Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 14-12-2020
Ran by zsako (administrator) on LAPTOP-725JTKII (LENOVO 80T3) (15-12-2020 19:57:08)
Running from C:\Users\zsako\Downloads
Loaded Profiles: zsako
Platform: Windows 10 Pro Version 2004 19041.685 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(Dolby Laboratories, Inc. -> ) C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe
(ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrl.exe
(ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDCtrlHelper.exe
(ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDIntelligent.exe
(ELAN Microelectronics Corporation -> ELAN Microelectronics Corp.) C:\Program Files\Elantech\ETDService.exe
(Facebook Inc) C:\Program Files\WindowsApps\FACEBOOK.317180B0BB486_810.6.118.0_x64__8xx8rvfyw5nnt\app\Messenger.exe <6>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Chrome\Application\chrome.exe <9>
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.52\GoogleCrashHandler.exe
(Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.52\GoogleCrashHandler64.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_01ee1299f4982efe\igfxCUIService.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_01ee1299f4982efe\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_01ee1299f4982efe\IntelCpHDCPSvc.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\igdlh64.inf_amd64_01ee1299f4982efe\IntelCpHeciSvc.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Users\zsako\AppData\Local\Microsoft\OneDrive\OneDrive.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Windows\Microsoft.NET\Framework64\v3.0\WPF\PresentationFontCache.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\ImmersiveControlPanel\SystemSettings.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\oobe\UserOOBEBroker.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\WWAHost.exe
(Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated) C:\Program Files\Synaptics\SynFP\Shared\SensorDBSynch.exe
(Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated) C:\Windows\System32\valWBFPolicyService.exe
(Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated) C:\Windows\System32\valWbioSyncSvc.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\MsMpEng.exe
(Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2011.6-0\NisSrv.exe
(Qualcomm Atheros -> Windows (R) Win 7 DDK provider) C:\Windows\System32\AdminService.exe
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe <3>
(Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe
(TomTom International B.V. -> TomTom) C:\Program Files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe [16696832 2016-09-09] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_Dolby] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1467400 2016-09-09] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_DOLBYDRAGON] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1467400 2016-09-09] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\...\Run: [RtHDVBg_LENOVO_MICPKEY] => C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe [1467400 2016-09-09] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKU\S-1-5-19\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-20\...\RunOnce: [WAB Migrate] => C:\Program Files\Windows Mail\wab.exe [518656 2019-12-07] (Microsoft Windows -> Microsoft Corporation)
HKU\S-1-5-21-1845353984-864646607-3520784098-1001\...\Run: [MyDriveConnect.exe] => C:\Program Files (x86)\MyDrive Connect\TomTom MyDrive Connect.exe [2155992 2020-01-22] (TomTom International B.V. -> TomTom)
HKLM\...\Windows x64\Print Processors\BJ Print Processor4: C:\Windows\System32\spool\prtprocs\x64\CNBPP4.DLL [84992 2011-08-30] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\...\Print\Monitors\BJ Language Monitor4: C:\WINDOWS\system32\CNBLM4.DLL [267776 2011-08-30] (Microsoft Windows Hardware Compatibility Publisher -> CANON INC.)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files (x86)\Google\Chrome\Application\87.0.4280.88\Installer\chrmstp.exe [2020-12-08] (Google LLC -> Google LLC)

==================== Scheduled Tasks (Whitelisted) ============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {08C6088E-AFBA-4900-8E25-18A38937D934} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-11-20] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {14B8493A-B927-45DC-9F11-411C84A3827B} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23054216 2020-12-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {1DCEA5DB-87BB-42CC-BA67-2B5DAB687B10} - \Lenovo\ImController\TimeBasedEvents\f8522fb8-0d92-4d69-8b0c-90ea4b3ea22e -> No File <==== ATTENTION
Task: {262281AB-F8BE-42DF-AB1E-A5F2C4351954} - \Lenovo\ImController\Lenovo iM Controller Monitor -> No File <==== ATTENTION
Task: {263CBDAC-2DFA-4B55-B7DD-51030D7CDFEC} - \Lenovo\ImController\TimeBasedEvents\55c93cb7-e4d1-41b7-b84e-767d1e68a09a -> No File <==== ATTENTION
Task: {49BBF59D-0793-4178-AAE7-D162EBA72B14} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [116584 2020-12-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {507F25AA-A947-42B9-B179-F2CC7EEDB131} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156968 2019-03-22] (Google Inc -> Google Inc.)
Task: {588B3B92-4A7A-47D7-AC67-86E68F7CA127} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [23054216 2020-12-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {6DED6D72-E59F-492A-8235-033D14B5CD71} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-11-20] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {6FA43506-7CEE-491E-92A8-EB0ACDE8F5B3} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-11-20] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {754D0F9B-DE44-42E9-AB78-0F355613F447} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [156968 2019-03-22] (Google Inc -> Google Inc.)
Task: {9ABF96C9-DEBC-47D6-894B-888655473612} - \Lenovo\ImController\TimeBasedEvents\bc10349b-3155-4f27-a62a-63a98b3278ba -> No File <==== ATTENTION
Task: {A74C3865-0B1F-4DB9-9E97-E9A7182E1423} - \Lenovo\ImController\Lenovo iM Controller Scheduled Maintenance -> No File <==== ATTENTION
Task: {B5BB2641-C2C3-48D8-BC37-D809584B225B} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1349200 2020-11-03] (Adobe Inc. -> Adobe Inc.)
Task: {BAE6C3AC-9748-47C8-AE2C-DDA83F0227CB} - System32\Tasks\Microsoft\Office\Office Subscription Maintenance => C:\Program Files (x86)\Microsoft Office\root\vfs\ProgramFilesCommonx86\Microsoft Shared\Office16\OLicenseHeartbeat.exe [1149336 2020-12-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {C7650EDD-4BED-420F-8152-DFF8EAEDE816} - \Lenovo\ImController\TimeBasedEvents\fc7ba868-51d0-481f-a50a-29f69d5002e4 -> No File <==== ATTENTION
Task: {CD73382B-2E68-46DB-B608-7FF080FCB1B1} - System32\Tasks\Lenovo\BatteryGauge\BatteryGaugeMaintenance => C:\ProgramData\Lenovo\ImController\Plugins\LenovoBatteryGaugePackage\x64\BGHelper.exe
Task: {EAA12345-74B0-4641-BFAB-C493B556CC8C} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [116584 2020-12-15] (Microsoft Corporation -> Microsoft Corporation)
Task: {EF520472-4411-4D6E-BACE-D6F8E885EA47} - \Lenovo\ImController\Plugins\LenovoSystemUpdatePlugin_WeeklyTask -> No File <==== ATTENTION
Task: {F085F0D8-4EF7-472B-AAC9-6A8FDE8D5B80} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MpCmdRun.exe [545704 2020-11-20] (Microsoft Windows Publisher -> Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{121e6f3b-b15b-4456-9d08-65b494e3e9a5}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{2c6a8494-6c9b-4b75-afcf-cd3af9c0d02b}: [DhcpNameServer] 213.194.204.126 85.132.148.70

Edge: 
======
Edge DefaultProfile: Default
Edge Profile: C:\Users\zsako\AppData\Local\Microsoft\Edge\User Data\Default [2020-12-15]

FireFox:
========
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2020-09-16] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: Adobe Reader -> C:\Program Files (x86)\Adobe\Acrobat Reader DC\Reader\AIR\nppdf32.dll [2020-12-07] (Adobe Inc. -> Adobe Systems Inc.)

Chrome: 
=======
CHR Profile: C:\Users\zsako\AppData\Local\Google\Chrome\User Data\Default [2020-12-15]
CHR Notifications: Default -> hxxps://www.dedoles.cz
CHR Extension: (Prezentace) - C:\Users\zsako\AppData\Local\Google\Chrome\User Data\Default\Extensions\aapocclcgogkmnckokdopfmhonfmgoek [2019-03-22]
CHR Extension: (Disk Google) - C:\Users\zsako\AppData\Local\Google\Chrome\User Data\Default\Extensions\apdfllckaahabafndbhieahigkjlhalf [2020-10-24]
CHR Extension: (YouTube) - C:\Users\zsako\AppData\Local\Google\Chrome\User Data\Default\Extensions\blpcfgokakmgnkcojhhkbfbldkacnbeo [2019-03-22]
CHR Extension: (Tabulky) - C:\Users\zsako\AppData\Local\Google\Chrome\User Data\Default\Extensions\felcaaldnbdncclmgdcncolpebgiejap [2019-03-22]
CHR Extension: (Dokumenty Google offline) - C:\Users\zsako\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2020-11-19]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\zsako\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2019-10-03]
CHR Extension: (Gmail) - C:\Users\zsako\AppData\Local\Google\Chrome\User Data\Default\Extensions\pjkljhegncpnkpknbcohdijeoejaedia [2020-10-22]
CHR Extension: (Chrome Media Router) - C:\Users\zsako\AppData\Local\Google\Chrome\User Data\Default\Extensions\pkedcjkdefgpdelpbcmbmeomcjbeemfm [2020-12-08]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [170056 2020-11-03] (Adobe Inc. -> Adobe Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [9105800 2020-12-01] (Microsoft Corporation -> Microsoft Corporation)
R2 DAX2API; C:\Program Files\Dolby\Dolby DAX2\DAX2_API\DolbyDAX2API.exe [154816 2016-07-18] (Dolby Laboratories, Inc. -> )
S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [5197552 2020-12-11] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 valWBFPolicyService; C:\WINDOWS\system32\valWBFPolicyService.exe [77792 2018-04-25] (Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated)
R2 valWbioSyncSvc; C:\WINDOWS\system32\valWbioSyncSvc.exe [48608 2018-04-25] (Microsoft Windows Hardware Compatibility Publisher -> Synaptics Incorporated)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\NisSrv.exe [2491880 2020-11-20] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2011.6-0\MsMpEng.exe [128376 2020-11-20] (Microsoft Windows Publisher -> Microsoft Corporation)
S2 ImControllerService; %SystemRoot%\Lenovo\ImController\Service\Lenovo.Modern.ImController.exe [X]

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 AsusVBus; C:\WINDOWS\System32\drivers\AsusVBus.sys [39704 2016-11-03] (ASUSTeK Computer Inc. -> Windows (R) Win 7 DDK provider)
S3 ATP; C:\WINDOWS\System32\drivers\AsusTP.sys [84472 2016-11-03] (ASUSTeK Computer Inc. -> ASUS Corporation)
S3 BthA2dp; C:\WINDOWS\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
R1 SMIDriverGen; C:\WINDOWS\system32\DRIVERS\smi.sys [31440 2018-04-25] (Synaptics Inc. -> Synaptics Incorporated)
R3 SPUVCbv; C:\WINDOWS\System32\Drivers\SPUVCbv64.sys [899672 2017-10-19] (SUNPLUS INNOVATION TECHNOLOGY INC. -> Sunplus Innovation Technology Inc.)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [48536 2020-11-20] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [429296 2020-11-20] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [70896 2020-11-20] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-12-15 19:06 - 2020-12-15 19:06 - 008447152 _____ (Malwarebytes) C:\Users\zsako\Downloads\AdwCleaner.exe
2020-12-15 18:49 - 2020-12-15 18:49 - 000012126 _____ C:\Users\zsako\Downloads\FRST + Addition.zip
2020-12-15 18:25 - 2020-12-15 19:01 - 000044024 _____ C:\Users\zsako\Downloads\Addition.txt
2020-12-15 18:19 - 2020-12-15 19:59 - 000015772 _____ C:\Users\zsako\Downloads\FRST.txt
2020-12-15 18:18 - 2020-12-15 19:58 - 000000000 ____D C:\FRST
2020-12-15 18:17 - 2020-12-15 18:17 - 002286592 _____ (Farbar) C:\Users\zsako\Downloads\FRST64.exe
2020-12-15 18:15 - 2020-12-15 18:16 - 002000384 _____ (Farbar) C:\Users\zsako\Downloads\FRST.exe
2020-12-15 17:57 - 2020-12-15 18:00 - 000000000 ____D C:\AdwCleaner
2020-12-15 17:55 - 2020-12-15 17:55 - 008447152 _____ (Malwarebytes) C:\Users\zsako\Downloads\adwcleaner_8.0.8.exe
2020-12-15 17:45 - 2020-12-15 17:46 - 393213901 _____ C:\Users\zsako\Downloads\Ulice 3958 16.12.2020.mp4
2020-12-12 15:08 - 2020-12-12 15:14 - 1312412081 _____ C:\Users\zsako\Downloads\Chlap na střídačku-komedie ČR 2020.mp4
2020-12-12 15:01 - 2020-12-12 15:14 - 1414555475 _____ C:\Users\zsako\Downloads\Spravedlnost (3_3).mp4
2020-12-12 15:01 - 2020-12-12 15:10 - 1392916673 _____ C:\Users\zsako\Downloads\Spravedlnost (2_3).mp4
2020-12-12 15:00 - 2020-12-12 15:10 - 1370848102 _____ C:\Users\zsako\Downloads\Spravedlnost (1_3).mp4
2020-12-12 14:54 - 2020-12-12 14:58 - 1691208461 _____ C:\Users\zsako\Downloads\Dívka za zrcadlem (2018)-edwaldr.mp4
2020-12-12 14:51 - 2020-12-12 14:53 - 917794587 _____ C:\Users\zsako\Downloads\Přes prsty (2019) CZ dabing.mp4
2020-12-12 09:04 - 2020-12-12 09:04 - 000001938 _____ C:\Users\zsako\Desktop\Zoom.lnk
2020-12-12 09:03 - 2020-12-12 09:03 - 000000000 ____D C:\Users\zsako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Zoom
2020-12-12 09:02 - 2020-12-12 09:02 - 014694648 _____ (Zoom Video Communications, Inc.) C:\Users\zsako\Downloads\ZoomInstaller (1).exe
2020-12-12 09:00 - 2020-12-12 09:00 - 000083288 _____ (Zoom Video Communications, Inc.) C:\Users\zsako\Downloads\Zoom_cm_fo42mnktZ9vvrZo4_m39Y+LYuk120QebpXkbZgDGRqYZx0ViAZOQY@CuBoMnUahdZVN-KV_kd22b90f45f7f2a71_.exe
2020-12-12 08:54 - 2020-12-12 09:03 - 000000000 ____D C:\Users\zsako\AppData\Roaming\Zoom
2020-12-12 08:54 - 2020-12-12 08:54 - 014694648 _____ (Zoom Video Communications, Inc.) C:\Users\zsako\Downloads\ZoomInstaller.exe
2020-12-11 21:04 - 2020-12-11 21:04 - 000141140 _____ C:\Users\zsako\Downloads\1631_01_zebrovana-cepice_strana_36.pdf
2020-12-11 21:03 - 2020-12-11 21:03 - 000099891 _____ C:\Users\zsako\Downloads\1631_02_cepice-s-bambuli_strana_38.pdf
2020-12-11 19:48 - 2020-12-11 19:48 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\mshtml.tlb
2020-12-11 19:48 - 2020-12-11 19:48 - 002755584 _____ (Microsoft Corporation) C:\WINDOWS\system32\mshtml.tlb
2020-12-11 19:48 - 2020-12-11 19:48 - 000100864 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\ncpa.cpl
2020-12-11 19:48 - 2020-12-11 19:48 - 000010912 _____ C:\WINDOWS\system32\DrtmAuthTxt.wim
2020-12-11 19:47 - 2020-12-11 19:47 - 001333248 _____ C:\WINDOWS\SysWOW64\TextInputMethodFormatter.dll
2020-12-11 19:47 - 2020-12-11 19:47 - 000266240 _____ C:\WINDOWS\SysWOW64\Windows.Internal.UI.Shell.WindowTabManager.dll
2020-12-11 19:47 - 2020-12-11 19:47 - 000240640 _____ C:\WINDOWS\SysWOW64\CoreMas.dll
2020-12-11 19:47 - 2020-12-11 19:47 - 000102912 _____ (Microsoft Corporation) C:\WINDOWS\system32\ncpa.cpl
2020-12-11 19:47 - 2020-12-11 19:47 - 000060928 _____ C:\WINDOWS\system32\runexehelper.exe
2020-12-11 19:47 - 2020-12-11 19:47 - 000048640 _____ (Adobe Systems) C:\WINDOWS\system32\atmlib.dll
2020-12-11 19:47 - 2020-12-11 19:47 - 000039936 _____ (Adobe Systems) C:\WINDOWS\SysWOW64\atmlib.dll
2020-12-11 19:47 - 2020-12-11 19:47 - 000010752 _____ C:\WINDOWS\SysWOW64\agentactivationruntimestarter.exe
2020-12-11 19:47 - 2020-12-11 19:47 - 000001370 _____ C:\WINDOWS\system32\ThirdPartyNoticesBySHS.txt
2020-12-11 19:46 - 2020-12-11 19:46 - 002260480 _____ C:\WINDOWS\system32\TextInputMethodFormatter.dll
2020-12-11 19:46 - 2020-12-11 19:46 - 001822272 _____ (Microsoft Corporation) C:\WINDOWS\system32\winload.efi
2020-12-11 19:46 - 2020-12-11 19:46 - 001393496 _____ (Microsoft Corporation) C:\WINDOWS\system32\winresume.efi
2020-12-11 19:45 - 2020-12-11 19:45 - 000363520 _____ C:\WINDOWS\system32\Windows.Internal.UI.Shell.WindowTabManager.dll
2020-12-11 19:45 - 2020-12-11 19:45 - 000287232 _____ C:\WINDOWS\system32\CoreMas.dll
2020-12-11 19:45 - 2020-12-11 19:45 - 000165376 _____ C:\WINDOWS\system32\DataStoreCacheDumpTool.exe
2020-12-11 19:45 - 2020-12-11 19:45 - 000089088 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.proxystub.dll
2020-12-11 19:45 - 2020-12-11 19:45 - 000073216 _____ C:\WINDOWS\system32\windows.applicationmodel.conversationalagent.internal.proxystub.dll
2020-12-11 19:45 - 2020-12-11 19:45 - 000013312 _____ C:\WINDOWS\system32\agentactivationruntimestarter.exe
2020-12-10 19:42 - 2020-12-10 19:42 - 000106345 _____ C:\Users\zsako\Downloads\Zdena_Sakova_motivacni_dopis_eng (1).pdf
2020-12-10 19:41 - 2020-12-10 19:41 - 000121367 _____ C:\Users\zsako\Downloads\Zdena_Sakova_zivotopis_eng (1).pdf
2020-12-10 19:36 - 2020-12-10 19:36 - 000106345 _____ C:\Users\zsako\Downloads\Zdena_Sakova_motivacni_dopis_eng.pdf
2020-12-10 19:35 - 2020-12-10 19:35 - 000110538 _____ C:\Users\zsako\Downloads\Zdena_Sakova_motivacni_dopis.pdf
2020-12-10 19:34 - 2020-12-10 19:34 - 000121367 _____ C:\Users\zsako\Downloads\Zdena_Sakova_zivotopis_eng.pdf
2020-12-10 19:34 - 2020-12-10 19:34 - 000117729 _____ C:\Users\zsako\Downloads\Zdena_Sakova_zivotopis.pdf
2020-12-10 16:33 - 2020-12-10 16:33 - 000213977 _____ C:\Users\zsako\Downloads\2020-12-09 Zdena_Sakova_motivacni_dopis-corr.pdf
2020-12-10 16:33 - 2020-12-10 16:33 - 000165918 _____ C:\Users\zsako\Downloads\2020-12-09 Zdena_Sakova_zivotopis_eng-corr.pdf
2020-12-10 16:32 - 2020-12-10 16:33 - 000144993 _____ C:\Users\zsako\Downloads\2020-12-09 Zdena_Sakova_zivotopis-corr.pdf
2020-12-10 16:32 - 2020-12-10 16:32 - 000216481 _____ C:\Users\zsako\Downloads\2020-12-09 Zdena_Sakova_motivacni_dopis_eng-corr.pdf
2020-12-09 23:00 - 2020-12-09 23:00 - 000403561 _____ C:\Users\zsako\Downloads\short-stories-the-snowman-worksheet.pdf
2020-12-09 22:56 - 2020-12-09 22:56 - 001254398 _____ C:\Users\zsako\Downloads\flashcards-christmas-bw.pdf
2020-12-06 14:54 - 2020-12-06 15:56 - 000011578 _____ C:\Users\zsako\Downloads\Slovesa.xlsx
2020-12-05 14:21 - 2020-12-05 14:21 - 000083996 _____ C:\Users\zsako\Downloads\LU-Taugenichts_LOSUNGEN.pdf
2020-12-04 13:34 - 2020-12-04 13:34 - 085119623 _____ C:\Users\zsako\Downloads\Objective - Proficiency-SB [2ed-2013].pdf
2020-12-03 15:40 - 2020-12-03 15:40 - 001203053 _____ C:\Users\zsako\Downloads\Shopping_easy.pdf
2020-12-03 15:40 - 2020-12-03 15:40 - 001181476 _____ C:\Users\zsako\Downloads\House.pdf
2020-11-27 20:42 - 2020-11-27 20:42 - 000001142 _____ C:\Users\Public\Desktop\CEWE FOTOLAB fotosvet.lnk
2020-11-27 20:42 - 2020-11-27 20:42 - 000001142 _____ C:\ProgramData\Desktop\CEWE FOTOLAB fotosvet.lnk
2020-11-27 20:42 - 2020-11-27 20:42 - 000001122 _____ C:\Users\Public\Desktop\CEWE fotoimporter.lnk
2020-11-27 20:42 - 2020-11-27 20:42 - 000001122 _____ C:\ProgramData\Desktop\CEWE fotoimporter.lnk
2020-11-27 20:42 - 2020-11-27 20:42 - 000001112 _____ C:\Users\Public\Desktop\CEWE prezentace.lnk
2020-11-27 20:42 - 2020-11-27 20:42 - 000001112 _____ C:\ProgramData\Desktop\CEWE prezentace.lnk
2020-11-27 20:42 - 2020-11-27 20:42 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\CEWE FOTOLAB fotosvet
2020-11-27 20:32 - 2020-11-27 20:32 - 000000000 ____D C:\Users\zsako\AppData\Roaming\hps-install
2020-11-26 18:07 - 2020-11-27 21:05 - 000000000 ____D C:\Users\zsako\Downloads\Dnes
2020-11-25 21:54 - 2020-11-25 21:54 - 000027666 _____ C:\Users\zsako\Downloads\20_1277204289_game_adjectives_pdf.pdf
2020-11-25 21:52 - 2020-11-25 21:52 - 000241776 _____ C:\Users\zsako\Downloads\20_1296891301_irregular_verbs_pdf_-_test2_pre_intermediate__5_tests_.pdf
2020-11-25 21:51 - 2020-11-25 21:51 - 000073790 _____ C:\Users\zsako\Downloads\20-comparison-game-00.pdf
2020-11-25 21:51 - 2020-11-25 21:51 - 000060753 _____ C:\Users\zsako\Downloads\20_1300828275_taboo_cards_2.pdf
2020-11-25 21:45 - 2020-11-25 21:45 - 000041791 _____ C:\Users\zsako\Downloads\t-024-past-simple-progressive.pdf
2020-11-25 21:45 - 2020-11-25 21:45 - 000034975 _____ C:\Users\zsako\Downloads\qn001-ask-for-underlined-word.pdf
2020-11-25 19:15 - 2020-11-25 19:15 - 001022299 _____ C:\Users\zsako\Downloads\preposition-power-place.pptx
2020-11-23 19:45 - 2020-11-23 19:45 - 000000000 ___RD C:\Users\zsako\Downloads\BallardAppCraftery.CraftyFileViewer_epyrqhfctk40t!App
2020-11-23 19:43 - 2020-11-23 19:43 - 081148952 _____ C:\Users\zsako\Downloads\B1-Aus dem.rar
2020-11-21 12:32 - 2020-11-21 12:32 - 001556285 _____ C:\Users\zsako\Downloads\Nákupní seznam - IKEA.pdf
2020-11-19 15:38 - 2020-11-19 15:38 - 000319289 _____ C:\Users\zsako\Downloads\Home.html

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2020-12-15 19:50 - 2019-12-07 10:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2020-12-15 18:55 - 2019-12-07 10:14 - 000000000 ___HD C:\Program Files\WindowsApps
2020-12-15 18:55 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\AppReadiness
2020-12-15 18:34 - 2020-08-30 17:36 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2020-12-15 18:32 - 2019-12-07 10:13 - 000000000 ____D C:\WINDOWS\INF
2020-12-15 18:09 - 2020-01-17 22:12 - 000000000 ____D C:\Users\zsako\AppData\Roaming\Messenger
2020-12-15 18:07 - 2017-09-19 18:56 - 000000000 ___RD C:\Users\zsako\OneDrive
2020-12-15 18:04 - 2017-09-19 18:51 - 000000000 __SHD C:\Users\zsako\IntelGraphicsProfiles
2020-12-15 18:03 - 2020-08-30 18:08 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2020-12-15 18:03 - 2020-08-30 17:36 - 000008192 ___SH C:\DumpStack.log.tmp
2020-12-15 18:03 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\ServiceState
2020-12-15 18:03 - 2019-03-22 23:02 - 000000000 ____D C:\ProgramData\Synaptics
2020-12-15 18:02 - 2019-12-07 10:03 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2020-12-15 18:01 - 2020-08-30 16:18 - 000000000 ____D C:\WINDOWS\Lenovo
2020-12-15 18:01 - 2019-03-22 22:59 - 000000000 ____D C:\ProgramData\Lenovo
2020-12-15 18:00 - 2020-08-30 18:08 - 000000000 ____D C:\WINDOWS\system32\Tasks\Lenovo
2020-12-15 18:00 - 2019-03-24 17:10 - 000000000 ____D C:\Users\zsako\AppData\Local\Lenovo
2020-12-15 17:53 - 2019-04-12 21:52 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2020-12-14 20:01 - 2020-08-30 16:21 - 000000000 ____D C:\Users\zsako
2020-12-13 18:05 - 2019-12-07 10:03 - 000000000 ____D C:\WINDOWS\CbsTemp
2020-12-12 08:52 - 2020-06-08 19:31 - 000002426 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2020-12-12 08:52 - 2020-06-08 19:31 - 000002264 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2020-12-12 08:52 - 2020-06-08 19:31 - 000002264 _____ C:\ProgramData\Desktop\Microsoft Edge.lnk
2020-12-11 21:18 - 2020-08-30 17:50 - 001693136 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2020-12-11 21:18 - 2019-12-07 15:43 - 000717960 _____ C:\WINDOWS\system32\perfh005.dat
2020-12-11 21:18 - 2019-12-07 15:43 - 000145102 _____ C:\WINDOWS\system32\perfc005.dat
2020-12-11 21:10 - 2020-08-30 17:36 - 000437912 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2020-12-11 21:09 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2020-12-11 21:06 - 2019-12-07 15:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2020-12-11 21:06 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2020-12-11 21:06 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\SystemResources
2020-12-11 21:06 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\migwiz
2020-12-11 21:06 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\system32\Dism
2020-12-11 21:06 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2020-12-11 21:06 - 2019-12-07 10:14 - 000000000 ____D C:\WINDOWS\bcastdvr
2020-12-11 21:06 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files\Windows Defender
2020-12-11 21:06 - 2019-12-07 10:14 - 000000000 ____D C:\Program Files (x86)\Windows Defender
2020-12-11 18:43 - 2020-08-30 18:08 - 000003378 _____ C:\WINDOWS\system32\Tasks\OneDrive Standalone Update Task-S-1-5-21-1845353984-864646607-3520784098-1001
2020-12-11 18:43 - 2020-08-30 16:21 - 000002368 _____ C:\Users\zsako\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2020-12-10 18:58 - 2020-10-19 21:22 - 000002143 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Acrobat Reader DC.lnk
2020-12-09 23:21 - 2019-03-22 23:36 - 000000000 ____D C:\Users\zsako\AppData\Local\Packages
2020-12-08 17:09 - 2019-03-22 23:43 - 000002308 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2020-12-08 17:09 - 2019-03-22 23:43 - 000002267 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2020-12-08 17:09 - 2019-03-22 23:43 - 000002267 _____ C:\ProgramData\Desktop\Google Chrome.lnk
2020-12-06 14:53 - 2019-07-07 09:35 - 000000000 ____D C:\Users\zsako\Downloads\Němčina - Franta
2020-12-03 20:33 - 2020-08-30 18:08 - 000003472 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineUA
2020-12-03 20:33 - 2020-08-30 18:08 - 000003348 _____ C:\WINDOWS\system32\Tasks\GoogleUpdateTaskMachineCore
2020-11-27 22:48 - 2020-10-31 17:49 - 000000000 ____D C:\ProgramData\hps
2020-11-27 22:48 - 2020-10-31 17:48 - 000000000 ____D C:\ProgramData\tmp
2020-11-25 19:04 - 2020-08-30 18:08 - 000003584 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2020-11-25 19:04 - 2020-08-30 18:08 - 000003460 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2020-11-24 19:11 - 2020-10-19 21:24 - 000004562 _____ C:\WINDOWS\system32\Tasks\Adobe Acrobat Update Task
2020-11-23 19:49 - 2019-01-28 21:23 - 000000000 ____D C:\Users\zsako\Knihovna Calibre
2020-11-20 18:34 - 2019-03-22 23:17 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2020-11-16 13:06 - 2019-03-23 20:51 - 000000000 ____D C:\WINDOWS\system32\MRT
2020-11-16 13:02 - 2019-03-23 20:51 - 133736600 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe

==================== Files in the root of some directories ========

2019-05-26 13:46 - 2019-05-26 13:46 - 000000000 _____ () C:\Users\zsako\AppData\Local\{16B7D1E7-1B72-4853-8150-534EF7E67666}
2019-04-07 08:45 - 2019-04-07 08:50 - 000000000 _____ () C:\Users\zsako\AppData\Local\{9A09D82C-8D5B-41E4-8F38-0F236A507B6A}

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================