Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 29-11-2020
Ran by Doma (administrator) on DOMA2 (LENOVO 20023) (29-11-2020 22:10:22)
Running from C:\Users\Doma\Desktop
Loaded Profiles: Doma
Platform: Windows 8 Pro (X64) Language: Čeština (Česká republika)
Default browser: Chrome
Boot Mode: Normal
Tutorial for Farbar Recovery Scan Tool: http://www.geekstogo.com/forum/topic/335081-frst-tutorial-how-to-use-farbar-recovery-scan-tool/

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.32\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.32\GoogleCrashHandler64.exe
(Microsoft Windows -> Microsoft Corporation) C:\Program Files\Windows Defender\MsMpEng.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\Software\Microsoft\Active Setup\Installed Components: [{89820200-ECBD-11cf-8B85-00AA005B4340}] -> regsvr32.exe /s /n /i:U %SystemRoot%\System32\shell32.dll
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\87.0.4280.66\Installer\chrmstp.exe [2020-11-29] (Google LLC -> Google LLC)

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {44B3F1B8-5943-4072-8D8C-A9484676AC44} - System32\Tasks\Microsoft\Windows\Live\Roaming\SynchronizeWithStorage => {5F074BDF-4BA3-4E68-AE86-2A6B0B5963B0} C:\Windows\system32\wlroamextension.dll [543232 2012-07-26] (Microsoft Windows -> Microsoft Corporation)
Task: {A2BA5AC6-020F-42C2-9D07-0BECCC29AF37} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-11-29] (Google LLC -> Google LLC)
Task: {A800277E-E202-4492-AD38-3312641CBC04} - System32\Tasks\Microsoft\Windows\Live\Roaming\MaintenanceTask => {0AC1DBCA-7F9F-47FC-A090-34E5FEB291E8} C:\Windows\system32\wlroamextension.dll [543232 2012-07-26] (Microsoft Windows -> Microsoft Corporation)
Task: {AEB0B5BD-B9E5-458A-898A-E559BD9EB51B} - System32\Tasks\Microsoft\Windows\SettingSync\BackgroundUploadTask => {59B9640B-3F70-4D1C-B159-F26EEB8A4C87} C:\Windows\system32\SettingSyncInfo.dll [128512 2012-07-26] (Microsoft Windows -> Microsoft Corporation)
Task: {D8EC0B81-92FB-4BEA-95A4-384B5AFF934F} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [155592 2020-11-29] (Google LLC -> Google LLC)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 213.46.172.38 213.46.172.39
Tcpip\..\Interfaces\{DEA599E5-D36C-46D3-B657-22568E7C713F}: [DhcpNameServer] 213.46.172.38 213.46.172.39

Chrome: 
=======
CHR Profile: C:\Users\Doma\AppData\Local\Google\Chrome\User Data\Default [2020-11-29]
CHR Extension: (Prezentace) - C:\Users\Doma\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2020-11-29]
CHR Extension: (Dokumenty) - C:\Users\Doma\AppData\Local\Google\Chrome\User Data\Default\Extensions\aohghmighlieiainnegkcijnfilokake [2020-11-29]
CHR Extension: (Disk Google) - C:\Users\Doma\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-11-29]
CHR Extension: (YouTube) - C:\Users\Doma\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2020-11-29]
CHR Extension: (Tabulky) - C:\Users\Doma\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2020-11-29]
CHR Extension: (Dokumenty Google offline) - C:\Users\Doma\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-11-29]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Doma\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2020-11-29]
CHR Extension: (Gmail) - C:\Users\Doma\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-11-29]
CHR Extension: (Chrome Media Router) - C:\Users\Doma\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-11-29]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 WinDefend; C:\Program Files\Windows Defender\MsMpEng.exe [15440 2012-07-26] (Microsoft Windows -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S0 WdBoot; C:\Windows\System32\drivers\WdBoot.sys [34216 2012-07-26] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\WdFilter.sys [258288 2012-07-26] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-11-29 22:10 - 2020-11-29 22:11 - 000005941 _____ C:\Users\Doma\Desktop\FRST.txt
2020-11-29 21:32 - 2020-11-29 22:01 - 000005333 _____ C:\Users\Doma\Downloads\FRST.txt
2020-11-29 21:31 - 2020-11-29 21:31 - 000000000 ____D C:\Users\Doma\Downloads\Nová složka
2020-11-29 21:25 - 2020-11-29 21:25 - 000000117 _____ C:\Windows\system32\netcfg-4733397.txt
2020-11-29 21:25 - 2020-11-29 21:25 - 000000117 _____ C:\Windows\system32\netcfg-4733335.txt
2020-11-29 20:25 - 2020-11-29 22:10 - 000000000 ____D C:\FRST
2020-11-29 20:25 - 2020-11-29 20:25 - 002290176 _____ (Farbar) C:\Users\Doma\Downloads\FRST64.exe
2020-11-29 20:24 - 2020-11-29 20:24 - 002290176 _____ (Farbar) C:\Users\Doma\Desktop\FRST64.exe
2020-11-29 20:15 - 2020-11-29 20:15 - 000000117 _____ C:\Windows\system32\netcfg-539935.txt
2020-11-29 20:15 - 2020-11-29 20:15 - 000000117 _____ C:\Windows\system32\netcfg-539264.txt
2020-11-29 18:39 - 2020-11-29 18:39 - 000000117 _____ C:\Windows\system32\netcfg-43727.txt
2020-11-29 18:37 - 2020-11-29 18:37 - 000000117 _____ C:\Windows\system32\netcfg-1405475.txt
2020-11-29 17:49 - 2020-11-29 17:49 - 349310976 _____ C:\Users\Doma\Downloads\Nepotvrzeno 826383.crdownload
2020-11-29 17:49 - 2020-11-29 17:49 - 000000000 ____D C:\e7dabef58691f7e2d97df980221d71f2
2020-11-29 17:47 - 2020-11-29 17:47 - 107349327 _____ C:\Users\Doma\Downloads\Windows8.1-KB3172614-x64.msu
2020-11-29 16:53 - 2020-11-29 16:53 - 000002246 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-11-29 16:53 - 2020-11-29 16:53 - 000002205 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2020-11-29 16:53 - 2020-11-29 16:53 - 000002205 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2020-11-29 16:53 - 2020-11-29 16:53 - 000000000 ____D C:\Program Files\Google
2020-11-29 16:52 - 2020-11-29 16:57 - 000000000 ____D C:\Users\Doma\AppData\Local\Google
2020-11-29 16:52 - 2020-11-29 16:52 - 000003386 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA
2020-11-29 16:52 - 2020-11-29 16:52 - 000003258 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore
2020-11-29 16:52 - 2020-11-29 16:52 - 000000000 ____D C:\Program Files (x86)\Google
2020-11-29 16:39 - 2020-11-29 17:26 - 000003600 _____ C:\Windows\system32\Tasks\Optimize Start Menu Cache Files-S-1-5-21-3513376039-4144312096-1117352756-1001
2020-11-29 16:35 - 2020-11-29 16:35 - 000001139 _____ C:\Windows\system32\netcfg-90574.txt
2020-11-29 16:35 - 2020-11-29 16:30 - 000000117 _____ C:\Windows\system32\netcfg-105534.txt
2020-11-29 16:34 - 2020-11-29 16:34 - 000001414 _____ C:\Users\Doma\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Public\Documents\Obrázky
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Public\Documents\Hudba
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Public\Documents\Filmy
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Default\Šablony
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Default\Soubory cookie
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Default\Poslední
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Default\Okolní tiskárny
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Default\Okolní síť
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Default\Nabídka Start
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Default\Dokumenty
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Default\Documents\Obrázky
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Default\Documents\Hudba
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Default\Documents\Filmy
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Default\Data aplikací
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Default User\Šablony
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Default User\Soubory cookie
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Default User\Poslední
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Default User\Okolní tiskárny
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Default User\Okolní síť
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Default User\Nabídka Start
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Default User\Dokumenty
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Default User\Documents\Obrázky
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Default User\Documents\Hudba
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Default User\Documents\Filmy
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Default User\Data aplikací
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Default User\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\Users\Default User\AppData\Local\Data aplikací
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\ProgramData\Šablony
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\ProgramData\Plocha
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\ProgramData\Nabídka Start
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\ProgramData\Dokumenty
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\ProgramData\Documents\Obrázky
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\ProgramData\Documents\Hudba
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\ProgramData\Documents\Filmy
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 _SHDL C:\ProgramData\Data aplikací
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 ____D C:\Windows\system32\Tasks\WPD
2020-11-29 16:34 - 2020-11-29 16:34 - 000000000 ____D C:\Users\Doma\AppData\Roaming\Adobe
2020-11-29 16:33 - 2020-11-29 22:09 - 000000000 ____D C:\Users\Doma
2020-11-29 16:33 - 2020-11-29 16:34 - 000000000 ____D C:\Users\Doma\AppData\Local\Packages
2020-11-29 16:33 - 2020-11-29 16:34 - 000000000 ____D C:\ProgramData\PRICache
2020-11-29 16:33 - 2020-11-29 16:33 - 000000020 ___SH C:\Users\Doma\ntuser.ini
2020-11-29 16:33 - 2020-11-29 16:33 - 000000000 _SHDL C:\Users\Doma\Šablony
2020-11-29 16:33 - 2020-11-29 16:33 - 000000000 _SHDL C:\Users\Doma\Soubory cookie
2020-11-29 16:33 - 2020-11-29 16:33 - 000000000 _SHDL C:\Users\Doma\Poslední
2020-11-29 16:33 - 2020-11-29 16:33 - 000000000 _SHDL C:\Users\Doma\Okolní tiskárny
2020-11-29 16:33 - 2020-11-29 16:33 - 000000000 _SHDL C:\Users\Doma\Okolní síť
2020-11-29 16:33 - 2020-11-29 16:33 - 000000000 _SHDL C:\Users\Doma\Nabídka Start
2020-11-29 16:33 - 2020-11-29 16:33 - 000000000 _SHDL C:\Users\Doma\Dokumenty
2020-11-29 16:33 - 2020-11-29 16:33 - 000000000 _SHDL C:\Users\Doma\Documents\Obrázky
2020-11-29 16:33 - 2020-11-29 16:33 - 000000000 _SHDL C:\Users\Doma\Documents\Hudba
2020-11-29 16:33 - 2020-11-29 16:33 - 000000000 _SHDL C:\Users\Doma\Documents\Filmy
2020-11-29 16:33 - 2020-11-29 16:33 - 000000000 _SHDL C:\Users\Doma\Data aplikací
2020-11-29 16:33 - 2020-11-29 16:33 - 000000000 _SHDL C:\Users\Doma\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2020-11-29 16:33 - 2020-11-29 16:33 - 000000000 _SHDL C:\Users\Doma\AppData\Local\Data aplikací
2020-11-29 16:33 - 2020-11-29 16:33 - 000000000 ____D C:\Users\Doma\AppData\Local\VirtualStore
2020-11-29 16:32 - 2020-11-29 16:32 - 000000000 ____D C:\Windows\CSC
2020-11-29 16:31 - 2020-11-29 16:31 - 000001102 _____ C:\Windows\system32\netcfg-150728.txt
2020-11-29 16:31 - 2020-11-29 16:31 - 000000163 _____ C:\Windows\system32\netcfg-150150.txt
2020-11-29 16:30 - 2020-11-29 16:30 - 000000185 _____ C:\Windows\system32\netcfg-90277.txt
2020-11-29 16:30 - 2020-11-29 16:30 - 000000161 _____ C:\Windows\system32\netcfg-89872.txt
2020-11-29 16:30 - 2020-11-29 16:30 - 000000160 _____ C:\Windows\system32\netcfg-89357.txt
2020-11-29 16:30 - 2020-11-29 16:30 - 000000160 _____ C:\Windows\system32\netcfg-88624.txt
2020-11-29 16:30 - 2020-11-29 16:30 - 000000159 _____ C:\Windows\system32\netcfg-88296.txt
2020-11-29 16:30 - 2020-11-29 16:30 - 000000157 _____ C:\Windows\system32\netcfg-88982.txt
2020-11-29 16:30 - 2020-11-29 16:30 - 000000150 _____ C:\Windows\system32\netcfg-87906.txt
2020-11-29 16:30 - 2020-11-29 16:30 - 000000117 _____ C:\Windows\system32\netcfg-109434.txt
2020-11-29 16:30 - 2020-11-29 16:30 - 000000117 _____ C:\Windows\system32\netcfg-109153.txt
2020-11-29 16:29 - 2020-11-29 16:29 - 000001136 _____ C:\Windows\system32\netcfg-85972.txt
2020-11-29 16:29 - 2020-11-29 16:29 - 000001136 _____ C:\Windows\system32\netcfg-80668.txt
2020-11-29 16:29 - 2020-11-29 16:29 - 000000197 _____ C:\Windows\system32\netcfg-82696.txt
2020-11-29 16:29 - 2020-11-29 16:29 - 000000164 _____ C:\Windows\system32\netcfg-87594.txt
2020-11-29 16:29 - 2020-11-29 16:29 - 000000160 _____ C:\Windows\system32\netcfg-85597.txt
2020-11-29 16:29 - 2020-11-29 16:29 - 000000157 _____ C:\Windows\system32\netcfg-85082.txt
2020-11-29 16:28 - 2020-11-29 16:33 - 000000000 ____D C:\Windows\Panther

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-11-29 22:09 - 2012-07-26 08:22 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2020-11-29 21:53 - 2012-07-26 09:12 - 000000000 ____D C:\Windows\system32\NDF
2020-11-29 21:51 - 2012-07-26 11:01 - 000693070 _____ C:\Windows\system32\perfh005.dat
2020-11-29 21:51 - 2012-07-26 11:01 - 000140226 _____ C:\Windows\system32\perfc005.dat
2020-11-29 21:51 - 2012-07-26 08:28 - 001626896 _____ C:\Windows\system32\PerfStringBackup.INI
2020-11-29 21:51 - 2012-07-26 06:37 - 000000000 ____D C:\Windows\Inf
2020-11-29 19:21 - 2012-07-26 08:59 - 000000000 ____D C:\Windows\CbsTemp
2020-11-29 18:38 - 2012-07-26 06:26 - 000262144 ___SH C:\Windows\system32\config\BBI
2020-11-29 16:35 - 2012-07-26 09:12 - 000000000 ____D C:\Windows\rescache
2020-11-29 16:34 - 2012-07-26 09:12 - 000000000 ____D C:\Program Files\Windows NT
2020-11-29 16:33 - 2012-07-26 09:12 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2020-11-29 16:33 - 2012-07-26 09:12 - 000000000 ____D C:\Windows\WinStore
2020-11-29 16:29 - 2012-07-26 08:19 - 000281632 _____ C:\Windows\system32\FNTCACHE.DAT
2020-11-29 16:27 - 2012-07-26 09:13 - 000262144 _____ C:\Windows\system32\config\BCD-Template

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================