Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 07-07-2025
Ran by Dědič (administrator) on DESKTOP-LVVP3PV (Acer Extensa X2610G) (08-07-2025 15:35:29)
Running from C:\Users\Dědič\Desktop\FRST64.exe
Loaded Profiles: Dědič
Platform: Microsoft Windows 10 Home Version 22H2 19045.6036 (X64) Language: Čeština (Česko)
Default browser: "C:\Users\Dědič\AppData\Local\Programs\Opera\opera.exe" -noautoupdate -- "%1"
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastUI.exe <4>
(C:\Program Files\Avast Software\Avast\AvastSvc.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswEngSrv.exe
(C:\Users\Dědič\AppData\Local\Programs\Opera\opera.exe ->) (Opera Norway AS -> Opera Software) C:\Users\Dědič\AppData\Local\Programs\Opera\119.0.5497.141\opera_crashreporter.exe
(explorer.exe ->) (Opera Norway AS -> Opera Software) C:\Users\Dědič\AppData\Local\Programs\Opera\opera.exe <20>
(Intel(R) pGFX -> ) C:\Windows\System32\igfxTray.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxEM.exe
(Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxHK.exe
(Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <7>
(services.exe ->) (Avast Software s.r.o. -> AVAST Software) C:\Program Files\Avast Software\Avast\wsc_proxy.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswidsagent.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\aswToolsSvc.exe
(services.exe ->) (Avast Software s.r.o. -> Gen Digital Inc.) C:\Program Files\Avast Software\Avast\AvastSvc.exe
(services.exe ->) (Intel(R) pGFX -> Intel Corporation) C:\Windows\System32\igfxCUIService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(svchost.exe ->) (24803D75-212C-471A-BC57-9EF86AB91435 -> ) C:\Program Files\WindowsApps\5319275A.WhatsAppDesktop_2.2526.2.0_x64__cv1g1gvanyjgm\WhatsApp.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft Office\root\Office16\SDXHelper.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [AvastUI.exe] => C:\Program Files\Avast Software\Avast\AvLaunch.exe [798456 2025-06-28] (Avast Software s.r.o. -> Gen Digital Inc.)
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiSpyware] Restriction <==== ATTENTION
HKLM\SOFTWARE\Microsoft\Windows Defender: [DisableAntiVirus] Restriction <==== ATTENTION
HKU\S-1-5-21-2635694050-257365546-4096862936-1001\...\Run: [CCleaner Smart Cleaning] => C:\Program Files\CCleaner\CCleaner64.exe [45120304 2024-08-16] (Gen Digital Inc. -> Piriform Software Ltd)
HKU\S-1-5-21-2635694050-257365546-4096862936-1001\...\Run: [AvastBrowserAutoLaunch_15FB4616656238500135568BFBDE5E69] => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [3497312 2025-06-22] (Avast Software s.r.o. -> Gen Digital Inc.)
HKU\S-1-5-21-2635694050-257365546-4096862936-1001\...\Run: [MicrosoftEdgeAutoLaunch_8ABF8318777C220B0EBD0C5D516F6CF2] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --win-session-start [4113464 2025-07-01] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2635694050-257365546-4096862936-1001\...\Run: [utweb] => "C:\Users\Dědič\AppData\Roaming\uTorrent Web\utweb.exe" /MINIMIZED (No File)
HKU\S-1-5-21-2635694050-257365546-4096862936-1001\...\Run: [Opera Browser Assistant] => C:\Users\Dědič\AppData\Local\Programs\Opera\assistant\browser_assistant.exe [4536216 2025-04-14] (Opera Norway AS -> Opera Software)
HKU\S-1-5-21-2635694050-257365546-4096862936-1001\Control Panel\Desktop\\SCRNSAVE.EXE -> C:\Windows\system32\Ribbons.scr [154112 2024-05-15] (Microsoft Windows -> Microsoft Corporation)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\138.0.7204.97\Installer\chrmstp.exe [2025-07-08] (Google LLC -> Google LLC)
HKLM\Software\Microsoft\Active Setup\Installed Components: [{A8504530-742B-42BC-895D-2BAD6406F698}] -> C:\Program Files (x86)\AVAST Software\Browser\Application\137.0.30835.121\Installer\chrmstp.exe [2025-06-30] (Avast Software s.r.o. -> Gen Digital Inc.)
HKLM\SOFTWARE\Policies\Mozilla\Firefox: Restriction <==== ATTENTION

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {B274F609-976F-4C64-9370-C979D547046E} - System32\Tasks\Avast Secure Browser Heartbeat Task (Hourly) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [3497312 2025-06-22] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {9ADDF3D7-F59F-43C5-B74C-5AF3A525C08E} - System32\Tasks\Avast Secure Browser Heartbeat Task (Logon) => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowser.exe [3497312 2025-06-22] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {E5E8A74C-AF9D-4F3D-B7BE-55209F13C581} - System32\Tasks\Avast Software\Avast Antivirus Patcher => C:\Program Files\Common Files\Avast Software\Icarus\avast-av\icarus.exe [8930096 2025-06-17] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {2E3B61D5-BF4E-478B-AFC3-91675CB5CCB5} - System32\Tasks\Avast Software\Avast Emergency Update => C:\Program Files\Avast Software\Avast\AvEmUpdate.exe [5499128 2025-06-28] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {E36D6BD0-AA6B-434D-9052-20D48FDAE813} - System32\Tasks\Avast Software\Overseer => C:\Program Files\Common Files\Avast Software\Overseer\overseer.exe [2564904 2024-12-02] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {DE4D38B0-86DC-4ABA-8174-17FF4439439A} - System32\Tasks\AvastBrowserProtectS-1-5-21-2635694050-257365546-4096862936-1001 => C:\Program Files (x86)\AVAST Software\Browser\Application\AvastBrowserProtect.exe [1690008 2024-04-23] (Avast Software s.r.o. -> Gen Digital Inc.)
Task: {8F2FB1C8-C656-4762-B731-C5A7A1AE83CE} - System32\Tasks\AvastUpdateTaskMachineCore => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [191120 2022-12-13] (Avast Software s.r.o. -> AVAST Software)
Task: {E8EDCE5B-4BA6-43D1-ABC3-9454A903F84B} - System32\Tasks\AvastUpdateTaskMachineUA => C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [191120 2022-12-13] (Avast Software s.r.o. -> AVAST Software)
Task: {BE41205C-C518-4B73-A89D-7570EBBDED80} - System32\Tasks\CCleaner Update => C:\Program Files\CCleaner\CCUpdate.exe [829408 2024-08-16] (Gen Digital Inc. -> Gen Digital Inc.)
Task: {AD63AF75-72E6-4C97-A218-471029BE4B0E} - System32\Tasks\CCleanerCrashReporting => C:\Program Files\CCleaner\CCleanerBugReport.exe [5075248 2024-08-16] (Gen Digital Inc. -> Gen Digital Inc. All rights reserved.) -> --product 90 --send dumps|report --path "C:\Program Files\CCleaner\LOG" --programpath "C:\Program Files\CCleaner" --guid "c464a68c-27a6-4a78-8ad3-b980120ffd8a" --version "6.27.11214" --silent
Task: {408D9E38-B99B-4A84-8F93-0F4220E3A03B} - System32\Tasks\CCleanerSkipUAC - Dědič => C:\Program Files\CCleaner\CCleaner.exe [39072560 2024-08-16] (Gen Digital Inc. -> Piriform Software Ltd)
Task: {8ECCE244-ABFA-4362-B260-625A36CEBC85} - System32\Tasks\GoogleSystem\GoogleUpdater\GoogleUpdaterTaskSystem140.0.7272.0{B7E6F16F-19D7-4CAA-944D-27DA3FE5AEC0} => C:\Program Files (x86)\Google\GoogleUpdater\140.0.7272.0\updater.exe [6836832 2025-07-01] (Google LLC -> Google LLC)
Task: {77582F90-2C08-4C8A-812F-EC421CE61315} - System32\Tasks\Meta\Messenger-SL-Helper-S-1-5-21-2635694050-257365546-4096862936-1001 => C:\Users\Dědič\AppData\Local\Programs\Messenger\MessengerHelper.exe  --lassie (No File)
Task: {4E6E8A31-7EB9-48DD-87A2-BFB37E88BBBB} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonX86\Microsoft Shared\OFFICE16\ActionsServer\ActionsServer.exe [10454352 2025-07-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {695ACB66-23C6-4FE2-944C-22E2AD8CC79E} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28584344 2025-06-29] (Microsoft Corporation -> Microsoft Corporation)
Task: {BAA39ECF-DED4-473B-93FD-41D4C939A6BD} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesCommonx86\Microsoft Shared\OFFICE16\opushutil.exe [61280 2025-07-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {F2B2CB99-EA1C-45CD-AECC-81365EAE7F4F} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [28584344 2025-06-29] (Microsoft Corporation -> Microsoft Corporation)
Task: {6684232B-F596-42C0-A52B-DA25194B618D} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [224032 2025-07-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {7AE304CD-ADF1-4263-A956-91CE7B92BA83} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [224032 2025-07-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {B21B23D9-8979-412B-9D99-250AC37BC56E} - System32\Tasks\Microsoft\Office\Office Startup Boost => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [224032 2025-07-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {C0B648F4-6706-441F-B1A8-4F2DA535CC6A} - System32\Tasks\Microsoft\Office\Office Startup Boost Logon => C:\Program Files (x86)\Microsoft Office\root\Office16\sdxhelper.exe [224032 2025-07-03] (Microsoft Corporation -> Microsoft Corporation)
Task: {FB56CC53-95D8-45F6-91AA-731E3CC6DD00} - System32\Tasks\Microsoft\Windows\Clip\ClipESUConsumer => C:\Windows\system32\ClipESUConsumer.exe [283008 2025-06-25] (Microsoft Windows -> Microsoft Corporation)
Task: {22EEDDD8-4FB0-414C-94BE-8065819A4C90} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessPreOrder => C:\Windows\system32\ClipESUConsumer.exe [283008 2025-06-25] (Microsoft Windows -> Microsoft Corporation)
Task: {DB825953-21F3-45CB-8A6A-FBA0C9A7C881} - System32\Tasks\Microsoft\Windows\Clip\ClipEsuConsumerProcessRefund => C:\Windows\system32\ClipESUConsumer.exe [283008 2025-06-25] (Microsoft Windows -> Microsoft Corporation)
Task: {86E07D05-4BF3-4600-A739-EC952845C0F7} - System32\Tasks\Opera scheduled assistant Autoupdate 1751187352 => C:\Users\Dědič\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [6073240 2025-06-26] (Opera Norway AS -> Opera Software) -> --scheduledtask --productiscomponent --bypasslauncher --installdir="C:\Users\Dědič\AppData\Local\Programs\Opera\assistant" --producttype=assistant $(Arg0)
Task: {87DF1801-EAAF-408D-82EF-A454F82455DB} - System32\Tasks\Opera scheduled Autoupdate 1751187347 => C:\Users\Dědič\AppData\Local\Programs\Opera\autoupdate\opera_autoupdate.exe [6073240 2025-06-26] (Opera Norway AS -> Opera Software)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\Windows\Tasks\CCleanerCrashReporting.job => C:\Program Files\CCleaner\CCleanerBugReport.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 93.93.32.32 93.93.33.33
Tcpip\..\Interfaces\{1e295f2e-4cff-4bb3-979c-fa367530502e}: [DhcpNameServer] 93.93.32.32 93.93.33.33

Edge: 
=======
Edge Profile: C:\Users\Dědič\AppData\Local\Microsoft\Edge\User Data\Default [2025-07-08]
Edge Notifications: Default -> hxxps://www.facebook.com
Edge HomePage: Default -> hxxp://seznam.cz/
Edge DefaultSearchURL: Default -> hxxps://search.seznam.cz/?q={searchTerms}&sourceid=62744&thru=quicksearch
Edge DefaultSearchKeyword: Default -> seznam
Edge DefaultSuggestURL: Default -> hxxps://suggest.seznam.cz/fulltext_ff?phrase={searchTerms}
Edge Extension: (Dokumenty Google offline) - C:\Users\Dědič\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-07-08]
Edge Extension: (Edge relevant text changes) - C:\Users\Dědič\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2024-01-26]
Edge Extension: (Seznam.cz) - C:\Users\Dědič\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2025-05-31]

FireFox:
========
FF Plugin-x32: @microsoft.com/Lync,version=15.0 -> C:\Program Files (x86)\Microsoft Office\root\VFS\ProgramFilesX86\Mozilla Firefox\plugins\npmeetingjoinpluginoc.dll [2025-07-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files (x86)\Microsoft Office\root\Office16\NPSPWRAP.DLL [2025-07-03] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=3 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1579.3\npAvastBrowserUpdate3.dll [2022-12-13] (Avast Software s.r.o. -> AVAST Software)
FF Plugin-x32: @update.avastbrowser.com/Avast Browser;version=9 -> C:\Program Files (x86)\AVAST Software\Browser\Update\1.8.1579.3\npAvastBrowserUpdate3.dll [2022-12-13] (Avast Software s.r.o. -> AVAST Software)
FF Plugin-x32: @videolan.org/vlc,version=3.0.8 -> C:\Program Files (x86)\VideoLAN\VLC\npvlc.dll [2019-08-14] (VideoLAN -> VideoLAN)

Chrome: 
=======
CHR DefaultProfile: Default
CHR Profile: C:\Users\Dědič\AppData\Local\Google\Chrome\User Data\Default [2025-06-29]
CHR Notifications: Default -> hxxps://22slottyway.com; hxxps://ads.your-meet.com; hxxps://adventuresintiki.com; hxxps://allhugenewz.com; hxxps://alloverbodysupport.com; hxxps://answear.cz; hxxps://apxyieo.com; hxxps://arbazzz.cc; hxxps://au.praxisarchaeologica.org; hxxps://aukro.cz; hxxps://badoo.com; hxxps://barkstownroad.com; hxxps://best.aliexpress.com; hxxps://bestday2love.com; hxxps://bl.ca-me-no.com; hxxps://bl.more-2-flirt.com; hxxps://bl.more2flirt.com; hxxps://captchaless.top; hxxps://care3.skinpace.com; hxxps://ccc.eu; hxxps://celebsdaddy.net; hxxps://celebsfap.com; hxxps://ceskaplaneta.net; hxxps://cfjctoday.com; hxxps://chargetraqing.com; hxxps://chat-video.live; hxxps://clicktube7.com; hxxps://creative-cz.com; hxxps://cs.soringpcrepair.com; hxxps://cz.pinterest.com; hxxps://cz.sexystars.online; hxxps://czechteam.mall.tv; hxxps://daily-media.ru; hxxps://dggwxk.palatlaldate.com; hxxps://dirsubmission.net; hxxps://eobuv.cz; hxxps://eroporn.club; hxxps://eshop.tescoma.cz; hxxps://eu1.badoo.com; hxxps://everyone-one.com; hxxps://ew.com; hxxps://fakta.today; hxxps://fastlovedatings.com; hxxps://finminepro.com; hxxps://flashingjungle.com; hxxps://fuckmilftomorrow.com; hxxps://get-hot-girls.com; hxxps://getinform.net; hxxps://gomez.cz; hxxps://herbeauty.co; hxxps://hushhush-flirtzone42.com; hxxps://limelight-media.com; hxxps://makem102day.com; hxxps://mapio.cz; hxxps://march-digital-journal.sa.com; hxxps://march-hot-news.sa.com; hxxps://maxoffernow.com; hxxps://milffinder.com; hxxps://modivo.cz; hxxps://my.funkydaters.com; hxxps://mydates.adxpartner.com; hxxps://nahehvezdy.cz; hxxps://ne14.biz; hxxps://neighborhoodsluts.com; hxxps://nissannx.info; hxxps://nude.irisdostavka.ru; hxxps://paolls.com; hxxps://popularni.live; hxxps://postazdarma.cz; hxxps://postovnezdarma.cz; hxxps://pravda24.cz; hxxps://privatewinners.com; hxxps://prokliky.cz; hxxps://romanticdating-day.com; hxxps://ruvid.net; hxxps://rxaqx.excelientdates.net; hxxps://s1.l-o-a-d-i-n-g.biz; hxxps://secret-flirt-hub.com; hxxps://seznamte.se; hxxps://sharp-message.com; hxxps://shootingmon.caulhealth.com; hxxps://smartsecuredt.com; hxxps://spolecnost.popularni.live; hxxps://sweepare.info; hxxps://tarifomat.cz; hxxps://technoajay.com; hxxps://televizzor-remont.ru; hxxps://thenovosti.com; hxxps://thepen.indumb.com; hxxps://thepen.ironfunction.com; hxxps://timetobakeacake.com; hxxps://trackbincas.com; hxxps://videocelebs.net; hxxps://vzwkrx.sweetmlif.com; hxxps://waitforit.site; hxxps://webstringstrak.com; hxxps://winninginlifetoday.com; hxxps://www.aliexpress.com; hxxps://www.alpinenineties.com; hxxps://www.bbwbook.com; hxxps://www.bezvasport.cz; hxxps://www.blancheporte.cz; hxxps://www.cashbackdeals.cz; hxxps://www.casualdates4you.com; hxxps://www.ceskyflirt.com; hxxps://www.chatyou.com; hxxps://www.chatzone.com; hxxps://www.chicks4date.com; hxxps://www.coastalconcerns.com; hxxps://www.darujizaodvoz.cz; hxxps://www.date2night.xyz; hxxps://www.digupinfo.com; hxxps://www.diskretniflirt.com; hxxps://www.dogdownsen.com; hxxps://www.eastflirts.com; hxxps://www.eobuv.cz; hxxps://www.erotickykontakt.cz; hxxps://www.facebook.com; hxxps://www.fetoo.com; hxxps://www.flirtme.com; hxxps://www.fuckforfree.com; hxxps://www.ghibliarizona.com; hxxps://www.grannyzone.com; hxxps://www.hazzkeli.com; hxxps://www.idates.com; hxxps://www.info-chatzone.com; hxxps://www.info-fetoo.com; hxxps://www.info-milfme.com; hxxps://www.info-reifefrauen.com; hxxps://www.info-xp.com; hxxps://www.instagram.com; hxxps://www.kinobox.cz; hxxps://www.kupi.cz; hxxps://www.kurzy.cz; hxxps://www.latetoasting.com; hxxps://www.lui.cz; hxxps://www.maftill.com; hxxps://www.maturespace.com; hxxps://www.megaknihy.cz; hxxps://www.membersonly-club.com; hxxps://www.milfbook.com; hxxps://www.milfme.com; hxxps://www.milfroom.com; hxxps://www.moredates.com; hxxps://www.nemravnysepot.com; hxxps://www.news-dy.com; hxxps://www.nezbednyflirt.com; hxxps://www.oakdelay.com; hxxps://www.omegamarine.cz; hxxps://www.omegamarineforte.cz; hxxps://www.patrolfivenaturals.com; hxxps://www.penize.cz; hxxps://www.pojdnakavu.cz; hxxps://www.postazdarma.cz; hxxps://www.promanplus.cz; hxxps://www.prvnirande.cz; hxxps://www.resultsdistributor.com; hxxps://www.rosh.cz; hxxps://www.senior-seznamka.cz; hxxps://www.sexdug.com; hxxps://www.shamesgames.com; hxxps://www.smoothroofs.com; hxxps://www.spektrumzdravi.cz; hxxps://www.splashmatadors.com; hxxps://www.strictlymembersonly.com; hxxps://www.superzoo.cz; hxxps://www.supplyrumble.com; hxxps://www.tatuum.com; hxxps://www.tiktok.com; hxxps://www.trans.eu; hxxps://www.tvojezadnivratka.com; hxxps://www.tycico.cz; hxxps://www.vasenonline.com; hxxps://www.whatsflirt.com; hxxps://www.wish.com; hxxps://www.yodaystar.com; hxxps://www.youflirt.com; hxxps://www.youtube.com; hxxps://zpravy.live
CHR HomePage: Default -> hxxp://dedicujezd@seznam.cz/
CHR DefaultSearchURL: Default -> hxxps://search.seznam.cz/?q={searchTerms}
CHR DefaultSearchKeyword: Default -> seznam.cz
CHR DefaultNewTabURL: Default -> hxxps://search.seznam.cz/?sourceid=chromechoice
CHR DefaultSuggestURL: Default -> hxxps://suggest.seznam.cz/fulltext_ff?phrase={searchTerms}
CHR Session Restore: Default -> is enabled.
CHR Extension: (Dokumenty Google offline) - C:\Users\Dědič\AppData\Local\Google\Chrome\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2025-06-25]
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\Dědič\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2021-01-29]
CHR Extension: (Seznam.cz) - C:\Users\Dědič\AppData\Local\Google\Chrome\User Data\Default\Extensions\olfeabkoenfaoljndfecamgilllcpiak [2025-03-15]
CHR Profile: C:\Users\Dědič\AppData\Local\Google\Chrome\User Data\Guest Profile [2025-03-27]
CHR Profile: C:\Users\Dědič\AppData\Local\Google\Chrome\User Data\System Profile [2025-03-27]

Opera: 
=======
OPR DefaultProfile: Default

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 aswbIDSAgent; C:\Program Files\Avast Software\Avast\aswidsagent.exe [7412984 2025-06-28] (Avast Software s.r.o. -> Gen Digital Inc.)
S2 avast; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [191120 2022-12-13] (Avast Software s.r.o. -> AVAST Software)
R2 avast! Antivirus; C:\Program Files\Avast Software\Avast\AvastSvc.exe [1032440 2025-06-28] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 avast! Tools; C:\Program Files\Avast Software\Avast\aswToolsSvc.exe [1084664 2025-06-28] (Avast Software s.r.o. -> Gen Digital Inc.)
S3 avastm; C:\Program Files (x86)\AVAST Software\Browser\Update\AvastBrowserUpdate.exe [191120 2022-12-13] (Avast Software s.r.o. -> AVAST Software)
S3 AvastSecureBrowserElevationService; C:\Program Files (x86)\AVAST Software\Browser\Application\137.0.30835.121\elevation_service.exe [2417800 2025-06-22] (Avast Software s.r.o. -> Gen Digital Inc.)
R2 AvastWscReporter; C:\Program Files\Avast Software\Avast\wsc_proxy.exe [56912 2022-01-19] (Avast Software s.r.o. -> AVAST Software)
S3 CCleanerPerformanceOptimizerService; C:\Program Files\CCleaner\CCleanerPerformanceOptimizerService.exe [1086256 2024-08-16] (Gen Digital Inc. -> Piriform Software Ltd)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13045088 2025-06-29] (Microsoft Corporation -> Microsoft Corporation)
S3 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MpDefenderCoreService.exe [1447680 2024-12-02] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\NisSrv.exe [3199672 2024-12-02] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.24090.11-0\MsMpEng.exe [141952 2024-12-02] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R0 aswArDisk; C:\Windows\System32\drivers\aswArDisk.sys [21088 2025-06-28] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswArPot; C:\Windows\System32\drivers\aswArPot.sys [245344 2025-06-28] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswbidsdriver; C:\Windows\System32\drivers\aswbidsdriver.sys [391264 2025-06-28] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbidsh; C:\Windows\System32\drivers\aswbidsh.sys [299616 2025-06-28] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswbuniv; C:\Windows\System32\drivers\aswbuniv.sys [85568 2025-06-28] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswElam; C:\Windows\System32\drivers\aswElam.sys [28280 2024-12-02] (Microsoft Windows Early Launch Anti-malware Publisher -> Gen Digital Inc.)
R1 aswKbd; C:\Windows\System32\drivers\aswKbd.sys [29768 2025-06-28] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswMonFlt; C:\Windows\System32\drivers\aswMonFlt.sys [281160 2025-06-28] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswNetHub; C:\Windows\System32\drivers\aswNetHub.sys [572000 2025-06-28] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswRdr; C:\Windows\System32\drivers\aswRdr2.sys [92256 2025-06-28] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswRvrt; C:\Windows\System32\drivers\aswRvrt.sys [72288 2025-06-28] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSnx; C:\Windows\System32\drivers\aswSnx.sys [884288 2025-06-28] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R1 aswSP; C:\Windows\System32\drivers\aswSP.sys [1272928 2025-06-28] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R3 aswStm; C:\Windows\System32\drivers\aswStm.sys [202336 2025-06-28] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
R0 aswVmm; C:\Windows\System32\drivers\aswVmm.sys [392288 2025-06-28] (Microsoft Windows Hardware Compatibility Publisher -> Gen Digital Inc.)
S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BTHMODEM; C:\Windows\System32\drivers\bthmodem.sys [76800 2019-12-07] (Microsoft Corporation) [File not signed]
S3 dg_ssudbus; C:\Windows\system32\DRIVERS\ssudbus2.sys [167440 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 ssudmdm; C:\Windows\system32\DRIVERS\ssudmdm.sys [174112 2022-09-30] (Samsung Electronics CO., LTD. -> Samsung Electronics Co., Ltd.)
S3 WdBoot; C:\Windows\system32\drivers\wd\WdBoot.sys [22104 2024-12-02] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
S3 WdFilter; C:\Windows\system32\drivers\wd\WdFilter.sys [606624 2024-12-02] (Microsoft Windows -> Microsoft Corporation)
S3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [105888 2024-12-02] (Microsoft Windows -> Microsoft Corporation)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2025-07-08 15:35 - 2025-07-08 15:40 - 000026276 _____ C:\Users\Dědič\Desktop\FRST.txt
2025-07-08 15:28 - 2025-07-08 15:28 - 002408448 _____ (Farbar) C:\Users\Dědič\Desktop\FRST64.exe
2025-06-29 22:38 - 2025-06-29 22:38 - 000000000 ____D C:\Users\Dědič\AppData\Local\cache
2025-06-29 21:09 - 2025-06-29 21:09 - 000002092 _____ C:\Users\Dědič\Desktop\514592604_122137221242784419_8266231385913118259_n – zástupce.lnk
2025-06-29 11:34 - 2025-06-29 11:34 - 000001525 _____ C:\Users\Dědič\Desktop\WhatsApp.lnk
2025-06-29 10:55 - 2025-07-07 23:34 - 000003944 _____ C:\Windows\system32\Tasks\Opera scheduled assistant Autoupdate 1751187352
2025-06-29 10:55 - 2025-07-07 23:34 - 000003662 _____ C:\Windows\system32\Tasks\Opera scheduled Autoupdate 1751187347
2025-06-29 10:55 - 2025-06-29 10:55 - 000001483 _____ C:\Users\Dědič\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Prohlížeč Opera.lnk
2025-06-29 10:55 - 2025-06-29 10:55 - 000001435 _____ C:\Users\Dědič\Desktop\Prohlížeč Opera.lnk
2025-06-29 10:55 - 2025-06-29 10:55 - 000000000 ____D C:\Users\Dědič\AppData\Local\Opera Software
2025-06-29 10:54 - 2025-06-29 10:54 - 000000000 ____D C:\Users\Dědič\AppData\Roaming\Opera Software
2025-06-29 10:52 - 2025-06-29 10:52 - 000124076 _____ C:\Users\Dědič\Downloads\záložky_29.06.25.html
2025-06-29 10:50 - 2025-06-29 10:50 - 000006006 _____ C:\Users\Dědič\Downloads\Hesla Chrome.29,06,2025.csv
2025-06-28 12:24 - 2025-06-28 12:23 - 000320248 _____ (Gen Digital Inc.) C:\Windows\system32\aswBoot.exe
2025-06-27 16:40 - 2025-06-27 16:40 - 001142045 _____ C:\Users\Dědič\Desktop\stažený soubor.htm
2025-06-25 13:27 - 2025-06-25 13:27 - 000023172 _____ C:\Windows\SysWOW64\IntegratedServicesRegionPolicySet.json
2025-06-25 13:25 - 2025-06-25 13:25 - 000023172 _____ C:\Windows\system32\IntegratedServicesRegionPolicySet.json
2025-06-11 16:29 - 2025-06-11 16:29 - 000000000 ___HD C:\$WinREAgent

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2025-07-08 15:45 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2025-07-08 15:37 - 2023-12-21 09:48 - 000000000 ____D C:\FRST
2025-07-08 14:42 - 2020-11-19 00:29 - 000000000 ____D C:\Windows\system32\SleepStudy
2025-07-08 07:51 - 2021-12-16 01:12 - 000000000 ____D C:\Windows\SystemTemp
2025-07-08 07:24 - 2021-01-16 21:21 - 000002247 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2025-07-08 07:05 - 2021-01-16 18:49 - 000000180 _____ C:\Windows\system32\{A6D608F0-0BDE-491A-97AE-5C4B05D86E01}.bat
2025-07-08 07:05 - 2021-01-16 18:49 - 000000000 __SHD C:\Users\Dědič\IntelGraphicsProfiles
2025-07-07 23:44 - 2021-01-16 16:52 - 000000000 ____D C:\Users\Dědič
2025-07-07 23:34 - 2022-01-19 15:37 - 000000000 ____D C:\Windows\system32\Tasks\Avast Software
2025-07-07 23:34 - 2020-11-19 01:32 - 000003568 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2025-07-07 23:34 - 2020-11-19 01:32 - 000003342 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2025-07-07 21:46 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2025-07-07 21:46 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2025-07-07 20:43 - 2021-01-16 16:18 - 000008192 ___SH C:\DumpStack.log.tmp
2025-07-07 20:43 - 2020-11-19 01:30 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2025-07-05 17:49 - 2021-01-16 16:32 - 000004502 _____ C:\Windows\system32\PerfStringBackup.INI
2025-07-05 17:49 - 2019-12-07 16:41 - 004542478 _____ C:\Windows\system32\perfh005.dat
2025-07-05 17:49 - 2019-12-07 16:41 - 001328912 _____ C:\Windows\system32\perfc005.dat
2025-07-05 17:41 - 2022-01-19 15:33 - 000000000 ____D C:\ProgramData\Avast Software
2025-07-05 17:39 - 2019-12-07 11:03 - 000786432 _____ C:\Windows\system32\config\BBI
2025-07-04 08:39 - 2021-01-16 19:44 - 000000000 ____D C:\Program Files (x86)\Microsoft Office
2025-07-03 12:01 - 2021-01-16 16:54 - 000000000 ____D C:\Users\Dědič\AppData\Local\Packages
2025-07-03 08:59 - 2020-11-19 01:32 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2025-07-03 08:59 - 2020-11-19 01:32 - 000002274 _____ C:\Users\Public\Desktop\Microsoft Edge.lnk
2025-06-30 16:51 - 2022-09-15 14:38 - 000002498 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Avast Secure Browser.lnk
2025-06-29 22:07 - 2025-05-02 17:44 - 000000000 ____D C:\Users\Dědič\AppData\Roaming\Telegram Desktop
2025-06-29 11:12 - 2024-05-25 11:05 - 000000000 ____D C:\Users\Dědič\AppData\Roaming\Microsoft\Excel
2025-06-29 08:05 - 2019-12-07 11:14 - 000000000 ___HD C:\Windows\ELAMBKUP
2025-06-28 17:11 - 2021-01-16 21:08 - 000000000 ____D C:\Users\Dědič\AppData\Roaming\vlc
2025-06-28 12:24 - 2022-01-19 15:37 - 001272928 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswSP.sys
2025-06-28 12:24 - 2022-01-19 15:37 - 000572000 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswNetHub.sys
2025-06-28 12:24 - 2022-01-19 15:37 - 000392288 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswVmm.sys
2025-06-28 12:24 - 2022-01-19 15:37 - 000299616 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswbidsh.sys
2025-06-28 12:24 - 2022-01-19 15:37 - 000281160 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswMonFlt.sys
2025-06-28 12:24 - 2022-01-19 15:37 - 000092256 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswRdr2.sys
2025-06-28 12:24 - 2022-01-19 15:37 - 000085568 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswbuniv.sys
2025-06-28 12:24 - 2022-01-19 15:37 - 000072288 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswRvrt.sys
2025-06-28 12:24 - 2022-01-19 15:37 - 000029768 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswKbd.sys
2025-06-28 12:22 - 2022-01-19 15:37 - 000884288 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswSnx.sys
2025-06-28 12:22 - 2022-01-19 15:37 - 000391264 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswbidsdriver.sys
2025-06-28 12:22 - 2022-01-19 15:37 - 000245344 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswArPot.sys
2025-06-28 12:22 - 2022-01-19 15:37 - 000021088 _____ (Gen Digital Inc.) C:\Windows\system32\Drivers\aswArDisk.sys
2025-06-28 10:24 - 2023-05-24 13:05 - 000000000 ____D C:\Program Files\RUXIM
2025-06-25 14:05 - 2020-11-19 01:33 - 000000000 ____D C:\ProgramData\Packages
2025-06-25 14:00 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2025-06-25 13:58 - 2020-11-19 00:29 - 000437016 _____ C:\Windows\system32\FNTCACHE.DAT
2025-06-25 13:53 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Dism
2025-06-25 13:53 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources
2025-06-25 13:53 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\ShellExperiences
2025-06-25 13:53 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2025-06-25 13:53 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe
2025-06-25 13:53 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\migwiz
2025-06-25 13:53 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Dism
2025-06-25 13:52 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\PrintDialog
2025-06-25 13:52 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2025-06-25 13:52 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellExperiences
2025-06-25 13:52 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellComponents
2025-06-25 13:52 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr
2025-06-25 13:52 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\servicing
2025-06-25 13:51 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
2025-06-25 13:24 - 2020-11-19 01:32 - 003016192 _____ (Microsoft Corporation) C:\Windows\SysWOW64\PrintConfig.dll
2025-06-11 21:10 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\SecureBootUpdates
2025-06-11 16:52 - 2021-01-16 18:12 - 000000000 ____D C:\Windows\system32\MRT
2025-06-11 16:34 - 2021-01-16 18:12 - 216824056 ____C (Microsoft Corporation) C:\Windows\system32\MRT.exe

==================== Files in the root of some directories ========

2022-04-21 10:19 - 2022-06-12 17:26 - 000006068 _____ () C:\Users\Dědič\AppData\Local\PlariumPlay.log

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================