROUP\BOBIK$ přes https://AMD-KeyId-52fb59e29aa83a962fb9e ... s/Aik/scep se nepovedla:

GetCACaps

Metoda: GET(172ms)
Fáze: GetCACaps
Spojení se serverem bylo nenormálně ukončeno. 0x80072efe (WinHttp: 12030 ERROR_WINHTTP_CONNECTION_ERROR)

Error: (11/28/2025 03:33:52 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Inicializace registrace certifikátu SCEP pro Místní systém přes https://AMD-KeyId-52fb59e29aa83a962fb9e ... s/Aik/scep se nepovedla:

GetCACaps

Metoda: GET(125ms)
Fáze: GetCACaps
Spojení se serverem bylo nenormálně ukončeno. 0x80072efe (WinHttp: 12030 ERROR_WINHTTP_CONNECTION_ERROR)

Error: (11/28/2025 02:55:46 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1512) (User: NT AUTHORITY)
Description: Systém Windows nemůže uvolnit soubor registru. Nebyla uvolněna paměť používaná registrem. Tento problém je často způsoben tím, že jsou služby spuštěny pomocí uživatelského účtu. Zkuste služby konfigurovat pro spuštění pomocí účtu místní nebo síťové služby.

PODROBNOSTI – Přístup byl odepřen.

Error: (11/28/2025 02:55:46 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1512) (User: NT AUTHORITY)
Description: Systém Windows nemůže uvolnit soubor registru. Nebyla uvolněna paměť používaná registrem. Tento problém je často způsoben tím, že jsou služby spuštěny pomocí uživatelského účtu. Zkuste služby konfigurovat pro spuštění pomocí účtu místní nebo síťové služby.

PODROBNOSTI – Přístup byl odepřen.

Error: (11/28/2025 02:43:30 PM) (Source: Application Error) (EventID: 1000) (User: BOBIK)
Description: Název chybující aplikace: launcherrsxruntime.exe, verze: 1.0.0.1, časové razítko: 0x61c9822a
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x0000000000000000
ID chybujícího procesu: 0x3fd4
Čas spuštění chybující aplikace: 0x1dc606cfb034b10
Cesta k chybující aplikaci: C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.21.30024.0_x64__0a9344xs7nr4m\radeonsoftware\launcherrsxruntime.exe
Cesta k chybujícímu modulu: unknown
ID sestavy: bb5b03ba-56b9-4c47-bc75-b9364d4c5378
Celý název chybujícího balíčku: AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.21.30024.0_x64__0a9344xs7nr4m
ID chybující aplikace relativní vzhledem k balíčku: AMDRadeonsoftwareUWP

Error: (11/28/2025 02:43:16 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Inicializace registrace certifikátu SCEP pro WORKGROUP\BOBIK$ přes https://AMD-KeyId-52fb59e29aa83a962fb9e ... s/Aik/scep se nepovedla:

GetCACaps

Metoda: GET(188ms)
Fáze: GetCACaps
Spojení se serverem bylo nenormálně ukončeno. 0x80072efe (WinHttp: 12030 ERROR_WINHTTP_CONNECTION_ERROR)

Error: (11/28/2025 02:43:16 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Inicializace registrace certifikátu SCEP pro Místní systém přes https://AMD-KeyId-52fb59e29aa83a962fb9e ... s/Aik/scep se nepovedla:

GetCACaps

Metoda: GET(843ms)
Fáze: GetCACaps
Spojení se serverem bylo nenormálně ukončeno. 0x80072efe (WinHttp: 12030 ERROR_WINHTTP_CONNECTION_ERROR)


System errors:
=============
Error: (11/28/2025 03:35:46 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Aktualizace Google (gupdate) neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (11/28/2025 03:35:46 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Služba Aktualizace Google (gupdate) bylo dosaženo časového limitu (30000 ms).

Error: (11/28/2025 03:33:44 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba MBAMService neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (11/28/2025 03:33:44 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby MBAMService bylo dosaženo časového limitu (45000 ms).

Error: (11/28/2025 02:48:04 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:Gigabyte Technology Co., Ltd.;FirmwareManufacturer:American Megatrends International, LLC.;FirmwareVersion:F14;OEMModelNumber:B550 AORUS ELITE V2;OEMModelBaseBoard:B550 AORUS ELITE V2;OEMModelSystemFamily:B550 MB;OEMManufacturerName:Gigabyte Technology Co., Ltd.;OEMModelSKU:Default string;OSArchitecture:amd64;
BucketId: c61b929d871a9f85cef079b697e6435da617f2e9ec7322aff484efef2168321b
BucketConfidenceLevel:
UpdateType: 0
HResult: 0

Error: (11/28/2025 02:45:06 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Aktualizace Google (gupdate) neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (11/28/2025 02:45:06 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Služba Aktualizace Google (gupdate) bylo dosaženo časového limitu (30000 ms).

Error: (11/28/2025 02:43:06 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Search byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.


Windows Defender:
================
Date: 2025-11-26 17:43:35
Description:
Antivirová ochrana v programu Microsoft Defender šċąή ħаѕ ъёёи ѕťθрρёð ьеƒθяė ĉõмρļěťīθή.%ŋ %тŜċăи ΪÐ:%в{AE45AB3C-00DD-4FAC-A684-B63D29E1946D}%й %ťŠ¢ąņ Ťŷрέ:%ьAntimalwarový program%й %ţŚćдл Ρдгâmεтзřš:%вRychlé prohledávání%й %ŧŪšёг:%вNT AUTHORITY\SYSTEM%и %ŧŚтθр Ŗēαŝøŋ:%ъŖΡС ćǿñη℮¢тїôл гύиďǿẃη

Date: 2025-11-16 11:28:55
Description:
Antivirová ochrana v programu Microsoft Defender šċąή ħаѕ ъёёи ѕťθрρёð ьеƒθяė ĉõмρļěťīθή.%ŋ %тŜċăи ΪÐ:%в{ABBBECE4-6938-4BFD-898E-669A9F99C7F4}%й %ťŠ¢ąņ Ťŷрέ:%ьAntimalwarový program%й %ţŚćдл Ρдгâmεтзřš:%вRychlé prohledávání%й %ŧŪšёг:%вNT AUTHORITY\SYSTEM%и %ŧŚтθр Ŗēαŝøŋ:%ъΓΡ€ čοⁿпėċŧϊóʼn яűлđòщл

Date: 2025-11-15 14:27:02
Description:
Antivirová ochrana v programu Microsoft Defender šċąή ħаѕ ъёёи ѕťθрρёð ьеƒθяė ĉõмρļěťīθή.%ŋ %тŜċăи ΪÐ:%в{B37DAF5A-B505-404A-A1AE-74A095BF2389}%й %ťŠ¢ąņ Ťŷрέ:%ьAntimalwarový program%й %ţŚćдл Ρдгâmεтзřš:%вRychlé prohledávání%й %ŧŪšёг:%вNT AUTHORITY\SYSTEM%и %ŧŚтθр Ŗēαŝøŋ:%ъΓΡ€ čοⁿпėċŧϊóʼn яűлđòщл

Date: 2025-11-14 14:29:40
Description:
Antivirová ochrana v programu Microsoft Defender šċąή ħаѕ ъёёи ѕťθрρёð ьеƒθяė ĉõмρļěťīθή.%ŋ %тŜċăи ΪÐ:%в{96CB6BEA-9E86-4E69-8499-3B4763C7D456}%й %ťŠ¢ąņ Ťŷрέ:%ьAntimalwarový program%й %ţŚćдл Ρдгâmεтзřš:%вRychlé prohledávání%й %ŧŪšёг:%вNT AUTHORITY\SYSTEM%и %ŧŚтθр Ŗēαŝøŋ:%ъΓΡ€ čοⁿпėċŧϊóʼn яűлđòщл

Date: 2025-11-13 23:22:29
Description:
Antivirová ochrana v programu Microsoft Defender šċąή ħаѕ ъёёи ѕťθрρёð ьеƒθяė ĉõмρļěťīθή.%ŋ %тŜċăи ΪÐ:%в{894DF961-CBD0-483D-BBD6-F9E811A3E045}%й %ťŠ¢ąņ Ťŷрέ:%ьAntimalwarový program%й %ţŚćдл Ρдгâmεтзřš:%вRychlé prohledávání%й %ŧŪšёг:%вNT AUTHORITY\SYSTEM%и %ŧŚтθр Ŗēαŝøŋ:%ъΓΡ€ čοⁿпėċŧϊóʼn яűлđòщл

CodeIntegrity:
===============
Date: 2025-11-28 15:36:18
Description:
Code Integrity determined that a process (\Device\HarddiskVolume7\Windows\System32\SecurityHealthService.exe) attempted to load \Device\HarddiskVolume7\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\antimalware_provider.dll that did not meet the Windows signing level requirements.

Date: 2025-11-28 15:36:04
Description:
Code Integrity determined that a process (\Device\HarddiskVolume7\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume7\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\antimalware_provider.dll that did not meet the Windows signing level requirements.


==================== Memory info ===========================

BIOS: American Megatrends International, LLC. F14 01/04/2022
Motherboard: Gigabyte Technology Co., Ltd. B550 AORUS ELITE V2
Processor: AMD Ryzen 7 5700G with Radeon Graphics
Percentage of memory in use: 12%
Total physical RAM: 65384.89 MB
Available physical RAM: 57388.24 MB
Total Virtual: 69480.89 MB
Available Virtual: 60128.4 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:1862.21 GB) (Free:1560.16 GB) (Model: Samsung SSD 990 EVO Plus 2TB) NTFS
Drive d: (SSD Disk) (Fixed) (Total:953.85 GB) (Free:241.61 GB) (Model: Verbatim Vi550 S3) NTFS
Drive e: (SSD Disk 500) (Fixed) (Total:476.82 GB) (Free:476.63 GB) (Model: ADATA SX8200PNP) NTFS

\\?\Volume{c0fbd464-93c4-11f0-af27-97eaf8597ced}\ () (Fixed) (Total:0.69 GB) (Free:0.09 GB) NTFS
\\?\Volume{c0fbd465-93c4-11f0-af27-97eaf8597ced}\ () (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Protective MBR) (Size: 953.9 GB) (Disk ID: 00000000)

Partition: GPT.

==========================================================
Disk: 1 (Protective MBR) (Size: 476.9 GB) (Disk ID: 00000000)

Partition: GPT.

==========================================================
Disk: 2 (Protective MBR) (Size: 1863 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt =======================
Uživatelský avatar
jaro3
člen Security týmu
Příspěvky: 43396
Registrován: 16 čer 2007 18:58
Bydliště: Jižní Čechy

Re: Prosím o kontrolu logu

Příspěvek od jaro3 »

Potřebuji i ten začátek logu, zkopíruj to znovu.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
jonek288
nováček
Příspěvky: 23
Registrován: 24 lis 2025 18:27

Re: Prosím o kontrolu logu

Příspěvek od jonek288 »

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 20-11-2025
Ran by Jenda (administrator) on BOBIK (Gigabyte Technology Co., Ltd. B550 AORUS ELITE V2) (28-11-2025 15:36:18)
Running from C:\Users\Jenda\Desktop\FRST64.exe
Loaded Profiles: Jenda
Platform: Microsoft Windows 11 Pro Version 25H2 26200.7171 (X64) Language: Čeština (Česko)
Default browser: FF
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\avp.exe ->) (Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\avpui.exe
(C:\Program Files\Mozilla Firefox\firefox.exe ->) (Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\plugins_nms.exe
(C:\Program Files\Mozilla Firefox\firefox.exe ->) (Mozilla Corporation -> Mozilla Foundation) C:\Program Files\Mozilla Firefox\crashhelper.exe
(C:\Program Files\RogueKiller\RogueKillerSvc.exe ->) (ADLICE -> ) C:\Program Files\RogueKiller\RogueKiller64.exe
(Discord Inc. -> Discord Inc.) C:\Users\Jenda\AppData\Local\Discord\app-1.0.9216\Discord.exe <6>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files\Mozilla Firefox\firefox.exe <51>
(services.exe ->) (ADLICE -> ) C:\Program Files\RogueKiller\RogueKillerSvc.exe
(services.exe ->) (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.) C:\Windows\System32\amdfendrsr.exe
(services.exe ->) (Kaspersky Lab JSC -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\avp.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\NisSrv.exe
(services.exe ->) (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.) C:\Program Files (x86)\MSI\MSI Center\Voice Control\VoiceControl_Service.exe
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe <3>
(services.exe ->) (NVIDIA Corporation -> NVIDIA Corporation) C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_c2d1126d336032b3\Display.NvContainer\NVDisplay.Container.exe <2>
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_c984e9ce714075ab\RtkAudUService64.exe <2>
(svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2546.3.0_x64__cv1g1gvanyjgm\WhatsApp.exe
(svchost.exe ->) (AO Kaspersky Lab -> AO Kaspersky Lab) C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 10.2\kpm_tray.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\WindowsApps\Microsoft.StartExperiencesApp_1.151.0.0_x64__8wekyb3d8bbwe\MicrosoftStartFeedProvider\MicrosoftStartFeedProvider.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RtkAudUService] => C:\Windows\System32\DriverStore\FileRepository\realtekservice.inf_amd64_c984e9ce714075ab\RtkAudUService64.exe [1345104 2021-09-08] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM-x32\...\Run: [Discord] => C:\ProgramData\SquirrelMachineInstalls\Discord.exe --checkInstall (No File)
HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\Run: [MicrosoftEdgeAutoLaunch_9F1EE09F89B92BBCE7BC4185DDDFBD40] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [4253736 2025-11-20] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\Run: [Teams] => C:\Users\Jenda\AppData\Local\Microsoft\WindowsApps\MSTeams_8wekyb3d8bbwe\ms-teams.exe [0 0] () [symlink -> ]
HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\Run: [Gaijin.Net Updater] => C:\Users\Jenda\AppData\Local\Gaijin\Program Files (x86)\NetAgent\gjagent.exe [3101416 2025-10-01] (GAIJIN NETWORK LTD -> Gaijin)
HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\Run: [Discord] => C:\Users\Jenda\AppData\Local\Discord\Update.exe [1596344 2025-11-24] (Discord Inc. -> Discord Inc.)
HKLM\...\Windows x64\Print Processors\Canon MG5100 series Print Processor: C:\Windows\System32\spool\prtprocs\x64\CNMPDAD.DLL [30208 2012-03-14] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\Canon BJ Language Monitor MG5100 series: C:\Windows\system32\CNMLMAD.DLL [385024 2012-03-14] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{49210152-871f-4ffa-961d-a172abcbc09d}] -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe [2025-11-06] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\142.0.7444.176\Installer\chrmstp.exe [2025-11-23] (Google LLC -> Google LLC)

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {00d5c986-14a6-4984-be83-cb2193fcbc1e} - no filepath. <==== ATTENTION
Task: {02a6f576-3a3c-429a-aead-7494c4350a5a} - no filepath. <==== ATTENTION
Task: {02d9a7d0-c686-4151-95c4-dad723531089} - no filepath. <==== ATTENTION
Task: {03f71dbb-6a01-4c66-b630-6169587ec189} - no filepath. <==== ATTENTION
Task: {03f8d7e6-4527-4cd4-800f-687cd8b25133} - no filepath. <==== ATTENTION
Task: {053f3202-8fc0-483d-91e5-683464fa41f0} - no filepath. <==== ATTENTION
Task: {07bf83ab-1379-46ed-9977-14fab467c7d9} - no filepath. <==== ATTENTION
Task: {08072f20-c86e-4af2-aae7-d6293e52aba2} - no filepath. <==== ATTENTION
Task: {08951cec-875b-4859-bf94-56ff926aa9e0} - no filepath. <==== ATTENTION
Task: {089d4814-e8ed-4492-8d24-d7103a0db696} - no filepath. <==== ATTENTION
Task: {096b080f-9184-47fa-a609-71aed6fddf09} - no filepath. <==== ATTENTION
Task: {0a6982a8-8597-4dbb-b8bf-76bd3feb0267} - no filepath. <==== ATTENTION
Task: {0b19ce7f-15de-4020-90f0-2cfeb498997d} - no filepath. <==== ATTENTION
Task: {0bb40e63-ee0e-4a2f-a119-98340d25c158} - no filepath. <==== ATTENTION
Task: {0c179f72-9108-427d-a1b5-85732df1c812} - no filepath. <==== ATTENTION
Task: {0c981ec0-4658-4c55-9ab2-04d7808c94ce} - no filepath. <==== ATTENTION
Task: {0d692624-1a73-4a18-86f5-111f94a2f6a8} - no filepath. <==== ATTENTION
Task: {0dcd3675-0d88-4c8a-b76d-75f437654271} - no filepath. <==== ATTENTION
Task: {0e705813-84a5-43b5-86f5-32a754233e05} - no filepath. <==== ATTENTION
Task: {0f0ee014-8e3a-4bc5-acc2-594d7ee53a0f} - no filepath. <==== ATTENTION
Task: {0f73999b-d2fd-4b83-9be1-9e2b393647f7} - no filepath. <==== ATTENTION
Task: {0fe3b2c4-8cdf-4984-9234-3a7274e2200c} - no filepath. <==== ATTENTION
Task: {10ade88f-a40c-485f-b538-bdd4df4b4446} - no filepath. <==== ATTENTION
Task: {1137609a-401f-4e02-ab49-b7ac2e6f12a6} - no filepath. <==== ATTENTION
Task: {12d2aec9-edf1-4ff3-a5a0-4c75151ac4f5} - no filepath. <==== ATTENTION
Task: {142d34cb-e8a6-40d0-94ba-4c529cb28ca5} - no filepath. <==== ATTENTION
Task: {1431e41f-da73-4b3b-8139-970af6ef7749} - no filepath. <==== ATTENTION
Task: {144c4abf-3260-48b0-8df8-040c5ea03e2c} - no filepath. <==== ATTENTION
Task: {1495afa4-dde9-48bd-9e0b-ca8dcc7361f0} - no filepath. <==== ATTENTION
Task: {1620a7d5-3f4a-42cf-95ab-8b38a7fa80f7} - no filepath. <==== ATTENTION
Task: {191d6e07-e1e6-4abe-8224-057b21eeeeb2} - no filepath. <==== ATTENTION
Task: {1d1f6db3-811d-4c79-bd22-4c68b7433bc1} - no filepath. <==== ATTENTION
Task: {20c8374f-cc58-403d-881e-f64e8d8c38de} - no filepath. <==== ATTENTION
Task: {21532842-612f-4d75-a923-6aa822042813} - no filepath. <==== ATTENTION
Task: {22d4cc31-3f26-4017-af77-2f0a531fbc8b} - no filepath. <==== ATTENTION
Task: {298479ea-17a7-487b-b39f-10c2e5c6445f} - no filepath. <==== ATTENTION
Task: {29dd6eb1-455c-4b0b-b896-cdc6a7d123df} - no filepath. <==== ATTENTION
Task: {2aa6f14f-5338-4fed-8365-57c651855f2f} - no filepath. <==== ATTENTION
Task: {2b9c176b-e264-46c4-95f5-3b37ba1d974a} - no filepath. <==== ATTENTION
Task: {32013145-52e9-4f89-9816-1a096b25c797} - no filepath. <==== ATTENTION
Task: {330744ba-be2e-4791-ac1d-38e6403126fc} - no filepath. <==== ATTENTION
Task: {335f9234-1ee2-40db-b31a-6a877e168512} - no filepath. <==== ATTENTION
Task: {34748b56-7261-440a-ba37-f213d117472b} - no filepath. <==== ATTENTION
Task: {38041067-f5c8-4157-abf8-7dae6ae6987e} - no filepath. <==== ATTENTION
Task: {3aab74d9-4392-4d0f-b00e-e668acc979ab} - no filepath. <==== ATTENTION
Task: {3cc91d68-38be-4d32-beff-91e42adfbab5} - no filepath. <==== ATTENTION
Task: {3cf33de5-8b14-4fee-888f-53c0384118e7} - no filepath. <==== ATTENTION
Task: {3e4bd717-1752-496c-8564-d99641472b4e} - no filepath. <==== ATTENTION
Task: {3f3646f5-d910-4355-8dbe-ea839c6111dc} - no filepath. <==== ATTENTION
Task: {4042b7cc-1d49-4b23-8d27-a5da7b51234e} - no filepath. <==== ATTENTION
Task: {412e8930-2aed-47b7-92dd-bb98f770ad6f} - no filepath. <==== ATTENTION
Task: {44e99bc3-7751-4339-8086-0ce94faa4e98} - no filepath. <==== ATTENTION
Task: {45985b9f-b56b-49a7-b878-81c17b6b6089} - no filepath. <==== ATTENTION
Task: {48bd70dc-143d-4386-861d-6300bf45b0dc} - no filepath. <==== ATTENTION
Task: {48ce2588-f2be-4ebb-b205-daf17db56172} - no filepath. <==== ATTENTION
Task: {4b1e243e-85ea-4e96-aacb-64d35a04ca95} - no filepath. <==== ATTENTION
Task: {4bbf3c83-a5f2-4bc9-b282-71061ae59209} - no filepath. <==== ATTENTION
Task: {4c72ae2f-7f92-4ec4-868d-2f672fa392ae} - no filepath. <==== ATTENTION
Task: {4cf77be4-ff13-4bda-8922-5230bd4c155c} - no filepath. <==== ATTENTION
Task: {4d162192-827a-48e4-a8e4-2071ff428a2a} - no filepath. <==== ATTENTION
Task: {4f2bdaab-4956-4c2b-848a-e61c4de8c4ce} - no filepath. <==== ATTENTION
Task: {51bc6a78-0be7-4d60-92f7-9f4f1bab6ed2} - no filepath. <==== ATTENTION
Task: {5291c210-c0f8-4f6d-b1c1-21b585d29b47} - no filepath. <==== ATTENTION
Task: {534d058d-7124-49ba-9b00-d2f30667c0e5} - no filepath. <==== ATTENTION
Task: {54062a3b-6b31-4600-b4ec-45ec50a39f6a} - no filepath. <==== ATTENTION
Task: {5460418b-5bc8-4960-ab8d-983e08623931} - no filepath. <==== ATTENTION
Task: {546bc32b-ed9a-4933-b58b-34041bef792d} - no filepath. <==== ATTENTION
Task: {54df9c00-8100-460d-ada7-8d7e7e420f0d} - no filepath. <==== ATTENTION
Task: {551d4055-547d-4255-88ae-9d40fa2253b4} - no filepath. <==== ATTENTION
Task: {5cdd4d69-8c9c-4e33-b2c8-fe687bffca2a} - no filepath. <==== ATTENTION
Task: {5e13cd49-5792-44c2-afdf-17e71a44898d} - no filepath. <==== ATTENTION
Task: {606fc516-c975-4375-9751-dc61345000c5} - no filepath. <==== ATTENTION
Task: {62828caa-9f5f-4f21-8d49-4215036fecdc} - no filepath. <==== ATTENTION
Task: {6367d695-b9d5-49ba-9367-fa71ee18b383} - no filepath. <==== ATTENTION
Task: {68e653c6-ab68-4463-b32b-34ea0e1d0242} - no filepath. <==== ATTENTION
Task: {6bd2b751-e877-4b85-a319-26acba8a919f} - no filepath. <==== ATTENTION
Task: {6c2e8d1d-591e-4ab4-b5e5-1f539aaf2e27} - no filepath. <==== ATTENTION
Task: {6d2855c0-ad28-48dc-8b75-25cdadd8f325} - no filepath. <==== ATTENTION
Task: {6f5953da-e976-42b1-af89-fb784f835ec2} - no filepath. <==== ATTENTION
Task: {6f63db12-b3fc-4ede-a0fe-a8bdd445d2e5} - no filepath. <==== ATTENTION
Task: {6fb1c17d-9878-4023-a477-d301d7a4aba7} - no filepath. <==== ATTENTION
Task: {7114e3a9-edeb-443f-ae1b-cbb8b2619c91} - no filepath. <==== ATTENTION
Task: {7174da66-eba4-4cb7-abfe-3724d7ba9f28} - no filepath. <==== ATTENTION
Task: {72cbe8db-f8d0-4dc7-9daa-a270d4aca359} - no filepath. <==== ATTENTION
Task: {72e4dbb4-664a-454b-a254-56a26ab31e2a} - no filepath. <==== ATTENTION
Task: {730654d7-709a-42d2-b50a-9acf4fabe6d7} - no filepath. <==== ATTENTION
Task: {73733208-bf5e-479f-b737-99071d92dfc4} - no filepath. <==== ATTENTION
Task: {737e384c-1c2d-4a9a-81dc-bc52ea7e463b} - no filepath. <==== ATTENTION
Task: {7645254e-b0d7-4141-be56-61ef8388cc22} - no filepath. <==== ATTENTION
Task: {7acd8191-0356-4082-a089-fbdb6c1d4aa8} - no filepath. <==== ATTENTION
Task: {7bc98579-0d45-4880-b051-4a4088f7a0b9} - no filepath. <==== ATTENTION
Task: {7e42d8da-16c6-4a01-b00d-2b2723a6dd5c} - no filepath. <==== ATTENTION
Task: {7e8dfb9c-bea5-4565-aef2-d9e2bd6c3fc9} - no filepath. <==== ATTENTION
Task: {805a1d5c-d8d3-43a7-bae8-0618fc742463} - no filepath. <==== ATTENTION
Task: {806b2375-028c-4d88-a36b-955f2e87ae64} - no filepath. <==== ATTENTION
Task: {81e7d19e-a1c7-4789-819f-3c09d3e1869a} - no filepath. <==== ATTENTION
Task: {84d8e9df-e75f-47eb-a5a7-526ebda2eecb} - no filepath. <==== ATTENTION
Task: {8641d544-7c84-46eb-b226-5aa5a6a533f7} - no filepath. <==== ATTENTION
Task: {8805f9bb-befd-4a47-8631-06f33b95f5c8} - no filepath. <==== ATTENTION
Task: {887f27d8-1d3f-4d76-b0ca-4854d26c3695} - no filepath. <==== ATTENTION
Task: {89fdd83d-acb6-41e3-91ba-a37ebd01e9f6} - no filepath. <==== ATTENTION
Task: {8a6a226c-8de5-4c08-add3-c1986dcea430} - no filepath. <==== ATTENTION
Task: {9025e31f-9930-4e4b-815d-a066fbd8701a} - no filepath. <==== ATTENTION
Task: {910eeb19-6b0a-4843-a915-bd7fd674b062} - no filepath. <==== ATTENTION
Task: {93e1c5d0-2453-40ad-b983-be01fe570370} - no filepath. <==== ATTENTION
Task: {93fee6f0-ec1b-4990-ae08-42fc4ce1f80b} - no filepath. <==== ATTENTION
Task: {954fab6d-5f38-49c6-903e-55ecc85373c2} - no filepath. <==== ATTENTION
Task: {955983dc-4b34-429a-89d1-5a7794ec4e70} - no filepath. <==== ATTENTION
Task: {95bd6ad6-5abc-407a-be8d-3843fd668a4a} - no filepath. <==== ATTENTION
Task: {968794ca-b4e2-4f81-8ec4-4ca97b6657c1} - no filepath. <==== ATTENTION
Task: {97d8aaef-c8be-42d1-a737-62fa3caea0f0} - no filepath. <==== ATTENTION
Task: {98b1e6fd-8403-4285-833b-e0d54fa6811b} - no filepath. <==== ATTENTION
Task: {999492d4-1593-4916-aa49-9edc8cdb6304} - no filepath. <==== ATTENTION
Task: {9e298deb-ec2a-4807-82c3-89abbb906fc1} - no filepath. <==== ATTENTION
Task: {9ea6f6b6-eeef-4856-87ea-87b7d4b39f74} - no filepath. <==== ATTENTION
Task: {9fb0c73b-db5f-4cb6-aca5-4bebd0a1ce15} - no filepath. <==== ATTENTION
Task: {a03a6e60-bd6f-4765-8987-8e087e835a57} - no filepath. <==== ATTENTION
Task: {a209afce-49d3-4140-a6e0-1bee08a93b3d} - no filepath. <==== ATTENTION
Task: {a8cddb6b-b9db-41ad-b3ae-d466c1875b4b} - no filepath. <==== ATTENTION
Task: {ab3c5729-b654-4388-9269-4450f38b1ba9} - no filepath. <==== ATTENTION
Task: {ad284b76-3e0e-45c3-8989-09179637555c} - no filepath. <==== ATTENTION
Task: {af8249a7-3796-47f6-9d5b-0422cb2c6cb2} - no filepath. <==== ATTENTION
Task: {af93724f-d443-4fd1-af00-c44575128bc8} - no filepath. <==== ATTENTION
Task: {b32dc67f-5d6c-4b8a-8c7b-e6869dac4282} - no filepath. <==== ATTENTION
Task: {b4ccfea5-6e8d-4cd7-b7c9-ca93244fb5fc} - no filepath. <==== ATTENTION
Task: {b65368c4-eb82-4b48-a24b-322e306c605e} - no filepath. <==== ATTENTION
Task: {b68e2756-5e9c-4e5a-aa92-b478f17735a7} - no filepath. <==== ATTENTION
Task: {b86ff5e5-ef90-41f4-a101-fada5cb10c17} - no filepath. <==== ATTENTION
Task: {bb7d75bf-aff8-4747-9c3f-58a0628e2eb1} - no filepath. <==== ATTENTION
Task: {bb96ba52-d281-4b16-b78e-7b2dd119dd71} - no filepath. <==== ATTENTION
Task: {bc9ec85c-02d5-436d-b8a5-dc92be0a71a2} - no filepath. <==== ATTENTION
Task: {bcdbcc24-39a8-4b8e-bafe-365161421a9f} - no filepath. <==== ATTENTION
Task: {bebdd0d3-00f4-42e4-a537-ebba697f6b85} - no filepath. <==== ATTENTION
Task: {c0538825-9658-467c-84e8-297ee3a065a5} - no filepath. <==== ATTENTION
Task: {c15df7da-adeb-4254-bff8-0548b42c8525} - no filepath. <==== ATTENTION
Task: {c1866588-67a8-4883-aa39-27d8a6b7d328} - no filepath. <==== ATTENTION
Task: {c27ccebd-447b-432b-a9fd-4d9a9e6976ff} - no filepath. <==== ATTENTION
Task: {c4982fd3-354a-48d2-92ae-20d0e50b5f24} - no filepath. <==== ATTENTION
Task: {c78023ec-586f-4724-be33-f1b8c7151479} - no filepath. <==== ATTENTION
Task: {c79c83eb-7638-45d4-8af9-dff12a26de5e} - no filepath. <==== ATTENTION
Task: {c849f05e-e489-4ed0-b060-7edac0e9f23f} - no filepath. <==== ATTENTION
Task: {c90993e9-f5b6-4e59-831f-1352575cafc4} - no filepath. <==== ATTENTION
Task: {c9b61264-c0a0-45ae-9ba3-e87963590760} - no filepath. <==== ATTENTION
Task: {cc88659a-8ff0-4808-a672-1f8cf8cf6df4} - no filepath. <==== ATTENTION
Task: {ccb12c21-2e65-43f9-b4da-aefbd0f83ef2} - no filepath. <==== ATTENTION
Task: {cd10d944-d015-4c00-ad39-a2df2806f30f} - no filepath. <==== ATTENTION
Task: {cd6033c9-b80c-4793-9255-01f55ffd769b} - no filepath. <==== ATTENTION
Task: {cedbafbe-c867-4044-809f-8a64abd0b956} - no filepath. <==== ATTENTION
Task: {cf67bd23-594b-4ec0-bf09-149490a91fc5} - no filepath. <==== ATTENTION
Task: {d016cbcc-db31-4e44-a0f3-9ccf564032e1} - no filepath. <==== ATTENTION
Task: {d0c1487a-fedc-4d53-a979-8e982f77fd35} - no filepath. <==== ATTENTION
Task: {d11a53a3-e853-4111-9ca2-f9a2f5e3423a} - no filepath. <==== ATTENTION
Task: {d19b7790-fdcb-40d5-83d1-62c2b77807a6} - no filepath. <==== ATTENTION
Task: {d349ad89-edee-4227-affc-39d1c606dc24} - no filepath. <==== ATTENTION
Task: {d3dce8be-ed4a-4afe-8e95-a3fb1610a587} - no filepath. <==== ATTENTION
Task: {d58d8d3c-4c8c-4c79-9621-9675fe0411a4} - no filepath. <==== ATTENTION
Task: {d5bbe4fa-d9cc-420a-9fc7-f4b168cccb54} - no filepath. <==== ATTENTION
Task: {d6460478-3c53-4686-b214-27d3ba17d932} - no filepath. <==== ATTENTION
Task: {d6d77d44-04f4-4e05-8344-9d5d9744c4b6} - no filepath. <==== ATTENTION
Task: {d96187ab-14ea-4029-a583-904db95bf36f} - no filepath. <==== ATTENTION
Task: {da67db13-0acf-4ce8-808e-6c8f870a5acd} - no filepath. <==== ATTENTION
Task: {db77d1e3-9ee8-4608-bcfe-8568fd7d6be8} - no filepath. <==== ATTENTION
Task: {de1706c6-c1ec-4799-800e-3c718bae6921} - no filepath. <==== ATTENTION
Task: {dfd80729-14f9-49b3-bdc1-53397e616568} - no filepath. <==== ATTENTION
Task: {e09d573f-d973-469e-8499-cef9c5f9f3fd} - no filepath. <==== ATTENTION
Task: {e4dfa20d-1735-43af-8730-3cefdb8bdf88} - no filepath. <==== ATTENTION
Task: {e4e85062-15bb-4e76-9ed4-51bf129d3b7c} - no filepath. <==== ATTENTION
Task: {e4f2106a-09ef-4c86-b86e-f8614cfe04cf} - no filepath. <==== ATTENTION
Task: {e634067d-fb8a-477a-b3ba-0c47cbb444f5} - no filepath. <==== ATTENTION
Task: {e7f39b5e-26ee-464d-a4b5-a1791a3e6047} - no filepath. <==== ATTENTION
Task: {e9722648-38c5-4e6c-9a01-fa4c4872a1c2} - no filepath. <==== ATTENTION
Task: {e9b31b50-8a65-47ca-a2f1-70b211b6a10e} - no filepath. <==== ATTENTION
Task: {ea201faf-8493-4956-b923-fb3bf02208de} - no filepath. <==== ATTENTION
Task: {eacab179-ab22-4977-b17d-bd9e23cf2c31} - no filepath. <==== ATTENTION
Task: {ec457b7d-460f-45da-b28f-00430452bf21} - no filepath. <==== ATTENTION
Task: {ec5c493b-fcb5-41bd-b643-fab4b936e346} - no filepath. <==== ATTENTION
Task: {ec9906d4-94d8-47a3-bbbc-088bcbffd6de} - no filepath. <==== ATTENTION
Task: {ecd7b292-273b-4e15-9937-223c05fb21be} - no filepath. <==== ATTENTION
Task: {ee3b6b48-187f-4914-b967-d7093dbd330e} - no filepath. <==== ATTENTION
Task: {ef0bd441-299d-4076-b99e-24dfd138fb50} - no filepath. <==== ATTENTION
Task: {f2c1196a-818b-4352-9c81-3d55b1912a5a} - no filepath. <==== ATTENTION
Task: {f345efdb-ef1a-4c71-82fa-3ed4f64b2073} - no filepath. <==== ATTENTION
Task: {f76479d7-c273-4d19-9ead-c065b2cb89fc} - no filepath. <==== ATTENTION
Task: {fbe0d077-797e-4111-a28b-7279de73076e} - no filepath. <==== ATTENTION
Task: {fc4d4647-5227-4361-940e-e2e11f571689} - no filepath. <==== ATTENTION
Task: {ff5fd245-c577-4b23-ab00-228c14694d4d} - no filepath. <==== ATTENTION
Task: {A5DBEE2C-CC7D-4164-A790-AC35FD134F93} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem143.0.7482.0{3A9AA064-3798-4AC3-B707-4D4ACEF16136} => C:\Program Files (x86)\Google\GoogleUpdater\143.0.7482.0\updater.exe [6933656 2025-10-19] (Google LLC -> Google LLC)
Task: {A4B9EF0D-DFBE-4BA3-8499-EA7B27FB11CF} - System32\Tasks\Kaspersky_Upgrade_Launcher_{278ADC42-419D-4547-A6CA-5B74BE0AD901} => C:\Program Files\Common Files\AV\Kaspersky Lab\upgrade_launcher.exe [743488 2023-01-07] (Kaspersky Lab JSC -> AO Kaspersky Lab)
Task: {5EDB1723-3686-4E7D-8F2E-65B234662B6A} - System32\Tasks\kpm_tray.exe => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 10.2\kpm_tray.exe [521416 2022-10-25] (AO Kaspersky Lab -> AO Kaspersky Lab)
Task: {077BA067-7C15-40F0-B22E-C9DC2A54B4A2} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe (No File)
Task: {DD7885DD-65DD-4969-A19C-ABA77436C9C9} - System32\Tasks\ModifyLinkUpdate => C:\Program Files\AMD\CIM\Bin64\InstallManagerApp.exe [1717720 2021-08-26] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
Task: {A5A1C103-BE87-4FFC-A49B-FA6AB29DEB9B} - System32\Tasks\Mozilla\Firefox Background Update 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [695424 2025-11-26] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {A967CB55-C526-4D24-9E64-59C7202E0861} - System32\Tasks\Mozilla\Firefox Background Update S-1-5-21-1097603303-2479041749-3734249552-1001 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\firefox.exe [695424 2025-11-26] (Mozilla Corporation -> Mozilla Corporation) -> C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\--MOZ_LOG sync,prependheader,timestamp,append,maxsize:1,Dump:5 --MOZ_LOG_FILE C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38\updates\308046B0AF4A39CB\backgroundupdate.moz_log --backgroundtask background (the data entry has 6 more characters).
Task: {0DBD8177-F4F9-4384-89A2-27188B9A03C2} - System32\Tasks\Mozilla\Firefox Default Browser Agent 308046B0AF4A39CB => C:\Program Files\Mozilla Firefox\default-browser-agent.exe [34944 2025-11-26] (Mozilla Corporation -> Mozilla Foundation)
Task: {189BBFE5-29FB-46C6-8E3E-AF15A34CA3E2} - System32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8} => C:\Program Files\NVIDIA Corporation\NVIDIA App\CEF\NVIDIA App.exe [3324528 2025-10-15] (NVIDIA Corporation -> NVIDIA Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.100.1
Tcpip\..\Interfaces\{d1ec935b-eaf1-423a-99b5-09335dfffbea}: [DhcpNameServer] 192.168.100.1

Edge:
=======
Edge Profile: C:\Users\Jenda\AppData\Local\Microsoft\Edge\User Data\Default [2025-11-27]
Edge Extension: (Ochrana Kaspersky) - C:\Users\Jenda\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ahkjpbeeocnddjkakilopmfdlnjdpcdm [2025-11-27]
Edge Extension: (Malwarebytes Browser Guard) - C:\Users\Jenda\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\bojobppfploabceghnmlahpoonbcbacn [2025-11-27]
Edge Extension: (Dokumenty Google offline) - C:\Users\Jenda\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-11-27]
Edge Extension: (Edge relevant text changes) - C:\Users\Jenda\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2025-11-27]
Edge HKLM\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn]
Edge HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\SOFTWARE\Microsoft\Edge\Extensions\...\Edge\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm]
Edge HKLM-x32\...\Edge\Extension: [bojobppfploabceghnmlahpoonbcbacn]

FireFox:
========
FF DefaultProfile: 4feraa76.default
FF ProfilePath: C:\Users\Jenda\AppData\Roaming\Mozilla\Firefox\Profiles\4feraa76.default [2025-11-27]
FF Homepage: Mozilla\Firefox\Profiles\4feraa76.default -> about:home
FF NewTab: Mozilla\Firefox\Profiles\4feraa76.default -> about:newtab
FF ProfilePath: C:\Users\Jenda\AppData\Roaming\Mozilla\Firefox\Profiles\glanzv8g.default-release [2025-11-28]
FF Homepage: Mozilla\Firefox\Profiles\glanzv8g.default-release -> hxxps://www.seznam.cz/
FF NewTab: Mozilla\Firefox\Profiles\glanzv8g.default-release -> about:newtab
FF Notifications: Mozilla\Firefox\Profiles\glanzv8g.default-release -> hxxps://www.amateri.com; hxxps://tn.nova.cz; hxxps://www.lidl.cz; hxxps://eobuv.cz; hxxps://www.autodoc.cz; hxxps://svetkreativity.cz; hxxps://www.youtube.com; hxxps://www.dotyk.cz; hxxps://teams.live.com; hxxps://www.ceskyali.cz; hxxps://www.autodoc.parts
FF Extension: (Blokátor reklam AdGuard) - C:\Users\Jenda\AppData\Roaming\Mozilla\Firefox\Profiles\glanzv8g.default-release\Extensions\adguardadblocker@adguard.com.xpi [2025-11-19]
FF Extension: (Ochrana Kaspersky) - C:\Users\Jenda\AppData\Roaming\Mozilla\Firefox\Profiles\glanzv8g.default-release\Extensions\light_plugin_7571494CE0B94E11BB762B659A4AD71F@kaspersky.com.xpi [2025-11-28]
FF Extension: (TWP - Translate Web Pages) - C:\Users\Jenda\AppData\Roaming\Mozilla\Firefox\Profiles\glanzv8g.default-release\Extensions\{036a55b4-5e72-4d05-a06c-cba2dfcc134a}.xpi [2025-03-28]
FF Extension: (Malwarebytes Browser Guard) - C:\Users\Jenda\AppData\Roaming\Mozilla\Firefox\Profiles\glanzv8g.default-release\Extensions\{242af0bb-db11-4734-b7a0-61cb8a9b20fb}.xpi [2025-11-26]
FF Plugin: @videolan.org/vlc,version=3.0.18 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.19 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF Plugin: @videolan.org/vlc,version=3.0.21 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2024-06-08] (VideoLAN -> VideoLAN)
FF ExtraCheck: C:\Program Files\mozilla firefox\defaults\pref\kl_prefs_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.js [2023-01-07] <==== ATTENTION (Points to *.cfg file)
FF ExtraCheck: C:\Program Files\mozilla firefox\kl_config_62fbb8f7_c917_4cf7_957a_aad2b8fa768c.cfg [2023-01-07] <==== ATTENTION

Chrome:
=======
CHR Profile: C:\Users\Jenda\AppData\Local\Google\Chrome\User Data\Default [2025-11-28]
CHR DefaultSearchURL: Default -> hxxps://search.seznam.cz/?q={searchTerms}
CHR DefaultSearchKeyword: Default -> seznam
CHR DefaultNewTabURL: Default -> hxxps://search.seznam.cz/newtab
CHR DefaultSuggestURL: Default -> hxxps://suggest.seznam.cz/fulltext_ff?phrase={searchTerms}
CHR Extension: (Ochrana Kaspersky) - C:\Users\Jenda\AppData\Local\Google\Chrome\User Data\Default\Extensions\ahkjpbeeocnddjkakilopmfdlnjdpcdm [2025-11-28]
CHR Extension: (Dokumenty Google offline) - C:\Users\Jenda\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-11-28]
CHR Extension: (Malwarebytes Browser Guard) - C:\Users\Jenda\AppData\Local\Google\Chrome\User Data\Default\Extensions\ihcjicgdanjaechkgeegckofjjedodee [2025-11-28]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Jenda\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2025-11-28]
CHR HKLM\...\Chrome\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] - hxxps://chrome.google.com/webstore/detail/kaspersky-protection/ahkjpbeeocnddjkakilopmfdlnjdpcdm
CHR HKLM\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
CHR HKLM-x32\...\Chrome\Extension: [ahkjpbeeocnddjkakilopmfdlnjdpcdm] - hxxps://chrome.google.com/webstore/detail/kaspersky-protection/ahkjpbeeocnddjkakilopmfdlnjdpcdm
CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AVP21.3; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\avp.exe [184768 2022-08-01] (Kaspersky Lab JSC -> AO Kaspersky Lab)
S3 BEService; C:\Program Files (x86)\Common Files\BattlEye\BEService.exe [20285608 2025-02-11] (BattlEye Innovations e.K. -> )
S3 EasyAntiCheat; C:\Program Files (x86)\EasyAntiCheat\EasyAntiCheat.exe [1135648 2023-08-29] (EasyAntiCheat Oy -> Epic Games, Inc)
S3 klvssbridge64_21.3; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\vssbridge64.exe [479280 2021-02-19] (Kaspersky Lab JSC -> AO Kaspersky Lab)
S3 kpm_service_10.2; C:\Program Files (x86)\Kaspersky Lab\Kaspersky Password Manager 10.2\kpm_service.exe [520904 2022-10-25] (AO Kaspersky Lab -> AO Kaspersky Lab)
S3 LibreOfficeMaintenance; C:\Program Files\LibreOffice\program\update_service.exe [122792 2025-11-06] (The Document Foundation -> The Document Foundation)
S2 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [11172008 2025-11-24] (Malwarebytes Inc -> Malwarebytes)
S3 MBVpnTunnelService; C:\Program Files\Malwarebytes\Anti-Malware\MBVpnTunnelService.exe [2788304 2025-11-24] (Malwarebytes Inc. -> Malwarebytes)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\MpDefenderCoreService.exe [2026184 2025-11-18] (Microsoft Windows Publisher -> Microsoft Corporation)
U2 MSI_VoiceControl_Service; C:\Program Files (x86)\MSI\MSI Center\Voice Control\VoiceControl_Service.exe [36880 2023-04-27] (MICRO-STAR INTERNATIONAL CO., LTD. -> Micro-Star INT'L CO., LTD.)
R2 NVDisplay.ContainerLocalSystem; C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_c2d1126d336032b3\Display.NvContainer\NVDisplay.Container.exe [1275624 2025-10-30] (NVIDIA Corporation -> NVIDIA Corporation)
R2 rkrtservice; C:\Program Files\RogueKiller\RogueKillerSvc.exe [16166464 2025-11-25] (ADLICE -> )
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [803088 2025-10-29] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\NisSrv.exe [4414480 2025-11-18] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.25100.9008-0\MsMpEng.exe [282440 2025-11-18] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 amdfendrmgr; C:\Windows\System32\drivers\amdfendrmgr.sys [54720 2022-10-21] (Advanced Micro Devices Inc. -> Advanced Micro Devices, Inc.)
R3 amdgpio3; C:\Windows\System32\drivers\amdgpio3.sys [36928 2024-08-20] (ASMedia Technology Inc. -> Advanced Micro Devices, Inc)
S1 amsdk; C:\Windows\system32\drivers\amsdk.sys [232792 2025-11-28] (Zemana D.O.O. Sarajevo -> Copyright 2018.)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [569344 2024-11-24] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [200704 2024-11-24] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\Windows\System32\drivers\bthmodem.sys [110592 2024-11-24] (Microsoft Corporation) [File not signed]
R0 cm_km; C:\Windows\System32\DRIVERS\cm_km.sys [237288 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 gdrv3; C:\Windows\System32\drivers\gdrv3.sys [41480 2023-01-07] (GIGA-BYTE Technology Co., Ltd. -> GIGA-BYTE TECHNOLOGY CO., LTD.)
S3 I2cHkBurn; C:\Windows\system32\drivers\I2cHkBurn.sys [41760 2015-07-27] (Feature Integration Technology -> FINTEK Corp.)
R1 klbackupdisk; C:\Windows\system32\DRIVERS\klbackupdisk.sys [105280 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klbackupflt; C:\Windows\System32\DRIVERS\klbackupflt.sys [206600 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 kldisk; C:\Windows\system32\DRIVERS\kldisk.sys [119568 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
S0 klelam; C:\Windows\System32\DRIVERS\klelam.sys [41656 2021-02-19] (Microsoft Windows Early Launch Anti-malware Publisher -> AO Kaspersky Lab)
R1 klflt; C:\Windows\system32\DRIVERS\klflt.sys [533040 2024-04-02] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klgse; C:\Windows\System32\DRIVERS\klgse.sys [857080 2025-10-02] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klhk; C:\Windows\system32\DRIVERS\klhk.sys [2959384 2025-10-02] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
S3 klids; C:\ProgramData\Kaspersky Lab\AVP21.3\Bases\klids.sys [242808 2025-10-14] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 KLIF; C:\Windows\System32\DRIVERS\klif.sys [1051184 2024-04-02] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klim6; C:\Windows\system32\DRIVERS\klim6.sys [90896 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R3 klkbdflt; C:\Windows\system32\DRIVERS\klkbdflt.sys [104728 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R3 klmouflt; C:\Windows\system32\DRIVERS\klmouflt.sys [107328 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klpd; C:\Windows\System32\DRIVERS\klpd.sys [78088 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klpnpflt; C:\Windows\system32\DRIVERS\klpnpflt.sys [88328 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R0 klupd_klif_arkmon; C:\Windows\System32\Drivers\klupd_klif_arkmon.sys [420432 2025-10-21] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R3 klupd_klif_klark; C:\Windows\System32\Drivers\klupd_klif_klark.sys [365160 2025-10-22] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R0 klupd_klif_klbg; C:\Windows\System32\Drivers\klupd_klif_klbg.sys [213360 2025-10-21] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R3 klupd_klif_mark; C:\Windows\System32\Drivers\klupd_klif_mark.sys [275320 2025-10-22] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klwfp; C:\Windows\system32\DRIVERS\klwfp.sys [150280 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 klwtp; C:\Windows\system32\DRIVERS\klwtp.sys [325400 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R1 kneps; C:\Windows\system32\DRIVERS\kneps.sys [294680 2022-08-01] (Microsoft Windows Hardware Compatibility Publisher -> AO Kaspersky Lab)
R3 KslD; C:\Windows\System32\drivers\wd\KslD.sys [333192 2025-11-18] (Microsoft Windows -> Microsoft Corporation)
S0 MbamElam; C:\Windows\System32\DRIVERS\MbamElam.sys [22120 2025-11-24] (Microsoft Windows Early Launch Anti-malware Publisher -> Malwarebytes)
S3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [245336 2025-11-24] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R1 MSIO; C:\Windows\system32\drivers\MsIo64.sys [19000 2023-04-05] (Microsoft Windows Hardware Compatibility Publisher -> MICSYS Technology Co., LTd)
R3 rt25cx21; C:\Windows\System32\DriverStore\FileRepository\rt25cx21x64.inf_amd64_44eaf8324075f31c\rt25cx21x64.sys [779736 2024-08-20] (Realtek Semiconductor Corp. -> Realtek)
R3 SteamStreamingMicrophone; C:\Windows\system32\drivers\SteamStreamingMicrophone.sys [40736 2020-06-01] (Valve Corp. -> )
R3 SteamStreamingSpeakers; C:\Windows\system32\drivers\SteamStreamingSpeakers.sys [40736 2020-06-01] (Valve Corp. -> )
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [20904 2025-11-18] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [629168 2025-11-18] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [102792 2025-11-18] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2025-11-28 15:36 - 2025-11-28 15:36 - 000037674 _____ C:\Users\Jenda\Desktop\FRST.txt
2025-11-28 15:36 - 2025-11-28 15:36 - 000000000 ____D C:\FRST
2025-11-28 15:34 - 2025-11-28 15:35 - 002444288 _____ (Farbar) C:\Users\Jenda\Desktop\FRST64.exe
2025-11-28 14:47 - 2025-11-28 14:47 - 000677108 _____ C:\Windows\system32\perfh005.dat
2025-11-28 14:47 - 2025-11-28 14:47 - 000144960 _____ C:\Windows\system32\perfc005.dat
2025-11-28 12:16 - 2025-11-28 12:16 - 023092360 _____ C:\Users\Jenda\Desktop\rustdesk-host=rustdesk.viry.cz,key=k7s1kynfpmNTkCHBBPyQeZ3XyU6alXvpMZSw1BoTDnE=.exe
2025-11-28 12:09 - 2025-11-28 12:09 - 000000000 ____D C:\Users\Jenda\AppData\Local\PeerDistRepub
2025-11-28 10:40 - 2025-11-28 15:34 - 000000000 ____D C:\Users\Jenda\AppData\Local\Discord
2025-11-28 10:40 - 2025-11-28 10:40 - 000002247 _____ C:\Users\Jenda\Desktop\Discord.lnk
2025-11-27 20:21 - 2025-11-27 20:21 - 000670414 _____ C:\Users\Jenda\Desktop\zoek-results.txt
2025-11-27 19:18 - 2025-11-28 10:28 - 000232792 _____ (Copyright 2018.) C:\Windows\system32\Drivers\amsdk.sys
2025-11-27 19:18 - 2025-11-28 10:27 - 000000000 ____D C:\Users\Jenda\AppData\Local\AMSDK
2025-11-27 18:55 - 2014-02-13 23:59 - 000024064 _____ C:\Windows\zoek-delete.exe
2025-11-27 18:01 - 2025-11-27 18:50 - 000000000 ____D C:\zoek_backup
2025-11-27 17:59 - 2025-11-27 17:59 - 002038755 _____ C:\Users\Jenda\Desktop\zoek (1).exe
2025-11-27 17:54 - 2025-11-27 17:54 - 013922376 _____ (Zemana Ltd. ) C:\Users\Jenda\Desktop\Zemana.AntiMalware.Setup.exe
2025-11-27 11:08 - 2025-11-27 11:08 - 000001650 _____ C:\Users\Jenda\Desktop\text file.txt
2025-11-27 11:07 - 2025-11-27 11:07 - 000000865 _____ C:\Users\Public\Desktop\Adlice Protect.lnk
2025-11-26 22:41 - 2025-11-26 22:41 - 000001157 _____ C:\Users\Jenda\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Adlice Protect.lnk
2025-11-26 20:06 - 2025-11-28 15:35 - 000000000 ____D C:\Users\Jenda\AppData\Roaming\discord
2025-11-26 19:39 - 2025-11-27 11:07 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\RogueKiller
2025-11-26 19:39 - 2025-11-27 11:07 - 000000000 ____D C:\Program Files\RogueKiller
2025-11-26 19:39 - 2025-11-26 19:40 - 000000000 ____D C:\ProgramData\RogueKiller
2025-11-26 19:35 - 2025-11-26 19:35 - 052406512 _____ (Adlice Software ) C:\Users\Jenda\Desktop\RogueKiller_setup.exe
2025-11-26 17:39 - 2025-11-26 17:39 - 000000000 ____D C:\ProgramData\Sophos
2025-11-26 17:38 - 2025-11-26 17:38 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sophos
2025-11-26 17:38 - 2025-11-26 17:38 - 000000000 ____D C:\Program Files (x86)\Sophos
2025-11-26 17:21 - 2025-11-26 17:24 - 000000602 _____ C:\Users\Jenda\Desktop\JRT.txt
2025-11-26 17:05 - 2025-11-26 17:05 - 001790024 _____ (Malwarebytes) C:\Users\Jenda\Desktop\JRT.exe
2025-11-26 10:28 - 2025-11-26 17:02 - 000000000 ____D C:\Program Files\Mozilla Firefox
2025-11-25 21:12 - 2025-11-25 21:12 - 100727946 _____ C:\Users\Jenda\Desktop\Vysehrad-10.dil-Zapas.avi
2025-11-25 21:11 - 2025-11-25 21:11 - 258343020 _____ C:\Users\Jenda\Desktop\Vyšehrad 5. díl - Škodovka.avi
2025-11-25 21:11 - 2025-11-25 21:11 - 167165371 _____ C:\Users\Jenda\Desktop\Vyšehrad 9. díl - Zázemí.mp4
2025-11-25 21:11 - 2025-11-25 21:11 - 109870810 _____ C:\Users\Jenda\Desktop\Vysehrad-8.dil---Bedar.avi
2025-11-25 21:11 - 2025-11-25 21:11 - 102204980 _____ C:\Users\Jenda\Desktop\Vysehrad 7 díl Máma.avi
2025-11-25 21:11 - 2025-11-25 21:11 - 074931984 _____ C:\Users\Jenda\Desktop\Vysehrad 6 díl Charita.avi
2025-11-25 21:10 - 2025-11-25 21:10 - 141529336 _____ C:\Users\Jenda\Desktop\Vysehrad 2 díl Zapisne.avi
2025-11-25 21:10 - 2025-11-25 21:10 - 125316848 _____ C:\Users\Jenda\Desktop\Vysehrad 3 díl Roman.avi
2025-11-25 21:10 - 2025-11-25 21:10 - 098453106 _____ C:\Users\Jenda\Desktop\Vysehrad 4 díl Kabelka.avi
2025-11-25 21:09 - 2025-11-25 21:09 - 185896946 _____ C:\Users\Jenda\Desktop\Vysehrad 1 díl Rovina.avi
2025-11-25 20:57 - 2025-11-25 20:57 - 000001015 _____ C:\Users\Jenda\Desktop\odinstalace.lnk
2025-11-25 20:40 - 2025-11-25 20:41 - 000000000 ____D C:\Program Files\CrystalDiskInfo
2025-11-25 20:40 - 2025-11-25 20:40 - 000001796 _____ C:\Users\Jenda\Desktop\CrystalDiskInfo.lnk
2025-11-25 20:40 - 2025-11-25 20:40 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CrystalDiskInfo
2025-11-25 20:28 - 2025-11-25 20:28 - 002911928 _____ (Malwarebytes) C:\Users\Jenda\Desktop\MBSetup.exe
2025-11-25 18:26 - 2025-11-25 18:53 - 000000000 ____D C:\Users\Jenda\Desktop\uninstaleržka
2025-11-25 11:04 - 2025-11-28 12:22 - 000000000 ____D C:\Windows\CbsTemp
2025-11-24 21:48 - 2025-11-24 21:48 - 000001051 _____ C:\Users\Public\Desktop\Revo Uninstaller.lnk
2025-11-24 21:48 - 2025-11-24 21:48 - 000000000 ____D C:\Users\Jenda\AppData\Local\VS Revo Group
2025-11-24 21:48 - 2025-11-24 21:48 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Revo Uninstaller
2025-11-24 21:48 - 2025-11-24 21:48 - 000000000 ____D C:\Program Files\VS Revo Group
2025-11-24 20:48 - 2025-11-25 20:33 - 000000000 ____D C:\Users\Jenda\AppData\Local\Malwarebytes
2025-11-24 20:48 - 2025-11-24 21:11 - 000000000 ____D C:\ProgramData\Malwarebytes
2025-11-24 20:48 - 2025-11-24 21:11 - 000000000 ____D C:\Program Files\Malwarebytes
2025-11-24 20:48 - 2025-11-24 20:48 - 000002065 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes.lnk
2025-11-24 20:46 - 2025-11-24 20:46 - 000001422 _____ C:\Users\Jenda\Desktop\AdwCleaner[S00].txt
2025-11-24 20:44 - 2025-11-24 20:45 - 000000000 ____D C:\AdwCleaner
2025-11-24 20:37 - 2025-11-24 20:37 - 006024928 _____ (Crystal Dew World ) C:\Users\Jenda\Desktop\CrystalDiskInfo9_7_2.exe
2025-11-24 20:35 - 2025-11-24 20:35 - 009566696 _____ (Malwarebytes) C:\Users\Jenda\Desktop\AdwCleaner.exe
2025-11-24 20:34 - 2025-11-24 20:34 - 000448512 _____ (OldTimer Tools) C:\Users\Jenda\Desktop\wt_launcher_1.0.3.496-6y6fa81jq.exe
2025-11-24 20:33 - 2025-11-24 20:33 - 000050688 _____ (Atribune.org) C:\Users\Jenda\Desktop\ATF-Cleaner.exe
2025-11-24 18:28 - 2025-11-24 18:29 - 000388608 _____ (Trend Micro Inc.) C:\Users\Jenda\Desktop\HijackThis.exe
2025-11-24 18:08 - 2025-11-24 18:08 - 000002029 _____ C:\Users\Jenda\Desktop\WarThunder.lnk
2025-11-24 18:08 - 2025-11-24 18:08 - 000000000 ____D C:\Users\Jenda\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WarThunder
2025-11-24 16:59 - 2025-11-24 16:59 - 000031648 _____ C:\Users\Jenda\Desktop\Microsoft.Management.Deployment.winmd
2025-11-17 19:55 - 2025-11-28 15:34 - 000000000 ____D C:\Users\Jenda\AppData\Local\CrashDumps
2025-11-17 19:54 - 2025-11-17 19:54 - 000003834 _____ C:\Windows\system32\Tasks\NVIDIA App SelfUpdate_{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}
2025-11-17 19:54 - 2025-11-17 19:54 - 000001398 _____ C:\Users\Public\Desktop\NVIDIA App.lnk
2025-11-17 19:54 - 2025-11-17 19:54 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2025-11-17 19:54 - 2025-11-17 19:54 - 000000000 ____D C:\Program Files (x86)\NVIDIA Corporation
2025-11-17 19:54 - 2025-10-15 23:22 - 001310832 _____ (NVIDIA Corporation) C:\Windows\system32\nvspcap64.dll
2025-11-17 19:54 - 2025-10-15 23:22 - 001115248 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvspcap.dll
2025-11-17 19:54 - 2025-10-15 23:22 - 000288368 _____ C:\Windows\system32\FvSDK_x64.dll
2025-11-17 19:54 - 2025-10-15 23:22 - 000263280 _____ C:\Windows\SysWOW64\FvSDK_x86.dll
2025-11-17 19:54 - 2025-10-15 23:05 - 000180760 _____ (NVIDIA Corporation) C:\Windows\system32\nvaudcap64v.dll
2025-11-17 19:54 - 2025-10-15 23:05 - 000159768 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvaudcap32v.dll
2025-11-17 19:52 - 2025-11-17 19:54 - 000000000 ____D C:\Windows\system32\Drivers\NVIDIA Corporation
2025-11-17 19:51 - 2025-10-30 02:33 - 000126056 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvhda64v.sys
2025-11-17 19:51 - 2025-10-15 23:05 - 000059928 _____ (NVIDIA Corporation) C:\Windows\system32\Drivers\nvvad64v.sys
2025-11-17 19:49 - 2025-10-30 16:59 - 002402696 _____ C:\Windows\system32\vulkaninfo-1-999-0-0-0.exe
2025-11-17 19:49 - 2025-10-30 16:59 - 002402696 _____ C:\Windows\system32\vulkaninfo.exe
2025-11-17 19:49 - 2025-10-30 16:59 - 001908104 _____ C:\Windows\SysWOW64\vulkaninfo-1-999-0-0-0.exe
2025-11-17 19:49 - 2025-10-30 16:59 - 001908104 _____ C:\Windows\SysWOW64\vulkaninfo.exe
2025-11-17 19:49 - 2025-10-30 16:59 - 001581968 _____ C:\Windows\system32\vulkan-1-999-0-0-0.dll
2025-11-17 19:49 - 2025-10-30 16:59 - 001581968 _____ C:\Windows\system32\vulkan-1.dll
2025-11-17 19:49 - 2025-10-30 16:59 - 001395592 _____ C:\Windows\SysWOW64\vulkan-1-999-0-0-0.dll
2025-11-17 19:49 - 2025-10-30 16:59 - 001395592 _____ C:\Windows\SysWOW64\vulkan-1.dll
2025-11-17 19:49 - 2025-10-30 16:59 - 000478440 _____ (Khronos Group) C:\Windows\system32\OpenCL.dll
2025-11-17 19:49 - 2025-10-30 16:59 - 000375016 _____ (Khronos Group) C:\Windows\SysWOW64\OpenCL.dll
2025-11-17 19:49 - 2025-10-30 16:55 - 001322216 _____ (NVIDIA Corporation) C:\Windows\system32\nvml.dll
2025-11-17 19:49 - 2025-10-30 16:55 - 000675048 _____ (NVIDIA Corporation) C:\Windows\system32\nvofapi64.dll
2025-11-17 19:49 - 2025-10-30 16:55 - 000509160 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvofapi.dll
2025-11-17 19:49 - 2025-10-30 16:54 - 026354920 _____ C:\Windows\system32\nvidia-pcc.exe
2025-11-17 19:49 - 2025-10-30 16:54 - 002317544 _____ (NVIDIA Corporation) C:\Windows\system32\NvFBC64.dll
2025-11-17 19:49 - 2025-10-30 16:54 - 001715944 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvFBC.dll
2025-11-17 19:49 - 2025-10-30 16:54 - 001599720 _____ (NVIDIA Corporation) C:\Windows\system32\nvidia-smi.exe
2025-11-17 19:49 - 2025-10-30 16:54 - 001572584 _____ (NVIDIA Corporation) C:\Windows\system32\NvIFR64.dll
2025-11-17 19:49 - 2025-10-30 16:54 - 001223400 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\NvIFR.dll
2025-11-17 19:49 - 2025-10-30 16:54 - 001057512 _____ (NVIDIA Corporation) C:\Windows\system32\nvEncodeAPI64.dll
2025-11-17 19:49 - 2025-10-30 16:54 - 000813288 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvEncodeAPI.dll
2025-11-17 19:49 - 2025-10-30 16:53 - 024676584 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuvid.dll
2025-11-17 19:49 - 2025-10-30 16:53 - 021714152 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuvid.dll
2025-11-17 19:49 - 2025-10-30 16:53 - 007683304 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvcuda.dll
2025-11-17 19:49 - 2025-10-30 16:53 - 005918952 _____ (NVIDIA Corporation) C:\Windows\system32\nvcpl.dll
2025-11-17 19:49 - 2025-10-30 16:53 - 005469928 _____ (NVIDIA Corporation) C:\Windows\system32\nvcudadebugger.dll
2025-11-17 19:49 - 2025-10-30 16:53 - 004175080 _____ (NVIDIA Corporation) C:\Windows\system32\nvcuda.dll
2025-11-17 19:49 - 2025-10-30 16:53 - 000468712 _____ (NVIDIA Corporation) C:\Windows\system32\nvdebugdump.exe
2025-11-17 19:49 - 2025-10-30 16:52 - 005625560 _____ (NVIDIA Corporation) C:\Windows\system32\nvapi64.dll
2025-11-17 19:49 - 2025-10-30 16:52 - 004924160 _____ (NVIDIA Corporation) C:\Windows\SysWOW64\nvapi.dll
2025-11-17 19:49 - 2025-10-30 16:52 - 000853736 _____ (NVIDIA Corporation) C:\Windows\system32\MCU.exe
2025-11-17 19:49 - 2025-10-30 02:33 - 000148966 _____ C:\Windows\system32\nvinfo.pb
2025-11-17 19:48 - 2025-11-17 19:48 - 896544928 _____ (NVIDIA Corporation) C:\Users\Jenda\Desktop\581.80-desktop-win10-win11-64bit-international-dch-whql.exe
2025-11-17 14:00 - 2025-11-17 14:00 - 123573688 _____ (Discord Inc.) C:\Users\Jenda\Downloads\DiscordSetup.exe
2025-11-17 14:00 - 2025-11-17 14:00 - 123573688 _____ (Discord Inc.) C:\Users\Jenda\Downloads\DiscordSetup (1).exe
2025-11-17 13:53 - 2025-11-17 13:53 - 000001181 _____ C:\Users\Public\Desktop\LibreOffice 25.8.lnk
2025-11-17 13:53 - 2025-11-17 13:53 - 000000000 ____D C:\Users\Jenda\AppData\Roaming\LibreOffice
2025-11-17 13:53 - 2025-11-17 13:53 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LibreOffice
2025-11-17 13:52 - 2025-11-17 13:53 - 000000000 ____D C:\Program Files\LibreOffice
2025-11-17 13:25 - 2025-11-17 13:42 - 000000000 ____D C:\ProgramData\Piriform
2025-11-16 10:59 - 2025-11-16 11:02 - 000000000 ____D C:\Windows\system32\Tasks\GoogleUserPEH
2025-11-14 13:38 - 2025-11-14 13:38 - 000000000 ___SD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OpenOffice 4.1.16
2025-11-13 15:33 - 2025-11-13 15:33 - 000000000 ____D C:\ProgramData\SupremoRemoteDesktop
2025-10-29 12:12 - 2025-10-29 12:12 - 000079894 _____ C:\Windows\SysWOW64\ctac.json
2025-10-29 12:12 - 2025-10-29 12:12 - 000079894 _____ C:\Windows\system32\ctac.json
2025-10-29 12:12 - 2025-10-29 12:12 - 000035082 _____ C:\Windows\SysWOW64\IntegratedServicesRegionPolicySet.json
2025-10-29 12:12 - 2025-10-29 12:12 - 000035082 _____ C:\Windows\system32\IntegratedServicesRegionPolicySet.json

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2025-11-28 15:34 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\SystemTemp
2025-11-28 15:34 - 2024-04-01 08:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-11-28 15:33 - 2024-11-24 11:06 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2025-11-28 15:33 - 2024-11-24 11:05 - 000096506 _____ C:\Windows\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2025-11-28 15:33 - 2023-09-02 16:46 - 000000000 ____D C:\ProgramData\NVIDIA
2025-11-28 15:33 - 2023-01-08 00:28 - 000012288 ___SH C:\DumpStack.log.tmp
2025-11-28 14:55 - 2024-11-24 11:03 - 000000000 ____D C:\Users\Jenda
2025-11-28 14:55 - 2024-04-01 08:21 - 000524288 _____ C:\Windows\system32\config\BBI
2025-11-28 14:47 - 2024-11-24 11:09 - 001603798 _____ C:\Windows\system32\PerfStringBackup.INI
2025-11-28 14:47 - 2024-04-01 08:24 - 000000000 ____D C:\Windows\INF
2025-11-28 14:43 - 2023-01-07 18:07 - 000000000 ____D C:\ProgramData\Mozilla-1de4eec8-1241-4177-a864-e594e8d1fb38
2025-11-28 12:08 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\AppReadiness
2025-11-28 10:40 - 2025-05-07 18:05 - 000000000 ____D C:\Users\Jenda\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2025-11-28 10:40 - 2025-05-07 18:05 - 000000000 ____D C:\Users\Jenda\AppData\Local\SquirrelTemp
2025-11-27 21:01 - 2023-01-08 00:30 - 000000000 ____D C:\ProgramData\Packages
2025-11-27 21:01 - 2023-01-07 17:39 - 000000000 ____D C:\Users\Jenda\AppData\Local\Packages
2025-11-27 20:55 - 2023-01-07 17:58 - 000000000 ____D C:\ProgramData\Ka
jonek288
nováček
Příspěvky: 23
Registrován: 24 lis 2025 18:27

Re: Prosím o kontrolu logu

Příspěvek od jonek288 »

2025-11-27 20:55 - 2023-01-07 17:58 - 000000000 ____D C:\ProgramData\Kaspersky Lab
2025-11-27 20:55 - 2023-01-07 17:58 - 000000000 ____D C:\Program Files (x86)\Kaspersky Lab
2025-11-27 20:33 - 2023-01-07 20:53 - 000000000 ____D C:\Users\Jenda\AppData\Local\WarThunder
2025-11-27 18:58 - 2023-01-07 17:39 - 000000000 ____D C:\Users\Jenda\AppData\Local\D3DSCache
2025-11-27 11:17 - 2024-04-01 08:26 - 000000000 ___HD C:\Program Files\WindowsApps
2025-11-26 17:02 - 2023-01-07 18:07 - 000000000 ____D C:\Program Files (x86)\Mozilla Maintenance Service
2025-11-26 12:25 - 2024-11-24 11:06 - 000000000 ____D C:\Windows\system32\Tasks\Mozilla
2025-11-26 12:25 - 2023-01-07 18:07 - 000001079 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Firefox.lnk
2025-11-25 21:10 - 2023-01-07 18:16 - 000000000 ____D C:\Users\Jenda\AppData\Roaming\vlc
2025-11-24 20:48 - 2024-04-01 08:26 - 000000000 ___HD C:\Windows\ELAMBKUP
2025-11-24 18:46 - 2023-05-07 07:31 - 000013023 _____ C:\Users\Jenda\Desktop\Hesla.odt
2025-11-24 18:30 - 2023-01-07 17:55 - 000000000 ____D C:\Users\Jenda\AppData\Local\VirtualStore
2025-11-24 18:19 - 2025-10-01 17:28 - 000000000 ____D C:\ProgramData\Whesvc
2025-11-23 09:43 - 2024-02-13 20:10 - 000002207 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2025-11-23 09:43 - 2024-02-13 20:10 - 000002166 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2025-11-22 22:16 - 2023-01-08 00:28 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-11-22 22:10 - 2024-11-24 11:06 - 000003638 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-11-22 22:10 - 2024-11-24 11:06 - 000003512 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-11-18 21:23 - 2023-09-02 16:47 - 000000000 ____D C:\Users\Jenda\AppData\Local\NVIDIA
2025-11-18 18:51 - 2023-01-08 00:28 - 000000000 ____D C:\Windows\system32\Drivers\wd
2025-11-17 19:54 - 2024-08-20 18:44 - 000000000 ____D C:\Users\Jenda\AppData\LocalLow\NVIDIA
2025-11-17 19:54 - 2023-09-02 16:46 - 000000000 ____D C:\ProgramData\NVIDIA Corporation
2025-11-17 19:54 - 2023-09-02 16:46 - 000000000 ____D C:\Program Files\NVIDIA Corporation
2025-11-17 19:54 - 2023-01-08 17:27 - 000000000 ____D C:\Users\Jenda\AppData\Local\NVIDIA Corporation
2025-11-17 19:52 - 2024-04-01 08:26 - 000000000 ___SD C:\Windows\system32\lxss
2025-11-17 14:06 - 2024-11-24 11:02 - 000454584 _____ C:\Windows\system32\FNTCACHE.DAT
2025-11-17 13:28 - 2024-11-24 09:33 - 000000000 ___DC C:\Windows\Panther
2025-11-17 13:22 - 2024-08-20 18:39 - 000000000 ____D C:\Users\Jenda\AppData\Roaming\IObit
2025-11-17 13:22 - 2024-08-20 18:39 - 000000000 ____D C:\Users\Jenda\AppData\LocalLow\IObit
2025-11-17 13:22 - 2024-08-20 18:39 - 000000000 ____D C:\ProgramData\IObit
2025-11-17 13:20 - 2025-02-08 09:39 - 000000000 ____D C:\Users\Jenda\AppData\Local\0install.net
2025-11-15 10:25 - 2024-04-01 17:30 - 000000000 ____D C:\Windows\system32\Microsoft-Edge-WebView
2025-11-15 10:25 - 2024-04-01 08:26 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2025-11-15 10:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\SysWOW64\setup
2025-11-15 10:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\SystemResources
2025-11-15 10:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\setup
2025-11-15 10:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\bcastdvr
2025-11-15 10:10 - 2023-01-07 23:19 - 000000000 ____D C:\Windows\system32\MRT
2025-11-15 10:08 - 2023-01-07 23:19 - 215625816 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe
2025-11-14 13:38 - 2023-05-06 09:00 - 000000000 ____D C:\Program Files (x86)\OpenOffice 4
2025-11-12 16:56 - 2024-11-24 11:05 - 003277824 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2025-11-01 14:34 - 2024-11-24 11:02 - 000000000 ____D C:\Windows\system32\SleepStudy
2025-10-29 16:25 - 2025-06-27 16:15 - 000000000 ____D C:\Windows\system32\ruxim
2025-10-29 16:25 - 2024-04-01 17:28 - 000000000 ____D C:\Windows\SysWOW64\cs
2025-10-29 16:25 - 2024-04-01 17:28 - 000000000 ____D C:\Windows\system32\cs
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\UUS
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\SysWOW64\InstallShield
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\SysWOW64\Dism
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\WinMetadata
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\WinBioPlugIns
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\vi-VN
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ur-PK
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ug-CN
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\tt-RU
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\te-IN
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ta-IN
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\sq-AL
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ShellExperiences
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\quz-PE
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\qps-plocm
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\qps-ploc
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\pa-IN
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\or-IN
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\oobe
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\nn-NO
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ne-NP
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\mt-MT
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\mr-IN
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ml-IN
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\mk-MK
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\mi-NZ
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\migwiz
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\lv-LV
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\lt-LT
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\lo-LA
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\lb-LU
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\kok-IN
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\kn-IN
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\km-KH
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\kk-KZ
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ka-GE
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\is-IS
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\id-ID
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\hy-AM
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\hi-IN
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\gu-IN
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\gl-ES
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\gd-GB
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ga-IE
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\fil-PH
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\fa-IR
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\eu-ES
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\et-EE
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\es-MX
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\Dism
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\DDFs
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\cy-GB
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\ca-ES
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\bn-IN
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\be-BY
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\as-IN
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\appraiser
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\am-ET
2025-10-29 16:25 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\system32\af-ZA
2025-10-29 16:24 - 2024-04-01 17:31 - 000000000 ____D C:\Windows\InboxApps
2025-10-29 16:24 - 2024-04-01 17:31 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2025-10-29 16:24 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\ShellExperiences
2025-10-29 16:24 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\ShellComponents
2025-10-29 16:24 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\Provisioning
2025-10-29 16:24 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\PolicyDefinitions
2025-10-29 16:24 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\DiagTrack
2025-10-29 16:24 - 2024-04-01 08:26 - 000000000 ____D C:\Windows\BrowserCore
2025-10-29 16:24 - 2024-04-01 08:26 - 000000000 ____D C:\Program Files\Common Files\System

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================
jonek288
nováček
Příspěvky: 23
Registrován: 24 lis 2025 18:27

Re: Prosím o kontrolu logu

Příspěvek od jonek288 »

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 20-11-2025
Ran by Jenda (28-11-2025 15:37:58)
Running from C:\Users\Jenda\Desktop
Microsoft Windows 11 Pro Version 25H2 26200.7171 (X64) (2024-11-24 10:06:18)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================

(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-1097603303-2479041749-3734249552-500 - Administrator - Disabled)
DefaultAccount (S-1-5-21-1097603303-2479041749-3734249552-503 - Limited - Disabled)
Guest (S-1-5-21-1097603303-2479041749-3734249552-501 - Limited - Disabled)
Jenda (S-1-5-21-1097603303-2479041749-3734249552-1001 - Administrator - Enabled) => C:\Users\Jenda
WDAGUtilityAccount (S-1-5-21-1097603303-2479041749-3734249552-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
AV: Kaspersky Internet Security (Disabled - Up to date) {4F76F112-43EB-40E8-11D8-F7BD1853EA23}
FW: Kaspersky Internet Security (Disabled) {774D7037-0984-41B0-3A87-5E88E680AD58}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

Adlice Protect version 16.5.3.0 (HKLM\...\8B3D7924-ED89-486B-8322-E8594065D5CB_is1) (Version: 16.5.3.0 - Adlice Software)
AMD GPIO2 Driver (HKLM-x32\...\{E9DD399F-21A3-479E-A7DF-D6CF4B2ADBF3}) (Version: 2.2.0.130 - Advanced Micro Devices, Inc.) Hidden
AMD Chipset Software (HKLM-x32\...\AMD_Chipset_IODrivers) (Version: 3.10.22.706 - Advanced Micro Devices, Inc.)
AMD PSP Driver (HKLM-x32\...\{988F14B8-79A8-475D-BAC7-83F96AD3D821}) (Version: 5.17.0.0 - Advanced Micro Devices, Inc.) Hidden
AMD Ryzen Balanced Driver (HKLM-x32\...\{A171D320-C42C-4F3B-A2D8-C6A09F6788CC}) (Version: 7.0.4.4 - Advanced Micro Devices, Inc.) Hidden
AMD SBxxx SMBus Driver (HKLM-x32\...\{AAE0E27D-C88A-49BA-8715-77ADCD4286A3}) (Version: 5.12.0.38 - Advanced Micro Devices, Inc.) Hidden
AMD Software (HKLM\...\AMD Catalyst Install Manager) (Version: 21.30.14 - Advanced Micro Devices, Inc.)
AMD_Chipset_Drivers (HKLM-x32\...\{cf77cf6b-71ff-4a71-802d-43adb9b271b7}) (Version: 3.10.22.706 - Advanced Micro Devices, Inc.) Hidden
Any Video Converter 9.1.2 (HKLM-x32\...\Any Video Converter) (Version: 9.1.2 - Anvsoft)
Canon MG5100 series MP Drivers (HKLM\...\{1199FAD5-9546-44f3-81CF-FFDB8040B7BF}_Canon_MG5100_series) (Version: - Canon Inc.)
CrystalDiskInfo 9.7.2 (HKLM\...\CrystalDiskInfo_is1) (Version: 9.7.2 - Crystal Dew World)
Discord (HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\Discord) (Version: 1.0.9216 - Discord Inc.)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 142.0.7444.176 - Google LLC)
Google Update Helper (HKLM-x32\...\{60EC980A-BDA2-4CB6-A427-B07A5498B4CA}) (Version: 1.3.34.13 - Google LLC) Hidden
Kaspersky Internet Security (HKLM-x32\...\{4FC79BE9-AD63-46C0-9626-E4F6BCE6A976}) (Version: 21.3.10.391 - Kaspersky) Hidden
Kaspersky Internet Security (HKLM-x32\...\InstallWIX_{4FC79BE9-AD63-46C0-9626-E4F6BCE6A976}) (Version: 21.3.10.391 - Kaspersky)
Kaspersky Password Manager (HKLM-x32\...\{BE877CFF-5461-441D-8A15-299DA7509968}) (Version: 10.2.0.341 - Kaspersky Lab) Hidden
Kaspersky Password Manager (HKLM-x32\...\InstallWIX_{BE877CFF-5461-441D-8A15-299DA7509968}) (Version: 10.2.0.341 - Kaspersky Lab)
LibreOffice 25.8.3.2 (HKLM\...\{5370F9CB-D8E4-452D-A5DD-90EB7A6E5E1F}) (Version: 25.8.3.2 - The Document Foundation)
Microsoft .NET Host - 5.0.17 (x86) (HKLM-x32\...\{54DE7EA9-E391-4BD2-A373-3A72A18EBDB5}) (Version: 40.68.31213 - Microsoft Corporation) Hidden
Microsoft .NET Host - 6.0.10 (x86) (HKLM-x32\...\{3B28977C-9163-48A5-A08C-C01327E18AE2}) (Version: 48.43.48869 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 5.0.17 (x86) (HKLM-x32\...\{AF01038B-6523-4EA7-9D9E-4F1E2927D88B}) (Version: 40.68.31213 - Microsoft Corporation) Hidden
Microsoft .NET Host FX Resolver - 6.0.10 (x86) (HKLM-x32\...\{EBD44C5E-F1AF-4955-AEDF-F15D06384A9C}) (Version: 48.43.48869 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 5.0.17 (x86) (HKLM-x32\...\{59650A2A-3839-46EC-9D9C-6B3B1C743C55}) (Version: 40.68.31213 - Microsoft Corporation) Hidden
Microsoft .NET Runtime - 6.0.10 (x86) (HKLM-x32\...\{98CA5A6B-4ECC-4E6D-BF18-6B20CBB6E5F4}) (Version: 48.43.48869 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 142.0.3595.94 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 142.0.3595.94 - Microsoft Corporation) Hidden
Microsoft Teams Meeting Add-in for Microsoft Office (HKLM\...\{A7AB73A3-CB10-4AA5-9D38-6AEFFBDE4C91}) (Version: 1.25.28902 - Microsoft)
Microsoft Update Health Tools (HKLM\...\{C6FD611E-7EFE-488C-A0E0-974C09EF6473}) (Version: 5.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x64 9.0.30729.6161 (HKLM\...\{5FCE6D76-F5DC-37AB-B2B8-22AB8CEDB1D4}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161 (HKLM-x32\...\{9BE518E6-ECC6-35A9-88E4-87755C07200F}) (Version: 9.0.30729.6161 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x64) - 14.44.35211 (HKLM-x32\...\{d8bbe9f9-7c5b-42c6-b715-9ee898a2e515}) (Version: 14.44.35211.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2022 Redistributable (x86) - 14.36.32532 (HKLM-x32\...\{410c0ee1-00bb-41b6-9772-e12c2828b02f}) (Version: 14.36.32532.0 - Microsoft Corporation)
Microsoft Visual C++ 2022 X64 Additional Runtime - 14.44.35211 (HKLM\...\{86AB2CC9-08BD-4643-B0F9-F82D006D72FF}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X64 Minimum Runtime - 14.44.35211 (HKLM\...\{43B0D101-A022-48F4-9D04-BA404CEB1D53}) (Version: 14.44.35211 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Additional Runtime - 14.36.32532 (HKLM-x32\...\{C2C59CAB-8766-4ABD-A8EF-1151A36C41E5}) (Version: 14.36.32532 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2022 X86 Minimum Runtime - 14.36.32532 (HKLM-x32\...\{73F77E4E-5A17-46E5-A5FC-8A061047725F}) (Version: 14.36.32532 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 5.0.17 (x86) (HKLM-x32\...\{098c6ff7-1af1-4c4a-b86f-c60608c98e31}) (Version: 5.0.17.31219 - Microsoft Corporation)
Microsoft Windows Desktop Runtime - 5.0.17 (x86) (HKLM-x32\...\{0D02D706-44F2-4957-A448-E7259A0B56B9}) (Version: 40.68.31219 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.10 (x86) (HKLM-x32\...\{0F3E4057-E2BB-4114-A646-F143DB5CE4C9}) (Version: 48.43.48870 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 6.0.10 (x86) (HKLM-x32\...\{9dd24b73-88e0-4f0f-882a-500e00d2bdef}) (Version: 6.0.10.31726 - Microsoft Corporation)
Mozilla Firefox (x64 cs) (HKLM\...\Mozilla Firefox 145.0.2 (x64 cs)) (Version: 145.0.2 - Mozilla)
Mozilla Maintenance Service (HKLM\...\MozillaMaintenanceService) (Version: 129.0.2 - Mozilla)
NVIDIA App 11.0.5.420 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.NvApp) (Version: 11.0.5.420 - NVIDIA Corporation)
NVIDIA FrameView SDK 1.5.11504.36206172 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.5.11504.36206172 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.4.5.0 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.4.5.0 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 581.80 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 581.80 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.23.1019 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.23.1019 - NVIDIA Corporation)
OpenOffice 4.1.16 (HKLM-x32\...\{99DC5A6B-0EF2-4D81-9EAC-35AC6F1E8DB2}) (Version: 4.116.9816 - Apache Software Foundation)
Promontory_GPIO Driver (HKLM-x32\...\{B5512BCC-F4CD-4159-86A4-B2AD7D38FFA9}) (Version: 2.0.1.0 - Advanced Micro Devices, Inc.) Hidden
Realtek Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.9235.1 - Realtek Semiconductor Corp.)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 11.7.0318.2022 - Realtek)
Revo Uninstaller 2.6.2 (HKLM\...\{A28DBDA2-3CC7-4ADC-8BFE-66D7743C6C97}_is1) (Version: 2.6.2 - VS Revo Group, Ltd.)
Sophos Virus Removal Tool (HKLM-x32\...\{B829E117-D072-41EA-9606-9826A38D34C1}) (Version: 2.9.0 - Sophos Limited)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.21 - VideoLAN)
War Thunder Launcher 1.0.3.496 (HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\{ed8deea4-29fa-3932-9612-e2122d8a62d9}}_is1) (Version: - Gaijin Network)
Wargaming.net Game Center (HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\Wargaming.net Game Center) (Version: 25.6.0.709 - Wargaming.net)
WinRAR (HKLM-x32\...\WinRAR) (Version: v.6.21 64bit Final CZ - 20.02.2023 - Libbi)
World of Tanks (HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\{1EAC1D02-C6AC-4FA6-9A44-96258C37C812eu}_is1) (Version: - Wargaming.net)
World of Tanks EU (HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\2314027414) (Version: - Wargaming.net)
World_of_Warships (HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\1527964767) (Version: - Wargaming.net)

Packages:
=========
@{MicrosoftWindows.55182690.Taskbar_1000.26100.3624.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-05-31] ()
@{MicrosoftWindows.55182690.Taskbar_1000.26100.3775.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-05-31] ()
@{MicrosoftWindows.55182690.Taskbar_1000.26100.3912.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.55182690.Taskbar/Resources/ProductPkgDisplayName} -> C:\WINDOWS\SystemApps\SxS\MicrosoftWindows.55182690.Taskbar_cw5n1h2txyewy [2025-05-31] ()
@{MicrosoftWindows.58683691.InpApp_1000.26100.6725.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.58683691.InpApp/Resources/ProductPkgDisplayName} -> C:\Windows\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-11-15] (Microsoft Windows)
@{MicrosoftWindows.58683691.InpApp_1000.26100.6899.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.58683691.InpApp/Resources/ProductPkgDisplayName} -> C:\Windows\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-11-15] (Microsoft Windows)
@{MicrosoftWindows.58683691.InpApp_1000.26100.6901.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.58683691.InpApp/Resources/ProductPkgDisplayName} -> C:\Windows\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-11-15] (Microsoft Windows)
@{MicrosoftWindows.58683691.InpApp_1000.26100.7019.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.58683691.InpApp/Resources/ProductPkgDisplayName} -> C:\Windows\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-11-15] (Microsoft Windows)
@{MicrosoftWindows.59379618.InpApp_1000.26100.7019.0_x64__cw5n1h2txyewy?ms-resource://MicrosoftWindows.59379618.InpApp/Resources/ProductPkgDisplayName} -> C:\Windows\SystemApps\SxS\MicrosoftWindows.59379618.InpApp_cw5n1h2txyewy [2025-11-15] (Microsoft Windows)
AMD Radeon Software -> C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.21.30024.0_x64__0a9344xs7nr4m [2024-05-23] (Advanced Micro Devices Inc.) [Startup Task]
Balíček prostředí funkcí systému Windows -> C:\Windows\SystemApps\SxS\MicrosoftWindows.58683691.InpApp_cw5n1h2txyewy [2025-11-15] (Microsoft Windows)
Balíček prostředí funkcí systému Windows -> C:\Windows\SystemApps\SxS\MicrosoftWindows.59379618.InpApp_cw5n1h2txyewy [2025-11-15] (Microsoft Windows)
Instagram -> C:\Program Files\WindowsApps\Facebook.InstagramBeta_42.0.23.0_neutral__8xx8rvfyw5nnt [2025-07-28] (Instagram)
Malwarebytes Anti-Malware -> C:\Program Files\Malwarebytes\Anti-Malware [2025-11-24] ()
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.969.0_x64__56jybvy8sckqj [2025-11-17] (NVIDIA Corp.)
Realtek Audio Control -> C:\Program Files\WindowsApps\RealtekSemiconductorCorp.RealtekAudioControl_1.28.255.0_x64__dt26b99r8h8gj [2023-06-30] (Realtek Semiconductor Corp)
WhatsApp -> C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2546.3.0_x64__cv1g1gvanyjgm [2025-11-22] (WhatsApp Inc.) [Startup Task]
WinAppRuntime.Main.1.5 -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Main.1.5_5001.373.1736.0_x64__8wekyb3d8bbwe [2025-01-22] (Microsoft Corp.)
WinAppRuntime.Singleton -> C:\Program Files\WindowsApps\MicrosoftCorporationII.WinAppRuntime.Singleton_8000.675.1142.0_x64__8wekyb3d8bbwe [2025-11-19] (Microsoft Corp.)
WinRAR -> C:\Program Files\WinRAR [2023-02-24] (win.rar GmbH)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-1097603303-2479041749-3734249552-1001_Classes\CLSID\{DFF20505-B08F-455B-AD70-4FBD055088E0}\localserver32 -> C:\Program Files\Google\Chrome\Application\PlatformExperienceHelper\platform_experience_helper.exe (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-1097603303-2479041749-3734249552-1001_Classes\CLSID\{EABAE40C-B27C-455A-B672-F234DD780948}\InprocServer32 -> C:\Users\Jenda\AppData\Local\Microsoft\TeamsMeetingAdd-in\1.25.28902\x64\Microsoft.Teams.MeetingAddin.DLL (Microsoft Corporation -> Microsoft Corporation)
ShellIconOverlayIdentifiers: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive1] -> {BBACC218-34EA-4666-9D7A-C78F2274A524} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive2] -> {5AB7172C-9C11-405C-8DD5-AF20F3606282} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive3] -> {A78ED123-AB77-406B-9962-2A5D9D2F7F30} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive4] -> {F241C880-6982-4CE5-8CF7-7085BA96DA5A} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive5] -> {A0396A93-DC06-4AEF-BEE9-95FFCCAEF20E} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive6] -> {9AA2F32D-362A-42D9-9328-24A483E2CCC3} => -> No File
ShellIconOverlayIdentifiers-x32: [ OneDrive7] -> {C5FF006E-2AE9-408C-B85B-2DFDD5449D9C} => -> No File
ContextMenuHandlers1: [Kaspersky Anti-Virus 21.3] -> {37303E08-14C9-4FC3-B1D9-7993682A4691} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\shellex.dll [2023-01-07] (AO Kaspersky Lab -> AO Kaspersky Lab)
ContextMenuHandlers2: [Kaspersky Anti-Virus 21.3] -> {37303E08-14C9-4FC3-B1D9-7993682A4691} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\shellex.dll [2023-01-07] (AO Kaspersky Lab -> AO Kaspersky Lab)
ContextMenuHandlers4: [Kaspersky Anti-Virus 21.3] -> {37303E08-14C9-4FC3-B1D9-7993682A4691} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\shellex.dll [2023-01-07] (AO Kaspersky Lab -> AO Kaspersky Lab)
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\Windows\System32\DriverStore\FileRepository\nvmdi.inf_amd64_c2d1126d336032b3\nvshext.dll [2025-10-30] (NVIDIA Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [Kaspersky Anti-Virus 21.3] -> {37303E08-14C9-4FC3-B1D9-7993682A4691} => C:\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\shellex.dll [2023-01-07] (AO Kaspersky Lab -> AO Kaspersky Lab)

==================== Codecs (Whitelisted) ====================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Drivers32: [MidisrvTransferComplete] => 0

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2024-04-24 10:00 - 2024-04-24 10:00 - 000126976 ____N (Microsoft Corporation) [File not signed] C:\Windows\SYSTEM32\UpdatePolicyScenarioReliabilityAggregator.dll
2025-11-17 19:54 - 2025-11-17 19:54 - 000000000 ___JL (NVIDIA Corporation) [symlink -> C:\Program Files\NVIDIA Corporation\NVIDIA App\MessageBus\NvMessageBusBroadcast.dll] C:\Program Files\NVIDIA Corporation\NvContainer\plugins\LocalSystem\NvMessageBusBroadcast.dll

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\amsdk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MBAMService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\amsdk.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\MBAMService => ""="Service"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) =============


==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2025-11-27 18:03 - 2025-11-27 18:03 - 000000841 _____ C:\Windows\system32\drivers\etc\hosts
127.0.0.1 localhost

==================== Network ===========================

(Currently there is no automatic fix for this section.)

DNS Servers: 192.168.100.1
Windows Firewall is enabled.

Network Binding:
=============
Ethernet: Realtek Gaming 2.5GbE Family Controller -> rt25cx21x64.sys

KL_KLIM6: Kaspersky Anti-Virus NDIS 6 Filter

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\Control Panel\Desktop\\Wallpaper -> C:\Users\Jenda\Desktop\207376392.jpg
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows Defender\Features => (TamperProtection: 1) (TamperProtectionSource: 5)
HKLM\SOFTWARE\Microsoft\Windows Defender\Real-Time Protection => (DpaDisabled: 0)


==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run32: => "Discord"
HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_9F1EE09F89B92BBCE7BC4185DDDFBD40"
HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\StartupApproved\Run: => "Gaijin.Net Updater"
HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\StartupApproved\Run: => "Wargaming.net Game Center"
HKU\S-1-5-21-1097603303-2479041749-3734249552-1001\...\StartupApproved\Run: => "Steam"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{A4C4C7C2-9CB0-4EA9-8E25-3A360C359408}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\launcher.exe => No File
FirewallRules: [{BE9B6128-45B4-48EB-8011-7BA1A986B4E5}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\launcher.exe => No File
FirewallRules: [{13442F02-DF55-414E-879F-4FD9AEA35CCD}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\eac_wt_mlauncher.exe => No File
FirewallRules: [{F876D0F3-5B2E-4A7D-A58F-7A1115893398}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\War Thunder\eac_wt_mlauncher.exe => No File
FirewallRules: [{FE7E6552-919C-4D25-93FE-F0C52BCC83BC}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{F348FEAA-848F-4AC6-A7BA-C50EAC6497BB}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe => No File
FirewallRules: [{81B04DF4-88BA-4C28-A894-9A373C4E37F2}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe => No File
FirewallRules: [{D3EA0F52-6C80-4D7E-8450-9C05D019EB5C}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe => No File
FirewallRules: [{2D0B1BFC-9E48-438F-9C9A-D63F3CE36CF6}] => (Allow) C:\Games\World_of_Tanks\WoTLauncher.exe (Wargaming.net LLP -> Wargaming.net) [File not signed]
FirewallRules: [{34DD7101-0DC7-451A-B5B7-51FBAF71E33C}] => (Allow) C:\Games\World_of_Tanks\WoTLauncher.exe (Wargaming.net LLP -> Wargaming.net) [File not signed]
FirewallRules: [{37CF6E26-96B7-4113-B743-F2B3EA85E35D}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{2A42BD35-88AA-4836-9584-C52D4F599C97}] => (Allow) C:\Program Files\Mozilla Firefox\firefox.exe (Mozilla Corporation -> Mozilla Corporation)
FirewallRules: [{1ED7EFA8-FB17-4E4C-B2A8-FA9A08EC2C80}] => (Allow) C:\ProgramData\Kaspersky Lab\KSDE5.23\Data\webview2\Win10\msedgewebview2.exe => No File
FirewallRules: [{E5B6BF00-2907-4CC8-A277-DF0A48C5F6F3}] => (Allow) C:\Program Files\WindowsApps\MSTeams_25306.804.4102.7193_x64__8wekyb3d8bbwe\ms-teams_modulehost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{22B399C2-9B8A-4982-B3A6-C9C6D4800B73}] => (Allow) C:\Program Files\WindowsApps\MSTeams_25306.804.4102.7193_x64__8wekyb3d8bbwe\ms-teams_modulehost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{628A460E-284A-4C7C-9E1D-089CB7157044}] => (Allow) C:\Program Files\WindowsApps\MSTeams_25306.804.4102.7193_x64__8wekyb3d8bbwe\ms-teams_modulehost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{1DB8C19A-42C9-4FBE-9A4D-F9162DEBE390}] => (Allow) C:\Program Files\WindowsApps\MSTeams_25306.804.4102.7193_x64__8wekyb3d8bbwe\ms-teams_modulehost.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{37FE619A-C314-4D88-A1F5-37DFD1D47847}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)

==================== Restore Points =========================

25-11-2025 18:50:41 Revo Uninstaller Pro's restore point - Malwarebytes version 5.4.4.225
25-11-2025 19:00:46 Revo Uninstaller Pro's restore point - Malwarebytes version 5.4.4.225
25-11-2025 19:05:00 Revo Uninstaller Pro's restore point - Malwarebytes version 5.4.4.225
26-11-2025 17:20:00 JRT Pre-Junkware Removal
26-11-2025 17:23:22 JRT Pre-Junkware Removal
26-11-2025 17:38:29 Installed Sophos Virus Removal Tool.
27-11-2025 18:03:08 zoek.exe restore point

==================== Faulty Device Manager Devices ============

==================== Event log errors: ========================

Application errors:
==================
Error: (11/28/2025 03:34:07 PM) (Source: Application Error) (EventID: 1000) (User: BOBIK)
Description: Název chybující aplikace: launcherrsxruntime.exe, verze: 1.0.0.1, časové razítko: 0x61c9822a
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x0000000000000000
ID chybujícího procesu: 0x4278
Čas spuštění chybující aplikace: 0x1dc60740d4c0b3b
Cesta k chybující aplikaci: C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.21.30024.0_x64__0a9344xs7nr4m\radeonsoftware\launcherrsxruntime.exe
Cesta k chybujícímu modulu: unknown
ID sestavy: c955960f-15ca-4822-935c-f262ac61efaf
Celý název chybujícího balíčku: AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.21.30024.0_x64__0a9344xs7nr4m
ID chybující aplikace relativní vzhledem k balíčku: AMDRadeonsoftwareUWP

Error: (11/28/2025 03:33:52 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Inicializace registrace certifikátu SCEP pro WORKGROUP\BOBIK$ přes https://AMD-KeyId-52fb59e29aa83a962fb9e ... s/Aik/scep se nepovedla:

GetCACaps

Metoda: GET(172ms)
Fáze: GetCACaps
Spojení se serverem bylo nenormálně ukončeno. 0x80072efe (WinHttp: 12030 ERROR_WINHTTP_CONNECTION_ERROR)

Error: (11/28/2025 03:33:52 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Inicializace registrace certifikátu SCEP pro Místní systém přes https://AMD-KeyId-52fb59e29aa83a962fb9e ... s/Aik/scep se nepovedla:

GetCACaps

Metoda: GET(125ms)
Fáze: GetCACaps
Spojení se serverem bylo nenormálně ukončeno. 0x80072efe (WinHttp: 12030 ERROR_WINHTTP_CONNECTION_ERROR)

Error: (11/28/2025 02:55:46 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1512) (User: NT AUTHORITY)
Description: Systém Windows nemůže uvolnit soubor registru. Nebyla uvolněna paměť používaná registrem. Tento problém je často způsoben tím, že jsou služby spuštěny pomocí uživatelského účtu. Zkuste služby konfigurovat pro spuštění pomocí účtu místní nebo síťové služby.

PODROBNOSTI – Přístup byl odepřen.

Error: (11/28/2025 02:55:46 PM) (Source: Microsoft-Windows-User Profiles Service) (EventID: 1512) (User: NT AUTHORITY)
Description: Systém Windows nemůže uvolnit soubor registru. Nebyla uvolněna paměť používaná registrem. Tento problém je často způsoben tím, že jsou služby spuštěny pomocí uživatelského účtu. Zkuste služby konfigurovat pro spuštění pomocí účtu místní nebo síťové služby.

PODROBNOSTI – Přístup byl odepřen.

Error: (11/28/2025 02:43:30 PM) (Source: Application Error) (EventID: 1000) (User: BOBIK)
Description: Název chybující aplikace: launcherrsxruntime.exe, verze: 1.0.0.1, časové razítko: 0x61c9822a
Název chybujícího modulu: unknown, verze: 0.0.0.0, časové razítko: 0x00000000
Kód výjimky: 0xc0000005
Posun chyby: 0x0000000000000000
ID chybujícího procesu: 0x3fd4
Čas spuštění chybující aplikace: 0x1dc606cfb034b10
Cesta k chybující aplikaci: C:\Program Files\WindowsApps\AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.21.30024.0_x64__0a9344xs7nr4m\radeonsoftware\launcherrsxruntime.exe
Cesta k chybujícímu modulu: unknown
ID sestavy: bb5b03ba-56b9-4c47-bc75-b9364d4c5378
Celý název chybujícího balíčku: AdvancedMicroDevicesInc-2.AMDRadeonSoftware_10.21.30024.0_x64__0a9344xs7nr4m
ID chybující aplikace relativní vzhledem k balíčku: AMDRadeonsoftwareUWP

Error: (11/28/2025 02:43:16 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Inicializace registrace certifikátu SCEP pro WORKGROUP\BOBIK$ přes https://AMD-KeyId-52fb59e29aa83a962fb9e ... s/Aik/scep se nepovedla:

GetCACaps

Metoda: GET(188ms)
Fáze: GetCACaps
Spojení se serverem bylo nenormálně ukončeno. 0x80072efe (WinHttp: 12030 ERROR_WINHTTP_CONNECTION_ERROR)

Error: (11/28/2025 02:43:16 PM) (Source: CertEnroll) (EventID: 86) (User: NT AUTHORITY)
Description: Inicializace registrace certifikátu SCEP pro Místní systém přes https://AMD-KeyId-52fb59e29aa83a962fb9e ... s/Aik/scep se nepovedla:

GetCACaps

Metoda: GET(843ms)
Fáze: GetCACaps
Spojení se serverem bylo nenormálně ukončeno. 0x80072efe (WinHttp: 12030 ERROR_WINHTTP_CONNECTION_ERROR)


System errors:
=============
Error: (11/28/2025 03:35:46 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Aktualizace Google (gupdate) neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (11/28/2025 03:35:46 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Služba Aktualizace Google (gupdate) bylo dosaženo časového limitu (30000 ms).

Error: (11/28/2025 03:33:44 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba MBAMService neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (11/28/2025 03:33:44 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby MBAMService bylo dosaženo časového limitu (45000 ms).

Error: (11/28/2025 02:48:04 PM) (Source: Microsoft-Windows-TPM-WMI) (EventID: 1801) (User: NT AUTHORITY)
Description: Secure Boot CA/keys need to be updated. This device signature information is included here.
DeviceAttributes: BaseBoardManufacturer:Gigabyte Technology Co., Ltd.;FirmwareManufacturer:American Megatrends International, LLC.;FirmwareVersion:F14;OEMModelNumber:B550 AORUS ELITE V2;OEMModelBaseBoard:B550 AORUS ELITE V2;OEMModelSystemFamily:B550 MB;OEMManufacturerName:Gigabyte Technology Co., Ltd.;OEMModelSKU:Default string;OSArchitecture:amd64;
BucketId: c61b929d871a9f85cef079b697e6435da617f2e9ec7322aff484efef2168321b
BucketConfidenceLevel:
UpdateType: 0
HResult: 0

Error: (11/28/2025 02:45:06 PM) (Source: Service Control Manager) (EventID: 7000) (User: )
Description: Služba Služba Aktualizace Google (gupdate) neuspěla při spuštění v důsledku následující chyby:
Služba neodpověděla na řídicí nebo zahajovací požadavek dostatečně včas.

Error: (11/28/2025 02:45:06 PM) (Source: Service Control Manager) (EventID: 7009) (User: )
Description: Při čekání na připojení služby Služba Aktualizace Google (gupdate) bylo dosaženo časového limitu (30000 ms).

Error: (11/28/2025 02:43:06 PM) (Source: Service Control Manager) (EventID: 7031) (User: )
Description: Služba Windows Search byla nečekaně ukončena. Stalo se to 1 krát. Následující opravná akce bude spuštěna za 30000 milisekund: Restartovat službu.


Windows Defender:
================
Date: 2025-11-26 17:43:35
Description:
Antivirová ochrana v programu Microsoft Defender šċąή ħаѕ ъёёи ѕťθрρёð ьеƒθяė ĉõмρļěťīθή.%ŋ %тŜċăи ΪÐ:%в{AE45AB3C-00DD-4FAC-A684-B63D29E1946D}%й %ťŠ¢ąņ Ťŷрέ:%ьAntimalwarový program%й %ţŚćдл Ρдгâmεтзřš:%вRychlé prohledávání%й %ŧŪšёг:%вNT AUTHORITY\SYSTEM%и %ŧŚтθр Ŗēαŝøŋ:%ъŖΡС ćǿñη℮¢тїôл гύиďǿẃη

Date: 2025-11-16 11:28:55
Description:
Antivirová ochrana v programu Microsoft Defender šċąή ħаѕ ъёёи ѕťθрρёð ьеƒθяė ĉõмρļěťīθή.%ŋ %тŜċăи ΪÐ:%в{ABBBECE4-6938-4BFD-898E-669A9F99C7F4}%й %ťŠ¢ąņ Ťŷрέ:%ьAntimalwarový program%й %ţŚćдл Ρдгâmεтзřš:%вRychlé prohledávání%й %ŧŪšёг:%вNT AUTHORITY\SYSTEM%и %ŧŚтθр Ŗēαŝøŋ:%ъΓΡ€ čοⁿпėċŧϊóʼn яűлđòщл

Date: 2025-11-15 14:27:02
Description:
Antivirová ochrana v programu Microsoft Defender šċąή ħаѕ ъёёи ѕťθрρёð ьеƒθяė ĉõмρļěťīθή.%ŋ %тŜċăи ΪÐ:%в{B37DAF5A-B505-404A-A1AE-74A095BF2389}%й %ťŠ¢ąņ Ťŷрέ:%ьAntimalwarový program%й %ţŚćдл Ρдгâmεтзřš:%вRychlé prohledávání%й %ŧŪšёг:%вNT AUTHORITY\SYSTEM%и %ŧŚтθр Ŗēαŝøŋ:%ъΓΡ€ čοⁿпėċŧϊóʼn яűлđòщл

Date: 2025-11-14 14:29:40
Description:
Antivirová ochrana v programu Microsoft Defender šċąή ħаѕ ъёёи ѕťθрρёð ьеƒθяė ĉõмρļěťīθή.%ŋ %тŜċăи ΪÐ:%в{96CB6BEA-9E86-4E69-8499-3B4763C7D456}%й %ťŠ¢ąņ Ťŷрέ:%ьAntimalwarový program%й %ţŚćдл Ρдгâmεтзřš:%вRychlé prohledávání%й %ŧŪšёг:%вNT AUTHORITY\SYSTEM%и %ŧŚтθр Ŗēαŝøŋ:%ъΓΡ€ čοⁿпėċŧϊóʼn яűлđòщл

Date: 2025-11-13 23:22:29
Description:
Antivirová ochrana v programu Microsoft Defender šċąή ħаѕ ъёёи ѕťθрρёð ьеƒθяė ĉõмρļěťīθή.%ŋ %тŜċăи ΪÐ:%в{894DF961-CBD0-483D-BBD6-F9E811A3E045}%й %ťŠ¢ąņ Ťŷрέ:%ьAntimalwarový program%й %ţŚćдл Ρдгâmεтзřš:%вRychlé prohledávání%й %ŧŪšёг:%вNT AUTHORITY\SYSTEM%и %ŧŚтθр Ŗēαŝøŋ:%ъΓΡ€ čοⁿпėċŧϊóʼn яűлđòщл

CodeIntegrity:
===============
Date: 2025-11-28 15:36:18
Description:
Code Integrity determined that a process (\Device\HarddiskVolume7\Windows\System32\SecurityHealthService.exe) attempted to load \Device\HarddiskVolume7\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\antimalware_provider.dll that did not meet the Windows signing level requirements.

Date: 2025-11-28 15:36:04
Description:
Code Integrity determined that a process (\Device\HarddiskVolume7\Windows\System32\svchost.exe) attempted to load \Device\HarddiskVolume7\Program Files (x86)\Kaspersky Lab\Kaspersky Internet Security 21.3\x64\antimalware_provider.dll that did not meet the Windows signing level requirements.


==================== Memory info ===========================

BIOS: American Megatrends International, LLC. F14 01/04/2022
Motherboard: Gigabyte Technology Co., Ltd. B550 AORUS ELITE V2
Processor: AMD Ryzen 7 5700G with Radeon Graphics
Percentage of memory in use: 12%
Total physical RAM: 65384.89 MB
Available physical RAM: 57388.24 MB
Total Virtual: 69480.89 MB
Available Virtual: 60128.4 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:1862.21 GB) (Free:1560.16 GB) (Model: Samsung SSD 990 EVO Plus 2TB) NTFS
Drive d: (SSD Disk) (Fixed) (Total:953.85 GB) (Free:241.61 GB) (Model: Verbatim Vi550 S3) NTFS
Drive e: (SSD Disk 500) (Fixed) (Total:476.82 GB) (Free:476.63 GB) (Model: ADATA SX8200PNP) NTFS

\\?\Volume{c0fbd464-93c4-11f0-af27-97eaf8597ced}\ () (Fixed) (Total:0.69 GB) (Free:0.09 GB) NTFS
\\?\Volume{c0fbd465-93c4-11f0-af27-97eaf8597ced}\ () (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Protective MBR) (Size: 953.9 GB) (Disk ID: 00000000)

Partition: GPT.

==========================================================
Disk: 1 (Protective MBR) (Size: 476.9 GB) (Disk ID: 00000000)

Partition: GPT.

==========================================================
Disk: 2 (Protective MBR) (Size: 1863 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt =======================
Uživatelský avatar
jaro3
člen Security týmu
Příspěvky: 43396
Registrován: 16 čer 2007 18:58
Bydliště: Jižní Čechy

Re: Prosím o kontrolu logu

Příspěvek od jaro3 »

Prosím, postupuj následujícím způsobem:
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.

Kód: Vybrat vše

Start
CreateRestorePoint:
CloseProcesses:
HKLM-x32\...\Run: [Discord] => C:\ProgramData\SquirrelMachineInstalls\Discord.exe --checkInstall (No File)
Task: {00d5c986-14a6-4984-be83-cb2193fcbc1e} - no filepath. <==== ATTENTION
Task: {02a6f576-3a3c-429a-aead-7494c4350a5a} - no filepath. <==== ATTENTION
Task: {02d9a7d0-c686-4151-95c4-dad723531089} - no filepath. <==== ATTENTION
Task: {03f71dbb-6a01-4c66-b630-6169587ec189} - no filepath. <==== ATTENTION
Task: {03f8d7e6-4527-4cd4-800f-687cd8b25133} - no filepath. <==== ATTENTION
Task: {053f3202-8fc0-483d-91e5-683464fa41f0} - no filepath. <==== ATTENTION
Task: {07bf83ab-1379-46ed-9977-14fab467c7d9} - no filepath. <==== ATTENTION
Task: {08072f20-c86e-4af2-aae7-d6293e52aba2} - no filepath. <==== ATTENTION
Task: {08951cec-875b-4859-bf94-56ff926aa9e0} - no filepath. <==== ATTENTION
Task: {089d4814-e8ed-4492-8d24-d7103a0db696} - no filepath. <==== ATTENTION
Task: {096b080f-9184-47fa-a609-71aed6fddf09} - no filepath. <==== ATTENTION
Task: {0a6982a8-8597-4dbb-b8bf-76bd3feb0267} - no filepath. <==== ATTENTION
Task: {0b19ce7f-15de-4020-90f0-2cfeb498997d} - no filepath. <==== ATTENTION
Task: {0bb40e63-ee0e-4a2f-a119-98340d25c158} - no filepath. <==== ATTENTION
Task: {0c179f72-9108-427d-a1b5-85732df1c812} - no filepath. <==== ATTENTION
Task: {0c981ec0-4658-4c55-9ab2-04d7808c94ce} - no filepath. <==== ATTENTION
Task: {0d692624-1a73-4a18-86f5-111f94a2f6a8} - no filepath. <==== ATTENTION
Task: {0dcd3675-0d88-4c8a-b76d-75f437654271} - no filepath. <==== ATTENTION
Task: {0e705813-84a5-43b5-86f5-32a754233e05} - no filepath. <==== ATTENTION
Task: {0f0ee014-8e3a-4bc5-acc2-594d7ee53a0f} - no filepath. <==== ATTENTION
Task: {0f73999b-d2fd-4b83-9be1-9e2b393647f7} - no filepath. <==== ATTENTION
Task: {0fe3b2c4-8cdf-4984-9234-3a7274e2200c} - no filepath. <==== ATTENTION
Task: {10ade88f-a40c-485f-b538-bdd4df4b4446} - no filepath. <==== ATTENTION
Task: {1137609a-401f-4e02-ab49-b7ac2e6f12a6} - no filepath. <==== ATTENTION
Task: {12d2aec9-edf1-4ff3-a5a0-4c75151ac4f5} - no filepath. <==== ATTENTION
Task: {142d34cb-e8a6-40d0-94ba-4c529cb28ca5} - no filepath. <==== ATTENTION
Task: {1431e41f-da73-4b3b-8139-970af6ef7749} - no filepath. <==== ATTENTION
Task: {144c4abf-3260-48b0-8df8-040c5ea03e2c} - no filepath. <==== ATTENTION
Task: {1495afa4-dde9-48bd-9e0b-ca8dcc7361f0} - no filepath. <==== ATTENTION
Task: {1620a7d5-3f4a-42cf-95ab-8b38a7fa80f7} - no filepath. <==== ATTENTION
Task: {191d6e07-e1e6-4abe-8224-057b21eeeeb2} - no filepath. <==== ATTENTION
Task: {1d1f6db3-811d-4c79-bd22-4c68b7433bc1} - no filepath. <==== ATTENTION
Task: {20c8374f-cc58-403d-881e-f64e8d8c38de} - no filepath. <==== ATTENTION
Task: {21532842-612f-4d75-a923-6aa822042813} - no filepath. <==== ATTENTION
Task: {22d4cc31-3f26-4017-af77-2f0a531fbc8b} - no filepath. <==== ATTENTION
Task: {298479ea-17a7-487b-b39f-10c2e5c6445f} - no filepath. <==== ATTENTION
Task: {29dd6eb1-455c-4b0b-b896-cdc6a7d123df} - no filepath. <==== ATTENTION
Task: {2aa6f14f-5338-4fed-8365-57c651855f2f} - no filepath. <==== ATTENTION
Task: {2b9c176b-e264-46c4-95f5-3b37ba1d974a} - no filepath. <==== ATTENTION
Task: {32013145-52e9-4f89-9816-1a096b25c797} - no filepath. <==== ATTENTION
Task: {330744ba-be2e-4791-ac1d-38e6403126fc} - no filepath. <==== ATTENTION
Task: {335f9234-1ee2-40db-b31a-6a877e168512} - no filepath. <==== ATTENTION
Task: {34748b56-7261-440a-ba37-f213d117472b} - no filepath. <==== ATTENTION
Task: {38041067-f5c8-4157-abf8-7dae6ae6987e} - no filepath. <==== ATTENTION
Task: {3aab74d9-4392-4d0f-b00e-e668acc979ab} - no filepath. <==== ATTENTION
Task: {3cc91d68-38be-4d32-beff-91e42adfbab5} - no filepath. <==== ATTENTION
Task: {3cf33de5-8b14-4fee-888f-53c0384118e7} - no filepath. <==== ATTENTION
Task: {3e4bd717-1752-496c-8564-d99641472b4e} - no filepath. <==== ATTENTION
Task: {3f3646f5-d910-4355-8dbe-ea839c6111dc} - no filepath. <==== ATTENTION
Task: {4042b7cc-1d49-4b23-8d27-a5da7b51234e} - no filepath. <==== ATTENTION
Task: {412e8930-2aed-47b7-92dd-bb98f770ad6f} - no filepath. <==== ATTENTION
Task: {44e99bc3-7751-4339-8086-0ce94faa4e98} - no filepath. <==== ATTENTION
Task: {45985b9f-b56b-49a7-b878-81c17b6b6089} - no filepath. <==== ATTENTION
Task: {48bd70dc-143d-4386-861d-6300bf45b0dc} - no filepath. <==== ATTENTION
Task: {48ce2588-f2be-4ebb-b205-daf17db56172} - no filepath. <==== ATTENTION
Task: {4b1e243e-85ea-4e96-aacb-64d35a04ca95} - no filepath. <==== ATTENTION
Task: {4bbf3c83-a5f2-4bc9-b282-71061ae59209} - no filepath. <==== ATTENTION
Task: {4c72ae2f-7f92-4ec4-868d-2f672fa392ae} - no filepath. <==== ATTENTION
Task: {4cf77be4-ff13-4bda-8922-5230bd4c155c} - no filepath. <==== ATTENTION
Task: {4d162192-827a-48e4-a8e4-2071ff428a2a} - no filepath. <==== ATTENTION
Task: {4f2bdaab-4956-4c2b-848a-e61c4de8c4ce} - no filepath. <==== ATTENTION
Task: {51bc6a78-0be7-4d60-92f7-9f4f1bab6ed2} - no filepath. <==== ATTENTION
Task: {5291c210-c0f8-4f6d-b1c1-21b585d29b47} - no filepath. <==== ATTENTION
Task: {534d058d-7124-49ba-9b00-d2f30667c0e5} - no filepath. <==== ATTENTION
Task: {54062a3b-6b31-4600-b4ec-45ec50a39f6a} - no filepath. <==== ATTENTION
Task: {5460418b-5bc8-4960-ab8d-983e08623931} - no filepath. <==== ATTENTION
Task: {546bc32b-ed9a-4933-b58b-34041bef792d} - no filepath. <==== ATTENTION
Task: {54df9c00-8100-460d-ada7-8d7e7e420f0d} - no filepath. <==== ATTENTION
Task: {551d4055-547d-4255-88ae-9d40fa2253b4} - no filepath. <==== ATTENTION
Task: {5cdd4d69-8c9c-4e33-b2c8-fe687bffca2a} - no filepath. <==== ATTENTION
Task: {5e13cd49-5792-44c2-afdf-17e71a44898d} - no filepath. <==== ATTENTION
Task: {606fc516-c975-4375-9751-dc61345000c5} - no filepath. <==== ATTENTION
Task: {62828caa-9f5f-4f21-8d49-4215036fecdc} - no filepath. <==== ATTENTION
Task: {6367d695-b9d5-49ba-9367-fa71ee18b383} - no filepath. <==== ATTENTION
Task: {68e653c6-ab68-4463-b32b-34ea0e1d0242} - no filepath. <==== ATTENTION
Task: {6bd2b751-e877-4b85-a319-26acba8a919f} - no filepath. <==== ATTENTION
Task: {6c2e8d1d-591e-4ab4-b5e5-1f539aaf2e27} - no filepath. <==== ATTENTION
Task: {6d2855c0-ad28-48dc-8b75-25cdadd8f325} - no filepath. <==== ATTENTION
Task: {6f5953da-e976-42b1-af89-fb784f835ec2} - no filepath. <==== ATTENTION
Task: {6f63db12-b3fc-4ede-a0fe-a8bdd445d2e5} - no filepath. <==== ATTENTION
Task: {6fb1c17d-9878-4023-a477-d301d7a4aba7} - no filepath. <==== ATTENTION
Task: {7114e3a9-edeb-443f-ae1b-cbb8b2619c91} - no filepath. <==== ATTENTION
Task: {7174da66-eba4-4cb7-abfe-3724d7ba9f28} - no filepath. <==== ATTENTION
Task: {72cbe8db-f8d0-4dc7-9daa-a270d4aca359} - no filepath. <==== ATTENTION
Task: {72e4dbb4-664a-454b-a254-56a26ab31e2a} - no filepath. <==== ATTENTION
Task: {730654d7-709a-42d2-b50a-9acf4fabe6d7} - no filepath. <==== ATTENTION
Task: {73733208-bf5e-479f-b737-99071d92dfc4} - no filepath. <==== ATTENTION
Task: {737e384c-1c2d-4a9a-81dc-bc52ea7e463b} - no filepath. <==== ATTENTION
Task: {7645254e-b0d7-4141-be56-61ef8388cc22} - no filepath. <==== ATTENTION
Task: {7acd8191-0356-4082-a089-fbdb6c1d4aa8} - no filepath. <==== ATTENTION
Task: {7bc98579-0d45-4880-b051-4a4088f7a0b9} - no filepath. <==== ATTENTION
Task: {7e42d8da-16c6-4a01-b00d-2b2723a6dd5c} - no filepath. <==== ATTENTION
Task: {7e8dfb9c-bea5-4565-aef2-d9e2bd6c3fc9} - no filepath. <==== ATTENTION
Task: {805a1d5c-d8d3-43a7-bae8-0618fc742463} - no filepath. <==== ATTENTION
Task: {806b2375-028c-4d88-a36b-955f2e87ae64} - no filepath. <==== ATTENTION
Task: {81e7d19e-a1c7-4789-819f-3c09d3e1869a} - no filepath. <==== ATTENTION
Task: {84d8e9df-e75f-47eb-a5a7-526ebda2eecb} - no filepath. <==== ATTENTION
Task: {8641d544-7c84-46eb-b226-5aa5a6a533f7} - no filepath. <==== ATTENTION
Task: {8805f9bb-befd-4a47-8631-06f33b95f5c8} - no filepath. <==== ATTENTION
Task: {887f27d8-1d3f-4d76-b0ca-4854d26c3695} - no filepath. <==== ATTENTION
Task: {89fdd83d-acb6-41e3-91ba-a37ebd01e9f6} - no filepath. <==== ATTENTION
Task: {8a6a226c-8de5-4c08-add3-c1986dcea430} - no filepath. <==== ATTENTION
Task: {9025e31f-9930-4e4b-815d-a066fbd8701a} - no filepath. <==== ATTENTION
Task: {910eeb19-6b0a-4843-a915-bd7fd674b062} - no filepath. <==== ATTENTION
Task: {93e1c5d0-2453-40ad-b983-be01fe570370} - no filepath. <==== ATTENTION
Task: {93fee6f0-ec1b-4990-ae08-42fc4ce1f80b} - no filepath. <==== ATTENTION
Task: {954fab6d-5f38-49c6-903e-55ecc85373c2} - no filepath. <==== ATTENTION
Task: {955983dc-4b34-429a-89d1-5a7794ec4e70} - no filepath. <==== ATTENTION
Task: {95bd6ad6-5abc-407a-be8d-3843fd668a4a} - no filepath. <==== ATTENTION
Task: {968794ca-b4e2-4f81-8ec4-4ca97b6657c1} - no filepath. <==== ATTENTION
Task: {97d8aaef-c8be-42d1-a737-62fa3caea0f0} - no filepath. <==== ATTENTION
Task: {98b1e6fd-8403-4285-833b-e0d54fa6811b} - no filepath. <==== ATTENTION
Task: {999492d4-1593-4916-aa49-9edc8cdb6304} - no filepath. <==== ATTENTION
Task: {9e298deb-ec2a-4807-82c3-89abbb906fc1} - no filepath. <==== ATTENTION
Task: {9ea6f6b6-eeef-4856-87ea-87b7d4b39f74} - no filepath. <==== ATTENTION
Task: {9fb0c73b-db5f-4cb6-aca5-4bebd0a1ce15} - no filepath. <==== ATTENTION
Task: {a03a6e60-bd6f-4765-8987-8e087e835a57} - no filepath. <==== ATTENTION
Task: {a209afce-49d3-4140-a6e0-1bee08a93b3d} - no filepath. <==== ATTENTION
Task: {a8cddb6b-b9db-41ad-b3ae-d466c1875b4b} - no filepath. <==== ATTENTION
Task: {ab3c5729-b654-4388-9269-4450f38b1ba9} - no filepath. <==== ATTENTION
Task: {ad284b76-3e0e-45c3-8989-09179637555c} - no filepath. <==== ATTENTION
Task: {af8249a7-3796-47f6-9d5b-0422cb2c6cb2} - no filepath. <==== ATTENTION
Task: {af93724f-d443-4fd1-af00-c44575128bc8} - no filepath. <==== ATTENTION
Task: {b32dc67f-5d6c-4b8a-8c7b-e6869dac4282} - no filepath. <==== ATTENTION
Task: {b4ccfea5-6e8d-4cd7-b7c9-ca93244fb5fc} - no filepath. <==== ATTENTION
Task: {b65368c4-eb82-4b48-a24b-322e306c605e} - no filepath. <==== ATTENTION
Task: {b68e2756-5e9c-4e5a-aa92-b478f17735a7} - no filepath. <==== ATTENTION
Task: {b86ff5e5-ef90-41f4-a101-fada5cb10c17} - no filepath. <==== ATTENTION
Task: {bb7d75bf-aff8-4747-9c3f-58a0628e2eb1} - no filepath. <==== ATTENTION
Task: {bb96ba52-d281-4b16-b78e-7b2dd119dd71} - no filepath. <==== ATTENTION
Task: {bc9ec85c-02d5-436d-b8a5-dc92be0a71a2} - no filepath. <==== ATTENTION
Task: {bcdbcc24-39a8-4b8e-bafe-365161421a9f} - no filepath. <==== ATTENTION
Task: {bebdd0d3-00f4-42e4-a537-ebba697f6b85} - no filepath. <==== ATTENTION
Task: {c0538825-9658-467c-84e8-297ee3a065a5} - no filepath. <==== ATTENTION
Task: {c15df7da-adeb-4254-bff8-0548b42c8525} - no filepath. <==== ATTENTION
Task: {c1866588-67a8-4883-aa39-27d8a6b7d328} - no filepath. <==== ATTENTION
Task: {c27ccebd-447b-432b-a9fd-4d9a9e6976ff} - no filepath. <==== ATTENTION
Task: {c4982fd3-354a-48d2-92ae-20d0e50b5f24} - no filepath. <==== ATTENTION
Task: {c78023ec-586f-4724-be33-f1b8c7151479} - no filepath. <==== ATTENTION
Task: {c79c83eb-7638-45d4-8af9-dff12a26de5e} - no filepath. <==== ATTENTION
Task: {c849f05e-e489-4ed0-b060-7edac0e9f23f} - no filepath. <==== ATTENTION
Task: {c90993e9-f5b6-4e59-831f-1352575cafc4} - no filepath. <==== ATTENTION
Task: {c9b61264-c0a0-45ae-9ba3-e87963590760} - no filepath. <==== ATTENTION
Task: {cc88659a-8ff0-4808-a672-1f8cf8cf6df4} - no filepath. <==== ATTENTION
Task: {ccb12c21-2e65-43f9-b4da-aefbd0f83ef2} - no filepath. <==== ATTENTION
Task: {cd10d944-d015-4c00-ad39-a2df2806f30f} - no filepath. <==== ATTENTION
Task: {cd6033c9-b80c-4793-9255-01f55ffd769b} - no filepath. <==== ATTENTION
Task: {cedbafbe-c867-4044-809f-8a64abd0b956} - no filepath. <==== ATTENTION
Task: {cf67bd23-594b-4ec0-bf09-149490a91fc5} - no filepath. <==== ATTENTION
Task: {d016cbcc-db31-4e44-a0f3-9ccf564032e1} - no filepath. <==== ATTENTION
Task: {d0c1487a-fedc-4d53-a979-8e982f77fd35} - no filepath. <==== ATTENTION
Task: {d11a53a3-e853-4111-9ca2-f9a2f5e3423a} - no filepath. <==== ATTENTION
Task: {d19b7790-fdcb-40d5-83d1-62c2b77807a6} - no filepath. <==== ATTENTION
Task: {d349ad89-edee-4227-affc-39d1c606dc24} - no filepath. <==== ATTENTION
Task: {d3dce8be-ed4a-4afe-8e95-a3fb1610a587} - no filepath. <==== ATTENTION
Task: {d58d8d3c-4c8c-4c79-9621-9675fe0411a4} - no filepath. <==== ATTENTION
Task: {d5bbe4fa-d9cc-420a-9fc7-f4b168cccb54} - no filepath. <==== ATTENTION
Task: {d6460478-3c53-4686-b214-27d3ba17d932} - no filepath. <==== ATTENTION
Task: {d6d77d44-04f4-4e05-8344-9d5d9744c4b6} - no filepath. <==== ATTENTION
Task: {d96187ab-14ea-4029-a583-904db95bf36f} - no filepath. <==== ATTENTION
Task: {da67db13-0acf-4ce8-808e-6c8f870a5acd} - no filepath. <==== ATTENTION
Task: {db77d1e3-9ee8-4608-bcfe-8568fd7d6be8} - no filepath. <==== ATTENTION
Task: {de1706c6-c1ec-4799-800e-3c718bae6921} - no filepath. <==== ATTENTION
Task: {dfd80729-14f9-49b3-bdc1-53397e616568} - no filepath. <==== ATTENTION
Task: {e09d573f-d973-469e-8499-cef9c5f9f3fd} - no filepath. <==== ATTENTION
Task: {e4dfa20d-1735-43af-8730-3cefdb8bdf88} - no filepath. <==== ATTENTION
Task: {e4e85062-15bb-4e76-9ed4-51bf129d3b7c} - no filepath. <==== ATTENTION
Task: {e4f2106a-09ef-4c86-b86e-f8614cfe04cf} - no filepath. <==== ATTENTION
Task: {e634067d-fb8a-477a-b3ba-0c47cbb444f5} - no filepath. <==== ATTENTION
Task: {e7f39b5e-26ee-464d-a4b5-a1791a3e6047} - no filepath. <==== ATTENTION
Task: {e9722648-38c5-4e6c-9a01-fa4c4872a1c2} - no filepath. <==== ATTENTION
Task: {e9b31b50-8a65-47ca-a2f1-70b211b6a10e} - no filepath. <==== ATTENTION
Task: {ea201faf-8493-4956-b923-fb3bf02208de} - no filepath. <==== ATTENTION
Task: {eacab179-ab22-4977-b17d-bd9e23cf2c31} - no filepath. <==== ATTENTION
Task: {ec457b7d-460f-45da-b28f-00430452bf21} - no filepath. <==== ATTENTION
Task: {ec5c493b-fcb5-41bd-b643-fab4b936e346} - no filepath. <==== ATTENTION
Task: {ec9906d4-94d8-47a3-bbbc-088bcbffd6de} - no filepath. <==== ATTENTION
Task: {ecd7b292-273b-4e15-9937-223c05fb21be} - no filepath. <==== ATTENTION
Task: {ee3b6b48-187f-4914-b967-d7093dbd330e} - no filepath. <==== ATTENTION
Task: {ef0bd441-299d-4076-b99e-24dfd138fb50} - no filepath. <==== ATTENTION
Task: {f2c1196a-818b-4352-9c81-3d55b1912a5a} - no filepath. <==== ATTENTION
Task: {f345efdb-ef1a-4c71-82fa-3ed4f64b2073} - no filepath. <==== ATTENTION
Task: {f76479d7-c273-4d19-9ead-c065b2cb89fc} - no filepath. <==== ATTENTION
Task: {fbe0d077-797e-4111-a28b-7279de73076e} - no filepath. <==== ATTENTION
Task: {fc4d4647-5227-4361-940e-e2e11f571689} - no filepath. <==== ATTENTION
Task: {ff5fd245-c577-4b23-ab00-228c14694d4d} - no filepath. <==== ATTENTION
Task: {A5DBEE2C-CC7D-4164-A790-AC35FD134F93} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem143.0.7482.0{3A9AA064-3798-4AC3-B707-4D4ACEF16136} => C:\Program Files 
EmptyTemp:
End
(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).

Ulož jej na na plochu jako fixlist.txt


Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra
Odpovědět

Zpět na „HiJackThis“