Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 03-02-2025
Ran by User (administrator) on USER-HP (Hewlett-Packard HP 630 Notebook PC) (10-02-2025 15:25:15)
Running from C:\Users\User\Desktop\FRST64.exe
Loaded Profiles: User
Platform: Microsoft Windows 7 Home Premium  Service Pack 1 (X64) Language: Čeština (Česká republika)
Default browser: FF
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

() [File not signed] C:\Windows\Samsung\PanelMgr\SSMMgr.exe
() [File not signed] C:\Windows\twain_32\Samsung\CLX3170\Scan2Pc.exe
(atiesrxx.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe
(Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\AvastUI.exe <4>
(C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.372\GoogleCrashHandler.exe
(C:\Program Files (x86)\Google\Update\GoogleUpdate.exe ->) (Google LLC -> Google LLC) C:\Program Files (x86)\Google\Update\1.3.36.372\GoogleCrashHandler64.exe
(C:\Program Files\AVAST Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\aswEngSrv.exe
(C:\Windows\Samsung\PanelMgr\SSMMgr.exe ->) () [File not signed] C:\Windows\Samsung\PanelMgr\caller64.exe
(explorer.exe ->) (Atheros Communications Inc. -> Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe
(explorer.exe ->) (Atheros Communications Inc. -> Atheros Communications) [File not signed] C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe
(explorer.exe ->) (Ghisler Software GmbH -> Ghisler Software GmbH) C:\Program Files\totalcmd\TOTALCMD64.EXE
(explorer.exe ->) (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\hkcmd.exe
(explorer.exe ->) (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxpers.exe
(explorer.exe ->) (Intel Corporation - pGFX -> Intel Corporation) C:\Windows\System32\igfxtray.exe
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\OUTLOOK.EXE
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Microsoft Office\root\Office16\WINWORD.EXE
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Windows\WindowsMobile\wmdcBase.exe
(explorer.exe ->) (Paramount Software UK Ltd -> Paramount Software UK Ltd) [File not signed] C:\Program Files\Macrium\Common\ReflectUI.exe
(explorer.exe ->) (Paramount Software UK Ltd -> Paramount Software UK Ltd) C:\Program Files\Macrium\Common\ReflectMonitor.exe
(explorer.exe ->) (Realtek Semiconductor Corp -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe
(explorer.exe ->) (Samsung Electronics CO., LTD. -> ) C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe
(explorer.exe ->) (Skype Software Sarl -> Skype Technologies S.A.) C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe <6>
(explorer.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(Google Inc -> Google Inc.) C:\Program Files (x86)\Google\Update\GoogleUpdate.exe
(Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(Mozilla Corporation -> Mozilla Corporation) C:\Program Files (x86)\Mozilla Firefox\firefox.exe <40>
(services.exe ->) (ABBYY Production LLC -> ABBYY Production LLC) C:\Program Files (x86)\Common Files\ABBYY\FineReader\15\Licensing\NetworkLicenseServer.exe
(services.exe ->) (Abstradrome -> ) C:\Program Files (x86)\HDD Regenerator\hrsrv.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe
(services.exe ->) (Andrea Electronics -> Andrea Electronics Corporation) C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Bonjour\mDNSResponder.exe
(services.exe ->) (Apple Inc. -> Apple Inc.) C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
(services.exe ->) (Atheros Communications Inc. -> Atheros Commnucations) [File not signed] C:\Program Files (x86)\Bluetooth Suite\AdminService.exe
(services.exe ->) (Atheros Communications Inc. -> Atheros) [File not signed] C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\AVAST Software\Avast\wsc_proxy.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\AVAST Software\Avast\AvastSvc.exe
(services.exe ->) (Brio) [File not signed] C:\Program Files\FolderSize\FolderSizeSvc.exe
(services.exe ->) (Brother Industries, Ltd.) [File not signed] C:\Program Files (x86)\Browny02\BrYNSvc.exe
(services.exe ->) (Hewlett-Packard Company -> Hewlett-Packard Company) C:\Program Files (x86)\Hewlett-Packard\Shared\hpqWmiEx.exe
(services.exe ->) (Hewlett-Packard Company -> Hewlett-Packard Company) C:\Program Files\Hewlett-Packard\HP Wireless Assistant\HPWA_Service.exe
(services.exe ->) (Hewlett-Packard Company -> Hewlett-Packard Development Company, L.P.) C:\Program Files (x86)\Hewlett-Packard\HP Quick Launch\HPWMISVC.exe
(services.exe ->) (HP Development Company, L.P.) [File not signed] C:\Windows\System32\spool\drivers\x64\3\NetFaxServer64.exe
(services.exe ->) (HP Inc. -> ) C:\Windows\SysWOW64\spdsvc.exe
(services.exe ->) (Intel(R) Software Development Products -> ) C:\Program Files\Intel Driver Update Utility\SUR\SurSvc.exe
(services.exe ->) (Luis Cobian Dorta -> Luis Cobian, CobianSoft) C:\Program Files\Cobian Reflector\Cobian.Reflector.VSCRequester.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe
(services.exe ->) (OpenVPN Inc. -> The OpenVPN Project) C:\Program Files\OpenVPN\bin\openvpnserv.exe
(services.exe ->) (Paramount Software UK Ltd -> Paramount Software UK Ltd) [File not signed] C:\Program Files\Macrium\Common\MacriumService.exe
(services.exe ->) (Realsil Microelectronics Inc.) [File not signed] C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe
(services.exe ->) (Samsung Electronics CO., LTD. -> ) C:\Windows\SysWOW64\SecUPDUtilSvc.exe
(services.exe ->) (Samsung Electronics Co., Ltd. -> Clonix & CottonCandy) C:\Program Files (x86)\Samsung\Samsung Magician\MigrationService\MigrationService.exe
(services.exe ->) (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagicianSVC.exe
(services.exe ->) (Silhouette Research & Technology Ltd -> ) C:\Program Files (x86)\Silhouette America\Silhouette Link\Resources\Resources\SPEC_LK\SilhouetteLinkServer.32.exe
(services.exe ->) (Sony Nordic (Sweden), Filial till Sony Europe B.V.(NL) -> Sony) C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe
(services.exe ->) (TeamViewer Germany GmbH -> TeamViewer Germany GmbH) C:\Program Files\TeamViewer\TeamViewer_Service.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe
(taskeng.exe ->) (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe <4>

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [455976 2025-02-08] (Avast Software s.r.o. -> Gen Digital Inc.)
HKLM\...\Run: [AdobeAAMUpdater-1.0] => C:\Program Files (x86)\Common Files\Adobe\OOBE\PDApp\UWA\UpdaterStartupUtility.exe [509936 2018-04-10] (Adobe Systems Incorporated -> Adobe Systems Incorporated)
HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [6602856 2011-01-11] (Realtek Semiconductor Corp -> Realtek Semiconductor)
HKLM\...\Run: [SynTPEnh] => C:\Program Files\Synaptics\SynTP\SynTPEnh.exe [2832168 2011-10-01] (Synaptics Incorporated -> Synaptics Incorporated)
HKLM\...\Run: [AtherosBtStack] => C:\Program Files (x86)\Bluetooth Suite\BtvStack.exe [627360 2011-05-09] (Atheros Communications Inc. -> Atheros Communications) [File not signed]
HKLM\...\Run: [AthBtTray] => C:\Program Files (x86)\Bluetooth Suite\AthBtTray.exe [379552 2011-05-09] (Atheros Communications Inc. -> Atheros Commnucations) [File not signed]
HKLM\...\Run: [Windows Mobile-based device management] => C:\Windows\WindowsMobile\wmdcBase.exe [660360 2007-05-31] (Microsoft Corporation -> Microsoft Corporation)
HKLM\...\Run: [CDAServer] => C:\Program Files\Common Files\Common Desktop Agent\CDASrv.exe [464608 2014-09-08] (Samsung Electronics CO., LTD. -> )
HKLM\...\Run: [Cobian Reflector] => C:\Program Files\Cobian Reflector\Cobian.Reflector.Application.exe [726864 2024-07-03] (Luis Cobian Dorta -> Luis Cobian, CobianSoft)
HKLM-x32\...\Run: [Samsung PanelMgr] => C:\Windows\Samsung\PanelMgr\SSMMgr.exe [606208 2009-12-09] () [File not signed]
HKLM-x32\...\Run: [3170 Scan2PC] => C:\Windows\twain_32\Samsung\CLX3170\Scan2Pc.exe [503808 2009-06-11] () [File not signed]
HKLM-x32\...\Run: [ControlCenter4] => C:\Program Files (x86)\ControlCenter4\BrCcBoot.exe [145344 2019-07-26] (Brother Industries, Ltd. -> Brother Industries, Ltd.)
HKLM-x32\...\Run: [BrStsMon00] => C:\Program Files (x86)\Browny02\Brother\BrStMonW.exe [3146752 2022-02-07] (Brother Industries, Ltd.) [File not signed]
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-1774914857-781037911-2211211126-1000\...\Run: [Skype for Desktop] => C:\Program Files (x86)\Microsoft\Skype for Desktop\Skype.exe [123172920 2025-02-05] (Skype Software Sarl -> Skype Technologies S.A.)
HKU\S-1-5-21-1774914857-781037911-2211211126-1000\...\Run: [Bonus.SSR.FR15] => C:\Program Files (x86)\ABBYY FineReader 15\ScreenshotReader.exe [1106592 2020-05-30] (ABBYY Production LLC -> ABBYY Production LLC.) [File not signed]
HKU\S-1-5-21-1774914857-781037911-2211211126-1000\...\Run: [Polar FlowSync] => C:\Program Files\Polar\Polar FlowSync\FlowSync.exe [1396224 2023-02-14] (Polar Electro Oy) [File not signed]
HKU\S-1-5-21-1774914857-781037911-2211211126-1000\...\Run: [STUISpeedLauncher] => C:\Program Files\Samsung\Stylish UI Pack\TouchBasedUI.exe [411136 2015-02-09] () [File not signed]
HKU\S-1-5-21-1774914857-781037911-2211211126-1000\...\Run: [XperiaCompanionAgent] => C:\Program Files (x86)\Sony\Xperia Companion\XperiaCompanionAgent.exe [1728536 2024-02-19] (Sony Nordic (Sweden), Filial till Sony Europe B.V.(NL) -> Sony)
HKU\S-1-5-21-1774914857-781037911-2211211126-1000\...\Run: [Audials] => C:\Program Files (x86)\Audials\Audials 2019\Audials.exe [964240 2019-03-18] (Audials AG -> Audials AG)
HKU\S-1-5-21-1774914857-781037911-2211211126-1000\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45368112 2025-01-14] (Gen Digital Inc. -> Gen Digital Inc.)
HKU\S-1-5-21-1774914857-781037911-2211211126-1000\...\Run: [AudialsNotifier] => C:\Program Files (x86)\Audials\Audials 2019\AudialsNotifier.exe [2208912 2019-03-18] (Audials AG -> )
HKU\S-1-5-18\...\Run: [GoogleDriveFS] => C:\Program Files\Google\Drive File Stream\68.0.2.0\GoogleDriveFS.exe --startup_mode (No File)
HKLM\...\Windows x64\Print Processors\hpzppWN7: C:\Windows\System32\spool\prtprocs\x64\hpzppWN7.dll [101376 2009-07-14] (Microsoft Windows -> Hewlett-Packard Corporation)
HKLM\...\Windows x64\Print Processors\Samsung Network PC Fax Print Processor: C:\Windows\System32\spool\prtprocs\x64\NetFaxProc64.dll [146944 2021-04-14] (HP Development Company, L.P.) [File not signed]
HKLM\...\Windows x64\Print Processors\ssm1MPC: C:\Windows\System32\spool\prtprocs\x64\ssm1mpc.dll [53768 2015-09-04] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Codename Longhorn DDK provider)
HKLM\...\Windows x64\Print Processors\SST1CPC: C:\Windows\System32\spool\prtprocs\x64\sst1cpc.dll [33792 2007-08-14] (Windows (R) Server 2003 DDK provider) [File not signed]
HKLM\...\Windows x64\Print Processors\us001PC: C:\Windows\System32\spool\prtprocs\x64\us001pc.dll [52088 2019-08-26] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Codename Longhorn DDK provider)
HKLM\...\Windows x64\Print Processors\us015PC: C:\Windows\System32\spool\prtprocs\x64\us015pc.dll [52088 2019-08-26] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Codename Longhorn DDK provider)
HKLM\...\Print\Monitors\Adobe PDF Port Monitor: C:\Windows\system32\AdobePDF.dll [203936 2024-03-11] (Adobe Inc. -> Adobe Systems Inc)
HKLM\...\Print\Monitors\HP D811 Status Monitor: C:\Windows\system32\hpinkstsD811LM.dll [393352 2017-04-05] (Hewlett Packard -> HP Inc.)
HKLM\...\Print\Monitors\HP Discovery Port Monitor (HP DeskJet 4530 series): C:\Windows\system32\HPDiscoPMD811.dll [807432 2015-03-09] (Hewlett Packard -> Hewlett-Packard Development Company, LP)
HKLM\...\Print\Monitors\PDF-XChange Lite Port Monitor: C:\Windows\system32\pxcpmL.dll [2161920 2019-01-28] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
HKLM\...\Print\Monitors\PDF-XChange4: C:\Windows\system32\pxc40pm.dll [53528 2010-10-15] (Tracker Software Products Ltd -> Tracker Software Products Ltd.)
HKLM\...\Print\Monitors\PDF-XChange5: C:\Windows\system32\pxc50pm.dll [57920 2013-01-19] (Tracker Software Products (Canada) Ltd -> Tracker Software Products (Canada) Ltd.)
HKLM\...\Print\Monitors\PDF-XChange5-ABBYY-FR15: C:\Windows\system32\pxc50pmaf15.dll [57328 2018-12-04] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
HKLM\...\Print\Monitors\Samsung Network PC Fax Port: C:\Windows\system32\NetFaxPort64.dll [586240 2021-04-14] (HP Development Company, L.P.) [File not signed]
HKLM\...\Print\Monitors\Software602 XPS port monitor: C:\Windows\system32\602localmon.dll [54864 2018-05-31] (Software602 a.s. -> Windows (R) Win 7 DDK provider)
HKLM\...\Print\Monitors\ssm1M Langmon: C:\Windows\system32\ssm1mlm.dll [31096 2019-06-26] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\...\Print\Monitors\SST1C Langmon: C:\Windows\system32\sst1cl6.dll [22016 2007-08-14] () [File not signed]
HKLM\...\Print\Monitors\us001 Langmon: C:\Windows\system32\us001lm.dll [31096 2019-08-26] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\...\Print\Monitors\us015 Langmon: C:\Windows\system32\us015lm.dll [31096 2019-08-26] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\...\Print\Monitors\Wondershare PDFelement Monitor: C:\Windows\system32\PEPrinterMonitor.dll [408304 2024-10-14] (Wondershare Technology Group Co.,Ltd -> Wondershare Software)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\109.0.5414.120\Installer\chrmstp.exe [2023-01-27] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{E5931AF4-2A8F-48A5-AFC8-3605AD5C0A0C}] -> reg add HKCU\Software\Microsoft\Windows\CurrentVersion\Run /f /v OPENVPN-GUI /t REG_SZ /d "C:\Program Files\OpenVPN\bin\openvpn-gui.exe"
HKLM\Software\Wow6432Node\Microsoft\Active Setup\Installed Components: [{CEF33D92-79AB-4795-98CC-A5C58EB4C823}] -> C:\Program Files (x86)\ABBYY FineReader 15\ScreenshotReader.exe [2020-05-30] (ABBYY Production LLC -> ABBYY Production LLC.) [File not signed]
HKLM\Software\...\Authentication\Credential Providers: [{765458F5-7207-46a2-ABD6-A5F11C0D141B}] -> C:\Program Files (x86)\CyberLink\YouCam8\CLCredProv\x64\CLCredProv.dll [2019-02-19] (CyberLink Corp. -> CyberLink)
HKLM\Software\...\Authentication\Credential Providers: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\Windows\system32\AthCredentialProvider.dll [2013-09-07] (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed]
HKLM\Software\...\Authentication\Credential Provider Filters: [{765458F5-7207-46a2-ABD6-A5F11C0D141B}] -> C:\Program Files (x86)\CyberLink\YouCam8\CLCredProv\x64\CLCredProv.dll [2019-02-19] (CyberLink Corp. -> CyberLink)
HKLM\Software\...\Authentication\Credential Provider Filters: [{ACFC407B-266C-8504-8DAE-F3E276336E4B}] -> C:\Windows\system32\AthCredentialProvider.dll [2013-09-07] (Qualcomm Atheros -> Qualcomm®Atheros®) [File not signed]
GroupPolicy: Restriction ? <==== ATTENTION
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION
HKLM\SOFTWARE\Policies\Google: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {D717D275-C3F2-4D32-8741-DD2F6C536DFC} - System32\Tasks\Microsoft\Windows\Application Experience\Microsoft Compatibility Appraiser
Task: {5E2FC4FF-5804-4000-99D6-C3084C553326} - System32\Tasks\{0A1D1305-A800-47E3-8E30-4A5F43414076} => C:\Windows\System32\pcalua.exe [9728 2019-06-12] (Microsoft Windows -> Microsoft Corporation) -> -a "F:\Apl\PINNACLE 12\PS 12 U\Crack\Pinnacle.pixie.activation.exe" -d "F:\Apl\PINNACLE 12\PS 12 U\Crack"
Task: {8C9ACA74-6FD6-48C4-979B-88BC55CF4641} - System32\Tasks\{4A0E87CD-1F23-4E58-9CF7-C02063260593} => c:\program files\internet explorer\iexplore.exe [810376 2019-12-18] (Microsoft Corporation -> Microsoft Corporation) -> hxxps://ui.skype.com/ui/0/7.40.0.104/cs/go/help.faq.installer?source=lightinstaller&LastError=1603 <==== ATTENTION
Task: {DB85438F-048E-4BF3-B8DB-38316C537F91} - System32\Tasks\{CF415DD6-E7A8-4F26-AFB8-CAF4B66A5A0C} => C:\Windows\System32\pcalua.exe [9728 2019-06-12] (Microsoft Windows -> Microsoft Corporation) -> -a "C:\Users\User\Desktop\Office 2013-2021 C2R Install - Install Lite 7.1.8\Office 2013-2021 C2R Install - Install Lite 7.1.8\OInstall.exe" -d "C:\Users\User\Desktop\Office 2013-2021 C2R Install - Install Lite 7.1.8\Office 2013-2021 C2R Install - Install Lite 7.1.8" <==== ATTENTION
Task: {A389FF3B-3685-440B-9AEE-E5DD39A44B77} - System32\Tasks\{FAEFD87A-E6BF-4542-BFA4-F1CBC311822A} => C:\Windows\System32\pcalua.exe [9728 2019-06-12] (Microsoft Windows -> Microsoft Corporation) -> -a C:\Users\User\AppData\Local\Temp\jre-8u191-windows-au.exe -d C:\Windows\SysWOW64 -c /installmethod=jau FAMILYUPGRADE=1 <==== ATTENTION
Task: {A0CDD4CF-950D-40CD-A06D-DE1AB4EF49A8} - System32\Tasks\Apple\AppleSoftwareUpdate => C:\Program Files (x86)\Apple Software Update\SoftwareUpdate.exe [616832 2019-09-04] (Apple Inc. -> Apple Inc.)
Task: {1FFFA854-E257-4563-8843-F3015CC7E5D2} - System32\Tasks\Avast Software\Avast Antivirus Patcher => C:\Program Files\Common Files\Avast Software\Icarus\avast-av\icarus.exe [8432936 2025-01-24] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {7D09FF95-8C84-4676-B8D3-BB947B62B22D} - System32\Tasks\Avast Software\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5278504 2025-02-08] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {A4C51150-F6D0-402A-B5BE-52E35293EB86} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2564904 2024-11-19] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {FD0AADC9-759D-47D6-AA64-C79F27CBFBEF} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [3480504 2025-01-14] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {C7619A67-0191-4A89-943C-294950B7CD12} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [6139696 2025-01-14] (Gen Digital Inc. -> Gen Digital Inc.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "d3a5df82-3c85-4370-8d7a-24f1cfa45878" --version "6.32.0.11432" --silent
Task: {231442EC-D9EA-4FCB-A8CE-E3A0C2615838} - System32\Tasks\CCleanerSkipUAC - User => C:\Program Files\CCleaner\CCleaner.exe [39138608 2025-01-14] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {64B36A3F-0FED-4A23-A23B-D4961C37AD8C} - System32\Tasks\dzdsrtz => C:\Users\User\Desktop\zalohy na HDD sync\UDL\runasdate-x64\RunAsDate.exe [101704 2022-06-08] (Nir Sofer -> ) -> /movetime 17\01\2025 00:00:00 "C:\Program Files\Bvckup 2\bvckup2.exe"
Task: {F04C02BD-7D69-41E3-9089-3464598A6D94} - System32\Tasks\EPM Preload => C:\Program Files (x86)\Samsung\Easy Printer Manager\EPM2DotNetHandler.exe [752384 2021-02-25] (HP Inc. -> )
Task: {B4ABB60A-7292-4B3A-A8EC-8C13CE491F02} - System32\Tasks\GoogleUpdateTaskMachineCore => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-09-10] (Google Inc -> Google Inc.)
Task: {5D52C57A-7322-4D06-A92F-CDEBFEF1C004} - System32\Tasks\GoogleUpdateTaskMachineUA => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-09-10] (Google Inc -> Google Inc.)
Task: {CE729A39-DA89-45DD-8EC0-064737116183} - System32\Tasks\Hewlett-Packard\HP Support Assistant\HP Support Solutions Framework Updater – Install HPSA => C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\HPSSFUpdater.exe  -> C:\Program Files (x86)\Hewlett-Packard\HP Support Solutions\Modules\\/l
Task: {10854A52-F2AE-411D-A11E-E2E7FF92332A} - System32\Tasks\Intel\Intel Telemetry 2 => C:\Program Files\Intel\Telemetry 2.0\lrio.exe [1741576 2016-03-17] (Intel(R) Software -> Intel Corporation)
Task: {95FC09F3-97F9-479F-91E1-2E52DEFDC421} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24614400 2023-01-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {83CAC896-963B-4AFB-B1C3-1CCCEAB70090} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [24614400 2023-01-02] (Microsoft Corporation -> Microsoft Corporation)
Task: {F74928DE-6992-4B46-90B3-C69B10BA7952} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [160728 2024-11-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {3144D1A3-7C20-4A9B-9359-A3D4AA5178D9} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [160728 2024-11-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {06C65469-9897-4D52-B656-2A02DC0E8FFB} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentFallBack2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [6160864 2024-11-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {9CCCACDA-3728-4B7D-B097-E7CDFC40D811} - System32\Tasks\Microsoft\Office\OfficeTelemetryAgentLogOn2016 => C:\Program Files\Microsoft Office\root\Office16\msoia.exe [6160864 2024-11-19] (Microsoft Corporation -> Microsoft Corporation)
Task: {FB34D8CD-AFFC-426D-88D0-9430AE98CDA4} - System32\Tasks\Real => C:\Program Files\FreeFileSync\RealTimeSync.exe [390256 2025-01-17] (Florian BAUER -> FreeFileSync.org) -> "C:\Users\User\Desktop\BatchRun.ffs_batch"
Task: {00B483BF-DA62-4358-B773-EF64E40CF098} - System32\Tasks\SamsungMagician => C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagician.exe [133905984 2023-03-10] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.) -> C:\Program Files (x86)\Samsung\Samsung Magician\\/AUTOHIDE
Task: {AD09153D-66C8-4A1E-B916-7E8AA0246E2B} - System32\Tasks\Symantec\Norton Error Analyzer 18.5.0.125 => C:\Program Files (x86)\Norton Internet Security\Engine\18.5.0.125\SymErr.exe  /analyze (No File)
Task: {9DB757F8-FCEC-403E-A575-5DE609320AAD} - System32\Tasks\Symantec\Norton Error Processor 18.5.0.125 => C:\Program Files (x86)\Norton Internet Security\Engine\18.5.0.125\SymErr.exe  /submit (No File)
Task: {6939A559-347A-4A34-A054-7DFE565D7927} - System32\Tasks\USER_ESRV_SVC_QUEENCREEK => C:\Windows\System32\Wscript.exe [168960 2018-10-27] (Microsoft Windows -> Microsoft Corporation) -> C:\Program Files\Intel\SUR\QUEENCREEK\//B //NoLogo "C:\Program Files\Intel\SUR\QUEENCREEK\task.vbs"

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe
Task: C:\Windows\Tasks\futors.job => C:\Users\User\AppData\Local\Temp\97419fb2c0\futors.exe <==== ATTENTION

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Winsock: Catalog5 07 C:\Program Files (x86)\Bonjour\mdnsNSP.dll [122128 2015-08-12] (Apple Inc. -> Apple Inc.)
Winsock: Catalog5-x64 07 C:\Program Files\Bonjour\mdnsNSP.dll [133392 2015-08-12] (Apple Inc. -> Apple Inc.)
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{15E695FC-1D1A-4DFA-A0C9-3F1214A94655}: [DhcpNameServer] 10.0.1.138
Tcpip\..\Interfaces\{15E695FC-1D1A-4DFA-A0C9-3F1214A94655}: [DhcpDomain] home
Tcpip\..\Interfaces\{93CE1F4E-3004-439C-80FF-CB63F393108C}: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{93CE1F4E-3004-439C-80FF-CB63F393108C}\7456F62776D275946494: [DhcpNameServer] 192.168.0.1 0.0.0.0
Tcpip\..\Interfaces\{93CE1F4E-3004-439C-80FF-CB63F393108C}\F423D296E6475627E65647D2330373: [DhcpNameServer] 10.0.1.138
Tcpip\..\Interfaces\{93CE1F4E-3004-439C-80FF-CB63F393108C}\F423D296E6475627E65647D2330373: [DhcpDomain] home
Tcpip\..\Interfaces\{F688C34C-7819-4119-AB19-CACBAF2DBD82}\149627D2E45647D2F45747: [DhcpNameServer] 192.168.0.2

FireFox:
========
FF DefaultProfile: tvvbylvp.default
FF ProfilePath: C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\tvvbylvp.default [2025-02-10]
FF Notifications: Mozilla\Firefox\Profiles\tvvbylvp.default -> hxxps://aukro.cz; hxxps://www.instagram.com; hxxps://drive.google.com; hxxps://eletronicabr.com; hxxps://androidforum.cz; hxxps://www.lidl.cz; hxxps://www.aliexpress.com
FF Extension: (SphereGnome) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\tvvbylvp.default\Extensions\SphereGnome [2016-11-29] [Legacy] [not signed]
FF Extension: (SphereGnomeBig) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\tvvbylvp.default\Extensions\SphereGnomeBig [2016-11-29] [Legacy] [not signed]
FF Extension: (SphereGnomeJumbo) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\tvvbylvp.default\Extensions\SphereGnomeJumbo [2016-11-29] [Legacy] [not signed]
FF Extension: (Tab Session Manager) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\tvvbylvp.default\Extensions\Tab-Session-Manager@sienori.xpi [2024-06-11]
FF Extension: (No Name) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\tvvbylvp.default\Extensions\temp [2019-07-10] [not signed]
FF Extension: (Google Translator for Firefox) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\tvvbylvp.default\Extensions\translator@zoli.bod.xpi [2024-04-27]
FF Extension: (Visionary – Balanced) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\tvvbylvp.default\Extensions\visionary-balanced-colorway@mozilla.org.xpi [2023-03-27]
FF Extension: (Zoomy) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\tvvbylvp.default\Extensions\zoomy [2016-11-29] [Legacy] [not signed]
FF Extension: (Imagus) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\tvvbylvp.default\Extensions\{00000f2a-7cde-4f20-83ed-434fcb420d71}.xpi [2020-05-02] [UpdateUrl:hxxps://clients2.google.com/service/update2/crx]
FF Extension: (Aliexpress SuperStar česky, Historie cen) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\tvvbylvp.default\Extensions\{49756ccc-44ea-4661-bc1f-2baba64cca2f}.xpi [2023-11-05]
FF Extension: (FormApps Extension) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\tvvbylvp.default\Extensions\{69F080C9-A1D8-42F8-BD83-3D54D4BC81B3}.xpi [2019-07-12]
FF Extension: (Url Shortener) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\tvvbylvp.default\Extensions\{7aa87a02-77e4-44b0-8dc1-acd8f76703c2}.xpi [2024-07-08]
FF Extension: (Free VPN Proxy) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\tvvbylvp.default\Extensions\{94ed9bbf-a1e2-4e58-81ae-cd16dad818d8}.xpi [2024-05-14]
FF Extension: (ImTranslator: Překladač, Slovník, Hlas) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\tvvbylvp.default\Extensions\{9AA46F4F-4DC7-4c06-97AF-5035170634FE}.xpi [2025-01-19]
FF Extension: (Web Developer) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\tvvbylvp.default\Extensions\{c45c406e-ab73-11d8-be73-000a95be3b12}.xpi [2024-10-16]
FF Extension: (TinyURL) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\tvvbylvp.default\Extensions\{c6d7e675-b8a1-4e3f-9a5c-28a11166b834}.xpi [2024-07-08]
FF Extension: (Hlídač Shopů) - C:\Users\User\AppData\Roaming\Mozilla\Firefox\Profiles\tvvbylvp.default\Extensions\{d6f0f975-91a3-4d78-96f7-5f1859ad18b6}.xpi [2025-02-06]
FF HKLM\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Extension: (Adobe Acrobat) - C:\Program Files\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi [2021-02-01]
FF HKLM-x32\...\Firefox\Extensions: [web2pdfextension.17@acrobat.adobe.com] - C:\Program Files\Adobe\Acrobat DC\Acrobat\Browser\WCFirefoxExtn\WebExtn\signed_extn\adobe_acrobat-1.0-windows.xpi
FF Plugin: @java.com/DTPlugin,version=11.231.2 -> C:\Program Files\Java\jre1.8.0_231\bin\dtplugin\npDeployJava1.dll [2019-10-29] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @java.com/JavaPlugin,version=11.231.2 -> C:\Program Files\Java\jre1.8.0_231\bin\plugin2\npjp2.dll [2019-10-29] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2024-11-19] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2019-01-28] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2019-01-28] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2019-01-28] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin: @videolan.org/vlc,version=3.0.20 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2023-10-30] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2024-03-11] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin: adobe.com/AdobeAAMDetect -> C:\Program Files (x86)\Adobe\Adobe Creative Cloud\Utils\npAdobeAAMDetect64.dll [No File]
FF Plugin-x32: @Google.com/GoogleEarthPlugin -> C:\Program Files (x86)\Google\Google Earth\plugin\npgeplugin.dll [2015-05-20] (Google Inc -> Google)
FF Plugin-x32: @microsoft.com/GENUINE -> disabled [No File]
FF Plugin-x32: @Microsoft.com/NpCtrl,version=1.0 -> c:\Program Files (x86)\Microsoft Silverlight\5.1.50918.0\npctrl.dll [2018-10-23] (Microsoft Corporation ->  Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2024-11-19] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/WLPG,version=15.4.3502.0922 -> C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll [No File]
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2019-01-28] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2019-01-28] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x86.dll [2019-01-28] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin-x32: @WildTangent.com/GamesAppPresenceDetector,Version=1.0 -> C:\Program Files (x86)\WildTangent Games\App\BrowserIntegration\Registered\0\NP_wtapp.dll [No File]
FF Plugin HKU\.DEFAULT: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2019-01-28] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin HKU\.DEFAULT: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2019-01-28] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin HKU\.DEFAULT: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2019-01-28] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin HKU\S-1-5-21-1774914857-781037911-2211211126-1000: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/pdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2019-01-28] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin HKU\S-1-5-21-1774914857-781037911-2211211126-1000: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.adobe.xfdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2019-01-28] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin HKU\S-1-5-21-1774914857-781037911-2211211126-1000: @tracker-software.com/PDF-XChange Editor Plugin,version=1.0,application/vnd.fdf -> C:\Program Files\Tracker Software\PDF Editor\npPDFXEditPlugin.x64.dll [2019-01-28] (Tracker Software Products (Canada) Ltd. -> Tracker Software Products (Canada) Ltd.)
FF Plugin HKU\S-1-5-21-1774914857-781037911-2211211126-1000: @zoom.us/ZoomVideoPlugin -> C:\Users\User\AppData\Roaming\Zoom\bin\npzoomplugin.dll [2020-04-08] (Zoom Video Communications, Inc. -> Zoom Video Communications, Inc.)

Chrome: 
=======
CHR Profile: C:\Users\User\AppData\Local\Google\Chrome\User Data\Default [2025-02-10]
CHR Extension: (Tampermonkey) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\dhdgffkkebhmkfjojejmpbldmpobfkfo [2024-05-10]
CHR Extension: (Adobe Acrobat: PDF edit, convert, sign tools) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\efaidnbmnnnibpcajpcglclefindmkaj [2025-02-04]
CHR Extension: (Dokumenty Google offline) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2023-06-19]
CHR Extension: (Spouštěč aplikací pro Disk (od Googlu)) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\lmjegmlicamnimmfhcmpkclmigmmcbeh [2023-02-03]
CHR Extension: (Aliexpress SuperStar česky, Historie cen) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\mceplokdebjaneacdmhgacicphdkenab [2025-01-12]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\User\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-03-15]
CHR HKLM\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]
CHR HKU\S-1-5-21-1774914857-781037911-2211211126-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [dhdgffkkebhmkfjojejmpbldmpobfkfo]
CHR HKU\S-1-5-21-1774914857-781037911-2211211126-1000\SOFTWARE\Google\Chrome\Extensions\...\Chrome\Extension: [lmjegmlicamnimmfhcmpkclmigmmcbeh]
CHR HKLM-x32\...\Chrome\Extension: [efaidnbmnnnibpcajpcglclefindmkaj]
CHR HKLM-x32\...\Chrome\Extension: [ihcjicgdanjaechkgeegckofjjedodee]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 ABBYY.Licensing.FineReader.15.0; C:\Program Files (x86)\Common Files\ABBYY\FineReader\15\Licensing\NetworkLicenseServer.exe [1058032 2019-07-29] (ABBYY Production LLC -> ABBYY Production LLC)
S2 AcronisOSSReinstallSvc; C:\Program Files (x86)\Common Files\Acronis\Acronis Disk Director\oss_reinstall_svc.exe [2233400 2007-03-15] () [File not signed]
S4 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [172992 2024-01-31] (Adobe Inc. -> Adobe Inc.)
R2 AdobeUpdateService; C:\Program Files (x86)\Common Files\Adobe\Adobe Desktop Common\ElevationManager\AdobeUpdateService.exe [816184 2019-07-26] (Adobe Inc. -> Adobe Inc.)
R2 AERTFilters; C:\Program Files\Realtek\Audio\HDA\AERTSr64.exe [98208 2009-11-18] (Andrea Electronics -> Andrea Electronics Corporation)
R2 Apple Mobile Device Service; C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe [99104 2021-03-16] (Apple Inc. -> Apple Inc.)
R3 aswbIDSAgent; C:\Program Files\AVAST Software\Avast\aswidsagent.exe [7498024 2031-01-01] (Avast Software s.r.o. -> AVAST Software)
R2 Atheros Bt&Wlan Coex Agent; C:\Program Files (x86)\Bluetooth Suite\Ath_CoexAgent.exe [146592 2011-05-09] (Atheros Communications Inc. -> Atheros) [File not signed]
R2 AtherosSvc; C:\Program Files (x86)\Bluetooth Suite\adminservice.exe [80032 2011-05-09] (Atheros Communications Inc. -> Atheros Commnucations) [File not signed]
R2 avast! Antivirus; C:\Program Files\AVAST Software\Avast\AvastSvc.exe [805672 2025-02-08] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 avast! Tools; C:\Program Files\AVAST Software\Avast\aswToolsSvc.exe [1257256 2025-02-08] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 AvastWscReporter; C:\Program Files\AVAST Software\Avast\wsc_proxy.exe [56912 2021-05-20] (Avast Software s.r.o. -> AVAST Software)
R3 BrYNSvc; C:\Program Files (x86)\Browny02\BrYNSvc.exe [321536 2022-01-26] (Brother Industries, Ltd.) [File not signed]
S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1088816 2025-01-14] (Gen Digital Inc. -> Gen Digital Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [11139576 2023-01-02] (Microsoft Corporation -> Microsoft Corporation)
R2 CMigrationService; C:\Program Files (x86)\Samsung\Samsung Magician\MigrationService\MigrationService.exe [761408 2023-03-10] (Samsung Electronics Co., Ltd. -> Clonix & CottonCandy)
R2 CobVSCRequester; C:\Program Files\Cobian Reflector\Cobian.Reflector.VSCRequester.exe [331088 2024-07-03] (Luis Cobian Dorta -> Luis Cobian, CobianSoft)
R2 FolderSize; C:\Program Files\FolderSize\FolderSizeSvc.exe [163840 2013-02-12] (Brio) [File not signed]
S2 gupdate; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-09-10] (Google Inc -> Google Inc.)
S3 gupdatem; C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [144200 2015-09-10] (Google Inc -> Google Inc.)
R2 hddrsrv; C:\Program Files (x86)\HDD Regenerator\hrsrv.exe [82144 2013-05-08] (Abstradrome -> )
S3 hpqcaslwmiex; C:\Program Files (x86)\HP\Shared\hpqwmiex.exe [1128992 2017-12-12] (HP Inc. -> HP)
R2 IconMan_R; C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe [1817088 2010-12-28] (Realsil Microelectronics Inc.) [File not signed]
R2 MacriumService; C:\Program Files\Macrium\Common\MacriumService.exe [6435880 2020-04-04] (Paramount Software UK Ltd -> Paramount Software UK Ltd) [File not signed]
S3 MBAMService; C:\Program Files\Malwarebytes\Anti-Malware\MBAMService.exe [8965728 2025-02-07] (Malwarebytes Inc. -> Malwarebytes)
R2 OpenVPNServiceInteractive; C:\Program Files\OpenVPN\bin\openvpnserv.exe [74336 2020-10-28] (OpenVPN Inc. -> The OpenVPN Project)
S2 qcmtusvc; C:\Program Files (x86)\QUALCOMM Incorporated\Qualcomm USB Drivers For Windows\DriverPackage\Qualcomm\Tools\qcmtusvc.exe [129024 2019-01-02] (QUALCOMM, Inc.) [File not signed]
R2 RapiMgr; C:\Windows\WindowsMobile\rapimgr.dll [225672 2007-05-31] (Microsoft Corporation -> Microsoft Corporation)
R2 Samsung Network Fax Server; C:\Windows\system32\spool\drivers\x64\3\NetFaxServer64.exe [700928 2021-04-14] (HP Development Company, L.P.) [File not signed]
R2 Samsung Printer Dianostics Service; C:\Windows\SysWOW64\spdsvc.exe [508488 2018-06-24] (HP Inc. -> )
R2 SamsungMagicianSVC; C:\Program Files (x86)\Samsung\Samsung Magician\SamsungMagicianSVC.exe [381504 2023-03-10] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
R2 SamsungUPDUtilSvc; C:\Windows\SysWOW64\SecUPDUtilSvc.exe [143664 2022-03-05] (Samsung Electronics CO., LTD. -> )
R2 SilhouetteLink; C:\Program Files (x86)\Silhouette America\Silhouette Link\Resources\Resources\SPEC_LK\SilhouetteLinkServer.32.exe [897200 2016-12-06] (Silhouette Research & Technology Ltd -> )
R2 TeamViewer; C:\Program Files\TeamViewer\TeamViewer_Service.exe [21819184 2025-01-24] (TeamViewer Germany GmbH -> TeamViewer Germany GmbH)
R2 WcesComm; C:\Windows\WindowsMobile\wcescomm.dll [443784 2007-05-31] (Microsoft Corporation -> Microsoft Corporation)
S3 WinDefend; C:\Program Files\Windows Defender\mpsvc.dll [1011712 2013-05-27] (Microsoft Windows -> Microsoft Corporation)
R2 XperiaCompanionService; C:\Program Files\Sony\Xperia Companion\Service\XperiaCompanionService.exe [2375704 2024-02-19] (Sony Nordic (Sweden), Filial till Sony Europe B.V.(NL) -> Sony)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

U5 AppMgmt; C:\Windows\system32\svchost.exe [27136 2009-07-14] (Microsoft Windows -> Microsoft Corporation)
R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [20536 2031-01-01] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [235064 2031-01-01] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [384080 2031-01-01] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [295992 2025-02-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [84536 2025-02-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [28728 2025-02-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [276536 2025-02-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [98360 2025-02-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [69712 2025-02-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [956472 2031-01-01] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [1425976 2025-02-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 aswStm; C:\Windows\System32\drivers\aswStm.sys [206904 2025-02-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 aswTap; C:\Windows\System32\DRIVERS\aswTap.sys [53904 2018-09-07] (AVAST Software s.r.o. -> The OpenVPN Project)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [383032 2025-02-08] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 ATHDFU; C:\Windows\System32\Drivers\AthDfu.sys [55448 2019-10-29] (Atheros Communications Inc. -> Windows (R) Win 7 DDK provider)
S3 BtHidBus; C:\Windows\System32\Drivers\BtHidBus.sys [24032 2013-10-08] (IVT CORPORATION -> IVT Corporation.)
S3 CH341SER_A64; C:\Windows\System32\Drivers\CH341S64.SYS [58368 2009-06-02] (Microsoft Windows Hardware Compatibility Publisher -> www.winchiphead.com)
S3 CLMirrorDriver; C:\Windows\System32\DRIVERS\CLMirrorDriver.sys [21264 2015-05-20] (CyberLink Corp. -> CyberLink)
R3 clwvd; C:\Windows\System32\DRIVERS\clwvd.sys [31088 2011-02-09] (CyberLink -> CyberLink Corporation)
R3 clwvd8; C:\Windows\System32\DRIVERS\clwvd8.sys [52552 2018-08-23] (CyberLink Corp. -> CyberLink Corporation)
R3 ElbyCDFL; C:\Windows\System32\Drivers\ElbyCDFL.sys [40648 2007-02-16] (SlySoft Inc. -> SlySoft, Inc.)
R3 ElbyCDFL; C:\Windows\SysWOW64\Drivers\ElbyCDFL.sys [40648 2007-02-16] (SlySoft Inc. -> SlySoft, Inc.)
S3 ggsomc; C:\Windows\System32\DRIVERS\ggsomc.sys [32384 2018-03-14] (Sony Mobile Communications AB -> Sony Mobile Communications)
S0 giveio; C:\Windows\SysWOW64\drivers\giveio.sys [5248 1996-04-03] () [File not signed]
S4 IObitUnlocker; C:\Program Files (x86)\IObit\IObit Unlocker\IObitUnlocker.sys [48672 2017-06-19] (IObit Information Technology -> IObit)
S3 IvtAudioBusSrv; C:\Windows\System32\Drivers\IvtBtBus.sys [27256 2012-12-24] (IVT CORPORATION -> IVT Corporation.)
S3 IvtPanBusSrv; C:\Windows\System32\Drivers\btnetBus.sys [31480 2012-12-24] (IVT CORPORATION -> IVT Corporation.)
S3 MarvinBus; C:\Windows\System32\DRIVERS\MarvinBus64.sys [261120 2005-09-23] (Pinnacle Systems GmbH) [File not signed]
S3 MBAMSwissArmy; C:\Windows\System32\Drivers\mbamswissarmy.sys [239568 2025-02-07] (Microsoft Windows Hardware Compatibility Publisher -> Malwarebytes)
R0 mrcbt; C:\Windows\System32\drivers\mrcbt.sys [90656 2020-04-03] (Paramount Software UK Ltd -> Windows (R) Win 7 DDK provider)
R0 mrigflt; C:\Windows\System32\drivers\mrigflt.sys [79272 2020-04-03] (Paramount Software UK Ltd -> Windows (R) Win 7 DDK provider)
R0 pwdrvio; C:\Windows\System32\pwdrvio.sys [37336 2021-03-09] (MiniTool Solution Ltd -> )
S3 pwdspio; C:\Windows\system32\pwdspio.sys [12504 2019-11-08] (MiniTool Solution Ltd -> )
S3 qcfilter; C:\Windows\System32\DRIVERS\qcusbfilter.sys [54336 2019-01-02] (Microsoft Windows Hardware Compatibility Publisher -> QUALCOMM Incorporated)
S3 qcusbnet; C:\Windows\System32\DRIVERS\qcusbnet.sys [423496 2019-01-02] (Microsoft Windows Hardware Compatibility Publisher -> QUALCOMM Incorporated)
U5 RrNetCapFilterDriver; C:\Windows\System32\Drivers\RrNetCapFilterDriver.sys [25256 2018-07-18] (Audials AG -> Audials AG)
S3 scvad_simple; C:\Windows\System32\drivers\SplitCamAudio.sys [23552 2016-08-02] (Microsoft Windows Hardware Compatibility Publisher -> Windows (R) Win 7 DDK provider)
S3 SliceDisk5; C:\Program Files\A-FF Find and Mount\slicedisk-x64.sys [31824 2011-02-25] (OOO Sfera-Tehno -> Atola) [File not signed]
R2 speedfan; C:\Windows\SysWOW64\speedfan.sys [28664 2012-12-29] (SOKNO S.R.L. -> Almico Software)
S3 SrvHsfHDA; C:\Windows\System32\DRIVERS\VSTAZL6.SYS [292864 2009-06-10] (Microsoft Windows -> Conexant Systems, Inc.)
S3 SrvHsfV92; C:\Windows\System32\DRIVERS\VSTDPV6.SYS [1485312 2009-06-10] (Microsoft Windows -> Conexant Systems, Inc.)
S3 SrvHsfWinac; C:\Windows\System32\DRIVERS\VSTCNXT6.SYS [740864 2009-06-10] (Microsoft Windows -> Conexant Systems, Inc.)
R2 SSPORT; C:\Windows\system32\Drivers\SSPORT.sys [14224 2021-04-01] (Microsoft Windows Hardware Compatibility Publisher -> HP Inc)
S3 ssudmdm; C:\Windows\System32\DRIVERS\ssudmdm.sys [166760 2020-04-24] (Samsung Electronics Co., Ltd. -> Samsung Electronics Co., Ltd.)
S3 tap0901; C:\Windows\System32\DRIVERS\tap0901.sys [27136 2016-04-20] (OpenVPN Technologies, Inc. -> The OpenVPN Project)
S3 tapprotonvpn; C:\Windows\System32\DRIVERS\tapprotonvpn.sys [39696 2022-10-07] (Proton Technologies AG -> The OpenVPN Project)
U5 tbhsd; C:\Windows\System32\Drivers\tbhsd.sys [48296 2017-04-05] (Audials AG -> RapidSolution Software AG)
S3 teVirtualMIDI64; C:\Windows\System32\DRIVERS\teVirtualMIDI64.sys [41016 2016-08-31] (Tobias Erichsen -> Tobias Erichsen)
R1 UimBus; C:\Windows\System32\DRIVERS\UimBus.sys [102576 2015-11-10] (Paragon Software GmbH -> )
R1 Uim_DEVIM; C:\Windows\System32\DRIVERS\uim_devim.sys [25904 2015-11-10] (Paragon Software GmbH -> )
R1 Uim_IM; C:\Windows\System32\DRIVERS\uim_im.sys [701360 2015-11-10] (Paragon Software GmbH -> )
S3 USBAAPL64; C:\Windows\System32\Drivers\usbaapl64.sys [54784 2017-11-27] (Microsoft Windows Hardware Compatibility Publisher -> Apple, Inc.)
S3 VBoxNetAdp; C:\Windows\System32\DRIVERS\VBoxNetAdp6.sys [237840 2020-07-11] (Oracle Corporation -> Oracle Corporation)
S3 wdm_usb; C:\Windows\System32\DRIVERS\usb2ser.sys [159936 2016-08-16] (NGO -> MBB)
R2 WinisoCDBus; C:\Windows\System32\drivers\WinisoCDBus.sys [204032 2016-10-20] (ZJMedia Digital Technology Ltd. -> WinISO.com)
S3 wintun; C:\Windows\System32\DRIVERS\wintun.sys [29680 2023-02-12] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
S3 WireGuard; C:\Windows\System32\DRIVERS\wireguard.sys [489368 2023-02-12] (Microsoft Windows Hardware Compatibility Publisher -> WireGuard LLC)
S3 AscFileFilter; \??\C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\drivers\win7_amd64\AscFileFilter.sys [X]
S3 AscRegistryFilter; \??\C:\Program Files (x86)\IObit\Advanced SystemCare Ultimate\drivers\win7_amd64\AscRegistryFilter.sys [X]
S3 BlueletAudio; system32\DRIVERS\blueletaudio.sys [X]
S3 BT; system32\DRIVERS\btnetdrv.sys [X]
S3 BTCOM; system32\DRIVERS\btcomport.sys [X]
S3 Btcsrusb; System32\Drivers\btcusb.sys [X]
S3 clwvd9; system32\DRIVERS\clwvd9.sys [X]
S3 cpuz140; \??\C:\Users\User\AppData\Local\Temp\cpuz140\cpuz140_x64.sys [X] <==== ATTENTION
S3 cpuz145; \??\C:\Windows\temp\cpuz145\cpuz145_x64.sys [X] <==== ATTENTION
S3 cpuz148; \??\C:\Windows\temp\cpuz148\cpuz148_x64.sys [X] <==== ATTENTION
S2 DgiVecp; \??\C:\Windows\system32\Drivers\DgiVecp.sys [X]
S3 IvtComBusSrv; System32\Drivers\btcombus.sys [X]
U4 npcap_wifi; no ImagePath
S1 sensorsview; \??\C:\Program Files (x86)\SensorsViewPro41\drv\sensorsview32_64.sys [X]
S3 VHidMinidrv; system32\drivers\VHIDMini.sys [X]

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2025-02-10 15:25 - 2025-02-10 15:26 - 000051993 _____ C:\Users\User\Desktop\FRST.txt
2025-02-09 16:37 - 2025-02-10 15:25 - 000000000 ____D C:\Users\User\Desktop\frst a add
2025-02-09 16:29 - 2025-02-10 15:25 - 000000000 ____D C:\FRST
2025-02-09 16:29 - 2025-02-09 16:29 - 000000000 ____D C:\Users\User\Desktop\FRST_ADDITION
2025-02-09 16:22 - 2025-02-09 16:22 - 002403328 _____ (Farbar) C:\Users\User\Desktop\FRST64.exe
2025-02-08 11:26 - 2025-02-08 11:23 - 000316200 _____ (Gen Digital Inc.) C:\Windows\system32\aswBoot.exe
2025-02-07 13:39 - 2025-02-07 13:39 - 000000000 ____D C:\Users\User\AppData\Local\CrashRpt
2025-02-07 12:09 - 2025-02-07 12:14 - 000000000 ____D C:\Users\User\AppData\Local\Malwarebytes
2025-02-07 12:06 - 2025-02-07 12:06 - 000000000 ____D C:\Program Files\Malwarebytes
2025-02-07 11:08 - 2025-02-07 11:08 - 000000000 ____D C:\Users\User\AppData\Local\Microsoft_Corporation
2025-02-07 09:17 - 2025-02-07 09:17 - 000096517 _____ C:\Users\User\Downloads\faktura-1115380528.pdf
2025-02-07 08:35 - 2025-02-07 08:36 - 000776339 _____ C:\Users\User\Desktop\ImportedPhoto.760356292.987588.jpeg
2025-02-06 09:06 - 2025-02-10 14:44 - 000000000 ____D C:\Program Files (x86)\Mozilla Firefox
2025-02-04 10:32 - 2025-02-04 10:32 - 000003540 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA{159474DC-6647-4143-8E94-E8D11EA6CA97}
2025-02-04 10:32 - 2025-02-04 10:32 - 000003412 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore{E1C6E634-0692-4BED-9D84-11E3C7999335}
2025-02-04 09:56 - 2025-02-04 09:56 - 000003458 _____ C:\Windows\system32\Tasks\dzdsrtz
2025-02-03 18:06 - 2025-02-03 18:06 - 000000000 ____D C:\Program Files (x86)\Microsoft Sync Framework
2025-02-03 17:19 - 2031-01-01 11:23 - 000001896 _____ C:\Users\User\Desktop\Bvckup2.lnk
2025-02-02 10:36 - 2025-02-03 16:07 - 000000000 ____D C:\Program Files\Bvckup 2
2025-02-01 12:23 - 2031-01-01 11:23 - 000000000 ____D C:\Users\User\AppData\Local\Bvckup2
2025-02-01 11:26 - 2025-02-01 11:26 - 000053048 _____ (Gen Digital Inc.) C:\Windows\system32\icarus_rvrt.exe
2025-02-01 11:07 - 2025-02-01 11:07 - 000000262 _____ C:\Windows\Tasks\futors.job
2025-02-01 11:06 - 2025-02-01 11:06 - 000000000 _____ C:\Windows\TrioAllocated
2025-02-01 11:06 - 2025-02-01 11:06 - 000000000 _____ C:\Windows\SharedChose
2025-02-01 11:06 - 2025-02-01 11:06 - 000000000 _____ C:\Windows\PeruScoring
2025-02-01 11:06 - 2025-02-01 11:06 - 000000000 _____ C:\Windows\NearestAol
2025-02-01 11:06 - 2025-02-01 11:06 - 000000000 _____ C:\Windows\IraAssigned
2025-02-01 11:06 - 2025-02-01 11:06 - 000000000 _____ C:\Windows\InvestigationSpy
2025-02-01 11:06 - 2025-02-01 11:06 - 000000000 _____ C:\Windows\FramedWoods
2025-02-01 11:06 - 2025-02-01 11:06 - 000000000 _____ C:\Windows\FishingBreakfast
2025-02-01 11:06 - 2025-02-01 11:06 - 000000000 _____ C:\Windows\BlockRemoval
2025-02-01 11:06 - 2025-02-01 11:06 - 000000000 _____ C:\Windows\AttendOutcome
2025-01-24 16:17 - 2025-01-24 16:17 - 000135246 _____ C:\Users\User\Downloads\predpisy-zaloh-a-plateb-osvc-1.pdf
2025-01-24 16:10 - 2025-01-24 16:10 - 000135039 _____ C:\Users\User\Downloads\predpisy-zaloh-a-plateb-osvc.pdf
2025-01-22 15:24 - 2025-01-22 15:24 - 000000000 ____D C:\Users\User\AppData\Local\Safe Mirror
2025-01-22 15:24 - 2025-01-22 15:24 - 000000000 ____D C:\Users\User\AppData\Local\CobianSoft
2025-01-22 15:24 - 2025-01-22 15:24 - 000000000 ____D C:\Program Files\Cobian Reflector
2025-01-20 12:44 - 2025-01-20 12:44 - 000003270 _____ C:\Windows\system32\Tasks\Real
2025-01-20 10:34 - 2025-02-07 13:30 - 000000000 ____D C:\ESD
2025-01-19 12:19 - 2025-02-08 11:31 - 000000000 ____D C:\Users\User\AppData\Roaming\FreeFileSync
2025-01-19 12:19 - 2025-01-20 11:31 - 000000000 ____D C:\Program Files\FreeFileSync
2025-01-19 11:36 - 2025-02-08 11:53 - 000000000 ____D C:\Users\User\Desktop\zalohy na HDD sync
2025-01-16 21:05 - 2025-01-16 21:05 - 000000000 ____D C:\Users\User\AppData\Roaming\SystemAcCrux
2025-01-16 21:04 - 2025-01-16 21:04 - 000000000 ____D C:\Users\User\AppData\Local\unali-1161659775
2025-01-16 21:04 - 2025-01-16 21:04 - 000000000 ____D C:\Users\User\AppData\Local\unali-1161659588
2025-01-16 14:22 - 2025-01-16 14:22 - 000000000 ____D C:\Users\User\AppData\Roaming\kingsoft
2025-01-16 14:22 - 2025-01-16 14:22 - 000000000 ____D C:\Users\User\AppData\Local\Kingsoft
2025-01-16 10:35 - 2025-01-16 10:35 - 032853504 _____ (TeamViewer) C:\Users\User\Downloads\U-FHV86k.exe.part
2025-01-15 12:05 - 2025-01-15 12:05 - 000424678 _____ C:\Users\User\Downloads\Ceník-8.pdf
2025-01-15 12:05 - 2025-01-15 12:05 - 000236121 _____ C:\Users\User\Downloads\Potvrzení o přiznání individuální slevy -3.pdf
2025-01-15 12:01 - 2025-01-15 12:01 - 000311561 _____ C:\Users\User\Downloads\Ceník-7.pdf
2025-01-15 12:00 - 2025-01-15 12:00 - 000236495 _____ C:\Users\User\Downloads\Potvrzení o přiznání individuální slevy -2.pdf
2025-01-15 12:00 - 2025-01-15 12:00 - 000215875 _____ C:\Users\User\Downloads\Ceník služeb-1.pdf
2025-01-15 11:57 - 2025-01-15 11:57 - 000311561 _____ C:\Users\User\Downloads\Ceník-6.pdf
2025-01-15 11:57 - 2025-01-15 11:57 - 000236495 _____ C:\Users\User\Downloads\Potvrzení o přiznání individuální slevy -1.pdf
2025-01-15 11:56 - 2025-01-15 11:56 - 000113970 _____ C:\Users\User\Downloads\Informace pro zákazníka – spotřebitele.pdf
2025-01-15 11:55 - 2025-01-15 11:55 - 000200354 _____ C:\Users\User\Downloads\Dodatek-1.pdf
2025-01-15 11:49 - 2025-01-15 11:49 - 000195751 _____ C:\Users\User\Downloads\EE_CEN_STD_SROV_241201_DOM.pdf

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2031-01-01 11:23 - 2019-02-22 09:47 - 000384080 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswbidsdriver.sys
2031-01-01 11:23 - 2019-02-22 09:47 - 000020536 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswArDisk.sys
2031-01-01 11:23 - 2017-11-12 17:27 - 000235064 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswArPot.sys
2031-01-01 11:23 - 2017-09-06 15:06 - 000956472 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswSnx.sys
2025-02-10 21:39 - 2017-11-15 08:59 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Word
2025-02-10 21:33 - 2015-09-10 17:54 - 000000000 ____D C:\Program Files (x86)\Google
2025-02-10 15:48 - 2020-03-29 13:48 - 018788864 ___SH C:\Users\User\Desktop\Thumbs.db
2025-02-10 15:25 - 2024-11-19 10:43 - 000000000 ____D C:\Users\User\Documents\Soubory aplikace Outlook
2025-02-10 14:59 - 2009-07-14 05:45 - 000035008 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
2025-02-10 14:59 - 2009-07-14 05:45 - 000035008 ____H C:\Windows\system32\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
2025-02-10 14:55 - 2024-10-17 08:29 - 000003266 _____ C:\Windows\system32\Tasks\CCleanerCrashReporting
2025-02-10 14:55 - 2024-10-17 08:29 - 000000670 _____ C:\Windows\Tasks\CCleanerCrashReporting.job
2025-02-10 14:46 - 2021-05-20 14:44 - 000000000 ____D C:\Users\User\AppData\Local\Avast Software
2025-02-10 14:44 - 2015-09-04 13:01 - 000000000 ___SD C:\Users\User\AppData\Roaming\Microsoft\Credentials
2025-02-09 11:41 - 2015-09-04 13:05 - 000000000 ____D C:\Users\User\Documents\Bluetooth Folder
2025-02-08 22:45 - 2018-09-06 14:44 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Excel
2025-02-08 11:52 - 2024-01-15 16:41 - 000000000 ____D C:\Users\User\AppData\Local\CrashDumps
2025-02-08 11:47 - 2011-04-19 20:01 - 000701262 _____ C:\Windows\system32\perfh005.dat
2025-02-08 11:47 - 2011-04-19 20:01 - 000153844 _____ C:\Windows\system32\perfc005.dat
2025-02-08 11:47 - 2009-07-14 06:13 - 001662108 _____ C:\Windows\system32\PerfStringBackup.INI
2025-02-08 11:47 - 2009-07-14 04:20 - 000000000 ____D C:\Windows\inf
2025-02-08 11:41 - 2024-10-17 08:29 - 000000000 ____D C:\Program Files\CCleaner
2025-02-08 11:41 - 2024-09-25 07:21 - 000000000 ____D C:\Program Files\TeamViewer
2025-02-08 11:41 - 2022-03-17 16:23 - 000000000 ____D C:\Users\User\AppData\Roaming\Samsung Magician
2025-02-08 11:41 - 2017-11-28 23:15 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\Skype for Desktop
2025-02-08 11:41 - 2009-07-14 06:08 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2025-02-08 11:26 - 2018-01-09 11:38 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software
2025-02-08 11:23 - 2020-10-15 08:20 - 000276536 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswMonFlt.sys
2025-02-08 11:23 - 2019-02-22 09:47 - 000295992 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswbidsh.sys
2025-02-08 11:23 - 2019-02-22 09:47 - 000084536 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswbuniv.sys
2025-02-08 11:23 - 2018-10-20 12:39 - 000028728 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswKbd.sys
2025-02-08 11:23 - 2017-09-06 15:06 - 001425976 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswSP.sys
2025-02-08 11:23 - 2017-09-06 15:06 - 000383032 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswVmm.sys
2025-02-08 11:23 - 2017-09-06 15:06 - 000098360 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswRdr2.sys
2025-02-08 11:23 - 2017-09-06 15:06 - 000069712 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswRvrt.sys
2025-02-07 13:50 - 2022-03-08 07:36 - 000000000 ___RD C:\Users\User\Desktop\Systém
2025-02-07 13:43 - 2024-10-26 08:15 - 000000000 ____D C:\Users\User\Desktop\PDF_PDF plocha
2025-02-07 13:08 - 2024-04-23 07:54 - 000000000 ____D C:\Users\User\Desktop\Plotr
2025-02-07 12:32 - 2024-10-19 10:28 - 000000000 ____D C:\Users\User\Desktop\WIN11
2025-02-07 12:32 - 2018-10-19 19:51 - 000000000 ____D C:\Users\User\Downloads\OFFICE
2025-02-07 12:22 - 2024-11-19 09:06 - 000000000 ____D C:\Users\User\Desktop\Office Installer and Office Installer+ v1.18
2025-02-05 08:18 - 2022-03-08 07:42 - 000000000 ___RD C:\Users\User\Desktop\Programy
2025-02-03 17:58 - 2023-05-21 16:03 - 000000000 ____D C:\Users\User\Desktop\Zatim složka
2025-02-03 17:51 - 2024-11-11 08:41 - 000000196 _____ C:\Users\User\Desktop\OBNOVA PRIDELOVANI PISMENE EXT DDD A SSD.txt
2025-02-03 17:50 - 2019-07-16 20:19 - 000000000 ____D C:\Users\User\AppData\Local\GHISLER
2025-02-03 16:57 - 2021-04-06 21:21 - 000000000 ____D C:\Users\User\AppData\Roaming\Kodi
2025-02-01 12:37 - 2023-08-28 18:14 - 000000000 ____D C:\Users\User\Desktop\Passcape Reset Windows Password 1.1.0.148 + Serial 100Pro
2025-02-01 11:26 - 2018-01-09 11:38 - 000000000 ____D C:\Program Files\Common Files\Avast Software
2025-02-01 11:26 - 2017-09-06 15:04 - 000000000 ____D C:\Program Files\AVAST Software
2025-02-01 11:16 - 2024-10-17 08:29 - 000003870 _____ C:\Windows\system32\Tasks\CCleaner Update
2025-01-29 08:23 - 2022-11-19 16:50 - 000000056 _____ C:\Users\User\Desktop\Zjisteni verze win z flesk_ISO.txt
2025-01-27 10:04 - 2024-02-11 15:11 - 000000000 ____D C:\Program Files (x86)\uTorent
2025-01-27 08:18 - 2024-11-28 08:59 - 000000000 ____D C:\Users\User\Downloads\uTorent
2025-01-22 16:08 - 2024-06-21 07:33 - 000000001 _____ C:\Users\User\AppData\Roaming\c
2025-01-22 11:04 - 2024-11-12 08:58 - 000000000 ____D C:\AdwCleaner
2025-01-22 10:44 - 2025-01-06 08:59 - 000000000 ____D C:\Users\User\Desktop\EEEEEEEEEE
2025-01-20 12:43 - 2016-02-17 11:31 - 000000000 ____D C:\Users\User\AppData\Roaming\Microsoft\MMC
2025-01-20 12:11 - 2022-05-20 11:59 - 000000000 ____D C:\Users\User\AppData\Local\ElevatedDiagnostics
2025-01-17 11:33 - 2021-12-10 08:21 - 000000000 ____D C:\Users\User\AppData\Local\Rufus
2025-01-16 21:04 - 2022-01-21 16:09 - 000000000 ____D C:\Program Files (x86)\EaseUS
2025-01-16 08:35 - 2017-09-06 16:38 - 000000000 ____D C:\Windows\system32\MRT
2025-01-16 08:23 - 2017-09-06 16:38 - 206927936 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe

==================== Files in the root of some directories ========

2010-10-28 17:37 - 2010-10-28 17:37 - 000040096 _____ () C:\Program Files\Setup.exe
2020-02-14 15:29 - 2020-02-14 15:29 - 000000604 ____H () C:\Program Files (x86)\STLL Notifier
2021-03-05 19:42 - 2021-03-05 19:49 - 000000624 _____ () C:\Users\User\AppData\Roaming\All CPU MeterV3_Settings.ini
2020-02-14 14:09 - 2020-02-14 14:10 - 001460266 _____ () C:\Users\User\AppData\Roaming\AvidApplicationManager_Install.log
2024-06-21 07:33 - 2025-01-22 16:08 - 000000001 _____ () C:\Users\User\AppData\Roaming\c
2024-04-21 14:45 - 2024-04-21 14:45 - 000000008 _____ () C:\Users\User\AppData\Roaming\com.silhouettesoftware.id
2020-11-27 09:30 - 2020-11-27 09:30 - 000000128 ____H () C:\Users\User\AppData\Roaming\ecf00c38dc807e105d881c433a6b455dd2c606b6
2024-03-28 14:58 - 2024-09-22 13:37 - 000013317 _____ () C:\Users\User\AppData\Roaming\plugin_scan_state_VST2_x32.scan
2024-03-28 14:58 - 2024-09-22 13:37 - 000015830 _____ () C:\Users\User\AppData\Roaming\plugin_scan_state_VST2_x64.scan
2024-03-28 14:58 - 2024-09-22 13:37 - 000000059 _____ () C:\Users\User\AppData\Roaming\plugin_scan_state_VST3_x32.scan
2024-03-28 14:58 - 2024-09-22 13:37 - 000000059 _____ () C:\Users\User\AppData\Roaming\plugin_scan_state_VST3_x64.scan
2021-03-05 19:52 - 2021-03-05 19:52 - 000000117 _____ () C:\Users\User\AppData\Roaming\System Monitor II_UptimeRecord.ini
2022-05-27 07:08 - 2022-05-27 07:08 - 000002542 _____ () C:\Users\User\AppData\Roaming\Microsoft\091971e8-e6ed-489b-a12f-cb8388afd4e1.tmp
2024-11-28 13:36 - 2024-11-28 13:36 - 000196608 _____ () C:\Users\User\AppData\Local\377E472A1B264b4197A10D058D08FD47.FDU_241128.fdu
2023-05-06 13:07 - 2023-05-06 13:07 - 000003584 _____ () C:\Users\User\AppData\Local\DCBC2A71-70D8-4DAN-EHR8-E0D61DEA3FDF.ini
2019-07-12 13:15 - 2024-04-10 09:05 - 000000410 _____ () C:\Users\User\AppData\Local\oobelibMkey.log
2021-03-19 10:37 - 2021-03-19 10:37 - 000016438 _____ () C:\Users\User\AppData\Local\partner.bmp
2020-04-04 08:44 - 2020-04-04 08:44 - 000000856 _____ () C:\Users\User\AppData\Local\recently-used.xbel
2022-11-24 19:33 - 2022-11-24 19:33 - 000007605 _____ () C:\Users\User\AppData\Local\Resmon.ResmonCfg

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)


LastRegBack: 2025-02-10 02:40
==================== End of FRST.txt ========================