Kontrola počítače z důvodu občasných záseků Vyřešeno

Místo pro vaše HiJackThis logy a logy z dalších programů…

Moderátoři: Mods_senior, Security team

Uživatelský avatar
AngelikaB
Level 6
Level 6
Příspěvky: 3135
Registrován: červen 13
Pohlaví: Žena
Stav:
Offline

Re: Kontrola počítače z důvodu občasných záseků

Příspěvekod AngelikaB » 21 črc 2022 19:22

2022-06-27 23:11 - 2022-07-21 10:16 - 000015360 _____ () C:\WINDOWS\system32\Albacore.ViVe.dll
2022-06-27 21:59 - 2022-07-21 10:16 - 000224164 _____ C:\WINDOWS\system32\FeatureDictionary.pfs
2022-06-26 21:16 - 2022-06-26 21:16 - 000000000 ____D C:\Users\cloud\AppData\LocalLow\Mediatonic
2022-06-26 21:16 - 2022-06-26 21:16 - 000000000 ____D C:\Users\cloud\AppData\Local\EOSUserHelper
2022-06-26 20:09 - 2022-06-26 20:09 - 000000000 ____D C:\Users\cloud\AppData\LocalLow\Kinetic Games
2022-06-26 17:32 - 2022-06-26 17:32 - 000000223 _____ C:\Users\cloud\Desktop\Lost Ark.url
2022-06-26 15:59 - 2022-07-21 10:58 - 000000000 ____D C:\Users\cloud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Steam
2022-06-26 14:48 - 2022-06-26 14:48 - 000000000 ____D C:\Program Files (x86)\madloader.app
2022-06-26 14:47 - 2022-05-22 12:23 - 022877747 _____ (madloader.app ) C:\Users\cloud\Desktop\MadLoader_Setup.exe
2022-06-26 12:32 - 2022-06-26 12:32 - 000001101 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop 2022.lnk
2022-06-26 10:49 - 2022-06-26 10:49 - 000000000 ____D C:\Users\cloud\Desktop\fluent
2022-06-26 10:18 - 2022-06-26 10:20 - 000000000 ____D C:\Users\cloud\Desktop\sourcebans-pp-1.x
2022-06-25 15:56 - 2022-07-21 10:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Iriun Webcam
2022-06-25 15:56 - 2022-06-25 15:56 - 000001160 _____ C:\Users\Public\Desktop\Iriun Webcam.lnk
2022-06-25 15:56 - 2022-06-25 15:56 - 000000000 ____D C:\Program Files (x86)\Iriun Webcam
2022-06-25 15:56 - 2021-04-06 22:13 - 000046976 _____ (Windows (R) Win 7 DDK provider) C:\WINDOWS\system32\Drivers\iriuna0.sys
2022-06-25 15:55 - 2022-06-25 15:56 - 000000000 ____D C:\Program Files (x86)\dotnet
2022-06-25 09:09 - 2022-07-21 09:33 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Maxon
2022-06-25 09:09 - 2022-06-25 09:09 - 000000000 ____D C:\ProgramData\Red Giant
2022-06-25 09:08 - 2022-06-25 09:09 - 000000000 ____D C:\Program Files\Red Giant
2022-06-25 09:07 - 2022-06-25 09:09 - 000000000 ____D C:\Program Files\Maxon Cinema 4D R25
2022-06-25 09:06 - 2022-06-25 09:06 - 000001287 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe After Effects 2022.lnk
2022-06-25 09:03 - 2022-06-26 12:36 - 000000000 ___RD C:\Users\cloud\Creative Cloud Files
2022-06-24 15:52 - 2022-06-24 15:45 - 194648186 _____ C:\Users\cloud\Desktop\video_20220624_154345.mp4
2022-06-23 11:37 - 2022-06-23 11:37 - 000000000 ____D C:\Users\cloud\Desktop\V1.04.01
2022-06-21 22:37 - 2022-06-21 22:37 - 000000000 ____D C:\Users\cloud\Tracing
2022-06-21 14:51 - 2022-06-21 14:51 - 000000365 _____ C:\Users\cloud\Desktop\Fall Guys.url
2022-06-21 09:12 - 2022-07-17 18:26 - 000015824 _____ (ESET) C:\WINDOWS\system32\Drivers\eelam.sys
2022-06-21 09:12 - 2022-06-21 09:12 - 000234192 _____ (ESET) C:\WINDOWS\system32\Drivers\ehdrv.sys
2022-06-21 09:12 - 2022-06-21 09:12 - 000192880 _____ (ESET) C:\WINDOWS\system32\Drivers\eamonm.sys
2022-06-21 09:12 - 2022-06-21 09:12 - 000119528 _____ (ESET) C:\WINDOWS\system32\Drivers\epfwwfp.sys
2022-06-21 09:12 - 2022-06-21 09:12 - 000116960 _____ (ESET) C:\WINDOWS\system32\Drivers\edevmon.sys
2022-06-21 09:12 - 2022-06-21 09:12 - 000079216 _____ (ESET) C:\WINDOWS\system32\Drivers\epfw.sys
2022-06-21 09:12 - 2022-06-21 09:12 - 000052880 _____ (ESET) C:\WINDOWS\system32\Drivers\ekbdflt.sys

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2022-07-21 19:09 - 2022-05-22 18:32 - 000000000 ____D C:\Program Files (x86)\Steam
2022-07-21 19:08 - 2022-05-23 14:28 - 000000000 ____D C:\Users\cloud\AppData\Roaming\obs-studio
2022-07-21 19:05 - 2022-05-22 18:27 - 000000000 ____D C:\Users\cloud\AppData\Local\Discord
2022-07-21 18:29 - 2022-05-22 18:24 - 000000000 ____D C:\Program Files (x86)\Google
2022-07-21 12:25 - 2022-05-22 18:41 - 000000000 ____D C:\ProgramData\NVIDIA
2022-07-21 12:03 - 2022-05-22 18:23 - 000000000 ____D C:\Users\cloud\AppData\Local\PlaceholderTileLogoFolder
2022-07-21 12:03 - 2022-05-22 18:22 - 000000000 ____D C:\Users\cloud\AppData\Local\Packages
2022-07-21 10:58 - 2022-06-07 20:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Minecraft Launcher
2022-07-21 10:58 - 2022-06-06 13:20 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Git
2022-07-21 10:58 - 2022-06-06 13:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Node.js
2022-07-21 10:58 - 2022-05-30 19:09 - 000000000 ____D C:\WINDOWS\system32\appmgmt
2022-07-21 10:58 - 2022-05-30 17:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Genshin Impact
2022-07-21 10:58 - 2022-05-27 08:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VMware
2022-07-21 10:58 - 2022-05-25 11:27 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\BlueStacks X
2022-07-21 10:58 - 2022-05-25 11:24 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Free Download Manager
2022-07-21 10:58 - 2022-05-25 11:15 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PowerShell
2022-07-21 10:58 - 2022-05-24 09:52 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\qBittorrent
2022-07-21 10:58 - 2022-05-23 20:43 - 000000000 ____D C:\Users\cloud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Roblox
2022-07-21 10:58 - 2022-05-23 15:59 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java Development Kit
2022-07-21 10:58 - 2022-05-23 15:58 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Java
2022-07-21 10:58 - 2022-05-23 14:28 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OBS Studio
2022-07-21 10:58 - 2022-05-22 20:37 - 000000000 ____D C:\Users\cloud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Riot Games
2022-07-21 10:58 - 2022-05-22 19:16 - 000000000 ____D C:\Users\cloud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Total Commander
2022-07-21 10:58 - 2022-05-22 18:57 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA
2022-07-21 10:58 - 2022-05-22 18:55 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Origin
2022-07-21 10:58 - 2022-05-22 18:50 - 000000000 ___RD C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
2022-07-21 10:58 - 2022-05-22 18:45 - 000000000 ____D C:\Program Files\Intel
2022-07-21 10:58 - 2022-05-22 18:41 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NVIDIA Corporation
2022-07-21 10:58 - 2022-05-22 18:32 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Steam
2022-07-21 10:58 - 2022-05-22 18:28 - 000000000 ____D C:\Users\cloud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Discord Inc
2022-07-21 10:58 - 2022-05-22 18:26 - 000000000 ____D C:\Users\cloud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\WinRAR
2022-07-21 10:58 - 2022-05-22 18:26 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinRAR
2022-07-21 10:58 - 2022-05-07 12:14 - 000000000 ____D C:\WINDOWS\system32\Hydrogen
2022-07-21 10:58 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\Tasks_Migrated
2022-07-21 10:58 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\MsDtc
2022-07-21 10:16 - 2021-03-17 22:03 - 000701992 _____ (Newtonsoft) C:\WINDOWS\system32\Newtonsoft.Json.dll
2022-07-21 10:05 - 2022-05-22 18:47 - 000000000 ____D C:\ProgramData\ASUS
2022-07-21 10:03 - 2022-05-24 21:30 - 000000001 _____ C:\WINDOWS\vgkbootstatus.dat
2022-07-21 10:03 - 2022-05-22 18:25 - 000002284 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2022-07-21 10:03 - 2022-05-22 18:25 - 000002243 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2022-07-21 10:03 - 2022-05-22 18:22 - 000000000 __RHD C:\Users\Public\AccountPictures
2022-07-21 10:01 - 2022-06-04 12:26 - 000000000 ____D C:\Program Files\TeamViewer
2022-07-21 10:01 - 2022-05-27 08:57 - 000000000 ____D C:\ProgramData\VMware
2022-07-21 10:00 - 2022-05-02 16:27 - 000012288 ___SH C:\DumpStack.log.tmp
2022-07-21 09:59 - 2022-05-22 18:47 - 000000000 ____D C:\WINDOWS\system32\RTCOM
2022-07-21 09:59 - 2022-05-22 18:46 - 000000000 ____D C:\WINDOWS\SysWOW64\RTCOM
2022-07-21 09:59 - 2022-05-22 18:46 - 000000000 ____D C:\WINDOWS\system32\DAX3
2022-07-21 09:59 - 2022-05-22 18:46 - 000000000 ____D C:\WINDOWS\system32\DAX2
2022-07-21 09:59 - 2022-05-22 18:21 - 000000000 ____D C:\WINDOWS\system32\Drivers\NVIDIA Corporation
2022-07-21 09:59 - 2022-05-22 18:14 - 000002473 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2022-07-21 09:59 - 2022-05-22 18:14 - 000002311 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2022-07-21 09:37 - 2022-06-10 12:16 - 000000000 ____D C:\Users\cloud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Ubisoft
2022-07-21 09:33 - 2022-05-22 19:00 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ASUS
2022-07-21 09:33 - 2022-05-22 18:51 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Screaming Bee
2022-07-21 09:33 - 2022-05-22 18:46 - 000000000 ____D C:\Program Files\Realtek
2022-07-21 09:33 - 2022-05-07 07:24 - 000000000 ____D C:\WINDOWS\system32\SystemResetPlatform
2022-07-20 23:13 - 2022-05-22 18:22 - 000000000 ____D C:\Users\cloud\AppData\Local\D3DSCache
2022-07-20 23:06 - 2022-05-22 18:28 - 000002268 _____ C:\Users\cloud\Desktop\Discord.lnk
2022-07-20 22:14 - 2022-05-22 18:23 - 000002418 _____ C:\Users\cloud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2022-07-20 18:36 - 2022-06-11 17:51 - 000000000 ____D C:\AdwCleaner
2022-07-20 15:22 - 2021-01-27 15:09 - 015642231 _____ C:\Users\cloud\Desktop\c7v5_us-up-ver1-1-2-P1[20210125-rel37999]_2021-01-25_10.33.55.bin
2022-07-20 00:01 - 2022-06-12 19:45 - 000000128 _____ C:\Users\cloud\AppData\Roaming\winscp.rnd
2022-07-19 23:51 - 2022-06-03 10:43 - 000000000 ____D C:\Users\cloud\.ssh
2022-07-19 18:08 - 2022-05-22 18:44 - 000000000 ____D C:\Users\cloud\AppData\Local\CrashDumps
2022-07-19 07:45 - 2022-05-22 18:34 - 000000000 ____D C:\Program Files\NZXT CAM
2022-07-18 17:58 - 2022-05-28 17:47 - 000000000 ____D C:\Users\cloud\AppData\Roaming\audacity
2022-07-18 15:42 - 2022-05-22 20:30 - 000000000 ____D C:\ProgramData\Riot Games
2022-07-17 18:24 - 2022-05-22 18:18 - 000000000 ____D C:\ProgramData\Packages
2022-07-17 10:16 - 2022-06-07 20:50 - 002754016 _____ (Microsoft Corporation) C:\WINDOWS\system32\xgameruntime.dll
2022-07-17 10:16 - 2022-06-07 20:50 - 000402904 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameplatformservices.dll
2022-07-17 10:16 - 2022-06-07 20:50 - 000234984 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingservicesproxy.dll
2022-07-17 10:16 - 2022-06-07 20:50 - 000198096 _____ (Microsoft Corporation) C:\WINDOWS\system32\gameconfighelper.dll
2022-07-17 10:16 - 2022-06-07 20:50 - 000144872 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamelaunchhelper.dll
2022-07-17 10:16 - 2022-06-07 20:50 - 000131072 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamingtcuihelpers.dll
2022-07-17 10:16 - 2022-06-07 20:50 - 000067048 _____ (Microsoft Corporation) C:\WINDOWS\system32\gamemodcontrol.exe
2022-07-17 09:17 - 2022-05-23 08:55 - 000000000 ____D C:\WINDOWS\system32\MRT
2022-07-17 09:14 - 2022-05-23 08:55 - 146546848 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2022-07-16 21:23 - 2022-06-07 20:51 - 000000000 ____D C:\Users\cloud\AppData\Roaming\.minecraft
2022-07-16 20:18 - 2022-05-22 18:44 - 000001513 _____ C:\Users\cloud\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\NVIDIA GeForce NOW.lnk
2022-07-16 20:18 - 2022-05-22 18:44 - 000001505 _____ C:\Users\cloud\Desktop\NVIDIA GeForce NOW.lnk
2022-07-16 20:18 - 2022-05-22 18:23 - 000000000 ____D C:\Users\cloud\AppData\Local\NVIDIA Corporation
2022-07-16 07:16 - 2022-05-24 20:56 - 000000000 ____D C:\Program Files\Riot Vanguard
2022-07-15 19:43 - 2022-06-11 17:42 - 000239544 _____ (Malwarebytes) C:\WINDOWS\system32\Drivers\mbamswissarmy.sys
2022-07-14 19:12 - 2022-06-18 20:06 - 000339070 _____ C:\Users\cloud\Desktop\ExcellentEnchants-3.2.2.jar
2022-07-14 19:12 - 2022-06-18 17:20 - 000374206 _____ C:\Users\cloud\Desktop\NexEngine.jar
2022-07-09 15:26 - 2022-05-28 18:07 - 000000000 ____D C:\Users\cloud\Documents\Adobe
2022-07-08 21:49 - 2022-06-13 17:05 - 000001583 _____ C:\Users\cloud\Desktop\League of Legends.lnk
2022-07-08 19:03 - 2022-05-22 18:34 - 000000000 ____D C:\Users\cloud\AppData\Local\UnrealEngine
2022-07-08 18:33 - 2022-05-22 18:33 - 000000000 ____D C:\ProgramData\Epic
2022-07-07 21:27 - 2022-05-02 16:12 - 000000000 ___HD C:\$SysReset
2022-07-03 15:58 - 2022-05-23 20:43 - 000001462 _____ C:\Users\cloud\Desktop\Roblox Player.lnk
2022-07-03 15:58 - 2022-05-23 20:43 - 000001285 _____ C:\Users\cloud\Desktop\Roblox Studio.lnk
2022-06-28 16:16 - 2022-05-28 18:08 - 000000000 ____D C:\Users\cloud\AppData\Roaming\com.adobe.dunamis
2022-06-28 16:16 - 2022-05-28 17:57 - 000000000 ____D C:\Users\cloud\AppData\Local\Adobe
2022-06-26 21:17 - 2022-05-22 18:34 - 000000000 ____D C:\Users\cloud\AppData\Local\Epic Games
2022-06-26 21:16 - 2022-05-22 19:24 - 000000000 ____D C:\Users\cloud\AppData\Roaming\EasyAntiCheat
2022-06-26 12:35 - 2022-05-22 18:22 - 000000000 ____D C:\Users\cloud\AppData\Roaming\Adobe
2022-06-26 12:31 - 2022-05-28 17:58 - 000000000 ____D C:\Program Files\Common Files\Adobe
2022-06-26 12:31 - 2022-05-28 17:58 - 000000000 ____D C:\Program Files\Adobe
2022-06-25 09:06 - 2022-05-28 18:06 - 000000000 ____D C:\Users\Public\Documents\Adobe
2022-06-25 09:05 - 2022-05-28 17:58 - 000000000 ____D C:\ProgramData\Adobe
2022-06-22 22:51 - 2022-05-22 18:14 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd

==================== Files in the root of some directories ========

2022-06-12 19:45 - 2022-07-20 00:01 - 000000128 _____ () C:\Users\cloud\AppData\Roaming\winscp.rnd

==================== FLock ==============================

2022-07-21 10:58 C:\WINDOWS\system32\WebThreatDefSvc

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================

Reklama
Uživatelský avatar
AngelikaB
Level 6
Level 6
Příspěvky: 3135
Registrován: červen 13
Pohlaví: Žena
Stav:
Offline

Re: Kontrola počítače z důvodu občasných záseků

Příspěvekod AngelikaB » 21 črc 2022 19:23

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 21-07-2022
Ran by cloud (21-07-2022 19:19:08)
Running from C:\Users\cloud\Desktop
Microsoft Windows 11 Pro Insider Preview Version 22H2 25163.1000 (X64) (2022-07-21 08:03:06)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

Administrator (S-1-5-21-2537962619-3254278163-1973469496-500 - Administrator - Disabled)
cloud (S-1-5-21-2537962619-3254278163-1973469496-1001 - Administrator - Enabled) => C:\Users\cloud
DefaultAccount (S-1-5-21-2537962619-3254278163-1973469496-503 - Limited - Disabled)
FTP (S-1-5-21-2537962619-3254278163-1973469496-1003 - Limited - Enabled)
Guest (S-1-5-21-2537962619-3254278163-1973469496-501 - Limited - Disabled)
WDAGUtilityAccount (S-1-5-21-2537962619-3254278163-1973469496-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: ESET Security (Disabled - Up to date) {DF8BEACB-94C9-218A-73AD-A78362A8C516}
AV: Windows Defender (Disabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: ESET Firewall (Disabled) {E7B06BEE-DEA6-20D2-58F2-0EB69C7B826D}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

4K Video Downloader (HKLM\...\{588C0F9F-0B5D-4EC6-AFD0-0F197B085735}) (Version: 4.21.0.4940 - Open Media LLC) Hidden
4K Video Downloader (HKLM-x32\...\{1b91a861-dbee-4b37-9a19-7891fe01be34}) (Version: 4.20.3.4840 - Open Media LLC)
Adobe Acrobat DC (HKLM-x32\...\{AC76BA86-1033-FFFF-7760-0C0F074E4100}) (Version: 20.006.20042 - Adobe Systems Incorporated)
Adobe After Effects 2022 (HKLM-x32\...\AEFT_22_5) (Version: 22.5 - Adobe Inc.)
Adobe Creative Cloud (HKLM-x32\...\Adobe Creative Cloud) (Version: 5.7.1.1 - Adobe Inc.)
Adobe Media Encoder 2022 (HKLM-x32\...\AME_22_4) (Version: 22.4 - Adobe Inc.)
Adobe Photoshop 2022 (HKLM-x32\...\PHSP_23_4_1) (Version: 23.4.1.547 - Adobe Inc.)
Adobe Premiere Pro 2022 (HKLM-x32\...\PPRO_22_4) (Version: 22.4 - Adobe Inc.)
AI Suite 3 (HKLM-x32\...\{CD36E28B-6023-469A-91E7-049A2874EC13}) (Version: 3.00.50 - ASUSTeK Computer Inc.)
Audacity 3.1.3 (HKLM\...\Audacity_is1) (Version: 3.1.3 - Audacity Team)
BlueStacks 5 (HKLM\...\BlueStacks_nxt) (Version: 5.7.110.1002 - BlueStack Systems, Inc.)
BlueStacks X (HKU\S-1-5-21-2537962619-3254278163-1973469496-1001\...\BlueStacks X) (Version: 0.15.3.4 - BlueStack Systems, Inc.)
Bonjour (HKLM\...\{56DDDFB8-7F79-4480-89D5-25E1F52AB28F}) (Version: 3.1.0.1 - Apple Inc.)
Boosteroid (HKU\S-1-5-21-2537962619-3254278163-1973469496-1001\...\{80c7de4c-4004-4623-8ed6-5ea0dc57c2db}) (Version: 1.4.13 - Boosteroid Games S.R.L.)
CDBurnerXP (HKLM\...\{7E265513-8CDA-4631-B696-F40D983F3B07}_is1) (Version: 4.5.8.7128 - CDBurnerXP)
CrystalDiskInfo 8.17.0 (HKLM\...\CrystalDiskInfo_is1) (Version: 8.17.0 - Crystal Dew World)
Discord (HKU\S-1-5-21-2537962619-3254278163-1973469496-1001\...\Discord) (Version: 1.0.9004 - Discord Inc.)
Driver4VR (HKLM-x32\...\{4C762769-9622-4345-90A3-B4AA79499A9C}_is1) (Version: 5.1.2.1 - 2MW)
EA app (HKLM\...\{C2622085-ABD2-49E5-8AB9-D3D6A642C091}) (Version: 12.0.229.5212 - Electronic Arts) Hidden
EA app (HKLM-x32\...\{2de7ba3d-371e-44f6-a700-276b6670c131}) (Version: 12.0.229.5212 - Electronic Arts)
Epic Games Launcher (HKLM-x32\...\{FAC47927-1A6A-4C6E-AD7D-E9756794A4BC}) (Version: 1.3.23.0 - Epic Games, Inc.)
Epic Games Launcher Prerequisites (x64) (HKLM\...\{F9C5C994-F6B9-4D75-B3E7-AD01B84073E9}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
Epic Online Services (HKLM-x32\...\{758842D2-1538-4008-A8E3-66F65A061C52}) (Version: 2.0.33.0 - Epic Games, Inc.)
ESET Security (HKLM\...\{A1B1AC12-A547-4F1D-9000-8E30D7929D04}) (Version: 15.2.11.0 - ESET, spol. s r.o.)
Free Download Manager (HKLM\...\{0C1D4CF2-5575-4786-834C-B0FC977E9714}}_is1) (Version: 6.16.2.4586 - Softdeluxe)
Gas Station Simulator (HKLM-x32\...\Gas Station Simulator_is1) (Version: - )
Genshin Impact (HKLM\...\Genshin Impact) (Version: 2.17.1.0 - COGNOSPHERE PTE. LTD.)
Git (HKLM\...\Git_is1) (Version: 2.36.1 - The Git Development Community)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 103.0.5060.134 - Google LLC)
Intel(R) C++ Redistributables on Intel(R) 64 (HKLM-x32\...\{F70BCE36-25F2-4475-A918-6209B3D85BF3}) (Version: 15.0.179 - Intel Corporation)
Intel(R) Chipset Device Software (HKLM\...\{C844CC39-BC28-46CA-8239-3F37D8FE2A59}) (Version: 10.1.17541.8066 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{0F8EB6AE-1DB5-4CDF-8BCE-C118F4B10962}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Components (HKLM\...\{1CEAC85D-2590-4760-800F-8DE5E91F3700}) (Version: 1922.12.0.1276 - Intel Corporation)
Intel(R) Management Engine Components (HKLM\...\{2E192941-1798-4229-B080-8E0A6D54EEBB}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Management Engine Driver (HKLM\...\{A6001EEB-D077-4A1C-9F51-1B7B142A5E45}) (Version: 1.0.0.0 - Intel Corporation) Hidden
Intel(R) Rapid Storage Technology (HKLM\...\{409CB30E-E457-4008-9B1A-ED1B9EA21140}) (Version: 17.5.0.1017 - Intel Corporation)
Intel(R) Rapid Storage Technology (HKLM\...\{F1612379-83A3-4F18-8B9B-7AA4A393E106}) (Version: 17.5.0.1017 - Intel Corporation) Hidden
Intel(R) Trusted Connect Service Client x64 (HKLM\...\{C9552825-7BF2-4344-BA91-D3CD46F4C442}) (Version: 1.55.66.0 - Intel Corporation) Hidden
Intel(R) Trusted Connect Service Client x86 (HKLM-x32\...\{C9552825-7BF2-4344-BA91-D3CD46F4C441}) (Version: 1.55.66.0 - Intel Corporation) Hidden
Intel(R) Trusted Connect Services Client (HKLM-x32\...\{1fec26b5-eeec-4604-877a-44f1843ae9d4}) (Version: 1.55.66.0 - Intel Corporation) Hidden
Intel® Chipset Device Software (HKLM-x32\...\{55d73ea7-6354-42db-8831-02d048ae57f8}) (Version: 10.1.17541.8066 - Intel(R) Corporation) Hidden
Intel® Optane™ Pinning Explorer Extensions (HKLM\...\{7D4998B3-AC68-4815-AC47-5A1969D91E30}) (Version: 17.5.0.1017 - Intel Corporation)
Iriun Webcam version 2.7.5 (HKLM-x32\...\IriunWebcam_is1) (Version: 2.7.5 - Iriun)
Java 8 Update 333 (64-bit) (HKLM\...\{26A24AE4-039D-4CA4-87B4-2F64180333F0}) (Version: 8.0.3330.2 - Oracle Corporation)
Java(TM) SE Development Kit 18.0.1.1 (64-bit) (HKLM\...\{31E89462-2587-5B56-8C7E-28A4D022A32B}) (Version: 18.0.1.1 - Oracle Corporation)
Launcher Prerequisites (x64) (HKLM-x32\...\{43a03b9c-4770-409c-a999-587b60700b63}) (Version: 1.0.0.0 - Epic Games, Inc.) Hidden
League of Legends (HKU\S-1-5-21-2537962619-3254278163-1973469496-1001\...\Riot Game league_of_legends.live) (Version: - Riot Games, Inc)
MadLoader UI v1.1 (HKLM-x32\...\MadLoader UI v1.1) (Version: v1.1 - MadLoader)
MadLoader v1.x.x (HKLM-x32\...\MadLoader v1.x.x) (Version: v1.x.x - madloader.app)
Magic Bullet Suite (HKLM\...\Magic Bullet Suite v15.1.0) (Version: - Maxon Computer GmbH)
Malwarebytes version 4.5.10.200 (HKLM\...\{35065F43-4BB2-439A-BFF7-0F1014F2E0CD}_is1) (Version: 4.5.10.200 - Malwarebytes)
Maxon Cinema 4D 25 (HKLM\...\Maxon Cinema 4D R25) (Version: R25 - Maxon)
Microsoft .NET Core Host - 3.1.16 (x86) (HKLM-x32\...\{5D887DA9-5C68-400F-8948-1CC517CB9A41}) (Version: 24.64.30112 - Microsoft Corporation) Hidden
Microsoft .NET Core Host FX Resolver - 3.1.16 (x86) (HKLM-x32\...\{A0066D67-1765-4066-B260-DD548A154CB5}) (Version: 24.64.30112 - Microsoft Corporation) Hidden
Microsoft .NET Core Runtime - 3.1.16 (x86) (HKLM-x32\...\{876E7C98-9A2F-4644-BD03-7E6253D54EFE}) (Version: 24.64.30112 - Microsoft Corporation) Hidden
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 103.0.1264.62 - Microsoft Corporation)
Microsoft Edge WebView2 Runtime (HKLM-x32\...\Microsoft EdgeWebView) (Version: 103.0.1264.62 - Microsoft Corporation)
Microsoft GameInput (HKLM-x32\...\{A9CFD6A1-C0D3-7F37-C220-8B104867EF15}) (Version: 10.1.22621.1011 - Microsoft Corporation)
Microsoft Office Professional Plus 2016 - cs-cz (HKLM\...\ProplusRetail - cs-cz) (Version: 16.0.7571.2109 - Microsoft Corporation)
Microsoft OneDrive (HKU\S-1-5-21-2537962619-3254278163-1973469496-1001\...\OneDriveSetup.exe) (Version: 22.146.0710.0001 - Microsoft Corporation)
Microsoft Project Professional 2016 - cs-cz (HKLM\...\ProjectProRetail - cs-cz) (Version: 16.0.7571.2109 - Microsoft Corporation)
Microsoft VC++ redistributables repacked. (HKLM\...\{9F2E8997-1B61-4338-BE31-3DB71677AED1}) (Version: 12.0.0.0 - Intel Corporation) Hidden
Microsoft VC++ redistributables repacked. (HKLM-x32\...\{7EDD312A-1342-4A1F-BFCB-4EBCE35ED980}) (Version: 12.0.0.0 - Intel Corporation) Hidden
Microsoft Visio Professional 2016 - cs-cz (HKLM\...\VisioProRetail - cs-cz) (Version: 16.0.7571.2109 - Microsoft Corporation)
Microsoft Visual C++ 2010 x64 Redistributable - 10.0.40219 (HKLM\...\{1D8E6291-B0D5-35EC-8441-6616F567A0F7}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2010 x86 Redistributable - 10.0.40219 (HKLM-x32\...\{F0C3E5D1-1ADE-321E-8167-68EF0DE699A5}) (Version: 10.0.40219 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.61030 (HKLM-x32\...\{ca67548a-5ebe-413a-b50c-4b9ceb6d66c6}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.61030 (HKLM-x32\...\{33d1fd90-4274-48a1-9bc1-97e33d9c2d6f}) (Version: 11.0.61030.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.61030 (HKLM\...\{37B8F9C7-03FB-3253-8781-2517C99D7C00}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.61030 (HKLM\...\{CF2BEA3C-26EA-32F8-AA9B-331F7E34BA97}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.61030 (HKLM-x32\...\{B175520C-86A2-35A7-8619-86DC379688B9}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.61030 (HKLM-x32\...\{BD95A8CD-1D9F-35AD-981A-3E7925026EBB}) (Version: 11.0.61030 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.40664 (HKLM-x32\...\{042d26ef-3dbe-4c25-95d3-4c1b11b235a7}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.30501 (HKLM-x32\...\{f65db027-aff3-4070-886a-0d87064aabb1}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 Redistributable (x86) - 12.0.40664 (HKLM-x32\...\{9dff3540-fc85-4ed5-ac84-9e3c7fd8bece}) (Version: 12.0.40664.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.40664 (HKLM\...\{010792BA-551A-3AC0-A7EF-0FAB4156C382}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.40664 (HKLM\...\{53CF6934-A98D-3D84-9146-FC4EDF3D5641}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Additional Runtime - 12.0.40664 (HKLM-x32\...\{D401961D-3A20-3AC7-943B-6139D5BD490A}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x86 Minimum Runtime - 12.0.40664 (HKLM-x32\...\{8122DAB1-ED4D-3676-BB0A-CA368196543E}) (Version: 12.0.40664 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.28.29913 (HKLM-x32\...\{855e31d2-9031-46e1-b06d-c9d7777deefb}) (Version: 14.28.29913.0 - Microsoft Corporation)
Microsoft Visual C++ 2015-2019 Redistributable (x86) - 14.28.29913 (HKLM-x32\...\{03d1453c-7d5c-479c-afea-8482f406e036}) (Version: 14.28.29913.0 - Microsoft Corporation)
Microsoft Visual C++ 2019 X64 Additional Runtime - 14.28.29913 (HKLM\...\{620A7633-7A09-42A8-8580-076A4483C4B0}) (Version: 14.28.29913 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.28.29913 (HKLM\...\{EECDD137-13DA-46ED-ADA0-BDF7F8BE65B8}) (Version: 14.28.29913 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Additional Runtime - 14.28.29913 (HKLM-x32\...\{572DCD10-CF2E-43D1-8151-8BD9AC9086D0}) (Version: 14.28.29913 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X86 Minimum Runtime - 14.28.29913 (HKLM-x32\...\{6236EBBD-F50F-40B3-B819-8DB0C608308C}) (Version: 14.28.29913 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 3.1.16 (x86) (HKLM-x32\...\{23B1E150-9D20-42E9-ABEA-5F155FE91878}) (Version: 24.64.30112 - Microsoft Corporation) Hidden
Microsoft Windows Desktop Runtime - 3.1.16 (x86) (HKLM-x32\...\{eadb038c-8c60-4258-8cf9-e43e809329a4}) (Version: 3.1.16.30112 - Microsoft Corporation)
Minecraft Launcher (HKLM-x32\...\{37737BD0-9439-44AC-BC27-F19E9A742C96}) (Version: 2.0.0.0 - Mojang)
MorphVOX Pro (HKLM-x32\...\{4bfc0d50-0417-46a0-ab1e-475fb1a90916}) (Version: 4.4.17.22603 - Screaming Bee)
MorphVOX Pro (HKLM-x32\...\{5F075DA5-407B-4F4D-BF2A-922CCA85706A}) (Version: 4.4.17.22603 - Screaming Bee) Hidden
Node.js (HKLM-x32\...\{A7CE394E-719C-47AF-8F6F-04C6F083F928}) (Version: 16.15.1 - Node.js Foundation)
NVIDIA FrameView SDK 1.2.7521.31103277 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_FrameViewSdk) (Version: 1.2.7521.31103277 - NVIDIA Corporation)
NVIDIA GeForce Experience 3.25.1.27 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.GFExperience) (Version: 3.25.1.27 - NVIDIA Corporation)
NVIDIA GeForce NOW 2.0.42.124 (HKU\S-1-5-21-2537962619-3254278163-1973469496-1001\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_GeForceNOW) (Version: 2.0.42.124 - NVIDIA Corporation)
NVIDIA Ovladač HD audia 1.3.39.3 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_HDAudio.Driver) (Version: 1.3.39.3 - NVIDIA Corporation)
NVIDIA Ovladače grafiky 516.40 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.Driver) (Version: 516.40 - NVIDIA Corporation)
NVIDIA Systémový software PhysX 9.21.0713 (HKLM\...\{B2FE1952-0186-46C3-BAEC-A80AA35AC5B8}_Display.PhysX) (Version: 9.21.0713 - NVIDIA Corporation)
NZXT CAM 4.37.1 (HKLM\...\ac0666ae-ee66-5310-ac01-9d6348133b2d) (Version: 4.37.1 - NZXT, Inc.)
OBS Studio (HKLM-x32\...\OBS Studio) (Version: 27.2.4 - OBS Project)
Office 16 Click-to-Run Extensibility Component (HKLM-x32\...\{90160000-008C-0000-0000-0000000FF1CE}) (Version: 16.0.7571.2109 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Extensibility Component 64-bit Registration (HKLM\...\{90160000-00DD-0000-1000-0000000FF1CE}) (Version: 16.0.7571.2109 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Licensing Component (HKLM\...\{90160000-008F-0000-1000-0000000FF1CE}) (Version: 16.0.7571.2109 - Microsoft Corporation) Hidden
Office 16 Click-to-Run Localization Component (HKLM-x32\...\{90160000-008C-0405-0000-0000000FF1CE}) (Version: 16.0.7571.2109 - Microsoft Corporation) Hidden
Origin (HKLM-x32\...\Origin) (Version: 10.5.113.50894 - Electronic Arts, Inc.)
osu! (HKLM-x32\...\{6662d583-98b2-400c-948c-9a04965d10ad}) (Version: latest - ppy Pty Ltd)
PCSX2 - Playstation 2 Emulator (HKLM-x32\...\pcsx2) (Version: 1.6.0 - PCSX2 Team)
PowerShell 7.2.5.0-x64 (HKLM-x32\...\{9d71ada8-ab44-42bb-bee1-ac136a49f1af}) (Version: 7.2.5.0 - Microsoft Corporation)
PowerShell 7-x64 (HKLM\...\{AAD8BFCE-9D62-498B-9606-030031DBE970}) (Version: 7.2.5.0 - Microsoft Corporation) Hidden
PreMiD (HKU\S-1-5-21-2537962619-3254278163-1973469496-1001\...\PreMiD latest) (Version: latest - Timeraa)
PS Remote Play (HKLM-x32\...\{B20F88DD-3B23-4AFD-A3A7-E23E71DD8372}) (Version: 5.0.0.02220 - Sony Interactive Entertainment Inc.)
qBittorrent 4.4.3 (HKLM-x32\...\qBittorrent) (Version: 4.4.3 - The qBittorrent project)
Realtek Ethernet Controller Driver (HKLM-x32\...\{8833FFB6-5B0C-4764-81AA-06DFEED9A476}) (Version: 10.23.1003.2017 - Realtek)
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.8339 - Realtek Semiconductor Corp.)
Riot Vanguard (HKLM\...\Riot Vanguard) (Version: - Riot Games, Inc.)
Roblox Player for cloud (HKU\S-1-5-21-2537962619-3254278163-1973469496-1001\...\roblox-player) (Version: - Roblox Corporation)
RogueKiller version 15.5.3.0 (HKLM\...\8B3D7924-ED89-486B-8322-E8594065D5CB_is1) (Version: 15.5.3.0 - Adlice Software)
Sophos Virus Removal Tool (HKLM-x32\...\{B829E117-D072-41EA-9606-9826A38D34C1}) (Version: 2.9.0 - Sophos Limited)
Steam (HKLM-x32\...\Steam) (Version: 2.10.91.91 - Valve Corporation)
TeamSpeak (HKLM\...\{C9D97E1E-B188-4500-A87D-902530E0D1E0}) (Version: 5.0.0 - TeamSpeak)
TeamViewer (HKLM\...\TeamViewer) (Version: 15.30.3 - TeamViewer)
Total Commander 64-bit (Remove or Repair) (HKLM\...\Totalcmd64) (Version: 10.00 - Ghisler Software GmbH)
Ubisoft Connect (HKLM-x32\...\Uplay) (Version: 130.1.10657 - Ubisoft)
UXP WebView Support (HKLM-x32\...\UXPW_1_1_0) (Version: 1.1.0 - Adobe Inc.)
VLC media player (HKLM\...\VLC media player) (Version: 3.0.17.4 - VideoLAN)
Windscribe (HKLM-x32\...\{fa690e90-ddb0-4f0c-b3f1-136c084e5fc7}_is1) (Version: 2.4.10 - Windscribe Limited)
WinRAR 6.11 (64-bit) (HKLM\...\WinRAR archiver) (Version: 6.11.0 - win.rar GmbH)
WinSCP 5.19.6 (HKLM-x32\...\winscp3_is1) (Version: 5.19.6 - Martin Prikryl)
YouTube Music Desktop App 1.13.0 (HKU\S-1-5-21-2537962619-3254278163-1973469496-1001\...\afca255d-79c9-539f-84c6-b3a7619889d5) (Version: 1.13.0 - Adler Luiz)
Zemana AntiMalware verze 3.2.28 (HKLM-x32\...\{4E1F3677-C72E-4F7D-B66E-85467B1A289E}_is1) (Version: 3.2.28 - Zemana)

Packages:
=========
Acrobat Notification Client -> C:\Program Files\WindowsApps\AcrobatNotificationClient_1.0.4.0_x86__e1rzdqpraam7r [2022-06-02] (Adobe Systems Incorporated)
Adobe Notification Client -> C:\Program Files\WindowsApps\AdobeNotificationClient_3.0.1.1_x86__enpm4xejd91yc [2022-06-02] (Adobe Systems Incorporated)
Clipchamp -> C:\Program Files\WindowsApps\Clipchamp.Clipchamp_2.4.1.0_neutral__yxz26nhyzhsrt [2022-07-21] (Microsoft Corp.)
ESET Context Menu -> C:\Program Files\ESET\ESET Security [2022-07-21] (0)
Microsoft Family -> C:\Program Files\WindowsApps\MicrosoftCorporationII.MicrosoftFamily_0.1.28.0_x64__8wekyb3d8bbwe [2022-06-18] (Microsoft Corp.)
Microsoft Midi gm.dls -> C:\Program Files\WindowsApps\Microsoft.Midi.GmDls_1.0.1.0_neutral__8wekyb3d8bbwe [2022-07-08] (Microsoft Platform Extensions)
Microsoft Solitaire Collection -> C:\Program Files\WindowsApps\Microsoft.MicrosoftSolitaireCollection_4.13.7040.0_x64__8wekyb3d8bbwe [2022-07-08] (Microsoft Studios) [MS Ad]
ms-resource:APP_WINDOW_NAME -> C:\Program Files\WindowsApps\MicrosoftCorporationII.QuickAssist_2.0.7.0_x64__8wekyb3d8bbwe [2022-06-26] (Microsoft Corp.)
ms-resource:AppStoreName -> C:\Program Files\WindowsApps\Microsoft.RawImageExtension_2.1.31392.0_x64__8wekyb3d8bbwe [2022-06-19] (Microsoft Corporation)
ms-resource:AppStoreNamePre -> C:\Program Files\WindowsApps\Microsoft.WindowsTerminalPreview_1.15.2003.0_x64__8wekyb3d8bbwe [2022-07-20] (Microsoft Corporation) [Startup Task]
ms-resource:AppxManifest_DisplayName -> C:\Windows\SystemApps\Microsoft.Windows.PrintQueueActionCenter_cw5n1h2txyewy [2022-07-21] (Microsoft Corporation)
ms-resource:ProductPkgDisplayName -> C:\Windows\SystemApps\MicrosoftWindows.Client.39072097_cw5n1h2txyewy [2022-07-21] (Microsoft Windows)
ms-resource:WsaDisplayName -> G:\WindowsSubsystemAndroid [2022-06-02] (Microsoft Corp.) [Startup Task]
NVIDIA Control Panel -> C:\Program Files\WindowsApps\NVIDIACorp.NVIDIAControlPanel_8.1.962.0_x64__56jybvy8sckqj [2022-06-19] (NVIDIA Corp.)
PowerShell -> C:\Program Files\WindowsApps\Microsoft.PowerShell_7.2.5.0_x64__8wekyb3d8bbwe [2022-06-22] (Microsoft Corporation)
PowerShell Preview -> C:\Program Files\WindowsApps\Microsoft.PowerShellPreview_7.3.6.0_x64__8wekyb3d8bbwe [2022-07-20] (Microsoft Corporation)
Speedtest by Ookla -> C:\Program Files\WindowsApps\Ookla.SpeedtestbyOokla_1.15.163.0_x64__43tkc6nmykmb6 [2022-06-02] (Ookla)
Windows Feature Experience Pack -> C:\Windows\SystemApps\MicrosoftWindows.Client.Core_cw5n1h2txyewy [2022-07-21] (Microsoft Windows)
WindowsAppRuntime.Inbox.1.1 -> C:\Windows\SystemApps\WindowsAppRuntime.Inbox.1.1_8wekyb3d8bbwe [2022-07-21] (Microsoft Corporation)
WinRAR -> C:\Program Files\WinRAR [2022-06-02] (0)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-2537962619-3254278163-1973469496-1001_Classes\CLSID\{0E270DAA-1BE6-48F2-AC49-60208922320A} -> [Creative Cloud Files] => C:\Users\cloud\Creative Cloud Files [2022-06-25 09:03]
CustomCLSID: HKU\S-1-5-21-2537962619-3254278163-1973469496-1001_Classes\CLSID\{2F81B25E-7507-4844-BFF2-77D2CC24CED4}\localserver32 -> C:\Program Files\Adobe\Adobe Creative Cloud\ACC\Creative Cloud.exe (Adobe Inc. -> Adobe Inc.)
CustomCLSID: HKU\S-1-5-21-2537962619-3254278163-1973469496-1001_Classes\CLSID\{5C4D8D77-5B87-40CA-884E-F56858227E5C}\localserver32 -> C:\Program Files\TeamSpeak\notification_helper.exe => No File
CustomCLSID: HKU\S-1-5-21-2537962619-3254278163-1973469496-1001_Classes\CLSID\{e8c77137-e224-5791-b6e9-ff0305797a13}\InprocServer32 -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll (Adobe Inc. -> Adobe Systems)
ShellIconOverlayIdentifiers: [ AccExtIco1] -> {AB9CF9F8-8A96-4F9D-BF21-CE85714C3A47} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2022-05-24] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco2] -> {853B7E05-C47D-4985-909A-D0DC5C6D7303} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2022-05-24] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ AccExtIco3] -> {42D38F2E-98E9-4382-B546-E24E4D6D04BB} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2022-05-24] (Adobe Inc. -> )
ShellIconOverlayIdentifiers: [ OptaneIconOverlay] -> {A3AF6F6C-8BED-3D93-8B5D-33427B5D38E9} => C:\Program Files\Intel\OptaneShellExtensions\OptaneShellExt.dll [2019-05-09] (Intel(R) Rapid Storage Technology -> )
ContextMenuHandlers1: [2.0 Zemana AntiMalware] -> {6ABB1C11-E261-4CEA-BBB5-3836225689DD} => C:\Program Files (x86)\Zemana\AntiMalware\AM_ShellExt64.dll [2021-03-30] (Zemana D.O.O. Sarajevo -> Advanced Malware Protection. Copyright 2019.)
ContextMenuHandlers1: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2022-05-24] (Adobe Inc. -> )
ContextMenuHandlers1: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2020-03-06] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers1: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2022-06-21] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers2: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2022-06-21] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers2-x32: [VMDiskMenuHandler] -> {271DC252-6FE1-4D59-9053-E4CF50AB99DE} => G:\VMware\vmdkShellExt.dll [2022-02-18] (VMware, Inc. -> VMware, Inc.)
ContextMenuHandlers2: [VMDiskMenuHandler64] -> {E4D28EDC-8C0B-43EE-9E7D-C8A8682334DC} => G:\VMware\x64\vmdkShellExt64.dll [2022-02-18] (VMware, Inc. -> VMware, Inc.)
ContextMenuHandlers3: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2022-06-11] (Malwarebytes Inc. -> Malwarebytes)
ContextMenuHandlers3: [OptaneContextMenu] -> {AD7EBB13-617D-3270-8FA8-46583499C4FB} => C:\Program Files\Intel\OptaneShellExtensions\OptaneShellExt.dll [2019-05-09] (Intel(R) Rapid Storage Technology -> )
ContextMenuHandlers5: [NvCplDesktopContext] -> {3D1975AF-48C6-4f8e-A182-BE0E08FA86A9} => C:\WINDOWS\System32\DriverStore\FileRepository\nvmdi.inf_amd64_a217ec383447d0ea\nvshext.dll [2022-06-08] (Nvidia Corporation -> NVIDIA Corporation)
ContextMenuHandlers6: [2.0 Zemana AntiMalware] -> {6ABB1C11-E261-4CEA-BBB5-3836225689DD} => C:\Program Files (x86)\Zemana\AntiMalware\AM_ShellExt64.dll [2021-03-30] (Zemana D.O.O. Sarajevo -> Advanced Malware Protection. Copyright 2019.)
ContextMenuHandlers6: [AccExt] -> {2A118EB5-5797-4F5E-8B3D-F4ECBA3C98E4} => C:\Program Files (x86)\Common Files\Adobe\CoreSyncExtension\CoreSync_x64.dll [2022-05-24] (Adobe Inc. -> )
ContextMenuHandlers6: [Adobe.Acrobat.ContextMenu] -> {A6595CD1-BF77-430A-A452-18696685F7C7} => C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat Elements\ContextMenuShim64.dll [2020-03-06] (Adobe Inc. -> Adobe Systems Inc.)
ContextMenuHandlers6: [ESET Security Shell] -> {B089FE88-FB52-11D3-BDF1-0050DA34150D} => C:\Program Files\ESET\ESET Security\shellExt.dll [2022-06-21] (ESET, spol. s r.o. -> ESET)
ContextMenuHandlers6: [MBAMShlExt] -> {57CE581A-0CB6-4266-9CA0-19364C90A0B3} => C:\Program Files\Malwarebytes\Anti-Malware\mbshlext.dll [2022-06-11] (Malwarebytes Inc. -> Malwarebytes)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

2022-07-19 07:45 - 2022-07-18 19:11 - 001569280 _____ () [File not signed] \\?\C:\Program Files\NZXT CAM\resources\app.asar.unpacked\node_modules\@nzxt\rust-cam\dist\target\x86_64-pc-windows-msvc\release\CTITSDKDeviceTool.dll
2015-03-17 06:34 - 2015-03-17 06:34 - 000010240 _____ () [File not signed] C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\locale\cs_cz\acrotray.cze
2022-05-22 18:48 - 2019-03-22 22:45 - 000147456 _____ () [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\AssistFunc.dll
2022-05-22 19:00 - 2019-03-28 14:51 - 000365568 _____ () [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DIPDLL\DIP4cTDPAction.dll
2022-05-22 19:00 - 2019-03-28 14:51 - 000882688 _____ () [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DIPDLL\DIP4DIGIPowerControlAction.dll
2022-05-22 19:00 - 2019-03-28 14:51 - 000991744 _____ () [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DIPDLL\DIP4EpuAction.dll
2022-05-22 19:00 - 2019-03-28 14:51 - 000986624 _____ () [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DIPDLL\DIP4FanAction.dll
2022-05-22 19:00 - 2019-03-28 14:51 - 000948224 _____ () [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\DIP4\DIPAwayMode\DIPDLL\DIP4TurboVEVOAction.dll
2022-05-22 18:59 - 2019-03-22 22:52 - 001556480 _____ () [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\DIP4\EPU.dll
2022-05-22 19:00 - 2019-03-22 22:52 - 005665280 _____ () [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\DIP4\FanInfofromProtocol.dll
2022-05-22 18:48 - 2019-03-29 14:58 - 001161216 _____ () [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EasyUpdt.dll
2022-05-22 18:48 - 2019-03-22 18:22 - 005839040 _____ () [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\EzULIB.dll
2022-05-22 18:48 - 2019-03-22 18:22 - 000208896 _____ () [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\ImageHelper.dll
2022-05-22 18:48 - 2019-03-22 18:22 - 000681984 _____ () [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\EZ Update\UIImprovmentHelper.dll
2022-05-22 18:59 - 2019-03-28 05:29 - 006065152 _____ () [File not signed] C:\Program Files (x86)\ASUS\AsusFanControlService\2.00.75\libprotobufd.dll
2022-05-22 18:48 - 2019-03-28 09:20 - 000242176 _____ () [File not signed] C:\Program Files (x86)\ASUS\AXSP\4.00.36\cpuutil.dll
2022-05-22 18:59 - 2019-03-14 06:00 - 000065536 _____ () [File not signed] C:\Program Files (x86)\ASUS\VGA COM\2.00.03\Exeio.dll
2022-05-22 18:59 - 2019-03-14 06:00 - 001774592 _____ () [File not signed] C:\Program Files (x86)\ASUS\VGA COM\2.00.03\Vender.dll
2022-05-22 18:33 - 2022-03-04 04:23 - 126965248 _____ () [File not signed] C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\libcef.dll
2022-05-22 18:33 - 2021-11-17 13:38 - 000384000 _____ () [File not signed] C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\libegl.dll
2022-05-22 18:33 - 2021-11-17 13:38 - 008006656 _____ () [File not signed] C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\libglesv2.dll
2022-07-19 07:45 - 2022-07-18 19:11 - 002725376 _____ () [File not signed] C:\Program Files\NZXT CAM\ffmpeg.dll
2022-07-19 07:45 - 2022-07-18 19:11 - 000447488 _____ () [File not signed] C:\Program Files\NZXT CAM\libegl.dll
2022-07-19 07:45 - 2022-07-18 19:11 - 006985216 _____ () [File not signed] C:\Program Files\NZXT CAM\libglesv2.dll
2020-03-06 06:11 - 2020-03-06 06:11 - 000021504 _____ (Adobe Systems Inc.) [File not signed] C:\Program Files (x86)\Adobe\Acrobat DC\Acrobat\locale\cs_cz\Acrobat Elements\ContextMenuShim64.cze
2022-05-22 18:48 - 2019-03-22 22:45 - 000108544 _____ (ASUS) [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\AsAcpi.dll
2022-05-22 18:48 - 2019-03-22 22:45 - 000676864 _____ (ASUSTeK Computer Inc.) [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\asacpiEx.dll
2022-05-22 18:48 - 2019-03-22 22:45 - 000221184 _____ (ASUSTeK Computer Inc.) [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\AsMultiLang.dll
2022-05-22 18:59 - 2019-03-22 22:52 - 000221184 _____ (ASUSTeK Computer Inc.) [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\DIP4\AsMultiLang.dll
2022-05-22 18:59 - 2019-03-14 06:00 - 000106496 _____ (ASUSTek Computer Inc.,) [File not signed] C:\Program Files (x86)\ASUS\VGA COM\2.00.03\EIO.DLL
2022-07-19 07:45 - 2022-07-18 19:11 - 002391552 _____ (CPUID) [File not signed] C:\Program Files\NZXT CAM\resources\app.asar.unpacked\node_modules\@nzxt\rust-cam\dist\common\cpuid\cpuidsdk64.dll
2022-07-19 07:45 - 2022-07-18 19:11 - 000083456 _____ (Silicon Laboratories, Inc.) [File not signed] C:\Program Files\NZXT CAM\resources\app.asar.unpacked\node_modules\@nzxt\rust-cam\dist\nzxt-device\SiUSBXp64.dll
2022-05-22 18:33 - 2022-03-04 04:23 - 000983552 _____ (The Chromium Authors) [File not signed] C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\chrome_elf.dll
2022-05-22 18:54 - 2022-05-22 18:54 - 001282048 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Origin\LIBEAY32.dll
2022-05-22 18:55 - 2022-05-22 18:54 - 000279040 _____ (The OpenSSL Project, hxxp://www.openssl.org/) [File not signed] C:\Program Files (x86)\Origin\ssleay32.dll
2022-05-22 18:54 - 2022-05-22 18:54 - 001611264 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\platforms\qwindows.dll
2022-06-13 11:42 - 2022-05-22 18:54 - 005487104 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Core.dll
2022-06-13 11:42 - 2022-05-22 18:54 - 005841920 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Gui.dll
2022-06-13 11:42 - 2022-05-22 18:54 - 001179136 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Network.dll
2022-06-13 11:42 - 2022-05-22 18:54 - 000146432 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5WebSockets.dll
2022-06-13 11:42 - 2022-05-22 18:54 - 005089792 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Widgets.dll
2022-06-13 11:42 - 2022-05-22 18:54 - 000184832 _____ (The Qt Company Ltd) [File not signed] C:\Program Files (x86)\Origin\Qt5Xml.dll
2022-05-22 18:48 - 2019-03-22 22:45 - 000078336 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\AsPowerBar\imageformats\qgifd.dll
2022-05-22 18:48 - 2019-03-22 22:45 - 000102400 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\AsPowerBar\imageformats\qicnsd.dll
2022-05-22 18:48 - 2019-03-22 22:45 - 000079360 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\AsPowerBar\imageformats\qicod.dll
2022-05-22 18:48 - 2019-03-22 22:45 - 000668160 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\AsPowerBar\imageformats\qjpegd.dll
2022-05-22 18:48 - 2019-03-22 22:45 - 000062976 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\AsPowerBar\imageformats\qsvgd.dll
2022-05-22 18:48 - 2019-03-22 22:45 - 000062464 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\AsPowerBar\imageformats\qtgad.dll
2022-05-22 18:48 - 2019-03-22 22:45 - 000654848 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\AsPowerBar\imageformats\qtiffd.dll
2022-05-22 18:48 - 2019-03-22 22:45 - 000060416 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\AsPowerBar\imageformats\qwbmpd.dll
2022-05-22 18:48 - 2019-03-22 22:45 - 000927744 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\AsPowerBar\imageformats\qwebpd.dll
2022-05-22 18:48 - 2019-03-22 22:45 - 003420672 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\AsPowerBar\platforms\qwindowsd.dll
2022-05-22 18:48 - 2019-03-22 22:45 - 010995712 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\AsPowerBar\Qt5Cored.dll
2022-05-22 18:48 - 2019-03-22 22:45 - 011535360 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\AsPowerBar\Qt5Guid.dll
2022-05-22 18:48 - 2019-03-22 22:45 - 000568320 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\AsPowerBar\Qt5Svgd.dll
2022-05-22 18:48 - 2019-03-22 22:45 - 009089024 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\AsPowerBar\Qt5Widgetsd.dll
2022-05-22 18:48 - 2019-03-22 22:45 - 000312832 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\AsPowerBar\Qt5Xmld.dll
2022-05-22 18:48 - 2019-03-22 22:45 - 000303616 _____ (The Qt Company Ltd.) [File not signed] C:\Program Files (x86)\ASUS\AI Suite III\AsPowerBar\styles\qwindowsvistastyled.dll
2022-05-25 11:24 - 2022-05-16 12:33 - 005979824 _____ (The Qt Company Oy -> The Qt Company Ltd.) [File not signed] C:\Program Files\Softdeluxe\Free Download Manager\Qt5Core.dll
2022-05-22 18:59 - 2019-03-14 06:00 - 000193536 _____ (TODO: <Company name>) [File not signed] [File is in use] C:\Program Files (x86)\ASUS\VGA COM\2.00.03\AsusGpuTweak.dll

==================== Alternate Data Streams (Whitelisted) ========

(If an entry is included in the fixlist, only the ADS will be removed.)

AlternateDataStreams: C:\$SysReset:err [1942]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\NZXT CAM.lnk:AB04221C49 [3306]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak.lnk:DBB58A0286 [3306]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinSCP.lnk:BC82825F04 [3306]
AlternateDataStreams: C:\ProgramData\Microsoft\Windows\Start Menu\Programs\WinSCP.lnk:DF0424E24D [3306]
AlternateDataStreams: C:\Users\Public\Shared Files:VersionCache [10650]

==================== Safe Mode (Whitelisted) ==================

(If an entry is included in the fixlist, it will be removed from the registry. The "AlternateShell" will be restored.)

HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\HidSpiCx.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\TextInputManagementService => ""="Service"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{5099944A-F6B9-4057-A056-8C550228544C} => ""="Memory"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\{5099944A-F6B9-4057-A056-8C550228544C} => "SafeBootDrivers"="1"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\HidSpiCx.sys => ""="Driver"
HKLM\SYSTEM\CurrentControlSet\Control\SafeBoot\Network\TextInputManagementService => ""="Service"

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========

BHO: Lync Browser Helper -> {31D09BA0-12F5-4CCE-BE8A-2923E76605DA} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\OCHelper.dll [2022-07-13] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In SSV Helper -> {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} -> C:\Program Files\Java\jre1.8.0_333\bin\ssv.dll [2022-05-23] (Oracle America, Inc. -> Oracle Corporation)
BHO: Adobe Acrobat Create PDF Helper -> {AE7CD045-E861-484f-8273-0445EE161910} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2020-03-06] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
BHO: Microsoft OneDrive for Business Browser Helper -> {D0498E0A-45B7-42AE-A9AA-ABA463DBD3BF} -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX64\Microsoft Office\Office16\GROOVEEX.DLL [2022-07-13] (Microsoft Corporation -> Microsoft Corporation)
BHO: Java(tm) Plug-In 2 SSV Helper -> {DBC80044-A445-435b-BC74-9C25C1C588A9} -> C:\Program Files\Java\jre1.8.0_333\bin\jp2ssv.dll [2022-05-23] (Oracle America, Inc. -> Oracle Corporation)
BHO: Adobe Acrobat Create PDF from Selection -> {F4971EE7-DAA0-4053-9964-665D8EE6A077} -> C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2020-03-06] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\x64\AcroIEFavStub.dll [2020-03-06] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Toolbar: HKLM-x32 - Adobe Acrobat Create PDF Toolbar - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\WCIEActiveX\DC\AcroIEFavStub.dll [2020-03-06] (Adobe Systems, Incorporated -> Adobe Systems Incorporated)
Handler-x32: mso-minsb-roaming.16 - {83C25742-A9F7-49FB-9138-434302C88D07} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-07-13] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: mso-minsb.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-07-13] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf-roaming.16 - {42089D2D-912D-4018-9087-2B87803E93FB} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-07-13] (Microsoft Corporation -> Microsoft Corporation)
Handler-x32: osf.16 - {5504BE45-A83B-4808-900A-3A5C36E7F77A} - C:\Program Files (x86)\Microsoft Office\root\Office16\MSOSB.DLL [2022-07-13] (Microsoft Corporation -> Microsoft Corporation)

==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2022-07-21 18:10 - 2022-07-21 18:10 - 000000813 _____ C:\WINDOWS\system32\drivers\etc\hosts
127.0.0.1 localhost

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> %INTEL_DEV_REDIST%redist\intel64\compiler;G:\VMware\bin\;C:\Program Files\Common Files\Oracle\Java\javapath;C:\Program Files (x86)\Common Files\Oracle\Java\javapath;C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\WINDOWS\System32\WindowsPowerShell\v1.0\;C:\WINDOWS\System32\OpenSSH\;C:\Program Files (x86)\NVIDIA Corporation\PhysX\Common;C:\Program Files\NVIDIA Corporation\NVIDIA NvDLISR;C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files\Intel\Intel(R) Management Engine Components\DAL;C:\Program Files (x86)\nodejs\;C:\Program Files\Git\cmd;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\;C:\Program Files (x86)\dotnet\;C:\Program Files\PowerShell\7\
HKU\S-1-5-21-2537962619-3254278163-1973469496-1001\Control Panel\Desktop\\Wallpaper -> F:\8789.jpg
DNS Servers: 192.168.1.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 5) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer => (SmartScreenEnabled: )
Windows Firewall is enabled.

Network Binding:
=============
VMware Network Adapter VMnet8: VMware Bridge Protocol -> vmware_bridge (disabled)
Síťové připojení Bluetooth: VMware Bridge Protocol -> vmware_bridge (enabled)
Ethernet: VMware Bridge Protocol -> vmware_bridge (enabled)
Připojení k místní síti 2: VMware Bridge Protocol -> vmware_bridge (enabled)
Wi-Fi: VMware Bridge Protocol -> vmware_bridge (enabled)
VMware Network Adapter VMnet1: VMware Bridge Protocol -> vmware_bridge (disabled)
Připojení k místní síti: VMware Bridge Protocol -> vmware_bridge (enabled)

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run32: => "Adobe CCXProcess"
HKLM\...\StartupApproved\Run32: => "Adobe Creative Cloud"
HKLM\...\StartupApproved\Run32: => "SunJavaUpdateSched"
HKLM\...\StartupApproved\Run32: => "vmware-tray.exe"
HKU\S-1-5-21-2537962619-3254278163-1973469496-1001\...\StartupApproved\Run: => "EpicGamesLauncher"
HKU\S-1-5-21-2537962619-3254278163-1973469496-1001\...\StartupApproved\Run: => "MicrosoftEdgeAutoLaunch_2DAF28B6021E59E6F82CC77AC0311070"
HKU\S-1-5-21-2537962619-3254278163-1973469496-1001\...\StartupApproved\Run: => "OneDrive"
HKU\S-1-5-21-2537962619-3254278163-1973469496-1001\...\StartupApproved\Run: => "EADM"
HKU\S-1-5-21-2537962619-3254278163-1973469496-1001\...\StartupApproved\Run: => "Steam"
HKU\S-1-5-21-2537962619-3254278163-1973469496-1001\...\StartupApproved\Run: => "Free Download Manager"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{9B45E4F1-496F-466E-B5D5-37888E497D4A}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [{4680FAE0-35A1-43C6-A5EC-A7DC531618E8}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.86.3409.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{7C4E54BD-4116-435F-937A-4B0537653B85}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.86.3409.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{1686CE99-EF79-46F2-8845-EFDA37A97E02}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.86.3409.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{37A850EE-ED5D-4429-9DAF-FEF2E559AC72}] => (Allow) C:\Program Files\WindowsApps\Microsoft.SkypeApp_15.86.3409.0_x86__kzf8qxf38zg5c\Skype\Skype.exe (Skype Software Sarl -> Skype Technologies S.A.)
FirewallRules: [{EB196973-7102-434A-A8A2-01A16B142F52}] => (Allow) E:4\SteamLibrary\steamapps\common\Business Tour\BusinessTour.exe => No File
FirewallRules: [{2712D75C-F873-4521-9A8A-B75B3BE7A025}] => (Allow) E:4\SteamLibrary\steamapps\common\Business Tour\BusinessTour.exe => No File
FirewallRules: [{CEBD1FA0-90DA-4317-AE3E-E37A07FC65B8}] => (Allow) C:\Program Files (x86)\Microsoft\EdgeWebView\Application\103.0.1264.62\msedgewebview2.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{9580B908-5D3B-42FC-A668-F18B97A76275}] => (Allow) E:4\SteamLibrary\steamapps\common\Team Fortress 2\hl2.exe => No File
FirewallRules: [{E97682FA-540F-43F2-A6C5-E6E56B5C4618}] => (Allow) E:4\SteamLibrary\steamapps\common\Team Fortress 2\hl2.exe => No File
FirewallRules: [{5E330061-14AA-47DA-AF71-F32A0B513941}] => (Allow) E:4\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe => No File
FirewallRules: [{D56C76C4-15A3-4A0A-B56F-ADA358C16895}] => (Allow) E:4\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe => No File
FirewallRules: [{A6622669-9622-401F-852A-5E19A574ACD6}] => (Allow) C:\Program Files (x86)\Microsoft Office\root\Office16\outlook.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{0A16B767-BE2C-4EFA-BCE3-278589FBE5E3}] => (Allow) E:4\SteamLibrary\steamapps\common\SCP Secret Laboratory\SCPSL.exe => No File
FirewallRules: [{CF2470BC-5809-4DE9-B13A-F68B1AC4CDBE}] => (Allow) E:4\SteamLibrary\steamapps\common\SCP Secret Laboratory\SCPSL.exe => No File
FirewallRules: [{46C26B3C-187F-454F-9845-5514CB4A9108}] => (Allow) E:4\SteamLibrary\steamapps\common\Whos Your Daddy\Classic\WhosYourDaddy.exe => No File
FirewallRules: [{A611809C-A5D2-44B1-A045-C3D29FD7A93E}] => (Allow) E:4\SteamLibrary\steamapps\common\Whos Your Daddy\Classic\WhosYourDaddy.exe => No File
FirewallRules: [{AB70522F-5BB7-4D6E-8A47-FB7E50E1AD85}] => (Allow) E:4\SteamLibrary\steamapps\common\Whos Your Daddy\Remake\WhosYourDaddy.exe => No File
FirewallRules: [{80F398B1-89B7-4481-BBC1-7EF0CA7F899D}] => (Allow) E:4\SteamLibrary\steamapps\common\Whos Your Daddy\Remake\WhosYourDaddy.exe => No File
FirewallRules: [{78DDADBA-1911-4E5C-9358-6BC290380D83}] => (Allow) E:4\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe => No File
FirewallRules: [{0250F861-33C5-4872-B01F-428D8DF4E99B}] => (Allow) E:4\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe => No File
FirewallRules: [{D9518903-8BF2-4734-850B-D7DF5C49BE53}] => (Allow) E:4\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe => No File
FirewallRules: [{69176D2F-90A2-4930-B484-5439A0C6A2C8}] => (Allow) E:4\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe => No File
FirewallRules: [{7D4CB40F-FF4B-4818-A6C9-FA8D17B1B4E9}] => (Allow) E:4\SteamLibrary\steamapps\common\Left 4 Dead 2\left4dead2.exe => No File
FirewallRules: [{7FA9B81B-A7EA-479B-86C2-AB81430B47AF}] => (Allow) E:4\SteamLibrary\steamapps\common\Left 4 Dead 2\left4dead2.exe => No File
FirewallRules: [{48E1CA14-1731-475C-BB5A-B1F180AE1605}] => (Allow) E:4\SteamLibrary\steamapps\common\Half-Life\hl.exe => No File
FirewallRules: [{D8FC5568-E578-4574-AFA1-48605DFAD321}] => (Allow) E:4\SteamLibrary\steamapps\common\Half-Life\hl.exe => No File
FirewallRules: [{9777669D-ACD6-4502-8592-E025EA5641E0}] => (Allow) E:4\SteamLibrary\steamapps\common\Poppy Playtime\PlaytimeLauncher\PlaytimeLauncher.exe => No File
FirewallRules: [{4BD12020-C45B-46AF-A2C5-1E8817484042}] => (Allow) E:4\SteamLibrary\steamapps\common\Poppy Playtime\PlaytimeLauncher\PlaytimeLauncher.exe => No File
FirewallRules: [{7AE1FD80-697E-4E0D-8F52-6A7A75724463}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_22168.200.1405.7434_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{F749D2A0-0D9D-496F-BCDE-763760CC8E34}] => (Allow) C:\Program Files\WindowsApps\MicrosoftTeams_22168.200.1405.7434_x64__8wekyb3d8bbwe\msteams.exe (Microsoft Corporation -> Microsoft Corporation)
FirewallRules: [{C0B650C7-F7DA-47A1-9E59-B7C1D009E026}] => (Allow) E:4\SteamLibrary\steamapps\common\Dead by Daylight\DeadByDaylight.exe => No File

Uživatelský avatar
AngelikaB
Level 6
Level 6
Příspěvky: 3135
Registrován: červen 13
Pohlaví: Žena
Stav:
Offline

Re: Kontrola počítače z důvodu občasných záseků

Příspěvekod AngelikaB » 21 črc 2022 19:23

FirewallRules: [{6AC43A39-A743-4A9D-9648-3B62349A20B0}] => (Allow) E:4\SteamLibrary\steamapps\common\Dead by Daylight\DeadByDaylight.exe => No File
FirewallRules: [{607A91C3-5351-40C7-863E-6DF63A00CA0A}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SteamVR\tools\steamvr_environments\game\bin\win64\steamtourscfg.exe (Valve -> )
FirewallRules: [{50B38797-7AA0-49EA-9F59-39F748865839}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SteamVR\tools\steamvr_environments\game\bin\win64\steamtourscfg.exe (Valve -> )
FirewallRules: [{4F03938E-5E99-4A8D-8F64-C0B1D5194E92}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SteamVR\tools\steamvr_environments\game\bin\win64\steamtours.exe (Valve -> )
FirewallRules: [{4205569F-3EAA-4D6D-9BE8-79A5F21F6304}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SteamVR\tools\steamvr_environments\game\bin\win64\steamtours.exe (Valve -> )
FirewallRules: [{2F1DD942-B98C-4AF4-A1BA-B618CB50D567}] => (Block) C:\Program Files (x86)\Driver4VR\Driver4VR.exe (Grzegorz Bednarski -> Grzegorz Bednarski @ 2MW)
FirewallRules: [{111642D7-BAB8-4AF8-8D79-E2EF31995C06}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SteamVR\bin\win32\vrstartup.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{92369406-E3ED-4745-B399-D1577D6750C0}] => (Allow) C:\Program Files (x86)\Steam\steamapps\common\SteamVR\bin\win32\vrstartup.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{98918B8E-B5C0-409A-84AC-322BB960DA41}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{CB7D4F69-5623-4DFC-B7C9-14234853776D}] => (Allow) C:\Program Files (x86)\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{7CE002E6-9BAD-4A73-B2A4-3F96C853E23D}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{9C6AE289-949A-4602-9200-098E9E19BD3A}] => (Allow) C:\Program Files\Bonjour\mDNSResponder.exe (Apple Inc. -> Apple Inc.)
FirewallRules: [{B58377CD-65F0-4010-878B-0B79C01659E0}] => (Allow) C:\Program Files\Boosteroid Games S.R.L\Boosteroid\Bin\Boosteroid.exe (Boosteroid Europe, LTD -> Boosteroid Games S.R.L.)
FirewallRules: [{4DE72C1B-7437-4E1E-B317-8EF4CAC2A0FD}] => (Allow) D:\SteamLibrary\steamapps\common\Lost Ark\Binaries\Win64\Launch_Game.exe => No File
FirewallRules: [{F6B0DF3F-87CD-4819-AC1D-D6D9A9271945}] => (Allow) D:\SteamLibrary\steamapps\common\Lost Ark\Binaries\Win64\Launch_Game.exe => No File
FirewallRules: [{1F442B4D-ED80-49F4-AFD9-239657E806C3}] => (Allow) E:4\SteamLibrary\steamapps\common\CSNZ\Bin\cstrike-online.exe => No File
FirewallRules: [{4E8CFE22-51EF-4A3F-9E80-1ECECFD4EC38}] => (Allow) E:4\SteamLibrary\steamapps\common\CSNZ\Bin\cstrike-online.exe => No File
FirewallRules: [{6D3D451B-C3FB-43AB-A206-B9FE415F3216}] => (Allow) E:4\SteamLibrary\steamapps\common\iVRy\bin\win64\StartSteamVR.exe => No File
FirewallRules: [{A42F1443-4544-4868-82F7-58BFAD0369D2}] => (Allow) E:4\SteamLibrary\steamapps\common\iVRy\bin\win64\StartSteamVR.exe => No File
FirewallRules: [{0861DB30-DD6F-4B09-A96D-311DBB21EE5A}] => (Allow) E:4\SteamLibrary\steamapps\common\Unturned\Unturned.exe => No File
FirewallRules: [{2C4F88FF-C969-4944-9DCB-7A6B6DFE8F36}] => (Allow) E:4\SteamLibrary\steamapps\common\Unturned\Unturned.exe => No File
FirewallRules: [{EAE9C641-A325-428F-8021-EBA261DA4D77}] => (Allow) E:4\SteamLibrary\steamapps\common\Unturned\Unturned_BE.exe => No File
FirewallRules: [{5232AC07-1A2E-43FF-A836-35AEE1A6AB80}] => (Allow) E:4\SteamLibrary\steamapps\common\Unturned\Unturned_BE.exe => No File
FirewallRules: [{0DE2FC6B-EAF2-4A16-8023-9AA2FE245704}] => (Allow) E:4\SteamLibrary\steamapps\common\Phasmophobia\Phasmophobia.exe => No File
FirewallRules: [{4AB41B2D-7522-4AC9-A4E5-2B70145F0A00}] => (Allow) E:4\SteamLibrary\steamapps\common\Phasmophobia\Phasmophobia.exe => No File
FirewallRules: [{F2ED7B41-4DE4-46BD-8497-6A9D86B1F288}] => (Allow) E:4\SteamLibrary\steamapps\common\RollerCoaster Tycoon Classic\RCTClassic.exe => No File
FirewallRules: [{610EFD29-555B-460B-BFD2-38C8CBEFE716}] => (Allow) E:4\SteamLibrary\steamapps\common\RollerCoaster Tycoon Classic\RCTClassic.exe => No File
FirewallRules: [{FD4FC4F2-2BE1-4A77-84E4-7B84440611B2}] => (Allow) E:4\SteamLibrary\steamapps\common\Half-Life 2\hl2.exe => No File
FirewallRules: [{DA89B3EF-A3C8-40B5-955F-38F67731300B}] => (Allow) E:4\SteamLibrary\steamapps\common\Half-Life 2\hl2.exe => No File
FirewallRules: [{72F72DA4-7708-40FC-B61C-FA2A2B93BF70}] => (Allow) C:\Program Files (x86)\Iriun Webcam\IriunWebcam.exe (IriunWebcam) [File not signed]
FirewallRules: [{40821EA4-044F-43F7-BA3D-CC4212DA6B52}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{DDFC39DF-A8B9-4C20-BF36-888C3918CA2F}] => (Allow) C:\Program Files (x86)\Steam\Steam.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{F3B25438-31DF-4B03-9A6D-97EAA53A4D34}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{812C4AA4-1A2B-4A35-85F2-2AB05BB724C7}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{50CB627B-511F-4980-926E-5C42E5429D82}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{9558841B-C2E1-400E-9CE3-72DD51930131}] => (Allow) C:\Program Files\NVIDIA Corporation\NvContainer\nvcontainer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{7CD992F5-84E9-4419-812A-D887D8196E33}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{52D9CCDC-CA29-4143-BC1E-0B6E4D0C9469}] => (Allow) C:\Program Files\NVIDIA Corporation\NvStreamSrv\nvstreamer.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [TCP Query User{646B46B8-7562-42F9-AF34-D351CB2A096F}C:\program files\java\jdk-18.0.1.1\bin\java.exe] => (Allow) C:\program files\java\jdk-18.0.1.1\bin\java.exe
FirewallRules: [UDP Query User{3A8DDB57-814E-42DF-810B-7C089388CCAE}C:\program files\java\jdk-18.0.1.1\bin\java.exe] => (Allow) C:\program files\java\jdk-18.0.1.1\bin\java.exe
FirewallRules: [TCP Query User{EA0A3893-137D-4037-910E-F7234D8D5EFC}C:\users\cloud\appdata\local\nvidia corporation\geforcenow\cef\geforcenow.exe] => (Allow) C:\users\cloud\appdata\local\nvidia corporation\geforcenow\cef\geforcenow.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [UDP Query User{83E2974B-EC29-4EF2-898A-6FD8D0271FBF}C:\users\cloud\appdata\local\nvidia corporation\geforcenow\cef\geforcenow.exe] => (Allow) C:\users\cloud\appdata\local\nvidia corporation\geforcenow\cef\geforcenow.exe (Nvidia Corporation -> NVIDIA Corporation)
FirewallRules: [{F1C1C3CF-1168-4486-BA45-37A421BB31D7}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [{705FCA77-9382-4491-9B15-250B4E3C2400}] => (Allow) C:\Program Files\qBittorrent\qbittorrent.exe (The qBittorrent Project) [File not signed]
FirewallRules: [TCP Query User{E44379D4-1D85-43E2-9819-7D1583C312CC}D:\riot games\riot client\riotclientservices.exe] => (Allow) D:\riot games\riot client\riotclientservices.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [UDP Query User{DF701826-670B-4C82-8260-0F77C9BEEA11}D:\riot games\riot client\riotclientservices.exe] => (Allow) D:\riot games\riot client\riotclientservices.exe (Riot Games, Inc. -> Riot Games, Inc.)
FirewallRules: [{5CA8E7FB-F1C4-4D8A-A3FE-C228FDB6DCE9}] => (Allow) C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe (Softdeluxe) [File not signed]
FirewallRules: [{0C449616-B1B8-4ECE-838D-0807F062D54E}] => (Allow) C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe (Softdeluxe) [File not signed]
FirewallRules: [{533DE7E9-54F5-48FB-81F6-C075DDBE84AB}] => (Allow) C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe (Softdeluxe) [File not signed]
FirewallRules: [{8B95ED9C-811D-48B1-AC34-1696BFA7F230}] => (Allow) C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe (Softdeluxe) [File not signed]
FirewallRules: [{5D509B1B-6A35-490C-B321-B7BCD91CD89A}] => (Allow) C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe (Softdeluxe) [File not signed]
FirewallRules: [{9E357586-52E9-46B9-8528-73FE41A5960E}] => (Allow) C:\Program Files\Softdeluxe\Free Download Manager\fdm.exe (Softdeluxe) [File not signed]
FirewallRules: [{6507B433-7FAF-4587-B1ED-1CC8AA3F4A43}] => (Allow) G:\WindowsSubsystemAndroid\WsaClient\WsaClient.exe () [File not signed]
FirewallRules: [{546CB092-9B86-4EF7-90E5-D2ED2491304A}] => (Allow) G:\BlueStack\BlueStacks X\BlueStacksWeb.exe (Bluestack Systems, Inc -> Bluestack Systems, Inc.)
FirewallRules: [{1A23DE5B-44F7-4530-AAB2-F3DA86B08525}] => (Allow) G:\BlueStack\BlueStacks X\Cloud Game.exe (Bluestack Systems, Inc -> Bluestack Systems, Inc.)
FirewallRules: [{B552B31A-82BD-4328-A274-962162E452EB}] => (Allow) C:\Program Files\BlueStacks_nxt\HD-Player.exe (Bluestack Systems, Inc -> BlueStack Systems)
FirewallRules: [{3E41732F-6533-48E0-85BA-EF68A78BBCDB}] => (Allow) G:\VMware\vmware-authd.exe (VMware, Inc. -> VMware, Inc.)
FirewallRules: [{3C2175D5-5E9B-45F6-921E-B1D4013657BB}] => (Allow) G:\VMware\vmware-authd.exe (VMware, Inc. -> VMware, Inc.)
FirewallRules: [TCP Query User{7CC9F42E-15D3-4016-8003-BE77F899F871}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [UDP Query User{85308154-B8A8-46D5-B897-E3934BD81283}C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe] => (Allow) C:\program files (x86)\epic games\launcher\engine\binaries\win64\epicwebhelper.exe (Epic Games Inc. -> Epic Games, Inc.)
FirewallRules: [{CDDC623A-A1B7-457C-8991-0BFC689436A5}] => (Allow) C:\Program Files (x86)\Sony\PS Remote Play\RemotePlay.exe (Sony Interactive Entertainment Inc. -> Sony Interactive Entertainment Inc.)
FirewallRules: [{8315DE29-274F-4041-A456-E5E9B18CCCE7}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{E39554E5-DC00-4ACC-BF8B-DAB4FA37C5C5}] => (Allow) C:\Program Files\TeamViewer\TeamViewer.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{C851CC43-42D0-4BE4-937E-E441AB68CCE0}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{97B32AEB-93AF-4A34-B227-C03325ADC002}] => (Allow) C:\Program Files\TeamViewer\TeamViewer_Service.exe (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
FirewallRules: [{AC3FAAD9-4DA0-49A7-ACD1-2E42069B0D15}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{4303E542-EF3C-4093-832E-02F92B3B7BE8}] => (Allow) C:\Program Files (x86)\Steam\bin\cef\cef.win7x64\steamwebhelper.exe (Valve Corp. -> Valve Corporation)
FirewallRules: [{3FCECFAC-0BE8-4F1E-B1B2-A1D312EF2239}] => (Allow) E:0\SteamLibrary\steamapps\common\wallpaper_engine\bin\ui32.exe => No File
FirewallRules: [{B7345CBF-1132-41C9-AA72-48E816C725BE}] => (Allow) E:0\SteamLibrary\steamapps\common\wallpaper_engine\bin\ui32.exe => No File
FirewallRules: [{0746FE0D-CCF7-46A2-9C5A-1BDD032CCC0A}] => (Allow) E:0\SteamLibrary\steamapps\common\wallpaper_engine\launcher.exe => No File
FirewallRules: [{3845D88B-3F98-4726-957A-019D505A7F6F}] => (Allow) E:0\SteamLibrary\steamapps\common\wallpaper_engine\launcher.exe => No File
FirewallRules: [{3252D445-3A34-4747-B4A3-91CF6F142309}] => (Allow) E:0\SteamLibrary\steamapps\common\wallpaper_engine\bin\diagnostics32.exe => No File
FirewallRules: [{C63560F7-0EBD-445B-8093-FF488A201DE7}] => (Allow) E:0\SteamLibrary\steamapps\common\wallpaper_engine\bin\diagnostics32.exe => No File
FirewallRules: [{D6C81CC7-7FEA-4F7B-A77A-0E56C3E70DB9}] => (Allow) E:4\SteamLibrary\steamapps\common\wallpaper_engine\launcher.exe => No File
FirewallRules: [{90D25658-BAEA-40B7-AE6F-C7EDFBA4476B}] => (Allow) E:4\SteamLibrary\steamapps\common\wallpaper_engine\launcher.exe => No File
FirewallRules: [{C104D6EA-C18A-4A58-8C9B-C1B49349FAFD}] => (Allow) E:4\SteamLibrary\steamapps\common\wallpaper_engine\bin\diagnostics32.exe => No File
FirewallRules: [{8400EC42-3880-410E-9769-D135EA3ECF57}] => (Allow) E:4\SteamLibrary\steamapps\common\wallpaper_engine\bin\diagnostics32.exe => No File

==================== Restore Points =========================

ATTENTION: System Restore is disabled (Total:231.71 GB) (Free:77.46 GB) (33%)

==================== Faulty Device Manager Devices ============


==================== Event log errors: ========================

Application errors:
==================
Error: (07/21/2022 05:57:01 PM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: CLOUDGIRL)
Description: Přeskočení: Ověření Eap method DLL path se nezdařilo. Chyba: ID typu=55, ID autora=311, ID dodavatele=0, typ dodavatele=0

Error: (07/21/2022 05:57:01 PM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: CLOUDGIRL)
Description: Přeskočení: Ověření Eap method DLL path se nezdařilo. Chyba: ID typu=254, ID autora=311, ID dodavatele=14122, typ dodavatele=1

Error: (07/21/2022 05:57:00 PM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: CLOUDGIRL)
Description: Přeskočení: Ověření Eap method DLL path se nezdařilo. Chyba: ID typu=55, ID autora=311, ID dodavatele=0, typ dodavatele=0

Error: (07/21/2022 05:57:00 PM) (Source: Microsoft-Windows-EapHost) (EventID: 2002) (User: CLOUDGIRL)
Description: Přeskočení: Ověření Eap method DLL path se nezdařilo. Chyba: ID typu=254, ID autora=311, ID dodavatele=14122, typ dodavatele=1


System errors:
=============
Error: (07/21/2022 02:27:42 PM) (Source: LsaSrv) (EventID: 6041) (User: )
Description: Nepodařilo se vyjednat společnou verzi protokolu pro ověřování CredSSP u: TERMSRV/192.168.1.106. Vzdálený hostitel nabídl verzi 3, kterou nepovoluje Náprava proti hrozbě encryption oracle.

Více informací najdete na stránce https://go.microsoft.com/fwlink/?linkid=866660.

Error: (07/21/2022 10:20:08 AM) (Source: Microsoft-Windows-WindowsUpdateClient) (EventID: 20) (User: NT AUTHORITY)
Description: Instalace se nezdařila: Instalování následující aktualizace se nezdařilo z důvodu chyby (0x80073d02): 9MSSGKG348SP-MicrosoftWindows.Client.WebExperience.

Error: (07/21/2022 10:01:04 AM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba Rozšíření a oznámení tiskárny je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

Error: (07/21/2022 10:00:15 AM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba EABackgroundService je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

Error: (07/21/2022 09:59:55 AM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Intel(R) Dynamic Application Loader Host Interface Service závisí na službě Pomocná služba protokolu IP, která neuspěla při spuštění v důsledku následující chyby:
Operace byla dokončena úspěšně.

Error: (07/21/2022 09:59:29 AM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Služba seznamu sítí byla ukončena s následující chybou:
Zařízení není připraveno.


CodeIntegrity:
===============
Date: 2022-07-21 15:09:50
Description:
Windows is unable to verify the image integrity of the file \Device\HarddiskVolume11\Program Files\ESET\ESET Security\eamsi.dll because file hash could not be found on the system. A recent hardware or software change might have installed a file that is signed incorrectly or damaged, or that might be malicious software from an unknown source.


==================== Memory info ===========================

BIOS: American Megatrends Inc. 3101 09/10/2021
Motherboard: ASUSTeK COMPUTER INC. PRIME B360-PLUS
Processor: Intel(R) Core(TM) i3-9100F CPU @ 3.60GHz
Percentage of memory in use: 53%
Total physical RAM: 24493.9 MB
Available physical RAM: 11376.41 MB
Total Virtual: 26029.9 MB
Available Virtual: 9749.89 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:231.71 GB) (Free:77.46 GB) (Model: Samsung SSD 970 EVO 250GB) NTFS
Drive d: () (Fixed) (Total:930.83 GB) (Free:722.98 GB) (Model: TOSHIBA MQ01ABD100V) NTFS
Drive e: (Nový svazek) (Fixed) (Total:380.74 GB) (Free:99.13 GB) (Model: Hitachi HTS725050A9A364) NTFS
Drive f: (Nový svazek) (Fixed) (Total:465.76 GB) (Free:155.29 GB) (Model: WDC WD5000AAKS-00WWPA0) NTFS ==>[system with boot components (obtained from drive)]
Drive g: (Nový svazek) (Fixed) (Total:1164.37 GB) (Free:675.27 GB) (Model: WDC WD7500BPKX-75HPJT0) NTFS
Drive i: (SSS_X64FREE_EN-US_DV9) (CDROM) (Total:4.7 GB) (Free:0 GB) UDF

\\?\Volume{41fe60ad-7237-4244-81a0-60cb28b00074}\ () (Fixed) (Total:0.58 GB) (Free:0.12 GB) NTFS
\\?\Volume{77532661-bb22-4ce2-a7bf-2a76dcd03ccd}\ () (Fixed) (Total:0.48 GB) (Free:0.08 GB) NTFS
\\?\Volume{4d43db27-efc3-4c87-8a18-1ac9e62542e1}\ () (Fixed) (Total:0.56 GB) (Free:0.08 GB) NTFS
\\?\Volume{e84c72f3-a757-4839-852c-2a3a37c0aa1f}\ () (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32
\\?\Volume{0b7d2043-dd28-4aba-9cce-c96d522dd2fa}\ () (Fixed) (Total:0.09 GB) (Free:0.06 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Size: 232.9 GB) (Disk ID: 0795DF2B)

Partition: GPT.

==========================================================
Disk: 1 (Size: 465.8 GB) (Disk ID: 07969F2C)

Partition: GPT.

==========================================================
Disk: 2 (Size: 465.8 GB) (Disk ID: 0DBF6B7D)

Partition: GPT.

==========================================================
Disk: 3 (MBR Code: Windows 7/8/10) (Size: 465.8 GB) (Disk ID: 06C75D8E)

Partition: GPT.

==========================================================
Disk: 4 (Size: 698.6 GB) (Disk ID: 74438741)

Partition: GPT.

==========================================================
Disk: 5 (Size: 931.5 GB) (Disk ID: 5EAB9AA2)

Partition: GPT.

==================== End of Addition.txt =======================

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43062
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Kontrola počítače z důvodu občasných záseků

Příspěvekod jaro3 » 21 črc 2022 21:18

Prosím Tě , podívej se na ty logy:

"C:\Windows\System32\Tasks\Microsoft\Windows\Security\Pwdless\IntelligentPwdlessTask" could not be unlocked. <==== ATTENTION
tam chybí první linka , která začíná Task...

a tady:
Edge Extension: (Jedge) -- má to být Edge ( v závorce).
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
AngelikaB
Level 6
Level 6
Příspěvky: 3135
Registrován: červen 13
Pohlaví: Žena
Stav:
Offline

Re: Kontrola počítače z důvodu občasných záseků

Příspěvekod AngelikaB » 22 črc 2022 08:26

Ahoj přikládám screeny, že to v logu opravdu tak je
Přílohy
Unlocked.png
C.png

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43062
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Kontrola počítače z důvodu občasných záseků

Příspěvekod jaro3 » 22 črc 2022 15:30

OK.

Prosím, postupuj následujícím způsobem:
Otevřít poznámkový blok (Start => Všechny programy => Příslušenství => Poznámkový blok).
Prosím, zkopíruj do něj celý obsah níže.

Kód: Vybrat vše

Start
CreateRestorePoint:
CloseProcesses:
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION
Task: {07EB9062-D4FC-4B7A-B52A-3CBE35A13376} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (No File)
Task: {18B09C64-29A6-42AB-B95F-0DC35439A1A2} - System32\Tasks\GoogleUpdateTaskMachineCore{55C97697-6201-4999-AF80-465D2AD98D34} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [168632 2022-05-22] (Google LLC -> Google LLC)
Task: {C4AD4947-B366-4DDD-84DC-904D1965397D} - System32\Tasks\chromec => "C:\Users\Default User\chrome.exe" (No File)
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CustomCLSID: HKU\S-1-5-21-2537962619-3254278163-1973469496-1001_Classes\CLSID\{5C4D8D77-5B87-40CA-884E-F56858227E5C}\localserver32 -> C:\Program Files\TeamSpeak\notification_helper.exe => No File
FirewallRules: [{EB196973-7102-434A-A8A2-01A16B142F52}] => (Allow) E:4\SteamLibrary\steamapps\common\Business Tour\BusinessTour.exe => No File
FirewallRules: [{2712D75C-F873-4521-9A8A-B75B3BE7A025}] => (Allow) E:4\SteamLibrary\steamapps\common\Business Tour\BusinessTour.exe => No File
FirewallRules: [{9580B908-5D3B-42FC-A668-F18B97A76275}] => (Allow) E:4\SteamLibrary\steamapps\common\Team Fortress 2\hl2.exe => No File
FirewallRules: [{E97682FA-540F-43F2-A6C5-E6E56B5C4618}] => (Allow) E:4\SteamLibrary\steamapps\common\Team Fortress 2\hl2.exe => No File
FirewallRules: [{5E330061-14AA-47DA-AF71-F32A0B513941}] => (Allow) E:4\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe => No File
FirewallRules: [{D56C76C4-15A3-4A0A-B56F-ADA358C16895}] => (Allow) E:4\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe => No File
FirewallRules: [{0A16B767-BE2C-4EFA-BCE3-278589FBE5E3}] => (Allow) E:4\SteamLibrary\steamapps\common\SCP Secret Laboratory\SCPSL.exe => No File
FirewallRules: [{CF2470BC-5809-4DE9-B13A-F68B1AC4CDBE}] => (Allow) E:4\SteamLibrary\steamapps\common\SCP Secret Laboratory\SCPSL.exe => No File
FirewallRules: [{46C26B3C-187F-454F-9845-5514CB4A9108}] => (Allow) E:4\SteamLibrary\steamapps\common\Whos Your Daddy\Classic\WhosYourDaddy.exe => No File
FirewallRules: [{A611809C-A5D2-44B1-A045-C3D29FD7A93E}] => (Allow) E:4\SteamLibrary\steamapps\common\Whos Your Daddy\Classic\WhosYourDaddy.exe => No File
FirewallRules: [{AB70522F-5BB7-4D6E-8A47-FB7E50E1AD85}] => (Allow) E:4\SteamLibrary\steamapps\common\Whos Your Daddy\Remake\WhosYourDaddy.exe => No File
FirewallRules: [{80F398B1-89B7-4481-BBC1-7EF0CA7F899D}] => (Allow) E:4\SteamLibrary\steamapps\common\Whos Your Daddy\Remake\WhosYourDaddy.exe => No File
FirewallRules: [{78DDADBA-1911-4E5C-9358-6BC290380D83}] => (Allow) E:4\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe => No File
FirewallRules: [{0250F861-33C5-4872-B01F-428D8DF4E99B}] => (Allow) E:4\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe => No File
FirewallRules: [{D9518903-8BF2-4734-850B-D7DF5C49BE53}] => (Allow) E:4\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe => No File
FirewallRules: [{69176D2F-90A2-4930-B484-5439A0C6A2C8}] => (Allow) E:4\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe => No File
FirewallRules: [{7D4CB40F-FF4B-4818-A6C9-FA8D17B1B4E9}] => (Allow) E:4\SteamLibrary\steamapps\common\Left 4 Dead 2\left4dead2.exe => No File
FirewallRules: [{7FA9B81B-A7EA-479B-86C2-AB81430B47AF}] => (Allow) E:4\SteamLibrary\steamapps\common\Left 4 Dead 2\left4dead2.exe => No File
FirewallRules: [{48E1CA14-1731-475C-BB5A-B1F180AE1605}] => (Allow) E:4\SteamLibrary\steamapps\common\Half-Life\hl.exe => No File
FirewallRules: [{D8FC5568-E578-4574-AFA1-48605DFAD321}] => (Allow) E:4\SteamLibrary\steamapps\common\Half-Life\hl.exe => No File
FirewallRules: [{9777669D-ACD6-4502-8592-E025EA5641E0}] => (Allow) E:4\SteamLibrary\steamapps\common\Poppy Playtime\PlaytimeLauncher\PlaytimeLauncher.exe => No File
FirewallRules: [{4BD12020-C45B-46AF-A2C5-1E8817484042}] => (Allow) E:4\SteamLibrary\steamapps\common\Poppy Playtime\PlaytimeLauncher\PlaytimeLauncher.exe => No File
FirewallRules: [{C0B650C7-F7DA-47A1-9E59-B7C1D009E026}] => (Allow) E:4\SteamLibrary\steamapps\common\Dead by Daylight\DeadByDaylight.exe => No File
FirewallRules: [{4DE72C1B-7437-4E1E-B317-8EF4CAC2A0FD}] => (Allow) D:\SteamLibrary\steamapps\common\Lost Ark\Binaries\Win64\Launch_Game.exe => No File
FirewallRules: [{F6B0DF3F-87CD-4819-AC1D-D6D9A9271945}] => (Allow) D:\SteamLibrary\steamapps\common\Lost Ark\Binaries\Win64\Launch_Game.exe => No File
FirewallRules: [{1F442B4D-ED80-49F4-AFD9-239657E806C3}] => (Allow) E:4\SteamLibrary\steamapps\common\CSNZ\Bin\cstrike-online.exe => No File
FirewallRules: [{4E8CFE22-51EF-4A3F-9E80-1ECECFD4EC38}] => (Allow) E:4\SteamLibrary\steamapps\common\CSNZ\Bin\cstrike-online.exe => No File
FirewallRules: [{6D3D451B-C3FB-43AB-A206-B9FE415F3216}] => (Allow) E:4\SteamLibrary\steamapps\common\iVRy\bin\win64\StartSteamVR.exe => No File
FirewallRules: [{A42F1443-4544-4868-82F7-58BFAD0369D2}] => (Allow) E:4\SteamLibrary\steamapps\common\iVRy\bin\win64\StartSteamVR.exe => No File
FirewallRules: [{0861DB30-DD6F-4B09-A96D-311DBB21EE5A}] => (Allow) E:4\SteamLibrary\steamapps\common\Unturned\Unturned.exe => No File
FirewallRules: [{2C4F88FF-C969-4944-9DCB-7A6B6DFE8F36}] => (Allow) E:4\SteamLibrary\steamapps\common\Unturned\Unturned.exe => No File
FirewallRules: [{EAE9C641-A325-428F-8021-EBA261DA4D77}] => (Allow) E:4\SteamLibrary\steamapps\common\Unturned\Unturned_BE.exe => No File
FirewallRules: [{5232AC07-1A2E-43FF-A836-35AEE1A6AB80}] => (Allow) E:4\SteamLibrary\steamapps\common\Unturned\Unturned_BE.exe => No File
FirewallRules: [{0DE2FC6B-EAF2-4A16-8023-9AA2FE245704}] => (Allow) E:4\SteamLibrary\steamapps\common\Phasmophobia\Phasmophobia.exe => No File
FirewallRules: [{4AB41B2D-7522-4AC9-A4E5-2B70145F0A00}] => (Allow) E:4\SteamLibrary\steamapps\common\Phasmophobia\Phasmophobia.exe => No File
FirewallRules: [{F2ED7B41-4DE4-46BD-8497-6A9D86B1F288}] => (Allow) E:4\SteamLibrary\steamapps\common\RollerCoaster Tycoon Classic\RCTClassic.exe => No File
FirewallRules: [{610EFD29-555B-460B-BFD2-38C8CBEFE716}] => (Allow) E:4\SteamLibrary\steamapps\common\RollerCoaster Tycoon Classic\RCTClassic.exe => No File
FirewallRules: [{FD4FC4F2-2BE1-4A77-84E4-7B84440611B2}] => (Allow) E:4\SteamLibrary\steamapps\common\Half-Life 2\hl2.exe => No File
FirewallRules: [{DA89B3EF-A3C8-40B5-955F-38F67731300B}] => (Allow) E:4\SteamLibrary\steamapps\common\Half-Life 2\hl2.exe => No File
FirewallRules: [{3FCECFAC-0BE8-4F1E-B1B2-A1D312EF2239}] => (Allow) E:0\SteamLibrary\steamapps\common\wallpaper_engine\bin\ui32.exe => No File
FirewallRules: [{B7345CBF-1132-41C9-AA72-48E816C725BE}] => (Allow) E:0\SteamLibrary\steamapps\common\wallpaper_engine\bin\ui32.exe => No File
FirewallRules: [{0746FE0D-CCF7-46A2-9C5A-1BDD032CCC0A}] => (Allow) E:0\SteamLibrary\steamapps\common\wallpaper_engine\launcher.exe => No File
FirewallRules: [{3845D88B-3F98-4726-957A-019D505A7F6F}] => (Allow) E:0\SteamLibrary\steamapps\common\wallpaper_engine\launcher.exe => No File
FirewallRules: [{3252D445-3A34-4747-B4A3-91CF6F142309}] => (Allow) E:0\SteamLibrary\steamapps\common\wallpaper_engine\bin\diagnostics32.exe => No File
FirewallRules: [{C63560F7-0EBD-445B-8093-FF488A201DE7}] => (Allow) E:0\SteamLibrary\steamapps\common\wallpaper_engine\bin\diagnostics32.exe => No File
FirewallRules: [{D6C81CC7-7FEA-4F7B-A77A-0E56C3E70DB9}] => (Allow) E:4\SteamLibrary\steamapps\common\wallpaper_engine\launcher.exe => No File
FirewallRules: [{90D25658-BAEA-40B7-AE6F-C7EDFBA4476B}] => (Allow) E:4\SteamLibrary\steamapps\common\wallpaper_engine\launcher.exe => No File
FirewallRules: [{C104D6EA-C18A-4A58-8C9B-C1B49349FAFD}] => (Allow) E:4\SteamLibrary\steamapps\common\wallpaper_engine\bin\diagnostics32.exe => No File
FirewallRules: [{8400EC42-3880-410E-9769-D135EA3ECF57}] => (Allow) E:4\SteamLibrary\steamapps\common\wallpaper_engine\bin\diagnostics32.exe => No File
"C:\Windows\System32\Tasks\Microsoft\Windows\Security\Pwdless\IntelligentPwdlessTask" could not be unlocked. <==== ATTENTION

Virustotal: C:\Users\cloud\Documents\astamp.dat

EmptyTemp:
End

(Můžeš použít funkci „vybrat vše“, klepni pravým tlačítkem myši na levé horní políčko v otevřeném poznámkovém bloku a zvol „ Vložit“).

Ulož jej na na plochu jako fixlist.txt


Spusťt FRST a stiskni tlačítko „Fix“ (Opravit) jen jednou a čekej.
Nástroj vypracuje log na ploše (Fixlog.txt), prosím zkopíruj sem celý jeho obsah.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
AngelikaB
Level 6
Level 6
Příspěvky: 3135
Registrován: červen 13
Pohlaví: Žena
Stav:
Offline

Re: Kontrola počítače z důvodu občasných záseků

Příspěvekod AngelikaB » 22 črc 2022 18:08

Fix result of Farbar Recovery Scan Tool (x64) Version: 21-07-2022
Ran by cloud (22-07-2022 18:02:28) Run:1
Running from C:\Users\cloud\Desktop
Loaded Profiles: cloud
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start
CreateRestorePoint:
CloseProcesses:
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION
Task: {07EB9062-D4FC-4B7A-B52A-3CBE35A13376} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe (No File)
Task: {18B09C64-29A6-42AB-B95F-0DC35439A1A2} - System32\Tasks\GoogleUpdateTaskMachineCore{55C97697-6201-4999-AF80-465D2AD98D34} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [168632 2022-05-22] (Google LLC -> Google LLC)
Task: {C4AD4947-B366-4DDD-84DC-904D1965397D} - System32\Tasks\chromec => "C:\Users\Default User\chrome.exe" (No File)
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CustomCLSID: HKU\S-1-5-21-2537962619-3254278163-1973469496-1001_Classes\CLSID\{5C4D8D77-5B87-40CA-884E-F56858227E5C}\localserver32 -> C:\Program Files\TeamSpeak\notification_helper.exe => No File
FirewallRules: [{EB196973-7102-434A-A8A2-01A16B142F52}] => (Allow) E:4\SteamLibrary\steamapps\common\Business Tour\BusinessTour.exe => No File
FirewallRules: [{2712D75C-F873-4521-9A8A-B75B3BE7A025}] => (Allow) E:4\SteamLibrary\steamapps\common\Business Tour\BusinessTour.exe => No File
FirewallRules: [{9580B908-5D3B-42FC-A668-F18B97A76275}] => (Allow) E:4\SteamLibrary\steamapps\common\Team Fortress 2\hl2.exe => No File
FirewallRules: [{E97682FA-540F-43F2-A6C5-E6E56B5C4618}] => (Allow) E:4\SteamLibrary\steamapps\common\Team Fortress 2\hl2.exe => No File
FirewallRules: [{5E330061-14AA-47DA-AF71-F32A0B513941}] => (Allow) E:4\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe => No File
FirewallRules: [{D56C76C4-15A3-4A0A-B56F-ADA358C16895}] => (Allow) E:4\SteamLibrary\steamapps\common\Counter-Strike Global Offensive\csgo.exe => No File
FirewallRules: [{0A16B767-BE2C-4EFA-BCE3-278589FBE5E3}] => (Allow) E:4\SteamLibrary\steamapps\common\SCP Secret Laboratory\SCPSL.exe => No File
FirewallRules: [{CF2470BC-5809-4DE9-B13A-F68B1AC4CDBE}] => (Allow) E:4\SteamLibrary\steamapps\common\SCP Secret Laboratory\SCPSL.exe => No File
FirewallRules: [{46C26B3C-187F-454F-9845-5514CB4A9108}] => (Allow) E:4\SteamLibrary\steamapps\common\Whos Your Daddy\Classic\WhosYourDaddy.exe => No File
FirewallRules: [{A611809C-A5D2-44B1-A045-C3D29FD7A93E}] => (Allow) E:4\SteamLibrary\steamapps\common\Whos Your Daddy\Classic\WhosYourDaddy.exe => No File
FirewallRules: [{AB70522F-5BB7-4D6E-8A47-FB7E50E1AD85}] => (Allow) E:4\SteamLibrary\steamapps\common\Whos Your Daddy\Remake\WhosYourDaddy.exe => No File
FirewallRules: [{80F398B1-89B7-4481-BBC1-7EF0CA7F899D}] => (Allow) E:4\SteamLibrary\steamapps\common\Whos Your Daddy\Remake\WhosYourDaddy.exe => No File
FirewallRules: [{78DDADBA-1911-4E5C-9358-6BC290380D83}] => (Allow) E:4\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe => No File
FirewallRules: [{0250F861-33C5-4872-B01F-428D8DF4E99B}] => (Allow) E:4\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x86\eurotrucks2.exe => No File
FirewallRules: [{D9518903-8BF2-4734-850B-D7DF5C49BE53}] => (Allow) E:4\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe => No File
FirewallRules: [{69176D2F-90A2-4930-B484-5439A0C6A2C8}] => (Allow) E:4\SteamLibrary\steamapps\common\Euro Truck Simulator 2\bin\win_x64\eurotrucks2.exe => No File
FirewallRules: [{7D4CB40F-FF4B-4818-A6C9-FA8D17B1B4E9}] => (Allow) E:4\SteamLibrary\steamapps\common\Left 4 Dead 2\left4dead2.exe => No File
FirewallRules: [{7FA9B81B-A7EA-479B-86C2-AB81430B47AF}] => (Allow) E:4\SteamLibrary\steamapps\common\Left 4 Dead 2\left4dead2.exe => No File
FirewallRules: [{48E1CA14-1731-475C-BB5A-B1F180AE1605}] => (Allow) E:4\SteamLibrary\steamapps\common\Half-Life\hl.exe => No File
FirewallRules: [{D8FC5568-E578-4574-AFA1-48605DFAD321}] => (Allow) E:4\SteamLibrary\steamapps\common\Half-Life\hl.exe => No File
FirewallRules: [{9777669D-ACD6-4502-8592-E025EA5641E0}] => (Allow) E:4\SteamLibrary\steamapps\common\Poppy Playtime\PlaytimeLauncher\PlaytimeLauncher.exe => No File
FirewallRules: [{4BD12020-C45B-46AF-A2C5-1E8817484042}] => (Allow) E:4\SteamLibrary\steamapps\common\Poppy Playtime\PlaytimeLauncher\PlaytimeLauncher.exe => No File
FirewallRules: [{C0B650C7-F7DA-47A1-9E59-B7C1D009E026}] => (Allow) E:4\SteamLibrary\steamapps\common\Dead by Daylight\DeadByDaylight.exe => No File
FirewallRules: [{4DE72C1B-7437-4E1E-B317-8EF4CAC2A0FD}] => (Allow) D:\SteamLibrary\steamapps\common\Lost Ark\Binaries\Win64\Launch_Game.exe => No File
FirewallRules: [{F6B0DF3F-87CD-4819-AC1D-D6D9A9271945}] => (Allow) D:\SteamLibrary\steamapps\common\Lost Ark\Binaries\Win64\Launch_Game.exe => No File
FirewallRules: [{1F442B4D-ED80-49F4-AFD9-239657E806C3}] => (Allow) E:4\SteamLibrary\steamapps\common\CSNZ\Bin\cstrike-online.exe => No File
FirewallRules: [{4E8CFE22-51EF-4A3F-9E80-1ECECFD4EC38}] => (Allow) E:4\SteamLibrary\steamapps\common\CSNZ\Bin\cstrike-online.exe => No File
FirewallRules: [{6D3D451B-C3FB-43AB-A206-B9FE415F3216}] => (Allow) E:4\SteamLibrary\steamapps\common\iVRy\bin\win64\StartSteamVR.exe => No File
FirewallRules: [{A42F1443-4544-4868-82F7-58BFAD0369D2}] => (Allow) E:4\SteamLibrary\steamapps\common\iVRy\bin\win64\StartSteamVR.exe => No File
FirewallRules: [{0861DB30-DD6F-4B09-A96D-311DBB21EE5A}] => (Allow) E:4\SteamLibrary\steamapps\common\Unturned\Unturned.exe => No File
FirewallRules: [{2C4F88FF-C969-4944-9DCB-7A6B6DFE8F36}] => (Allow) E:4\SteamLibrary\steamapps\common\Unturned\Unturned.exe => No File
FirewallRules: [{EAE9C641-A325-428F-8021-EBA261DA4D77}] => (Allow) E:4\SteamLibrary\steamapps\common\Unturned\Unturned_BE.exe => No File
FirewallRules: [{5232AC07-1A2E-43FF-A836-35AEE1A6AB80}] => (Allow) E:4\SteamLibrary\steamapps\common\Unturned\Unturned_BE.exe => No File
FirewallRules: [{0DE2FC6B-EAF2-4A16-8023-9AA2FE245704}] => (Allow) E:4\SteamLibrary\steamapps\common\Phasmophobia\Phasmophobia.exe => No File
FirewallRules: [{4AB41B2D-7522-4AC9-A4E5-2B70145F0A00}] => (Allow) E:4\SteamLibrary\steamapps\common\Phasmophobia\Phasmophobia.exe => No File
FirewallRules: [{F2ED7B41-4DE4-46BD-8497-6A9D86B1F288}] => (Allow) E:4\SteamLibrary\steamapps\common\RollerCoaster Tycoon Classic\RCTClassic.exe => No File
FirewallRules: [{610EFD29-555B-460B-BFD2-38C8CBEFE716}] => (Allow) E:4\SteamLibrary\steamapps\common\RollerCoaster Tycoon Classic\RCTClassic.exe => No File
FirewallRules: [{FD4FC4F2-2BE1-4A77-84E4-7B84440611B2}] => (Allow) E:4\SteamLibrary\steamapps\common\Half-Life 2\hl2.exe => No File
FirewallRules: [{DA89B3EF-A3C8-40B5-955F-38F67731300B}] => (Allow) E:4\SteamLibrary\steamapps\common\Half-Life 2\hl2.exe => No File
FirewallRules: [{3FCECFAC-0BE8-4F1E-B1B2-A1D312EF2239}] => (Allow) E:0\SteamLibrary\steamapps\common\wallpaper_engine\bin\ui32.exe => No File
FirewallRules: [{B7345CBF-1132-41C9-AA72-48E816C725BE}] => (Allow) E:0\SteamLibrary\steamapps\common\wallpaper_engine\bin\ui32.exe => No File
FirewallRules: [{0746FE0D-CCF7-46A2-9C5A-1BDD032CCC0A}] => (Allow) E:0\SteamLibrary\steamapps\common\wallpaper_engine\launcher.exe => No File
FirewallRules: [{3845D88B-3F98-4726-957A-019D505A7F6F}] => (Allow) E:0\SteamLibrary\steamapps\common\wallpaper_engine\launcher.exe => No File
FirewallRules: [{3252D445-3A34-4747-B4A3-91CF6F142309}] => (Allow) E:0\SteamLibrary\steamapps\common\wallpaper_engine\bin\diagnostics32.exe => No File
FirewallRules: [{C63560F7-0EBD-445B-8093-FF488A201DE7}] => (Allow) E:0\SteamLibrary\steamapps\common\wallpaper_engine\bin\diagnostics32.exe => No File
FirewallRules: [{D6C81CC7-7FEA-4F7B-A77A-0E56C3E70DB9}] => (Allow) E:4\SteamLibrary\steamapps\common\wallpaper_engine\launcher.exe => No File
FirewallRules: [{90D25658-BAEA-40B7-AE6F-C7EDFBA4476B}] => (Allow) E:4\SteamLibrary\steamapps\common\wallpaper_engine\launcher.exe => No File
FirewallRules: [{C104D6EA-C18A-4A58-8C9B-C1B49349FAFD}] => (Allow) E:4\SteamLibrary\steamapps\common\wallpaper_engine\bin\diagnostics32.exe => No File
FirewallRules: [{8400EC42-3880-410E-9769-D135EA3ECF57}] => (Allow) E:4\SteamLibrary\steamapps\common\wallpaper_engine\bin\diagnostics32.exe => No File
"C:\Windows\System32\Tasks\Microsoft\Windows\Security\Pwdless\IntelligentPwdlessTask" could not be unlocked. <==== ATTENTION

Virustotal: C:\Users\cloud\Documents\astamp.dat

EmptyTemp:
End
*****************

Restore point was successfully created.
Processes closed successfully.
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{07EB9062-D4FC-4B7A-B52A-3CBE35A13376}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{07EB9062-D4FC-4B7A-B52A-3CBE35A13376}" => removed successfully
C:\WINDOWS\System32\Tasks\Adobe Acrobat Update Task => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\Adobe Acrobat Update Task" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{18B09C64-29A6-42AB-B95F-0DC35439A1A2}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{18B09C64-29A6-42AB-B95F-0DC35439A1A2}" => removed successfully
C:\WINDOWS\System32\Tasks\GoogleUpdateTaskMachineCore{55C97697-6201-4999-AF80-465D2AD98D34} => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore{55C97697-6201-4999-AF80-465D2AD98D34}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{C4AD4947-B366-4DDD-84DC-904D1965397D}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{C4AD4947-B366-4DDD-84DC-904D1965397D}" => removed successfully
C:\WINDOWS\System32\Tasks\chromec => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\chromec" => removed successfully
HKLM\SOFTWARE\Wow6432Node\Google\Chrome\Extensions\efaidnbmnnnibpcajpcglclefindmkaj => removed successfully
HKU\S-1-5-21-2537962619-3254278163-1973469496-1001_Classes\CLSID\{5C4D8D77-5B87-40CA-884E-F56858227E5C} => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{EB196973-7102-434A-A8A2-01A16B142F52}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2712D75C-F873-4521-9A8A-B75B3BE7A025}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9580B908-5D3B-42FC-A668-F18B97A76275}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{E97682FA-540F-43F2-A6C5-E6E56B5C4618}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{5E330061-14AA-47DA-AF71-F32A0B513941}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D56C76C4-15A3-4A0A-B56F-ADA358C16895}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0A16B767-BE2C-4EFA-BCE3-278589FBE5E3}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{CF2470BC-5809-4DE9-B13A-F68B1AC4CDBE}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{46C26B3C-187F-454F-9845-5514CB4A9108}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A611809C-A5D2-44B1-A045-C3D29FD7A93E}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{AB70522F-5BB7-4D6E-8A47-FB7E50E1AD85}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{80F398B1-89B7-4481-BBC1-7EF0CA7F899D}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{78DDADBA-1911-4E5C-9358-6BC290380D83}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0250F861-33C5-4872-B01F-428D8DF4E99B}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D9518903-8BF2-4734-850B-D7DF5C49BE53}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{69176D2F-90A2-4930-B484-5439A0C6A2C8}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7D4CB40F-FF4B-4818-A6C9-FA8D17B1B4E9}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{7FA9B81B-A7EA-479B-86C2-AB81430B47AF}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{48E1CA14-1731-475C-BB5A-B1F180AE1605}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D8FC5568-E578-4574-AFA1-48605DFAD321}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{9777669D-ACD6-4502-8592-E025EA5641E0}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4BD12020-C45B-46AF-A2C5-1E8817484042}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C0B650C7-F7DA-47A1-9E59-B7C1D009E026}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4DE72C1B-7437-4E1E-B317-8EF4CAC2A0FD}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F6B0DF3F-87CD-4819-AC1D-D6D9A9271945}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{1F442B4D-ED80-49F4-AFD9-239657E806C3}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4E8CFE22-51EF-4A3F-9E80-1ECECFD4EC38}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{6D3D451B-C3FB-43AB-A206-B9FE415F3216}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{A42F1443-4544-4868-82F7-58BFAD0369D2}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0861DB30-DD6F-4B09-A96D-311DBB21EE5A}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{2C4F88FF-C969-4944-9DCB-7A6B6DFE8F36}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{EAE9C641-A325-428F-8021-EBA261DA4D77}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{5232AC07-1A2E-43FF-A836-35AEE1A6AB80}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0DE2FC6B-EAF2-4A16-8023-9AA2FE245704}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{4AB41B2D-7522-4AC9-A4E5-2B70145F0A00}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{F2ED7B41-4DE4-46BD-8497-6A9D86B1F288}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{610EFD29-555B-460B-BFD2-38C8CBEFE716}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{FD4FC4F2-2BE1-4A77-84E4-7B84440611B2}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{DA89B3EF-A3C8-40B5-955F-38F67731300B}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3FCECFAC-0BE8-4F1E-B1B2-A1D312EF2239}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{B7345CBF-1132-41C9-AA72-48E816C725BE}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{0746FE0D-CCF7-46A2-9C5A-1BDD032CCC0A}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3845D88B-3F98-4726-957A-019D505A7F6F}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{3252D445-3A34-4747-B4A3-91CF6F142309}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C63560F7-0EBD-445B-8093-FF488A201DE7}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{D6C81CC7-7FEA-4F7B-A77A-0E56C3E70DB9}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{90D25658-BAEA-40B7-AE6F-C7EDFBA4476B}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{C104D6EA-C18A-4A58-8C9B-C1B49349FAFD}" => removed successfully
"HKLM\SYSTEM\CurrentControlSet\services\SharedAccess\Parameters\FirewallPolicy\FirewallRules\\{8400EC42-3880-410E-9769-D135EA3ECF57}" => removed successfully
"C:\Windows\System32\Tasks\Microsoft\Windows\Security\Pwdless\IntelligentPwdlessTask" could not be unlocked. <==== ATTENTION" => not found
VirusTotal: C:\Users\cloud\Documents\astamp.dat => https://www.virustotal.com/gui/file/edb ... 1658505756

=========== EmptyTemp: ==========

BITS transfer queue => 1310720 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 30635340 B
Java, Discord, Steam htmlcache => 775892854 B
Windows/system/drivers => 7848887 B
Edge => 0 B
Chrome => 1011491345 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 4610 B
NetworkService => 7864 B
cloud => 82534868 B
DefaultAppPool => 82534868 B

RecycleBin => 0 B
EmptyTemp: => 1.9 GB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 18:03:59 ====

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43062
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Kontrola počítače z důvodu občasných záseků

Příspěvekod jaro3 » 22 črc 2022 19:26

Co ty záseky? Myslím že viry to nebude.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
AngelikaB
Level 6
Level 6
Příspěvky: 3135
Registrován: červen 13
Pohlaví: Žena
Stav:
Offline

Re: Kontrola počítače z důvodu občasných záseků

Příspěvekod AngelikaB » 22 črc 2022 19:39

Hele dneska se mi updatnul Windows a zatím je vše jak má. Alespoň to tak vypadá, že to fixlo problémy.

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43062
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Kontrola počítače z důvodu občasných záseků

Příspěvekod jaro3 » 22 črc 2022 20:27

Tak OK.

Stáhni si zde DelFix
Další odkazy:
https://toolslib.net/downloads/viewdownload/2-delfix/
http://ccm.net/download/download-24087-delfix
https://www.bleepingcomputer.com/download/delfix/

ulož si soubor na plochu.
Poklepáním na ikonu spusť nástroj Delfix.exe
( Ve Windows Vista, Windows 7, 8 a10 musíš spustit soubor pravým tlačítkem myši -> Spustit jako správce .
V hlavním menu, zkontroluj tyto možnosti - Odstranění dezinfekce nástrojů (Remove desinfection tools) – Vyčistit body obnovy (Purge System Restore)
Poté klikněte na tlačítko Spustit (Run) a nech nástroj dělat svoji práci

Poté se zpráva se otevře (DelFix.txt). Vlož celý obsah zprávy sem.Jinak je zpráva zde:
v C: \ DelFix.txt

Pokud nejsou problémy , je to vše a můžeš dát vyřešeno , zelenou fajfku.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra

Uživatelský avatar
AngelikaB
Level 6
Level 6
Příspěvky: 3135
Registrován: červen 13
Pohlaví: Žena
Stav:
Offline

Re: Kontrola počítače z důvodu občasných záseků

Příspěvekod AngelikaB » 23 črc 2022 12:50

# DelFix v1.010 - Logfile created 23/07/2022 at 12:49:46
# Updated 26/04/2015 by Xplode
# Username : cloud - CLOUDGIRL
# Operating System : Windows 10 Enterprise (64 bits)

~ Removing disinfection tools ...

Deleted : C:\FRST
Deleted : C:\zoek_backup
Deleted : C:\AdwCleaner
Deleted : C:\zoek-results.log
Deleted : C:\Users\cloud\Desktop\Addition.txt
Deleted : C:\Users\cloud\Desktop\adwcleaner.exe
Deleted : C:\Users\cloud\Desktop\Fixlog.txt
Deleted : C:\Users\cloud\Desktop\FRST.txt
Deleted : C:\Users\cloud\Desktop\FRST64.exe
Deleted : C:\Users\cloud\Desktop\JRT.exe
Deleted : C:\Users\cloud\Desktop\JRT.txt
Deleted : C:\Users\cloud\Desktop\HijackThis.exe
Deleted : C:\Users\cloud\Desktop\hijackthis.log
Deleted : C:\Users\Public\Desktop\RogueKiller.lnk
Deleted : C:\Users\cloud\Downloads\RogueKiller_setup.exe
Deleted : C:\Users\cloud\Downloads\zoek1.rar
Deleted : HKLM\SOFTWARE\TrendMicro\Hijackthis

~ Cleaning system restore ...

Deleted : RP #2 [Restore Point Created by FRST | 07/22/2022 16:02:29]

New restore point created !

########## - EOF - ##########

Uživatelský avatar
jaro3
člen Security týmu
Guru Level 15
Guru Level 15
Příspěvky: 43062
Registrován: červen 07
Bydliště: Jižní Čechy
Pohlaví: Muž
Stav:
Offline

Re: Kontrola počítače z důvodu občasných záseků  Vyřešeno

Příspěvekod jaro3 » 23 črc 2022 16:49

Pokud nejsou problémy , je to vše a můžeš dát vyřešeno , zelenou fajfku.
Při práci s programy HJT, ComboFix,MbAM, SDFix aj. zavřete všechny ostatní aplikace a prohlížeče!
Neposílejte logy do soukromých zpráv.Po dobu mé nepřítomnosti mě zastupuje memphisto , Žbeky a Orcus.
Pokud budete spokojeni , můžete podpořit naše forum:Podpora fóra


Zpět na “HiJackThis”

Kdo je online

Uživatelé prohlížející si toto fórum: Žádní registrovaní uživatelé a 12 hostů