Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 09-06-2026
Ran by Zbynek (administrator) on HOME-RAN (HP HP EliteDesk 800 G3 SFF) (10-06-2026 09:17:52)
Running from C:\Temp\FRST64.exe
Loaded Profiles: Zbynek
Platform: Microsoft Windows 11 Home Version 24H2 26100.8457 (X64) Language: Čeština (Česko)
Default browser: Edge
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(C:\Program Files\DefenderUI\DefenderUIService.exe ->) (VoodooSoft, LLC -> VoodooSoft, LLC) C:\Program Files\DefenderUI\DefenderUI.exe
(C:\Windows\CxSvc\CxAudioSvc.exe ->) (Synaptics Incorporated -> Conexant Systems LLC.) C:\Program Files\CONEXANT\SA3\HP-NB-AIO\SmartAudio3.exe
(C:\Windows\CxSvc\CxAudioSvc.exe ->) (Synaptics Incorporated -> Conexant Systems, Inc) C:\Program Files\CONEXANT\Flow\Flow.exe
(explorer.exe ->) (Ghisler Software GmbH -> Ghisler Software GmbH) C:\totalcmd\TOTALCMD64.EXE
(explorer.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe <10>
(explorer.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\cmd.exe
(Oracle America, Inc. -> Oracle Corporation) C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
(services.exe ->) (Adobe Inc. -> Adobe Inc.) C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\dal.inf_amd64_af50fdb80983f7bc\jhi_service.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iaahcic.inf_amd64_ec6acb81b9300f24\RstMwService.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_e2e9bd4f2cdfb2c5\IntelCpHDCPSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\iigd_dch.inf_amd64_e2e9bd4f2cdfb2c5\IntelCpHeciSvc.exe
(services.exe ->) (Intel Corporation -> Intel Corporation) C:\Windows\System32\DriverStore\FileRepository\mewmiprov.inf_amd64_d51901c26227fb29\WMIRegistrationService.exe
(services.exe ->) (Intel Corporation -> Intel(R) Corporation) C:\Windows\SysWOW64\XtuService.exe
(services.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files\Common Files\microsoft shared\ClickToRun\OfficeClickToRun.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpDefenderCoreService.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\NisSrv.exe
(services.exe ->) (Synaptics Incorporated -> Conexant Systems LLC.) C:\Windows\CxSvc\CxAudioSvc.exe
(services.exe ->) (Synaptics Incorporated -> Conexant Systems LLC.) C:\Windows\CxSvc\CxUtilSvc.exe
(services.exe ->) (VoodooSoft, LLC -> VoodooSoft, LLC) C:\Program Files\DefenderUI\DefenderUIService.exe
(svchost.exe ->) (Conexant Systems, Inc. -> Conexant) C:\Windows\System32\MicTray64.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe <3>
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\smartscreen.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM-x32\...\Run: [SunJavaUpdateSched] => C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe [751240 2026-03-30] (Oracle America, Inc. -> Oracle Corporation)
HKLM\SOFTWARE\Policies\Microsoft\Windows Defender: Restriction <==== ATTENTION
HKU\S-1-5-21-2292089391-1343519791-1179752980-1002\...\Run: [OneDrive] => C:\Program Files\Microsoft OneDrive\OneDrive.exe [4750184 2026-06-09] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2292089391-1343519791-1179752980-1002\...\Run: [Adobe Acrobat Synchronizer] => C:\Program Files\Adobe\Acrobat DC\Acrobat\AdobeCollabSync.exe [42087896 2026-05-13] (Adobe Inc. -> Adobe Systems Incorporated)
HKU\S-1-5-21-2292089391-1343519791-1179752980-1002\...\Run: [MicrosoftEdgeAutoLaunch_90F834D729CED9AE7F79F652886BAD87] => "C:\Program Files (x86)\Microsoft\Edge\Application\msedge.exe" --no-startup-window --win-session-start [5257584 2026-06-04] (Microsoft Corporation -> Microsoft Corporation)
HKU\S-1-5-21-2292089391-1343519791-1179752980-1002\...\MountPoints2: {31ec7b5c-41fb-11f1-b334-10e7c6299e73} - "I:\HonorSuiteOnlineInstaller.exe" 
HKLM\...\Windows x64\Print Processors\HP1020PrintProc: C:\Windows\System32\spool\prtprocs\x64\pphp1020.dll [65024 2012-09-18] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\...\Print\Monitors\HPLJ1020LM: C:\WINDOWS\system32\zlhp1020.dll [192512 2012-09-18] (Microsoft Windows Hardware Compatibility Publisher -> )
HKLM\Software\...\Authentication\Credential Providers: [{C885AA15-1764-4293-B82A-0586ADD46B35}] -> 

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {93B54265-45AE-4D49-89FC-E9220195ADE0} - System32\Tasks\Adobe Acrobat Update Task => C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe [1612800 2026-01-23] (Adobe Inc. -> Adobe Inc.)
Task: {8D3A90FA-4389-44E8-8D3E-05A92ABB3C19} - System32\Tasks\EOSv3 Scheduler onLogOn => C:\Users\Zbynek\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe [15205744 2026-02-16] (ESET, spol. s r.o. -> ESET)
Task: {F6EACAAD-D57A-4DEE-9AEA-E2799953EAAE} - System32\Tasks\EOSv3 Scheduler onTime => C:\Users\Zbynek\AppData\Local\ESET\ESETOnlineScanner\ESETOnlineScanner.exe [15205744 2026-02-16] (ESET, spol. s r.o. -> ESET)
Task: {B034B4FF-B61A-43E7-9E7A-FF4D1A5AF39F} - System32\Tasks\IObit NY2026Sale (One-time) => "C:\Program Files (x86)\IObit\Driver Booster\Pub\enny26.exe"  -> C:\Program Files (x86)\IObit\Driver Booster\Pub\\/rpop <==== ATTENTION
Task: {D462A1DB-0BEF-4940-98BB-3250A139B7DE} - System32\Tasks\Microsoft\Office\Office Actions Server => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\ActionsServer\ActionsServer.exe [17010512 2026-02-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {E27BF75A-6437-43AD-8E73-50988D1E307D} - System32\Tasks\Microsoft\Office\Office Automatic Updates 2.0 => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29025120 2025-10-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {4826FDB6-82FD-4B32-AC4E-DA741AB5F12A} - System32\Tasks\Microsoft\Office\Office Background Push Maintenance => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonx64\Microsoft Shared\Office16\opushutil.exe [70504 2026-02-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {FBF5CBAD-B8DF-4DBB-920C-23627E1B16E2} - System32\Tasks\Microsoft\Office\Office ClickToRun Service Monitor => C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeC2RClient.exe [29025120 2025-10-07] (Microsoft Corporation -> Microsoft Corporation)
Task: {9DBBC440-44EA-4832-872A-B2C295BBDA51} - System32\Tasks\Microsoft\Office\Office Feature Updates => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [313600 2026-02-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {586B32C6-9585-43DD-8E84-471D5CA9C541} - System32\Tasks\Microsoft\Office\Office Feature Updates Logon => C:\Program Files\Microsoft Office\root\Office16\sdxhelper.exe [313600 2026-02-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {71312390-73E0-48C8-96F3-21C2720A8F61} - System32\Tasks\Microsoft\Office\Office Performance Monitor => C:\Program Files\Microsoft Office\root\vfs\ProgramFilesCommonX64\Microsoft Shared\Office16\operfmon.exe [1365272 2026-02-06] (Microsoft Corporation -> Microsoft Corporation)
Task: {A21F35B5-63C9-49B6-9889-F4D0E0D220BB} - System32\Tasks\Microsoft\Windows\Clip\ClipESU => %SystemRoot%\system32\clipesu.exe  (No File)
Task: {CD858D86-148C-48E4-89DA-C7125C4CCF67} - System32\Tasks\Microsoft\Windows\Conexant\MicTray => C:\Windows\System32\MicTray64.exe [2758232 2020-01-09] (Conexant Systems, Inc. -> Conexant)
Task: {8239D4D1-F9A6-4571-95C9-C563C5F94896} - System32\Tasks\Microsoft\Windows\Conexant\SynaMonApp => C:\Windows\System32\SynaMonApp.exe [177976 2019-12-10] (Synaptics Incorporated -> Synaptics Incorporated)
Task: {E88D9B2C-DDEA-47B2-9582-085153004DB5} - System32\Tasks\Microsoft\Windows\Location\Notifications => %windir%\System32\LocationNotificationWindows.exe  (No File)
Task: {CCDFC0B8-01A3-4E74-A820-4F13F51D269E} - System32\Tasks\Microsoft\Windows\Mobile Broadband Accounts\MNO Metadata Parser => %SystemRoot%\System32\MbaeParserTask.exe  (No File)
Task: {CDA52DED-04C0-4AC3-B660-DD8DF4EED8A3} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\MusUx_LogonUpdateResults => %systemroot%\system32\MusNotification.exe  LogonUpdateResults (No File)
Task: {C0B5D12D-0DB9-46E8-8B77-C9BE948532D7} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_AC => %systemroot%\system32\MusNotification.exe  /RunOnAC RebootDialog (No File)
Task: {AD3042DF-A4B6-4CA8-B9A7-ECC94E14E22A} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\Reboot_Battery => %systemroot%\system32\MusNotification.exe  /RunOnBattery RebootDialog (No File)
Task: {F3E6E7ED-A196-4E44-8803-55FAB3AD4E29} - System32\Tasks\Microsoft\Windows\UpdateOrchestrator\USO_UxBroker => %systemroot%\system32\MusNotification.exe  (No File)
Task: {8D7E1AC8-75A1-4681-85F8-C1DDE1A4E8A4} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpCmdRun.exe [1906320 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {AB7713EC-BCE8-4F1C-BC76-3FF21658088E} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpCmdRun.exe [1906320 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {5E21248A-4DB8-4EC2-82D5-729D18B3BC80} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpCmdRun.exe [1906320 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {90333B2B-1897-4548-B1D8-C1742AB50A23} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpCmdRun.exe [1906320 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {CFB4399F-E174-49DE-B076-DEE0076477AF} - System32\Tasks\OneDrive Per-Machine Standalone Update Task => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4428648 2026-06-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {F29A2A24-1FD5-4408-9ABB-A5BEE0A63EE9} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-2292089391-1343519791-1179752980-1001 => %localappdata%\Microsoft\OneDrive\OneDriveStandaloneUpdater.exe  /reporting (No File)
Task: {C8CE6134-9D2E-4D02-AEEF-AC96DE552A07} - System32\Tasks\OneDrive Reporting Task-S-1-5-21-2292089391-1343519791-1179752980-1002 => C:\Program Files\Microsoft OneDrive\OneDriveStandaloneUpdater.exe [4428648 2026-06-09] (Microsoft Corporation -> Microsoft Corporation)
Task: {DA05B60A-2A1F-4489-B684-CF6681FD1E7D} - System32\Tasks\OneDrive Startup Task-S-1-5-21-2292089391-1343519791-1179752980-1001 => C:\Users\viki\AppData\Local\Microsoft\OneDrive\26.002.0105.0001\OneDriveLauncher.exe  /startInstances (No File)
Task: {3769A82A-71A4-466F-93AE-6DBF05B73391} - System32\Tasks\OneDrive Startup Task-S-1-5-21-2292089391-1343519791-1179752980-1002 => C:\Program Files\Microsoft OneDrive\26.095.0519.0003\OneDriveLauncher.exe [759656 2026-06-09] (Microsoft Corporation -> Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)

Task: C:\WINDOWS\Tasks\CreateExplorerShellUnelevatedTask.job => C:\WINDOWS\explorer.exe

==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
Tcpip\..\Interfaces\{21c079eb-68ac-48ab-b10c-a6a9393d6017}: [DhcpNameServer] 192.168.1.1

FireFox:
========
FF Plugin: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\Office16\NPSPWRAP.DLL [2026-02-06] (Microsoft Corporation -> Microsoft Corporation)
FF Plugin: @videolan.org/vlc,version=3.0.23 -> C:\Program Files\VideoLAN\VLC\npvlc.dll [2025-12-31] (VideoLAN -> VideoLAN)
FF Plugin: Adobe Acrobat -> C:\Program Files\Adobe\Acrobat DC\Acrobat\Air\nppdf32.dll [2026-05-13] (Adobe Inc. -> Adobe Systems Inc.)
FF Plugin-x32: @java.com/DTPlugin,version=11.491.2 -> C:\Program Files (x86)\Java\jre1.8.0_491\bin\dtplugin\npDeployJava1.dll [2026-03-30] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @java.com/JavaPlugin,version=11.491.2 -> C:\Program Files (x86)\Java\jre1.8.0_491\bin\plugin2\npjp2.dll [2026-03-30] (Oracle America, Inc. -> Oracle Corporation)
FF Plugin-x32: @microsoft.com/SharePoint,version=14.0 -> C:\Program Files\Microsoft Office\root\VFS\ProgramFilesX86\Microsoft Office\Office16\NPSPWRAP.DLL [2026-02-06] (Microsoft Corporation -> Microsoft Corporation)

Edge: 
=======
Edge DefaultProfile: Default
Edge Profile: C:\Users\Zbynek\AppData\Local\Microsoft\Edge\User Data\Default [2026-06-10]
Edge Notifications: Default -> hxxps://ltfhv2wcgoleq4.kyronbotshield.co.in
Edge StartupUrls: Default -> "hxxps://seznam.cz/"
Edge Extension: (Dokumenty Google offline) - C:\Users\Zbynek\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\ghbmnnjooekpmoecnnnilnnbdlolhkhi [2026-06-05]
Edge Extension: (Edge relevant text changes) - C:\Users\Zbynek\AppData\Local\Microsoft\Edge\User Data\Default\Extensions\jmjflgjpcpepeafmmgdpfkogkghcpiha [2026-02-05]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R2 AdobeARMservice; C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\armsvc.exe [180216 2026-01-23] (Adobe Inc. -> Adobe Inc.)
R2 ClickToRunSvc; C:\Program Files\Common Files\Microsoft Shared\ClickToRun\OfficeClickToRun.exe [13288288 2025-10-07] (Microsoft Corporation -> Microsoft Corporation)
R2 CxAudioSvc; C:\WINDOWS\CxSvc\CxAudioSvc.exe [96432 2020-09-08] (Synaptics Incorporated -> Conexant Systems LLC.)
R2 CxUtilSvc; C:\WINDOWS\CxSvc\CxUtilSvc.exe [173880 2019-12-10] (Synaptics Incorporated -> Conexant Systems LLC.)
R2 DefenderUIService; C:\Program Files\DefenderUI\DefenderUIService.exe [342616 2025-12-20] (VoodooSoft, LLC -> VoodooSoft, LLC)
S3 FileSyncHelper; C:\Program Files\Microsoft OneDrive\26.095.0519.0003\FileSyncHelper.exe [3612048 2026-06-09] (Microsoft Corporation -> Microsoft Corporation)
R2 MDCoreSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MpDefenderCoreService.exe [2150144 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
S3 OneDrive Updater Service; C:\Program Files\Microsoft OneDrive\26.095.0519.0003\OneDriveUpdaterService.exe [4022632 2026-06-09] (Microsoft Corporation -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\NisSrv.exe [4608640 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.26050.15-0\MsMpEng.exe [290744 2026-06-09] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

R3 e1dexpress; C:\WINDOWS\System32\DriverStore\FileRepository\e1d.inf_amd64_644262a781e1a6da\e1d.sys [615560 2026-01-26] (Intel Corporation -> Intel Corporation)
R3 KslD; C:\WINDOWS\System32\drivers\wd\KslD.sys [82312 2026-05-28] (Microsoft Windows -> Microsoft Corporation)
S0 WdBoot; C:\WINDOWS\System32\drivers\wd\WdBoot.sys [21888 2026-06-09] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\WINDOWS\System32\drivers\wd\WdFilter.sys [646536 2026-06-09] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\WINDOWS\System32\drivers\wd\WdNisDrv.sys [115120 2026-06-09] (Microsoft Windows -> Microsoft Corporation)
S3 RwDrv; \??\C:\WINDOWS\system32\Drivers\RwDrv.sys (No File)

==================== SvcHost (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-06-10 09:17 - 2026-06-10 09:18 - 000000000 ____D C:\FRST
2026-06-10 09:16 - 2026-06-10 09:16 - 000677108 _____ C:\WINDOWS\system32\perfh005.dat
2026-06-10 09:16 - 2026-06-10 09:16 - 000144960 _____ C:\WINDOWS\system32\perfc005.dat
2026-06-09 12:42 - 2026-06-09 12:48 - 000000000 ____D C:\WINDOWS\CbsTemp
2026-06-09 10:01 - 2026-06-09 10:01 - 000000000 ____D C:\AdwCleaner
2026-05-28 22:48 - 2026-05-28 22:48 - 000000000 ____D C:\WINDOWS\SecureBoot
2026-05-28 22:18 - 2026-05-28 22:18 - 000003872 _____ C:\WINDOWS\system32\DeviceFeatureDDF.json
2026-05-28 22:17 - 2026-05-28 22:17 - 000085913 _____ C:\WINDOWS\SysWOW64\ctac.json
2026-05-28 22:17 - 2026-05-28 22:17 - 000085913 _____ C:\WINDOWS\system32\ctac.json

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2026-06-10 09:17 - 2026-01-30 09:01 - 000000000 ____D C:\Temp
2026-06-10 09:17 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemTemp
2026-06-10 09:16 - 2026-01-29 09:28 - 001603790 _____ C:\WINDOWS\system32\PerfStringBackup.INI
2026-06-10 09:16 - 2024-04-01 09:24 - 000000000 ____D C:\WINDOWS\INF
2026-06-10 09:12 - 2026-01-29 09:26 - 000000006 ____H C:\WINDOWS\Tasks\SA.DAT
2026-06-10 09:12 - 2026-01-29 09:22 - 000032850 _____ C:\WINDOWS\system32\5E37410B-D6F1-471D-AE27-563CEAC0D6B2
2026-06-10 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\AppReadiness
2026-06-10 09:12 - 2024-04-01 09:26 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2026-06-10 09:12 - 2024-03-16 08:57 - 000012288 ___SH C:\DumpStack.log.tmp
2026-06-10 06:29 - 2026-01-29 11:41 - 000000000 ____D C:\Users\Zbynek
2026-06-10 06:29 - 2024-04-01 09:21 - 000786432 _____ C:\WINDOWS\system32\config\BBI
2026-06-10 06:28 - 2026-02-07 10:18 - 000000000 ____D C:\Program Files\Microsoft OneDrive
2026-06-10 06:28 - 2026-01-29 09:22 - 000000000 ____D C:\WINDOWS\system32\SleepStudy
2026-06-10 06:14 - 2024-04-01 09:26 - 000000000 ___HD C:\Program Files\WindowsApps
2026-06-09 12:51 - 2026-02-06 10:53 - 000003194 _____ C:\WINDOWS\system32\Tasks\OneDrive Per-Machine Standalone Update Task
2026-06-09 12:51 - 2026-02-06 10:53 - 000002029 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\OneDrive.lnk
2026-06-09 12:51 - 2026-01-29 11:43 - 000003596 _____ C:\WINDOWS\system32\Tasks\OneDrive Reporting Task-S-1-5-21-2292089391-1343519791-1179752980-1002
2026-06-09 12:51 - 2026-01-29 11:43 - 000003552 _____ C:\WINDOWS\system32\Tasks\OneDrive Startup Task-S-1-5-21-2292089391-1343519791-1179752980-1002
2026-06-09 12:41 - 2024-03-16 08:57 - 000000000 ____D C:\WINDOWS\system32\Drivers\wd
2026-06-08 06:01 - 2026-01-29 09:26 - 000003640 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2026-06-08 06:01 - 2026-01-29 09:26 - 000003514 _____ C:\WINDOWS\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2026-06-06 21:27 - 2026-02-16 21:07 - 000001389 _____ C:\Users\Zbynek\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\ESET Online Scanner.lnk
2026-06-06 20:38 - 2026-02-06 10:58 - 000000000 ____D C:\Users\Zbynek\AppData\Roaming\Microsoft\Office
2026-06-06 20:37 - 2026-02-06 10:56 - 000000000 ____D C:\Users\Zbynek\AppData\Roaming\Microsoft\Excel
2026-06-05 19:34 - 2024-03-16 08:57 - 000002442 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2026-06-05 14:31 - 2026-02-06 10:58 - 000000000 ____D C:\Users\Zbynek\AppData\Roaming\Microsoft\Word
2026-06-05 10:08 - 2026-01-29 11:41 - 000000000 ____D C:\Users\Zbynek\AppData\Local\Packages
2026-06-03 21:16 - 2026-01-26 22:38 - 000336704 _____ C:\UkLog.dat
2026-06-02 11:31 - 2024-03-16 09:02 - 000000000 ____D C:\ProgramData\Packages
2026-05-31 17:50 - 2026-02-17 10:52 - 000003848 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onLogOn
2026-05-31 17:50 - 2026-02-17 10:52 - 000003406 _____ C:\WINDOWS\system32\Tasks\EOSv3 Scheduler onTime
2026-05-31 06:56 - 2026-01-29 11:41 - 000000000 ____D C:\Users\Zbynek\AppData\Local\D3DSCache
2026-05-29 09:18 - 2026-01-29 09:22 - 000343264 _____ C:\WINDOWS\system32\FNTCACHE.DAT
2026-05-28 22:48 - 2026-01-30 09:48 - 000000000 ____D C:\WINDOWS\system32\ruxim
2026-05-28 22:48 - 2024-04-01 18:31 - 000000000 ____D C:\Program Files\Windows Photo Viewer
2026-05-28 22:48 - 2024-04-01 18:30 - 000000000 ____D C:\WINDOWS\system32\Microsoft-Edge-WebView
2026-05-28 22:48 - 2024-04-01 18:28 - 000000000 ____D C:\WINDOWS\SysWOW64\cs
2026-05-28 22:48 - 2024-04-01 18:28 - 000000000 ____D C:\WINDOWS\system32\cs
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\SysWOW64\F12
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ___SD C:\WINDOWS\system32\F12
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ___RD C:\WINDOWS\ImmersiveControlPanel
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\UUS
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\WinMetadata
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\vi-VN
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ur-PK
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ug-CN
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\tt-RU
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\te-IN
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ta-IN
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\sq-AL
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\setup
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\quz-PE
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\qps-plocm
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\qps-ploc
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\pa-IN
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\or-IN
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\oobe
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\nn-NO
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ne-NP
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mt-MT
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mr-IN
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ml-IN
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mk-MK
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\mi-NZ
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lv-LV
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lt-LT
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lo-LA
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\lb-LU
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kok-IN
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kn-IN
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\km-KH
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\kk-KZ
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ka-GE
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\is-IS
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\InstallShield
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\id-ID
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\hy-AM
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\hi-IN
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gu-IN
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gl-ES
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\gd-GB
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ga-IE
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\fil-PH
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\fa-IR
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\eu-ES
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\et-EE
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\es-MX
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\Dism
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\cy-GB
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\ca-ES
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\bn-IN
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\be-BY
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\as-IN
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\am-ET
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SysWOW64\af-ZA
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemResources
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\SystemApps
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinMetadata
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\WinBioPlugIns
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\vi-VN
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ur-PK
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ug-CN
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\tt-RU
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\te-IN
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ta-IN
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Sysprep
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\sq-AL
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ShellExperiences
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\setup
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\SecureBootUpdates
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\quz-PE
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\qps-plocm
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\qps-ploc
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\PerceptionSimulation
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\pa-IN
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\or-IN
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\oobe
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\nn-NO
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ne-NP
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mt-MT
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mr-IN
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ml-IN
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mk-MK
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\mi-NZ
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\migwiz
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lv-LV
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lt-LT
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lo-LA
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\lb-LU
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kok-IN
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kn-IN
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\km-KH
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\kk-KZ
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ka-GE
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\is-IS
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\id-ID
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\hy-AM
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\hi-IN
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\HealthAttestationClient
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\gu-IN
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\gl-ES
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\gd-GB
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ga-IE
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\fil-PH
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\fa-IR
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\eu-ES
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\et-EE
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\es-MX
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\Dism
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\cy-GB
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\ca-ES
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\bn-IN
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\be-BY
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\as-IN
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\appraiser
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\am-ET
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\af-ZA
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\system32\AdvancedInstallers
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellExperiences
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\ShellComponents
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\PolicyDefinitions
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\BrowserCore
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\WINDOWS\bcastdvr
2026-05-28 22:48 - 2024-04-01 09:26 - 000000000 ____D C:\Program Files\Common Files\System
2026-05-28 22:48 - 2024-04-01 09:21 - 000000000 ____D C:\WINDOWS\servicing
2026-05-28 22:17 - 2026-01-29 09:26 - 003268096 _____ (Microsoft Corporation) C:\WINDOWS\SysWOW64\PrintConfig.dll
2026-05-28 22:15 - 2024-12-13 17:32 - 000000000 ____D C:\WINDOWS\system32\MRT
2026-05-28 22:13 - 2024-12-13 17:32 - 220340424 ____C (Microsoft Corporation) C:\WINDOWS\system32\MRT.exe
2026-05-28 21:57 - 2026-01-29 16:03 - 000002152 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat.lnk

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================